Solved

AD Group Membership

Posted on 2007-11-20
4
228 Views
Last Modified: 2010-03-17
What group membership (except Domain Admin) or permissions can I give a user in our IT department to create AD accounts with the option of creating Exchange mailboxes?

He can now create new AD user accounts but doesnt have the option to create the mailbox or to even see in AD user properties the Exchange tabs on the user accounts. (Exchange General, Exchange Features, Email Addresses, etc...)

Thanks!
0
Comment
Question by:tolinrome
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
4 Comments
 
LVL 12

Expert Comment

by:bhnmi
ID: 20321296
He needs the exchange system manager installed on his machine.
0
 
LVL 23

Expert Comment

by:Stacy Spear
ID: 20321537
If he has ESM and can't see the tabs, you have not made him an Exchange administrator. You can delegate the properties using the built in selections or give permissions fine grained by using the security tab on the Admin group in question in ESM.
0
 
LVL 104

Accepted Solution

by:
Sembee earned 125 total points
ID: 20321541
The user will need at least Exchange management tools installation and a minimum of Exchange View Only administrator rights delegated to them so that hey can work with Exchange elements in AD.

Simon.
0
 

Expert Comment

by:eng_khalid101
ID: 20322308
as confirmation, you want user
(1) create AD account without the ability to add mailbox to this account.
(2) no access to Exchange taps to AD accounts

if that what you want, you can do as following steps:
(1) Install Adminpak from CD windows 2000/2003 on laptop XP
(2) go to Control Panel > Administrative tools >  AD users and computers
(3) Create new users and you will not be asked about mailbox option.
(4) Double click on old user account you will not see exchage taps

I hope this will help
0

Featured Post

Problems using Powershell and Active Directory?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Uncontrolled local administrators groups within any organization pose a huge security risk. Because these groups are locally managed it becomes difficult to audit and maintain them.
Here's a look at newsworthy articles and community happenings during the last month.
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…
There are cases when e.g. an IT administrator wants to have full access and view into selected mailboxes on Exchange server, directly from his own email account in Outlook or Outlook Web Access. This proves useful when for example administrator want…
Suggested Courses

617 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question