Amend Mailbox Permissions Crate
What does the Amend Mailbox Permissions Crate do?
Our Amend Mailbox Permissions Crate provides a streamlined, secure method for managing mailbox access in Microsoft 365 environments. This Crate automates the process of adding, removing, or viewing permissions for mail-enabled mailboxes, ensuring precise access control and comprehensive audit tracking.
The Amend Mailbox Permissions Crate automates the following processes.
- Permission management - Adding or removing Full Access permissions 
- Adding or removing Send As permissions 
- Viewing current mailbox access levels 
 
- Automatic documentation - Creates a new ticket or allows selection of an existing one. 
- Captures the reason for permission changes 
- Ensures accountability and compliance for mailbox access modifications 
 
- Automated logging and tracking - Generates detailed logs of all permission changes 
- Creates or updates tickets in your PSA 
- Provides a clear audit trail of access modifications 
 
Why use the Amend Mailbox Permissions Crate?
This Crate is designed to support MSPs and IT teams in efficiently and securely managing email access from the parent organization. By enabling the child organizations in the form trigger, MSPs can seamlessly grant and control access to the form for their customers. Common use cases include:
Emergency access management
- Quickly grant temporary access for critical troubleshooting 
- Provide short-term mailbox permissions for urgent situations 
- Ensure immediate response capabilities while maintaining security 
Routine operational changes
- Grant access to a mailbox after an onboarding or offboarding 
- Temporarily grant access for specific projects or collaborations 
- Handle delegation of mailbox access during employee absences 
- Allow managers to access team mailboxes 
- Grant temporary access for external consultants 
- Manage shared mailbox permissions for departments 
Compliance and security
- Maintain detailed logs of all permission changes 
- Ensure minimal and purposeful mailbox access 
Crate prerequisites
Integration requirements
- The Microsoft Cloud Integration Bundle must be set up before unpacking this Crate. 
- Your PSA must be integrated with Rewst. 
Unpack the Amend Mailbox Permissions Crate
- Navigate to Crates > Crate Marketplace in the left side menu Rewst platform. 
- Search for the - Amend Mailbox PermissionsCrate.
- Click on the Crate tile to begin unpacking.  
- This will open that PSA integration’s configuration form in a new tab. Note that this list will have check marks if you have already met the prerequisite integration and org variable setup needs. 
- Click Unpack Crate. 
- Choose your PSA from the drop down list.  
- Click Continue. 
- Change the Workflow name, if desired. 
- Leave form options at their default state. 
- Click Unpack. 
Example: Unpack the Amend Mailbox Permissions Crate

Amend Mailbox Permissions form
Access the form
- Navigate to Automations > Forms in the left side menu of your Rewst platform. 
- Search for - [Rewst] M365: Amend Mailbox Permissions.
- Click ⋮ > Usages > View Direct URLs. 
 
- Click on the form for the child organization, or use the parent org form for MSPs form users. 
Fill out the form

- Choose the specific client for whom permissions will be modified. Click the drop down arrow of the Client field, or begin typing the name into the field to jump to the client name. 
- Click the drop down arrow of the Ticket field, or begin typing the name into the field to jump to the ticket name related to the request. 
- Select the mail-enabled user to perform the permission modification action on. - Both of these mailbox types will work with the form: - Individual User Accounts: - [email protected]
- Shared Mailboxes: - [email protected]
 
 
- Click on one of the following actions to specify the type of permission modification you would like to execute. Clicking on each will add additional relevant fields and options to the form. - Add Perms: Grant new access rights via Add Full Access Users to Selected Mailbox and Add Send As Access Users to Selected Mailbox 
- Remove Perms: Revoke existing access via Remove Existing Full Access Users and Remove Existing Send As Users 
- View Perms: Check current access levels via All Perms permission data check 
 
- Click Submit. 
Add permissions form example
Fields:
- Client: Cluck-U 
- Ticket: Grant John Smith the mailbox access. 
- User: - [email protected]
- Action Type: Add Perms 
- Add Full Access Users: 
- Add Send As Access Users: 

Remove permissions form example
Fields:
- Client: Cluck-U 
- Ticket: Remove John Smiths access 
- User: - [email protected]
- Action Type: Remove Permissions 
- Remove Existing Full Access Users: 
View permissions form example
Fields:
- Client: Cluck-U 
- Ticket: Report mailbox permissions for John Smith 
- User: - [email protected]
- Action Type: View Permissions - Example Permission Data for - [email protected]- This user has access to the Shared Mailbox - HR Assistant - [email protected] mailbox Full Access Users - User: [email protected] Access Rights: Full Access - User: [email protected] Access Rights: Full Access - Send As Users User: [email protected] Access Rights: Send As - User: [email protected] Access Rights: Send As 

What happens during permission modifications?
Adding permissions
- User verification process - Validates user identities across the organization 
- Ensures users are correctly mapped to the intended mailbox 
- Checks existing permission levels before addition 
 
- Permission granting workflow - Systematically applies requested access rights 
- Supports multiple simultaneous permission additions 
- Handles complex permission scenarios across different user groups 
 
- Comprehensive tracking - Generates detailed audit trail of all permission changes 
- Captures metadata about the permission modification 
- Links permission changes to specific organization context 
 
- Notification and documentation - Automatically creates or updates support tickets 
- Logs all permission modification details 
- Provides clear, traceable record of access changes 
 
Removing permissions
- Permission revocation process - Methodically removes specified access rights 
- Supports bulk and individual user permission removals 
- Ensures complete and immediate access termination 
 
- Access validation - Confirms current permission status before removal 
- Prevents unnecessary or redundant access revocation 
- Maintains integrity of mailbox access controls 
 
- Security and compliance tracking - Creates comprehensive removal logs 
- Documents rationale for permission changes 
- Supports organization security and compliance requirements 
 
- Automated reporting - Updates relevant ticketing systems 
- Generates immediate notifications of access changes 
- Provides clear audit trail for management review 
 
Viewing permissions
- Comprehensive access snapshot - Retrieves complete permission landscape for a mailbox 
- Displays all current access levels and user rights 
- Offers granular visibility into mailbox access configurations 
 
- Detailed permission mapping - Shows Full Access and Send As permission details 
- Identifies all users with specific mailbox access 
- Provides context for each permission type 
 
- Reporting and insights - Generates instant permission overview 
- Supports security audits and access reviews 
- Enables quick identification of potential access risks 
 
- Flexible exploration - Allows drill-down into specific permission details 
- Supports various reporting and export formats 
- Facilitates comprehensive access management 
 
Last updated
Was this helpful?


