Re: Send As, Blackberries and Confusion

Tech Tip: Click here to run a free scan for Windows Errors and optimize PC performance



On 7 mar, 09:54, "Jamestechman" <jamestech...@xxxxxxxxx> wrote:
Because of the updated store versions greater or equal to 6619.4,
granting permission at the store level will not implicity give your
service accounts send as rights anymore. You will need to grant this
at the user object level in AD per your articlehttp://support.microsoft.com/kb/912918/en-us.
You only need to grant Send As per RIM.

James Chong (MVP)

So, no Receive As permission on AD User Objects. Is it because
Receive As permission is inherited from the server level?

What I'm still confused about is :

According to KB912918, the BESAdmin account need the following
permissions :

1. Administrative Group Level (Exchange View Only Admin)
2. Exchange Server Level ("Send As," "Receive As," and "Administer
Information Store")
3. Mailbox Store Level ("Send As," "Receive As," and "Administer
Information Store") - That's the one I don't get. Won't this be
inherited from the server level?

Thanks!



.



Relevant Pages

  • Re: Developing role-based security question
    ... explictly set permissions on the user object, ... permission on the user to say, ... because we're gonna re-use it in almost any project that requires security. ... > suppose that class has a Username field. ...
    (microsoft.public.dotnet.general)
  • Re: Allowing Anonymous write access only.
    ... need at least READ permission for login. ... > been set up so that anonymous FTP users have write access only, this> may seem insecure and we do get a certain ammount of hackers or> taggers testing the system by dropping test files and folders onto the> server, but because anonymous users do not have read access they soon> find that they cannot download anything they upload and go elsewhere. ... This is where my problems have started,> I initialy replicated all the IIS setting and NTFS permission from my> NT box on my 2003 box but so far have been unable to achive the same> result, it appaers that I can only grant anonymous write access if I ...
    (microsoft.public.inetserver.iis.ftp)
  • Re: Yukon schemas
    ... ALTER to the schema. ... you have to grant create permission to perform the action ... data and to create and alter stored procedures and views that they owned. ...
    (microsoft.public.sqlserver.security)
  • Re: Local admin right
    ... use Group Policy Restricted Groups to enforce membership of local computer ... > account to local admin group to run some applications. ... > used this permission to grant someone else to access that box too. ...
    (microsoft.public.security)
  • Re: AppArmor Security Goal
    ... permission to /home/$user/.mozilla...... ... and grant each user access to only ... two shell scripts (one to start each browser profile) and set the AA policy ...
    (Linux-Kernel)