Home › Forums › OS X Server and Client Discussion › Active Directory › Active Directory Home folders problems
- This topic has 6 replies, 2 voices, and was last updated 17 years, 5 months ago by
CostasPPC1.
-
AuthorPosts
-
October 30, 2007 at 5:00 pm #370325
CostasPPC1
ParticipantHello to all of you
We have an AD domain (SBS 2003) and several Macintosh Tiger clients. So far, I had some success binding to AD with the Directory Access.
The problems:
a. Nothing is mounted on Desktop. Only a home folder created in Users. So, I suppose this is not a Network Home folder. It is saved locally on the client machine.
b. Suppose something is mounted on desktop. Is this the users home folder? How the local home and the network home are syncing?
c. When a user changes password, cannot login. Suppose there is some cached info somewhere. Where and what can I do?
Thanks in advance
Kostas
November 1, 2007 at 10:30 pm #370384macinandy
ParticipantHi CostasPPC1, any luck with this? If not what settings are you using when you bind?
November 1, 2007 at 11:22 pm #370385CostasPPC1
ParticipantThanks for the answer.
Ive tried all the binding methods. With all methodes I can bind successfuly, but the home folder is always created in the client machine.
Thanks
Kostas
November 2, 2007 at 12:00 am #370388macinandy
ParticipantHi again, can you do a dsconfigad -show in the terminal and post the results ?
November 2, 2007 at 3:26 pm #370392CostasPPC1
ParticipantHere it is
alexandra:/Users/alexandra root# dsconfigad -show
You are bound to Active Directory:
Active Directory Forest = graphicarts.local
Active Directory Domain = graphicarts.local
Computer Account = alexandraAdvanced Options – User Experience
Create mobile account at login = Disabled
Require confirmation = Enabled
Force home to startup disk = Disabled
Use Windows UNC path for home = Enabled
Network protocol to be used = afp:
Default user Shell = /bin/bashAdvanced Options – Mappings
Mapping UID to attribute = not set
Mapping user GID to attribute = not set
Mapping group GID to attribute = not setAdvanced Options – Administrative
Preferred Domain controller = aldus.graphicarts.local
Allowed admin groups = GRAPHICARTS\domain admins,GRAPHICARTS\enterprise admins
Authentication from any domain = EnabledAdvanced Options – Static maps
None
alexandra:/Users/alexandra root#Thanks in advance
November 2, 2007 at 7:28 pm #370403macinandy
ParticipantHi Kostas, If everything is setup in the AD acount settings correctly, especially the network home folder using the \\server\share\folder convention then it looks ok. I would change the “Network protocol to be used = afp” to SMB if you’re hosting the homes on your SBS 2003 box and change “Authentication from any domain = Enabled” to disabled. As long as graphicarts is in the search domains in the network settings for TCP/IP for the network interface you’re using and .local is in the Proxy tab under “bypass proxy settings for these hosts and domains” it should be alright.
Give that a go and get back to us.
CheersNovember 3, 2007 at 9:05 am #370414CostasPPC1
ParticipantThanks for taking time
Well, the network home folder is set up using the \\server\share\folder convention. Ive tried also the “Connect to” (drive letter) blahblah…
I have tried using smb.
The only thing I will try is to set the Authentication from any domain to Disabled.
There is no proxy set up, so I guess I dont need the Proxy conf.
Ill get back. Thank you.
Kostas
-
AuthorPosts
- You must be logged in to reply to this topic.
Comments are closed