AFP548

OD Master upgrade – want to be able to admin OD with AD user credentials

I'm planning a summer upgrade of our Open Directory Master from a 10.5.8 OD Master that's not bound to Active Directory, to an AD-bound 10.6.x OD Master. One thing I have a question about is with regards to administering the AD-bound Open Directory Master. Can I set up an OD group so that any users in it are OD admins, then add AD users to that OD group? On 10.6.4 Server, I've found a group called "Open Directory Administrators" with a GID of 80, and added my AD user to that group. The group has both the LDAP root user and the diradmin user, which seems to indicate that this is the group I'm looking for. However, after adding my AD user to that group, I'm unable to log in as an OD admin using my AD credentials. If anyone's done this, is there a step I'm missing or a command that needs to be run?
Exit mobile version