
36 Chapter 1 Mail Service Setup
Using ACLs For Mail Service Access
Access Control Lists (ACLs) are a method of designating service access to certain users
or groups on an individual basis. For example, you may use an ACL to allow only one
user access to a file server or shell login, without allowing any user on the server to
access it.
Mail services are different from many other services which traditionally use ACLs for
determining service access. Mail service is already specified on a per-user basis. Either
you have an email account on a particular server or you don’t. Merely being a user on a
server doesn’t automatically confer access to email storage and retrieval.
Some administrator’s may find it easier to designate email access using ACLs, if they are
doing all their other configuration using ACLs. They also may have mixed network
environments that necessitate using ACLs to assign email access.
Mac OS X Server allows you to enable mail access for users using the access tab in a
server’s Server Admin listing. If you have enabled user access via Server Admin and
traditional mail access using Workgroup Manager, the settings interact in the following
manner:
To enable a user’s mail access using ACLs:
1 In Server Admin, select the server which has mail service running and the user who will
receive an email account.
2 Click Access.
3 Deselect “Use same access for all services.”
4 Select “Allow only users and group below.”
5 Click the Add (+) button to reveal a Users and Groups drawer.
6 Drag the desired user to the access list.
7 Click Save.
Access via
ACL
Access via
Workgroup
Manager
Result
On On User has mail access granted according to the IMAP and/or POP
settings in the General Settings Mail panel in Server Admin.
On Off User has mail access granted according to the IMAP and/or POP
settings in the General Settings Mail panel in Server Admin.
Off On User has mail access granted according to his user record settings
in Workgroup Manager. This is the default behavior.
Off Off User has no mail access.
Comentarios a estos manuales