Office 365 - Add single external sender to internal distribution group
You may be able to do this by adding the external email address as a contact in exchange, I'm not sure though just an idea, I have never tried this.
Similar to this question:
http://community.spiceworks.com/topic/452106-problems-with-office365-distribution-group but in my case I have a vip asking me to allow him to send email to any group from his personal email address, but still restrict all other external senders.Office 365 allows me to universally say let external users send, or restrict by sender and I can add everyone in my organization manually.What is the best way to do this? Can I add him as a 'sender' after making him a mail contact and then add our 'everyone' distribution list to the allowed senders to get everyone else in the organization approved?
This topic first appeared in the Spiceworks Community
Similar Messages
-
Migrate exchange 2003 to office 365 with single singon
Dear All,
We are going to migrate our mail systems from exchange server 2003 to office 365 with single sing-on.
Please advice me the best way and guide line (information) to do it smoothly.
Thanks in advance.Dear Andres parnova,
Thanks for your information.
I found series of articles in msexchange.org
http://www.msexchange.org/articles-tutorials/office-365/exchange-online/performing-staged-exchange-migration-office-365-exchange-online-part1.html which has very nice and clear information.
But, in the articles the author did not include ADFS configuration and steps.
I would like to know how to configure ADFS and single sing-on.
Thanks
Min -
60 World minutes for Office 365 - Add KSA
Hello there,
I'm requestiing a country to be added to the 60 World minutes for Office 365. Right now I didn't get the benefit of this offer since I'm only calling to Saudi Arabia which is a big country that should be supported.
I want to know if you guys planning on adding more countries to the plan especially Saudi Arabia.
Thanks,
KhalidBy George,l think I've GOT IT!. Here's a link to the instructions for linking your Microsoft account to your skype account https://support.skype.com/en/faq/FA12230/how-do-i-link-my-microsoft-office-365-account-with-my-skype...
Sign in to your microsoft account.
Hit the activate button on the skype minutes.
Be sure to scroll all the way down to claim them.
Wait about 10 minutes and they should be showing in a sidebar when you sign into skype. Try making a call to a landline or mobile.
If they aren't being applied, it may be because you are calling outside the 60 eligible countries or regions.
I DID this and actually used one of my minutes! Yippee!
I'm no whiz so you should be able to do it too.
The problem with these giant companies that have us all by the short and curlies is that what they mean by support is "figure it out yourselves"... it's an exercise in self-reliance. -
Send Emails to Distribution Group
Hi All,
I have a scenario where we need to create one distribution group and 4 users in that distribution group. There are almost 70 companies who will send email to this distribution group.
Now i want to achieve below goals,
1) lets support i create an distribution group [email protected] and add 4 members in this distribution group.
user1, user2, user3,user4
2) If Company A send email to [email protected] only user1 & user2 will receive that email.
3) If Compnay B send email to [email protected] only user3 & user4 will receive that email.
Is there any possibility to achieve this goal i am using Exchange 2010 with Microsoft Forefront Online Protection.
Thanks & Regards,
Zeeshan ButtHi Zeeshan Butt,
Agree with the above suggestion, transport rule can achieve your requirement.
The sender address matches(the sender’s domain is)
The recipient address matches [email protected]
Redirect the message to user3 & user4
Here are some references you can refer to:
Transport Rule Predicates:
http://technet.microsoft.com/en-us/library/dd638183(v=exchg.150).aspx
Transport Rule Actions:
http://technet.microsoft.com/en-us/library/aa998315(v=exchg.150).aspx
Manage Transport Rules:
http://technet.microsoft.com/en-us/library/jj657505(v=exchg.150).aspx
If you have any question, please feel free to let me know.
Thanks,
Angela
Angela Shi
TechNet Community Support -
Our environment is a mixed Exchange 2007 and Exchange 2010 server environment, still in transition (after 4 years). Users have Exchange 2007 mailboxes. A recent problem has been reported in a distribution group access model that has been working without
complaint for several years.
[email protected] has member John Doe ([email protected]), Jane Doe ([email protected]), "only senders in the following list" is set to GroupA
[email protected] has member Rob Smith ([email protected]), Diane Smith ([email protected]), "only senders in the following list" is set to GroupB
[email protected] has members GroupA, GroupB, "only senders in the following list" is set to GroupC
When designed, we thought that when [email protected] sends an email to [email protected] it would be resolved to the user members of GroupC and delivered to everyone ([email protected], [email protected], [email protected], [email protected]). (While
it seems unlikely, that this model has functioned for several years without experiencing this problem, it is conceivable that until recently [email protected] and [email protected] have with few exceptions always had the same membership. Recent changes in
our organizational model have caused this to have some exceptions, and may be the root cause of this problem.)
What we are experiencing is that users [email protected] and [email protected] receive the original email. Users [email protected], [email protected] do not receive the email. [email protected] receives an email "Undeliverable: test
Delivery has failed to these recipients or distribution lists:
[email protected]
Your message wasn't delivered because of security policies. Microsoft will not try to redeliver this message for you. Please provide the following diagnostic text to your system administrator. Sent by Microsoft Exchange Server 2007.
Diagnostic information for administrators
Generating server: mail3.domain.com
[email protected]
#550 5.7.1 RESOLVER.RST.NotAuthorized; not authorized ##
Original message headers:
Received: from MAIL7.domain.com ([::1]) by mail3.domain.com ([::1]) with
mapi; Mon 9 Mar 2015 07:00:30 -500
Content-Type: application/ms-tnef;name="winmail.dat"
Content-Transfer-Encoding: binary
From: Jane Doe <[email protected]>
To: GroupC <[email protected]>
Date: Mon 9 Mar 2015 07:00:29 -500
Subject: test
What is the expected behavior?
Does Exchange resolve the "To" distribution group to member mailboxes for delivery purposes, or does it walk the subordinate child groups and check security at each level?
Is this a configurable behavior that may have recently changed as we have a "new" Exchange Admin poking around?
Might this be related to the mixed Exchange 2007 / 2010 environment?
Is there a way to obtain "effective permissions" for delivery restrictions?
emc2Hi,
From your description, I would like to verify if you have done some changes for GroupB distribution group. Ensure that "[email protected]" is added to the "accept list" in GroupB's message delivery
restrictions.
What's more, are GroupA GroupB and GroupC Exchange 2010 distribution groups?
Best regards,
Please remember to mark the replies as answers if they help, and unmark the answers if they provide no help. If you have feedback for TechNet Support, contact [email protected]
Amy Wang
TechNet Community Support -
Cannot Send Mail to Distribution Group
We are running Exchange 2013 and have a problem where users are getting NDR reports when trying to send mail with a small attachment a Universal Distribution Group. The message received back is:
Delivery has failed to these recipients or groups:
_Group ([email protected])
The recipient won't be able to receive this message because it's too large.
The maximum message size that's allowed is 2 MB. This message is 3 MB
Why are messages to distribution groups capped at 2MB and how can I increase it to at least 10?Hi Will,
Check the distributiongroup maxreceivesize parameter. With Powershell.
Get-DistributionGroup -Name <Name> | FL
It can be changed using:
Set-DistributionGroup -Name <Name> -MaxReceiveSize XXXXX
It can also be changed in the Exchange Administreative Center here:
Recipients > Mailboxes > EditEdit icon > Mailbox features > Mail flow > Message size restrictions > View details > Received messages
You can Refer to this link for further Exchange 2013 Message size limits.
http://technet.microsoft.com/en-us/library/bb124345(v=exchg.150).aspx
All the best, Jesper Hassing - MCTS SCCM 2012 - MCSA 2012 Server - MCP -
Automatic rules to Internal distribution group failing when authentication is enabled
Hi Forum,
I have set up a rule on a user's PC whereby when he ([email protected]) receives an external email (from [email protected]), it should be automatically forwarded to a
distribution group ([email protected]) with cc to
[email protected] and
[email protected] .
This worked well for some time until recently when it started failing. The only way we can get this working again is when we disable authentication to the distribution group ([email protected] ). We do not want
this disabled as we don't want the outside world to Spam this distribution group. No changes has been made to the system which could have caused this issue.
Is there a way to get this rule working without disabling the authentication?
Cheers
ArvindHi Arvind,
Please refer to the following screenshot to create a transport rule and check the result:
Best regards,
Niko Cheng
TechNet Community Support -
Prohibit Sending Emails to Distribution Group at specific times
Hi team,
I have a request from my company to prohibit certain users from sending emails to Specific Distribution group at certain times.(12AM-7AM)
Any help would be appreciated.
RegardsHi,
Based on my research, there is no feature in Exchange server to directly meet your requirement: reject specific users sending emails to specific distribution group at specific times.
We can use transport rule in Exchange 2007 and later version to achieve Reject specific users sending emails to specific distribution group. Create a rule in Exchange EMC:
Apply rule to messages
from "[email protected]" or "[email protected]"
and sent to "[email protected]"
send "cannot send messages to this group" to sender with "5.7.1"
About schedule the transport rules, there is no feature in Exchange supporting it. I find an article about scheduling a transport rule by using task schedule in Server manager. Just for your reference:
http://alanhardisty.wordpress.com/2012/01/17/schedule-a-transport-rule-to-be-enabled-or-disabled-at-a-specific-time-of-day-day-of-the-week/
Note: Microsoft is providing this information as a convenience to you. The sites are not controlled by Microsoft. Microsoft cannot make any representations regarding the quality,
safety, or suitability of any software or information found there. Please make sure that you completely understand the risk before retrieving any suggestions from the above link.
Thanks,
Winnie Liang
TechNet Community Support -
Google Postini outbound configuration with Office 365
Hi all,
My company is currently looking into Office 365 migration. Currently we have Exchaneg 2010 on-premise with Google Postini services for mail security and e-discovery. We are routing all inbound and outbound e-mail trough the Postini-service for archiving
and compliancy reasons.
Inbound is quite easy to set up with the mail connectors in office365, but for outbound Postini requires the IP-adresses of the sending mail servers. Obviously this is constanly changing because of the cloud-based nature of Office 365, but there is no other
way of defining the outbound mailservers for my domain. So my question is as how to cirumvent this or how to define the IP-adresses used by the Office 365/EOP service for sending mail.
Any thoughts on this would be appreciated!Have you looked up the IP addresses for your <domain>.onmicrosoft.com MX record, using a tool like
http://www.mxtoolbox.com? You are correct that they may change, though. Additionally, I don't know how Postini will handle reinjection to Office 365 - I've read that it's not supported. -
A customer using SharePoint site in Office 365 and they configured workflow, notification alerts, etc and now by default they are receiving mail in the registered account (for example: [email protected]) and now i want to change it to their
company email id.
Is that possible?You should setup domain for Office 365 - Add your users and domain to Office 365
[custom.development] -
Replication of contacts in iPhone 4 using office 365 online
We are using Office 365 Online mail service in our organization. One of our Director is using Mac, iPhone 4 & iPad to access his mails. He is having some problem in his Contacts. Some of contatcs replicated in the list again and again. We have tried to rectify the problem as instructions received from our service provider but same problem occur again.
We have applied following operations on iPhone :
* Removed duplicate contacts from MS Exchange Online and removed contacts on iPhone 4 and re-sync.
* Removed Exchange id from iPhone 4 and re-create id on iPhone 4.
We have never sync iPhone 4 contacts through iTunes or iCloud.
Our Director using 4 MS Exchange online ID on his all apple devices. His Contacts and Calendar associated with only on id.You should setup domain for Office 365 - Add your users and domain to Office 365
[custom.development] -
Send as Distribution group with a mailcontact
Hello,
We're having problems to grant a mailcontact (external of our domain) with send as permission on a distribution group. We've tried already through ADUC's security tab...and the problem is that the mailcontact does not appear, so we can't add the send as permission.
Otherwise using the get-mailcontact cmdlet it appears as a mailcontact, and it's listed in the EMC list as well.
Also trying through powershell it seems that won't work with:
[PS] C:\Windows\system32>Add-ADPermission "DistributionGroup" -User "MailContact" -Extendedrights "Send As"
It says:
User or group "MailContact" wasn't found. Please make sure you've typed it correctly.
So I was wondering, how can I especify that it's not a User but a MailContact?
Many thanks in advance!Hi,
As what Steve says, we can’t give send as permission to a MailContact. As a workaround, I think we can create a mail user with [email protected] account in AD. Then give full access permission with a domain mailbox(UserA) and set
Send As permission to this mail user for the distribution group:
1. Create a Mail User:
http://technet.microsoft.com/en-us/library/bb124381(v=exchg.150).aspx
2. Set Send As permission:
Add-ADPermission "DistributionGroup" -User "MailUser" -Extendedrights "Send As"
3. Assign Full access permission to the mail user to make sure there is a mailbox for this user:
Add-MailboxPermission “UserA” -User "MailUser" -AccessRights FullAccess
Then we can configure the mailbox(UserA) with MailUser account and send as the distribution group in Outlook client:
1. Open Control Panel > Mail > E-mail Accounts > New.
2. In the Auto Account Setup window, fill in the E-mail Account name(UserA) and E-mail Address([email protected]). Then click Next without type Password.
3. Click Finish to close the window.
4. Open Outlook and a Windows Security window would pop-up. Please use MailUser account information(User name: Domain\MailUser and Password) to log into this mailbox.
5. Click New Email > OPTIONS > From, then the From field is shown in the message.
6. Click From > Other E-mail Address, and select the DistributionGroup.
Then this external user can send as this distribution group.
Hope it helps.
Regards,
Winnie Liang
TechNet Community Support -
Allow distribution group members only to send to distribution group
Is it possible to allow the members of a distribution group to be the only ones permitted to send to the distribution group? I've read up on this and I think it's possible with a custom RBAC role. Any other ideas?
Thanks!You don't need RBAC for this - you just need to go to the Mail Flow Settings
tab and open the Message Delivery Restrictions properties. Add the group to the
Accept messages from: Only senders in the following list. This will limit it so that only messages from members of the group can send to it.
You can also use the shell to do this by running:
Set-DynamicDistributionGroup -Identity <group name> -AcceptMessagesOnlyFromSendersOrMembers <group name> -
In my third-party web application of Office 365, I want to have access to the contacts, events and emails of all the users from the organizations who installed my app. The thing is I don't want that all these users have to grant me access, I just want one
admin of the org to grant access for my app and then be able to retrieve the data I need for all the users.
To test for one organization, I logged in as the admin and proceed to the Oauth2 authentication to retrieve the access token and in the first request (the GET one to retrieve an authorization code) i add the parameter
prompt=admin_consent.
With this access token, I can access the data (emails, contact, event) of the admin
for instance for the contacts
uri: https://outlook.office365.com/ews/odata/Users(adminemail)/Contacts
but not the data of the other users of this org with this uri
uri: https://outlook.office365.com/ews/odata/Users(useremail)/Contacts
The only thing I can do is retrieve an access token for each user but it supposed that each user has to authorize the access to the app but it's very cumbersome. So, i don't see what enables the parameter prompt=admin_consent and how to use it. Does anybody
know what it does?
And my question is: how can I do to access the data of all the users of one organization when the access has been granted by one admin?
Thank you!
This was answered on StackOverflow by Dushyant Gill. http://stackoverflow.com/questions/25316175/access-to-my-office-365-third-party-app-for-external-user-a-user-account-is-n/25316678#25316678
You are sending the OAuth request to a tenant specific endpoint of Azure AD. Note the {key_provided} part of your Url - that part represents the tenantid or a registered domain name of an Azure AD tenant. Azure AD throws this error is the user signing in
is not a user in that tenant.
Multi-tenant applications like yours have two options:
Perform home realm discovery yourself and send the SSO request to the correct tenant-specific endpoint of Azure AD: when a new Azure AD organization signs-up for your application, record its tenant ID, and registered domain names. On your login page, ask
the user for their email and try to discover what Org they belong to using the suffix the email.
Use the common endpoint of Azure AD. Instead of the {key_provided} part of the URL, use 'common'. In this case Azure AD will determine the user's tenant and sign-in the user. The token that your application will receive will still be from the user's tenant
(iss claim).
2 is more convenient for apps. However #1 has an advantage when the user's Organization has customized their sign-in page with the company logo etc - in the case of #1 the user will directly be taken to the customized and familiar sign-in page.
I recommend a combination of the two: try determining the user's organization and sending them to the tenant specific SSO endpoint. If you're not able to - send them to the common endpoint. -
Outlook Hangs - Loading Profile / Add Account Stage - Office 365 on Windows 8.1
I have been using outlook via the Office 365 offering for a year. Then 2 days back suddenly my outlook stopped downloading mails from my mail server. It did however send mails.
I went online to check the various causes and after following lots of advice I did all of the below actions:
1. Making sure the OS and Outlook 2013 are installed with the latest updates.
2. Performing a clean boot and trying to open outlook and add account in that mode
(it stops responding)
3. Deleting OST file
4. Deleting profile
5. Running outlook in safe mode (pressing Ctrl while starting up outlook) and trying to add account
(it stops responding)
6. Completely uninstalled office 365 with the fixit tool and then reinstalled
I ended up with Outlook not loading at all. None of the above steps have worked.
If I directly start outlook, it hangs on loading profile.
I have opened control panel, searched for "mail", opened that and deleted profile, then created new profile. After that when I try adding account, it hangs (stops responding) at that adding account stage as well.
This has started suddenly, till 3 days back everything was absolutely fine.
In another forum post, opening Outlook in safe mode was marked as answer. As stated above it has not worked for me.Hi,
Definitely this seems to be an issue when loading the profile, I've seen many people resolved this problem by disabling hardware acceleration in Office.
Since it's a global setting, you can disable it in Word, Excel, then it will also apply to Outlook.
For example in Word, go to FILE -> Options -> Advanced -> Display -> Check "Disable hardware graphics acceleration" -> OK.
We can also configure this through GPO or registry, more details can be found in this article:
http://social.technet.microsoft.com/Forums/en-US/cc26ac52-5c94-468e-ac34-35c9dcc5b422/hardware-graphics-acceleration?forum=outlook
Hope it helps.
Regards,
Melon Chen
TechNet Community Support
Maybe you are looking for
-
Plug-In development and ASN membership
Everyone can download the InDesign SDK but on the other hand everywhere I'm told that I can't really develop an Plug-In with it without a debug build of InDesign. As far as I found out one has to join ASN by paying a minimum of 195$. Is it even guara
-
MAC MINI just went Mute today.
MAC MINI just went to mute, have been connected to a TV for 2 years via HDMI with no issues. I can switch to internal/Headphones with no issue. I have plugged and unplugged the headphone jack multiple times and reset the PRAM 3 times still no fix. Re
-
What is RPM portfolio Item in Investment Management?
Hi All, We are trying to install business content for Investment Management module. There is a web template in this module, we have installed all these properly. Now when i run this template i see a message "No RPM portfolio Item has been specified".
-
When adjusting the audio volume in a selected region, why does it give me a curved line as a transition instead of straight, and why cant I change the fade shape like i can with a fade in our out? When I slide thet volume all the way down it makes a
-
Verizon better not drop WJAR or I will switch back to Cox
I will swich back to Cox even though it will kill me to do so. Time to act responsibly and reach a deal.