Creating a non-administrative domain account for creating Exchange backup users
You can create Exchange backup users with a non-administrative Windows account if it is configured with the required privileges.
Prerequisites
You must be logged in to a domain controller as an administrative domain user.
Steps
Create a new domain user.
Once created, the user is listed in the
Active Directory Users and Computers window.
Open the user
Properties window, and in the
Members Of tab, ensure that the user is added to the following user groups:
User right
Description
Remote Desktop Users
Allows the user to remotely connect to a domain controller.
Account Operators
Allows the user to create domain user accounts.
The user is also a member of the Domain Users group by default.
Open the
Group Policy Management Editor window, and under
Windows Settings > Security Settings > Local Policies > User Rights Assignment, grant the user the following rights:
User right
Description
Allow log on locally
Allows the user to log on to all domain controllers in the domain.
Allow log on through Remote Desktop Services
Allows the user to log on to all domain controllers in the domain through Remote Desktop Services.
Account Operators
Allows the user to create domain user accounts.
To apply the changes, log out of the domain controller.
Data is not available for the Topic
Please provide ratings (1-5 stars).
Please provide ratings (1-5 stars).
Please provide ratings (1-5 stars).
Please select whether the article was helpful or not.
Comments cannot contain these special characters: <>()\