ACL gets deleted for new accounts

Hi

I have an odd issue. When I create a new account, the mailfile gets correctly created and we also select to have a replica created on another server (clustered)

If I look at the mailfile , the ACL looks correct.

The next morning, the ACL has been wiped out and just left with default as manager.

The last updated stamp on the ACL is always the clustered server but I can’t work out why it’s doing it. The templates have the correct acl.

If I setup a new user and don’t create a replica on the cluster then this doesn’t happen. All the log.nsf shows is that the 2nd server updated the ACL but why???

Has anyone seen this before?

Thanks

Mark.