when you give "full control" to a user's mailbox in ADCU, are you editing the security descriptor on the mailbox or the msExchMailboxSecurityDescriptor attribute of the user object?
I know changing the atrribute does not get mirrored back to the mailbox sd but it works in the opposite direction- changing the sd on the mailbox updates the atrribute. I was just wondering how that worked under the hood- changing a user's rights on a mailbox and wheter you do it thru ADUC or change thru ESM. Also, am I right in assuming AD only contains the info store object but NOT objects for the mailboxes themselves(at least thats what i see thru adsiedit.msc). Thanks. I apologize for all the questions. I guess it got kinda slow here at work and I started thinking about things. Thanks again List info : http://www.activedir.org/List.aspx List FAQ : http://www.activedir.org/ListFAQ.aspx List archive: http://www.mail-archive.com/activedir%40mail.activedir.org/
