Allow a group to stop inheriting permissions so that it can be set specifically within a role. Example:
2 roles helpdesk & restrictedAreaAccess.
Helpdesk role needs to see all groups including all newly created ones but there is a specific group it should not see or have its standard rights applied to. We want users with the restrictedAreaAccess role to see the group. Unfortunately the group inherits permissions so it is not possible to stop Helpdesk role from seeing it. It is not practical to change the role every time a new group is added which is what support have suggested, ie all groups inherit nothing everything is explicit.
Customer support service by UserEcho