Jump to content

Odd going ons with OpenDirectory lockdown


Recommended Posts

Posted

I have an AD domain serving authentication and an Apple OD server for locking down my macs.

 

The problem that I am having is that this setup seems to randomly restrict access to things (increasingly so) on the iBook and MacBook that we have. These are in a different computer group in OD to the 'static' macs (which need to be locked down more to stop fiddling).

 

Has anyone else seen this or can you recommend anything? I am going to rejoin to OD tomorrow to see if it will synch things up... the tweaks I have recently made in Workgroup Manager have been unsuccessful :(

Posted

Short answer:

 

Its Broken

 

Long answer:

 

While apple were spending a little too much time finding the difference between their arse and elbow they screwed something up in 10.4.x. Intels seem to be worse? Odd things happening like no OD settings when a user first logs in, but logout and in again and its fine?

 

Here is the brainwave apple came up with

 

1) Load the OD settings from the server

2) Start the network

 

While I'm not a genius or anything I can clearly spot an issue there. I'll find you the scripts I use tommorow to delay the boot and wait for the network to start. Since changing this it works nearly all the time.

Posted

This is one of the reasons I have not opted for full integration between OD and AD. I use WGM to control machines and the machines are bound to the AD and authenticate against it to get home areas.

 

For the moment it works and present no problems.

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...