Configuring default mail file ACL settings
The following procedure details how to set the default access control list (ACL) attributes on a new Domino/Notes user’s mail file. The purpose of this procedure is to make sure that mail files created by the Bravura Security Fabric contain the required access rights. By default Bravura Security Fabric only gives the new user access to the new mail file. If additional ACL’s are required, you can add them to the mail file template using the square bracket (for example, [a user]) notation. This tells Domino that any databases created using this template should have "a user" in the ACL’s. A common use for this is to give Bravura Security Fabric access to delete the user’s mail file, but any ACL that you require can be added to the mail file this way.
To set default mail file ACL attributes:
Using Lotus Domino Administrator, open the access control dialog box for the appropriate mail file template; for example mail7.ntf.
Add the required accounts or groups to the access control list.
Ensure that the user or group is surrounded by square brackets; for example,
[psadmin/domain]
. This tells Domino to apply the ACL to databases created from the template, and not the template itself. You can add the square brackets by clicking Rename after adding the user or group.Define the access control level for the users or groups added previously; for example, if Bravura Security Fabric will be used to de-provision users and delete their mail file, set permissions as:
User type: Person
Access : Manager
and select Delete documents and Replicate or copy documents checkboxes.
Click OK to close the access control list dialog.