Tuesday 8 March 2011

Delegating specific subfolder access using PFDAVAdmin on Exchange 2007

Scenario
An Exchange 2007 user wants some of their subfolders to be accessible by other users. This needs to be effected administratively, since the user either doesn't have time themselves to adjust all the permissions on individual folders, or they don't have access to their Mailbox using either OWA, Entourage or Outlook.

As per best practice, you do not want to achieve this by giving yourself full access to the user's mailbox, then right-clicking on the specified folders to set permissions.

(This is not the same scenario as giving full access to the entire mailbox. )

Solution using PFDAVAdmin
Connect to Exchange 2007 using PFDAVAdmin to "All Mailboxes".
Navigate to the user's Mailbox, and give the delegates "Folder Visible" permission on the "Top of Information Store" folder.
Assign permissions to the delegate on the relevant subfolders. Push rights down to subfolders using Propagate ACLs from the context menu.

The delegate should now open the user's mailbox as an Additional Mailbox.