This forum is closed to new posts and responses. Individual names altered for privacy purposes. The information contained in this website is provided for informational purposes only and should not be construed as a forum for customer support requests. Any customer support requests should be directed to the official HCL customer support channels below:

HCL Software Customer Support Portal for U.S. Federal Government clients
HCL Software Customer Support Portal


Jan 20, 2016, 2:39 PM
1 Posts

Reactivating Users in Domino Administrator

  • Category: Domino Administrator
  • Platform: Windows
  • Release: 9.0.1
  • Role:
  • Tags:
  • Replies: 5

Hello everyone. Fairly new to Domino administration and wondering what the best practice and procedure would be for re-activating ex-employees within Domino. Our procedure to terminate users from the system currently is to archive all active mail, then eventually move the archive off the server once no longer required. If said employee is to return to the company, is it best to 1) Start from scratch as a new user, or 2) Recover from the archive mail file (Unsure of procedure)

Jan 21, 2016, 2:35 AM
328 Posts
We pretty much do the same when an employee leaves...

We typically 'Delete' the user, and if no-one has an immediate need for their mail move it off the server.

Most cases I've had where an employee returns, there hasn't been a need to restore their mail, however I have had a couple cases. In those cases I restored their mail file, then, when setting up the user (as a new user, with a new certificate), set the user up to use the mail file with the same name. I made sure that the ACL was correct for the new user, and all was well.

Assuming of course that the user did not encrypt their mail file. If they had encrypted their mail, the new user id would not be able to read it. In that case they'd either have to start with a brand new mail file, or there would have to be a way to re-create their original Person Document & User.ID. I actually save copies of the Address Book periodically for that very reason. I've also had Person documents get accidentally deleted, so the backup copies are a life saver!

Jan 22, 2016, 4:26 PM
212 Posts
User ID files

Saving copies of the person document for the purpose of obtainign old user ID files would only work if you use a generic password for the newly created user, and if you attach a copy of the users ID file to the person document when the usaer is registered.The best method is to take all users mail files who are terminated and ensure that they are not encrypted as part of the termination process, and then to store them in an off site locatiion.  This is also a good practice to use in the event that you would need to refer back to the user email account for any legal reasons.

Jan 24, 2016, 11:52 PM
328 Posts
User ID file

Since Vince didn't ask about ID files, an unstated assumption (i know it's bad to assume) that he'd have access to the ID file, either thru the vault, or using ID recovery, both of which would still have a copy of the user's ID file that can be recovered and used.

Probably not good to assume, because he stated that he's new to Admin so may not have any method of ID recovery in place.

Vince, you might want to make sure that some method of recovering the ID is also in place - either the ID Vault, or ID Recovery.

 

Jan 25, 2016, 8:33 PM
45 Posts
Recreate user
My recollection of having done this, which may be fuzzy, is that I didn't go through the Admin client, just created a new person document in the Domino Directory and pointed it to the existing mail file. Assumes the server replica of the mail file is unencrypted. You can set any password you like for the new user. Won't be able to access any existing encrypted messages but otherwise should be transparent to the user.
Jan 26, 2016, 12:29 PM
43 Posts
That would depend of the user itself

Do they ask for their old email ? If so then yes, you would need to restore them.

However what other have said below is also correct. If you restore their old email and somehow there is an encrypted email in there then it would not be readable if you create a new user since the public / private key combination for that new user is different compared to the old one. To avoid this you would need to have the old copy of their person document and be able to recover their old id and reset its password.


This forum is closed to new posts and responses. Individual names altered for privacy purposes. The information contained in this website is provided for informational purposes only and should not be construed as a forum for customer support requests. Any customer support requests should be directed to the official HCL customer support channels below:

HCL Software Customer Support Portal for U.S. Federal Government clients
HCL Software Customer Support Portal