Permissions Issue

From: Nir B (nir_at_icomverse.com)
Date: 06/19/03


Date: Thu, 19 Jun 2003 14:12:48 +0300


Hi All,

I extended my AD schema and add few confidential attributes; I want to give
the "Authenticated Users" the ability to read all the attributes except the
confidential attributes.

I gave the "Authenticated Users" permission to read all the attributes and
deny "Authenticated Users" from reading the confidential attributes.

My problem is that there 3 users that need to read the confidential
attributes and because I denied the "Authenticated Users" from reading those
attributes they can't read them also (because they are member of the
"Authenticated Users") I tried to give then specific read permission on the
confidential attributes but they still can't read them.

Any ideas how to solve this?

Thanks In Advanced!

NirB



Relevant Pages

  • Re: CDOSYS Send method fails first time
    ... Permission: Authenticated Users - Read Control, ... > fails on the Send method if I access the web page with a non-admin user. ...
    (microsoft.public.exchange.development)
  • Minimum ACL to see someone in a search?
    ... I just recently removed Everyone from the Pre-Windows 2000 Compatible Access ... All 5 are administrators. ... administrators, the Authenticated Users group has Read permission, i.e. Read ...
    (microsoft.public.windows.server.active_directory)
  • Re: Some policys do not apply to user
    ... The difference between Everyone and Authenticated Users is Everyone includes ... Does the group have AGP permission? ... >>sounds like there is ACL filtering configured on the GPO ... Make sure the ACL has Everyone ...
    (microsoft.public.win2000.group_policy)
  • RE: AD users and computers security
    ... I believe you can remove authenticated users from OU, however, please ... carefully grant the appropriate permission to OU. ... When responding to posts, please "Reply to Group" via your newsreader so ...
    (microsoft.public.windows.server.migration)
  • Re: Restrict view of AD
    ... You can remove the Authenticated Users group from the particular OU if you ... how do I apply the list object permission? ... this permission will apply to all child objects even if the child OU does ...
    (microsoft.public.win2000.active_directory)