Postby bbartels » Thu Jun 21, 2007 12:53 pm
Hello,
I realize this thread is old but we have a scenario that is closely related to this.
We’re also looking to create an environment that prevents users from modifying any of the settings within the SAC. We’ve looked at the admin groups and everything works well when we have assigned users to individual groups. What seems to be a problem is when we assign a user to be a member of both the ScalixGroupAdmins and the ScalixUserAdmins groups.
This user can then log into the SAC and then make any user a member of the ScalixAdmins group. Is this right? Maybe this is by design and I’m not thinking this fully through. I just didn’t think that an individual would be able to grant a level of authority that is higher than what he or she has.
Regards