[Okta Webinar] Learn how to a build a cloud-first strategyRegister Now


Can a user be given mailbox creation rights over a single mailbox store?

Posted on 2007-08-08
Medium Priority
Last Modified: 2013-11-05
We run Exchange 2003 Front-end/Back-end scenario with a 2 node cluster on the back end.

Exchange 2003 SP2 installed.

I have an IT tech who is not a domain admin or an exchange admin of any type. We want to be able to give him mailbox creation rights over a single mailbox store that holds the users he supports. He does have full control delegated to him at the OU level where the users reside.

From what I understand and have read there is not way to do this.

Anyone have any advice on this?
Question by:dgagnon
  • 2
  • 2

Accepted Solution

december41991 earned 2000 total points
ID: 19654209
What permissions do I need to be able to create and delete Exchange Server 2003 users?

If you are responsible for both user and mailbox management, you need to have permissions to create a user object in Active Directory. For example, you could be a Domain Admin, Account Operator, or you might have delegated access to a specific organization unit. In addition, you need the following Exchange permission:

The Exchange View Only Administrator role to the administrative group where the target Exchange Server 2003 server exists.

More info related to permission:

Author Comment

ID: 19658114
After reading this article it appears that you can only give permissions at the Administrative Group level. You cannot give specific permissions at the mailbox store level for a user to have exchange account creation rights.

Would you agree?


Expert Comment

ID: 19661813
Yes I agree .

 Actually I was wondering if there is any tweak. Even If I find a tweak we have to find its ramification.  ( Thinking Aloud ) :)

Author Comment

ID: 19662094
I guess the only remaining question is if I give a user Exchange View only Administrator rights then with the second requirement of having object access I should be able to distinguish which set of users can be mailbox enabled. (If probably placed in AD)

I am going to award points as this question has been taken to its limit.

thanks december41991 for your comments!


Featured Post

Creating Active Directory Users from a Text File

If your organization has a need to mass-create AD user accounts, watch this video to see how its done without the need for scripting or other unnecessary complexities.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

On September 18, Experts Exchange launched the first installment of the Help Bell, a new feature for Premium Members, Team Accounts, and Qualified Experts. The Help Bell will serve as an additional tool to help teams increase question visibility.
As much as Microsoft wants to kill off PST file support, just as they tried to do with public folders, there are still times when it is useful or downright necessary to export Exchange mailboxes to PST files. Thankfully, it is still possible to e…
In this video we show how to create an Accepted Domain in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.: First we need to log into the Exchange Admin Center. Navigate to the Mail Flow >> Ac…
To show how to create a transport rule in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.: First we need to log into the Exchange Admin Center. Navigate to the Mail Flow >> Rules tab.:  To cr…
Suggested Courses

872 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question