Exchange: Hide Distribution Group Members


Other day I have been asked to find out if we can hide DL Members. So Users can see the DL in Address Book, but can’t see the members. I found it’s very easy to do. (Microsoft Exchange Rocks!!!)

Here is how you do it.

  1. Open Active Directory Users and Computers console.
  2. Click View Menu and select Advanced Features (to enable it)
  3. Find your Distribution List or Security Group (mail enabled) in the OU
    1. DO NOT search your group. Because if you open the DL/Group properties from search windows, it will NOT show the Attribute Editor which is the advanced feature)
  4. Double click to open the DL/Group to see the properties. Go to Attribute Editor tab.
  5. Find hideDLMembership attribute, double click to open and select True. Click OK twice to close the dialog boxes.

image

It takes a while to take effect the changes while Exchange generates Offline Address Book and Outlook get it. If you want to make the offline address book process faster, follow my blog post here.

In Outlook, DL properties shows like this with hidden members.

image

If we check the DL in OWA, it shows like this:

image

Hope it helped you. Leave me a reply.

10 thoughts on “Exchange: Hide Distribution Group Members

    1. Hello Gagab,
      Owner of the distribution group can see the members and add/remove from OWA settings. In OWA, Find the owned distribution groups at Settings (Gear icon) >> General >> Distribution Groups.

  1. We are using Exchange 2016 and have the setting in the distribution list properties, however, I found the distribution list still show the members.

    1. You mean users can still see the members. Sad thing is Exchange server have to generate the Offline Address Book with the updated setting, that need to be downloaded by Outlook client. Usually this takes 24 hours. You many manually start the offline Address book generation.

      Once the updated OAB is in the client machine, they no longer can see the members.

      1. Yes…

        I have follow your instruction to add the setting on Tuesday and I have deleted the local offline address book, however, it still can see the members after the offline address book re-dowloaded.

        Is this related to us using on-premise Exchange with Exchange Online in hybrid mode?

      2. Hello Leo,
        I see you deleting the Offline Address Book files on our local computer. Outlook would’ve downloaded offline address book that is not updated yet.

        You can manually update the Offline Address Book at Exchange server by running this command. Replace the “OAB Name” with the name you have in your Exchange org.

        Update-OfflineAddressBook -Identity “OAB Name”

        If you don’t know your Offline Address Book name, run this command to identify:

        Get-OfflineAddressBook

      3. Hello Anand,
        One more thing, can we limit who can search and see the distribution group??

Leave a reply to --Anand-- Cancel reply