Go Premium for a chance to win a PS4. Enter to Win

x
?
Solved

Create Accounts and Mailboxes only

Posted on 2010-11-18
2
Medium Priority
?
662 Views
Last Modified: 2012-05-10
Windows 2003 / Exchange 2003 environment.  Need to figure out if there is a way to allow our Help Desk the ability to create account and mailbox only.  We do not want them to have the ability to read everyone's emails, delete accounts.  Is this possible?  Not sure what permissions are required.
0
Comment
Question by:ajruiz
2 Comments
 
LVL 23

Expert Comment

by:Stelian Stan
ID: 34166478
Select your Users OU or the specific OU you have the users > Right click on that OU > Delegate Control > Add all the users you want to give them permissions to create User Account > Check (Create, delete, and manage user accounts) > Next and Finish
0
 
LVL 12

Accepted Solution

by:
Rant32 earned 2000 total points
ID: 34167356
Use the Delegate Control wizard to assign at least the 'Create user' common task to the Helpdesk group.

The Helpdesk group should also be a View Only Exchange Administrator. They need to be able to list the AGs and servers in the organization to assign the mailbox server. Use the Exchange Administrator to delegate View Only Administrator rights at the Organization or the Administrative Group, depending on the scope.

If your helpdesk uses AD Users & Computers to create accounts, then the Exchange management tools should be installed on the computer they run it on. These tools are not compatible with Outlook and should ideally not be installed on the same computer (I believe you even have to un-install Outlook to install the Exchange management tools and Outlook will nag about it afterwards).
0

Featured Post

[Webinar] Cloud Security

In this webinar you will learn:

-Why existing firewall and DMZ architectures are not suited for securing cloud applications
-How to make your enterprise “Cloud Ready”, and fix your aging DMZ architecture
-How to transform your enterprise and become a Cloud Enabler

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

After seeing many questions for JRNL_WRAP_ERROR for replication failure, I thought it would be useful to write this article.
Active Directory can easily get cluttered with unused service, user and computer accounts. In this article, I will show you the way I like to implement ADCleanup..
This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …
This video shows how to use Hyena, from SystemTools Software, to bulk import 100 user accounts from an external text file. View in 1080p for best video quality.
Suggested Courses

963 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question