Friday, July 13, 2007

Exchange server 2003

Limiting the addresses that Outlook can see



Exchange System Manager


First, remove everyone, authenticated users anonymous Logon from the following address list under the recipients:

All Contacts

All Users

All Groups

Default Global Address List



Second, create a customized address list, for example, Toupe Corporation with the following filter:



(&(objectCategory=user)(memberOf=CN=Toupegroup,OU=ToupeCorporation,DC=VIP,DC=COM))



In order for the above filter working perfectly, you must create an ToupeCorporation in VIP.COM domain and a Toupegroup group (distribution type if you include the contact in the group) in ToupeCorporation OU. And then, add all users in Toupe Corporation to the member list of Toupegroup.



Third, set up security for only users in Toupe Corporation access.



You cannot create a filter based on OU, because OU is not a attribute of a user object, contact object and group object. However, a group object has the memberOf attribute.



For the contact object filter:



(&(objectCategory=contact)(memberOf=CN=Toupegroup,OU=ToupeCorporation,DC=VIP,DC=COM))



With both contact and user object filter:



((&(objectCategory=user)(memberOf=CN=Toupegroup,OU=ToupeCorporation,DC=VIP,DC=COM))(&(objectCategory=contact)(memberOf=CN=Toupegroup,OU=ToupeCorporation,DC=VIP,DC=COM)))

-- or
& -- and

Take a look at the screenshot, you should put a pipe sign after the first (. I put it several times. It magically would take it in the blog site.




To input the filter, you must use the custom search.