AFP548

AD account and contact name collision on 10.3.9 server

What a meltdown...

So our directory service team has been adding contacts to our active directory that match our user names. This means that I have a "blake" user account and a "blake" contact in AD. For some reason this is used by the wonderful exchange system we are getting..

The end result is that users can no longer connect to my os X 10.3.9 fileserver. We are guessing that the ad plugin is attempting to use the contact account instead of the user account.

If I use a secondary user account that doesn't have a matching contact account logging into the server works as expected.

Has anybody run into this issue? Suggestions?
Seems like you should be able to use ad to specify that computer accounts like the one used by my server don't give a flying rip about contacts..

Looks like the tiger AD plugin handles this situation properly...
But I don't have a ton of time to go around upgrading all my servers tonight..
Exit mobile version