I am helping out a colleague with our ACS (it was set up before both us came here) and we have noticed that some groups are assigned a shell command authorization set and other groups aren't. My question is as follows - If a group isn't assigned to an authorization set does that mean that the group can do any and all commands without restriction? I am assuming so, but have not been able to find any documentation that says so explicitly. Any help is appreciated. Thanks.