This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

RBAC for Exchange

Hello,

My Exchange team is trying to use granular permissions for Exchange.

When trying to give just enable-mailbox and set-mailbox we get some additional errors.

We are trying to use some trimmed RBAC roles in combination with the One Identity Manager.   We are running into issues where the provisioning of mailboxes keeps asking for parameters on the set-mailbox cmdlet that we are not using.   What are all the parameters that are required for set-mailbox and other cmdlets that are used for enable-mailbox and disable mailbox.

Here are a few examples....

Reason for error [VI.Base.PowerShell.Runner.PipelineHasErrorsExeption] The
following errors occured during execution:
A parameter cannot be found that matches parameter name
'ArchiveWarningQuota'.

Reason for error [VI.Base.PowerShell.Runner.PipelineHasErrorsExeption] The
following errors occured during execution:
A parameter cannot be found that matches parameter name
'ArchiveName'.

Is it documented somewhere for the permissions needed for Synchronization and Provisioning?

I have this but it only provides the role groups and the Exchange team wants to be more granular. 

https://support.oneidentity.com/technical-documents/identity-manager/7.0.1/administration-guide-for-connecting-to-microsoft--exchange/2#TOPIC-423077 

Thank you,

Lu