Solved

Deleting Exchange 2010 Mailbox also Deletes AD Account

Posted on 2013-12-30
4
1,557 Views
Last Modified: 2013-12-30
I have someone working in my team that has a task of taking care of accounts from separated users.  Whenever he removes a mailbox in Exchange 2010 the user's AD account is also deleted.  We need to be able to retain the AD account and keep it disabled.  

What needs to be done?
0
Comment
Question by:iNetSystem
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
4 Comments
 
LVL 22

Accepted Solution

by:
Nick Rhode earned 400 total points
ID: 39746396
Delete and Disable get confused here when it comes to the mailboxes.  Delete on exchange removes the mailbox and deletes the AD account.  Disable will move the mailbox to the disconnected state and from there you can delete the mailbox or wait for exchange to purge it (typically 30 days or so)

So if you wanted to disable the user account and delete a mailbox you would disable the user in AD and disable the mailbox in exchange.
0
 
LVL 53

Assisted Solution

by:Will Szymkowski
Will Szymkowski earned 100 total points
ID: 39746399
As NRhode has stated above this will not disable the Active Directory account so you will need to make sure that the account is disabled as well if this is what your intent is.

Will.
0
 
LVL 13

Expert Comment

by:ylandrum
ID: 39746426
Your team member needs to disable the mailbox first; that will detach it from the AD account and remove all Exchange attributes from the account:

http://technet.microsoft.com/en-us/library/aa997210(v=exchg.141).aspx

He could stop right there and the mailbox will delete on its own after 30 days.  If you need it gone sooner, he can then use the Remove-Mailbox cmdlet:

http://technet.microsoft.com/en-us/library/aa995948(v=exchg.141).aspx

So if he runs the Disable-Mailbox cmdlet first, he can then use Remove-Mailbox with the Database and StoreMailBoxIdentity parameters. Since the mailbox was disconnected from the AD account by the first command, the second command will not delete the AD account.
0
 
LVL 13

Expert Comment

by:ylandrum
ID: 39746428
Oh, too slow!
0

Featured Post

NFR key for Veeam Agent for Linux

Veeam is happy to provide a free NFR license for one year.  It allows for the non‑production use and valid for five workstations and two servers. Veeam Agent for Linux is a simple backup tool for your Linux installations, both on‑premises and in the public cloud.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This article will help to fix the below error for MS Exchange server 2010 I. Out Of office not working II. Certificate error "name on the security certificate is invalid or does not match the name of the site" III. Make Internal URLs and External…
Here's a look at newsworthy articles and community happenings during the last month.
This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …
Are you ready to implement Active Directory best practices without reading 300+ pages? You're in luck. In this webinar hosted by Skyport Systems, you gain insight into Microsoft's latest comprehensive guide, with tips on the best and easiest way…
Suggested Courses

627 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question