Hi,
Apologies, I have posted a similar message on another forums yesterday but as I haven't had a reply I thought I'd try here.
My mailbox is locked to me and anyone else. I cannot access it via Outlook or OWA. The mailbox is my normal login. I have made the default mail profile for my Outlook an admin account and added my mailbox as another account but I cannot view the folders. I have forwarded mail from my account to the admin account but I do not have permission to send from that account either. The error message from Outlook is "Cannot start Outlook....you do not have permission to log on"; OWA says "You do not have permission to open this mailbox". I have tried the Outlook on my workstation and the copy on the SBS Server. All the other users are fine. I am the only person affected.
The permissions on the mailbox look ok to me but perhaps someone can see something I cannot. I notice there some of the Users in the list are listed twice, EG: Domain Admins. Is the order important? When I compare it with other mailbox permissions, the top two enteries in the list are additions that that I do not see from Get-MailboxPermission.
RunspaceId : ef2e992e-9a01-405f-8e86-4ae1cd0d6d9c AccessRights : {FullAccess} Deny : True InheritanceType : All User : SOME_DOMAIN\Domain Admins Identity : SOME_DOMAIN.local/MyBusiness/Users/SBSUsers/Some User IsInherited : False IsValid : True RunspaceId : ef2e992e-9a01-405f-8e86-4ae1cd0d6d9c AccessRights : {FullAccess, ReadPermission} Deny : False InheritanceType : All User : NT AUTHORITY\SELF Identity : SOME_DOMAIN.local/MyBusiness/Users/SBSUsers/Some User IsInherited : False IsValid : True RunspaceId : ef2e992e-9a01-405f-8e86-4ae1cd0d6d9c AccessRights : {FullAccess} Deny : False InheritanceType : All User : SOME_DOMAIN\DPaikkos Identity : SOME_DOMAIN.local/MyBusiness/Users/SBSUsers/Some User IsInherited : False IsValid : True RunspaceId : ef2e992e-9a01-405f-8e86-4ae1cd0d6d9c AccessRights : {FullAccess} Deny : True InheritanceType : All User : SOME_DOMAIN\Domain Admins Identity : SOME_DOMAIN.local/MyBusiness/Users/SBSUsers/Some User IsInherited : True IsValid : True RunspaceId : ef2e992e-9a01-405f-8e86-4ae1cd0d6d9c AccessRights : {FullAccess} Deny : True InheritanceType : All User : SOME_DOMAIN\Enterprise Admins Identity : SOME_DOMAIN.local/MyBusiness/Users/SBSUsers/Some User IsInherited : True IsValid : True RunspaceId : ef2e992e-9a01-405f-8e86-4ae1cd0d6d9c AccessRights : {FullAccess} Deny : True InheritanceType : All User : SOME_DOMAIN\Organization Management Identity : SOME_DOMAIN.local/MyBusiness/Users/SBSUsers/Some User IsInherited : True IsValid : True RunspaceId : ef2e992e-9a01-405f-8e86-4ae1cd0d6d9c AccessRights : {FullAccess} Deny : True InheritanceType : All User : SOME_DOMAIN\MOAIS Identity : SOME_DOMAIN.local/MyBusiness/Users/SBSUsers/Some User IsInherited : True IsValid : True RunspaceId : ef2e992e-9a01-405f-8e86-4ae1cd0d6d9c AccessRights : {FullAccess} Deny : True InheritanceType : All User : SOME_DOMAIN\Administrator Identity : SOME_DOMAIN.local/MyBusiness/Users/SBSUsers/Some User IsInherited : True IsValid : True RunspaceId : ef2e992e-9a01-405f-8e86-4ae1cd0d6d9c AccessRights : {FullAccess} Deny : False InheritanceType : All User : SOME_DOMAIN\Exchange Servers Identity : SOME_DOMAIN.local/MyBusiness/Users/SBSUsers/Some User IsInherited : True IsValid : True RunspaceId : ef2e992e-9a01-405f-8e86-4ae1cd0d6d9c AccessRights : {ReadPermission} Deny : False InheritanceType : All User : SOME_DOMAIN\Organization Management Identity : SOME_DOMAIN.local/MyBusiness/Users/SBSUsers/Some User IsInherited : True IsValid : True RunspaceId : ef2e992e-9a01-405f-8e86-4ae1cd0d6d9c AccessRights : {ReadPermission} Deny : False InheritanceType : All User : SOME_DOMAIN\Public Folder Management Identity : SOME_DOMAIN.local/MyBusiness/Users/SBSUsers/Some User IsInherited : True IsValid : True RunspaceId : ef2e992e-9a01-405f-8e86-4ae1cd0d6d9c AccessRights : {ReadPermission} Deny : False InheritanceType : All User : NT AUTHORITY\NETWORK SERVICE Identity : SOME_DOMAIN.local/MyBusiness/Users/SBSUsers/Some User IsInherited : True IsValid : True RunspaceId : ef2e992e-9a01-405f-8e86-4ae1cd0d6d9c AccessRights : {FullAccess, DeleteItem, ReadPermission, ChangePermission, ChangeOwner} Deny : False InheritanceType : All User : NT AUTHORITY\SYSTEM Identity : SOME_DOMAIN.local/MyBusiness/Users/SBSUsers/Some User IsInherited : True IsValid : True RunspaceId : ef2e992e-9a01-405f-8e86-4ae1cd0d6d9c AccessRights : {ReadPermission} Deny : False InheritanceType : All User : SOME_DOMAIN\Exchange Servers Identity : SOME_DOMAIN.local/MyBusiness/Users/SBSUsers/Some User IsInherited : True IsValid : True RunspaceId : ef2e992e-9a01-405f-8e86-4ae1cd0d6d9c AccessRights : {ReadPermission} Deny : False InheritanceType : All User : SOME_DOMAIN\Delegated Setup Identity : SOME_DOMAIN.local/MyBusiness/Users/SBSUsers/Some User IsInherited : True IsValid : True RunspaceId : ef2e992e-9a01-405f-8e86-4ae1cd0d6d9c AccessRights : {FullAccess, DeleteItem, ReadPermission, ChangePermission, ChangeOwner} Deny : False InheritanceType : All User : SOME_DOMAIN\Organization Management Identity : SOME_DOMAIN.local/MyBusiness/Users/SBSUsers/Some User IsInherited : True IsValid : True RunspaceId : ef2e992e-9a01-405f-8e86-4ae1cd0d6d9c AccessRights : {FullAccess, DeleteItem, ReadPermission, ChangePermission, ChangeOwner} Deny : False InheritanceType : All User : SOME_DOMAIN\Exchange Trusted Subsystem Identity : SOME_DOMAIN.local/MyBusiness/Users/SBSUsers/Some User IsInherited : True IsValid : True RunspaceId : ef2e992e-9a01-405f-8e86-4ae1cd0d6d9c AccessRights : {FullAccess, DeleteItem, ReadPermission, ChangePermission, ChangeOwner} Deny : False InheritanceType : All User : SOME_DOMAIN\MOAIS Identity : SOME_DOMAIN.local/MyBusiness/Users/SBSUsers/Some User IsInherited : True IsValid : True RunspaceId : ef2e992e-9a01-405f-8e86-4ae1cd0d6d9c AccessRights : {FullAccess, DeleteItem, ReadPermission, ChangePermission, ChangeOwner} Deny : False InheritanceType : All User : SOME_DOMAIN\Administrator Identity : SOME_DOMAIN.local/MyBusiness/Users/SBSUsers/Some User IsInherited : True IsValid : True RunspaceId : ef2e992e-9a01-405f-8e86-4ae1cd0d6d9c AccessRights : {FullAccess, DeleteItem, ReadPermission, ChangePermission, ChangeOwner} Deny : False InheritanceType : All User : SOME_DOMAIN\Enterprise Admins Identity : SOME_DOMAIN.local/MyBusiness/Users/SBSUsers/Some User IsInherited : True IsValid : True RunspaceId : ef2e992e-9a01-405f-8e86-4ae1cd0d6d9c AccessRights : {FullAccess, DeleteItem, ReadPermission, ChangePermission, ChangeOwner} Deny : False InheritanceType : All User : SOME_DOMAIN\Domain Admins Identity : SOME_DOMAIN.local/MyBusiness/Users/SBSUsers/Some User IsInherited : True IsValid : True
Mail is still being accepted for my mailbox. I cannot rule out AD as being the issue but I know my account is not locked.
I don't know where else I can look that might give me a better idea of what's wrong. I've searched the Event Viewer but I cannot see any thing that looks relevant. Does anyone have any tips for me please?
Below is the output from dsacls in case that has a bearing.
Thanks in advance.
Owner: SOME_DOMAIN\Domain Admins Group: SOME_DOMAIN\Domain Admins Access list: {This object is protected from inheriting permissions from the parent} Allow BUILTIN\Pre-Windows 2000 Compatible Access SPECIAL ACCESS READ PERMISSONS LIST CONTENTS READ PROPERTY LIST OBJECT Allow BUILTIN\Pre-Windows 2000 Compatible Access SPECIAL ACCESS READ PERMISSONS LIST CONTENTS READ PROPERTY LIST OBJECT Allow SOME_DOMAIN\Domain Admins SPECIAL ACCESS READ PERMISSONS WRITE PERMISSIONS CHANGE OWNERSHIP CREATE CHILD DELETE CHILD LIST CONTENTS WRITE SELF WRITE PROPERTY READ PROPERTY LIST OBJECT CONTROL ACCESS Allow SOME_DOMAIN\Enterprise Admins SPECIAL ACCESS READ PERMISSONS WRITE PERMISSIONS CHANGE OWNERSHIP CREATE CHILD DELETE CHILD LIST CONTENTS WRITE SELF WRITE PROPERTY READ PROPERTY LIST OBJECT CONTROL ACCESS Allow SOME_DOMAIN\Organization Management SPECIAL ACCESS READ PERMISSONS LIST CONTENTS READ PROPERTY LIST OBJECT Allow SOME_DOMAIN\Exchange Trusted Subsystem SPECIAL ACCESS READ PERMISSONS LIST CONTENTS READ PROPERTY LIST OBJECT Allow BUILTIN\Administrators SPECIAL ACCESS DELETE READ PERMISSONS WRITE PERMISSIONS CHANGE OWNERSHIP CREATE CHILD DELETE CHILD LIST CONTENTS WRITE SELF WRITE PROPERTY READ PROPERTY LIST OBJECT CONTROL ACCESS Allow NT AUTHORITY\Authenticated Users SPECIAL ACCESS READ PERMISSONS LIST CONTENTS READ PROPERTY LIST OBJECT Allow NT AUTHORITY\SYSTEM FULL CONTROL Allow SOME_DOMAIN\Organization Management FULL CONTROL for msExchDynamicDistributionList Allow SOME_DOMAIN\Exchange Trusted Subsystem FULL CONTROL for msExchDynamicDistributionList Allow BUILTIN\Pre-Windows 2000 Compatible Access SPECIAL ACCESS for Account Restrictions READ PROPERTY Allow BUILTIN\Pre-Windows 2000 Compatible Access SPECIAL ACCESS for Account Restrictions READ PROPERTY Allow BUILTIN\Pre-Windows 2000 Compatible Access SPECIAL ACCESS for Logon Information READ PROPERTY Allow BUILTIN\Pre-Windows 2000 Compatible Access SPECIAL ACCESS for Logon Information READ PROPERTY Allow BUILTIN\Pre-Windows 2000 Compatible Access SPECIAL ACCESS for Group Membership READ PROPERTY Allow BUILTIN\Pre-Windows 2000 Compatible Access SPECIAL ACCESS for Group Membership READ PROPERTY Allow BUILTIN\Pre-Windows 2000 Compatible Access SPECIAL ACCESS for General Information READ PROPERTY Allow BUILTIN\Pre-Windows 2000 Compatible Access SPECIAL ACCESS for Remote Access Information READ PROPERTY Allow BUILTIN\Pre-Windows 2000 Compatible Access SPECIAL ACCESS for Remote Access Information READ PROPERTY Allow SOME_DOMAIN\Cert Publishers SPECIAL ACCESS for userCertificate WRITE PROPERTY READ PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for Exchange Personal Information READ PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for canonicalName READ PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for userAccountControl READ PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for Exchange Information READ PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for memberOf READ PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for garbageCollPeriod READ PROPERTY Allow SOME_DOMAIN\Organization Management SPECIAL ACCESS for proxyAddresses WRITE PROPERTY Allow SOME_DOMAIN\Exchange Trusted Subsystem SPECIAL ACCESS for proxyAddresses WRITE PROPERTY Allow SOME_DOMAIN\Organization Management SPECIAL ACCESS for showInAddressBook WRITE PROPERTY Allow SOME_DOMAIN\Exchange Trusted Subsystem SPECIAL ACCESS for showInAddressBook WRITE PROPERTY Allow SOME_DOMAIN\Organization Management SPECIAL ACCESS for Exchange Personal Information WRITE PROPERTY Allow SOME_DOMAIN\Exchange Trusted Subsystem SPECIAL ACCESS for Exchange Personal Information WRITE PROPERTY Allow SOME_DOMAIN\Organization Management SPECIAL ACCESS for adminDisplayName WRITE PROPERTY Allow SOME_DOMAIN\Exchange Trusted Subsystem SPECIAL ACCESS for adminDisplayName WRITE PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for groupType WRITE PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for msExchMailboxSecurityDescriptor WRITE PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for msExchUMServerWritableFlags WRITE PROPERTY Allow SOME_DOMAIN\Organization Management SPECIAL ACCESS for displayName WRITE PROPERTY Allow SOME_DOMAIN\Exchange Trusted Subsystem SPECIAL ACCESS for displayName WRITE PROPERTY Allow SOME_DOMAIN\Exchange Trusted Subsystem SPECIAL ACCESS for Public Information WRITE PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for msExchUserCulture WRITE PROPERTY Allow SOME_DOMAIN\Organization Management SPECIAL ACCESS for displayNamePrintable WRITE PROPERTY Allow SOME_DOMAIN\Exchange Trusted Subsystem SPECIAL ACCESS for displayNamePrintable WRITE PROPERTY Allow SOME_DOMAIN\Organization Management SPECIAL ACCESS for mail WRITE PROPERTY Allow SOME_DOMAIN\Exchange Trusted Subsystem SPECIAL ACCESS for mail WRITE PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for msExchMobileMailboxFlags WRITE PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for msExchSafeRecipientsHash WRITE PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for userCertificate WRITE PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for msExchUMDtmfMap WRITE PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for msExchBlockedSendersHash WRITE PROPERTY Allow SOME_DOMAIN\Exchange Trusted Subsystem SPECIAL ACCESS for Personal Information WRITE PROPERTY Allow SOME_DOMAIN\Organization Management SPECIAL ACCESS for textEncodedORAddress WRITE PROPERTY Allow SOME_DOMAIN\Exchange Trusted Subsystem SPECIAL ACCESS for textEncodedORAddress WRITE PROPERTY Allow SOME_DOMAIN\Organization Management SPECIAL ACCESS for Exchange Information WRITE PROPERTY Allow SOME_DOMAIN\Exchange Trusted Subsystem SPECIAL ACCESS for Exchange Information WRITE PROPERTY Allow SOME_DOMAIN\Organization Management SPECIAL ACCESS for publicDelegates WRITE PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for publicDelegates WRITE PROPERTY Allow SOME_DOMAIN\Exchange Trusted Subsystem SPECIAL ACCESS for publicDelegates WRITE PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for msExchUMSpokenName WRITE PROPERTY Allow SOME_DOMAIN\Organization Management SPECIAL ACCESS for garbageCollPeriod WRITE PROPERTY Allow SOME_DOMAIN\Exchange Trusted Subsystem SPECIAL ACCESS for garbageCollPeriod WRITE PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for msExchUMPinChecksum WRITE PROPERTY Allow SOME_DOMAIN\Organization Management SPECIAL ACCESS for legacyExchangeDN WRITE PROPERTY Allow SOME_DOMAIN\Exchange Trusted Subsystem SPECIAL ACCESS for legacyExchangeDN WRITE PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for msExchSafeSendersHash WRITE PROPERTY Allow BUILTIN\Windows Authorization Access Group SPECIAL ACCESS for tokenGroupsGlobalAndUniversal READ PROPERTY Allow BUILTIN\Terminal Server License Servers SPECIAL ACCESS for terminalServer WRITE PROPERTY READ PROPERTY Allow BUILTIN\Terminal Server License Servers SPECIAL ACCESS for Terminal Server License Server WRITE PROPERTY READ PROPERTY Allow NT AUTHORITY\NETWORK SERVICE SPECIAL ACCESS for Exchange Personal Information READ PROPERTY Allow NT AUTHORITY\Authenticated Users SPECIAL ACCESS for Exchange Information READ PROPERTY Allow NT AUTHORITY\SELF SPECIAL ACCESS for Private Information WRITE PROPERTY READ PROPERTY CONTROL ACCESS Allow SOME_DOMAIN\Exchange Servers Replication Synchronization Allow Everyone Change Password Allow NT AUTHORITY\SELF Change Password Permissions inherited to subobjects are: Inherited to all subobjects Allow SOME_DOMAIN\Organization Management SPECIAL ACCESS READ PERMISSONS LIST CONTENTS READ PROPERTY LIST OBJECT Allow SOME_DOMAIN\Exchange Trusted Subsystem SPECIAL ACCESS READ PERMISSONS LIST CONTENTS READ PROPERTY LIST OBJECT Allow SOME_DOMAIN\Organization Management FULL CONTROL for msExchDynamicDistributionList Allow SOME_DOMAIN\Exchange Trusted Subsystem FULL CONTROL for msExchDynamicDistributionList Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for Exchange Personal Information READ PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for canonicalName READ PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for userAccountControl READ PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for Exchange Information READ PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for memberOf READ PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for garbageCollPeriod READ PROPERTY Allow SOME_DOMAIN\Organization Management SPECIAL ACCESS for proxyAddresses WRITE PROPERTY Allow SOME_DOMAIN\Exchange Trusted Subsystem SPECIAL ACCESS for proxyAddresses WRITE PROPERTY Allow SOME_DOMAIN\Organization Management SPECIAL ACCESS for showInAddressBook WRITE PROPERTY Allow SOME_DOMAIN\Exchange Trusted Subsystem SPECIAL ACCESS for showInAddressBook WRITE PROPERTY Allow SOME_DOMAIN\Organization Management SPECIAL ACCESS for Exchange Personal Information WRITE PROPERTY Allow SOME_DOMAIN\Exchange Trusted Subsystem SPECIAL ACCESS for Exchange Personal Information WRITE PROPERTY Allow SOME_DOMAIN\Organization Management SPECIAL ACCESS for adminDisplayName WRITE PROPERTY Allow SOME_DOMAIN\Exchange Trusted Subsystem SPECIAL ACCESS for adminDisplayName WRITE PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for groupType WRITE PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for msExchMailboxSecurityDescriptor WRITE PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for msExchUMServerWritableFlags WRITE PROPERTY Allow SOME_DOMAIN\Organization Management SPECIAL ACCESS for displayName WRITE PROPERTY Allow SOME_DOMAIN\Exchange Trusted Subsystem SPECIAL ACCESS for displayName WRITE PROPERTY Allow SOME_DOMAIN\Exchange Trusted Subsystem SPECIAL ACCESS for Public Information WRITE PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for msExchUserCulture WRITE PROPERTY Allow SOME_DOMAIN\Organization Management SPECIAL ACCESS for displayNamePrintable WRITE PROPERTY Allow SOME_DOMAIN\Exchange Trusted Subsystem SPECIAL ACCESS for displayNamePrintable WRITE PROPERTY Allow SOME_DOMAIN\Organization Management SPECIAL ACCESS for mail WRITE PROPERTY Allow SOME_DOMAIN\Exchange Trusted Subsystem SPECIAL ACCESS for mail WRITE PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for msExchMobileMailboxFlags WRITE PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for msExchSafeRecipientsHash WRITE PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for userCertificate WRITE PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for msExchUMDtmfMap WRITE PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for msExchBlockedSendersHash WRITE PROPERTY Allow SOME_DOMAIN\Exchange Trusted Subsystem SPECIAL ACCESS for Personal Information WRITE PROPERTY Allow SOME_DOMAIN\Organization Management SPECIAL ACCESS for textEncodedORAddress WRITE PROPERTY Allow SOME_DOMAIN\Exchange Trusted Subsystem SPECIAL ACCESS for textEncodedORAddress WRITE PROPERTY Allow SOME_DOMAIN\Organization Management SPECIAL ACCESS for Exchange Information WRITE PROPERTY Allow SOME_DOMAIN\Exchange Trusted Subsystem SPECIAL ACCESS for Exchange Information WRITE PROPERTY Allow SOME_DOMAIN\Organization Management SPECIAL ACCESS for publicDelegates WRITE PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for publicDelegates WRITE PROPERTY Allow SOME_DOMAIN\Exchange Trusted Subsystem SPECIAL ACCESS for publicDelegates WRITE PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for msExchUMSpokenName WRITE PROPERTY Allow SOME_DOMAIN\Organization Management SPECIAL ACCESS for garbageCollPeriod WRITE PROPERTY Allow SOME_DOMAIN\Exchange Trusted Subsystem SPECIAL ACCESS for garbageCollPeriod WRITE PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for msExchUMPinChecksum WRITE PROPERTY Allow SOME_DOMAIN\Organization Management SPECIAL ACCESS for legacyExchangeDN WRITE PROPERTY Allow SOME_DOMAIN\Exchange Trusted Subsystem SPECIAL ACCESS for legacyExchangeDN WRITE PROPERTY Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for msExchSafeSendersHash WRITE PROPERTY Allow NT AUTHORITY\NETWORK SERVICE SPECIAL ACCESS for Exchange Personal Information READ PROPERTY Allow NT AUTHORITY\Authenticated Users SPECIAL ACCESS for Exchange Information READ PROPERTY Allow NT AUTHORITY\SELF SPECIAL ACCESS for Private Information WRITE PROPERTY READ PROPERTY CONTROL ACCESS Inherited to user Allow SOME_DOMAIN\Exchange Servers SPECIAL ACCESS for msExchActiveSyncDevices CREATE CHILD DELETE CHILD LIST CONTENTS The command completed successfully