Provisioning Exchange Server 2010 Accounts with IDM 4.7

The Active Directory driver creates Exchange Server 2010 mailboxes. The cmdlet supported by the Active Directory driver to create mailboxes in Exchange Server 2010 is Enable-Mailbox. The cmdlet use the following parameters in the Active Directory driver: Enable-Mailbox: -Identity, -Alias, -Database -DomainController.

I have installed the service IDM_AD_Ex2010_Service.

What are the values that the AD driver sends for the Enable-Mailbox cmdlet parameters?

Where do you take them from?

 

TIA

 

 

 

Parents
  • https://www.netiq.com/documentation/identity-manager-47-drivers/ad/data/provisioning-exchange-server-2010-accounts.html

    The Active Directory driver creates, moves, and disables Exchange Server 2010 mailboxes. The cmdlets supported by the Active Directory driver to create, move, and disable mailboxes in Exchange Server 2010 are Enable-Mailbox, New-MoveRequest, and Disable-Mailbox. The cmdlets use the following parameters in the Active Directory driver:

    Enable-Mailbox: -Identity, -Alias, -Database -DomainController

    Disable-Mailbox: Identity, -DomainController, -Confirm

    New-MoveRequest: -Identity, -TargetDatabase, -DomainController, -Confirm
  • Verified Answer

    <rule>
    <description>Adding PSExecute to Disable New User Account</description>
    <conditions>
    <and>
    <if-operation mode="regex" op="not-equal">query|status</if-operation>
    </and>
    </conditions>
    <actions>
    <do-set-local-variable name="identityname" scope="policy">
    <arg-string>
    <token-xpath expression='./add-attr[@attr-name="sAMAccountName"]/value/text()'/>
    </arg-string>
    </do-set-local-variable>
    <do-set-dest-attr-value name="PSExecute">
    <arg-value type="string">
    <token-text xml:space="preserve">Disable-ADAccount -Identity </token-text>
    <token-local-variable name="identityname"/>
    </arg-value>
    </do-set-dest-attr-value>
    </actions>
    </rule>
Reply
  • Verified Answer

    <rule>
    <description>Adding PSExecute to Disable New User Account</description>
    <conditions>
    <and>
    <if-operation mode="regex" op="not-equal">query|status</if-operation>
    </and>
    </conditions>
    <actions>
    <do-set-local-variable name="identityname" scope="policy">
    <arg-string>
    <token-xpath expression='./add-attr[@attr-name="sAMAccountName"]/value/text()'/>
    </arg-string>
    </do-set-local-variable>
    <do-set-dest-attr-value name="PSExecute">
    <arg-value type="string">
    <token-text xml:space="preserve">Disable-ADAccount -Identity </token-text>
    <token-local-variable name="identityname"/>
    </arg-value>
    </do-set-dest-attr-value>
    </actions>
    </rule>
Children
No Data