RE: Universal Distribution Groups vs. Universal Security Groups

2002-05-30 Thread Ed Crowley

Right-click Recipients  Recipient Update Services container, select
Add, then select Recipient Update Service...

Ed Crowley MCSE+Internet MVP kcCC+I
Tech Consultant
hp Services
Protecting the world from PSTs and Bricked Backups!


-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED]] On Behalf Of Ken Cornetet
Sent: Wednesday, May 29, 2002 12:09 PM
To: Exchange Discussions
Subject: RE: Universal Distribution Groups vs. Universal Security Groups
Sensitivity: Confidential


Domain that contains MSX servers and users is mixed mode. Domain with
DLs (Universal Distribution Groups) is native. See second paragraph of
my original post.

I have found one Q article since my post that indicates I need a
separate RUS in the domain that the DLs are replicated to.
Unfortunately, it didn't spell out how to do that. More research on my
part...

-Original Message-
From: Ed Crowley [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, May 29, 2002 1:34 PM
To: Exchange Discussions
Subject: RE: Universal Distribution Groups vs. Universal Security Groups
Sensitivity: Confidential


Is your Windows 2000 domain in native mode?

Ed Crowley MCSE+Internet MVP kcCC+I
Tech Consultant
hp Services
Protecting the world from PSTs and Bricked Backups!


-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED]] On Behalf Of Ken Cornetet
Sent: Wednesday, May 29, 2002 10:11 AM
To: Exchange Discussions
Subject: Universal Distribution Groups vs. Universal Security Groups
Sensitivity: Confidential


I'm testing our 5.5 - 2K migration plan in a test lab, and I've run
into a stumbling block. Q295922 says that ADC migrates 5.5 DLs to AD
UDGs and that the E2K store will convert these to USGs as needed. This
is not what I'm seeing, so obviously, I'm confused...

I have two AD domains: ADSTEST (native) and KIITEST (mixed). All user
IDs and Exchange servers are in KIITEST. Connection agreements are in
place to replicate everything except DLs into KIITEST (mixed mode
domain). DLs go into ADSTEST (native AD).

Everything seems to be working EXCEPT that when mailboxes are moved from
the 5.5 server to the 2K server, any mailbox permissions granting access
to members of a DL no longer work. Checking the DLs in question shows
they are still USGs and have not been converted to USGs. 

Everything I've seen about DLs used to grant security always reference
public folders - I've never seen mention about DLs used to grant
security to mailboxes. Do DLs need to be USGs to grant access to
mailboxes? 

If so, must I convert them manually?

_
List posting FAQ:   http://www.swinc.com/resource/exch_faq.htm
Archives:   http://www.swynk.com/sitesearch/search.asp
To unsubscribe: mailto:[EMAIL PROTECTED]
Exchange List admin:[EMAIL PROTECTED]


_
List posting FAQ:   http://www.swinc.com/resource/exch_faq.htm
Archives:   http://www.swynk.com/sitesearch/search.asp
To unsubscribe: mailto:[EMAIL PROTECTED]
Exchange List admin:[EMAIL PROTECTED]

_
List posting FAQ:   http://www.swinc.com/resource/exch_faq.htm
Archives:   http://www.swynk.com/sitesearch/search.asp
To unsubscribe: mailto:[EMAIL PROTECTED]
Exchange List admin:[EMAIL PROTECTED]


_
List posting FAQ:   http://www.swinc.com/resource/exch_faq.htm
Archives:   http://www.swynk.com/sitesearch/search.asp
To unsubscribe: mailto:[EMAIL PROTECTED]
Exchange List admin:[EMAIL PROTECTED]



RE: Universal Distribution Groups vs. Universal Security Groups

2002-05-29 Thread Ed Crowley

Is your Windows 2000 domain in native mode?

Ed Crowley MCSE+Internet MVP kcCC+I
Tech Consultant
hp Services
Protecting the world from PSTs and Bricked Backups!


-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED]] On Behalf Of Ken Cornetet
Sent: Wednesday, May 29, 2002 10:11 AM
To: Exchange Discussions
Subject: Universal Distribution Groups vs. Universal Security Groups
Sensitivity: Confidential


I'm testing our 5.5 - 2K migration plan in a test lab, and I've run
into a stumbling block. Q295922 says that ADC migrates 5.5 DLs to AD
UDGs and that the E2K store will convert these to USGs as needed. This
is not what I'm seeing, so obviously, I'm confused...

I have two AD domains: ADSTEST (native) and KIITEST (mixed). All user
IDs and Exchange servers are in KIITEST. Connection agreements are in
place to replicate everything except DLs into KIITEST (mixed mode
domain). DLs go into ADSTEST (native AD).

Everything seems to be working EXCEPT that when mailboxes are moved from
the 5.5 server to the 2K server, any mailbox permissions granting access
to members of a DL no longer work. Checking the DLs in question shows
they are still USGs and have not been converted to USGs. 

Everything I've seen about DLs used to grant security always reference
public folders - I've never seen mention about DLs used to grant
security to mailboxes. Do DLs need to be USGs to grant access to
mailboxes? 

If so, must I convert them manually?

_
List posting FAQ:   http://www.swinc.com/resource/exch_faq.htm
Archives:   http://www.swynk.com/sitesearch/search.asp
To unsubscribe: mailto:[EMAIL PROTECTED]
Exchange List admin:[EMAIL PROTECTED]


_
List posting FAQ:   http://www.swinc.com/resource/exch_faq.htm
Archives:   http://www.swynk.com/sitesearch/search.asp
To unsubscribe: mailto:[EMAIL PROTECTED]
Exchange List admin:[EMAIL PROTECTED]



RE: Universal Distribution Groups vs. Universal Security Groups

2002-05-29 Thread Ken Cornetet

Domain that contains MSX servers and users is mixed mode. Domain with DLs
(Universal Distribution Groups) is native. See second paragraph of my
original post.

I have found one Q article since my post that indicates I need a separate
RUS in the domain that the DLs are replicated to. Unfortunately, it didn't
spell out how to do that. More research on my part...

-Original Message-
From: Ed Crowley [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, May 29, 2002 1:34 PM
To: Exchange Discussions
Subject: RE: Universal Distribution Groups vs. Universal Security Groups
Sensitivity: Confidential


Is your Windows 2000 domain in native mode?

Ed Crowley MCSE+Internet MVP kcCC+I
Tech Consultant
hp Services
Protecting the world from PSTs and Bricked Backups!


-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED]] On Behalf Of Ken Cornetet
Sent: Wednesday, May 29, 2002 10:11 AM
To: Exchange Discussions
Subject: Universal Distribution Groups vs. Universal Security Groups
Sensitivity: Confidential


I'm testing our 5.5 - 2K migration plan in a test lab, and I've run
into a stumbling block. Q295922 says that ADC migrates 5.5 DLs to AD
UDGs and that the E2K store will convert these to USGs as needed. This
is not what I'm seeing, so obviously, I'm confused...

I have two AD domains: ADSTEST (native) and KIITEST (mixed). All user
IDs and Exchange servers are in KIITEST. Connection agreements are in
place to replicate everything except DLs into KIITEST (mixed mode
domain). DLs go into ADSTEST (native AD).

Everything seems to be working EXCEPT that when mailboxes are moved from
the 5.5 server to the 2K server, any mailbox permissions granting access
to members of a DL no longer work. Checking the DLs in question shows
they are still USGs and have not been converted to USGs. 

Everything I've seen about DLs used to grant security always reference
public folders - I've never seen mention about DLs used to grant
security to mailboxes. Do DLs need to be USGs to grant access to
mailboxes? 

If so, must I convert them manually?

_
List posting FAQ:   http://www.swinc.com/resource/exch_faq.htm
Archives:   http://www.swynk.com/sitesearch/search.asp
To unsubscribe: mailto:[EMAIL PROTECTED]
Exchange List admin:[EMAIL PROTECTED]


_
List posting FAQ:   http://www.swinc.com/resource/exch_faq.htm
Archives:   http://www.swynk.com/sitesearch/search.asp
To unsubscribe: mailto:[EMAIL PROTECTED]
Exchange List admin:[EMAIL PROTECTED]

_
List posting FAQ:   http://www.swinc.com/resource/exch_faq.htm
Archives:   http://www.swynk.com/sitesearch/search.asp
To unsubscribe: mailto:[EMAIL PROTECTED]
Exchange List admin:[EMAIL PROTECTED]