This isn't really an issue but more of an request for an explanation of how things work under the hood.
I have a mutli domain forest. A user who is an Exchange full admin in one domain logs in and opens Outlook to an mailbox that is owned by a user account in another domain(same forest). This mail box enabled user has no special rights. The Exchange full admin account(which has full mail box rights on the mailbox enabled acoount in the child domain) then modifies the rights on a Public folder thru outlook, which Exchange seems to let him do and then those perms disappear after a few minutes. Now my question is, when exchange determines who can do what, is that based on the actual account logging into the domain with outlook or the account associated with the mailbox that outlook has open? if the later, does it just lookup the msexchmailboxguid to determine the user account and base it on that? as i said, this is not an issue, just looking for an explanation of how things work. thanks p.s- win2k3 forest ffl/dfl win2k3 and exch2k3 List info : http://www.activedir.org/List.aspx List FAQ : http://www.activedir.org/ListFAQ.aspx List archive: http://www.activedir.org/ml/threads.aspx