Avatier Identity Management Suite



Similar documents
Avatier Identity Management Suite

Avatier Identity Management Suite

Microsoft Office 365 online archive features and FAQs

MANAGING OUTLOOK PERSONAL DATA FILES

Prepared by Mythtech Limited OFFICE 365 MIGRATION MANUAL GUIDELINE

Z-Term V4 Administration Guide

Using etoken for Securing s Using Outlook and Outlook Express

Using Exclaimer Signature Manager with Office 365

Configuring your client to connect to your Exchange mailbox

Installation Manual UC for Business Unified Messaging for Exchange 2010

Trial environment setup. Exchange Server Archiver - 3.0

Administration Guide. . All right reserved. For more information about Specops Gpupdate and other Specops products, visit

LT Auditor Windows Assessment SP1 Installation & Configuration Guide

Setup non-admin user to query Domain Controller event log for Windows2003

Erado Archiving & Setup Instruction Microsoft Exchange 2007 Push Journaling

Exchange Server Backup and Restore

Mail Attender Version

How To Export Data From Exchange To A Mailbox On A Pc Or Macintosh (For Free) With A Gpl Or Ipa (For A Free) Or Ipo (For Cheap) With An Outlook 2003 Or Outlook 2007 (For An Ub

NAS 206 Using NAS with Windows Active Directory

Specops Command. Installation Guide

A Transend Corporation White Paper Preparing Microsoft Exchange Server for Migration

OUTLOOK ANYWHERE CONNECTION GUIDE FOR USERS OF OUTLOOK 2010

PREMIUM MAIL ADMINISTRATOR GUIDE

GETTING STARTED Exclaimer Signature Manager Outlook Edition Overview How does it work? But That's Not All...

Bucks PSN. Export & Import BLP Mail Mailbox to and from Outlook Data File (.pst) Version 1.0

User Guide - Exchange Mailbox Archiver Agent

Apple Mail Outlook Web Access (OWA) Logging In Changing Passwords Mobile Devices Blackberry...

Microsoft Exchange Hosted Archive (MEHA)

Exclaimer Mail Archiver User Manual

ACTIVE DIRECTORY DEPLOYMENT

Documentation. OpenScape Office V3 OpenScape Office MX V2 Linking to MS Exchange Server 2010

Outlook Web App (Online)... 3 Outlook 2013 (Desktop) Apple Mail Mobile Devices Android iphone... 40

Archive Attender Version 3.5

Archive Manager Exchange Ed - Advanced Install

INSTALLATION GUIDE Version 1.2

Outlook Hosted Exchange Account Configuration

About Archiving for Microsoft Exchange Server

NearPoint Archive and Retrieval System

Integrating Trend Micro OfficeScan 10 EventTracker v7.x

Microsoft IT Camp Hands-On Lab

EXAM TS: Microsoft Exchange Server 2010, Configuring. Buy Full Product.

Cisco TelePresence Management Suite Extension for Microsoft Exchange

Cloud Services ADM. User Interface Guide

Setup Guide for Exchange Server

Active Directory Management. User Interface Guide

Microsoft Office 365 how to make a booking for meeting rooms and resource calendars

Technical Note. Configuring Outlook Web Access with Secure WebMail Proxy for eprism

How to Install and Configure ArchiveOne Express

Exchange 2010 PKI Configuration Guide

Step-By-Step Guide to Deploying Lync Server 2010 Enterprise Edition

AIMS Installation and Licensing Guide

VITAL SIGNS Quick Start Guide

Unity Error Message: Your voic box is almost full

Personal Folders Backup

User Guide. Please visit the Helpdesk website for more information:

Configuration Guide for Exchange 2003, 2007 and 2010

CONFIGURING TARGET ACTIVE DIRECTORY DOMAIN FOR AUDIT BY NETWRIX AUDITOR

Instructions: Configuring Outlook 2003 with Exchange 2010 on the FIUMail

Talk-101 User Guides Mailgate Administration Guide

LAB 1: Installing Active Directory Federation Services

Introduction to PowerShell Integration

Configure Single Sign on Between Domino and WPS

Searching for accepting?

ArcMail Technology Defender Mail Server Configuration Guide for Microsoft Exchange Server 2003 / 2000

Migrating From Bobcat Mail To Google Apps (Using Microsoft Outlook and Google Apps Sync)

Outlook 2007: Managing your mailbox

HOW TO SILENTLY INSTALL CLOUD LINK REMOTELY WITHOUT SUPERVISION

RoomWizard Synchronization Software Manual Installation Instructions

Installing and Configuring Login PI

How to make a backup copy of a.pst file

Exchange Mailbox Protection Whitepaper

Exchange Mailbox Protection

Cloud. Hosted Exchange Administration Manual

Migrating From WVWC Mail to Google Apps

AD Certificate Distribution

Download and Install the Citrix Receiver for Mac/Linux

Archiving Troubleshooting Guide

How to set up Outlook Anywhere on your home system

Remote Access with Outlook 2003 Using RPC over HTTPS

SonicWALL CDP 5.0 Microsoft Exchange User Mailbox Backup and Restore

PRODUCT WHITE PAPER LABEL ARCHIVE. Adding and Configuring Active Directory Users in LABEL ARCHIVE

Upgrading User-ID. Tech Note PAN-OS , Palo Alto Networks, Inc.

Click Studios. Passwordstate. Password Discovery, Reset and Validation. Requirements

20342 Advanced Solutions of Microsoft Exchange Server

Setting Up Exchange. In this chapter, you do the following tasks in the order listed:

Snow Active Directory Discovery

Flexbox (Zimbra) 5.09 Connector for Outlook BACKUP BEFORE YOU BEGIN TO UPGRADE!

Outlook 2010 and 2013

HOW TO SETUP EVOKO ROOM MANAGER EVO WITH EXCHANGE

Transition from Pegasus Mail To Exchange/Outlook 2003

Cisco TelePresence Management Suite Extension for Microsoft Exchange

Accessing the Media General SSL VPN

Dell One Identity Cloud Access Manager How to Configure Microsoft Office 365

Using Management Shell Reports and Tracking User Access in the NetVanta UC Server

Secrets of Event Viewer for Active Directory Security Auditing Lepide Software

Installing Microsoft Outlook on a Macintosh. This document explains how to download, install and configure Microsoft Outlook on a Macintosh.

Administrator s Guide

Shavlik Patch for Microsoft System Center

Transcription:

Avatier Identity Management Suite Integrating Exchange 2010 With Identity Enforcer Version 9 2603 Camino Ramon Suite 110 San Ramon, CA 94583 Phone: 800-609-8610 925-217-5170 FAX: 925-217-0853 Email: support@avatier.com Page 1

Table of Contents 1 OVERVIEW... 3 2 PREREQUISITES... 4 3 GRANTING RECIPIENT MANAGEMENT EXCHANGE RBAC ROLE TO THE AIMS SERVICE ACCOUNT... 5 3.1 USING THE EXCHANGE MANAGEMENT CONSOLE TO GRANT RECIPIENT MANAGEMENT ROLE TO THE AIMS SERVICE ACCOUNT... 5 4 SETTING THE REMOTE EXECUTION POLICY ON THE AIMS SERVER... 8 5 CONFIGURING THE EXCHANGE CONNECTION SETTINGS IN IDENTITY ENFORCER... 9 6 ARCHIVING EXCHANGE 2010 SETUP... 10 Page 2

1 Overview Avatier's Identity Management Suite Identity Enforcer module can be integrated with Microsoft Exchange 2010 and provide mailbox provisioning and at the time of user account creation, and the management of Exchange 2010 mailbox properties when managing a user through the Identity Enforcer client. On user termination, AIMS can create a.pst archive of the contents of the user's Exchange mailbox, and move the the.pst file anywhere on your network for safe keeping. Page 3

2 Prerequisites The following prerequisites are required for integrating the Avatier Identity Management Suite's Identity Enforce module with Exchange 2010: 1. AIMS 9.0 must be installed and licensed. 2. Power Shell 2.0 must be installed on the AIMS server. 3. The Exchange Client Access Server must be running Exchange 2010 SP1 with Post SP1 Rollup 5 or higher. 4. A Windows AD account must be granted the "Recipient Management" Exchange 2010 RBAC role. This can be the AIMS Service account, or any other Active Directory account. 5. The name of the Exchange 2010 server that hold the Client Access Server role in the Exchange organization must be known. 6. AIMS is properly configured to provide the Exchange 2010 connection information to the Client Access Server from step 4. 7. The Active Directory resource containers in AIMS are configured to allow Exchange 2010 integration. 8. The Remote Script Execution policy on the AIMS server is set to allow remote signed scripts to execute. Page 4

3 Granting Recipient Management Exchange RBAC Role to the AIMS Service Account Granting of the proper permissions to create, manage and archive Exchange 2010 mailboxes through Identity Enforcer can be done via the Exchange 2010 Management Console. 3.1 Using the Exchange Management Console To Grant Recipient Management Role to the AIMS Service Account 1. Launch the Exchange Management Console, and select the Toolbox from the tree, then double-click on the Role Based Access Control (RBAC) User Editor link. Page 5

2. Outlook Web Access will launch. Logon to the OWA as an Exchange 2010 Administrator. 3. Double Click the "Recipient Management" Link in the center column. Page 6

4. Scroll the bottom of the display and click the "Add" button in the Members section 5. Search for the account you wish to grant the Recipient Management Role to, then click the "Add" button at the bottom of the screen. Once the account is added to the box, click the "Ok" Button. 6. Click the "Save" Button on the Recipient Management screen. 7. Close your OWA session, then exit the Exchange Management Console. Page 7

4 Setting the Remote Execution Policy on the AIMS Server In order to allow the AIMS server to perform remote PowerShell script execution, the execution policy of the AIMS server needs to be altered from the default setting of not allowed. 1. Log on to the AIMS server as a domain administrator. 2. Launch the Power Shell interface (Start / Programs / Administrative Tools / PowerShell Modules). 3. In the PowerShell interface, type the following command: set-executionpolicy - remotesigned 4. Exit the Windows PowerShell interface. Page 8

5 Configuring the Exchange Connection Settings in Identity Enforcer To configure Identity Enforcer to perform Exchange 2010 functions, you must provide the connection information for the account that was granted the Recipient Management RBAC role, and connect to the server that holds the Exchange Client Access Server role for the Exchange 2010 Organization. 1. Logon to the AIMS Configuration user interface 2. Navigate to AIMS / Security 3. Scroll to the bottom of the AIMS / Security page to the Exchange 2010 Integration section. 4. Enter the name of the Exchange server that holds the Client Access Server role in the Exchange Organization. 5. Specify the user account that was granted the Recipient Management Exchange RBAC permissions. 6. Enter the password for the account that was granted the Recipient Management Exchange RBAC permissions. 7. Click the "Test" Button. 8. If the test was successful, click the "Save" button at the top of the screen. Page 9

6 Archiving Exchange 2010 Setup AIMS can create a PST archive for an account that is being disabled or deleted. In order to create the PST file, the Exchange server that holds the Client Access Server role in the Exchange Organization must be at Exchange 2010 SP1 with post SP1 rollup 5 or higher. The post SP1 rollup 5 patch added a PowerShell cmdlet that is needed to successfully create the archive file. If your Exchange servers are at the correct version level, you must create a special Exchange Management role assignment for the account specified in the AIMS Exchange 2010 connection configuration in section 5 of this document. 1. Logon to any Exchange server in the Exchange Organization as an Exchange Administrator. 2. Launch the Exchange Management Shell. 3. In the Exchange Management Shell interface type the following command: New-ManagementRoleAssignment Role Mailbox Import Export User yourdomain\useraccount Where: yourdomain\ = the NetBIOS name of the domain of the account used for the Identity Enforcer Exchange 2010 connection. UserAccount = the account specified for the Identity Enforcer Exchange 2010 connection. 4. Close the Exchange 2010 Management Shell. Page 10