Hide from GAL, but remain active mailbox
Exchange 2007 SP3
Is it possible to hide a mailbox from the GAL, but still have it be an active mailbox that a user can access.
Problem: A user left the company but has an agreement with management that his mailbox will remain active while he looks for a new job (i guess an "@CompanyName.com" address looks better on a resume than a gmail or yahoo address.) Anyway, management
doesn't want that user to show up in the GAL.
My initial response was to change the display name to the users initials. It doesn't really hide him from the GAL, but it doesn't display his name as it did when he was still working here. The problem is that his initials now show up in the From
field when he emails somebody. He want's it to be his full name instead. If i hide it outright then he can't login at all ('mailbox does not exist.')
Thanks in advance!
June 26th, 2012 3:11pm
Ok, i *think* i might have an answer, but not sure. I can create a new Address List and let his mailbox live there. Everyone uses the GAL, so they'd only see it if they changed their default address lists manually. Problem is that i'm
not sure how to remove him from the GAL and add him to the new one. It looks like the only way to do that is through recipient filters. Is there a mechanism for adding mailboxes to a particular address manually, like picking it out of a list or
something?
Free Windows Admin Tool Kit Click here and download it now
June 26th, 2012 4:02pm
I believe what i just did should take care of it, unless someone sees a problem with my solution...
1. Created a new address list called "External"
2. Recipient type = UserMailbox, ConditionalDepartment = External
3. Changed the users department attribute to: External
4. Went into ADSIEDIT and removed user from all address lists (including GAL) except External.
Since he's the only one in the company with "External" listed as their department, he's the only one that shows up in the External address list.
It's not perfect. A user can still go into Outlook and change their address list from GAL to External and see his name, but they'd have to do that specifically. He's not in the GAL anymore but his address is still there to be used.
I'd still appreciate any feedback. This might not be the best solution, but it seems to be working for now.
June 26th, 2012 5:10pm
On Tue, 26 Jun 2012 19:02:46 +0000, blinkyjesus wrote:
>
>
>Exchange 2007 SP3
>
>Is it possible to hide a mailbox from the GAL, but still have it be an active mailbox that a user can access.
>
>Problem: A user left the company but has an agreement with management that his mailbox will remain active while he looks for a new job (i guess an "@CompanyName.com" address looks better on a resume than a gmail or yahoo address.) Anyway, management doesn't
want that user to show up in the GAL.
>
>My initial response was to change the display name to the users initials. It doesn't really hide him from the GAL, but it doesn't display his name as it did when he was still working here. The problem is that his initials now show up in the From field
when he emails somebody. He want's it to be his full name instead. If i hide it outright then he can't login at all ('mailbox does not exist.')
What e-mail client is that person using?
If it's Outlook the person only has to visible in the GAL long enough
to create the profile. Once the legacyExchangeDN is known and stored
in the profile I don't think the mailbox has to be visible in the GAL.
---
Rich Matheisen
MCSE+I, Exchange MVP
--- Rich Matheisen MCSE+I, Exchange MVP
Free Windows Admin Tool Kit Click here and download it now
June 26th, 2012 10:25pm
Why just not to hide it from lsit?
June 27th, 2012 1:58am
It's OWA. Is that a problem?
Free Windows Admin Tool Kit Click here and download it now
June 27th, 2012 8:40am
Thanks, but as i mentioned if i hide the user account from the GAL then they're unable to login to the mailbox.
June 27th, 2012 8:40am
1. OWA Uses GAL or OAB, which is synchronized in a while (depends on policy)
2. If you place "V" in a hide from Exchange address list it does not affect log on in any way--------------------------------------------------------- If you find this post helpful, spend a second to vote up. Smoking~~
Free Windows Admin Tool Kit Click here and download it now
June 27th, 2012 8:43am
On Wed, 27 Jun 2012 12:31:54 +0000, blinkyjesus wrote:
>It's OWA. Is that a problem?
Yes.
---
Rich Matheisen
MCSE+I, Exchange MVP
--- Rich Matheisen MCSE+I, Exchange MVP
June 27th, 2012 11:18pm
On Wed, 27 Jun 2012 12:35:11 +0000, SuperUzer wrote:
>1. OWA Uses GAL or OAB, which is synchronized in a while (depends on policy)
OWA doesn't (and cannot) use the OAB.
>2. If you place "V" in a hide from Exchange address list it does not affect log on in any way
That's not true. If the name is hidden from the GAL then it isn't
possible for the client to locate the name, and that has to happen for
the legacyExchangeDN to be known.
---
Rich Matheisen
MCSE+I, Exchange MVP
--- Rich Matheisen MCSE+I, Exchange MVP
Free Windows Admin Tool Kit Click here and download it now
June 27th, 2012 11:22pm
On Wed, 27 Jun 2012 12:35:11 +0000, SuperUzer wrote:
>1. OWA Uses GAL or OAB, which is synchronized in a while (depends on policy)
OWA doesn't (and cannot) use the OAB.
>2. If you place "V" in a hide from Exchange address list it does not affect log on in any way
That's not true. If the name is hidden from the GAL then it isn't
possible for the client to locate the name, and that has to happen for
the legacyExchangeDN to be known.
---
Rich Matheisen
MCSE+I, Exchange MVP
--- Rich Matheisen MCSE+I, Exchange MVP
Rich:
i don't know about LegacyExchangeDN, but OWA for example will work very fine->
If you find this post helpful, spend a second to vote up. Smoking~~
June 28th, 2012 1:29am