When I assigned the deny permissions to the Notes attribute directly to a
user object in AD, the info is correctly blocked from view. However, when
I
assigned the deny permissions at the OU level, the permissions don't seem
to
work. I have verifed that the user object is inheriting the permissions.
When I verify the permissions using the "Effective Permissions" tab of the
Security tab, it shows that user still has the READ pemissions to the
attribute, even though the Security permisssion show it being denied.
Any ideas?