AFP548

Cylinder of Destiny or Golden Triangle with Lion Server

I have a fresh install of Lion Server 10.7.2. I have bound it to my university's AD service. I can import users from AD into the local LDAP as augmented records, using Server.app. (WGM no longer seems to be able to create augment records.) So far so good. I'd like to add augment properties for the Mac users' home directories. I can add those properties using the Directory Editor of the Directory Utility. But when I run dscl nothing seems to have worked correctly. I can see the augment records in LDAPv3/127.0.0.1/Augments, and they show the augmented properties. According to the Bombich document, I should be able to view in /Search/Users the result of merging the AD records with their OD augments. However, this is not happening. For instance, instead of seeing the augmented record's value for NFSHomeDirectory, I see /Users/userID. Curiously, I see this same value for NFSHomeDirectory if I look in the Active Directory node directly, even though that property is not defined by the AD server. It has been automatically merged from some set of defaults distinct from the augmented record properties. ("Force local home directory on startup disk" is turned off in the AD plugin.) Does anyone have augmented records working correctly with Lion Server 10.7.2? Can you create and augment records from AD, and see correctly merged records using dscl at /Search/Users? Or has Apple quietly dropped support for augments? Or has management of the augment function changed so that the old techniques no longer work?
Exit mobile version