Double Microsoft Exchange Security Groups in Active Directory
Hi all, Currently I am responsible to handle migration for Microsoft Exchange Server 2007 to Microsoft Exchange Server 2010 for our client. All the pre-requisite steps has been done especially for Active Directory preparation. But after the steps, I noticed that there're additional Exchange Security Group that created with the same name but have identical number at the end of the group name. The picture as below: The account that I used to update the schema and execute administration task isn't the Administrator built-in account for the domain. Client create a new user account and add privileges to the user as enterprise admin and schema admin. Is that okay for me to delete the security group that has identical number or should I concern any other issue that may occurred if I just delete it. Regards, Azanne
December 30th, 2011 9:15pm

I've never seen that happen. For some reason Setup didn't recognize that the groups already existed. You might want to open a ticket with Microsoft Support before you go deleting anything.Ed Crowley MVP "There are seldom good technological solutions to behavioral problems."
Free Windows Admin Tool Kit Click here and download it now
December 31st, 2011 12:43am

I answered your duplicate post in this forum. Ed Crowley MVP "There are seldom good technological solutions to behavioral problems."
December 31st, 2011 12:44am

Hi Azanne, Verify the membership of the groups, probably some are empty or contain only sid's. Do remember to take system state backup of your Active Directory before this deletion exercise.Rowen TechNet Community Support
Free Windows Admin Tool Kit Click here and download it now
January 2nd, 2012 12:40am

Hi all, sorry for the late feedback. I just have discussion with our client's person in charge for Exchange Server. From the discussion, he informed that there're issue involving previous migration for Exchange 2003 to 2007 whereby someone accidently delete some Microsoft Exchange security group. Unfortunately, he didn't told me how they solved the issue. Properties for Exchange security group shows the creation date. Let say Exchange Trusted Subsytem created on 1/2/2010 then for Exchange Trusted Subsystem 1 it show created on 1/3/2010. Guess I need to pay extra attention for this exercise. But of course, will get some advise and approval for that.
January 4th, 2012 8:45am

Hi there, Any updates on this issue. I have just noticed the same in our ActiveDirectory after SP2 and RU1 where installed. The installation of these required us to reset MSExchange otherWellKnowObject to <not set> and delete the DiscoveryMailbox. To restore the DiscoveryMailbox after deletion we did a '../setup.com /PrepareAD' and i think this could be the caus of these double entry's. The question is is it safe to delete the last added groups?
Free Windows Admin Tool Kit Click here and download it now
March 23rd, 2012 4:31am

This topic is archived. No further replies will be accepted.

Other recent topics Other recent topics