Re: Incoming E-Mail - cant create contact in OU



Paul,
i think you have to follow callahans suggestion of adding the account to the local admin froup of that server.

Could you try one other thing..

Try to delegate permission to the account which is running the IIS pool for the central administration site without adding to admin group and then do an IISReset.

/Daniel Bugday

"callahan" <cacallahan@xxxxxxxxxxxxxxxxxxx> wrote in message news:%23NTN2SR7HHA.4436@xxxxxxxxxxxxxxxxxxxxxxx
The application pool account, in my experience, must be a local admin of the sharepoint server that is doing incoming email and hosting DMS. Also the account must have those permissions to all the child objects for that OU as well.

In addition, if you are going to do approval for the groups, I found that I had to give the farm account rights to the OU as well in order to be able to delete a group. Please let me know if that is the case for you.

Frankly, I am impressed. I personally have never gotten it to work with Exchange 2007.

-callahan
"Paul" <Paul@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message news:E9308C36-1A8C-4071-93EB-BAB58A0C7DD8@xxxxxxxxxxxxxxxx
Running Windows 2003 R2 AD, Exchange 2007 and WSS 3.0.

I have WSS website application pool running as a domain user account, not
network service.
I created an OU called Sharepoint and delegated rights to this user account
(Create, delete and manage user accounts + Read All User Information).

When I create a site and attempt to enable email, it gives me "Error in the
application. "

However to prove its a permission issue, I then added this website
application pool account to domain admins, rebooted my WSS to be sure and
tried again - now it works! Obviously I dont want to run this as domain
admin, so removal of domain admin kills the ability to add email.

There must be other AD OU permissions that are not listed in the Microsoft
instructions to make this work, but what?



.



Relevant Pages