Mac OS X Lion Server :: AD LDAP Connects To Lion Server But Does Not Show Users / Groups

Feb 19, 2012

I have a server in our DMZ that connects to Active Directory LDAP server (non-ssl over 389) but no objects actually show up in the directory editor. I get a green light in my Network Account Server, but queries against LDAP return no results. My end goal is to be able to dictate to Profile Manager what LDAP groups are allowed to enroll devices. I tested on our internal network on a test server and get the same results. Anyone have any luck connecting a Lion Server to LDAP and actually being able to view and utilize users and groups?

Info:
Mac mini, Mac OS X (10.7.3), Server

View 1 Replies


ADVERTISEMENT

Mac OS X Lion Server :: OD Groups Cannot Display AD Users

Mar 15, 2012

Im running a golden triangle setup.. a very basic and simple one..

-OD Master running 10.7.3

-clients running 10.7.3 as well..

-AD running windows 2008 server.

OD Master is bound to AD and i can see all the AD users and groups..the problem im facing is i cannot add AD users to OD groups under workgroup manager eveytime i add an AD user to the OD group, it shows as "NOT FOUND" and it shows aa weird ID "0433BF34-"

View 2 Replies View Related

Mac OS X Lion Server :: Mail Messages Gone After Migrating From Local To LDAP

Apr 22, 2012

I just transferred a group of users from the Local directory to the LDAP directory.  There directories are in place and haven't changed, and neither has the size of the email folders in the Library->Server->Mail->Data folder.  But now, there are no messages in the directories, including the Inbox.  It's empty except for a single message that says "no subject" and has no content.

Info:
Macbook Pro, Mac OS X (10.7.2)

View 1 Replies View Related

Mac OS X Lion Server :: What's The Terminal Command To Stop And Start LDAP

Apr 29, 2012

I'm trying to intergate my companies AD kerberose with the services hosted on a Lion Server in a golden triangle setup. Here's what I've tried so far. 

1. Bind to AD host.

2. sudo dsconfigad -enablesso

3. Make a Opendirectory Master

4. sudo kinit list, all listed services should point to AD KDC.

[code]....

Info:
Xserve, Mac OS X (10.7.3)

View 1 Replies View Related

Mac OS X Lion Server :: Does The Open Directory Export In Admin App Include LDAP Information

Apr 20, 2012

I'm getting ready to migrate our company server to a new server box.  I'm doing a complete clean install, and migrating specific information over (we had some corruptions from the initial installation Lion Server).  All our users are in LDAP, not the Local directory, and I can't seem to figure out (and don't have the ability to test) if using the Ser Admin app's Archive feature of Open Directory, will include all LDAP information.  My understanding is that if I create an archive and restore to it, then all of my users and there information will be put back like nothing happen, but can't get any clarification on it.

Info:
Macbook Pro, Mac OS X (10.7.2)

View 10 Replies View Related

Mac OS X Lion Server :: How To Lock Down OD Users

Feb 2, 2012

I have a Mac Pro that is running OD to create users. My problem is that the users that I have to give macs to, need rights on their machines to install programs because of all of the development software that these individuals need. I don't want them to be able to make a local user so that they cant unbind these machines from the OD server.

They still need access to terminal. I don't want them to be able to boot into the recovery partition or terminal to get super user rights (thus changing passwords or adding/deleting users). I have restricted their rights to access "Users & Groups" through OD Policies but that's about all I have done.

Info:
Mac Pro, Mac OS X (10.7.2), Server

View 1 Replies View Related

Mac OS X Lion Server :: 10.7.4 Will Not Create Users

May 10, 2012

I bought a Mac Mini Server yesterday and set it up successfully (Set OD, etc). Everything was working great until I went back and tried to create new users via the server app. As of now, it gives me the error "SEUserErrorDomain error1" and tells me that it cannot create the user. Even though it says that, it will still show up in the user list with the "blue globe" (that I believe is from OD?) but disappear the moment I drill into it and try to save anything. Workgroup Manager will allow me to create the user, but it does not show up in the user list in the server app so I cannot enable certain services for the user (i.e. assign folders for share point, etc).  

P.S. Apple tech support had me reinstall the 10.7.4 combo update - no help. They also had me use disk utility to repair permissions - no help. P.S.S. On a side note, I did install Samba 3 on the server via mac port to try and help with LDAP auth (I ended up going with pGina for my windows users), but I have no clue how to uninstall it.

Info:
Mac OS X (10.7.4), Mac OSX Lion Server

View 4 Replies View Related

Add Existing Users / Computers To Lion Server

May 3, 2012

We have an exiting network of approximately 50 Macs running anything from Lion to Leopard. Obviously there are existing local accounts on these machines.What I'd like to do is to administer these users and machines through Lion Server so that I can use the existing user information for all of the services provided by Lion Server, but to do so without altering the way the end user operates and without any data loss.I am having difficulty finding any information on this, but surely someone has installed Open Directory into an existing Mac network.

Info:
Mac Pro, Mac OS X (10.7.3), Server

View 2 Replies View Related

Mac OS X Lion Server :: Can't Setup Networked Users

Jun 20, 2012

I'm trying to make it so that my students have the ability to log onto our iMacs (all running Lion) through our Mac Mini Server (also Lion).  I recently had to go through drastic changes in order to simply create a directory administrator, yet it still persists. The active directory isn't binded onto the server yet.  When I try to bind the my Active Directory with the Mac Mini, I get the following popup after logging in as the Directory Admin: 

View 2 Replies View Related

Mac OS X Lion Server :: Replica Does Not Promulgate New Users

Jun 25, 2012

I have (3) 10.7.4 servers, one is the master and the other two are replicas (192.168.123.127 and 192.168.123.129) When i add new users thru server.app or workgroup, no users are showing up on the replicas in the log of the server i get this error many times per minute:

[code]...

Info:Mac OS X (10.7.4)

View 2 Replies View Related

Mac OS X Lion Server :: Windows Users Cannot Connect To SMB Service

Feb 23, 2012

I have two Lion 10.7.3 servers joined to my company's AD. These servers provide SMB/AFP file services to users. They have been working successfully until a week ago when a change in AD was made. Now Windows (7 or XP, doesn't matter) clients cannot connect to the server using the DNS name, only the IP address. Mac OS X clients are not affected by this, i.e. they can use the DNS name fine. All clients are on AD too. What I observe from a Windows 7 client is, I open Windows Explorer, type \xserver in the address bar, hit enter, & it denies my connection immediately. If I do the same thing with the IP address (\10.0.1.10), it lets me in immediately.

For Windows clients, I have tried both the short DNS name as well as the FQDN, & neither work. The DNS name on the server itself is fine, verified by "changeip -checkhostname". Whatever changed in AD caused the Lion servers to start doing this because they both started exhibiting this behavior at the same time. The only info I've been able to get regarding what changed in AD from the domain admins was "We changed the UPN fromuser@domain.example.com to Firstname.Lastname@example.com", in other words, to their email address. In the system logs, here's an attempt to connect from a Windows client using the short DNS name:

Feb 20 09:24:39 xserver rpcsvchost[32619]: sandbox_init: com.apple.msrpc.netlogon.sb succeeded
Feb 20 09:24:39 xserver sandboxd[32620] ([32619]): rpcsvchost(32619) deny file-read-metadata /Library/Managed Preferences
Feb 20 09:24:39 xserver sandboxd[32620] ([32619]): rpcsvchost(32619) deny file-read-metadata /private/var/root
Feb 20 09:24:39: --- last message repeated 3 times ---
[Log] .....

Why only the DNS name doesn't work.

Info:
Xserve, Mac OS X (10.7.3)

View 1 Replies View Related

Mac OS X Lion Server :: Email Services With AD Integrated Users?

Mar 5, 2012

i have linked up my AD environment to my Lion server. I have all my users populated perfectly and i have added a few email address values for users. When i try and login via webmail to my account it will not login. When i look in the logs it shows that its trying to authenticate to the local server and not the AD server for the user. how i can fix this so that it uses my AD credentials and such for email also?

Info:
Mac mini, Mac OS X (10.7.3)

View 1 Replies View Related

OS X V10.7 Lion :: Can Multiple Users Share Applications On Server?

Mar 31, 2012

I have a small business with 4 computers. I'm wondering if I can keep all the user directories and shared files on a Mini with OS X server and also have the users share the applications that are on OS X server? Is this possible or can you only share the actual files, not the use of programs? I don't quite get why you'd have the user directories on the server rather than each computer.

View 2 Replies View Related

Mac OS X Lion Server :: Network Users And Intego VirusBarrier X6?

May 28, 2012

I have Intego VirusBarrier X6 in several macs. When using it with normal/local/mobile users, I do not have any problem. However, when logging as network user (I have a mac mini with lion server 10.7.4), the macs hang after a while. At the beginning, I tried everything: permissions, firewall, sharepoints, etc on both the client and the server. Only when I uninstalled the software on the client, everything works again normal. 

Info:
Mac mini, Mac OS X (10.7)

View 3 Replies View Related

Mac OS X Lion Server :: Limit File Access For Different Users In 10.7.4?

Jun 18, 2012

We had everything working perfectly with an earlier version of Lion Server. The update to 10.7.3, or 4, seems to have opened access to all files for all users. Much to our surprise, this wide-open access started without warning.  

- We have an external drive that contains all of the company's archives 

- We had set access for one employee to get to the files he needs, and different access for another employee. Neither saw sharepoints outside of their access settings. 

After an update, each employee can see and log in to all sharepoints. There doesn't seem to be a way to limit access for each employee now. I can set 'read' access for one employee, but it doesn't stop the other employee from accessing that sharepoint/folder. 

View 6 Replies View Related

Mac OS X Lion Server :: Network Users Can't Login Via VPN And Profile Manager

Apr 7, 2012

I have a problem with Network Users defined on my Lion Server accessing the server through VPN or Profile Manager (via Safari) ... I keep on getting authentication errors. Is this because they are network users or am I missing something else?

This works: when I logon to my Lion Server with either local or network users everything seems to be OK including home directory synchronisation.

I tried the following for VPN:my local server account can logon to the server (ie my secret key, user account/password combination are OK ("chap peer authentication succeeded for ...")when I try the same with two of my network accounts I keep on getting authentication errors (VPN) but I'm sure I use the same userid/password combinations as above ("chap peer authentication failed for ...")

I get similar results when I access the Profile Manager (url..)my local server account can logon on to the Profile Manager and sees as all the informationwhen I try this with one of my network accounts (which has devices assigned) I keep on getting 'incorrect user name or password

Info:Mac mini, Mac OS X (10.7.3), (Server)

View 4 Replies View Related

Mac OS X Lion Server :: Unable To Turn On 'change Password' For Users?

Apr 14, 2012

Hi. I've enabled web, wiki and opendirectory in lion server, but I can't enable users to change their passwords, because the option to modify my default web site in the Web pane in server admin is greyed out.'ve read the documentation, but I'm stuck at this point.

View 4 Replies View Related

Mac OS X Lion Server :: Average Number Of Users On A Mini Running?

May 2, 2012

I'm in IT at a shop that is 98% Mac based.  At this point in time, we would like to use Lion Server to provide Time Machine backups and software updates to our users.  The environment is as follows:  We are all using laptops, connecting to our network and the internet using wireless only.  The mini has an ethernet cable attached and wireless will not be enabled for it.  All Time Machine backups and software updates will be done wirelessly.  The backups will be mostly text files, although in some instances there will be large amounts of said files.  Of course I will limit and exclude certain folders and file types from backup and I would like to have the user do their first backup via firewire/thunderbolt so the largest amount of data will not be pushed over the air.  I'm currently running tests with a few users doing just Time Machine backups to the Mini and all is going well, but I'm curious as to how many people I will be able to place on one Mini before it becomes too much.  We have about 70 users now and could be close to 100 by the end of the year.  We are a company that will continue to grow too.  Anyone have thoughts or experience with a large user base doing backups to a Mini like this?  How many users could I fit on each Mini? Would I be better off just going for the Mac Pro?

Info:
Mac mini, Mac OS X (10.7.3)

View 4 Replies View Related

Mac OS X Lion Server :: Can Configure 10.7 To Have The Same User Settings For All Users Using Active Directory

Jun 21, 2012

Adding 10 IMACS with OS 10.7 to my active directory domain. I would like for all users to have the same basic user settings at log in. how I can configure the MAC clients.

Info:
iMac, Mac OS X (10.7.4)

View 1 Replies View Related

Mac OS X Lion Server :: Sharing Only Users Cannot Connect To Time Machine Volume

Jun 23, 2012

I just wanted to add a sharing only user for my girlfriends new MacBook that she could use to connect to a shared Time Machine Volume. If I add a new standard user, this user can connect to my server via finder (connect as...) and see the shared drives. If the same user tries to connect to the Time Machine Backup Volume via the settings dialog, it receives an error message (OSStatus-error 5). If I add a sharing only user, this user cannot connect via finder or Time Machine (same error).

The clients console states the following error message:
/System/Library/CoreServices/NetAuthAgent.app/Contents/MacOS/NetAuthAgent[2471] AFP error -5018 mapped to EIO

View 6 Replies View Related

Mac OS X Lion Server :: Run A Shared Wiki Calendar On It - External Users Can't Login From Interbet?

Feb 6, 2012

I installed Lion Server on a MacMini  to run a shared Wiki calendar, and all is quite well, I got the Wiki calendar page up and running and the iCal clients have successfully subscribed to it.The problem: external users can'tl log in from the internet.On our LAN they can reach the Wiki Home page at http://10.x.y.z/wiki but how do they log in from the internet ?We have a DynDNS host name, but [url] brings up an empty page.I forwarded port 8080 to our server. I did checkip -checkhostname and it looked alright to me. The server has a FQDN  ourserver.name.private. that points to 10.x.y.z and the reverse lookup points to the server name. 

Info:
Mac mini (Mid 2010), Mac OS X (10.7.3)

View 2 Replies View Related

Mac OS X Lion Server :: Get Files To Show Up In Library/WebServer?

May 3, 2012

I just bought a Mac Mini that came with Lion installed. I couldn't transfer my files over from my old G4 because the video card died in that Mac, so I put the hard drive into an external USB case and did the transfer of my old settings that way using Migration Assistant. All my settings seems to have moved fine and I manually moved my web files to Library/WebServer/ Documents folder, but when I turn on Web Sharing none of my files show up on the server although they are all in the Library/WebServer/ Documents folder and Web Sharing is turned on Sharing Preferences. All I get when I access the IP is "It Works".

View 2 Replies View Related

OS X Server :: How To Setup DNS And LDAP

Oct 25, 2006

I am runnning an office network which is connected to each other and the internet through a Linksys 4-Port Wireless Router which is already DHCP-enabled.

Would it be better to disable the Linksys DHCP and enable DHCP through Server Admin DHCP?

If I use Linksys DHCP how do I setup the DNS and LDAP info listed in Server Admin's DHCP settinegs?

View 4 Replies View Related

OS X V10.7 Lion :: Can't Access Users & Groups In System Preferences

Apr 26, 2012

I have tried restarting, using disk utility, I cannot access Users & Groups.  When I try, I get this message: 

Info:
iMac, Mac OS X (10.7), And Macbook Mac OS X (10.7)

View 9 Replies View Related

OS X V10.7 Lion :: How To Configure Server Or Mail.app To Show IMAP Subfolders With Mailboxes

Mar 26, 2012

I'm sure we've all seen the weird IMAP glitch where mail subfolders appear down lower on the mail.app pane instead of nested neatly under the mailbox itself. Usually you can get around this by changing the Inbox IMAP prefix to "" or "INBOX" or "/" or some such path that the server recognizes as the root path to your IMAP folder. Unfortunately, this sometimes means you are unable to work with those folders or introduce other problems.Since I am running Lion (Client) and Lion Server as my mail host, I would think that there is an appropriate answer to this either on the mail.app client settings, or perhaps with a Lion Server configuration through DOVECOT. I don't mind if the solution is a command-line one, but I need to be able to easily set up my mailboxes so that mail subfolders appear properly under each mailbox, instead of being hidden away lower on the page where it is very inconvenient to find, especially when you are using multiple email accounts.

Info:
Mac mini, Mac OS X (10.7.2)

View 4 Replies View Related

Mac OS X Lion Server :: Mission Control Does Not Show All Virtual Screens, Only The Current One

Apr 10, 2012

System:

OS/X 10.7.3, Mac Pro.

I assume it is caused by the last OS/X update.  

Problem:

I have 8 Virtual screens and usually use one for mail, filer, and one for browser and so on. With Mission Control I used to get all the screens in the top and the collection of windows of the current screen.

Now I only get the windows of the current screen. I still can switch to the first 4 screens (Ctrl 1 ... 4 ) But not further :-(I use CMD TAB to switch now. 

Info:
Mac Pro (Early 2009), Mac OS X (10.7.3), 16GB RAM,

View 1 Replies View Related

OS X :: Exchange Server 2003 With MS Entourage (without LDAP)

Oct 21, 2009

I'm trying to connect my Macbook pro to our Exchange Server 2003 via Entourage. Entourage is asking me for the "LDAP" information, and cannot complete setup without it. But our server doesn't use LDAP configuration.

View 2 Replies View Related

OS X Server :: How To Get Client To See LDAP (Open Directory)

Nov 22, 2007

I have one client that my server "serves". I just replaced the hard drive and installed 10.5 on it. (So, my server is at 10.4 but the client is at 10.5). I'm trying to get so I can log in. I figured out how to get the client to see the LDAP (or Open Directory). The machine is now "managed". I can tell because the log in screen has my own message on it. When I type in my user name and password, it finds it but then it says that there has been an error. So, its almost working but not quite. Can a 10.5 client work from a 10.4 Open Directory server?

View 5 Replies View Related

OS X Server :: Access Address Book Through LDAP?

Dec 23, 2010

I've a 10.6 Server. On it, lots of services are enabled such as Address Book Server. I've a copier enable to connect to an LDAP server to have access to mail, fax numbers and more of users/clients. I would like to connect this copier to a user's Address Book. But, user's address book is on the server, and it's a CardDAV address book. Is there a way to have access to this address book trough LDAP?

View 1 Replies View Related

OS X Server :: OD (10.3.9) Server Users On Tiger Client?

Apr 2, 2007

I have updated some of my client machines to 10.4.9. My servers are still 10.3.9. My OD server is also 10.3.9. When my clients log on to the Tiger client machine (mobile users with local home directories) I can't view the loggin items pane in the "system preferences." The "loggin itmes" pane stalls and does not show the items listed. The user accounts seem to work fine and all managed preferences (live default website, several afp volumes logged in, and special dock configurations all seem to work fine. This has happen on all my Tiger client machines and to all OD users. It's weird. Also, all the manged preferences are on the groups the users belong to, not on the user records.

View 1 Replies View Related







Copyrights 2005-15 www.BigResource.com, All rights reserved