Exchange 2010 - The right way to add John Doe Jr

Posted on 2014-08-07
Last Modified: 2014-08-08
Why did Microsoft automatically add a '2' to my primary SMTP address? What is this called and where is it documented? Even after I fixed the problem why did OWA have temporary permissions problems on the mailbox:

"The Active Directory resource couldn't be accessed. This may be because the Active Directory object doesn't exist or the object has become corrupted, or because you don't have the correct permissions."?

I created my own fix, but I'd like to throw this out for the experts.

John Doe has been working for Acme Consulting for several years.  He has a domain account on acme.local and a mailbox in Exchange 2010. John's son, John Doe Jr., does some contract work and eventually earns full employment. On John Doe Jr's first day as a full-time employee I get a request to provide him with an Exchange mailbox.

I right-click the existing John Doe and rename to "John Doe Sr." I also change the full name field.  I do not change first or last.

I right-click John Doe Sr and copy the account permissions to a new account. The new AD account is acme\jdoejr. The new first name is John, and the new last name is Doe, just like his dad, but the full name is different than dad, "John Doe Jr".

At this point I satisfied all of my needs, but I will trigger some artificial intelligence from Microsoft. When I add the mailbox, the Exchange 2010 wizard fails to tell me that my primary SMTP address is jdoejr2@acme.local instead of jdoejr@acme.local.  I start using the OWA account to send test messages.

The test messages reveal this very unattractive primary SMTP address. Okay, okay, okay, this needs to be fixed. I delete the mailbox from Exchange, which also kills the AD object.  Junior is now out of the system, but his mailbox is orphaned.

In my next attempt I  reduce the first name to "J".  Now I don't have to worry about Microsoft artificial intelligence adding an extra '2' to my primary SMTP address.

My new J Doe Jr looks good in AD. I switch to the Exchange Management Console and I attached the orphaned mailbox. The wizard claims success.

Unfortunately when I use jdoejr@acme.local authenticate with OWA I get this message, "The Active Directory resource couldn't be accessed. This may be because the Active Directory object doesn't exist or
the object has become corrupted, or because you don't have the correct permissions."  After 15 minutes there was no change.

I had more important things to do for a few hours. When I returned the AD permissions had somehow propagated correctly and everything was fine. AD is running on the Exchange server and one other DC.

In summary....
Can I turn off the automatic '2' on the SMTP address?
Why did OWA have to wait to get the proper permissions?

Thanks in advance!
Question by:kengreg
    LVL 18

    Expert Comment

    I think the "2" due to the existing of jdoejr@acme.local. You may check the older Joh  Doe, what is the email addressess assign to him (primary/scondary SMTP).

    The reason why OWA need wait because Exchange is depending on Active Directory. Normally, Exchange will refresh the cache permission (Active Directory permission) every 2 hours.
    LVL 17

    Expert Comment

    by:Premkumar Yogeswaran
    As suriyaehnop said, this would happen if any other user having the same smtp address in primary or secondary addresses.

    Use any of the below commands to find the user having the smtp address.

    Get-Mailbox jdoejr@acme.local

    Open in new window

    Get-Mailbox –Filter {Emailaddresses –Like "jdoejr@acme.local"} | Select Name, Emailaddresses

    Open in new window

    LVL 63

    Accepted Solution

    The Exchange wizard doesn't tell you anything about email addresses. The email address is applied later via the email address policy.
    Exchange caches permissions - therefore it can take two hours or more for a change to be fully seen by the internet.
    You can't stop the 2 from being applied if the email address clashes. The mistake was setting the same surname - you should have put the Jr bit in there and Exchange would have done the rest.


    Author Comment

    Suriyaehnop and Premkumar,
    I looked for the existence of jdoejr on the father's mailbox.  He was simply jdoe@acme.local.

    I'm convinced that Exchange added the 2 based only on first & last, and not because there was a conflicting SMTP address.

    My solution was alter the first name. Simon's solution is alter the last name. I think it's one or the other.

    I'm still looking around.
    LVL 63

    Expert Comment

    by:Simon Butler (Sembee)
    "I'm convinced that Exchange added the 2 based only on first & last, and not because there was a conflicting SMTP address."

    That is what Exchange works on for building the email address. The display name is just that - a display name. Therefore if you put the same first and surname in, then Exchange would treat that as a conflict and add the 2 to the address. That behaviour cannot be changed, other than by ensuring you don't conflict.


    Author Closing Comment

    Exchange considers the first name and last name fields when looking for conflicts.

    Write Comment

    Please enter a first name

    Please enter a last name

    We will never share this with anyone.

    Featured Post

    IT, Stop Being Called Into Every Meeting

    Highfive is so simple that setting up every meeting room takes just minutes and every employee will be able to start or join a call from any room with ease. Never be called into a meeting just to get it started again. This is how video conferencing should work!

    Set up iPhone and iPad email signatures to always send in high-quality HTML with this step-by step guide.
    In this video we show how to create a Contact in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.: First we need to log into the Exchange Admin Center. Navigate to the Recipients >> Contact ta…
    The basic steps you have just learned will be implemented in this video. The basic steps are shown to configure an Exchange DAG in a live working Exchange Server Environment and manage the same (Exchange Server 2010 Software is used in a Windows Ser…

    759 members asked questions and received personalized solutions in the past 7 days.

    Join the community of 500,000 technology professionals and ask your questions.

    Join & Ask a Question

    Need Help in Real-Time?

    Connect with top rated Experts

    10 Experts available now in Live!

    Get 1:1 Help Now