when you give "full control" to a user's mailbox in ADCU, are you editing the 
security descriptor on the mailbox or the msExchMailboxSecurityDescriptor 
attribute of the user object?

I know changing the atrribute does not get mirrored back to the mailbox sd but 
it works in the opposite direction- changing the sd on the mailbox updates the 
atrribute.
I was just wondering how that worked under the hood- changing a user's rights 
on a mailbox and wheter you do it thru ADUC or change thru ESM.

Also, am I right in assuming AD only contains the info store object but NOT 
objects for the mailboxes themselves(at least thats what i see thru 
adsiedit.msc).

Thanks.
I apologize for all the questions. I guess it got kinda slow here at work and I 
started thinking about things.
Thanks again
List info   : http://www.activedir.org/List.aspx
List FAQ    : http://www.activedir.org/ListFAQ.aspx
List archive: http://www.mail-archive.com/activedir%40mail.activedir.org/

Reply via email to