Idea ID: 2860956

Set Send on Behalf of permissions to a Shared Mailbox

Status : Under Consideration

We are taking this idea into consideration.


See status update history

In DRA 10 it's not possible to set Send on Behalf  of permissions to a Shared Mailbox object type. It is possible to set this permission level using PowerShell "Set-Mailbox -Identity **PERSONAL INFORMATION REMOVED** -GrantSendOnBehalfTo user" and this would be a useful feature considering the UI already caters for this for standard user mailbox's.

Labels:

Send on Behalf of Shared Mailbox
Parents
  • Hey GK_G,

    In order to provide the functionality to our admins, I added a multi-valued text field to the top of the mailbox delegation page. I labeled it Send on behalf of Holders:  and then set the target attribute to 'delegates'. Now technically that attribute requires a distinguishedName value in the attribute, but if they just enter the user's samaccountname DRA will translate it to the DN, and upon applying and performing a page refresh, you should see the updated DN in that pages field. Browsing thru ADUC to that newly permissioned user and looking at the backlink will show that it worked.

     

    So the relevant/first part of the json file post upgrade information sections looks like this...

     

    {
    "icon": "inbox",
    "title": "Mailbox Delegation",
    "hideIf": [
    "inRecycleBin",
    "noExchange",
    "noPowers"
    ],
    "hideIfNoPowers": [
    "X2KMailboxRights.Custom.viewX2KMailboxRights",
    "X2KMailboxRights.Custom.Exchange-ReadPermissions",
    "X2KMailboxRights.Custom.ntSec-SendAs"
    ],
    "name": "mailboxDelegation",
    "fields": [
    {
    "label": "Send on Behalf of Holders:",
    "dataField": "delegates",
    "contentType": "multiValuedString",
    "executionTime": "now",
    "allowMultiEdit": false,
    "parentFieldName": null
    },

Comment
  • Hey GK_G,

    In order to provide the functionality to our admins, I added a multi-valued text field to the top of the mailbox delegation page. I labeled it Send on behalf of Holders:  and then set the target attribute to 'delegates'. Now technically that attribute requires a distinguishedName value in the attribute, but if they just enter the user's samaccountname DRA will translate it to the DN, and upon applying and performing a page refresh, you should see the updated DN in that pages field. Browsing thru ADUC to that newly permissioned user and looking at the backlink will show that it worked.

     

    So the relevant/first part of the json file post upgrade information sections looks like this...

     

    {
    "icon": "inbox",
    "title": "Mailbox Delegation",
    "hideIf": [
    "inRecycleBin",
    "noExchange",
    "noPowers"
    ],
    "hideIfNoPowers": [
    "X2KMailboxRights.Custom.viewX2KMailboxRights",
    "X2KMailboxRights.Custom.Exchange-ReadPermissions",
    "X2KMailboxRights.Custom.ntSec-SendAs"
    ],
    "name": "mailboxDelegation",
    "fields": [
    {
    "label": "Send on Behalf of Holders:",
    "dataField": "delegates",
    "contentType": "multiValuedString",
    "executionTime": "now",
    "allowMultiEdit": false,
    "parentFieldName": null
    },

Children
No Data