Enterprise Vault for Exchange: Office Mail App: Secondary (shared mailbox) functionality fails

book

Article ID: 100049797

calendar_today

Updated On:

Description

Error Message

 

A retrieval request fails with the following error:

event id: 3176 - A RetrieveMarkedItems request has failed

Error: Client refused due to insufficient privileges, user attempted to access the Vault: Vault Name: Vault Id: but did not have access (0xc0040aad)

 

 

Cause

 

This can occur under the following condition:

 

- User logs into workstation using the account - (example: Company\User1)

- User launches Outlook Web Access (OWA) using the credentials for a secondary mailbox (shared@Company.com)

Note: This occurs when the browser is set to:

  • Automatic logon using username and password
  • Automatic logon only in Intranet zone

 

 

Note: With either setting applied, the browser automatically passes the account credentials of the user logged into the workstation. (example: Company\User1)

 

Resolution

 

There are two methods to address this issue:

 

1.) Apply full access (mailbox delegation) rights to the secondary mailbox (shared mailbox) to the logged on windows account. (example: Company\User1)

Note: Enterprise Vault will synchronize the mailbox permissions and apply the permissions to the secondary mailbox's (shared mailbox) Archive.

 

2.)  Change the browser setting to prompt for username and password

Note: This will allow the end user to re-apply the credentials of the secondary mailbox (shared mailbox) when prompted.

 

 

Issue/Introduction

When logging into a secondary mailbox (shared mailbox) and attempting to perform an Enterprise Vault function (Delete/Restore/Search/Store), the function results in a failure to complete the request.