migrating from Exchange 2010 to 2016 -> impersonation problem

Lijo Louis 1 Reputation point
2020-08-05T12:27:52.48+00:00

After migrating from Exchange 2010 to 2016, I'm getting the error: “the account does not have permission to impersonate the requested user” while accessing journal mail box, even though I have set the impersonation. The same user has no problem accessing mailboxes with Exchange 2010.

I have also tried to check the impersonation rights with Exchange 2016 using EWS editor and thats working.

Regards
Lijo Louis

Exchange Server Management
Exchange Server Management
Exchange Server: A family of Microsoft client/server messaging and collaboration software.Management: The act or process of organizing, handling, directing or controlling something.
7,413 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Lucas Liu-MSFT 6,161 Reputation points
    2020-08-06T05:15:19.593+00:00

    Hi Lijo Louis,
    This issue only occurred on this users or other users have same issue?
    Please check and make sure all required services are running.

    1. Please run the following command to check whether the account is in the list or group:
      Get-ManagementRoleAssignment - Role "ApplicationImpersonation"
      If this account in the group, you also could try to remove the account from this group and add it again.
      For more information : Get-ManagementRoleAssignment and Impersonation and EWS in Exchange
    2. Please try to removed Exchange Server network Address (exchange.domain.com) entry from Control Panel\User Accounts\Credential Manager.
      In addition, you should set the DNS records and Autodiscover point to Exchange 2016 server after migration.