---
sourceDocument: Xanadu Employee Service Management
sourceDocumentLink: https://www.servicenow.com/docs/r/xanadu/employee-service-management

 Release :

    - xanadu

ft:locale :

    - en-US

ft:publication_title :

    - Xanadu Employee Service Management

ft:clusterId :

    - emplsm

bundleId :

    - emplsm

workflow :

    - Employee


---

# Create a personal authentication mode connection with Microsoft Exchange Online

# Create a personal authentication mode connection with Microsoft Exchange Online {#ariaid-title1}

* Release version: Xanadu
* 
* Updated November 28, 2024
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 3 minutes to read

As an admin, establish a personal authentication mode connection with Microsoft Exchange Online to synchronize reservations. A user-level authentication token is generated that enables you to create, update, or cancel
reservations to synchronize events on the outlook calendar.

## Integrations {#personal-auth-mode-connection-with-msex__section_g4m_rb3_tdc}

System-to-system integrations would be used for all actions that aren't triggered by the user and that must be synchronized with Outlook. For all other user-triggered actions, the user's personal token is used.

## Subsources to cater reservations {#personal-auth-mode-connection-with-msex__section_ul1_bc3_tdc}

A new subsource, `sn_wsd_rest_api`, has been introduced to distinguish the reservations originating from the REST API. This action enables the use of system-to-system credentials to synchronize the reservations with
Outlook in personal authentication mode.

## Handling upgrade scenarios {#personal-auth-mode-connection-with-msex__section_jzk_3mh_tdc}

If the Strict mode is enabled for active calendar providers before the upgrade, the system property is automatically set to Strict after the upgrade.

If the Normal mode is configured for active calendar providers before the upgrade, the system property is automatically set to Normal after the upgrade.

The Strict Mode check box is no longer displayed in the calendar provider, because the corresponding column has been deprecated in the calendar provider. To configure the Strict mode, you must set the system property
`sn_wsd_rsvsync.sync_integration_mode` at instance level.

Strict mode can now be configured using the system property at the instance level. For more information, see [Set Workplace Calendar Synchronization properties](https://www.servicenow.com/docs/vUvZOlsfMDRvfTWZlS9SFA "Configure the properties for the Workplace Calendar Synchronization to set the Exchange Online Sync Integration Mode to Strict, Personal Authentication, or Normal mode to synchronize reservations.").

## Reservation restrictions {#personal-auth-mode-connection-with-msex__section_ihq_5y2_vdc}

Review the restrictions for creating, updating, or deleting user reservations, as well as for blocker and group reservations, when personal authentication mode is enabled.
{#personal-auth-mode-connection-with-msex__table_dqt_hz2_vdc__entry__2}

| Reservation type | Description |
|-|-|
| Blocker reservations | Blocker reservations are created in delegated user's calendar with the requested for user as an invitee when Personal mode is enabled. If the `sn_wsd_rsv.blocker_user` system property specifies a blocker user, the system creates the reservation in the delegated user's calendar and adds the blocker user as an invitee. |
| Onbehalf user reservation | The This reservation is for field is not displayed in personal authentication mode. In personal mode, you can't create Onbehalf user reservations, as you don't have access to other user's calendar. However, you can create on-behalf reservations for non-synchronized rooms. |
| Group reservations | Group reservations aren't supported in Personal mode for synchronize-enabled rooms, even if the Enable group reservations check box is selected in the reservable module. You can create group reservations for non-synced rooms. |
| Create reservation | The following restrictions apply when creating reservations from the Workplace Service Delivery portal, event planner, Quick Reservation, and Now Mobile: In Personal mode :   If the requested-for user doesn't match the session user, the reservation can't be created. In Strict or Normal mode :   Reservations can be created without any restrictions. |
| Update or cancel reservation | The following restrictions apply when updating or canceling reservations from WSD portal, event planner, and Now Mobile: In Normal mode :   All reservations can be updated or canceled. In Personal authentication mode : * If the Sync mailbox of the reservation is set to other (reservation created in the delegated user calendar), the reservation can be updated or canceled in delegated user calendar. * If the Sync mailbox is set to user, the following rules apply: * If the reservation is edited or canceled from sources other than WSD Portal, Quick Reservation, WSD Mobile, or Event Planner, it can't be updated or canceled. * If the session user (the person who is updating or canceling the reservation) doesn't match the requested-for user, the reservation can't be edited or canceled. * If a personal token doesn't exist for the user updating or canceling the reservation, the reservation can't be updated or canceled. * In all other cases, the reservation can be updated or canceled. {#personal-auth-mode-connection-with-msex__ul_qqm_d3p_tdc} {#personal-auth-mode-connection-with-msex__ul_phg_c3p_tdc} Note: All the above reservations that can't be updated or canceled appears grayed out in the schedule view of event planner workspace. In Strict mode :   Users can only update or cancel a reservation if the Sync mailbox is set to other in strict mode. |
[Table 1. Restrictions]

{#personal-auth-mode-connection-with-msex__table_dqt_hz2_vdc}
* **[Configure Microsoft Azure](https://www.servicenow.com/docs/1eRjNI1fTHsvV11qGIiRpw)**   
  Set up a personal mode authentication with Microsoft Azure to connect Microsoft Exchange Online with Workplace Calendar Synchronization.
* **[Configure resource rooms in Microsoft Exchange Online](https://www.servicenow.com/docs/UCAPLj1RsEsN27jc4Sl7KA)**   
  Specify your delegated user email in the Microsoft portal to access the resource calendar.
* **[Setup personal authentication mode OAuth connectivity with Microsoft Exchange Online](https://www.servicenow.com/docs/b~nR5O8yg0vanEzlEp7Y2A)**   
  Create a personal authentication mode application registry for Microsoft Exchange Online with ServiceNow instance for OAuth authorization.
* **[Configure personal authentication mode Connection and Credential alias for Microsoft Exchange Online](https://www.servicenow.com/docs/Ma1bzsvslghqpvNCuE4k0Q)**   
  Establish a personal authentication mode connection and credential alias for Microsoft Exchange Online. Ensure that the values for the connection and credentials alias are set as specified.
* **[Configure your own connection and credential alias for personal authentication mode](https://www.servicenow.com/docs/dzukySjXSTBL12Dg7ErvfQ)**   
  Configure your own connection and credential alias if you don't want to use the default alias created during the personal authentication mode application registration. You can configure your calendar to use the alias as an override alias.
* **[Configure Microsoft Exchange Online calendar provider in personal authentication mode](https://www.servicenow.com/docs/RB3PUFpg3N~6RRKIPHVbdQ)**   
  Enhance your workplace reservation experience with the Workplace Calendar Synchronization application to synchronize reservations with your calendar provider. Configure Microsoft Exchange Online to synchronize reservations with your calendar provider using personal authentication mode. The Workplace Calendar Synchronization application uses the calendar provider as the primary source, ensuring events are updated and confirmed for room bookings through the Workplace Reservation Management portal.

**Related concepts**   

* [Create a normal mode connection with Microsoft Exchange Online](https://www.servicenow.com/docs/tRV7zAWEYzP7SF~ArvhBFg "Perform the following steps to establish a normal mode connection with Microsoft Exchange Online.")
* [Create a strict mode connection with Microsoft Exchange Online](https://www.servicenow.com/docs/L2wlyXywGeLFqjXWklI5Lg "For a strict mode connection with Microsoft Exchange Online, you must perform the following actions.")
* [Reservation approvals in Microsoft Exchange Online](https://www.servicenow.com/docs/qftGkUu3cV_bMIush6awCg "Track the approval status from Microsoft Outlook when a reservation request is either approved or rejected by the delegate.")  
**Related tasks**   

* [Configure the webhook registry of Microsoft Exchange Online spoke](https://www.servicenow.com/docs/DRWq~Tknvs4YCUcJAE62Cw "Configure callback URL for communication between the Workplace Calendar Synchronization application and Microsoft Exchange Online calendar.")
* [Create single or multiple calendar providers with Microsoft Exchange Online](https://www.servicenow.com/docs/7nFVrDbVsf~txXvU2kweQw "For the Microsoft Exchange Online provider, configure single or multiple calendar providers.")
* [Approve a reservation](https://www.servicenow.com/docs/yxVvPAMrHsBiOo0rP35CKQ "Review employee reservations raised using Workplace Reservation Management and approve or reject them.")

