Active Dirctory 2008r2 user account was deleted by accident but Exchange 2007 information store still exists. Is there a way to rebuild and reassociated account to email

We have a Windows 2008r2 domain and use Exchange 2007. A user account was accidently deleted but no one has touched the Exchange server yet. I see an entry for the account on exchange but with no AD account associated with it, I just get errors if I click it on. I already spoke with our backup provider and apparently there is no way to restore a single AD account. Is there a way to rebuild a new AD account and associate it with the email store that exists from the old AD account?? Or any other way out of this?
Who is Participating?

[Product update] Infrastructure Analysis Tool is now available with Business Accounts.Learn More

I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

Will SzymkowskiSenior Solution ArchitectCommented:
You can in fact restore AD objects using ldp.exe. If you delete the Active Directory account then the mailbox goes into a disconnected state. You can create a new account and map it to the mailbox which is disconnected but it is easy enough to restore AD Objects using LDP.exe

Once the AD Account has been restored then you will need to re-attach the mailbox to it as well. The Active Directory SID, GUID will all remain the same.

See the link below which has full details on how to do this.


Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
If worse comes to worse, you can always just create a new Account and associate the mailbox with the new account.  Exchange will not care that the account sid has changed.

Thor2923Author Commented:
I am going with option 1 and trying to recover using LDP. I keep getting the following error and DELETED OBJECTS is empty. Am I doing something obviously wrong??

 = ldap_set_option(ld, LDAP_OPT_ENCRYPT, 1)
res = ldap_bind_s(ld, NULL, &NtAuthIdentity, NEGOTIATE (1158)); // v.3
      {NtAuthIdentity: User='NULL'; Pwd=<unavailable>; domain = 'NULL'}
Authenticated as: 'xxx\jxxk'.
Expanding base 'CN=Deleted Objects'...
ldap_get_next_page_s failed: 1
Server error: 000020D6: SvcErr: DSID-031007DB, problem 5012 (DIR_ERROR), data 0

Error 0x20D6 No superior reference has been configured for the directory service. The directory service is therefore unable to issue referrals to objects outside this forest.
Result <1>: 000020D6: SvcErr: DSID-031007DB, problem 5012 (DIR_ERROR), data 0

Getting 0 entries:
Thor2923Author Commented:
something is definitely not right. I created and deleted an object just to see if I Could get it to display with LDP and no luck. Any ideas? I am a domain admin, BTW
Thor2923Author Commented:
I had to use a combo of both solutions. Once I brought back the AD account it had to reconnect it with the exchange account
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today

From novice to tech pro — start learning today.