Quick Links
Configure your organization's mail server to receive and process incoming emails. You can use email protocols (POP, IMAP, POPS, or IMAPs), Exchange Web Services (EWS), or Microsoft Graph to connect ServiceDesk Plus with the mailbox.
Role Required: SDAdmin
Configure Mail Server with Email Protocols
POP / IMAP / POPS / IMAPS
|
Field |
Explanation |
|
Authentication Type |
• Select Basic to authenticate the mailbox using the account credentials. • Select OAuth 2.0 to authenticate using OAuth. Know more.POP / IMAP / POPS / IMAPS |
|
Basic Authentication: |
|
|
Server Name / IP Address |
Mention the name or IP address of the mail server. |
|
Username |
Enter the username of the mailbox. |
|
Password |
Enter the password to access the mailbox. |
|
Email Address |
Enter the email address from where the emails must be fetched. You can mention alias email addresses, if any. To learn more, refer to the admin guide. |
|
Protocol |
Select the protocol (POP, IMAP, POPs, or IMAPs) to connect to the mailbox. |
|
Port |
Specify the port number as per the selected protocol. |
|
OAuth Authentication: |
|
|
Permission Type |
• Delegated Access - Use the signed-in user's permissions to access mail resources.
• Application Access - Use application-level permissions to access mail resources without user sign-in. |
|
Server Name / IP Address |
Mention the name or IP address of the mail server. |
|
User Name (Delegated Access only) |
Enter the username of the mailbox. |
|
Primary Email (Application Access only) |
Enter the primary email address of the mailbox from which emails will be fetched. |
|
Email Address |
Enter the email address from where the emails must be fetched. You can mention alias email addresses, if any. To learn more, refer to the admin guide. |
|
Protocol |
Select the protocol (POP, IMAP, POPs, or IMAPs) to connect to the mailbox. |
|
TLS Enabled |
• Yes: Enable TLS to establish a secure connection with the mail server. • No: Connect to the mail server without TLS. |
|
Port |
Specify the port number as per the selected protocol. |
|
Authorization Server Details |
• Client ID, Client Secret, Authorization URL (Delegated Access only), and Token URL: Obtain these details from the authorization server. Know more. • Scope: Specifies the permissions granted to the OAuth access token for accessing mailbox resources. Know more about the default scope values. • Redirect URL (Delegated Access only): Configure this URL in the authorization server to obtain OAuth tokens. |
After setting up the configuration, click Save.
.png?Policy=eyJTdGF0ZW1lbnQiOlt7IlJlc291cmNlIjoiaHR0cHM6Ly9kemY4dnF2MjRlcWhnLmNsb3VkZnJvbnQubmV0L3VzZXJmaWxlcy84NjYvMTQyNjIvY2tmaW5kZXIvaW1hZ2VzL3F1LzIwMjYvdW5rbm93bigxOCkucG5nIiwiQ29uZGl0aW9uIjp7IkRhdGVMZXNzVGhhbiI6eyJBV1M6RXBvY2hUaW1lIjoxNzg2NzUzMjc5fX19XX0_&Signature=A1O7TgXNGKdNwTKmNj8woBfnnhVAxy8wUSG5oZzL6q0cLUGle46sUeKJQWJOkm0kNPdNuGP5y5ifRVLZnqDJpzIdFQw5rOmVq4JgmcVx4Q9AYAtW-1op22Kk2FTZ-gnfxhY3HyuA1N4DnHwWaIYICJ6PhfCZfAmGCD~oL-q662jrBuYgxIoXx3PkwAbktOkr8PUSXIQ8yjvKVmLu1DE73o5buFb144DbikYFqN7zQzAMVQTfg-gCvC1tiDvsn~qgr2cwKhdr0D1FLmfeSMTvoFTBU8R9mQvcL7Wq0Rs9vsmApBKehsW4mBl2gLY-B8hCHxugRGSduPe4D6sWpdN-4g__&Key-Pair-Id=K2TK3EG287XSFC)
For OAuth Authentication, provide your login credentials and submit your consent for the mentioned permissions. The login credential should be the same as the username configured in the Mail Server Settings. Ensure that you have not blocked pop-ups and redirects in your browser to view the user consent window.
.png?Policy=eyJTdGF0ZW1lbnQiOlt7IlJlc291cmNlIjoiaHR0cHM6Ly9kemY4dnF2MjRlcWhnLmNsb3VkZnJvbnQubmV0L3VzZXJmaWxlcy84NjYvMTQyNjIvY2tmaW5kZXIvaW1hZ2VzL3F1LzIwMjYvUGlja19hbl9hY2NvdXIoMSkucG5nIiwiQ29uZGl0aW9uIjp7IkRhdGVMZXNzVGhhbiI6eyJBV1M6RXBvY2hUaW1lIjoxNzg2NzUzMjc5fX19XX0_&Signature=a4BHcMHArPjPGI-k0EtIZPAN8-S9TjtaL8c3vJKU-j4iQ9lsHS7crOCRoE-mwlezg5wVj-wRYArMkdqdCOsNP2~p5SmmV1MmIvMjBBJ7OqsMWRpf5c5ddSsGr2JnVeihp8h7kCr7CLNQW26gM7A1hIzVcS1NJxzQLXlc4cxduJJJaPYFiaEi4LxlCSwFgdH-hsnpES6F2axwdnPo8V3k-6egz14vTs4WQgbCDCKha66M3j7cWzByWkazeiM-7zxvnBFg8tJsksf3z6sCE-UuPuf3y0NvWI8Mi0BxGE~hEBZjYryC-9Y~dgkFnni86SNyNWixbq~w1pEVxfZRmawIEw__&Key-Pair-Id=K2TK3EG287XSFC)
Configure Mail Server with Exchange Web Services
EWS (Exchange Web Services)
Configure your organization's mail server to receive and process incoming emails via Exchange Web Services (EWS).
|
Field |
Explanation |
|
Authentication Type |
• Select Basic to authenticate the mailbox using the account credentials. • Select OAuth 2.0 to authenticate using OAuth. Know more. |
|
Basic Authentication: |
|
|
Connect URL |
Enter the connect URL of the EWS mail server. |
|
Email Address |
Enter the email address from where the emails must be fetched. |
|
Username |
Enter the username to access the mailbox. |
|
Password |
Enter the password to access the mailbox. |
|
OAuth Authentication: |
|
|
Permission Type |
• Delegated Access - Use the signed-in user's permissions to access mail resources.
• Application Access - Use application-level permissions to access mail resources without user sign-in. |
|
Connect URL |
Enter the connect URL of the EWS mail server. |
|
Email Address |
Enter the email address from where the emails must be fetched. You can mention alias email addresses, if any. To learn more, refer to the admin guide. |
|
User Name (Delegated Access only) |
Enter the username of the mailbox. |
|
Primary Email (Application Access only) |
Enter the primary email address of the mailbox from which emails will be fetched. |
|
Authorization Server Details |
• Client ID, Client Secret, Authorization URL (Delegated Access only), and Token URL: Obtain these details from the authorization server. Know more. • Scope: Specifies the permissions granted to the OAuth access token for accessing mailbox resources. Know more about the default scope values. • Redirect URL (Delegated Access only): Configure this URL in the authorization server to obtain OAuth tokens. |
After setting up the configuration, click Save.
.png?Policy=eyJTdGF0ZW1lbnQiOlt7IlJlc291cmNlIjoiaHR0cHM6Ly9kemY4dnF2MjRlcWhnLmNsb3VkZnJvbnQubmV0L3VzZXJmaWxlcy84NjYvMTQyNjIvY2tmaW5kZXIvaW1hZ2VzL3F1LzIwMjYvdW5rbm93bigxOSkucG5nIiwiQ29uZGl0aW9uIjp7IkRhdGVMZXNzVGhhbiI6eyJBV1M6RXBvY2hUaW1lIjoxNzg2NzUzMjc5fX19XX0_&Signature=aRLuIHxbCYOfm9hKL2F-J7DcQWCW4tJEfFZRhpUAaT17ACXFgRw4MUUbAklNtOWrXP12rTWmAZCcC~Y6fP1Bip1EPDEy-86NfL3cZJlldoluPVgLPn3sqlygxoUYXkpizwRoaHrBPacUzJuMf8zh5P16wTZZB2RaZf19xn6dxuOehrfJAUe~vVl6t-hnsNtX5rk-hlZKZmD9VCUh9iDZ49PlZAGSF8g9dOqjgo-59n~mOY0TdG39jftd6rDBLYT8QGdWKw2y9NIKNYxR2a6Vpi~IdYnPB4h7c4KtMHmg4uXfWpcJQRLsd-bG7XZYUo385lYBvZq46m3Cnn1jyD1MdA__&Key-Pair-Id=K2TK3EG287XSFC)
For OAuth Authentication, provide your login credentials and submit your consent for the mentioned permissions. The login credential should be the same as the username configured in the Mail Server Settings. Ensure that you have not blocked pop-ups and redirects in your browser to view the user consent window.
.png?Policy=eyJTdGF0ZW1lbnQiOlt7IlJlc291cmNlIjoiaHR0cHM6Ly9kemY4dnF2MjRlcWhnLmNsb3VkZnJvbnQubmV0L3VzZXJmaWxlcy84NjYvMTQyNjIvY2tmaW5kZXIvaW1hZ2VzL3F1LzIwMjYvdW5rbm93bigyMikucG5nIiwiQ29uZGl0aW9uIjp7IkRhdGVMZXNzVGhhbiI6eyJBV1M6RXBvY2hUaW1lIjoxNzg2NzUzMjc5fX19XX0_&Signature=RbYTw8yUcakFu9fMDLZf6GrSzpDIG5sPOLLduNDrF8PRxPBxT7F0GnpJWSbUge8-KtWzwjZlX1Cix5NkL4nJM1EZrbezJjh6rQTB31MLIeXtPp7UHaKC7nrM5E7SWVP1qbfqvUVAwZWDOBJ~hqLk29r--KEBqvYBL6ul~OSd6Jl2wLfJL6DsK6sG~YW7gtmS9u8u9RPhff-w3csLosxEKv-Ym8QasWNlS3k902ghMEVdYoN~9W7usuuA~wjXAonCTSkNpOFWWAZ33U9Km6452n~cV1r~~9aoIZk-nVePcMAamgdW5rxlUI4-XE08H3wwACGYZhVPoyb~9--2eLhPXg__&Key-Pair-Id=K2TK3EG287XSFC)
Configure Mail Server with Microsoft Graph
Microsoft Graph
|
Field |
Explanation |
|
OAuth Authentication (default) |
|
|
Permission Type |
• Delegated Access - Use the signed-in user's permissions to access mail resources.
• Application Access - Use application-level permissions to access mail resources without user sign-in. |
|
Graph Endpoint |
Endpoint to access Microsoft Graph API. Know more about graph endpoints. |
|
Email Address |
Enter the email address from where the emails must be fetched. |
|
Primary Email (Application Access only) |
Enter the primary email address of the mailbox from which emails will be fetched. |
|
Authorization Server Details |
• Client ID, Client Secret, Authorization URL (Delegated Access only), and Token URL: Obtain these details from the authorization server. Know more. • Scope: Specifies the permissions granted to the OAuth access token for accessing mailbox resources. Know more about the default scope values. • Redirect URL (Delegated Access only): Configure this URL in the authorization server to obtain OAuth tokens. |
After setting up the configuration, click Save.
.png?Policy=eyJTdGF0ZW1lbnQiOlt7IlJlc291cmNlIjoiaHR0cHM6Ly9kemY4dnF2MjRlcWhnLmNsb3VkZnJvbnQubmV0L3VzZXJmaWxlcy84NjYvMTQyNjIvY2tmaW5kZXIvaW1hZ2VzL3F1LzIwMjYvdW5rbm93bigyMCkucG5nIiwiQ29uZGl0aW9uIjp7IkRhdGVMZXNzVGhhbiI6eyJBV1M6RXBvY2hUaW1lIjoxNzg2NzUzMjc5fX19XX0_&Signature=COCdbWqZ9561LGFYIJJuEE4Ddhq8nSyKLpapBloy5H8~ugUaqLTHT5FFTQ4AcHdGlNmcjVJoLkX6RsPoKQyeZXLHnC-leZR6xFXmlY0HoKdveKp~pFYw6DwH2ZoGzm6FfhMagKCPPmd9T~eWiQgHZLSITKnGtAIh-U8I2knzz2HBgKISsEVGGlUidvj3vk4LUrVbn2gkxBGhJqIeJRiCjvROwlm2VRIE1B3el4Ifyl41cf91~i4u4RuEin69U9KjqkYu2roA86TYgl1H2v~daVm8CkBJvu07jRuit5bxU3tt0TSg5JelXC~uRZHSrl7hb6oUyGne1nM39uIaLTpsmw__&Key-Pair-Id=K2TK3EG287XSFC)
For OAuth Authentication, provide your login credentials and submit your consent for the mentioned permissions. The login credential should be the same as the username configured in the Mail Server Settings. Ensure that you have not blocked pop-ups and redirects in your browser to view the user consent window.

In some cases, emails with processing errors can stop the mail fetching process. ServiceDesk Plus enables you to move such error emails to a different folder, thereby ensuring seamless mail fetching process.
You can create a separate folder in the application mailbox and direct the error emails to be moved to this folder.
Enable the Move Messages to error folder and configure as explained below.
|
Name of the error folder |
Provide the name of the folder you have created. |
|
Stop mail fetching after [ ] mails |
Stop mail fetching when the number of error emails moved to the folder reaches the specified count. |
|
Total number of mails in error folder |
This displays the number of emails moved to the configured error folder. This count will be reset when all error emails are resolved and moved to inbox. |
|
Move mails to inbox |
Move the emails back to the inbox after resolving the errors. |
|
Notify by email when a mail is moved from inbox to error folder |
Notify technicians each time an error email is received. Ensure Send e-mail when an application error occurs notification is enabled under notification rules.
|

When moving emails to the error folder, the details of each email and the exception will be saved as text files(.txt). These files will be encrypted as they might contain Personally Identifiable Information(PII) of the customer. Follow the steps given below to resolve the error emails.
In build 13001 or earlier, stop the mail fetching process and make the necessary changes.
In build 13002 or above, administrators can edit the mail server settings as needed. If a mail fetching process is ongoing, the application will prompt to disable mail fetching temporarily. After saving the changes, enable the fetching process manually.
Click Fetch a sample mail to test the incoming mail server connectivity.
If the settings are configured right and the connection is successful, the oldest email from your mailbox will be fetched, along with its properties. If not, an error message will be displayed on the screen.
To learn more about troubleshooting mail server errors, click here.
Configure Notifications for Connectivity Issues
This configuration applies only to versions 11206 and above
When an issue occurs while processing emails, notifications will be triggered to the technicians configured for error notifications in Admin > Notification Rules. However, if the application fails to connect to the mailbox, the current mail fetching schedule will be skipped and the application will try to reconnect to the mailbox during the next schedule. With every schedule, this process will recur in a loop and no emails will be fetched until the application connects to the mailbox.
ServiceDesk Plus provides a default threshold value to track down the number of consecutive failures attempts to connect to the mailbox. When this threshold value is reached, SDAdmins and associated technicians can be notified via bell notifications and emails respectively.
The count of consecutive failure attempts will be reset after each notification.
To configure the threshold value,

The configuration is instance based and hence 2 rows for each instance.
The given screenshot displays the default configuration, where 5 is the default threshold value and the notifications enabled by default.
Provide the required value in place of X.
Notifications for Stripped Attachments (version 13009 and later)
ServiceDesk Plus validates the following entities in incoming email attachments and inline images:
If there are any errors in these entities,
To resolve dropping attachments or inline images, contact ServiceDesk Plus support with screenshot of the system log entry and the notification email.

System log entry for dropped attachment/inline image

Email notification for dropped attachment/inline image
The notification configuration is portal-specific, and it can be disabled by using the following query:
The notification sent when inline images are dropped can be disabled using the following query:
The file size for validating inline images can be modified using the following query. The default inline image size is 3 MB. You can configure -1 as the file size to skip validation.
Use the following query to skip the validation of inline images or attachments. This prevents images or attachments from being dropped due to validation.
Restart the application after executing the query.
You can notify users when they send emails from unknown email addresses. This applies when Process messages from new email ID is disabled in the advanced portal settings (application settings for ESM setups).
To enable notification, execute the following query:
By default, paramvalue is set to false, which means the notification is disabled. Make sure the value is set to true to inform users when their email is not processed due to unknown email address.
Errors and Solutions
The following section explains various errors and corresponding solutions.
1. Error: Attachment file name is invalid
Reason: File name of the attachment contains invalid characters.
Solution: Rename the attachment file. Use letters, numbers, dots, hyphens, and underscores in file names.
2. Error: Attachment files contain invalid content type
Reason: Content type in the attachment does not match the file extension. For example, an image file with the file name 'Alter.txt' will be dropped.
Solution: Ensure that the attached files have matching file content and extension.
3. Error: Attachment files contain invalid extensions
Reason: ServiceDesk Plus enables you to allow/restrict certain file types in the application. If the email attachments include files of the restricted type, the attachments will be dropped.
Solution: Ensure that the file type is allowed under Admin > General Settings > Attachments Settings. In ESM setups, go to ESM Directory > General Settings > Attachment Settings.
4. Error: Attachment contains empty files
Reason: ServiceDesk Plus does not allow empty files as attachments.
Solution: Ensure that the attachment file is not empty. If the file is not empty, it could have been dropped due to Antivirus/Firewall configurations. Please check with your IT administrator to check on antivirus/firewall settings.
5. Error: Attachment size exceeds the configured limit
Reason: Files that exceed the configured size will be dropped.
Solution: Check and modify the Maximum attachment size (MB) under Admin > General Settings > Attachment Settings. In ESM setups, go to ESM Directory > General Settings > Attachment Settings.
Users can disable the addition of emails as conversations based on email headers by executing the below query.
In the above query, replace the <helpdeskid> with the portal ID. To find the portal ID, run the query given below.
After executing this query, all portal IDs are returned. Pick the portal ID where you need to run the update query and replace the <helpdeskid> in the update query with this portal ID. Restart the application for the updated query to take effect.
The addition of emails as conversations is disabled. After disabling, conversations will be added based on the request ID/entity ID in the email subject.
Emails larger than 50MB are either skipped or moved to the error folder during mail fetching.
In POP-based mail fetching, emails larger than 50MB are skipped from processing.
When the skipped email count exceeds 10, bell notifications are sent to SDAdmins, and email notifications are sent to technicians configured under Notification Rules > Send e-mail when an Application Error Occurs.
Users must move unprocessed emails from the Inbox to another folder or delete them.
When incoming email is configured with an error folder for non-POP protocols and the email size exceeds 50MB:
When Notify by email when a mail is moved from Inbox to Error folder option is enabled and number of emails in the error folder is below the configured maximum limit in the Incoming Mail Server Settings, the emails are moved to the error folder, after which technicians configured under Send e-mail when an Application Error Occurs are notified via email.
If the Error folder has reached the maximum limit, the mail fetching is stopped.
In these scenarios, users can delete the unprocessed emails or increase the mail size limit using an update query as shown below:
update mailconfig set paramvalue = 'X' where parameter like 'MAX_MAIL_SIZE'; Example: Set X to 60 to allow emails up to 60MB.