Solved

Issues setting up permissions on Exchange for BesAdmin account

Posted on 2015-01-28
1
72 Views
Last Modified: 2015-02-06
hi guys,

We have two domains, us.fc.local and uk.fc.local. We have a BesAdmin account set up with a mailbox on each of them.

The environment on uk.fc.local works perfectly fine without issues.

However, we are now setting up a Blackberry Enterprise Express server on the us.fc.local and I'm going through all of those steps.

I opened up Exchange management shell and types:

Get-MailboxDatabase | Add-ADPermission -User "BESAdmin" -AccessRights ExtendedRight -ExtendedRights Receive-As, ms-Exch-Store-Admin, ms-Exch-Store-Visible.


And the error I receive is:

"There are multiple users or groups matching the identity "BESAdmin". Please specify a unique value.
    + CategoryInfo          : InvalidData: (:) [Add-ADPermission], ManagementObjectAmbiguousException
    + FullyQualifiedErrorId : 3D79D923,Microsoft.Exchange.Management.RecipientTasks.AddADPermission
    + PSComputerName        : fcussrmail.us.fc.local"



I'm assuming this has something to do with telling the command to look at the BesAdmin account on the actual us.fc.local domain?

How can I do this correctly?

Thanks for your help

Yashy
0
Comment
Question by:Yashy
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
1 Comment
 
LVL 2

Accepted Solution

by:
NICK S earned 500 total points
ID: 40575881
Try Set-ADServerSettings -PreferredServer "server name" before you ran this command, Get-ADServerSettings | fl should show you the current domain controller settings.
0

Featured Post

Independent Software Vendors: We Want Your Opinion

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

After seeing many questions for JRNL_WRAP_ERROR for replication failure, I thought it would be useful to write this article.
This process allows computer passwords to be managed and secured without using LAPS. This is an improvement on an existing process, enhanced to store password encrypted, instead of clear-text files within SQL
This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …
Attackers love to prey on accounts that have privileges. Reducing privileged accounts and protecting privileged accounts therefore is paramount. Users, groups, and service accounts need to be protected to help protect the entire Active Directory …
Suggested Courses

628 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question