Mesh 365
This guide explains how to install Mesh 365 for organizations using Microsoft 365 whose MX records point to Microsoft or a third-party email gateway.
Tip
Installation time: Less than 2 minutes
Tip: Before setting up a customer in Mesh, review the Before you start checklist.
Edit the customer account
After completing the order form, select the edit icon next to the customer name on the Customers page.

Authorize Microsoft 365
Select O365 Authorize to allow Mesh to connect to the Microsoft 365 tenant. You are redirected to the Microsoft 365 sign-in page.

After signing in, accept the requested permissions. You are then redirected to the Mesh MSP portal, where you must select Accept again.

Synchronize the mailboxes
Select Azure Sync to populate all mailboxes in Mesh.

Tip
For Mesh 365 Monitor Mode, the setup is complete.
For Mesh 365 Protect Mode, continue to the next step.
For more information, see Mesh 365 modes.
Create a mail flow rule in Microsoft 365
Note
This step is required when the customer uses Protect Mode and at least one policy option is set to Quarantine in Mesh.
Create a Microsoft 365 mail flow rule for the Mesh IP ranges. This ensures that quarantine digests generated by the service and messages released from the Mesh quarantine are delivered without additional Microsoft filtering.
The following video explains the process:
Use the IP ranges for your region.
Follow the mail flow rule configuration guide.
For additional guidance, see Microsoft documentation for third-party cloud email services.
Note
When migrating from another secure email gateway, an existing connector may reject messages that are not sent from a specific IP range.
Remove this connector before changing the MX records to prevent messages generated by Mesh, including digests and release requests, from being rejected.
Configure the Report Junk & Phishing button
Optionally, configure the Outlook Report button to share potential false negatives and false positives with your help desk and the Mesh detection team. For instructions, see Configure the Report Junk & Phishing button.

Tip
You’re all set. Your email is now protected by Mesh 365.
Monitor Mode (Mesh 365 only)
Monitor mode is a feature exclusive to Mesh 365.
In this mode, emails are analyzed and verdicts are given, but actions such as quarantine, junk, and banners are not applied.
Monitor mode offers several advantages:
Demonstrate Value: Showcase the effectiveness of Mesh 365 without impacting the current mail flow.
Seamless Onboarding: Ensure a smoother onboarding experience by creating rules for legitimate senders who receive non-clean verdicts before transitioning to protect mode.
Enabling when creating a customer
Note
Monitor mode is enabled by default in the company creation phase. Please note that you need to manually disable it after creating the company in order to allow actions on the mail flow.
After the customer account has been created, Monitor Mode can only be enabled or disabled by logging in as the customer and navigating to the Settings section, where the monitor mode toggle can be switched on or off.
