Hi guys, I'm running into a filter/ntfs related problem in my test lab. We host multiple organizations/domains and to achieve separation we have always created custom GALs, ALs, and OABs for each organization, then broken inheritance on NTFS permissions and allowed only folks in each org access to their own GAL/AL/OAB - according to this walkthrough: http://www.msexchange.org/tutorials/Shared-Hosting-Exchange-2003-Part2.html
This has worked however in my test lab where I'm migrating this type of setup to Ex2007, I seem to be running into a problem. The GUI doesn't let you create GALs, so I had to use the command shell -- then I had to use adsiedit to set the NTFS perms on the GAL, AL, and OAB. Ex2007 also doesn't seem to allow you to base an OAB off of a GAL like you could in ex2003. When I test my setup, I am getting the "bookmark is not valid" error -- any idea on what may be wrong, or if there is another, better method in ex2007 for setting up separate organizations/domains, please let me know!
Thanks,
Wes