Recover Bold Property
- Recover any property belonging to Bold Group
- Vertx badge
- Data center badge
- Cell phone
- Laptop
- IP Phone
- Return badge to Data Center if applicable. If badge not recovered, call DataCenter immediately.
Export PST and Store on HDD
- Log in to user's computer and open Outlook.
- click File > Open and Export > Import/Export > Export to a file > Outlook Data File (.pst) > Select the user's account

- click Next
- Allow Duplicate Items to be created > Finish
- Once export is finished, save to two separate external hard drives.
Reset Users Password and put in LastPass
- Generate a secure password and create a note in LastPass with password
- Remote in to the Domain Controller
- boldgroup.com > Bold Users > End Users > Highlight user and right click > Reset Password...
- Use the password generated
Revoke/Re-Register MFA
- log in to the Office365 Admin portal
- Admin Centers > Azure Active Directory > Users > Search for the user in the search bar and click their name > Authentication Methods > Click "Revoke MFA sessions" and then "Require re-register MFA"
- Go back to Users
- At the top, Select Multi-Factor Authentication
- Search for User
- On the right, under "quick steps", click Disable then again press Enable.
- MAKE SURE MFA IS ENABLED AFTER
Remove from HD-Vertex (Badge entry system)
- Retrieve badge from departing user
- Open RDP and enter 172.16.143.47 and enter password
- In Windows, open RDP and remote into 172.16.143.47
- Open Manitou Workstation and login
- Select “HID – 074B – Bold Technologies” in the left-hand pane

- In the right-hand pane, select “Contact List”
- Click “Edit” toward the top of Manitou Workstation
- Click “OK” on the popup
- Click the white card labeled “Access Cards”

- Select the leaving user
- Uncheck “24 Hour Access”

- Click Save
Remove from Sonicwall
- Disable "Sonicwall VPN" user access immediately at time of dismissal.
- Open Google Chrome
- Enter IP addresses. Do for both Main office and
- 172.16.140.1 – Main Office SonicWall
- 192.30.133.196 – Data Center SonicWall
- On the top navigation pane, select, “MANAGE”
- On the left-hand navigation pane select “Local Users & Groups”

- Select User, make sure their checkbox is checked
- Click “Delete”
- DO NOT DELETE ALL
Microsoft Local Domain
Microsoft Cloud Domain
- IF THE USER IS HIGH-LEVEL (VP, TEAM LEAD OR PM), DO NOT REMOVE OFFICE 365 LICENSE or DYNAMICS
- You can remove CodeTwoSignature
- In O365 cloud, go to Admin portal >
- Remove from any cloud only based groups. (Azure Active Directory/ Office Admin Portal)
- Be sure to remove “CodeTwoSignature”
- Remove any product licenses (O365, Dynamics, etc…)
- In user Groups, be sure to remove Code Two Signature”
- Forward email to users supervisor
- Note: The current "SMTP" account must be removed from the disabled user account and added to the managers account. The description should be modified from the disabled account to point to the employee that will continue to receive new emails for the disabled account.
- Log into DOM-05 domain controller and open Active Directory
- Select the managers account that emails will be forwarded to, right click and select Properties
- Click Attribute Editor

- Scroll down to the ProxyAddresses field, highlight and click Edit
- In the "Value to add:" field, enter "smtp:<leaving users email address>"
- Click, OK, then Save
- Highlight the leaving user (May now be in the "Disabled" folder instead of "End Users")
- Right click and select Properties
- Click Attribute Editor
- Scroll down to ProxyAddresses
- remove the email address with the SMTP in all caps and save
- Remove Roles and Permissions from CRM
- Go to the Dynamics 365 page in the portal
- Click the down arrow next to Service, and click the right arrow to show more options
- Go Settings > Security

- Click Users
- Find and select user
- On user’s page, click Manage Roles on the bar toward the top

-
Uncheck all Roles
- Remove from any cloud only based groups. (Azure Active Directory/ Office Admin Portal)
Aeonix Phone System
- Forward Users phone calls to supervisor
- Log in to the Aeonix Admin portal
- Go to Users > User List then click the users extension
- Click Profiles > voicemail

- Check “Forward all” and set to users supervisor. This will forward all phone calls
- Change Users Aeonix Password
- Go to Users > User List
- On the right side of the Users List, the last column will be the “Change Password” button, click that.
- Physically remove IP phone from internet by removing RJ-45
- Place in IT storage room with other phones and power bricks
Remove from BoldTalk
- Login to http://lists.boldgroup.com/mailman/admindb/boldtalk_lists.boldgroup.com using admin credentials
Remove user from Security System
- Open up the [Insert file name and location here] and find the user that is leaving
- Take note of their user number and add a “0” in the front.
- User “51” Should now be “051” and user “4” should be “004”
- Go to the main security panel, located by the stairs heading down to support
- This is the only panel that can manage the system
- To remove the user, type in the code:
- 3396 8 [3-digit user code] 3396
- 1 (to confirm deleted position)
- Ex: 3396 8 004 3396
- 1 to confirm
Disable User in Active Directory
- IF THE USER IS HIGH-LEVEL (VP, TEAM LEAD OR PM), DO NOT DISABLE USER AND REMOVE LICENSES.
- Instead, reset their user password
- Login to DOM-05
- Open Active Directory
- Go to boldgroup.com > Bold Users > End Users

- Right click user and click, Reset Password…
- Store their password somewhere accessible for future reference
- In Powershell, run the command
-
In the running PowerShell window, tap the up arrow on the keyboard.
- If PowerShell is not running, open and type in command
-
Start-ADSyncSyncCycle
-
-
- Instead, reset their user password
- If user is not VIP:
- In the Local Domain
- Remote into DOM-5 domain Controller (use mRemote)
- Enter Active Directory Users and Computers.
- Go to Bold Users > End Users
- Select the leaving user and set the main group to the "Removal" group. Take membership out of every other group.
- Right click user > Properties > Member Of >
- Remove all groups and add No Access
- Right click user and “Disable Account”
- Make sure user is in “Disabled” folder
- Select the leaving user and set the main group to the "Removal" group. Take membership out of every other group.
- Go to Bold Users > End Users
- Enter Active Directory Users and Computers.
- Remote into DOM-5 domain Controller (use mRemote)
- In the Local Domain

- In Powershell, run the command:
- Start-ADSyncSyncCycle
- You may just be able to press the up arrow in the PowerShell









