Go Premium for a chance to win a PS4. Enter to Win

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 322
  • Last Modified:

GAL ... visibility of user info to end users ...

We would like to populate AD with employee information and make it the central repository for user info for our organization. Is there any way to restrict the fields that are displayed to users through the GAL? For example if we wanted to store all info for employees including home phone and address in AD is there a way to prevent that from being displayed when a user does a lookup in outlook. We don't want just anyone to have access to the information.

Thanks
0
Chadwhite
Asked:
Chadwhite
1 Solution
 
Jejin JosephCommented:
By default "everyone" has read access to everyone elses general attributes, i.e, the attributes which are shown in outlook properties. If you dont want anyone else to see it you probable could deny access to these attributes to the everyone group.

Althought i dont think that would be a recomended way of doing it . I understad that you want to use AD as a repository without giving everyone access to these details. I would recomended that you extend the schema and add attributes for the details you want to add and them populate them. This way these attributes wont appear anywhere and your applicaiton can edit/display these attrtibues.
0
 
xqsCommented:
You can modify the address book templates, there's a small article about that here: http://www.microsoft.com/technet/prodtechnol/exchange/guides/E2k3AdminGuide/44db5755-8c30-4a07-bcdb-d2f7440ce275.mspx?mfr=true
0

Featured Post

Get your Disaster Recovery as a Service basics

Disaster Recovery as a Service is one go-to solution that revolutionizes DR planning. Implementing DRaaS could be an efficient process, easily accessible to non-DR experts. Learn about monitoring, testing, executing failovers and failbacks to ensure a "healthy" DR environment.

Tackle projects and never again get stuck behind a technical roadblock.
Join Now