meastaugh1
Technical User
- Apr 21, 2002
- 316
Hi,
I've created a new OU underneath the domain root. I will store contacts in here that I only want certain users to access. I have therefore removed the Authenticated Users - Read ACE from the OU's ACL. However, when I create/import new contacts into the OU, the contact receives the Authenticated Users - Read entry by default, regardless of the OUs ACL.
Can/should this be changed? As stated above, I want to remove auth users from having read permission, because I don't want some users to address/tel numbers of the contacts. If avoidable, I'd prefer not to have to use Deny permissions for the user's I don't want to access, as it's a bit of a backwards approach to security.
Since I can't change the ACL multiple contacts, I'd need some sort of script to iterate through all contacts in the OU, modifying the ACL of each one.
Any help much appreciated
I've created a new OU underneath the domain root. I will store contacts in here that I only want certain users to access. I have therefore removed the Authenticated Users - Read ACE from the OU's ACL. However, when I create/import new contacts into the OU, the contact receives the Authenticated Users - Read entry by default, regardless of the OUs ACL.
Can/should this be changed? As stated above, I want to remove auth users from having read permission, because I don't want some users to address/tel numbers of the contacts. If avoidable, I'd prefer not to have to use Deny permissions for the user's I don't want to access, as it's a bit of a backwards approach to security.
Since I can't change the ACL multiple contacts, I'd need some sort of script to iterate through all contacts in the OU, modifying the ACL of each one.
Any help much appreciated