Configure BlackBerry Work for iOS and Android app settings for Office 365 modern authentication

  1. On the menu bar, click Apps.
  2. Click the BlackBerry Work app.
  3. On the BlackBerry Dynamics tab, in the App configuration table, click +.
  4. Type a name for the app configuration.
  5. On the Advanced Configuration settings tab, under Office 365 Settings configure the following settings:
    1. Optionally, select the Use Office 365 Modern Authentication option to use modern authentication instead of basic authentication. Modern authentication enables BlackBerry Work to use sign-in features such as multi-factor authentication, SAML-based third-party identity providers, and smart card and certificate-based authentication. This option overrides autodiscover and provisions BlackBerry Work to use outlook.office365.com for mail settings. If this is not required in your environment, do not enable this option and manually configure your ActiveSync endpoint in the BlackBerry Work app configuration settings on the Basic Configuration tab. For more information, see the BlackBerry Work app configuration settings.
    2. In the Azure App ID field, specify the Microsoft Entra ID app ID for BlackBerry Work. For information on how to obtain an Entra ID, see Obtain an Entra app ID for BlackBerry Work.
    3. In the Office 365 Sign On URL field, specify the web address that BlackBerry Work should use when signing in to Office 365. If you do not specify a value, BlackBerry Work will use https://login.microsoftonline.com during setup. In most configurations, this field should be left blank.
    4. In the Office 365 Tenant ID field, specify the tenant ID of the Office 365 server that you want BlackBerry Work to connect to during setup.
    5. In the Office 365 Resource field, specify the URL of the Microsoft Exchange Online server. In the Redirect URI field, specify the URI that you entered in the Microsoft Entra ID portal. In most configurations, this field should be left blank.
    6. Select the Use Office 365 Modern Authentication for Presence option to use modern authentication with the presence service. The Enable presence service option on the Apps Settings tab must also be selected.
    7. Optionally, select the Proxy Office 365 Modern Authentication requests (Android only) setting to force all Office 365 modern authentication requests to go through the BlackBerry Proxy instead of connecting directly to the Internet. This setting should be enabled if your organization's authentication server is not published externally to the internet. If your authentication server is published externally, this setting is optional.
  6. Optionally, enable the Migration Flow Enabled option. Enabling this option allows users' email to continue to synchronize and minimizes downtime during the migration. If this option is not enabled, users can't send or receive email during the migration. For more information about enabling the migration flow, see Enable the mailbox migration flow.
  7. Optionally, configure any other settings. See app configuration settings for a description of all of the settings that you can configure.
  8. Click Save.