Advise about setting up a permissons on Lion server for a small office.

What is the common wisdom and advise about setting up permissions optimally for a small office using OS X Lion Server as a file server?  I thought I had this solved by setting the ACL permissions so that all users and appropriate groups can read and write all files on the server.  This works great until a new file is created.  Then it appears that the POSIX umask kicks in and takes priority over the ACL permissions.  I need to allow group write permissions on all new files.  My options seem to be:
Make everyone an admin - not great for obvious security reasons
Change the umask for the whole machine - also security problems, though perhaps fewer than the everyone-an-admin route above
Write a folder action applescript to add group write permission on all new files.  This works fine if you have a static number of folders  With new folders it has the problem: How do new folders created by non-admin users get this folder action automatically applied to them - some cronjob to hunt down the new folders; an applesscrpt folder action that adds a folder action to all new folders (sounds recursively complicated)?
Have a cron job regularly do something like  `chmod -R 664` on all files.  This will break during those between the cracks times between when someone creates a new file and when the cronjob runs - not ideal.
Seems like this should be easier which makes me think I'm missing something obvious.
Any help great appreciated.  Thank you in advance!

Good-heart's advice is certainly your first step, but if you've already done that and still have the problem you've described, you might have the 10.7.3 ACL bug, particularly if your users and groups are in an OD or AD rather than being local accounts on the server. The problem is that ACL's for directory accounts are incorrectly ignored, resulting in POSIX permissions coming into play.
I've descibed my workaround for this here;
https://discussions.apple.com/message/18037703
I haven't yet tried the other trick I've read about, which is to ensure your Share's data directories are at least one level down on the volume - there is a post here on the Communities that mentions this;
https://discussions.apple.com/message/18028746
I seem to remember that this helped with an earlier version of AFP, if using external firewire or usb storage.
Let us know if you find a fix, it seems a number of people have problems with this.
Regards,
Ian

Similar Messages

  • How to set up a basic file sharing server for my small architectural business?

    I have no idea if I have posted in the correct area as this is my first forum post within the apple support community!
    I have been using a 21.5" imac running 10.6.8 for the past 5 years to run my small home based architectural design business. I have been using the internal hard drive & backing up the necessary data to a simple usb external hard drive. I am now looking to firstly purchase a new imac 27" retina and purchase new autocad lt 2015 for mac software. I am looking to have another imac (my old mac) running in conjunction with the new mac. I want both macs to be able to access the same data and am slightly unsure what is the best way to achieve this.....As my old mac is currently only running snow leopard and an old version of autocad for mac 2011 it wont run on any more recent OS. Essentially i believe I have 2 main options with this.... (1) I Accept that I have to purchase 2 no. autocad lt 2015 licences @ a cost of £2300. Or option (2), I only run autocad on the new mac as this will be the primary station and the old mac used for primarily for admin & accounts. I have also recently discovered that it is possible to rent autocad licences for £300p/a which may also be another option (3)!
    I previously had a problem where my hard drive failed on my mac & lost all data on the internal hard drive, luckily I had been backing up all data regularly to my external hard drive and now loss occurred! Obviously with any new system I want to ensure that my data is safe!
    I currently utilise about 250GB of data for business operations but this will obviously grow with time.
    In the future I would like to have the option of potentially being able to access the network data remotely via macbook pro whilst abroad although at this stage this really isnt my primary objective. Although I believe I could achieve this through apple remote desktop.
    I suppose I should provide some information with regard to the required speed of the system...I regularly open 50-100 photos at the same time totalling around 250-500MB. I would like the system to be able to handle this fairly easily.
    I have been trawling through forums and to be honest they are totally confusing me. I have also spent time on the phone to the apple business team and have also discussed my objectives with a member of the apple team in store.
    There have been various options advised to me and I really do not know which is the most appropriate route forward.
    1 - Using a mac mini as the file server and linking the 2 mac devices to this and backing up the mac mini to an external hard drive to ensure no loss of data.
    2 - Using a time capsule as a file server and linking the 2 mac devices to this and backing up the TC to an external hard drive to ensure no loss of data.
    3 - Using the new mac hard drive and linking the 2 macs via thunderbolt (old mac does not have thunderbolt and so I guess I would need another new mac?!) and then backing up the data to a time capsule.
    4 - Using a RAID based server and linking the 2 no. macs.
    Sorry to ramble but any advice really would be greatly received!

    Hi sblemings,
    Welcome to the community.
    I think with your scenario you should ask yourself, how complicated do you want the setup to be and how much time would you have to be able to resolve an issue should one occur with this setup.
    All the options that have been advised would work but they come with complexity and therefore time.
    1 - Using a mac mini as the file server and linking the 2 mac devices to this and backing up the mac mini to an external hard drive to ensure no loss of data.
    2 - Using a time capsule as a file server and linking the 2 mac devices to this and backing up the TC to an external hard drive to ensure no loss of data.
    3 - Using the new mac hard drive and linking the 2 macs via thunderbolt (old mac does not have thunderbolt and so I guess I would need another new mac?!) and then backing up the data to a time capsule.
    4 - Using a RAID based server and linking the 2 no. macs.
    Sorry to ramble but any advice really would be greatly received!
    option 1
    Would be a way to achieve what you want, it would centralise your files and you would only need to backup your file server (as long as all the files you wanted backed up were on it). This could be achieved either using the client and sharing various folders or using Server which would give you more options than you would possibly need.
    option 2
    This is exactly like option 1 except that you wouldn't have to administer another mac however you may limit any future growth.
    option 3
    This option I probably wouldn't pick, you could achieve this with firewire and use a firewire to thunderbolt adapter (saves you having to buy a new iMac)
    option 4
    This option would, depending on your RAID level, give you disk redundancy but remember you would still need to back this up, as RAID is NOT a backup solution.
    I would also ask is there a pressing need to keep the old iMac in service and complicating things by having a server / NAS? Could you not just transfer all your information over to this and continue with the one backup? I would say that doing it this was would be the simplest way of achieving what you want from what I can take from your question.
    As for remotely accessing your data, if you have the right hardware the way to achieve this would be to use a VPN and connect back to your data. However a potentially easier way for you ,would be to use a service like logmein or teamviewer to connect back.
    Hope this helps, and by all means any questions please ask.
    Dan
    How to set up a basic file sharing server for my small architectural business?

  • How do I set up file sharing in Lion Server to work like file sharing in Lion Client?

    I've just installed Lion Server on my home iMac to enable remote access via VPN to my home network.
    When the iMac was running Lion Client (before the upgrade to server), and when File Sharing was enabled on the iMac; when other Macs on the LAN connected to the iMac via AFP, they were always able to connect to (share) any mounted external volumes (external USB or FireWire drives connected to the iMac). e.g.
    Now that I've upgraded to Lion Server, when other Macs on the LAN connected to the iMac via AFP they are only able to connect to (share) the sharepoints listed in the File Sharing pane of Server.app. e.g.
    Is there any way to set up File Sharing in Lion Server so that it works the same way as it does in Lion Client with respect to mounted external volumes? i.e. they are automatically shared? I know I can add each volume manually to File Sharing in Server.app but this gets tedious.
    Many thanks!

    I normally have a Firewall enabled. I recently had to do an erase and install of Lion, followed by a one-by-one re-install of all of my software. One of the first things I did was to set up all of my System Preferences the way I like them; Turning the Firewall on was one of them. Later I noticed it was off and turned it on again. I had already set up sharing and was surprised to see the problem when I turned it back on.
    As to why do I think it needs to be on. It is another part of my security layer.

  • Lion Server for Home use reality check

    Hi All,
    as many others I had the best intentions buying Lion Server for my home network (5 Macs, 2 iPads, 2 iPhones) to manage everything.
    It was destined to be a central server for user management, configuration management, home directories, file server, software update server, web server and Time Machine server and possible VPN gateway to my home network.
    I did not intended to use  as Address Book, iCal, Mail server as I use iCloud. I just don't see the point of iChat, Podcast, Wiki server for my home use.
    Anyway the bits I had to abandon so far are:
    configuration management - Profile Manager works only sometimes and is sluggish to say the least
    home directories - the home sync just doesn't work for Mac libraries such as iPhoto and iTunes
    software update server - worked, broke, fixed, worked, broke, fixed, ... going away with Mountain Lion.
    What works for me is user management, file server, web server and Time Machine backup, haven't gotten around to test VPN yet.
    Given that Mountain Lion is coming next month and presumably I'll have to buy new license for the Server version I am not sure if it's worth it.
    As I see it using a plain vanilla Lion or Mountain Lion system I can still do file server, web server and Time Machine backup. What I'd lose is the user management and I am not sure about VPN on a non-Server system but not really important. User management is a one time task for 5 Macs that's it.
    Would be interested to hear opinions from you folks about pros / cons of using a plain Lion or Mountain Lion OS X for server tasks vs Server version?
    Anything I am missing here?
    Thanks
    Andy

    iToaster wrote:
    most osx server issues are usually DNS problems
    if that is not correct practically nothing else will work correctly
    That's probably true but also within that lies a major problem how this is positioned "The Server for Everyone". I am in IT and know what a DNS is. Most home users would NOT have a DNS running as it's not necessary not even talking about SSL certificates. I think this is a major problem here that it market incorrectly.
    iToaster wrote:
    if your trying to have portable home directories and having iphoto library sync'd
    I don't recomend on wireless , even on a wired 1gb network it's slow
    use WGM to skip iphoto or be prepaired for a long wait
    It's not so much a network bandwidth problem but the fact that home sync doesn't work for package files such as iPhoto, etc. Many people have confirmed that that home sync actually corrupts those files.
    iToaster wrote:
    for the cost of ML server it's probibly cheaper in the long run then the time you'd spend
    trying to get the same funtionallity via terminal.  plus the posiblity of a OS update
    that may blow all your finely crafted terminal work all away.
    Don't intend to do terminal but for example take "File Sharing". It's an Server option but every Mac also has file sharing under the "Sharing Settings". As far as I can tell the server actuallty is just an overlay over the Mac sharing option because if I define a file share it's also updated in the sharing option.
    Same thing goes for the Webserver. Hence I am thinking that Server really only is a central console for some basic services that can also be available by using standard OS X functionality.

  • Adding redirect path and  pattern in Lion server for configuring software update server

    Adding redirect path and  pattern in Lion server for configuring software update server.Any changes

    Ok, after days of browsing on the forum I found the following hint on another discussion related to AFP access:
    "This may be a service ACL issue.
    It turns out one of the latest Apple updates turned on Service ACL's which caused AFP connections to be  blocked. Once I fixed the Service ACL in Server Admin... all connections and Single Sign On worked."
    Well, after allowing access to all services to all users with Server Admin, we were finally able to log in the server with our admin account...
    So, there must have been an update that turned on ACL's which caused even our local access, probably for OD/Kerberos, on the server to be restricted.

  • Need help w/ setting up ports to run a server for America's Army

    Need help w/ setting up ports to run a server for America's Army. I read wat u need to change the ports but i dont understand wat to put. here is wat the site says
    Q: How do I run my own server?
    A: Quick and dirty server info:
    1. Edit RunServer.bat to change the map.
    2. Run RunServer.bat
    Or:
    server.exe LAN MAPNAME.aao (Host a LAN game)
    server.exe global MAPNAME.aao (Host a Public game)
    Also: When you create a server setup and want to allow other users to join your server, you need make sure the following ports are open for outgoing and incoming traffic in your firewall: 1716 (UDP), 1717 (UDP), 20025-20045 (TCP), and 20047 (TCP). Failure to open these ports will prevent the server from accepting connections from other players or prevent other players from being able to see your server online.
    There are several settings that also need to be defined in your server configuration INI file (in the Windows version, these files are located in “My Documents\America’s Army Server Settings\{settings file name}.ini”).
    [Engine.GameEngine]
    ServerActors=Andromeda.AndromedaMBS
    [Andromeda.Andromeda]
    GameServerIp=
    Make sure that you set the actual IP address of the America’s Army Server under GameServerIp= (for example, “GameServerIp=000.000.000.000”). The supplied address must be your actual internet IP address, if this is left blank or you supply the IP address for your internal network (such as 192.168.0.x), your server will not be able to accept connections from the internet.
    If your server.ini file contains the setting shown below, please change the QueryPort setting to 20025. This setting can also be removed, as the default setting is port 20025.
    [Andromeda.AndromedaMBS]
    QueryPort=20025
    Punkbuster user fix correction.
    If [Engine.GameEngine] block has been changed to read as below:
    [Engine.GameEngine]
    ServerActors=IPDrv.AndromedaMBS
    Please add the following block to your INI file:
    [IpDrv.AndromedaMBS]
    QueryPort=20025
    (Last Updated: 2006-04-20)

    Your images are not stored in the catalog. They are stored in folders on your computer. If you imported images that were already on your computer using the "Add" Option they are still in that same folder. If you imported images from your camera then they are in the folders that you specified when you imported. The catalog points to those images wherever they are located, and records all of the adjustments that you make to the image. When you send an image to Photoshop for further editing and save that image in Photoshop, it is normally saved back in the same folder as the original image.
    Images are not "saved" in Lightroom. The basic default workflow in Lightroom is to store all of the adjustments in the catalog, leaving the original image completely unmodified. The catalog becomes the central controlling mechanism. It is a database that contains pointers to where the images are located and a record of all adjustments made to those images using Lightroom. Properly managed, you only have those original master files and secondary files for the ones that you have sent to Photoshop for further adjustment. When you want to provide a copy for someone else, you use the export dialogue for that purpose. I often export JPEG images to share with others or to post on the web. After I have usedthe JPEG for its intended purpose I delete it.

  • If I buy Lion Server for my iMac can I download Lion for free on my MacAir?

    If I buy Lion Server for my iMac can I download Lion for free on my MacAir?

    Well, it hasn't worked that way for me.
    I bought Lion for $29 from the App Store this morning, and DLed/installed it on my MacBook Pro with no problem.  This afternoon I went to upgrade my Snow Leopard Server Mac Mini.  Went to the App Store, clicked the Lion Server at $49.99, and was prompted that "because this is an OS X server, you must purchase a OS X Lion as well as OS X Lion Server, for $79.98"  [Cancel]  [Purchase Both]
    If I try to install just Lion from my "Purchased" list in App Store, I get exactly the same message.  If I try to install Lion from an install DVD, I get a "checking with App Store" and then the same message.
    Spent over an hour on the phone with Enterprise Sales, who agreed that's not what was supposed to happen, but had no resolution.  It isn't critical to me timewise so they are mulling the situation over.
    My recommendation if you have SLS and clients to upgrade is to do the Lion/Lion Server purchase *first* for the server.  Hopefully then the Lion license will be available for your other machines.  I can't guarantee it, but I can guarantee that the other way *doesn't* work.
    KeS

  • I need advise about setting up a server plan for a community.

    I have the following situation:
    The website has a community with, expected in the fist stage, 100,000 registered members. This community will be first launched in the Netherlands and later worldwide. A member has 25 MB of disk space to store photos or something. You can compare the community with for example hyves (a dutch community site similar to MySpace)
    Besides the community the site will also have a web shop and some information pages about the products that will be sold in the shop. The web shop will not have a large amount of product in store, however the expectation is that it will attract a large amount of customers.
    My question is; what do I need to keep this running smooth (quick page loads) and secure (data loss, back-up servers), and make it easy to expand the server park.
    URLs to the example sites:
    Hyves: www.hyves.nl
    MySpace: www.myspace.com

    >Can you clarify that, because I thought the Xserve RAID is the server for storage?
    The XServe RAID is not a 'server for storage'. It's just an array. In order to provide storage it needs to be connected, via Fiber Channel to a host computer. This is fine if you have one web server, but becomes tricky when you have multiple. unless you're doing some very fancy load balancing, you're likely to want all the content accessible to all web servers at the same time. To do that you typically implement a fiber channel SAN (every host connects to the XServe RAID via a fiber channel connection), or you implement a NAS host where one server is attached to the XServe RAID and it shares the content to other hosts via AFP, NFS or similar.
    This is fine for small installations but my point is that if you grow to hundreds of terabytes of storage, the XServe RAID might not be the best bet. It works well enough at tens of terabytes but there are other considerations when you get very large.
    For example, if you have one XServe host acting as an AFP or NFS 'head', what happens to your site when that server crashes? or needs a Software Update? Your network is going to go down. For high availability networks you might consider a dedicated NAS or SAN infrastructure that has higher redundancy, built-in failover and is designed for very large storage arrays. If you expect to grow there you might be better off starting off with that, rather than starting with an XServe RAID and migrating the data later on.
    Other than that, the rest of it is good for a start, but you need to consider redundancy (what do you do if a server crashes?) and scale (what do you do when you get more traffic than your web server can handle?).
    Typically these problems are solved via load balancers - appliances that sit in front of the application server and dynamically routes connections to whaever machine is best able to respond to the request. These boxes (at least the good ones) don't come cheap, but they're essential if you expect your site to grow past a single server setup.

  • N00b needs help setting up MAC OSX Lion Server for email.

    I recently purchased a Mac Mini running OSX Lion Server and I really don't understand how to set it up as an email server (which was my main goal). Eventually I'd like to set it up to host just about everything else, but I can't seem to figure out how to set up my router and MX records to point to my server in order to host imap mail. I do have a static IP by the way but this N00b is confused... Please help!

    Funny you should ask, because I have been spending the day trying todo the same. I just need to know what to enter into my mx record in network solutions. I can send mail, but I can't receive it just yet. Any help would be great.

  • Help setting up Lion Server for remote access

    I have been going in cricles for weeks trying to set this up correctly.  Can anyone tell me what I'm doing wrong?
    I got Lion Server and Server Admin Tools all updated and have been trying to follow Terry Walsh from We Got Served's guide but I missing something.
    I purchased a domain from GoDaddy. Let's call it bradnet.com
    My domain and dyn domain are not really what I have typed here but close enought that they should work for my example and trouble shooting.
    Because my ISP (Comcast) doesn't provide a static IP I registerd for an account with dyn.com.  This is where I get really confused.  With dyn.com i created a host name: bradnet.dyndns-rocks.com and downloaded there updater software.  It found my public IP address and said everything is ok.
    I went back to GoDaddy and in my DNS manger page added the host: bradnet.dyndns-rocks.com and entered my public IP.
    I then went to the server pane to edit the host name.  I followed your instructions to edit the name and selected Host Name for Internet.  I left the computer name as mini (what I had previously named it for file sharing before the server upgrade) and entered  mini.bradnet.dyndns-rocks.com as the host name.  When it takes me back to the server pane, in the bottom window it states:
    Your Server's host name is mini.bradnet.dyndns-rocks.com, and its IP address is 192.168.1.10. You can change network settings in the Server pane.
    I never get the your network is configured properly message.
    I went and set my computer's IP to DHCP with manual address (although all of my machines are set up with DHCP reservations so I guess that is a little redundant) to 192.168.1.10.
    I skipped the port forwarding step because I am using the latest AirPort Extreme as my router.
    I then opened a browser and tried:
    http://bradnet.com
    http://mini.bradnet.dyndns-rocks.com
    http://mini.bradnet.com
    http://bradnet.dyndns-rocks.com
    All of these got me the can't find the server response from Safari.
    Also, I have not yet set up Directory Services.  Terry's guide seems to suggest to do this step first.
    I'm sure I have messed up some step somewhere can you see what I have done wrong?
    Also, is it a problem to set up open directory services using a .local host and then go back and change it for internet access later or do you need to set that up from the start?  My family is getting impatient with me trying to get this to work.
    Thanks for any help anyone can offer!
    Brad

    That manual page is not fully correct. There is written:
    Public UDP Port(s): <enter the appropriate UDP port value(s)>
    Public TCP Port(s): <enter the appropriate TCP port value(s)>
    Private IP Address: <enter the reserved IP address of the host device (from step 1)>
    Private UDP Port(s): <enter the same Public UDP Ports or your choice>
    Private TCP Port(s): <enter the same Public TCP Ports or your choice>
    But it should be:
    Public UDP Port(s): <enter unique UDP Ports of your choice>
    Public TCP Port(s): <enter unique TCP Ports of your choice>
    Private IP Address: <enter the reserved IP address of the host device (from step 1)>
    Private UDP Port(s): <enter the UDP Ports used by your device>
    Private TCP Port(s): <enter the TCP Ports used by your device>
    Make sure you use the same ports in the private settings as you have defined in your IP camera. Normally a camera will use port 80 by default, so use 80 here.
    The Public ports must all be unique. If you have not defined a port 80 here, you can also use 80. This will fail however when using multiple cameras. I for instance have 5 IP cameras and use the public ports 8451, 8452, 8453 etc.

  • Setting up Push Notification in Lion Server

    Dear all,
      I am setting up a Lion Server which allows users to enroll their ipad, and want to send out push notification.
    After I got a SSL cert, enroll the ipad.However, I could not see any way to push my notification to application  in my ipad. So here is my question:
      1. Does the APNs set up in the Lion Server Connecting to the gateway.apple.com:2195 or directly connect to the ipad? Because my target environment will be a private network.
      2. How can I configure Lion Server so that it could send out push notification? ( either from apple or direcly push )
    Thanks

    Thanks for your reply,
    However,
    http://support.apple.com/kb/HT3947
    Referring to the above documents,
    " Additionally, the service can be configured to provide Push Notifications to third-party applications which use the ServerNotification "
    This really confuse me

  • Step-by-step to set up vpn on the lion server and then connect a computer running 10.6?

    I've recently bought the Lion server. Checking VPN and adding my static IP sounds easy enough.
    I then went home to my computer running 10.6, opened the system preferences, added vpn under network.
    I guess I have to choose LTP2? What would be the network name? I left it as the filled in "VPN (L2TP)".
    As the server address I put my static IP. Account name - is that my user name from the file sharing network
    I created in the server software? That's what I used, and added the password for that user account under
    Authentification settings, plus the shared secret, I had copied from the server.
    Once I apply these settings and try to connect I get the message that the server is not responding and to try to reconnect.
    Can anyone fill i the blancs? Obviously I'm missing some stuff inbetween, but canot find answers online.
    I guess this is too basic for a forum, but where does one start to learn this stuff??
    Do I need to open specific ports on my router connected to the server network? It does say "vpn is enabled" in the
    setup window.
    Do I need to create a certificate of some sorts and plce it somewhere?
    Do I need tp upgrade my other computer to Lion? I created a "VPN.mobileconfig" file on the server, but when I copy
    and open it on a machine running 10.6 it doesn't install anything and just opens up in text edit as a bunch of code.
    Please help!

    Same problem here. Just bought the Mac Mini Server with Lion OS X 10.7.2 and created this vpn.mobileconf file. This file seems to do what it supposed to do when I double clicked it while still on the server. Hence copying it over and double clicking it on my MacBook Pro made the texteditor open the file showing the actual contents of it. Trying to import it into my network preference settings wasn't possible either since the file showed grayed out. It seems the operating system on my MacBook Pro (OS X 10.6.8) doesn't recognize it as the correct file type. Entering the settings of the vpn.mobileconf file manually on the Laptop doesn't work either. Time for OS X 10.6.9?

  • Setup Lion Server for use in Small Office of Windows & Mac Clients

    I've purchased a Mac Mini Server with Lion Server installed to be used in my small office of less than 10 people.
    The primary goal of this server is to used for File Sharing, bother locally, and remotely.
    In the process of setting up Lion Server I have come across a couple things that I am confused about.
    The first is Open Directory.
    It is my understanding that this is not a necessary setup for the number of users in my office, however I set it up anyway as it appeared to be something that would be useful in the future.
    I have come across information that states Lion Server will not be accessible for Windows users connected via Open Directory. Thus my inclination is to disable the service, and set up my users as local users.
    My question is, for local and remote File Sharing, is there any benefit to using Open Directory?
    The second has to do with Remote Access.
    I am familiar with the notion of a VPN, but I need some clarification as to my remote access options.
    When I go to setup my Server's hostname, I am presented with three options. 1) Host name for local network, 2) Host name for private network, and 3) Host name for Internet.
    I have a domain name for my company's website, so I set up a subdomain (server.mycompany.com), asked my ISP for a Static WAN IP, and pointed thesubdomain to said IP using my DNS. Thus this appears to be option number 3; to allow users to connect to my server from the local network, as well as the Internet.
    My question is, how does this differ from a VPN both in setup, as well as method with which users will access the server? Is there a benefit to one over the other? I would Google this to find an answer, but I can't seem to find a name for what this setup is called.
    I very much appreciate any help you can provide.
    Thanks.

    Well, I spoke too soon.  Lion Server is unstable, awkward and is far too limited to qualify as an Apple product. Even though there's quite a few enhancements, the omissions of technologies in the server 10.6 edition makes this "server" a no go for us.
    Even after installing mysql, I still cannot run a Joomla website on Lion server as it should be done. The wiki's a nice thing to have, but isn't a "professional grade" solution.  There's too much iOS as well.
    With that said, I think it's a shame that apple would put customers through so much frustration and disappointment by releasing such a lame product. In order for us to use Lion server, we would have to be able to run a second (totally separate) instance of Apache. It also appears that server settings are changing to the extent that services become inaccessible as the system is running.

  • Configuring Mountain Lion Server for iOS MDM

    Hi all,
    I am an admitted newbie to the Mac world. That said, I am in the process of setting up an OsX 10.8 server to handle the MDM for our iPad deployment. This is in a school district that runs all Windows in Active Directory.
    I attempted to do the setup with no luck. So, I tried to reset the server back to the defaults and found that the settings I had made previously were still there.
    What I need to know is how should I go about getting back to essentially scratch with this setup? Once I have that, what is the correct setup process to get me to where I can enroll the iPads to do the wireless MDM? We do not need to have access to the server from any other devices. No other services are needed like email, file shares etc. We have several sites on many different subnets but all on the same network.
    A few specifics I do need to know is which network configuration would be preferred for our type of network? I'm thinking Private since everything will be handled internally. Also, regarding the certificates, is an SSL certificate required? And last, I read that there are some TCP ports that need to be opened. Is this required if we are running strictly internal with this?
    Sorry for rambling on and my inexperience. I appreciate any help anyone can give.
    Thanks!

    You can use .private but if there is EVER the possibility that this would be used outside your LAN, then I would use a FQDN.
    You do not need a commercial certificate. A self-signed will work fine.
    The default self-signed has a 1 year expire. If you don't want to deal with updating the cert in a year, I would create a new 5 year cert.
    This option is harder to find now with mountain lion.
    From the Certificates section in Server, first click the gear and choose 'show all certficates', then hit the + button and choose 'Create a trusted certificate'. You will see a button to override defaults. This allows you to have a different expire date.
    You can reset the profile manager data (stored in postgres) with:
    sudo /Applications/Server.app/Contents/ServerRoot/usr/share/devicemgr/backend/wipeDB.sh

  • Setting up of a new server in a small office network

    Please forgive me for my lack of knowledge on this subject and it's perhaps something that I should get installed by a professional but hey, I like doing things myself and saving some money at the same time.
    We have a network, running gigabit cabling, with 15 macs and 4 pc's connected and we have been working off individual machines and backing up via a drive connected to one of the machines on the network. Then when a job is complete we simply tell people it's finished, they copy it and then I burn it... not ideal and a bit clunky.
    What I would like to do is get everyones work onto one machine and then backup and archive regularly from that machine.
    Does anyone have any suggestions/advice as to what would be the best way of going about this. I'm getting slightly confused by xServe, Servers and all that stuff!?!?!
    Any help would be much appreciated.

    Well, you're current method sounds pretty good. But if you want to user a file server, hey go ahead.
    What you want to do when you centralize project files is to keep track of which one is the newest and becareful not to overwrite files with the same name. So you either have to set up individual spaces on the server (separate AFP/FTP folders maybe), or you'll need to run a file checkout service.
    The individual space is cheaper, but it's not much of a difference from backing up to the network drive. Since you have Gigabit connections, you might even opt to save ALL the user files on the server instead of just the project files.
    If you want to run a file checkout service, there's two approaches. You can run a service that can host any kind of file, or you can run a version control system for each kind of application (Photoshop, Word, etc.). Please notice, that as you read further and further along, the methods become more and more expensive and complicated. Once you get to this point, it will be necessary to purchase or build software in addition to the Mac OS X Server package.

Maybe you are looking for

  • How can you  automatically disable data on a phone when the user hits the limit?

    One Verizon phone rep said she would take care of it for me.  Obviously that didn't happen so Verizon robbed me of $50 in overage fees. Next Verizon store rep told me to go online and do it.  Still haven't figured it out.  So, anyone know the answer?

  • Battery not charging after dock connector replacement, iPhone4

    Hi all, My iPhone4 suffered mild water damage (water damage indicator not triggered) and misbehaved on that day. So I turned off the device and put it in a bag of rice for almost a month. When I eventually took it out, it was almost as good as before

  • Poor DV Output

    I've been asked to render out a DV/DVCPRO-NTSC file. When I render with Compressor I get absolutely shocking results. I know DV compression isn't great but when I render the exact same file through another encoding application (ProCoder v3) using the

  • Capturing Hosts,cluster,ad Resource information of hosts using SPF REST API

    Hi, We are using SCVMM 2012R2 to integrate Hyper-V VMM with java using SPF REST API.For this I am using tenant API.  I am able fetch all the entities in VMM using GET query in SPF URL,but I am unable to fetch hosts,cluster and resource information fo

  • CMS Database Access Problem during installation BO XI 3.0

    Hi all, Very urgent question How can I install my CMS Repository in an Oracle Database and create a Service on the BO server as Oracle Client to the Oracle Database Server? I am not familiar with oracle and not be able to create an oracle service nam