However, I *think Intruder Detection settings might be inherited up to the Partition Root Object...

We have recently merged a bunch of sub partitions, where Intruder Detection was not (and is not set) on any of the containers into a parent where it turns out that Intruder Detection is set. Since the merge our Service Desk have received a marked increase in intruder lockouts.... ID is only set on this PRO container, which does not contain standard user objects, only organisational units, etc.

Can someone please verify the current design/behaviour?

(For reference our tree is mostly OES11SP2, running eDir 20806.05, though we have some legacy 20601.18 (SLES10SP4) and 20506.07(NW65SP8) instances)

