Link to home
Start Free TrialLog in
Avatar of IT Guy
IT GuyFlag for United States of America

asked on

Allow Mac OS X user to logon to Mac using Server 2016 AD account while outside of company office

A user with a Mac OS X computer says that he doesn't have the option to login to his Mac whenever this Mac is outside of our office. This Mac has all of the latest Mac updates installed.

This Mac is joined to our Server 2016 Active Directory domain and the user logs onto the Mac using his Active Directory account. Our local area network is using an IP subnet of 172.16.0.0.

I have set the Mac so that it prompts the user to login with his account name and password.

This user says that whenever he is outside of our office the only options he has is to login to a local Admin account that I have created our to login using the guest user account.

Is there a keystroke combination (similar to CTRL-ALT-DEL on a Windows computer) the user can press to switch back to the username and password login option rather than the user clicking on the account name he would like to login with?

Also since the user is outside of the office and we don't have a VPN setup will the user be able to login with his Active Directory username and password even though the Mac won't be able to contact the Active Directory domain controller?
ASKER CERTIFIED SOLUTION
Avatar of Peter Hutchison
Peter Hutchison
Flag of United Kingdom of Great Britain and Northern Ireland image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of IT Guy

ASKER

I have reviewed the URL above and have followed all of the instructions.

However, I'm still encountering the exact same issue where the user is forced to login with a local account first and then once the user logs out of the local account he has the option to then login using his AD username and passsword.

We need to have local login accounts available on the Mac that can be used to login to the Mac by the local administrator (me) if the need ever exists. These can't be removed or disabled.

I also need to make it so that the Mac can also be logged into using Active Directory usernames and passwords.

How can this be done?

Please let me know if any further information is needed.
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of IT Guy

ASKER

What steps need to be followed to enable the domain account as a filevault user?
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial