Improve company productivity with a Business Account.Sign Up

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 2119
  • Last Modified:

How to grant a user full right to a distribution list in Exchange 2010

Hello,

My PR team want to be able to send email out as the distribution list email address. Anyone able to give me the exact command to do it in exchange power shell? Thanks
0
jli168
Asked:
jli168
  • 3
  • 3
2 Solutions
 
AkhaterCommented:
get-distributiongroup <name> | add-adpermission -user NameOfUser  -AccessRights ExtendedRight -ExtendedRights "send as"
0
 
jli168Author Commented:
hi- thanks for the response. I want to make sure i follow.

distrbition list = ir@abc.com (alias "ir")
user that want access = john@abc.com (alias "john")

If i have the above. I should be typing this in the command field?

get-distributiongroup ir | add-adpermission -user john -accessrights extenderight -extendedrights "full"

I want to grant the user full access.
0
 
AkhaterCommented:
for full access it is

get-distributiongroup ir | add-adpermission -user john -accessrights FullAccess

but you said

" send email out as the distribution list email address."


for that you will need send-as and not full access
0
Making Bulk Changes to Active Directory

Watch this video to see how easy it is to make mass changes to Active Directory from an external text file without using complicated scripts.

 
jli168Author Commented:
I'm told that if i do "send as" recipient will get message as "send on behalf of" therefore i need full access.

Getting this when trying to grant full access.

[PS] C:\Windows\system32>get-distributiongroup xxxxxxx | add-adpermission -user xxxxxx -accessrights fullaccess
Cannot process argument transformation on parameter 'AccessRights'. Cannot convert value "fullaccess" to type "System.D
irectoryServices.ActiveDirectoryRights[]". Error: "Cannot convert value "fullaccess" to type "System.DirectoryServices.
ActiveDirectoryRights" due to invalid enumeration values. Specify one of the following enumeration values and try again
. The possible enumeration values are "CreateChild, DeleteChild, ListChildren, Self, ReadProperty, WriteProperty, Delet
eTree, ListObject, ExtendedRight, Delete, ReadControl, GenericExecute, GenericWrite, GenericRead, WriteDacl, WriteOwner
, GenericAll, Synchronize, AccessSystemSecurity"."
    + CategoryInfo          : InvalidData: (:) [Add-ADPermission], ParameterBindin...mationException
    + FullyQualifiedErrorId : ParameterArgumentTransformationError,Add-ADPermission
0
 
AkhaterCommented:
yes sorry right because FullAccess is with Add-Mailbox permission not Add-AdPermission my bad and thus can't be done on a group
0
 
PostmasterCommented:
The Send-As rights are SEND-AS rights, not send-on-behalf.
So when this is used, the recipient does not see the true senders details.

Test it and see for yourself.
0
 
jli168Author Commented:
Thank you guys, got it to work with the following

add-adpermission "IR" -user "john" -extendedrights "send as"




0
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

Join & Write a Comment

Featured Post

Simplify Active Directory Administration

Administration of Active Directory does not have to be hard.  Too often what should be a simple task is made more difficult than it needs to be.The solution?  Hyena from SystemTools Software.  With ease-of-use as well as powerful importing and bulk updating capabilities.

  • 3
  • 3
Tackle projects and never again get stuck behind a technical roadblock.
Join Now