You need to use the security script wizard with the default sample and add the new users/groups to the admin role it provides. That script will recursively set all the administrative rights required.
Update object store with new users and groups - IBM Documentation
Inheritance from the Object Store object to all children has never worked in the way you were expecting it to b/c of the way the object model actually functions. The Object Store object resides in the GCD, for security inheritance, my understanding is that its children are only the descendent objects that also reside in the GCD. The Object Store itself has no root security parent for all objects (because remember, classes are objects too...), so the security script wizard default template is set to recursively update all of the root security parents across the object store.
Hope this helps!
Best,
Eric
------------------------------
Eric Walk
Director
O: 617-453-9983 | NASDAQ: PRFT | Perficient.com
------------------------------