EdbMails EDB Recovery and Migration software
  • Products
    EdbMails
    All-in-one Recovery and Migration
    • EDB Recovery and Migration
    • OST, PST, MBOX, NSF, EML, MSG
    • Office 365, Exchange Migration
    • SharePoint, OneDrive & Teams
    • Google Workspace Migration
    • IMAP Migration
    • Duplicate Remover
    • EdbMails Data Recovery
    • Backup Solutions
    • All ProductsAll Products

    EDB Recovery and Migration

    EdbMails lets you recover corrupted, damaged, and offline Exchange EDB files, convert EDB mailboxes to PST format, and directly migrate mailbox data to Office 365 and live Exchange Server.

    EDB to PST
    EDB to PST
    Recover corrupted, damaged, offline EDB files and convert Exchange EDB mailboxes to PST file format
    Public Folder to Exchange
    Public Folder to Exchange
    Migrate public folders from an Exchange offline EDB file to live Exchange Server
    EDB to Live Exchange Migration
    EDB to Live Exchange Migration
    Directly migrate offline Exchange database (EDB) files to live Exchange server
    Archive Mailbox to Office 365
    Archive Mailbox to Office 365
    Migrate archive mailboxes from offline EDB files directly to Office 365
    EDB to Office 365 Migration
    EDB to Office 365 Migration
    Directly migrate offline Exchange database (EDB) files to Office 365
    Public Folder to Office 365
    Public Folder to Office 365
    Migrate public folders from an offline Exchange EDB file to Office 365

    OST, PST, MBOX, NSF, EML, MSG Export and Migration

    EdbMails lets you to recover OST and PST files, export OST, PST, MBOX, NSF, EML, and MSG files to PST files, and directly migrate OST, PST, MBOX, and NSF mailbox data to Office 365 and live Exchange Server.

    OST Recovery and Migration
    OST Recovery and Migration
    Recover offline OST files, convert OST to PST, and migrate OST to Office 365 and Exchange Server
    PST Recovery and Migration
    PST Recovery and Migration
    Recover Outlook PST files , Export PST to PST, migrate PST to Office 365 and Exchange Server
    MBOX Export and Migration
    MBOX Export and Migration
    Export MBOX to PST, migrate MBOX to Office 365 and Exchange Server
    NSF Export and Migration
    NSF Export and Migration
    Export NSF to PST, migrate NSF to Office 365 and Exchange Server
    EML to PST Export
    EML to PST Export
    Convert EML files to Outlook PST files
    PST to MSG Export
    PST to MSG Export
    Convert Outlook PST file to MSG file format
    MSG to PST Export
    MSG to PST Export
    Export MSG files to Outlook PST files

    Office 365, Exchange Migration

    EdbMails lets you securely migrate mailboxes across Microsoft 365, Exchange, Google Workspace (Google Workspace Migraton), and IMAP-supported servers such as Outlook, Gmail, Zimbra, Zoho Mail, and cPanel, ensuring zero downtime.

    Office 365 Backup
    Office 365 Migration
    Migrate between Office 365 tenants, Office 365 to Exchange, Office 365 to PST, PST files to Office 365.
    Exchange Server Backup
    Exchange Migration
    Migrate between any Exchange Servers, Exchange to Office 365, Exchange to PST, PST files to Exchange.
    Tenant to Tenant Migration
    Tenant to Tenant Migration
    Migrate Mailboxes, Public Folders, Archive Mailboxes between Office 365 Tenants.
    Exchange to Office 365
    Exchange to Office 365
    Migrate Mailboxes, Public Folders, Archive Mailboxes from live Exchange server to Office 365.
    Office 365 to IMAP
    Office 365 to IMAP
    Migrate Office 365 to IMAP, Office 365 to Gmail, Office 365 to Outlook, Office 365 to Zoho etc.
    Exchange to IMAP
    Exchange to IMAP
    Migrate from live Exchange Server to IMAP servers such as Gmail, Outlook, and Zoho Mail.
    Public Folder to Office 365
    Public Folder to Office 365
    Migrate Public Folders between Office 365 tenants with complete folder hierarchy and mailbox data integrity.
    Exchange to PST
    Exchange to PST
    Export live Exchange Server mailboxes, public folders, and archive mailboxes to Outlook PST files.

    SharePoint, OneDrive & Microsoft Teams Migration

    EdbMails lets you migrate SharePoint sites, OneDrive data, Microsoft Teams, teams, channels, chats, permissions, and documents between Microsoft 365 tenants while maintaining the existing folder structure and data integrity.

    SharePoint, OneDrive & Teams Backup
    SharePoint Online Migration
    Migrate documents, lists, files and folders from SharePoint sites.
    OneDrive for Business Migration
    OneDrive for Business Migration
    Migrate documents, lists, files, folders, private chats from OneDrive.
    Microsoft Teams Migration
    Microsoft Teams Migration
    Migrate Teams, chats, channels, documents, files and folders etc.

    Google Workspace / G Suite Migration

    EdbMails offers secure Google Workspace migration to Office 365, Exchange, or IMAP, and export to PST covering emails, contacts, calendars and tasks.

    Google Workspace Migration
    Google Workspace Migration
    Migrate emails, calendars, contacts, tasks from Google workspace to Google workspace, office 365, Exchange and IMAP. Export to PST
    Google Workspace to Office 365
    Google Workspace to Office 365
    Migrate emails, calendars, contacts, tasks from Google Workspace / G Suite to Office 365
    Google Workspace to Exchange Server
    Google Workspace to Exchange Server
    Migrate emails, calendars, contacts, tasks from Google Workspace / G Suite to on-Premise Exchange Server
    Google Workspace to IMAP
    Google Workspace to IMAP
    Migrate emails, calendars, contacts, tasks from Google Workspace / G Suite to IMAP, Outlook, Zimbra, Zoho etc.
    Google Workspace to Google Workspace Migration
    Google Workspace to Google Workspace
    Migrate emails, calendars, contacts, tasks between two Google Workspace / G Suite tenants
    Google Workspace to PST
    Google Workspace to PST
    Export emails, calendars, contacts, tasks from Google Workspace / G Suite to Outlook PST files

    IMAP Migration

    EdbMails IMAP Migration tool lets you easily migrate emails from IMAP servers such as Outlook, Gmail, Zoho Mail, Zimbra, cPanel, and more. Supports IMAP to IMAP, Office 365, Exchange Server, PST, and bulk PST to IMAP migration.

    IMAP Email Backup & Migration
    IMAP Email Backup & Migration
    Backup and migrate emails from IMAP servers to PST, Office 365, and On-Premises Exchange Server
    IMAP to Office 365
    IMAP to Office 365
    Migrate emails, folders, and attachments from IMAP servers to Office 365
    IMAP to Exchange
    IMAP to Exchange
    Migrate emails, folders, and attachments from IMAP servers to on-premises Exchange Server
    IMAP to PST
    IMAP to PST
    Export emails, folders, and attachments from IMAP servers to Outlook PST files for backup
    PST to IMAP
    PST to IMAP
    Migrate emails, folders, and attachments from bulk PST files to IMAP servers

    Duplicate Remover

    EdbMails Duplicate Remover lets you easily remove duplicate items from Office 365 and Exchange Server, and from IMAP, Outlook, Gmail, Zimbra, Zoho Mail, etc., ensuring a clean and organized mailbox.

    Remove Duplicates
    Remove Duplicates
    Easily clean up your Office 365, Exchange, Outlook and IMAP accounts by removing duplicate emails.
    Remove Duplicates from Office 365
    Remove Duplicates from Office 365
    Remove duplicate emails, calendars, contacts, journal tasks, etc. from Office 365.
    Remove Duplicates from Exchange Server
    Remove Duplicates from Exchange Server
    Remove duplicate emails, calendars, contacts, journal tasks, etc. from live Exchange Server.
    Remove Duplicates from IMAP, Outlook
    Remove Duplicates from IMAP, Outlook
    Remove duplicate emails, attachments from IMAP, Outlook, Gmail, Zimbra, Zoho Mail etc.

    Exchange, SharePoint, OneDrive, Teams and Office 365 Backup

    EdbMails enables secure, automated backup and recovery for Microsoft 365 services including Exchange Online, SharePoint, OneDrive, Teams, and Live Exchange Server with complete data protection and restore flexibility.

    Office 365 Backup
    Office 365 Backup
    Incremental, Granular, Encrypted and Compressed Office 365 Mailboxes Backup
    Exchange Server Backup
    Exchange Server Backup
    Incremental, Granular, Encrypted and Compressed Exchange Mailboxes Backup
    SharePoint, OneDrive & Teams Backup
    SharePoint, OneDrive & Teams Backup
    Backup Online site collections, Team sites, Office 365 groups, all documents etc.

    EdbMails Data Recovery

    EdbMails Data Recovery Software lets you recover permanently deleted data, including photos, videos, documents, and archived files, from partitions on hard drives, SSDs, USB drives, SD cards, and external storage devices.

    EdbMails Data Recovery
    EdbMails Data Recovery
    Recover and restore permanently deleted data from hard drives, SSDs, USB drives, SD cards, and etc.
    Whitepaper Whitepaper
    Request a Demo Request a Demo
    Sign Up Sign Up
  • Features
  • FAQ
  • Offers
  • Pricing
  • Download
  • Support
  • Sign in
User’s Manual
Office 365 Migration Tool

User Manual

User Manual

  • Office 365 Migration Tool Overview
  • What is Office 365 Migration?
  • System Requirements
  • Migration Scenarios
  • Software Setup
    • EdbMails Installation Process
    • Upgrading the Software
  • Understanding the Application
    • Software's Main Components
    • Understanding the Migration
  • FAQ
    • General
    • Migration Free Trial / Demo
    • Migration License
    • Before Migration
    • Migration - Steps
    • After Migration
  • Videos
    • Office 365 to Office 365
    • Office 365 to Exchange
    • Office 365 to IMAP
    • Office 365 to PST
    • Public Folder to Office 365
    • Archive Mailbox to Office 365
    • Public Folder to Exchange
    • Archive Mailbox to Exchange
    • Restore Bulk PST files to Office 365
    • Automatically Create Office 365 Mailboxes
    • Export Office 365 user to CSV file
  • Screenshots
    • Office 365 to Office 365
    • Office 365 to Exchange
    • Office 365 to PST
  • How it works?
    • Office 365 to Office 365
    • Office 365 to Exchange
    • Office 365 to IMAP
    • Office 365 to PST
    • Public Folder to Office 365
    • Public Folder to Exchange
    • Public Folder to Shared Mailbox
    • Archive Mailbox to Office 365
    • Archive Mailbox to Exchange
    • Office 365 to Hosted Exchange
    • Multiple PST to Office 365
    • Office 365 to Gmail Migration
    • Office 365 Shared mailbox to Exchange
    • Office 365 Public folders to PST
    • Office 365 archive mailbox to PST
    • Office 365 Shared mailbox to PST
    • Office 365 shared mailbox to Public folder
    • Office 365 Archive mailbox to Shared mailbox
    • Office 365 Shared mailbox to Archive mailbox
  • Connect to source Office 365
  • Connect to target Office 365
  • Modern Authentication Using OAuth 2.0
    • Microsoft 365 modern authentication
    • Automatic Registration
    • Manual Registration
  • Connect to Exchange server
  • Knowledge Base
    • Migrate between Office 365 tenants
    • Migrate Office 365 mailbox
    • Public folder migration
    • Office 365 Migration with same Domain
    • Office 365 Group Migration
    • Selective Mailbox Migration
    • Migration to Exchange 2007, 2010, 2013, 2016 and 2019
    • User-Defined Mailbox/Folder Mapping
    • Export Office 365 users to CSV
    • GoDaddy to Microsoft 365 migration
    • Rackspace to Office 365 migration
    • Office 365 migration methods
    • Office 365 migration checklist
    • Migrate Shared mailbox to Office 365
    • Office 365 migration best practices
    • Office 365 migration challenges
    • Convert shared mailbox to regular mailbox
    • Office 365 to Exchange 2019 migration
    • Office 365 multiple mailbox migration
    • Office 365 Server to Server Migration
    • Cross-Tenant Office 365 migration
    • Office 365 to iCloud migration
    • Office 365 to Yahoo Mail migration
    • Office 365 to cPanel Migration
    • Office 365 to SmarterMail Migration
    • Office 365 to IceWarp migration
    • Create an Office 365 Migration Endpoint
    • Validate Office 365 Mailbox Migration
    • Office 365 Migration Network Requirements
    • Microsoft 365 Migration URLs & Endpoints
    • Office 365 Migration Firewall Ports
    • DNS Changes After Office 365 Migration
    • Autodiscover Troubleshooting After Migration
    • Post-Migration MX Record Validation
    • Office 365 Mail Flow Troubleshooting
    • Mailbox Permission Validation
    • EdbMails vs CodeTwo vs MigrationWiz vs Native Tools
    • Calendar Permission Migration Issues
    • Folder Permission Troubleshooting
    • Large Mailbox Migration Best Practices
    • Archive Mailbox Sync Issues
    • Office 365 Migration Coexistence
    • Cross-Tenant Mailbox Permissions
    • Cross-Tenant Calendar Migration
    • Migration Using App-Only Authentication
    • Office 365 Mailbox Mapping Errors
    • Exchange Online Migration Limits
    • Mailbox Integrity After Migration
    • Security Best Practices for Migration
    • Office 365 to cPanel Migration
    • Office 365 to SmarterMail Migration
    • Office 365 to IceWarp Migration
  • Migration Types
    • Cutover Migration
    • Staged Migration
  • Set Exchange Server Impersonation rights
  • Map the Mailboxes
  • Migration Walkthrough
    • Office 365 tenant to tenant migration
    • Office 365 to PST Export
  • Multifactor Authentication
    • Enable MFA in Office 365
    • Create App password for MFA
    • Disable Security Defaults
  1. Home
  2. Office 365 Migration Tool
  3. How to Create a Migration Endpoint in Office 365 — Step-by-Step Guide
Download Buy Now

How to Create a Migration Endpoint in Office 365

Step-by-Step Guide: Endpoint Types, Prerequisites, PowerShell, Concurrency & Troubleshooting

An Office 365 migration endpoint is a connection configuration that allows Exchange Online to communicate with the source environment during mailbox migration. You need one when you move mailboxes with Exchange Online migration services, for example through a migration batch in the Exchange Admin Center, from an on-premises Exchange server, an IMAP server, or Google Workspace.

This guide explains how to create a migration endpoint in Office 365 and is written for Exchange administrators, IT administrators, and migration engineers. The steps depend on the migration method you use: Exchange hybrid (remote move), cutover, IMAP, or Google Workspace migration. Staged migration is no longer available for new projects because Microsoft retired Staged Outlook Anywhere onboarding on May 8, 2025.

 Quick Answer: You can create a migration endpoint in Office 365 from the Exchange Admin Center (Migration > Endpoints > Add) or with the New-MigrationEndpoint cmdlet in Exchange Online PowerShell. The required endpoint type depends on the migration source: Exchange Remote for hybrid migration, Outlook Anywhere for cutover migration, IMAP for IMAP servers, and Google Workspace for Google Workspace mailboxes.

Migration Endpoint at a Glance Details
Purpose Provides Exchange Online with the connection details needed to reach the source mail system during migration.
Required for Hybrid (remote move) migration • Cutover migration • IMAP migration • Google Workspace migration
Not required for Third-party migration tools that connect to the source and target environments directly and do not use Exchange Online migration services.
Configured in Exchange Admin Center (admin.exchange.microsoft.com) or Exchange Online PowerShell
Endpoint types Exchange Remote • Outlook Anywhere • IMAP • Google Workspace

What Is a Migration Endpoint?

A migration endpoint is a configuration object stored in Exchange Online that holds everything Microsoft 365 needs to reach your source mail system: the remote server address, the credentials of an admin account with access to source mailboxes, and two throttling values that govern how many mailboxes can be in motion simultaneously.

When a migration batch starts, Exchange Online reads the endpoint to determine where to connect, how to authenticate, and how many simultaneous connections to open. Without a valid endpoint, Exchange Online migration services cannot establish the required connection to the source environment, and the migration batch cannot start moving data.

A migration endpoint is a reusable connection profile. You create it once and reuse it across multiple migration batches. If you are migrating from Exchange servers in different geographic locations, or want to distribute load across several source servers, you can create separate endpoints for each and assign batches accordingly.

Why Migration Endpoints Are Required

Microsoft 365 is a cloud service with no direct visibility into your on-premises or third-party mail environment. A migration endpoint provides that connection. It tells Exchange Online where the source system is, how to authenticate to it, and how many mailboxes to process at the same time.

Without a valid endpoint, Exchange Online migration services cannot establish the required connection to the source environment. For migrations that use Exchange Online migration services, including hybrid remote move, cutover, IMAP, and Google Workspace migrations, the endpoint must exist, or be created in the migration batch wizard, before the first batch can run.

Endpoints also serve a throttling function. The concurrency values stored on each endpoint prevent the source server from being overwhelmed during a large migration. A source Exchange server that handles its normal workload reliably can still be destabilized by dozens of simultaneous migration connections if no throttling is applied.

Migration Endpoint Types in Office 365

Each migration scenario uses a different protocol to move data from the source, and the endpoint type tells Exchange Online which protocol to use. Selecting the wrong type is a common reason for connection test failures. For example, if you choose Exchange Remote for an IMAP server, Exchange Online looks for an MRS Proxy endpoint that does not exist.

Endpoint Type Migration Scenario MRS Proxy
Exchange Remote Hybrid migration Required
Outlook Anywhere Cutover (Staged retired May 8, 2025) Not required
IMAP Non-Exchange mail servers Not required
Google Workspace Google Workspace to Microsoft 365 Not required

 Important: Microsoft retired Staged Outlook Anywhere onboarding on May 8, 2025. Organizations that did not complete staged migrations before that date must use the hybrid remote onboarding process instead.

Exchange Remote (ExchangeRemoteMove)

Used for hybrid (remote move) migrations where the on-premises Exchange server (2010 SP3 or later) has MRS Proxy enabled. Data moves directly using the native Mailbox Replication Service (MRS) protocol.

Outlook Anywhere

Used for cutover migrations from Exchange Server 2003 or later. Staged migrations from Exchange 2003 and 2007 also used this endpoint type until Microsoft retired Staged Outlook Anywhere onboarding on May 8, 2025. Uses RPC over HTTP. MRS Proxy is not required.

IMAP

Used for any IMAP-compatible source: Gmail, Zimbra, Zoho Mail, Yahoo, Rackspace, or any provider that exposes an IMAP port. Only email and folder structure migrate; calendars and contacts require a separate process.

Google Workspace

Uses the Gmail API, enabling email, contacts, and calendar items to migrate together. Requires a Google service account with domain-wide delegation and specific API scopes in the Google Admin console.

Which Endpoint Type Should You Choose?

Select the endpoint type based on the source environment:

Source Environment Migration Method Endpoint Type
Exchange Server in a hybrid deployment Remote move (hybrid) migration Exchange Remote
Legacy Exchange Server (Exchange 2003 or later) Cutover migration Outlook Anywhere
IMAP server (Gmail, Zimbra, Zoho Mail, or another IMAP-compatible provider) IMAP migration IMAP
Google Workspace Google Workspace migration Google Workspace

Before Creating a Migration Endpoint

A migration endpoint is one step in the wider migration project. For the full workflow from assessment through cutover, see the Office 365 migration guide. Confirm the following requirements before you create the endpoint.

General Requirements

  • Required permissions: Sign in to Exchange Online with an admin account that can manage migrations, such as a member of the Organization Management role group. The source-side account permissions depend on the endpoint type and are listed below.
  • Source server readiness: The source server must run a version supported by the migration method, and the required service (MRS Proxy, Outlook Anywhere, IMAP, or Google Workspace API access) must be enabled.
  • Authentication requirements: Use a dedicated migration account with a non-expiring password that is excluded from MFA policies. Exchange sources need a valid SSL certificate from a public CA, and Google Workspace sources need a service account JSON key.
  • Network requirements: The source endpoint (EWS/MRS Proxy URL, Outlook Anywhere URL, or IMAP port) must be reachable from the internet and allowed through your firewall. Test external access with the Microsoft Remote Connectivity Analyzer before you create the endpoint.

For the complete list of pre-migration tasks, including scope definition, target setup, DNS changes, and batch planning, use the Office 365 migration checklist.

For Exchange Remote Endpoints

  • Enable MRS Proxy on the on-premises Exchange server. It is disabled by default.
  • Confirm the Exchange Web Services external URL is accessible from the internet using the Microsoft Remote Connectivity Analyzer (testconnectivity.microsoft.com).
  • Ensure the SSL certificate is issued by a public CA, is not expired, and includes the server FQDN in the SAN field.
  • Confirm the migration admin account is a member of Domain Admins, Exchange Recipient Administrators, or the Organization Management role group (Exchange 2010 or later).

Enable MRS Proxy:

Command: Copy & Paste it

Set-WebServicesVirtualDirectory -Identity "EWS (Default Web Site)" `
-MRSProxyEnabled $true

# Verify
Get-WebServicesVirtualDirectory | Select Identity, MRSProxyEnabled

Add the migration admin account to the Organization Management role group (run in the Exchange Management Shell on-premises):

Command: Copy & Paste it

Add-RoleGroupMember -Identity "Organization Management" `
-Member "migrationadmin"

For Outlook Anywhere (Cutover) Endpoints

  • Configure Outlook Anywhere on the on-premises Exchange server and confirm it is reachable from the internet with a certificate issued by a trusted public CA.
  • Confirm the migration admin account is a member of Domain Admins, has FullAccess permission on each on-premises mailbox, or has Receive As permission on the mailbox database.
  • Cutover migration supports up to 2,000 mailboxes. Microsoft recommends migrating 150 mailboxes or fewer with this method.

For IMAP Endpoints

  • Confirm IMAP port and SSL configuration (port 993 with SSL is standard; some providers use 143 with STARTTLS).
  • Prepare a credentials CSV with each user's IMAP username and password, or with the credentials of an admin account that has access to all mailboxes on the IMAP server.

For Google Workspace Endpoints

  • Create a Google service account with domain-wide delegation in the Google Admin console.
  • Enable the required API scopes. Missing scopes cause authorization errors during the connection test.
  • Have the service account email, the private key file (JSON key), and a Google Workspace admin email ready.

How to Create a Migration Endpoint in Exchange Online

You can create migration endpoints through the Exchange Admin Center at admin.exchange.microsoft.com or via Exchange Online PowerShell.

Creating an Endpoint in the Exchange Admin Center

Sign in to the Exchange Admin Center, select Migration, select Endpoints at the top right of the page, select Add, and then select the appropriate endpoint type from the Select the migration type drop-down list.

Migration Batches in Exchange Admin Center

For an Exchange Remote endpoint, the wizard asks for an on-premises email address (for autodiscovery), the migration admin account, and the account password. If auto-detection fails, enter the Remote MRS Proxy server FQDN manually. In multi-server environments, point to an individual server rather than a load balancer.

Add Exchange Remote Migration Endpoint

 

Creating an Endpoint with PowerShell

Connect to Exchange Online first:

Command: Copy & Paste it

Connect-ExchangeOnline -UserPrincipalName admin@yourdomain.com

Exchange Remote (Hybrid)

Command: Copy & Paste it

$credentials = Get-Credential

New-MigrationEndpoint `
-Name "Hybrid-Endpoint-Primary" `
-ExchangeRemoteMove `
-RemoteServer "mail.yourcompany.com" `
-Credentials $credentials `
-MaxConcurrentMigrations 20 `
-MaxConcurrentIncrementalSyncs 10

IMAP

Command: Copy & Paste it

New-MigrationEndpoint `
-Name "IMAP-Endpoint" `
-IMAP `
-RemoteServer "mail.yourprovider.com" `
-Port 993 `
-Security Ssl `
-MaxConcurrentMigrations 20 `
-MaxConcurrentIncrementalSyncs 10

Verify the endpoint:

Command: Copy & Paste it

Get-MigrationEndpoint | Format-List Identity, EndpointType, RemoteServer, MaxConcurrentMigrations, MaxConcurrentIncrementalSyncs

Test before running a live migration:

Command: Copy & Paste it

Test-MigrationServerAvailability -Endpoint "Hybrid-Endpoint-Primary"

A successful result returns Result: Success. Repeat this test after any network change, certificate renewal, or firewall update.

Editing and Deleting Migration Endpoints

Command: Copy & Paste it

# Update credentials on an existing endpoint
$newCredentials = Get-Credential
Set-MigrationEndpoint -Identity "Hybrid-Endpoint-Primary" `
-Credentials $newCredentials

# Confirm no active batches before deleting
Get-MigrationBatch | Where-Object {$_.SourceEndpoint -like
"*Hybrid-Endpoint-Primary*"} | Select Identity, Status

# Remove the endpoint
Remove-MigrationEndpoint -Identity "Hybrid-Endpoint-Primary"

Migration Endpoint Concurrency Settings Explained

Every migration endpoint carries two throttling values that control how data flows through it. Values that are too high or too low affect both migration speed and source server stability.

Setting Default Practical Range Notes
MaxConcurrentMigrations 20 20–60 per endpoint Controls the initial sync phase. Increase gradually after a pilot batch.
MaxConcurrentIncrementalSyncs 10 25–30% of batch size Raise before triggering completion on large batches to avoid queue build-up.
Tenant MaxConcurrentMigrations 300 Up to 1,000 via support Tenant-wide ceiling. Individual endpoint values cannot exceed this.

MaxConcurrentMigrations

Controls how many mailboxes can be in their initial bulk data copy phase simultaneously. Start at the default of 20, run a pilot batch, monitor the source server's CPU and IIS connection logs, and increase incrementally. Most environments reach a practical ceiling between 30 and 60.

MaxConcurrentIncrementalSyncs

When you complete a batch, every mailbox needs a final incremental sync simultaneously. Raise this value before triggering completion on any large batch:

Command: Copy & Paste it

# Raise before completing a large batch
Set-MigrationEndpoint -Identity "Hybrid-Endpoint-Primary" `
-MaxConcurrentIncrementalSyncs 50

Set this to at least 25–30% of the batch size you are about to complete. Reduce it again afterward for remaining batches.

Why Higher Is Not Always Faster

Increasing concurrency beyond what the source server can sustain causes timeouts and stall-retry cycles. The result is a migration that is slower overall than it would have been at a lower, sustainable value. If you see frequent StalledDueToSource codes, reduce concurrency rather than increasing it.

Common Migration Endpoint Problems

Most endpoint failures fall into one of the following five categories.

MRS Proxy Not Enabled

MRS Proxy is disabled by default on on-premises Exchange servers. If you create an Exchange Remote endpoint without enabling it first, the connection test fails, even if the network path and credentials are correct.

EWS Not Externally Accessible

The Exchange Web Services URL must be reachable from Microsoft's IP ranges over the internet. An Exchange server on an internal network segment with no external publishing cannot be used as a migration endpoint source without additional infrastructure changes.

SSL Certificate Problems

The SSL certificate on the source Exchange server must be issued by a public certificate authority, must not be expired, and must include the server's EWS FQDN in the Subject Alternative Name field. Self-signed and internal CA certificates cause the connection test to fail.

Credential Issues

Migration endpoints store credentials at creation time and do not automatically refresh when a password changes or expires. A mid-migration password change, account lockout, or MFA policy applied after the endpoint was created can stop active migrations until the credentials on the endpoint are updated.

Concurrency Misconfiguration

Setting concurrency too high overloads the source server, causing timeouts and stall-retry cycles. Setting it too low unnecessarily queues mailboxes and extends the migration window. The appropriate concurrency value is best determined with a pilot batch followed by incremental adjustment.

How to Diagnose and Fix Migration Endpoint Errors

Common Errors During Endpoint Creation

"Failed to connect to the remote server"

The server FQDN is not reachable from Office 365's IP ranges, or MRS Proxy is not enabled. Run the Exchange Web Services Connectivity test at testconnectivity.microsoft.com before retrying.

"The credentials didn't work"

Verify the account format. Outlook Anywhere expects domain\username; Exchange Remote accepts UPN format. Check for account lockout from repeated failed attempts. Confirm Basic authentication is not disabled:

Command: Copy & Paste it

Get-WebServicesVirtualDirectory | Select Identity, BasicAuthentication

"The certificate is not valid"

The certificate must be from a trusted public CA, not expired, and include the server FQDN in the SAN field. Self-signed certificates typically fail this check.

Permission or Access Errors

The migration admin account does not have the required permissions on the source server. For Exchange Remote endpoints, confirm the account is a member of Domain Admins, Exchange Recipient Administrators, or the Organization Management role group. For Outlook Anywhere (cutover) endpoints, confirm the account is a member of Domain Admins, has FullAccess permission on each mailbox, or has Receive As permission on the mailbox database.

"HCW8078" during the Hybrid Configuration Wizard

MRS Proxy not enabled, or EWS external URL not configured. Create the endpoint manually via PowerShell rather than re-running the wizard.

Endpoint shows "NeedsToConnect"

The credentials are no longer valid, usually because of password expiry, account lockout, or an MFA policy applied after endpoint creation. Update them without deleting the endpoint:

Command: Copy & Paste it

$newCredentials = Get-Credential
Set-MigrationEndpoint -Identity "Hybrid-Endpoint-Primary" `
-Credentials $newCredentials

To prevent mid-migration failures: use a dedicated service account with a non-expiring password excluded from MFA policies.

Stall States During Migration

Stall states are usually not failures. In most cases, mailboxes resume automatically once the underlying condition clears. Identify them with:

Command: Copy & Paste it

Get-MoveRequest | Where-Object {$_.Status -eq 'InProgress'} |
Get-MoveRequestStatistics |
Where-Object {$_.StatusDetail -like 'Stalled*'} |
Select DisplayName, StatusDetail, PercentComplete

Stall Code What It Means and What to Do
StalledDueToSource_EndpointCapacityExceeded Queue, not a failure. More mailboxes waiting than concurrency settings allow. Raise MaxConcurrentMigrations or MaxConcurrentIncrementalSyncs.
StalledDueToSource_MrsProxyTransientError Transient connectivity failure to on-premises MRS Proxy. Auto-retries. If persistent, check the EWS virtual directory and the network path.
StalledDueToTarget_MdbAvailability Exchange Online is managing its replication queue. Resolves automatically. Contact Microsoft support if it persists for several hours.
StalledDueToTarget_BigFunnel Exchange Online content indexing pipeline is backed up. Auto-recovers within minutes to a few hours.
StalledDueToMailboxLock Source mailbox locked by another on-premises process. Brief. Moves typically resume within a few minutes.

Native Migration Endpoint vs EdbMails

The endpoint problems described above apply to Microsoft's native migration framework. EdbMails does not use Exchange Online migration services, so it does not require a migration endpoint in Exchange Online or MRS Proxy on the source server. EdbMails connects to the source and target environments through its own connection settings, which have separate prerequisites. For example, Google Workspace migrations with EdbMails still require a Google Cloud service account with domain-wide delegation and the required API scopes.

The table below compares the native endpoint requirements with EdbMails for each migration scenario.

Migration Scenario Native Endpoint Requirement With EdbMails
Hybrid Exchange MRS Proxy + external EWS + public SSL certificate Connects to the source Exchange server from the machine running EdbMails. No MRS Proxy or Exchange Online migration endpoint required.
IMAP Migration Credentials CSV (per user or admin account); email only, calendars and contacts excluded Connects with the IMAP server host name, port, and account credentials. Migrates email folders, messages, and attachments.
Google Workspace Service account + domain-wide delegation + API scope configuration Also uses a Google Cloud service account with domain-wide delegation and API scopes. No Exchange Online migration endpoint required.
Cutover Outlook Anywhere endpoint + external RPC access (Staged retired May 8, 2025) No Exchange Online migration endpoint required.
DAG Environments Endpoint pointed at an individual MRS Proxy server; separate endpoints to distribute load across servers No Exchange Online migration endpoint required.
Office 365 to Exchange Requires a hybrid deployment and an Exchange Remote endpoint (offboarding remote move) Supports Exchange 2007, 2010, 2013, 2016, and 2019 as the migration target.

 Note: EdbMails migrations do not require an endpoint configuration in Exchange Online. The endpoint creation and troubleshooting steps on this page apply only to Microsoft's native migration framework.

Frequently Asked Questions (FAQ)

  1. What is a migration endpoint in Office 365?

    A migration endpoint is a configuration object in Exchange Online that stores the connection details Microsoft 365 needs to reach the source mail system during a migration. It holds the remote server address, admin credentials, and concurrency settings. Without a valid endpoint, the migration service cannot connect to the source and the migration will fail immediately.

  2. Where are migration endpoints created?

    Migration endpoints are created in Exchange Online — via the Exchange Admin Center at admin.exchange.microsoft.com under Migration > Endpoints, or using the New-MigrationEndpoint cmdlet in Exchange Online PowerShell.

  3. Can I edit a migration endpoint?

    Yes. Use Set-MigrationEndpoint in PowerShell to update credentials, concurrency values, or other settings without deleting and recreating the endpoint. Changes take effect on subsequent migration connections.

  4. Can I delete a migration endpoint?

    Yes, using Remove-MigrationEndpoint. Before deleting, confirm no active batches reference the endpoint using Get-MigrationBatch. You cannot delete an endpoint referenced by an active batch.

  5. How do I test a migration endpoint?

    Use Test-MigrationServerAvailability in Exchange Online PowerShell. Run: Test-MigrationServerAvailability -Endpoint "EndpointName". Repeat after any network change, certificate renewal, or firewall update.

  6. Why does a migration endpoint fail?

    Most common causes: MRS Proxy not enabled on the source Exchange server, EWS not externally accessible, an expired or misconfigured SSL certificate, incorrect or expired admin credentials, and the wrong endpoint type selected for the source system.

  7. Is MRS Proxy required for all migration endpoints?

    No. MRS Proxy is required only for Exchange Remote endpoints used in hybrid migrations. Outlook Anywhere, IMAP, and Google Workspace endpoints do not require MRS Proxy. It is disabled by default and must be explicitly enabled.

  8. Do I need a new migration endpoint for every migration batch?

    No. A migration endpoint is a reusable connection profile. Create it once and reference it across as many batches as needed. Create additional endpoints only when targeting different source servers or geographic locations.

  9. Can I use the same endpoint for cutover and staged migrations?

    Yes, if both migrations draw from the same on-premises Exchange server. Both use the Outlook Anywhere endpoint type. Note that Staged Outlook Anywhere onboarding was retired in May 2025.

  10. Does EdbMails require migration endpoints?

    No. EdbMails manages connectivity to both source and target environments internally. You do not need to create migration endpoints in Exchange Online, enable MRS Proxy, configure EWS external access, or set up Google service accounts before running an EdbMails migration.

Which migration scenarios does EdbMails support?

EdbMails supports the following migration scenarios for Microsoft 365 and Exchange environments:

Migration Scenario EdbMails Product
Exchange to Office 365 EdbMails Exchange to Office 365 Migration
Office 365 Tenant to Tenant EdbMails Office 365 Tenant to Tenant Migration
Office 365 to Exchange EdbMails Office 365 to Exchange Migration
IMAP to Office 365 EdbMails IMAP to Office 365 Migration
Google Workspace to Office 365 EdbMails Google Workspace to Office 365
Office 365 to PST EdbMails Office 365 to PST Export
Public Folder to Office 365 EdbMails Public Folder to Office 365 Migration
SharePoint / OneDrive / Teams EdbMails SharePoint Online Migration

Summary

Migration endpoints are the foundation of Microsoft's native migration framework. The endpoint type must match the source system, concurrency must be calibrated to what the source server can handle, and credentials must remain valid throughout. A password expiry or new MFA policy applied weeks after endpoint creation can stop active migrations.

For organizations using Microsoft's native tools: enable MRS Proxy before attempting a hybrid endpoint, verify external EWS connectivity before testing, start at default concurrency and adjust after a pilot batch, and use a dedicated service account excluded from password rotation and MFA policies.

For organizations where the native endpoint framework creates friction, such as environments where EWS cannot be published externally, reverse migrations from Office 365 back to Exchange, or projects that need one tool across Exchange, IMAP, and Google Workspace sources, Office 365 migration software such as EdbMails provides an alternative that does not require a migration endpoint in Exchange Online.

 In this manual

IntroductionMigration EndpointEndpoint ProblemsEndpoint with PowerShellEndpoint ErrorsFAQ's

Office 365 Migration

100 Mailboxes $299 Only

Buy Now

Need help?

24/7 Customer support

Contact us on Live chat

Personalized Demo

Book a personalized demo

Still need help?

Email us / Call us

@edbmails.com All rights are reserved Privacy Policy | Terms of Use | GDPR | Security | Press Releases

hidden msg
Live Chat

Hi, May I help you?

Hide Chat Now