10.3.9 Server Corrupt Permissions

Deleted user Cache folders, ran security update 2006-002 on 10.3.9 server. The next day users (students) could not open AW, IE or saved documents. Checked permissions in WGM and the owner of every user in the Users folder had reverted back to 'root', group = 'admin'. Manually changed owner back to the student with r/w privileges, copied to enclosed folders. I even went back to the Users folder on the hard drive, did a Get Info, checked privileges and clicked Apply to Enclosed Folders. Tested the user--they get as far as AW opening but their previously saved document do not open--just the AW menu bar. Tried File, Open, nothing. IE doesn't open either. If I copy their document folder, delete the user in WGM, recreate, login as the user on a client machine to create the folder, log out, put document folder back in their newly created user folder, everything works fine. I have 1048 students on this server. I've ran 'fix disk permissions' several times. I don't want to go through each users folder, pull their doc folder out, delete user, recreate user, login as them on client machine, log out and put document folder back in user folder. HELP!! Does anyone have suggestions for an easier way? Or what may have happened??

I did this exact thing. Corrupted imapd.conf. Corrected by restoring imapd.conf.default (or whatever it's called) via cp imapd.conf.default imapd.conf. Then I had no users. Was told to rebuild the cyrus database.
Although I was running the 10.3.9 server, I was directed to kb article #107996. I followed those steps, saw no errors during the rebuild process and all the users reappeared with their mail.
I note that kb article #301694 simplifies the process for Server 10.3.9 - don't know if that works or not as I did the process for Server 10.3 - 10.3.8 on the direction of an Apple Care specialist.

Similar Messages

  • Corrupted permissions... again?

    First, an open letter to Apple:
    Dear (cr)Apple,
    Your own support technicians have acknowledged that there is a serious bug in Lion Server that causes permissions to become corrupted, which has been present since the initial release of 10.7. Despite doing my due diligence in applying updates as they are released, this problem still strikes randomly and without warning, bringing our company's production to a halt every time. Per your own technicians admission there is currently no way to prevent the corruption from happening, making our server little more than a ticking timebomb with an unpredictable fuse. The best any of your staff have been able to offer is advising me to reset all permissions on all files and directories back to default, remove all shares, and delete all users and groups, then reboot and set them all back up. This is downright absurd! As if that wasn't bad enough, this "fix" only works part of the time. When it doesn't work, your staff advises me to wipe the server completely and start over from scratch. Seriously?
    I suppose you can't expect much more than that when you pay $50 for a "server". Any idea when you are going to get your proverbial poop together and fix your critically flawed product?
    And now a few questions for the Support Community:
    So has anyone managed to find a workaround for Apple's auto-corrupt "feature" they've added to file system permissions and sharing?
    What about the part where you have to add a user/group two-to-ten times before it will finally stick in the Sharing & Permissions list? And the part where when it finally does stick, you have to change the Privilege to what you want another two-to-ten times before that will finally stick?
    I'm almost afraid to ask, but is there a way to get Server.app > Storage and Finder > (shared item) > Get Info > Sharing & Permissions to agree so I don't have to set them both up separately, twice, to keep from immediately getting corrupted permissions?
    Of course, I could always use terminal, but then I could have just bought a PC and installled Ubuntu Server...
    The Backstory (for those who feel like an amusing read):
    Originally, I had our shiny new Lion Mini server set up as an Open Directory box to manage our users and groups as well as our various file shares. This resulted in the above summarized problem occurring within a matter of hours. After quite literally days spent on the phone with Apple Support, and involvement by several different technicians and supervisors, the consensus was that I needed to format the drive and re-install from scratch. At the time I didn't think much of it since it was a brand new Mini server with a brand new OS (we were one of the first to try out Lion Server), and I hadn't done too much work getting it set up yet -- so I followed the advise and all appeared well... for about a day.
    Then it happened again. More hours, technicians, supervisors and another format/reinstall went by, this time with the added advice that I forgo our plans to have an Open Directory server and just use the built-in users/groups. Since we're a smallish company, I again acquiesced and (re)built the server, from scratch, again, following Apple Support's recommendation to the letter. This appeared to work great, so over the course of several months we slowly moved terabytes of data from all of our workstations onto the server and began enjoying the extra productivity having a central repository afforded us.
    Naturally, it happened again right after I finally got everything set up (files and shares that is, I had lost interest in iCal, iChat and AB server by this time). Fortuantely I was already running backups so it was a quick (hours instead of days) matter to rebuild the server, again.
    Thank goodness they didn't screw up Time Machine.
    So here I am again with a growing list of users that can't do their jobs because they can't open their files and/or can't save their files. This has all worked fine for about a month, and nothing has changed during that time. The server just decided on it's own that it will ignore all the permissions that have been laid down.
    I suppose, in truth, real Lions do indeed act this way in the wild...

    Hi all,
    It turned out that my mail server didn't work the way it should, corrupted files, etc -- all because I tried too many options to fix what essentially wasn't even broken, I just had to fix DNS.
    Running a 10.7.2 combo update didn't fix anything for me, nor did fixing permissions through Disk Utility.
    DNS should be set the correct way both internally (local network), and if you have it, with a domain name hosting provider. If Lion Server can not find a DNS server on the same subnet as the lion server installation, it sets up the DNS service on Lion Server at install-time
    If you want to be reachable from the outside, make sure the router has all corresponding ports open (port forwarding) at your router and that your external DNS is ok (at Godaddy for example). Set one A-record (e.g. server.example.com) and CNAME records for all others (e.g. mail.example.com) if you want to point them to the same machine.
    Ports that need to be open for a service to work:
    http://help.apple.com/advancedserveradmin/mac/10.7/#apdCA9A73CE-5F0C-4BDC-93E8-2 952C362FA3E
    MAKE BACKUPS OF ALL IMPORTANT DATA BEFORE PROCEEDING
    After doing all this work, I rebooted and held the alt-key while booting physically on the server (I hooked it up on a monitor, keyboard and mouse), after which I could choose the Recovery partition to boot from. Within recovery I chose Disk Utility, selected the partition, clicked the erase tab and erased the partition.
    Then I quit Disk Utility, came back to the previous screen, there I chose to re-install Lion. Since this is a Mac Mini Server (as purchased from the Online Store) it bypasses the App Store completely and just reinstalls Lion Server.
    Because my DNS is now in a far better condition than it was before (I dare not say that it is good just yet ) installing Lion also configured all services in the correct manner.
    From being in the verge of quiting on Lion Server, to the best feeling in the world because everything now works all thanks to a solid DNS, I didn't think that DNS would be such a big issue
    Hope this helps!

  • Acrobat will not download, message Reliable source serving corrupt data

    I have purchased a subscription to Adobe Acrobat for my new Lenovo Think Pad. I white listed to the website in my anti-virus. But even then, the program will not download and I get the message Reliable source serving corrupt data.

    [discussion moved to Acrobat Installation & Update Issues forum.]

  • Project Server 2010 permissions granted through RBS are not flowing through to Project Sites.

    Hi,
    I have configured RBS as "The Project Owner is a descendant of the user via RBS"  its working fine for Projects.
    But users are  facing access denied issue when working with project sites RBS is not working for project sites.
    Can any  one Help me How can i grant permissions Automatically for project sites also as same like projects is it possible ?
    The Members in  Executives group can see all projects in organization but same like can they see all project sites ? 
    I have found one blog of
    RaymondRis he is recommending to do it manually as its not possible to grant Project site permissions Automatically.
    http://blogs.technet.com/b/raymond_ris/archive/2013/05/09/project-server-2010-permissions-granted-through-rbs-are-not-flowing-through-to-project-sites.aspx
    Thank You, Kumar KSV

    Kumar,
    The permissions to project sites is not cotrolled by the RBS, as you have discovered. It is controlled by the Security Category permisisons, and the settings if the permssions are auto synced. The permissions work like this:
    Project managers who have published a project or who have Save Project permissions on a project are added to the Project Managers (Microsoft Project Server) site group.
    Team members with assignments in a project are added to the Team members (Microsoft Project Server) site group.
    Other Project Server users who have View Project Site permission on a project are added to the Readers (Microsoft Project Server) site group. 
    As long as you use the Auto Sync of permisisons for project sites, i do not think there is any work around.
    Cheers,
    Prasanna Adavi, Project MVP
    Blog:
      Podcast:
       Twitter:   
    LinkedIn:
      

  • I am trying to download adobe standard but it keeps saying reliable source serving corrupt data and will not download

    i am trying to download adobe standard but it keeps saying reliable source serving corrupt data and will not download

    Hi John,
    Please try downloading from this direct Link (Download Acrobat products | Standard, Pro | XI, X ) and let me know if you still face the same error message:
    Regards,
    Rahul

  • I am trying to download Adobe Pro and I keep getting "Reliable Source Serving Corrupt Data" need and answer to this problem. Thank you!

    I am trying to download Adobe Pro and I keep getting "Reliable Source Serving Corrupt Data" need and answer to this problem. Thank you!

    Hi David,
    Please see this forum thread: "Not Enough Storage Space" error - Acrobat 9 Pro
    While it addresses an earlier version of Acrobat, the troubleshooting tips in it should help in your case as well.
    Best,
    Sara

  • Windows server 2012 File Server - Corrupt Images

    Hi Guys,
    I migrated a windows file share from Windows server 2003 to a new virtual windows server 2012 data centre server. All appears ok except for one issue
    There are numerous word docs on this file share (over 300 pages) with images in them (jpegs,pngs ) At times when users open these docs on the new server the images in them are corrupted. When a local copy of the same file is opened all appears fine. It has
    happened on a few docs now but I cant pin point why this is happening. Obviously it was not happening on the 2003 server. I have no dedup turned on or compression. I simply copied the files over and ntfs permissons. It does not happen all the time so I am
    thinking it is some read/write issue in 2012. The server reports no high cpu or memory at any time.
    Any thoughts on this?
    Thanks

    Hi. Did you ever get to the bottom of this problem?
    I have the exact same issue after migrating from Server 2003 to 2012. Occasionally Office files that include images stored on the share will get corrupted with the top of some of the images showing normally and then blurring or noise in the rest of them.
    I can usually restore a copy of the file made by shadow copy but the corruption of images should not be happening in the first place. Some users are losing confidence in storing their work on the share which is potentially a big issue.
    I am pretty convinced that this is an issue with Server 2012 as we have not migrated from Office (2010 Enterprise) and files stores on 2003 servers on or PC hard drives are not affected.
    Thanks!

  • Mac Mini with Mavericks Windows Server Access Permissions Problem

    We have a Mac Mini that was running Lion. This machine was joined to our Active Directory network using Beyond Trust’s PowerBroker Identity Services add-on. This had been working fine with no issues.
    We recently had to change the permissions on the file server (Windows Server 2012) for one of the directory branches. The share permissions are set to Modify and the file permissions were set so the user of the Mac had full control over the files.
    The Mac then started experiencing a problem where it could not open some of the files on the network this only affected certain files or folders. A couple of other machines we have running Mavericks who are not domain joined had no problems accessing the files when connected to the share as the same user.
    I then upgraded the Mac to Mavericks after removing the Beyond Trust software. The Mac was then re-joined to the domain using the native support of Mavericks. This fixed the problem temporarily and by this all seems fine for maybe one or two hours and then suddenly you cannot access files anymore.
    When I looked at the permissions of a file that could not be opened it was showing the same user name twice. One with r/w access and the other with Custom. If the Mac was re-booted the problem would disappear again for another hour or so but then come back.
    Thinking the issue was with the AD integration yesterday I took the Mac off the domain and just left it as standalone connecting to the server. The local user accounts that were from the AD user have been deleted so there is now only Administrator, Guest (disabled) and the user. This has not fixed the problem.
    What I have noticed is that while it is working when you look at the permissions on the file through finder they say “You have custom access”. When it is broken the permission change to showing the user multiple times, etc.
    I have reset the permissions on the server a number of times and it makes no difference.
    I am assuming that when it is working the Mac is reading the permissions correctly from the Windows Server and then it suddenly decides to use some other set of permissions it is getting locally to the files.
    Does anyone have any idea how I can fix this?
    Thanks

    Both OS X and OS X Server can host Subversion (SVN), yes.  That's been possible for many years, and there are directions posted around the 'net for downloading and installing and setting up the Subversion server.
    Distributed source code control packages (and links from there) — such as Mercurial and particularly git — would be some of the more common and newer technologies used here.  These too can be installed on OS X and OS X Server.
    On the 'net, Subversion, git, Mercurial, Bizaar and other distributed packages are all platform-independent.  The remote clients don't know and don't care about the type of server hosting the repository.
    As for your Mavericks Server question — and quoting directly from this Apple web page, and thus permitted to be posted here — "The new features in Xcode Server make it easier than ever for a Mac or iOS development team to create robust, reliable software, thanks to continuous integration, testing, and repository hosting services."    (Beyond this quote and any other officially-public Apple statements or public Apple presentations, you'll have to be a registered Apple Developer to gather more information and potentially access to the previews, as OS X Mavericks and Mavericks Server and Xcode 5 are all presently under NDA.)

  • I need some help with my server's permissions asap!

    Well, I am here for a reason as you can tell from my subject. Before I ask my question, I will explain my setup so you have a better understanding of what I am trying to do.
    I have an intel iMac running Mac OS X Server 10.5. It is setup at home with about 4-5 services running for personal use. It is an Open Directory Master machine. I have clients setup to connect to the server and everything is running well, except for USER permissions. I have TWO partitions on the machine. One is smaller than the other. The first one has my system files along with applications/local users. The second one is used for network home directories and backup storage. So there is only a bootable system on the first partition. Now for my questions:
    I know as time goes on, user permissions or even system permissions modify and need to be "repaired" using Disk Utility. I am able to successfully repair the system permissions, but I CANNOT repair network user home folders on the second partition because there is no OS installed on it. If you see what I am trying to do here, please advise the best possible solution. No, I cannot start over. I just want to repair permissions for the users located on another partition other than the one where the OS system files are located.
    Thank you.

    I didn't say it didn't check user permissions... (if by user permissions you are talking about who owns a file.) I'm saying it won't check user home directories or backup directories.
    From Apple's knowledge base article: http://support.apple.com/kb/HT1452
    {quote}Files that aren't installed as part of an Apple-originated installer package are not listed in a receipt and therefore are not checked.{quote}
    Also in that KB article it explains what Disk Utility does, which is to verify the ownerships and permissions of every file and directory installed from an Apple-originated installer package. Things like iTunes library files aren't installed from a package, they're created by iTunes.
    To see all the files and directories that might be checked by Disk Utility run:
    find /Library/Receipts -name '*.bom' -exec lsbom {} ;
    The command above doesn't distinguish between Apple originated or third party packages, so it actually shows more than what Disk Utility checks. If you limit the output to what gets checked under /Users there is only this:
    ./Users/.localized 100644 0/0 0 4294967295
    ./Users/Shared 41777 0/0
    ./Users/Shared/.localized 100644 0/0 0 4294967295
    Now, regarding the "iTunes Library file is locked..." problem, I'll assume that you've already verified the user owns 'iTunes Library' and 'iTunes Music Library.xml' in their ~/Music/iTunes folder and that they have read/write access to these files. If there is a chance that iTunes crashed before this problem occurred, it's possible there is still a lock on one or both of the files. The simplest fix is just to reboot the client machine. If you want to fix it the hard way, you can copy the two files to another directory, delete the originals (which have the locks), then copy the backup files to the ~/Music/iTunes folder.

  • ML Server - ignoring permissions?

    Hi--
    Setting up a new 10.8 Server Mac Mini, bound to my campus Active Directory.  File sharing works well -- too well, in fact.  What I'm finding is that ALL valid AD users can connect to a share, even if they don't have permissions.
    See my settings in the screenshots below.  Does anyone have any insights as to why a user, not listed here, and not in the "CDIB-pAdmins" group, can still successfully connect to the share?  Any user with valid credentials on our campus AD can connect to any share on this box, can write files, delete files, create folders, etc.  These users are NOT admins on the server, just regular plain users.
    It is authenticating users, as if I mistype the password access is denied.  If I turn off SMB access, the shares disappear from Windows PCs.  So the options here are being recognized, to some extent.
    I do not like that "Guests" is still listed in the user list, and that it is still marked "Primary Group," even though the guest access box is unchecked.  I cannot remove it from the user/group listing; the remove command is unavailable when guests is highlighted.  Is there a way to remove it altogether, or how do I set a different group as the primary?  Perhaps that is the issue here.
    Also not sure why the local administrator account is listed as "Unknown User."  Don't like that.
    Any insights are appreciated.

    make this simple..
    if you want to delete the contents of all mailboxes, then delete all the folders in your mailstore.
    Or delete individual mailboxes (named with the user's GUID).
    When new mail arrives or the user checks email, their mailbox directory will be recreated.

  • Installation Server Corruption when applying  a Patch

    I have setup a installation server with 7.10 gui.  I have twice tried to apply a patch, the first time bw350gui710_1 patch, the second time was the gui710_4 patch.  Both times my installation server was corrupted to the point where I had to delete it and rebuild it. 
    When I called NWSAPSETUPADMIN I got a System Invalid Cast Exception and it showed that I had no components on my installation server.

    Tried a few more times and it worked.

  • Sun Directory Server Windows permissions?

    Hi All,
    I am installing Sun ONE Directory Server 5.2 sp4 on Win2k3 Sp1 and was wondering what permissions it requires to run? I would like to run it as a Windows domain account that only has the permissions the service requires to run on the local machine. It would be ideal to have something that could be applied to both the "Admin Directory server" service as well other instances I might create. Specificially I would be looking for:
    # NTFS permissions
    # Registry permissions
    # Service Dependencies
    Any hints or shoves down the right path would be greatly appreciated! Our security policies are really painful.
    Thanks!
    Dave

    Thank You Marco for the response.
    Yes, I understand that it is not available, however i am expecting if someone has it on their workstation, and could send it via bigfiles etc. If I dont get any response, surely i will try to reach out to support team.
    JPrince.

  • Server Admin permissions

    Hi, where do I change the permissions to allow certain users to edit server settings (e.g. NetBoot settings) in Server Admin?

    A user needs to be in the Administrator group in order to run Server Admin and configure a server.
    Note that this can have other consequences - since it makes the user an admin they can change any element of the server, not just the components exposed by Server Admin.

  • File Server and Permissions

    We are using Coldfusion 8.  Does anyone know a way to set permissions on a file server so my users in my cfapplication are the only people that can access the files in a specific folder on that server?  I ask this because we have a lot of public folders on this server and now we want to add some private folders only accesable via people using the application.

    If what you are asking is "how can I setup a folder on my fileserver so that files that are accessed through my CF application using tags such as CFFILE are the only ones that can access it" then the answer is to 1) Change the login information for the CF services from the local system service to a domain account, being sure to give that account admin privs, 2) on the file server only give access to the domain user that you just created in step 1.
    However, if your CF app is allowing users to access that folder via mechanisms like HREF links (ie, where the account accessing the folder is not the CF account, but the user that is logged into windows running a browser), then you need to put those users in a group and give that group the sole access to the folder.
    Scenario #1 presumes that your CF app is doing some sort of authentication so that it knows who is allowed to use it to get to that folder. 
    -reed

  • New SQL Server 2014 permissions chart is available

    I have created a new permissions poster for the SQL Server 2014 Database Engine. It includes the 3 permissions that are new in SQL Server 2014. It is available at
    http://go.microsoft.com/fwlink/?LinkId=229142
    Rick Byham, Microsoft, SQL Server Books Online, Implies no warranty

    Thanks Rick.
    Regards, Vishal Srivastava

Maybe you are looking for

  • How can I use iCloud on OS 4.2.1? Manual Setup?

    I have a iPhone 3G and I use iCloud. I've problems to set up my account, there is only "mobile me" possible. Is there any possibility to set up the mail, contacts and calender manually? Thank you for your help.

  • What is the best way to increase my macbook pro's memory, it is 4g now.

    What is the best way to increase my Macbook's memory? it is a 4g now.

  • 10g RAC on Solaris 10 containers - Question on Approach

    Hi All To introduce a little, I am trying to set-up 10g RAC (active-active) on Solaris 10 Containers. For the disaster recovery site, I was considering an option for storage replication across datacenters. As I look at the situation where the databas

  • Ideapad S12 Via chipset

    Hello everyone, I just bought a used Ideapad s12 with the Via CPU. Model number is 20021 Last owner had a bios password that he couldn't recall so I'm stuck here. Already tried two solutions to reset the bios that I knew but neither worked (1st remov

  • Regarding A2A & B2B Scenario development in SAP PI /XI?

    Hello Experts, Kindly clarify my doubt regarding A2A & B2B Scenario's development in SAP PI / XI. I mean when to use & which adapter user in which scenario & specifically what difference does it make when we use one adapter in one scenario meant for