Home Forums OS X Server and Client Discussion Active Directory OD Home without changing AD Home location

Viewing 3 posts - 1 through 3 (of 3 total)
  • Author
    Posts
  • #372240
    DeputyAdmin
    Participant

    Here is my situation. I need to have users when they login to a Mac client machine (10.4.11) bound to both AD and OD, authenticate to the AD and then pull the network home from OD. I know this can be accomplished by changing the AD accounts home path. The issue is that the students will need to have their AD homes as well. The OD homes will only be used when in the Mac Lab. I know we could just have the OD separate from the AD but then we end up with different passwords and getting students to remember one is sometimes difficult. With the machines bound to AD and OD we could have the AD home mount as a share so the students could get to that storage also. Looking for suggestions on how best to handle this.

    10.4.11 OD server.

    Thanks,
    Eric H

    #373652
    tfitzgerald
    Participant

    Eric,

    I’m curious to see if you found a solution for this. I’m looking to do something very similar.

    thanks,

    teddy

    #373656
    peet1
    Participant

    You can do this with augment records in 10.5. It’s not as easy as I’d like so I’m cheating and using MacAdministrator (yes they are still in business … and actually it’s gotten much cleaner in 4.x). Anyway you need to not check the get home directory location from UNC path when on the clients. In the 10.5 OD you need to edit the raw LDAP … Config -> augmentconfiguration -> XMLPlist … to include the records you want to augment … which are NFSHomeDirectory and HomeDirectory.

    Then create Augment records for all the users that you need to do this for and edit the augment records with dscl to have the correct HomeDirectory and NFSHomeDirectory attributes.

    It’s this last part that I get discouraged. If you happen to write a script to populate these records, please do share.

    peet

Viewing 3 posts - 1 through 3 (of 3 total)
  • You must be logged in to reply to this topic.

Comments are closed