The Office365 Resource Admin Tool is furnished by ITS for creating and modifying resource accounts, often referred to as "shared mailboxes".
O365 RAT Access for DSS
At this time, access to the Office365 Resource Admin Tool is not granted automatically to all members of DSS. Desktop Engineering will selectively grant access after appropriate training.
Resource Account Basics
Resource Types
There are 3 types of resource account that can be created:
- Room
- Equipment
- Shared mailbox
Access Permissions
There are 3 levels of access to a resource account that can be granted to a user:
- Full Access
- Send As
- Send on Behalf
Full Access
Users with this permission can view the mailbox and calendar associated with the resource account.
This does not allow the user to send messages from this mailbox. Consider this "read-only" access to the resource account.
Send As
Users with this permission can send emails from the email address associated with the resource account.
Send on Behalf
Users with this permission can send emails via the email address associated with the resource account, with an additional detail noting which user wrote the content of the email, e.g., "j.doe@austin.utexas.edu on behalf of LAITS@austin.utexas.edu".
Manager Permissions
Additionally, individual users and/or distribution lists can be designated a Manager, which allows them to access the O365 Resource Admin Tool and modify that resource account. Depending on the type of resource account, this may appear as "Shared Mailbox Manager", "Room Resource Manager", or "Equipment Resource Manager".
If you are the first LAITS Team member to gain access to a Shared Resource or you create one please add DL.LAITS.O365.Admins@austin.utexas.edu to the Manager List.
Resource Admin Tool Functions
Tool | Function |
---|---|
View Resource | View current settings for any resource account |
Create/Delete Room | Create Room Calendar |
Modify Room | Edit Room Name and/or Access |
Create/Delete Equipment | Create Equipment Check-out Calendar |
Modify Equipment | Edit Equipment Name and/or Access |
Create/Delete Shared | Create Shared Mailbox |
Modify Shared | Edit Shared Mailbox Name and/or Access |
Creating New Resource Accounts
Required Information
Requests for new resource accounts must include the following:
- Type: "room", "equipment", or "shared mailbox"
- Display Name: readable name of the resource in the Global Address List
- Can be changed at any time
- Email Address: desired email address
- Must not be an existing address
- Can use vanity email domains, e.g., @blantonmuseum.org
- Cannot be changed after creation without intervention from postmaster@utexas.edu
- Managers: EIDs of user(s) that should be granted Manager permissions
Requests may also include the following, but they are not required to create the mailbox:
- Full Access users: EIDs of user(s) that should be granted Full Access permissions
- Send As users: EIDs of user(s) that should be granted Send As permissions
- Send on Behalf users: EIDs of user(s) that should be granted Send on Behalf permissions
Process for Creating New Resource Account
Request Resource Creation
- Click the appropriate "Create / Delete" tool link for the requested resource type
- "Create / Delete Room" for a room resource, etc.
- In the "Create" section, begin by entering the requested email address and select the desired vanity domain, if any, from the dropdown menu
- Enter the requested display name for the new resource
- In the "Resource Manager" field, enter your EID
- You will modify the resource account after creation to include the LAITS O365 Admin distribution list (DL.LAITS.O365.Admins@austin.utexas.edu) and any Mailbox Managers requested by the user
Click the "Create" button to schedule the resource for creation
Resource Creation Processing Time
The creation process may take up to 30 minutes to complete, and the resource account will be at least partially inaccessible during that time.
Modifying Newly-Created Resource
Depending on the type of resource account, the options for modifying the account will vary.
To add LAITS as a Manager:
- Click the appropriate "Modify" tool link for the resource type
- Locate the desired resource from the list
- CTRL+F/CMD+F works best
- Click "Select Resource" and wait for the page to load
- Once the page has loaded, the details of the selected resource should now be displayed
- In the "Managers" section, enter the LAITS O365 Admins distribution list, DL.LAITS.O365.Admins@austin.utexas.edu
- Click "Add Manager" and wait for the page to reload
- After the page has reloaded, confirm that "DL-LAITS-O365-Admins" is in the Managers list
- If it is not in the list, repeat from step 5 until successfully added
- Continue processing the creation request
- Optionally, you may remove your own EID from the Managers list before proceeding
Common Resource Options
Each resource account type has a section titled "Mailbox Permissions". This is where individual users can be granted any requested access.
For each requested user:
- Enter their EID in the text field near the bottom of "Mailbox Permissions"
- Click the corresponding "Add to" button for their requested access
- It will take a moment for the change to process, after which the page will refresh
- After the refresh, confirm that the user is now listed in the appropriate section of "Mailbox Permissions"
- Repeat this process for each access type requested for this user
Room and Equipment Resource Options
Room and equipment resources both have additional functionality related to calendaring. Namely, these are "Calendar Booking Options" and "Booking Delegates".
"Calendar Booking Options" include the following:
- Default
- All incoming calendar requests are added as "tentative", pending direct approval from the resource account login
- Delegate Approval for all requests
- All incoming calendar requests are added as "tentative", pending direct approval or approval by delegate
- Delegate Approval only for out-of-policy requests
- Incoming calendar requests that match the resource account's policies are added automatically; others require direct or delegate approval
- Automatically Approve All
- Incoming calendar requests are automatically approved on a first-come, first-served basis
- Manual
- No automatic processing will performed for this calendar
- This resource has custom settings
- This option is disabled by default; if required, contact postmaster@utexas.edu
The "Booking Delegates" section allows individuals, added by EID, to perform the delegate functions described above.
Regarding Delegate Permissions
Any individuals added as Booking Delegates will need to also have Full Access permissions for the resource. Without this, they will be unable to see or interact with the resource's calendar.
Modifying an Existing Resource Account
Add/Remove Users
Users can be granted permissions or have them revoked as needed.
- Click the appropriate "Modify" link for the type of the existing resource account
- Select the existing resource account from the list and click "Select Resource"
- If adding a new user or granting additional permissions for a user:
- Enter their EID in the text field near the bottom of "Mailbox Permissions"
- Click the corresponding "Add to" button for their requested access
- It will take a moment for the change to process, after which the page will refresh
- After the refresh, confirm that the user is now listed in the appropriate section of "Mailbox Permissions"
- Repeat this process for each access type requested for this user
- If removing a user or revoking specific permissions:
- In the "Mailbox Permissions" section, locate and select the user in the list corresponding to the specified access type
- Click "Remove User"
- It will take a moment for the change to process, after which the page will refresh
- After the refresh, confirm that the user is no longer listed for that access
- Repeat this process for each access type to be revoked for this user
Regarding Distribution Lists With Access
If you notice a distribution list (e.g., DL-LAITS-DSS-FTE) included in any of the access lists, please contact #desktop_engineering. These distribution lists should be removed and replaced with individual users whenever possible.
Change Display Name
Modifying the display name of an existing resource account is trivial and can be done at any time.
- Click the appropriate "Modify" link for the type of the existing resource account
- Select the existing resource account from the list
- In the "Resource Display Name" or "Shared Mailbox Display Name" section, enter the desired display name
- Click "Save Display Name Changes"
Change Resource Account Email Address
This is a non-trivial change, and cannot be directly performed by LAITS without data loss.
If the user needs to retain the existing resource account data, contact postmaster@utexas.edu with all relevant details, including at least the existing resource account email address and the desired email address.
Related Processes
Publishing Room/Equipment Resource Calendars
Room/equipment resources' calendars can also be "Published", which creates an HTML or ICS link to the calendar. This also publishes the calendar on the web and allows people who have the URL to view it live.
To publish a resource account calendar:
- Login to OWA
- Click your name in the upper-right and choose "Open another mailbox"
- Enter the name of the resource, or its email address, and click "OK"
- When the mailbox has loaded, click the gear icon in the upper-right to open the "Settings" sidebar
- Search for "publish a calendar"
- In the dialog that appears, under "Publish a calendar", select the calendar you wish to publish from the dropdown menu
- Select the desired permissions for the published calendar
- Can view when I'm busy
- Can view titles and locations
- Can view all details
- Click "Publish", and wait a moment for the request to be completed
- The newly-published calendar will appear below the calendar-selection dropdown, along with an HTML and ICS link
- Distribute either link to the desired individuals