Outbound email: Migration to modern Microsoft 365 authentication (OAuth)
This release replaces legacy username/password SMTP authentication with Microsoft’s OAuth authorization code flow when integrating outbound email with Microsoft 365. The new method eliminates the need to store user credentials and aligns with Microsoft’s planned deprecation of basic authentication, improving security and long-term compatibility.
![]()
When configuring outbound email using OAuth, administrators only need to provide the Application ID, Directory ID and Client Secret. Existing configurations using the legacy method will continue to function temporarily, but administrators will see a persistent banner prompting them to migrate. The banner will also notify admins if an issue occurs when refreshing the SMTP OAuth access token.

Important: Migration should be completed before Microsoft begins deprecating basic authentication — currently expected to start December 31, 2026 — to ensure uninterrupted outbound email functionality.
One Complete Platform for IT & Security Management
Kaseya 365 is the all-in-one solution for managing, securing, and automating IT. With seamless integrations across critical IT functions, it simplifies operations, strengthens security, and boosts efficiency.
Is this email safe? INKY Smart Insights answers in seconds
INKY Smart Insights gives IT teams a plain-language verdict with cited evidence on flagged emails, cutting manual investigation time from 10 minutes to 5 seconds.
Read nowFake voicemails, real malware: Inside a 26,000-email SVG smuggling campaign
Attackers disguised malicious JavaScript as voicemail attachments across 26,589 emails targeting 5,527 organizations. Here's how the SVG smuggling campaign worked — and how INKY caught every one.
Read nowWhat sets the world's top MSPs apart?
Three-quarters of MSP 501 winners list security as a top revenue driver. We asked a six-time honoree what it actually takes to make the list — here's what separates the best from the rest.
Read now