Open Directory / Active Directory XServe Login Issues

Posted on 2012-08-15
Last Modified: 2012-08-28
We are having a weird problem and so far I have been able to narrow down what is happening. Problem is I dont know how to fix it or why its happening. Here is our setup

I have a multi domain Windows/Mac enviroment. I run AD Server 2008 and an XServe Mac OS X 10.6.8 Build 10k549 Kernel Darwin 10.8.0

Open Directory is Bound with Active Directory

Until now I have always had accounts setup on the AD side and none on the Open Directory side. Users authenticate with AD and everything on that side works fine, even still right now. Both with macs and windows.

What we need to do now is have user accounts on the Open Directory side as well and have mac users log into that. We have macs setup with a fresh new image and the only bind that exists is the bind to the Open Directory Server. They have never been bound to the AD server at all.

The problem we are having is it seems when the users with macs only bound to the Open Directory cannot log into the server with the account that exists on the OD side. They do not have an account in AD only OD, but the computer seems to be looking in the AD side for the account, so the user cannot login. I seem to have tried everything and I cant get them to login to the server.


Mac users trying to log into mac with a OD account cannnot, but what seems to be happening is the computer is trying to authenticate with AD instead even though the computer is not bound to AD and that user account does not exist with AD.

Any help?
Question by:cbielich
    LVL 10

    Accepted Solution

    Do you have a home folder specified in Workgroup Manager for each user. You must specify Home folders  or the user will not be able to log into a client.
    LVL 1

    Author Comment

    Ok that worked but I see some issues with my home directories. I have a particular account selected and I noticed there is a share that I do not want to have in the list, but its there by default, greyed out so I can't delete it. How can I remove it?
    LVL 10

    Expert Comment

    Really, it doesn't matter if it shows in the list. Those are just options of where you can choose for users home folder location. If you don't need the share - unshare it or make sure it is not marked for home folder use - server admin>share points(click on the shared folder)>enable automount>Edit

    Featured Post

    Highfive Gives IT Their Time Back

    Highfive is so simple that setting up every meeting room takes just minutes and every employee will be able to start or join a call from any room with ease. Never be called into a meeting just to get it started again. This is how video conferencing should work!

    Join & Write a Comment

    In this article we will discuss some EI Capitan Mail app issues and provide some manual process to resolve them.
    Today, still in the boom of Apple, PC's and products, nearly 50% of the computer users use Windows as graphical operating systems. If you are among those users who love windows, but are grappling to keep the system's hard drive optimized, then you s…
    This video is in connection to the article "The case of a missing mobile phone (". It will help one to understand clearly the steps to track a lost android phone.
    In this sixth video of the Xpdf series, we discuss and demonstrate the PDFtoPNG utility, which converts a multi-page PDF file to separate color, grayscale, or monochrome PNG files, creating one PNG file for each page in the PDF. It does this via a c…

    754 members asked questions and received personalized solutions in the past 7 days.

    Join the community of 500,000 technology professionals and ask your questions.

    Join & Ask a Question

    Need Help in Real-Time?

    Connect with top rated Experts

    19 Experts available now in Live!

    Get 1:1 Help Now