orphaned SID (Full Version)

All Forums >> [Microsoft Exchange 2003] >> Server Security



Message


yourisd -> orphaned SID (24.Apr.2007 9:26:30 AM)

I have a group of AD users with mailboxes.  In the Exchange Advanced tab under mailbox rights I have an orphaned SID.  I cannot remove it due to inheritance but do not have the option to break inheritance.  I believe it is left over from an old admin on our network.   Is there a way to remove this SID?  Thanks 

Exchange 2003 SP2




jchong -> RE: orphaned SID (25.Apr.2007 12:23:39 PM)

Yes, you have to go to the source of where it's inhereting from. Work your way up through the store, then to the top of ESM security tab. If you can't remove it from at top of ESM, you will have to go into Adsiedit.

1. open esm
2. right click your org name at top, properties, security tab, find the sid and remove.

If you don't see the security tab,

Run Regedit then navigate to the HKCU (not the HKLM):
HKEY_Current_User\Software\Exchange\ExAdmin.
Once you reach the above folder in the registry, select New, REG_DWORD called ShowSecurityPage.
Set the value to 1 (one) if you want the tab to display.
Re-open the Exchange System Manger and observe the new Security tab.

James Chong (MVP)
MCSE | M+, S+, MCTS, Security+
msexchangetips.blogspot.com




Page: [1]