Identity |
Identity to use the mail user.
-
An identity is already entered if the mail user was generated by an account definition.
-
If you create the mail user manually, you can select an identity from the menu.
The menu displays activated and deactivated identities by default. If you do not want to see any deactivated identities, set the QER | Person| HideDeactivatedIdentities configuration parameter.
NOTE: If you assign a deactivated identity to a mail user, the mail user might be locked or deleted depending on the configuration. |
No link to an identity required |
Specifies whether the mail user is intentionally not assigned an identity. The value is determined from the linked user account. |
Not linked to an identity |
Indicates why the No link to an identity required option is enabled for this mail user. The value is determined from the linked user account. Possible values:
-
By administrator: The option was set manually by the administrator.
-
By attestation: The user account was attested.
-
By exclusion criterion: The user account is not associated with an identity due to an exclusion criterion. For example, the user account is included in the exclude list for automatic identity assignment (configuration parameter PersonExcludeList). |
Account definition |
Account definition through which the mail user was created.
Use the account definition to automatically populate mail user main data and to specify a manage level for the mail user. One Identity Manager finds the IT operating data of the assigned identity and uses it to populate the corresponding fields in the mail user.
NOTE: The account definition cannot be changed once the mail user has been saved. |
Manage level |
Manage level with which the mail user is created. Select a manage level from the menu. You can only specify the manage level can if you have also entered an account definition. All manage levels of the selected account definition are available in the menu. |
Azure Active Directory tenant |
The Azure Active Directory tenant’s name. |
Azure Active Directory user account |
Azure Active Directory user account that uses this mail user. |
First name |
The user’s first name. If you have assigned an account definition, the input field is automatically filled out with respect to the manage level. |
Last name |
The user’s last name. If you have assigned an account definition, the input field is automatically filled out with respect to the manage level. |
Initials |
The user’s initials. If you have assigned an account definition, the input field is automatically filled out with respect to the manage level. |
Name |
The mail user’s identifier. |
Display name |
Name as used in the address book. |
Alias |
Unique alias for further identification of the mail user. |
User ID |
User ID that user uses to log in.
Example:
<alias>@<domain.com> <user>@yourorganization.onmicrosoft.com |
Password |
Login password. The identity’s central password can be mapped to the mail user's password. For more information about an identity’s central password, see One Identity Manager Identity Management Base Module Administration Guide.
NOTE: password policies are taken into account when a user password is being verified. Ensure that the password policy does not violate the target system's requirements.
Azure Active Directory configuration settings are used for generating random passwords for new mail users, for sending login credentials, and for applying password policies. For more information, see the One Identity Manager Administration Guide for Connecting to Azure Active Directory. |
Confirmation |
Reconfirm password. |
Proxy addresses |
Other email addresses for the mail user. Use the following syntax to set up other proxy addresses:
Address type: new email address |
Recipient type (detail) |
Type of mail user. You can select either Mail users or Guest mail users. |
External email address |
Email address for forwarding messages. |
Destination address type |
Address type of the email address. Permitted value is SMTP. |
Do not display in address list |
Specifies whether the mail user is visible in address books. Set this option if you want to prevent the mail user from being displayed in address books. This option applies to all address books. |
Risk index (calculated) |
Maximum risk index value of all assigned groups. The property is only visible if the QER | CalculateRiskIndex configuration parameter is set. For more information, see the One Identity Manager Risk Assessment Administration Guide. |
Category |
Categories the mail user uses to inherit groups. Groups can be selectively inherited by mail users. To do this, the groups and mail users are divided into categories. Select one or more categories from the menu. |
Groups can be inherited |
Specifies whether the mail user can inherit groups through the identity. If the option is set, the mail user inherits groups through hierarchical roles, in which the identity is a member, or through IT Shop requests.
-
If you add an identity with a user accounts to, for example, a department and you have assigned groups to this department, the mail user inherits these groups.
-
If an identity has requested group membership in the IT Shop and the request is granted approval, the identity's mail user only inherits the group if the option is set. |
Simple display |
Simple display name for systems that cannot interpret all the characters of normal display names. |
Phonetic display name |
Display name in phonetic letters. It is used if the pronunciation and spelling of the name do not match. For example, the display name is used to sort recipients in the hierarchical address book if no sort order is given. They are sorted in ascending order from A to Z.
If no phonetic name is given, they are sorted by the display name. |
Sort order |
Specifies the order in which to display recipients in the hierarchical address book. The larger the value, the higher the ranking in the sort order.
If no order is given or more than one entries have the same sort order, recipients are sorted by their phonetic display name. |
Message format |
Format for messages that are sent to mail u. Permitted values are MIME (default) and Text. |
Message body format |
Format for body text of messages that are sent to mail users. Options are Text, HTML and TextAndHtml. The permitted values depend on the selected message format.
-
If the MIME message formation is fixed, the format of the body text can be Text, HTML and TextAndHtml (default).
-
If the message format is Text, the format of the body text can be Text. |
Attachment format |
The Apple Macintosh operating system's attachment format for messages that are sent to mail users. Options are BinHex (default), UuEncode, AppleSingle, and AppleDouble. |
Use preferred message format |
Specifies whether message format settings configured for the recipient are overwritten by the global settings. |
Use MAPI-RTF |
Specifies whether the mail user can receive messages in MAPI format. Available options are Never, Always, and Use default settings. |
Sender authentication required |
Specifies whether authentication data is requested from senders. Set this option to prevent anonymous senders mailing the mail user. |
Moderation enabled |
Specifies whether the mail user is moderated. Use the Assign moderators task to specify the moderators. Then enable the option. |
Sending message |
Specifies how senders are notified when they send messages to moderated mail users. Permitted values are:
-
Do not notify: The sender is not notified.
-
Only notify senders in your exchange organization: Only internal senders receive a notification.
-
Notify all senders: Internal and external senders receive notification. |
Street |
Street or road. If you have assigned an account definition, the input field is automatically filled out with respect to the manage level. |
City |
City. If you have assigned an account definition, the input field is automatically filled out with respect to the manage level. Locations can be automatically generated and identities assigned based on the town. |
Mailbox |
Mailbox. If you have assigned an account definition, the input field is automatically filled out with respect to the manage level. |
State |
State. If you have assigned an account definition, the input field is automatically filled out with respect to the manage level. |
Zip code |
Zip code. If you have assigned an account definition, the input field is automatically filled out with respect to the manage level. |
Country or region |
The country ID. |
Office |
Office address. |
Business phone |
Business telephone numbers. If you have assigned an account definition, the input field is automatically filled out with respect to the manage level. |
Additional phone numbers |
Other business telephone numbers. |
Fax |
Fax number. If you have assigned an account definition, the input field is automatically filled out with respect to the manage level. |
Additional fax numbers |
Additional fax numbers. |
Home phone |
Private telephone number. |
Additional private numbers |
Additional telephone numbers. |
Mobile phone |
Mobile number. If you have assigned an account definition, the input field is automatically filled out with respect to the manage level. |
Mobile phone |
Mobile phone number. |
Website. |
The user's website. |
Notes |
More information about the user. |
Item |
The user's job title. |
Department |
Department. If you have assigned an account definition, the input field is automatically filled out with respect to the manage level. |
Company |
Company. If you have assigned an account definition, the input field is automatically filled out with respect to the manage level. |
Manager |
Manager responsible for the mail user.
To specify a manager
- Click next to the field.
- In the Table menu, select the table that maps the account manager.
- In the Account manager menu, select the manager.
- Click OK.
|
Assistant |
Name of the mail contact's assistant. |