Public/generated/Get-KriticalUtcmEXOMigrationEndpoint.ps1

# Kritical.PS.UTCM | Microsoft Graph UTCM REST API toolkit
# (c) 2026 Kritical Pty Ltd | https://kritical.net
# Kritical brand banner is rendered at module load via Write-KriticalUtcmBanner.

function Get-KriticalUtcmEXOMigrationEndpoint {
<#
.SYNOPSIS
    Kritical.UTCM shim for M365DSC resource EXOMigrationEndpoint.

.DESCRIPTION

    Search-replace safe: callers that today invoke
        Get-M365DSCEXOMigrationEndpoint -Credential $cred -TenantId $tid
    can rename to
        Get-KriticalUtcmEXOMigrationEndpoint -Credential $cred -TenantId $tid
    with ZERO other edits. Parameter shape matches the M365DSC .schema.mof
    exactly. By default -PreferM365DscBehavior is true.

    Actual Graph dispatch is delegated to Invoke-KriticalUtcmM365DscSchemaBridge.
    Bridge maps resource → Graph endpoint per per-resource wave; where mapping
    is not yet shipped, bridge returns an object with Verdict='UNMAPPED'.

.NOTES
    Workload: Exchange
    Param count: 26
#>

[CmdletBinding()]
param(
        # Identity of the migration endpoint.
[Parameter(Mandatory)] [string]$Identity,
        # Specifies whether to accept untrusted certificates.
[bool]$AcceptUntrustedCertificates,
        # The Application ID used for authentication.
[string]$AppID,
        # The URL of the Key Vault that stores the application secret.
[string]$AppSecretKeyVaultUrl,
        # The authentication method for the migration endpoint.
[string]$Authentication,
        # The type of migration endpoint.
[ValidateSet('IMAP','ExchangeRemoteMove')] [string]$EndpointType,
        # The Exchange Server address for the migration endpoint.
[string]$ExchangeServer,
        # The mailbox permission for the migration endpoint.
[string]$MailboxPermission,
        # The maximum number of concurrent incremental syncs.
[string]$MaxConcurrentIncrementalSyncs,
        # The maximum number of concurrent migrations.
[string]$MaxConcurrentMigrations,
        # The NSPI server for the migration endpoint.
[string]$NspiServer,
        # The port number for the migration endpoint.
[string]$Port,
        # The remote server for the migration endpoint.
[string]$RemoteServer,
        # The remote tenant for the migration endpoint.
[string]$RemoteTenant,
        # The RPC proxy server for the migration endpoint.
[string]$RpcProxyServer,
        # The security level for the migration endpoint.
[ValidateSet('None','Tls','Ssl')] [string]$Security,
        # The legacy distinguished name of the source mailbox.
[string]$SourceMailboxLegacyDN,
        # Specifies whether to use AutoDiscover.
[bool]$UseAutoDiscover,
        # Specifies if the migration endpoint should exist or not.
[ValidateSet('Present','Absent')] [string]$Ensure,
        # Credentials of the workload's Admin
[string]$Credential,
        # Id of the Azure Active Directory application to authenticate with.
[string]$ApplicationId,
        # Id of the Azure Active Directory tenant used for authentication.
[string]$TenantId,
        # Thumbprint of the Azure Active Directory application's authentication certificate to use for authentication.
[string]$CertificateThumbprint,
        # Username can be made up to anything but password will be used for CertificatePassword
[string]$CertificatePassword,
        # Path to certificate used in service principal usually a PFX file.
[string]$CertificatePath,
        # Managed ID being used for authentication.
[bool]$ManagedIdentity
)
    Invoke-KriticalUtcmM365DscSchemaBridge -ResourceName 'EXOMigrationEndpoint' -Workload 'Exchange' -Verb 'Get' -CallerParams $PSBoundParameters
}