tag:blogger.com,1999:blog-9152313422880014915.post4745954497047322020..comments2024-03-05T03:37:01.716-07:00Comments on Nick’s Exchange and Scripting Blog: Delegating Distribution Group Management Via OutlookNick Smithhttp://www.blogger.com/profile/15312621960101025538noreply@blogger.comBlogger18125tag:blogger.com,1999:blog-9152313422880014915.post-30724621544039476122011-10-10T07:57:23.780-06:002011-10-10T07:57:23.780-06:00Did the trick, thanks mate! :)
Btw, the issue we ...Did the trick, thanks mate! :)<br /><br />Btw, the issue we had was that even if the user is set as the "manager" of the list within the Outlook 2007 console, she still wasn't able to make changes.<br /><br />CheersAnonymousnoreply@blogger.comtag:blogger.com,1999:blog-9152313422880014915.post-36600974843041311832011-03-09T07:44:30.602-07:002011-03-09T07:44:30.602-07:00Probably the proper determination would become one...Probably the proper determination would become one of tools from the Inet. But unfortunately I had like issue and only my friend's advice assisted me. He recommended one program, I used it and I'm sure in this or any like trouble it will be effective - <a href="http://www.recoverytoolbox.com/repair_ost_file.html" rel="nofollow">ost file repair</a>.Alexhttps://www.blogger.com/profile/02892788277177092618noreply@blogger.comtag:blogger.com,1999:blog-9152313422880014915.post-14128548105602965382011-01-17T11:25:34.780-07:002011-01-17T11:25:34.780-07:00Hi Nick,
I was wondering if its possible for a se...Hi Nick,<br /><br />I was wondering if its possible for a secuirty group to have permission for all mailboxes.<br /><br />Additionally if there is a way to have it set up so that whenever a new mailbox is set up, the use is already part of this group?<br /><br />Thanks in Advance<br />AbidAbid Sharifnoreply@blogger.comtag:blogger.com,1999:blog-9152313422880014915.post-62672531795520065892010-09-14T12:50:45.560-06:002010-09-14T12:50:45.560-06:00Nick,
Here is my issue. I have a Distro Group tha...Nick,<br /><br />Here is my issue. I have a Distro Group that is in the same domain as the user (who is also the manager of the Distro Group). He has all the permissions he needs to modify users. However when he tries to add or remove the users from the Distro group by using Outlook he gets the error "Changes to the Distribution list Membership could not be saved.You<br />do not have sufficient permission to perform this operation on this object" The issue here is that Exchange is located in a different domain. Example Domain A has distro group and user and Domain B has Exchange. I tested this by creating an account (with the same permissions) and distro group in Domain B and everything worked fine. I can't figure out what permissions I need to give to the Manager to be able to update the distro group. Thanks for any help.<br />ChrisUnknownhttps://www.blogger.com/profile/11165371740218156341noreply@blogger.comtag:blogger.com,1999:blog-9152313422880014915.post-16158761406413716622009-11-23T11:05:04.954-07:002009-11-23T11:05:04.954-07:00I modified the Global Catalog in my domain and now...I modified the Global Catalog in my domain and now all the Outlook clients connect to a GC in a higher domain so no one can update the Distribution groups. Is there a way to force the GC globally?Magalihttps://www.blogger.com/profile/00653051280062935949noreply@blogger.comtag:blogger.com,1999:blog-9152313422880014915.post-3289636464675367892009-06-05T08:55:00.919-06:002009-06-05T08:55:00.919-06:00Was something like this possible in Exchange 2003,...Was something like this possible in Exchange 2003, if so, how was it typically implemented?c13noreply@blogger.comtag:blogger.com,1999:blog-9152313422880014915.post-16437731692405789392009-02-03T01:53:00.000-07:002009-02-03T01:53:00.000-07:00This comment has been removed by a blog administrator.Anonymousnoreply@blogger.comtag:blogger.com,1999:blog-9152313422880014915.post-50296696293174734272008-09-11T13:51:00.000-06:002008-09-11T13:51:00.000-06:00Do you know of a way where I can give a user acces...Do you know of a way where I can give a user access to change ALL the distribution lists? I have about 100 in my organization and I would like 1 user to be able to change all of them.Anonymousnoreply@blogger.comtag:blogger.com,1999:blog-9152313422880014915.post-55602744427409409322008-08-27T13:59:00.000-06:002008-08-27T13:59:00.000-06:00ignacio,If I understand your question correctly......ignacio,<BR/><BR/>If I understand your question correctly... you have Joe, a member of the Marketing distribution group. The Marketing group is a member of the News distribution group. And you want to prevent Joe from receiving emails sent to the News group?<BR/><BR/>To prevent Joe from receiving emails sent to the News group I would suggest rethinking your group membership structure. If the above statement is true, Joe would receive the email sent to the News group by design.<BR/><BR/>--NickNick Smithhttps://www.blogger.com/profile/15312621960101025538noreply@blogger.comtag:blogger.com,1999:blog-9152313422880014915.post-16440346219223482812008-08-23T17:01:00.000-06:002008-08-23T17:01:00.000-06:00Thanks, It works great but I have a question if I ...Thanks, It works great but I have a question if I have a user in different distribution lists how can I stop the inherited to another group in other words if I have Marketing member of News group, How I can add Joe only to Marketing and not to News group.<BR/><BR/>Thanks,Unknownhttps://www.blogger.com/profile/18074375408140573321noreply@blogger.comtag:blogger.com,1999:blog-9152313422880014915.post-81902012221902545852008-08-19T21:43:00.000-06:002008-08-19T21:43:00.000-06:00Hi Nick,I will like to delegate a user to add/remo...Hi Nick,<BR/><BR/>I will like to delegate a user to add/remove membership of a particular distribution group. I have added the permission using Add-Adpermission command and verify that the delegated user has WriteMembers permissions. However when I try to modify the membership using Outlook, I get the "Changes to the distribution list membership cannot be saved. You do not have sufficient permission to perform this operation on this object"<BR/><BR/>I have hardcoded the Outlook client to use a Global Catalog that is in the domain where the Distribution group and the user located. Any other clue?<BR/><BR/>PS : when I run the command Get-MailboxPermission -Identity "DelgatedUser" -User "Distribution Group", I didn't get the permission reported. It returns nothing, but I see the permission in the Active Directory User and Computer.riohttps://www.blogger.com/profile/12976380359455631174noreply@blogger.comtag:blogger.com,1999:blog-9152313422880014915.post-68396775165602890282008-03-04T03:20:00.000-07:002008-03-04T03:20:00.000-07:00Thanks Nick.All is okay now. We hadn't logged off/...Thanks Nick.<BR/><BR/>All is okay now. We hadn't logged off/on to allow the permissions to apply.<BR/><BR/>Mike.Michael Keelhttps://www.blogger.com/profile/13489226491045024515noreply@blogger.comtag:blogger.com,1999:blog-9152313422880014915.post-34366633538911815052008-02-23T18:58:00.000-07:002008-02-23T18:58:00.000-07:00michaelkeel,Welcome to the Exchange world. There ...michaelkeel,<BR/><BR/>Welcome to the Exchange world. There a couple of things will want to check.<BR/><BR/>You can run the following command to verify that the mailbox permissions applied sucessfully:<BR/><BR/>Get-MailboxPermission -Identity "Chemo" -User "Chemo MB Access"<BR/><BR/>You should see that the group has been granted FullAccess to the mailbox. If you don't see any entries, the permissions were not applied successfully.<BR/><BR/>Secondly, was the group "Chemo MB Access" recently created. If you just created the group and added users, you will need to logout/logon with the user account in order for the permissions to apply. The logoff/logon process will detect the user's new group membership.<BR/><BR/>--NickNick Smithhttps://www.blogger.com/profile/15312621960101025538noreply@blogger.comtag:blogger.com,1999:blog-9152313422880014915.post-26740092212338203472008-02-22T08:02:00.000-07:002008-02-22T08:02:00.000-07:00Hi Nick,Thanks for that information.I'm new to Exc...Hi Nick,<BR/><BR/>Thanks for that information.<BR/><BR/>I'm new to Exchange as I was a Notes Admin in my previous life!!<BR/><BR/>I have a slight problem when trying to grant mailbox access in Exchange 2007 (vanilla) to a group. <BR/><BR/>Mailbox is called Chemo and group (Security group) is called Chemo MB Access. I've entered three shell commands...<BR/>1. add-mailboxpermission -identity 'Chemo' -user 'Chemo MB Access' -extendedrights 'fullaccess'<BR/>2. add-mailboxpermission -identity 'Chemo' -user 'Chemo MB Access' -extendedrights 'sendas'<BR/>3. add-adpermission -identity 'Chemo' -user 'Chemo MB Access' -extendedrights 'send as'<BR/><BR/>The commands worked and gave me no errors.<BR/><BR/>However, users in that group cannot access the mailbox. Message says 'Cannot display the folder. Microsoft office Outlook cannot access the specified folder location'. They've closed and re-opened, but still no luck.<BR/><BR/>I may have to grant specific user access to see if that works.Michael Keelhttps://www.blogger.com/profile/13489226491045024515noreply@blogger.comtag:blogger.com,1999:blog-9152313422880014915.post-30854417407178322262008-01-22T08:30:00.000-07:002008-01-22T08:30:00.000-07:00Yannick,I found a blog post describing your proble...Yannick,<BR/><BR/>I found a blog post describing your problem at <A HREF="http://blogs.msdn.com/mstehle/archive/2007/01/25/kb-preview-error-no-windows-powershell-snap-ins-when-loading-exchange-powershell-snap-in.aspx" REL="nofollow">http://blogs.msdn.com/mstehle/archive/2007/01/25/kb-preview-error-no-windows-powershell-snap-ins-when-loading-exchange-powershell-snap-in.aspx</A>.<BR/><BR/>My suggestion would be to make sure you are calling the 64-bit version of Powershell and if possible compile your application as 64-bit as well.<BR/><BR/>--NickNick Smithhttps://www.blogger.com/profile/15312621960101025538noreply@blogger.comtag:blogger.com,1999:blog-9152313422880014915.post-39141985522180754552008-01-20T16:08:00.000-07:002008-01-20T16:08:00.000-07:00Hello, i am using exch2007 + w2003r2 x64, i want t...Hello, <BR/>i am using exch2007 + w2003r2 x64, i want to call a batch file like : <BR/><BR/>C:\WINDOWS\system32\WindowsPowerShell\v1.0\PowerShell.exe -PSConsoleFile "C:\Program Files\Microsoft\Exchange Server\bin\exshell.psc1" -command "Get-Group -identity testgroup | Set-Group"<BR/><BR/>, this from a win32 application, if i call this file from a CMD command line, it works fine, but if my application call it with a shellexecute function i get this : <BR/><BR/><BR/>WARNING: The following errors occurred when loading console C:\Program<BR/>Files\Microsoft\Exchange Server\bin\exshell.psc1:<BR/>Cannot load Windows PowerShell snap-in<BR/>Microsoft.Exchange.Management.PowerShell.Admin because of the following error:<BR/>No Windows PowerShell Snap-ins are available for version 1.<BR/>Command "Get-Group -identity testgroup | Set-Group" could not be executed because<BR/> some Windows PowerShell snap-ins did not load.<BR/><BR/>if i test my application with the same batch file on a x86 demoversion of exchange2007 in a virtual PC its works !!!<BR/><BR/>do you have an idea ? <BR/> <BR/>Thank youAnonymousnoreply@blogger.comtag:blogger.com,1999:blog-9152313422880014915.post-25349164342947326692007-11-16T08:40:00.000-07:002007-11-16T08:40:00.000-07:00Nikolai,I have never testing this scenario before....Nikolai,<BR/><BR/>I have never testing this scenario before. I am not sure if granting permissions to the resource forest account to modify group membership will work. In fact, I kinda doubt it will. However, granting permissions to the user's real domain account will allow them to edit the membership.<BR/><BR/>If you do get a chance to test this, please report back your findings.<BR/><BR/>--NickNick Smithhttps://www.blogger.com/profile/15312621960101025538noreply@blogger.comtag:blogger.com,1999:blog-9152313422880014915.post-69554951206825465542007-11-16T05:22:00.000-07:002007-11-16T05:22:00.000-07:00Hi Nick,Do you think this will also work if you ho...Hi Nick,<BR/>Do you think this will also work if you host Exchange in a resource forest? Let's say that a disabled mailbox- enabled user account in the resource forest is linked to the associated external account from the user forest. Will the user in the user forest be able to manage a distribution group in the resource forest, assuming only the disabled mailbox- enabled user account has write permissions to change membership of this group?<BR/>Thanks in advance,<BR/>NikolaiAnonymousnoreply@blogger.com