Home Forums OS X Server and Client Discussion Open Directory OD group for a local user?

Viewing 4 posts - 1 through 4 (of 4 total)
  • Author
    Posts
  • #372362
    gw1500se
    Participant

    I have an application that runs as ‘admin’ on a server. There is a link to an OD share to which a group has RW access. Unfortunately the ‘admin’ user is local so it is not a member of that OD group and cannot write. How to I assign a local user to an OD group? Is it even possible? If not is there a workaround? Thanks.

    #372375
    Eden.Nelson
    Participant

    First I want to remind you to think about security when you nest users and groups from different directories.

    Bind your machine to OD.
    install Server Admin tools on your machine.
    Open Worgroup Manger.
    From the Severs menu select “View Directories”.
    At the top left you will see, a blue icon, and Viewing local directory: /NetInfo/DefaultLocalNode.
    Click on the icon and select Other…, select LDAPv3, then select your ODM.
    Now to the right, click the padlock, and authenticate as your OD Administrator.
    Select the OD group you want to add the user to.
    Click the (+) button.
    At the Top of the User/Groups draw, you will see “Directory: /LDAPv3/odm.example.com
    Change the Directory to Local.
    Find the User that you want to add to the group, and drag them into the group membership list.
    Click Save.

    If you see a “Upgrade Legacy Group” button in the group Member ship tab. Make sure to upgrade the group first.

    #372384
    gw1500se
    Participant

    Thanks for the help. That did it. I was trying to do the opposite. I was trying add the local user to that OD group, which it would not let me do. I don’t understand why it matters which way but I won’t argue with success.

    #372397
    Eden.Nelson
    Participant

    Adding the OD Administrator or admin group to the local admin group will give your directory admins access to your local machines.

Viewing 4 posts - 1 through 4 (of 4 total)
  • You must be logged in to reply to this topic.

Comments are closed