Solved

Remove a user from a 2008 Domain / Exchange 2010

Posted on 2013-01-29
6
447 Views
Last Modified: 2013-01-29
I have an employee who left the company.  Management feels this person left nothing of value on the computer systems and should be completely deleted.  what is the recommended way to go about this..

I was thinking....
1- delete the users files (home directory)
2- remove the user from (business specifc) security groups
3 -REMOVE the mailbox from Exchange Management
4- Delete the user AD Users and Computers

As a best practice, for a user that leaves that you want to save data for, whats  the best (and simpliest) way to get email out of exchange.

Thank You
0
Comment
Question by:howmad2
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2
6 Comments
 
LVL 16

Accepted Solution

by:
Bruno PACI earned 500 total points
ID: 38831744
Hi,

As you're using Exchange 2010 there's only 2 steps:

1) in EMC locate the user mailbox, right-click an choose "Delete". This will remove the mailbox AND the user account. Also, no need to remove the account from any groups as deleting an account automatically make it disappear from any group.
2) Delete the user files...

For users that leave the company and that you want to keep mails but delete the mailbox, the simpliest things is to make a PST export from Exchange Management Shell with Export-Mailbox if you have Exchange 2010 SP1 minimum.
To be able to use the PST exportcmdlet Export-Mailbox, you must be grant the role "Mailbox Import Export" to the admin account that you will use, EVEN IF THIS ACCOUNT IS MEMBER OF "ORGANIZATION MANAGEMENT" !

Take a look at : http://www.stevieg.org/2010/07/using-the-exchange-2010-sp1-mailbox-export-features-for-mass-exports-to-pst/

Have a good day.
0
 
LVL 52

Expert Comment

by:Manpreet SIngh Khatra
ID: 38831751
We in our environment follow a Offboarding process

1. Take backup of Home drive
2. Take backup of Mailbox data into PST
3. Remove any delegations and any configuration
4. Delete Mailbox and AD account after 15 days

- Rancy
0
 

Author Comment

by:howmad2
ID: 38831942
I REMOVEd the Mailbox from Exchange....There was no option to DELETE.  The mailbox is disconnected now.  There doesnt seem to be an option to DELETE a disconnected mailbox, just connect it.  The user account was automatically deleted -  so I can't (re)connect it... How eliminate this mailbox and what do I do in the future since Remove didnt work (Disable?)?
0
Free learning courses: Active Directory Deep Dive

Get a firm grasp on your IT environment when you learn Active Directory best practices with Veeam! Watch all, or choose any amount, of this three-part webinar series to improve your skills. From the basics to virtualization and backup, we got you covered.

 
LVL 16

Expert Comment

by:Bruno PACI
ID: 38831985
Ok, sorry I'm french and Exchange console I usually see are in french, so I translated to "Delete" but it may be "remove".
The important thing is you did not use "Disable" which only delete mailbox but not the user account.

The Disconnected mailbox will be cleaned automatically after the deleted mailbox retention period which is by default 30 days.
No user can access this mailbox until an admin reconnect it to a user account !
So is it really important for you to clean this mailbox right now without waiting for the retention period !?

If the account is deleted no way to use these data event by the person that quitted the company.


Remove DID work ! What you see is the NORMAL Exchange process...


If you can't wait to definitely remove datas from the store (even if I technically don't understand why....) you may follow instructions in this article : http://glazenbakje.wordpress.com/2010/07/01/delete-a-disconnected-mailbox-from-exchange-2010/

Have a good day.
0
 

Author Comment

by:howmad2
ID: 38832077
Thank you both.  I will wait for the retention period to end.
0
 

Author Comment

by:howmad2
ID: 38832093
I've requested that this question be closed as follows:

Accepted answer: 0 points for howmad2's comment #a38832077

for the following reason:

Complete and clear solution provided

soory initially closed it wrong should be ok now...
0

Featured Post

Comparison of Amazon Drive, Google Drive, OneDrive

What is Best for Backup: Amazon Drive, Google Drive or MS OneDrive? In this free whitepaper we look at their performance, pricing, and platform availability to help you decide which cloud drive is right for your situation. Download and read the results of our testing for free!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
exchange 2013 10 37
Going to production with MS Exchange 2016 without a DAG - how dumb is it? 3 54
is a device online 4 43
temp profile 5 21
In-place Upgrading Dirsync to Azure AD Connect
A hard and fast method for reducing Active Directory Administrators members.
Attackers love to prey on accounts that have privileges. Reducing privileged accounts and protecting privileged accounts therefore is paramount. Users, groups, and service accounts need to be protected to help protect the entire Active Directory …
This video shows how to use Hyena, from SystemTools Software, to update 100 user accounts from an external text file. View in 1080p for best video quality.

738 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question