Setting up mobile accounts to delete after logout issues

Running a network with about 2,000 users. Due to the amount of time to login the sever at each workstation we set up about half of them to sync and to be mobile account within workgroup manager. We have the settings as followed for the sync....
create mobile account when users log in
and making network home and default sync setting.
delete mobile account after 0 hours (originally set to 5 days)
delete only after successful sync
for the rules we are using preference sync always, but not in background. Same for home sync rule.
So at first the users were logging in very fast and working great, the 1st 3 or 4 days we set up the delete mobile accounts to delete in 5 days. 2 days later we changed it to 0. in that time being about 300+ users logged in with the setting set to 5 .about 1 week later after changing the account expiry from 5 days to 0 hours most users started to get sync errors (from 10, 200+ errors) we looked into it a bit and noticed that under root/users...the users home directory were not being deleted fully, the entire folder is suppose to be deleted but instead it was only deleting downloads, pictures, videos ect, and it was leaving about 3 folders within its home. (documents, desktop and something else)
we noticed once that happened to a user, when they would to log out and try to log into the same work startion we would get an error stating
"unable to create mobile account, there was a problem while creating or accessing /user (then says users name)"
This issue is due to that work group manager is not fully deleting the synced account. If we go in as root and deleted the users home in HD/users, they user was able to log back in with no problem and it recreates its mobile home and works perfectly.
but as of now we have a hand full of users with this issue. please advise.
we are using workgroup manager version (10.6 ) 361.1.1

Hi
All local users have rwx and no permissions for groups or others on Desktop, Documents etc. as they should.
Mobile users have rwx and groups and others have rwx also on every folder. 06hstest is a mobile user
drwxr-xr-x 12 06hstest SGCSD\do 408 Feb 1 12:48 .
drwxrwxr-t 11 root admin 374 Feb 2 10:09 ..
-rwxrwxrwx 1 06hstest SGCSD\do 3 Jan 19 13:37 .CFUserTextEncoding
-rwxrwxrwx 1 06hstest SGCSD\do 6148 Jan 29 11:51 .DS_Store
drwxrwxrwx 6 06hstest SGCSD\do 204 Feb 1 12:48 Desktop
drwxrwxrwx 26 06hstest SGCSD\do 884 Feb 1 12:48 Documents
drwxrwxrwx 11 06hstest SGCSD\do 374 Feb 1 12:48 Library
drwxrwxrwx 4 06hstest SGCSD\do 136 Feb 1 12:48 Movies
drwxrwxrwx 4 06hstest SGCSD\do 136 Feb 1 12:48 Music
drwxrwxrwx 5 06hstest SGCSD\do 170 Feb 1 12:48 Pictures
drwxrwxrwx 4 06hstest SGCSD\do 136 Feb 1 12:48 Public
drwxrwxrwx 7 06hstest SGCSD\do 238 Feb 1 12:48 Sites
Thanks,
Martha

Similar Messages

  • Setting Up Mobile Accounts to For Users Who Already Exist

    Hi there,
    I work for a company with about 10 Macs, all laptops, all are on 10.5.
    They have never had a server and have asked me to set one up for them. I am in the process of setting up a server here with a new copy of OS X Server 10.5. Here's my question.
    The people here are half-wits and any kind of backup which involves them, you know, actually doing anything is never going to happen.
    My thought was to set up Mobile accounts for all of them s this provides seamless syncing and no issues if they leave their office, The problem seems to be to set up a mobile account seems to require a new user where all the people here already have home folders/stuff on their personal laptops (we don't share computers). The user I create on Open Directory seem, even if i give them the same details of the current user on their laptops, to be different. Is there a way to make this work or should I just make them all Time Machine backups to the server instead?
    Thanks,
    Ben

    So create a csv file with the following headers and data
    UserID, Alias
    UserID should be the user SamAccountName, and the Alias is the Mailbox Alias that you want to set. Supposing that the csv file is named users.csv and located under C:\ , open the Exchange Management Console and run:
    $users = Import-Csv c:\users.csv
    Foreach ($user in $users) {
    Enable-Mailbox -Identity $user.UserID -alias $user.alias -database 'DB1'
    Set-Mailbox -Identity $user.UserID -IssueWarningQuota 1.5gb -ProhibitSendQuota 2gb 
    Please Mark As Answer if this helps
    ammarhasayen

  • My account was deleted for security issues. I made a new account, but I can't syncronise my apps with this new account. I bought a new Iphone and would like to transfer the apps ans music on this new one. Can somebody help me?

    My account was deleted for security issues. I made a new account, but I can't syncronise my apps with this new account. I bought a new Iphone and would like to transfer the apps ans music on this new one. Can somebody help me?

    Why would you make a new account?  This will likely cause many problems.  Just get you old account enabled.
    Apple ID: "This Apple ID has been disabled for security reasons" alert appears
    Frequently Asked Questions About Apple ID
    Everything you purchased with the old account will always be tied to that account.  You will have to authorize the computer for that account and you will have to update the apps from that account.

  • How do i reconnect mobile account home folders after re-install?

    we have problems with our server interfering with the college server. It kept changing our hostname so i had to enable DNS on the second ethernet port on xserve which prevented it from changing it but now is messing up the network as our server is being used for dns by the rest of the college. So i either need to restrict our dns to only answer queeries from specific addresses i.e my laptop and colleagues and forward all of the rest to another dns server. Or i have to re-install the osx server software and change the name to correspond with their servers given name for our xserve. The problem with re-installing it is that the students have a lot of work in their home folders which i can't loose. But i'm aware that the mobile accounts will be tied to the old domain name. Is their any tips you can give us so that i don't loose their home folders and it will sync back the client machines after i have put the new domain name on. I'm also aware that you can export the usernames from workgroup manager but not the passwords. Is there anything else i need to do so that i can just reconnect their accounts to the existing home folders after re-install? In other words i need to know the easiest way to do this to reduce dissruption to students files? Any ideas would be greatly appreciated! Also will i have to delete the students local folders on their imacs and sync back from the server again?

    ok reinstalled everything dns seems to be working have done sudo changeip -checkhostname and it says that both names match but then i started open directory and can't seem to get Kerberos started, i've tried changing it to stand alone then back again but it does nothing. I'm wondering why this would happen? i've tried adding a kerberos record but it doesn't do it just does nothing so i don't know what i'm doing wrong. I wondered if it might be a problem with the two network cards and dns as on ethernet one it is getting the dns name xserve.xxxx.ac.uk (which matches what the college server wants to call us) but on ethernet 2 gets xserve-2.local because it tells me that it already exists on ethernet one and renames it to this. I need to set up NAT so have ethernet coming in on port one and out again on port two. I wonder if my dns is backwards as its got the 192. address the NAT uses but its linked to the ethernet port one dns maybe this is the problem. would this cause open directory not to start kerberos?

  • OSX Server Mobile Account Greyed out after initial setup?

    I just setup a new install of Mountain Lion on an iMac and installed Server.app to set it up as a server.  I activated Open Directory and configured it for a few users (with NFS mounted home directories from a Linux NFS server).  I then logged into the iMac with one of these users and it asked me if I wanted to make them a mobile user.  I did as this will activate the Portable Home Directory function.  It asked me what I would like to sync and then setup the user as normal.  Now the issue I have is with any subsequent login of that user if I go to the Users & Groups sys pref panel the Mobile Account "Configure" button is greyed out.  Syncing can still work from the menu bar pull down but I can no longer change any of my sync preferences.  I've gone through the settings in default read com.apple.homeSync but nothing in there seems to affect that button being greyed out.  To eliminate the NFS server as a possible cause I setup a local network user with local storage on the server and it acts the same way after setting up as a mobile account. Any ideas on what causes this?

    I solved this myself. The user ended up have a folder on his desktop that contained a backup home folder from an old powerbook that he was trying to save. It was a complete home folder, Documents, Library, etc and I thought it might be interfering with the sync of the normal home folder. So I created a folder called Bad Stuff in the home folder and copied the old powerbook home folder into it. Then opened up the Sync Settings and excluded the Bad Stuff folder from the sync. And it worked, the sync when fine and is resyncing fine.
    Hope that helps with other people with a similar problem.

  • Outlook 2010 duplicates mail with setting Leave mail on sever, Delete After n days and pressing Send/Receive All folders

    The setting Leave mail on the server and Delete after n days and Pressing Send/Receive all folders causes outlook 2010 to duplicate all mails of the last n days over and over again.
    If I leave outlook 2010 open this problem does not occur, mail will be retreived without a problem. If I leave Outlook 2010 open for a long time and then press Send/Receive all folders it does work ok. If I restart Outlook 2010 and then press Send/Receive
    all folders the problem occurs.
    The pst file is a new one. OTher mail accounts that do have Leave mail on the server but not Remove after n days do not have the duplicating behaviour.
    I have manually removed 6400 duplicate mails, if Microsoft does not solve this urgent problem soon I need to remove Office 2010 from my computer and go back to Office 2007, Office 2007 worked fine for me.
    Is there a solution fir this problem, or a free tool to remove all duplicates?

    Dear Pieter,
    I suggest creating a new Outlook profile, and create the problematic account in the new profile, to see if the problem occurs.
    Here are the detailed steps on how to create a new profile to test this issue
    ==============
    1.    Exit
    Outlook.
    2.    Go to
    Start > Control Panel, click or double-click
    Mail.
    Mail appears in different Control Panel locations depending upon the version of the Microsoft Windows operating system, Control Panel view selected,
    and whether a 32- or 64-bit operating system or version of Outlook is installed.
    The easiest way to locate
    Mail is to open Control Panel in Windows, and then in the
    Search box at the top of window, type Mail. In
    Control Panel for Windows XP, type Mail in the
    Address box.
    Note    The Mail icon appears after Outlook starts for the first time.
    The title bar of the Mail Setup dialog box contains the name of the current profile. To select a different existing profile, click Show Profiles, select
    the profile name, and then click Properties.
    3.    Click
    Show Profiles. Choose Prompt for a profile to be used.
    4.    Click
    Add.
    5.    Type a name for the profile, and then click
    OK. Please also follow the onscreen instructions to create the email account in this profile.
    6.    Start
    Outlook, and choose this new profile.
    If this problem does not occur in the new Outlook profile, the old Outlook is corrupted. We can delete that and use a new Outlook profile.
    Please take your time to try the suggestions and let me know the results at your earliest convenience. If anything is unclear or if there is anything
    I can do for you, please feel free to let me know.
    Best Regards,
    Sally Tang

  • Mobile accounts not syncing at logout

    Hi guys,
    We are experiencing some synchronisation issues when attempting to use mobile accounts for the first time at our school.
    Synchronisation is only occurring at login and not at logout even though all options are selected under Rules>Home Sync in group preferences. Manual and scheduled syncing works ok.
    Points to note:
    User accounts are hosted in AD with OD supplying managed preferences.
    Home directories are stored on the mac server (Windows domain member) and shared/automounted via AFP.
    The mac clients and server are running 10.6 and are fully up-to-date.
    Has anyone experienced this issue before?

    Hi guys,
    We've managed to get sync at logout working. Here's how:
    -Add "/System/Library/CoreServices/ManagedClient.app" into the WGM Group Preferences Details tab.
    -This adds additional preference manifests, one of them being "Home Sync".
    -Modify the "Home Sync", "Always" settings by adding any item to the "Managed Preference Sync Items" array. We added the path to some necessary email config files stored in ~/Library.
    Doing these steps, for some reason, enabled syncing at logout. Hopefully it'll work for you too.

  • Is it better to set the admin account to other than myself on a new computer for security purposes?

    Hi all
    On a new computer is it better to set the admin account to other than myself for security purposes? I am sure that I read some years ago that this was the best route to go down. What I am suggesting is that I will still administer the account but not as myself the user in my own name and also will it have any ramifications further down the line.
    Will be using a new Macbook Pro running Lion (when it arrives)
    With thanks in advance for any help and advice on this issue
    Best regards
    Dingoh

    when you get a new mac and set up an account, that account is designated as the admin account automatically.  Creating a second user account without admin privileges is fine to do, if you are afraid that you might accidentally do something harmful that requires admin access.  Make sure it is a second user account and not a guest account, as with a guest account, everything during a session under a guest account gets deleted after the session ends.

  • New Mobile Account works on only one of two MacBook Pros

    I am setting up mobile accounts for my small company. I have two accounts, two MacBook Pros and one MacMini with OS X Snow Leopard Server. One mobile account works fine on both of my portables and the other one only works on one of the portables.
    On the portable that does not allow the creation of the mobile account I get a message at logon stating "Unable to create mobile account... There was a problem creating your mobile account".
    The /var/log/secure.log on the MacBook Pro has these entries:
    loginwindow[46]: Login Window - Returned from Security Agent
    loginwindow[46]: AuthorizationRef returned an error (-60006), with username = randy.kahle
    loginwindow[46]: This indicates that a SecurityAgent plugin has returned something other than errAuthorizationDenied (usually cancelled) after the auth record is set up.
    All of the entries in secure.log indicate that authentication was fine and the home directory mounts occurred correctly.
    Both the OS X 10.6.4 server and client have the latest software updates.
    -- Randy Kahle

    Yup, that did the trick.  The other Macbook had sharing on.
    Thanks

  • Lion Server Mobile accounts for Macbook users

    Hi All,
    I'm looking for a 'Best Practice' when setting up mobile accounts for Macbook users who just want to be able to use their machine away from the office.
    We DON'T want to sync anything, just create a mobile account on the Mac (a bit like a domain profile on a PC).
    I understand that this can be configured through workgroup manager in preferences for either the machine or the user account.
    What should the mobility settings be set to? Obviously the Account creation box is ticked but what should the 'Create home using' settings be ?
    Thanks Trappers

    I figured out how to delete the user from the command line.
    I used Remote Desktop to send as Root: dscl . -delete /Users/userID
    Where userID is the user's shortname.
    You could also log in locally and use the terminal to send:
    sudo dscl . -delete /Users/userID

  • How can I create a mobile account in Mountain Lion?

    Dear All,
    I have a problem creating a mobile account while joining an Active Directory domain controller (DC).
    ** Case one: While joining the DC, if these options are selected (Create mobile account at login) & (Force local home directory on startup disk), the home directory can not be created at all.
    So, how can case one be solved?
    ** Case two: While joining the DC, if (Creat mobile account at login) is not selected, and (Force local home directory on startup disk) is selected, home directory can be creatded, but not as mobile account.
    So, After creating the home directory, I can go to make it mobile account from Users & Groups/Active Directory user and choose mobile account.
    after creating mobile account, the user loged out and then loged in back again. from here Mobile account botton is disabled and I can not manage it.
    So, How can the bold underline part of case two be solved?
    Note: Active directory used is Windows Server 2008.
    Regards,
    Abdelaal,

    What is a "fax dialog"?
    This dialog, or something closely resembling it, is what you should see:
    Clicking Print sends the fax.
    It is possible Acrobat is interfering with something, in which case you should get rid of it, unless you know of a reason to require it.

  • Mobile Accounts - Sync of iCal and Desktop Background Fails

    I just set up mobile accounts and mobile home syncing on my computers so network users have a local home rather than just their network home. However it is interesting to me that the desktop picture is independent of the network home. That is to say, each machine has its own desktop picture for any one account.
    However iCal does the same thing and thats a problem for me. For example, if I set up iCal to sync with my gmail on on computer, the other computers will not do it. I'm trying to avoid going into every computer and setting up the calendar preferences because that would be a pain in the tail.
    Any clues?

    Ditto. I am having the same problem. I don't understand why ~/Library/Application Support/ doesn't sync. There are two entries in the exclusion list, but none of them would prevent Mail, iCal, AddressBook, or iChat from syncing their configuration (.plist) files.
    The only reason I bought this Mini Server was to manage these portable home directories (or Mobile Accounts) so that my family could login on any Mac and have their account all setup with everything configured and files available as if they were on their primary Mac.
    Really a bummer!

  • Can I change the default for podcast deletion after listening?

    I have only just discovered that many of my cherished podcasts have been getting deleted after I listen to them. I originally set the option to NEVER delete after listening when I first installed iTunes years ago and I haven't change it since. However, I can only assume that it was changed by Apple during an upgrade at some point and I never noticed. The delete after listening option has been set to On for podcasts going back many years (2008 at least).
    Two questions:
    1. Is there some way to change the default setting to Off?
    2. Is there a way to bulk change the setting for multiple existing podcasts?
    Thanks.
    For what it;'s worth; I'm running iTunes 12.1.2.27 on Windows 7 64-bit on a Dell Latitude laptop.

    Choose the Podcast view you are using (either Podcasts/Podcasts or Podcasts/Episode List) from below:
    or
    and select Delete Played Episodes <Off> from the drop-down menu

  • Email Deletes After iTunes Sync, WHY!!?? 3GS OS 3.1.3

    Why does my email in my POP3 account inbox delete after/during sync with iTunes?

    It shouldn't. Email account mailboxes and messages are not included with the iTunes sync process.
    Do you have the email account selected under the Info tab for your iPhone sync preferences with iTunes to transfer the email account settings from your computer to your iPhone? If so, this only needs to be done once and can be deselected after the email account settings are successfully transferred to your iPhone.
    If selected, deselect this followed by selecting apply to see if this makes any difference.

  • Creating new admin account and deleting old one

    I am handing my MacbBook Pro to my wife
    I am thinking about deleting my account (which is an admin, of course). I made her an admin account and she has access to all my apps when she logs in...
    I WANT her to have access to my applications as if they were hers even when my account is deleted (e.g. Adobe CS3, Skype, etc.).
    My Question:
    When I delete my admin account (with which the applications were installed), will she automatically not have access to the apps in the "applications folder" anymore? In other words, when I delete the admin account with which the application where installed, do all applications and setting from that account get deleted as well from all other users?
    Thank you.
    (transfering, sync'ing, etc. can be so easy but such a headache from a personal standpoint: managing changes)

    So, this would create her a new admin account but:
    1. my old account folder will be there but without being associated with a user
    2. same for her old folder
    3. all I have to do is drag her old account's application folder + application support folder onto her new admin account and all applications would run like we never even even left her old account behind?
    Will any Leopard boot CD work or does it have to be one made specifically with her computer (it didn't come with a boot CD)...
    thanks...

Maybe you are looking for

  • Is it possible to add software to include in Software Update?

    I would like Software Update to also look for updates for Microsoft Office and Adobe, is it possible to add those?  I am using Lion, and if it is possible, I would appreciate step by step instructions that are easy to follow for someone without much

  • Com.sapportals.wcm

    Hi, could somebody please send me a JAR file containing the IURLGeneratorServiceClass or or even better everything under com.sapportals.wcm.* to   [email protected] Best Regards

  • Increase of balance on a card...

    I paid for my girlfriend's dentist appointment with one of my credit cards in the amount of $400. I just got reported and I looked at the alerts to find that..... 1.) My Experian score went UP by 3 points.2.) My Equifax score went DOWN by 5 points. W

  • Sun Java System Application Server 8.0

    after succesfull installing of application server when i give URL in browser http://localhost:8080 its shows me blank screen in browser but when i check in log i get this error message.. while runnig this server rest all server are stopped and i have

  • Nokia 7100 Supernova!!

    Hello There! Can anyone tell me if this phone has a memory card place? At nokia.com says that there isn't but i think i see that in picture.. Does anyone know and tell me? Please!! Thanks for help!