The Source Exchange Account used by Migration Manager for Exchange agents should be a member of the local Administrators group on each source Exchange server involved in the migration.
Caution: If the Exchange server is a domain controller, the account should be added to the domain local Administrators group of the domain.
To add the Source Exchange Account to the local Administrators group on each source Exchange server involved in the migration, perform the following:
To perform Move mailbox operations, the Source Exchange Account needs to be assigned permissions to run the following cmdlets:
To grant these permissions, add the account to the Recipient Management group in the source Exchange 2013 organization, as follows:
To grant the ApplicationImpersonation management role to the <User> (in our example, LA\JohnSmith), run the following cmdlet in Exchange Management Shell:
New-ManagementRoleAssignment -Role ApplicationImpersonation -User LA\JohnSmith
This section describes how to set the required permissions for the Source Active Directory Account used by Migration Agent for Exchange. This account is used for the following:
The required permissions for the Source Active Directory Account are as follows:
Write permission on the Microsoft Exchange System Objects organizational unit in all domains in which source Exchange 2013 servers involved in public folder synchronization reside