exchange.sembee.info
from Sembee Ltd.
UK MS Exchange Consultants
Exchange 2003 - Options When a Staff Member Leaves

Eventually a member of staff will leave, either to go to a new job, or because they have to leave for another reason. This then raises the question of what to do with their mailbox and handling the inbound email.

You have a number of options, which you can use all or a combination of.

Immediate Actions

Disabling the User Account

It is not recommended to disable the user account, for a number of reasons.

The main reason is that Exchange caches permissions. Therefore if the account is disabled then enabled, it can be up to two hours before the account actually becomes accessible. Therefore you should simple hide the account, and change the password. That will stop most use of the account. If you enable the require password change as well, use of the account can be tracked.
You may also want to consider the use of a "No Access" group, which is used to block access to all shared resources specifically.

If you do decide to disable the account, on Exchange 2000/2003 disabling the mailbox can generate error messages in the event log (see here). Therefore you should make an adjustment to their account:

  1. Go in to the Mailbox Rights of the user account. You will find this in ADUC, Right click on the user account and choose Properties. Select the "Exchange Advanced" tab and then "Mailbox Rights".
  2. Listed in the users will be one called "Self", which should already have "Full Mailbox Access" rights. Enable "Associated External Account" as well.
  3. Apply/OK out.

Note: You can only have one "Associated External Account" per user, so if another account has already been given that setting, it will need to be removed and the "Self" setting granted the right.


Longer Term Actions

Once the dust has settled following the user's departure, you can think about what needs to be done with this user's email on a longer term basis.

There are two things to consider:

  1. Existing Email
  2. New Email

Existing Email

Existing Email is fairly straight forward to deal with.
Either archive the entire contents out to a pst file, or give a manager/replacement full mailbox access to the account and add it as an additional account to their existing Outlook.
If the ex-staff account was hidden from the address book, then you will need to unhide it before adding it to another user's Outlook. Once the connection is established you can hide it again.

New Email

You have a number of options with regards to new email messages. It depends on the needs of the business.
This only applies to external email. Internal email will not be sent because the staff should know that person has left, and they no longer appear in the address book.

  1. You could just have all new delivered to the mailbox as normal. A manager or colleague could then review the messages.
  2. Alternatively you could remove their primary SMTP address and add it to the account of their manager. Exchange will deliver all email to that account instead. This may require a dummy address being put on their existing account if there was only one SMTP address listed.
  3. You could also use the "Store and forward" option within the account to forward email to another person and optionally the message could also be delivered to their mailbox. (ADUC, User Properties, Exchange General, Delivery Options).
  4. You could remove the SMTP address and black hole it. This would mean that the email is never seen again. More details on black holes can be found here. If you are using Exchange 2003 or higher with recipient filtering then you could simply remove the address completely. This will generate an NDR to anyone who sends email to the user account.
  5. If the company is feeling particularly generous then you could have email sent to their old company address forwarded to a new personal address. Ensure that the account is not a member of any internal distribution lists so they don't get any internal email.

Related Articles

Changes to the Offline Address Book Not Being Seen
Email Black Holes
Disabled Account Event Log Errors


Exchange 2003 Home Page - Site Home Page
Last Page Update: 13/02/2011



More Content from Sembee Ltd.
 
Resources on exchange.sembee.info Other Sites Sembee Ltd.
Microsoft Exchange 2003 Command Prompt Getting Started Guide Microsoft Exchange Consultancy
Microsoft Exchange 2007 Login Scripts Director's Blog
Microsoft Exchange 2010 MS Exchange Resources  
Microsoft Outlook Knowledge Base search  
Exchange Networking Tasks Recovery of MS Office content from Temp Files  
Amazon Store Troubleshoot the Automatic Updates Client  
  UK ISP Status Pages  
© Sembee Ltd. 1998 - 2011.
Reproduction of any content on this web site is prohibited without express written consent. Use of this web site is subject to our terms and conditions. All trademarks and registered trademarks are property of their respective owners. This site is not endorsed or recommended by any company or organisation mentioned within and is to provide guidance only and as such we cannot be held responsible for any consequences of following the advice given.

Sembee Ltd. is registered in England and Wales at 33 Scrivens Mead, Thatcham, Berkshire, RG19 4FQ.
Registered company number: 4704428. VAT Number GB 904 5603 43.

girl