To create a new security group and to add accounts to this group, follow these steps:
- Click Start, point to Programs, point to Microsoft Exchange, and then click Active Directory Users and Computers.
- Expand your domain name.
- Right-click the organizational unit or the container where you want to create the new security group, point to New, and then click Group.
- In the Group name box, type a name for the group.
- Under Group type, make sure that the Security option is selected.
- Click Next two times, and then click Finish.
- Right-click the group that you created, and then click Properties.
- Click the Members tab, and then click Add.
- In the Select Users, Contacts, or Computers dialog box, add the accounts or the groups that you want to use to run the ExMerge utility, and then click OK two times.
Note If you are running Exchange on a Microsoft Windows Server 2003-based computer, the list of accounts and groups does not appear in the Select Users, Contacts, or Computers dialog box. To locate the user account or the security group, follow these steps: - In the Select Users, Contacts, or Computers dialog box, click Advanced, and then click Find Now.
- Locate and then click the account or the security group in the Search results list, and then click OK.
- Delegate the Exchange View Only Administrator role of the related administrative group to the security group that you created:
- On the Exchange computer, click Start, point to Programs, point to Microsoft Exchange, and then click System Manager.
- If administrative groups are enabled, expand Administrative Groups, and then expand your administrative group.
- Right-click the related administrative group, and then click Delegate control.
- In Exchange Administration Delegation Wizard, click Next, and then click Add.
- Click the security group that you just created in the Group box, click Exchange View Only Administrator in the Role box, and then click OK.
- Click Next, and then click Finish.
To grant mailbox permissions to the security group that you created, follow these steps:
- On the Exchange computer, click Start, point to Programs, point to Microsoft Exchange, and then click System Manager.
- If administrative groups are enabled, expand Administrative Groups, and then expand your administrative group.
-
Expand Servers, expand your Exchange computer, and then expand the storage group that contains the mailbox store that you want to use with the ExMerge utility. For example, expand First Storage Group.
- Right-click the mailbox store that you want to use with the ExMerge utility, and then click Properties.
- Click the Security tab.
- Click Add.
- In the Select Users, Contacts, or Computers dialog box, add the security group that you created earlier, and then click OK two times.
When you add the security group, the Allow permission check box is automatically selected for all permissions on the mailbox store. This includes the Receive As and the Send As permissions that are required for the accounts that will use the ExMerge utility to access all mailboxes in the mailbox store.
For more information about how Exchange 2000 and Exchange 2003 use permissions to control access to objects in the Exchange store, visit the following Microsoft Web site to download the "Working with Store Permissions in Microsoft Exchange 2000 and 2003" document:
For more information about the ExMerge utility, click the following article number to view the article in the Microsoft Knowledge Base:
174197�
Microsoft Exchange Mailbox Merge program (Exmerge.exe) information
For more information, click the following article number to view the article in the Microsoft Knowledge Base:
288446�
Error message: "Error encountered getting mailbox information from the private information store database on server"
If the user runs the ExMerge utility without administrative privileges on the computer that is running the ExMerge utility, the user must be granted "Create Global Object" rights.
For more information, click the following article number to view the article in the Microsoft Knowledge Base:
821546�
Overview of the "Impersonate a Client After Authentication" and the "Create Global Objects" security settings
Additionally, the user must be granted full control to the MAPI profile.
For more information, click the following article number to view the article in the Microsoft Knowledge Base:
288446�
Error message: "Error encountered getting mailbox information from the private information store database on server"