Work with user accounts
Create a new user
Click the Active Directory administrative unit then click AD Users.
In the Actions menu, click New User.
Enter the new user’s First and Last Name and verify the automatically generated values on the form.
-
Under Mailbox Type , select either No mailbox, Exchange On-premises or Exchange Remote.
NOTE: If on-premises Exchange is not configured the options will be No mailbox and Office 365 Mailbox .
Click Next.
Under Account Settings, choose to use the Auto-generated password or click Type Password to enter a new password. Then check the setting boxes to determine the initial state of the account.
-
Under Organization, enter the additional information if necessary.
NOTE: In the Hybrid mode, Country/Region will be used as the Usage Location value for the new Office 365 user that will also be created.
Click Create.
Clone (Copy) an existing user
Click the Active Directory administrative unit then click AD Users.
Enter the name of the user or user template to be copied in the search field and click Search or press Enter.
Click the checkbox to the left of the user’s name.
In the Actions menu, click Clone User.
Enter the new user’s First and Last Name and verify the automatically generated values on the form.
-
Under Mailbox Type , select either No mailbox , Exchange On-premises or Exchange Remote.
NOTE: If on-premises Exchange is not configured the options will be No mailbox and Office 365 Mailbox .
Click Next.
Under Account Settings, choose to use the Auto-generated password or click Type Password to enter a new password. Then check the setting boxes to determine the initial state of the account.
Under Organization , enter the additional information if necessary.
Set Virtual Attributes if they are configured. For more information, please see the Virtual Attributes article.
Click Create.
NOTE: In the Hybrid mode, Country/Region will be used as the Usage Location value for the new Office 365 user that will also be created.
New Linked Mailbox
Click the Active Directory administrative unit then click AD Users.
In the Actions menu, click New Linked Mailbox.
Specify Linked Master Account.
Enter First and Last Name and verify the automatically generated values on the form.
-
Under Mailbox Type , select either On-premise, Linked or Remote Linked.
NOTE: If Remote Linked selected, specify Office 365 license.
Click Next.
Specify Organization details if needed.
Click Create.
New User with Linked Mailbox
Click the Active Directory administrative unit then click AD Users.
In the Actions menu, click New User with Linked Mailbox.
Enter the First and Last Name and verify the automatically generated values on the form.
-
Under Mailbox Type , select either On-premise, Linked, or Remote Linked.
NOTE: If Remote Linked selected, specify Office 365 license.
Click Next.
Specify Organization details if needed.
Click Next.
Specify the OU where the master account will be created.
Enter the master account First and Last Name and verify the automatically generated values on the form.
Click Create.
Reset a password
Click the Active Directory administrative unit then click AD Users.
Enter the name of the user in the search field and click Search or press Enter.
Click the checkmark to the left of the user’s name.
In the Actions menu, click Reset Password.
Under Password , choose to use the Auto-generated password or click Type Password to enter a new password.
Under Email notification , choose not to send the password or click Send to , to enter a new email address of someone who will receive a copy of the user’s new password by e-mail.
Check User must change password at next logon to force the user to change the password.
Check Unlock account if the account is in the locked out state.
Enter a comment that will be recorded in the operational history log.
Click Reset Password.
After the confirmation is displayed, click Close.
Reset a password (Quick Action)
Quick Actions are on-screen features that put the most used features at your finger tips. To enable quick actions in Cayosoft Administrator, click the lighting bolt icon on the toolbar to reveal the quick action pane.
Click the Active Directory administrative unit then click AD Users.
Enter the name of the user in the search field and click Search or press Enter.
Click the checkbox to the left of the user’s name.
-
In the Reset password quick action, enter and confirm a password.
NOTE: Optionally, click the exclamation mark to generate a complex password.
Check User must change password to force the user to change the password at next logon.
Check Unlock account if the account is in the locked out state.
Click Reset to complete the task.
Click Activities at the top right of the Web Portal to see a confirmation message.
Add a user to a group (Quick Action)
Quick Actions are on-screen features that put the most used features at your finger tips. To enable quick actions in Cayosoft Administrator, click the lighting bolt icon on the toolbar to reveal the quick action pane.
Click the Active Directory administrative unit then click AD Users.
Enter the name of the user in the search field and click Search or press Enter.
Click the checkbox to the left of the user’s name.
-
In the Add to group quick action, enter a group name and click the Search icon.
TIP: You can add the user to multiple groups by separating the group names with a semicolon;
Verify the group name(s) was displayed below the search field. If the group was not found, try specifying more of the group name and searching again.
Click Add to group to complete the quick action.
Click Activities at the top right of the web portal to see a confirmation message.
Add to groups
Click the Active Directory administrative unit then click AD Users.
Enter the name of the user in the search field and click Search.
Click the checkbox to the left of the user’s name.
In the Actions menu, click Add to groups.
In the Add user to Group(s) dialog in the search field, enter one or more object names or e-mail addresses separated by a semicolon ;
-
Click +Add.
If more then one object matched the search, click the checkbox to the left of the object’s name.
Click Select.
Enter a comment that will be recorded in the operational history log.
Click Add.
Suspend a user
Immediate Suspend
Click the Active Directory administrative unit then click AD Users.
Enter the name of the user in the search field and click Search Objects.
Click the checkbox to the left of the user’s name.
In the Actions menu, click Suspend User.
Select Suspend immediately or Suspend on schedule:
Suspend a user (suspend immediately).
Enter a comment that will be recorded in the operational history log.
Click Suspend.
Suspend on Schedule
Select the date and time the user will be suspended.
Enter a comment that will be recorded in the operational history log.
Click Suspend.
Cancel Scheduled Operation
If there is a scheduled suspend operation for the user, you can cancel this operation by clicking Cancel scheduled operation on the Suspend User form.
Undo suspend a user
Click the Active Directory administrative unit then click AD Users.
Enter the name of the user in the search field and click Search Objects.
Click the checkbox to the left of the user’s name.
In the Actions menu, click Undo Suspend.
Select the date the user will be un-suspended, or leave the default to un-suspend the user immediately.
Enter a comment that will be recorded in the operational history log.
Click Undo Suspend.
Cancel Scheduled Operation
If there is a scheduled undo suspend operation for the user, you can cancel this operation by clicking Cancel scheduled operation on the Undo Suspend User form.
Move a user
Click the Active Directory administrative unit then click AD Users.
Enter the name of the user in the search field and click Search Objects.
Click the checkbox to the left of the user’s name.
In the Actions menu, click Move.
Click Browse.
Enter the name target Organizational Unit (OU) in the search field and click Search Objects.
Click the checkbox to the left of the OU’s name then click OK.
Enter a comment that will be recorded in the operational history log.
Click Move.
Delete a user
TIP: Consider using Suspend User instead of Delete.
Click the Active Directory administrative unit then click AD Users.
Enter the name of the user in the search field and click Search Objects.
Click the checkbox to the left of the user’s name.
In the Actions menu, click Delete.
Enter a comment that will be recorded in the operational history log.
Click Delete.
View user properties
Click the Active Directory administrative unit then click AD Users.
Enter the name of the user in the search field and click Search Objects.
Click the checkbox to the left of the user’s name.
On the Actions menu, click Properties.
Compare Membership
Click the Active Directory administrative unit then click AD Users.
Enter the name of the user in the search field and click Search Objects.
Click the checkbox to the left of the user’s name.
In the Actions menu, click Compare Membership.
Click Change to select Template account.
-
If the Add and Remove buttons are available for you, you can modify user membership:
To copy groups from a template user account to target you should select the groups that only template user has and click Add.
To remove groups you should select the groups that a target user has but a template user don't have and click Remove.
Disable a user
Click the Active Directory administrative unit then click AD Users.
Enter the name of the user in the search field and click Search Objects.
Click the checkbox to the left of the user’s name.
In the Actions menu, click Properties.
Click the Settings tab at the top.
Check Account is disabled then click Update.
Set smart card required for a user
Click the Active Directory administrative unit then click AD Users.
Enter the name of the user in the search field and click Search Objects.
Click the checkbox to the left of the user’s name.
In the Actions menu, click Properties.
Click the Settings tab at the top.
Check the Smart card is required then click Update.
Unlock a user
Click the Active Directory administrative unit then click AD Users.
Enter the name of the user in the search field and click Search Objects.
Click the checkbox to the left of the user’s name.
In the Actions menu, click Properties.
Click the Settings tab at the top.
Check Unlock account then click Update.
Disable the Kerberos preauthentication requirement
In the Cayosoft Administrator Web Portal, click the Active Directory administrative unit and select the AD Users web query.
Select a user and click Properties in the Actions pane.
In the Settings tab, select the Do not require Kerberos preauthentication checkbox.
Click Update to save the changes.
Set expiration date for a user
Click the Active Directory administrative unit then click AD Users.
Enter the name of the user in the search field and click Search Objects.
Click the checkbox to the left of the user’s name.
On the Actions menu, click Properties.
Click the Settings tab at the top.
Under the Account Expires section click End of.
Click the Calendar icon and select an expiration date.
Click Update.
Set or update a job title or department for a user
Click the Active Directory administrative unit then click AD Users.
Enter the name of the user in the search field and click Search Objects.
Click the checkbox to the left of the user’s name.
On the Actions menu, click Properties.
Click the Organization tab at the top.
Type a Job Title or Department for the user
Click Update.
Set or update a manager for a user
Click the Active Directory administrative unit then click AD Users.
Enter the name of the user in the search field and click Search Objects.
Click the checkbox to the left of the user’s name.
On the Actions menu, click Properties.
Click the Organization tab at the top.
Click Change to the right of the Manager field.
Enter the manager’s name in the search field and click Search Objects.
Click the checkbox to the left of the manager’s name then click OK.
Click Update.
Remove a user from a group
Click the Active Directory administrative unit then click AD Users.
Enter the name of the user in the search field and click Search Objects.
Click the checkbox to the left of the user’s name.
On the Actions menu, click Properties.
Click the Member of tab at the top.
Click the checkbox to the left of the group name(s) from which the user is to be removed then click Remove.
Click Update.
Rename a user
Click the Active Directory administrative unit then click AD Users.
Enter the name of the user in the search field and click Search Objects.
Click the checkbox to the left of the user’s name.
On the Actions menu, click Rename.
In the Rename dialog box, change the name as needed.
Click Update.
Authentication Methods
Click the Active Directory administrative unit then click AD Users.
Enter the name of the user in the search field and click Search Objects.
Click the checkbox to the left of the user’s name.
On the Actions menu, click Authentication Methods.
-
Add authentication methods for the selected user:
Email
Mobile phone
Office phone
Alternate mobile
Temporary Access Pass
Click Update.
AD LDS
Click the Active Directory administrative unit then click AD Users.
Enter the name of the user in the search field and click Search Objects.
Click the checkbox to the left of the user’s name.
On the Actions menu, click AD LDS.
Modify AD LDS properties.
Click Update.
OneDrive Properties
Click the Active Directory administrative unit then click AD Users.
Enter the name of the user in the search field and click Search Objects.
Click the checkbox to the left of the user’s name.
-
On the Actions menu, click OneDrive Properties.
Specify secondary site collection admins
Specify settings:
If people outside the organization can access user OneDrive
Storage quota in GB
Click Update.
Teams Voice Settings
Click the Active Directory administrative unit then click AD Users.
Enter the name of the user in the search field and click Search Objects.
Click the checkbox to the left of the user’s name.
On the Actions menu, click Teams Voice Settings.
Update Teams policies if needed
To update the user a phone number select Update Number
Specify the type of number: Calling Plan, Direct Routing, or Operator Connect .
For the Calling Plan specify Phone number and Emergency Location , and select them from the list.
-
There are several options for Direct Routing:
Enter manually - specify the number manually: copy/paste it from an outside source.
From attribute - you can use it if the phone number is specified in the user attribute.
Next free in range - select this option to assign the number that will be selected from the rule configured by the administrator.
CSV Mapping - select this option to assign the number that will be selected from the rule configured by the administrator.
Clear current number - use this option to delete the number.
Click Update.
Calendar Properties
Click the Active Directory administrative unit then click AD Users.
Enter the name of the user in the search field and click Search Objects.
Click the checkbox to the left of the user’s name.
On the Actions menu, click Calendar Properties.
-
For the resource mailbox it is possible to update settings on these four tabs:
Calendar permissions
Resource delegates
Booking requests
Booking options
NOTE: User, shared, and linked mailboxes have only the Calendar permissions tab.
Click Update.
Unix/Linux Properties
Click the Active Directory administrative unit then click AD Users.
Enter the name of the user in the search field and click Search Objects.
Click the checkbox to the left of the user’s name.
On the Actions menu, click Unix/Linux Properties.
Click Unix- enabled.
Specify UID. Type it or click Generate. The available options depend on the web action configuration.
Also, you can specify Primary Group (GID), Home Directory, Login Shell, and Comment.
Click Update.
Configure delegation in users
IMPORTANT: The Delegation tab is only available if the target user has a service principal name assigned.
Use the Delegation tab in the Properties web action to configure Kerberos delegation for user accounts. Refer to the following steps:
Click the Active Directory administrative unit, then click AD Users.
Enter the name of the user in the search field and click Search Objects.
Click the checkbox to the left of the object name.
In the Actions menu, click Properties.
Select the Delegation tab.
-
Select the delegation option:
To configure unconstrained delegation, select the Trust this user for delegation to any service (Kerberos only) check.
To configure constrained delegation, select the Trust this user for delegation to specified services check. Define the authentication protocol and services to define the object and corresponding services. Click OK to save the changes.
Click Update to save the changes.
Change history
| Version | Notes |
|---|---|
| 13.1 | The Properties web action for AD users now features a Delegation tab. |
| 10.0.2 | The Calendar permission web action has been renamed and updated. |
| 9.4.0 | The Authentication Methods web action has been added. |
| 9.3.0 |
|
| 8.4.0 | The Teams Voice Settings web action has been introduced in the product. |
| 7.3.0 | The OneDrive Properties web action has been introduced in the product. |
| 6.4.0 | The Cancel suspend operation has been introduced in the product. |
| 6.3.0 | The AD LDS management has been introduced in the product. |
Comments
0 comments
Please sign in to leave a comment.