manage distribution group by group that is not allowed to get assigned to file ACL

Dear all,

Currently I'm faced with the problem to get a distribution group managed by a group of user accounts. As you do not want to add every single manager to the managed by-property of the distribution group, I just created another security group, added the managers account there and put it into the managed by-property of the distribution group. Works perfect. 

Now my security officer came around and told me that he does not want me to create security groups that can be assigned to directory/file ACLs, as I am only allowed to manage mail objects.

When checking that I did not find a resolution, as the  managed by -property seems to need a DACL object, so I cannot prevent it from being used by any object type. Do you know any other idea how to prevent the security group (or maybe a different type), so I cans still use it as a role/group to manage the distribution group members while it is unable to get assigned to a file/directory ACL?

Any way to achieve that? Please let me know.

Regards,
Martin

March 24th, 2015 3:59am

Hi Martin,

Based on my knowledge, security group is used to assign permissions. Distribution groups can be used only with Exchange to send e-mail to collections of users. In your case, you need to create a security group to manage your distribution group.

Hope my clarification can be helpful to you.

Best regards,

Free Windows Admin Tool Kit Click here and download it now
March 25th, 2015 3:22am

This topic is archived. No further replies will be accepted.

Other recent topics Other recent topics