This isn't really an issue but more of an request for an explanation
of how things work under the hood.

I have a mutli domain forest.
A user who is an Exchange full admin in one domain logs in and opens
Outlook to an mailbox that is owned by a user account in another
domain(same forest).
This mail box enabled user has no special rights.
The Exchange full admin account(which has full mail box rights on the
mailbox enabled acoount in the child domain) then modifies the rights
on a Public folder  thru outlook, which Exchange seems to let him do
and then those perms disappear after a few minutes.

Now my question is, when exchange determines who can do what, is that
based on the actual account logging into the domain with outlook or
the account associated with the mailbox that outlook has open?
if the later, does it just lookup the msexchmailboxguid to determine
the user account and base it on that?

as i said, this is not an issue, just looking for an explanation of
how things work.


thanks


p.s- win2k3 forest ffl/dfl win2k3 and exch2k3
List info   : http://www.activedir.org/List.aspx
List FAQ    : http://www.activedir.org/ListFAQ.aspx
List archive: http://www.activedir.org/ml/threads.aspx

Reply via email to