AD mobile account stores Mac user profile in Windows home directory

My Windows Server 2003 AD accounts have roaming profiles and user home directories stored in different locations on Windows Server 2003 servers. How do I prevent my MacOS tiger clients from copying the local user profiles for AD mobile accounts to the respective remote home directories?
This unwanted behavior is quite similar to using Windows 9x clients in similar AD environment.

I do need to automount the network home directory but do not desire to have it sync with the local home directoy. I disabled the "create mobile account at login" option and enabled "force local home directory on startup disk" and "use unc path from active directory ..." and these appear to have resolved the problem. Unfortunately the network home directory no longer automounts, nor do network accounts show up at the logon prompt (strangely enough, they can be configured to autologin.)

Similar Messages

  • Lion Server Mobile accounts for Macbook users

    Hi All,
    I'm looking for a 'Best Practice' when setting up mobile accounts for Macbook users who just want to be able to use their machine away from the office.
    We DON'T want to sync anything, just create a mobile account on the Mac (a bit like a domain profile on a PC).
    I understand that this can be configured through workgroup manager in preferences for either the machine or the user account.
    What should the mobility settings be set to? Obviously the Account creation box is ticked but what should the 'Create home using' settings be ?
    Thanks Trappers

    I figured out how to delete the user from the command line.
    I used Remote Desktop to send as Root: dscl . -delete /Users/userID
    Where userID is the user's shortname.
    You could also log in locally and use the terminal to send:
    sudo dscl . -delete /Users/userID

  • How to add Hotmail account to ProfileManager User Profile?

    Hi everyone!
    I was wondering how I can add a Hotmail account to a user profile in Profile Manager? I only see POP/IMAP settings, but haven't been able to find those settings for Hotmail by googling.
    Thanks!
    ~Mike

    You can configure Hotmail to work on the iPhone. It works very well, I have had no problems with it. After upgrading to a Hotmail plus account, follow the instructions-
    http://mailcall.spaces.live.com/Blog/cns!CC9301187A51FE33!44348.entry
    Account: On
    Account Information:
    Name: John Smith (note: enter your own name)
    Address: [email protected] (note: enter your full Hotmail email address)
    Description: Hotmail
    Incoming Mail Server:
    Host Name: pop3.live.com
    User Name: [email protected] (note: enter your full Hotmail email address)
    Password: password (note: enter your Hotmail password)
    Outgoing Mail Server (SMTP):
    Host Name: smtp.live.com
    User Name: [email protected] (note: enter your full Hotmail email address)
    Password: password (note: enter your Hotmail password)
    Advanced Settings:
    Incoming Uses SSL: On
    Outgoing Uses SSL: On
    Authentication: Password
    Delete from Server: When removed from Inbox (or your preferred option)
    I paid the $20 for the Hotmail plus account and was receiving mail on my Iphone within a half hour. It Rocks.

  • The CSCup62113 bug also removes Personal Conferencing accounts from disabled users' profiles

    It has been confirmed that the CSCup62113 bug that has been confirmed in MR4 (CWMS version 2.0.1.407B) also removes Personal Conferencing accounts from disabled users' profiles, if CWMS has been configured for synchronization with CUCM/LDAP. There is no way to restore the Personal Conferencing accounts; all affected end users need to be notified that their Personal Conferencing accounts and PINs need to be manually re-created (with host/participant codes being re-generated).

    It has been confirmed that the CSCup62113 bug that has been confirmed in MR4 (CWMS version 2.0.1.407B) also removes Personal Conferencing accounts from disabled users' profiles, if CWMS has been configured for synchronization with CUCM/LDAP. There is no way to restore the Personal Conferencing accounts; all affected end users need to be notified that their Personal Conferencing accounts and PINs need to be manually re-created (with host/participant codes being re-generated).

  • User profile in WINDOWS 8.1, 8, 7 redirected to C:\Windows\System32\config\systemprofile

    Hi all,
    When you are logging into Windows 8.1,8 or 7 using your user credential you will finaly end up as system service account or at least your profile will be recognized this way. This mean that system is now looking in C:\Windows\System32\config\systemprofile
    for DESKTOP, DOCUMENTS etc.
    I faced this probem few times on diffrent PCs. This problem has been out there for some time and peapole are tring to copy their profile to C:\Windows\System32\config\systemprofile. Sound no good for me.
    Another way is to create new profile but it takes a lot of time and the problem sometimes comes back
    http://windows.microsoft.com/en-us/windows/fix-corrupted-user-profile#1TC=windows-7
    I manage to find out that the issue has something to do with the change of the registry at
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-X-X-XX-XXXXXXXXXXXX
    S-X-X-XX-XXXXXXXXX is your user SID. The to REG_DWORD that are changed
    FLAGS
    REFCOUNT
    After you change values to FLAGS 1 and REFCOUNT 0 you have to log out. Now log in and you profile should be back again.
    I hope that this will save you some time and that microsoft will finaly fix whatever cause this issue.

    Hi Grzegorz,
    Thanks for sharing and it will be very useful for the people who will come across the similar symptom in the future .
    Best regards
    Please remember to mark the replies as answers if they help, and unmark the answers if they provide no help. If you have feedback for TechNet Support, contact [email protected]

  • Ex-Mac user now on Windows 7: How to acccess my iTunes library (now on my PC) with my Windows iTunes?

    I'm an ex-Mac user now on Windows 7: How to acccess my former Mac iTunes library (now on my PC) with my Windows iTunes? I get error message: The file "iTunes Library.itl" cannot be read because it was created by a newer version of iTunes.
    Can anyone help me please?
    Roy

    So, what I have done so far to try to achieve this is:
    I have my Windows PC with it's NTFS formatted external HDD containing the music etc.
    I have my Mac with a new external HDD formatted in Mac OS Extended (Journaled).
    On the Windows PC:
    * I opened up iTunes.
    * Went into Preferences, and then under the Advanced tab I checked both 'Keep iTunes Media Folder Organised' and 'Copy files to iTunes Media folder when adding to library', so that all the files would be in the main iTunes Media folder when I copy it over.
    * Then File, Library, Organise Library and ticked the 'Consolidate Files' so that it moves any files that aren't in the right folder.
    Next I copied the files over. So I copied the updated media folder from the NTFS (Windows) external HDD onto the Mac external HDD.
    And I copied the files from in My Documents/Music/iTunes on the Windows PC to User/Music on the Mac.
    But this doesn't seem to have done it.

  • How Mac User Can Learn Windows XP????

    I am and will continue to be a big Apple fan (see my history below) -- but since I can't sit around any longer waiting for a Mac netbook, I broke down and bought the new 10.1-inch Acer Aspire that comes with Windows XP Home Edition. Since I've never used anything but a Mac before,am hoping someone can suggest a resource that can, in very simple terms, help me learn how to do the basics in Windows Xp Home, like create documents, etc. Ideally, if there's a document called something like, "A Mac Users Guide to Window XP Home Edition," that'd be fabulous.
    Thanks in advance.

    lots and lots of ungodly amounts of patience and tolerance. (sorry, just my experiences)
    And I'm not trying to be funny, but I'm thinking you aren't going to like the transition. I've been on macs for about 8 years solid but have a good windows knowledge. Now when I go back to a Windows PC (by necessity) it is nothing short of frustrating. You might discover, things don't work as the should or as logic would have them..... something to not take for granted using Macs.
    I no longer have the patience to touch Windows. Sorry, but I'm just telling it like it is. Windows just feels like it's put together by high-schoolers (displaced from the 80's).

  • Redirection of deployment.user.cachedir to Windows Temp-directory

    Hello,
    I have a problem with the configuration of the cache-directory on a Windows Terminal-Server.
    On a Windows Terminal-Server each registered user gets a Windows temp-directory, which can be seen in variable %TEMP% and looks like "D:\temp\1" or "D:\temp\2" and so on.
    Now I want to redirect the cache-directory, set in file deployment.properties, property deployment.user.cachedir, to that temp-directory for the user.
    How can I configure JavaWS correctly ?
    Please help !! Thanks in advance
    Achim

    Thank you for your response. I am using jdk1.3.1 and
    jre 1.4.2_01 which I just downloaded the other day.
    The properties did indeed list out in the console, but
    I will check a previous jre to see if they are there
    as well. I agree that if the property is available,
    then it should return the value.5. What system properties can be read by applets, and how?
    In both Java-enabled browsers and the appletviewer, applets can read these system properties by invoking System.getProperty(String key):
    key               meaning
    java.version          Java version number
    java.vendor          Java vendor-specific string
    java.vendor.url     Java vendor URL
    java.class.version     Java class version number
    os.name          Operating system name
    os.arch          Operating system architecture
    os.version     Operating system version
    file.separator     File separator (eg, "/")
    path.separator     Path separator (eg, ":")
    line.separator     Line separator
    Applets are prevented from reading these system properties:
    key               meaning
    java.home          Java installation directory
    java.class.path     Java classpath
    user.name          User account name
    user.home          User home directory
    user.dir          User's current working directory
    To read a system property from within an applet, simply invoke System.getProperty(key) on the property you are interested in.
    (http://java.sun.com/sfaq/#hideProps)
    Br - Johan

  • Mobile Accounts:  Computer or User?

    I finally figured out how to set up my DNS/LDAPv3/server on my LAN.  But, playing around with setting up Users and Computers is still confusing.  I had unsucessfully set up a mobile account (multiple times), with a user directory (by accident), but was not sucessful in getting them to sync.  My scenario is this:  I have (1) MBP that I have an existing user account (my account) which also  happens to be the administrator account.  My goal is the get my home folder in my MBP to sync to the server I set up.  Eventually, I'll set up another laptop so I can use either and use the same home folder, or just log in as that user (myself) on the server directly.  So, a few specific questions so I can get started...
    1.  Using Workgroup Manager, should I be setting up a new "User" or new "Computer" on the server?
    2.  When I set up either for experimental purposes, Under Accounts>Basic, there is no Home Directory.  When I click the Home, then click + to add one, I don't know what I'm supposed to type (i.e.,  Mac OS X Server/Share Point URL, Path to Home Folder, or Full Path).  Ideally, it would be nice to have my network home folder of my PHD on my external RAID, but anywhere would work for the time being. 
    3.  Can this be done for an existing user on my MBP, or is this only for new users or computers?  Should I reinstall the SL client on my MBP and dedicate the Administrator as just that, then create a new user on the server and clone my existing home folder to it (with my applications and preferences on my MBP or course)?
    I've read through the user manual a few times.  But, I just don't have enough server knowledge to pick up on whatever Apple is explaining.

    From what I have done and learned with Mobile Users, these are few tips;
    First, you need to have a Mobile User in your server so you an sync it. You can not sync the user from your MBP just like that, the User needs to exist on the server to be able to get synced.
    Second, you need to create Sharepoints with AFP or witch ever service you wish to use, (I recommend AFP for mac user homes), Add AFP service in Server Admin and open it, create folder somewhere what you wish to use for sharing the data ( in the raid drive perhaps), and then click Share, and select use for User home folders. When you do this, this sharepoint will show in Workgroup Manager in User / Home tab, and you can just click it from there, and hit Create Home Now, then remember to Save.
    I believe there is a way you can transfer your user and home folder&files to your server, I remember reading about that somewhere in here, but I dont have spesific instructions for you I'm afraid. You need to search this forum.
    Hope this gives you some direction

  • Setting Up Mobile Accounts to For Users Who Already Exist

    Hi there,
    I work for a company with about 10 Macs, all laptops, all are on 10.5.
    They have never had a server and have asked me to set one up for them. I am in the process of setting up a server here with a new copy of OS X Server 10.5. Here's my question.
    The people here are half-wits and any kind of backup which involves them, you know, actually doing anything is never going to happen.
    My thought was to set up Mobile accounts for all of them s this provides seamless syncing and no issues if they leave their office, The problem seems to be to set up a mobile account seems to require a new user where all the people here already have home folders/stuff on their personal laptops (we don't share computers). The user I create on Open Directory seem, even if i give them the same details of the current user on their laptops, to be different. Is there a way to make this work or should I just make them all Time Machine backups to the server instead?
    Thanks,
    Ben

    So create a csv file with the following headers and data
    UserID, Alias
    UserID should be the user SamAccountName, and the Alias is the Mailbox Alias that you want to set. Supposing that the csv file is named users.csv and located under C:\ , open the Exchange Management Console and run:
    $users = Import-Csv c:\users.csv
    Foreach ($user in $users) {
    Enable-Mailbox -Identity $user.UserID -alias $user.alias -database 'DB1'
    Set-Mailbox -Identity $user.UserID -IssueWarningQuota 1.5gb -ProhibitSendQuota 2gb 
    Please Mark As Answer if this helps
    ammarhasayen

  • Account unknown in user profiles

    On all our domain controllers (server 2003 R2 and 2008) we have found an "account unknown" listed under My computer-properties advance-user profiles-settings. My
    concern is that the Account Unknown profiles shows under all our Domain Controllers in the aforementioned place and it shows that that particular profiles is still being access. By being access I mean that the “Modified” date shows that it was
    modified just a few days ago, and it changes a couple of days. Also, the option to delete the account is grayed out and I can not find any orphaned profiles under documents and Settings.
    What I need to know is if that profile is being use by some system account, or have the servers been compromised.
    Any assistance or clarification of this issue will be greatly appreciated. Thank you.

    Hi,
    A possible cause of the “Account Unknown” profile is that the domain account that the profile is mapped to was deleted but the profile was
    not able to be deleted because some applications or services have open handle on the file. That’s also one of the reasons that the option to delete the account is grayed out.
    I suggest that you have a look at the subkeys under HKEY_USERS key and check if there is any user has been deleted. The HKEY_USERS key lists all profiles
    that are currently loaded on the computer. The PsGetSid utility (http://technet.microsoft.com/en-us/sysinternals/bb897417.aspx) can help you translate SIDs to their display name.
    Meanwhile, you’d better perform a full virus scan to ensure that the computer is not infected by virus.
    This posting is provided "AS IS" with no warranties, and confers no rights. Please remember to click “Mark as Answer” on the post that helps you, and to click “Unmark as Answer” if a marked post does not actually answer your question. This can
    be beneficial to other community members reading the thread.

  • How To Properly Delete a User Profile on Windows 7 in a Domain environment

    I have not been able to find an answer that matches the issue I'm facing. I had recently setup a laptop for a user and soon after, he was experiencing issues that I thought might be profile related. So, I did what always worked for me on prior versions of
    Windows without any fuss or side affects.
    Logged in under the local Administrator account, I went into: System Properties>User Profiles>Settings and removed the user profile from their. When I do that, I get an error message:
    Profile Error
    Profile not deleted completely. Error - A required privilege is not held by the client
    Ok, no problem I think. I just need to delete the user's profile directory under the users folder right? So I do this and figure when I try to log in again as the user that a new profile will be created. However, this is not what happens exactly. I login
    with the user credentials and it logs in successfully. However, I get a pop saying:
    You have been logged on with a temporary profile
    You cannot access your files and files created in this profile will be deleted when you log off. To fix this, log off and try logging on later.
    Please see the event log for details or contact your system administrator
    So my question is; why did the profile not delete completely after both deleting the user profile under System Properties and after deleting the actual profile directory? What did I miss and what is the proper method of deleting a user profile completely
    without running into these other issues?

    Hi Womprat,
    According to your description, I understand that you want to delete user profile but display an error in Windows 7.
    Please use other user (with administrator privileges) login this computer, then open Properties for Computer--->Advanced system setting--->Settings for User Profiles, then select the profile you want to delete.
    More details about Delete a user account, please refer to:
    http://windows.microsoft.com/en-us/windows7/delete-a-user-account
    Additional, please contact Windows 7 IT Pro Team so that you can get more professional suggestions. For your convenience:
    https://social.technet.microsoft.com/Forums/en-US/home?category=w7itpro&filter=alltypes&sort=lastpostdesc
    Best regards,
    Allen Wang

  • Can connect to Mac users, but not Windows.

    I have been able to connect to other Mac users signed onto AIM accounts in iChat, but not Windows users signed onto AIM. Help with this problem would be greatly appreciated, as I am at college and away from all my loved ones, and desperately want to chat with them.

    Hi,
    I am sorry that only 2 hours and 15 minutes left you disappointed.
    Some things to consider.
    1) they have to be on XP.
    2) they have to be using AIM 5.9 or Trillian Pro
    3) if they use AIM 5.9 they have to Tune the Camera and Mic to the Application. See message 570 in that link (Access to these preferences in in the My AIM menu now or use F3)
    4) Whichever App they use it has to be Enabled through the XP firewall. IF at Service Pack 2 they need these instructions an earlier version of XP has to have the Firewall disabled.
    Longer version http://www.ralphjohnsuk.dsl.pipex.com/page12.html
    Detailed version
    http://www.mvldesign.com/videoconferencetutorial.html
    The ports that iChat uses have to be opened at your end although it sounds like they are.
    The port for AIM/Trillian have to opened in their modem at their end.
    All this info has been posted before resulting in an FAQ
    http://discussions.apple.com/thread.jspa?threadID=406147 linked in the yellow bar item at the top of this Topic area.
    8:57 PM Thursday; February 15, 2007

  • Advice for Creating a Custom Default User Profile in Windows Enterprise 8/8.1 Preview

    Just after some advice on the Best way to create a custom Default User Profile for our Windows 8 Enterprise Image.
    We are also looking at the Windows 8.1 Enterprise preview so advice on creating a Default User profile for this would also be appreciated.
    My Requirements are listed below
    -Pinned Web sites that open in Windows 8 App style IE
    -Default Windows 8 pre-installed Apps
    -The Microsoft Lync Windows 8 Client from the App Store *I understand this would be tricky, not fussed though if it cant be done*
    -Customised Start screen layout
    I have tried the Copy Profile tag in the Unattend.xml and syspreped the machine, this did not work.
    I have tried using the new "Start Screen Layout" Group Policy object, this also did not work
    The Closest I can get was to setup a user profile, Backup the Default User profile, Rename the User I worked on to "Default", Clean up the temp folder, then navigate through the user registry and replaced any absolute profile paths with the %USERPROFILE%
    variable. This worked in terms of setting the layout of the start screen, but the Lync App was not present, and Windows 8 apps, eg Video, Music and IE, would crash when attempting to open them.
    I know I am doing something wrong, so any advice would be much appreciated.
    Thankyou

    Still not getting the results that I want, to recap I am trying to do the following.
    Create a Windows 8.1 Enterprise Standard Operating Environment (SOE) Image for laptop devices at our school. These devices will be in the Students hands 24/7 and will be joined to our Windows 2012 based domain.
    I am trying to create a custom Default user profile for the image so that when a student logs onto the Laptop for the first time they get a start screen that we have created.
    The start screen consists of Pre-installed Modern Apps, a modern app created by our Software team that is side-loaded, Office 2013 Applications, and most importantly Tiles for Websites such as our Learning Management System and Intranet Portal.
    Now to the issues
    I boot the target system into Audit mode, and setup the start screen accordingly. For the Websites,
    I open the websites in the IE11 Modern app and use the built in control to pin the site to the start screen. Everything goes and looks as expected.
    I then run sysprep with a custom unattend.xml with copyprofile inside it. Again everything runs as expected.
    Now when I create a new user on the system the custom start screen appears however the websites that were pinned are no longer on the start screen. BUT when I manually open the Modern IE11 app, navigate to the website and pin the site, The Tile now appears
    on the start screen in the location I put it.
    <Rant>
    Now this puts us in a situation where we can no longer deliver a Standard Operating environment for not just our managed laptops but also our labs where a student just wants to logon and get to work.
    Why as a Desktop and System Administrator, who manages a fleet of 300+ Desktops and 1000+ Laptops do I not have the full power to customise things they way I want them.
    Yes I am aware of the new Group Policy setting for deploying Start screen configurations, Doesn't work when Web sites are pinned
    Yes I am aware of AppsFolderLayout.bin, Doesn't work for Pinned sites.
    Do the links above to Microsoft TechNet articles explaining how to customise Start Screens help, No they do not.
    Finally I am aware that I can just create a shortcut to the websites and pin those, the issue is that this does not utilise the new Live Tile code that was introduced with IE11 and we plan to use these Tiles as another notification system for our staff and
    students.
    I will continue to work on this, if I manage to find a solution myself I will post the process, however if anyone in the community, or from Microsoft for that matter, has a proven solution to pinning websites to the default user profiles start screen, please
    post it.
    </Rant>
    Thankyou

  • Easy Way to allow Mac Users to Access Windows Shares

    I have a client that runs a mix of macs and pcs.
    They have a seperate domain for macs running on an xserve with 10.2.8 server and a domain of windows 2000 servers for the pcs
    My question is, is there an easy way to allow the mac users to be authenticated to shares that are available on the windows 2000 network without having to be prompted with a different login? ie access the shares with there current mac login username and password?

    Hi
    If your mac clients can 'see' the windows domain then simply add a single generic user account on the Windows Server. Most people create a single account called macuser with the same password.
    Mac clients should now be able to command+K from the Go Menu and key in smb://windowserver'sIPaddress. They should be prompted for the user name and password.
    If you want to use the same account details as available on the Mac Server then you could export users from the local Node and import them into the Windows Server. Passwords are not retained using this method but if you don't have a lot of mac users you can simply re-key their passwords or use a password common to all and use a password policy forcing users to change them at next log-in. You could consider using something like Passenger which does retain passwords. Depending on which Windows Server it is I'm not sure how successful it would be reading imported account from such an old server version?
    Again if you don't have a lot of mac users simply key them all in.
    Tony

Maybe you are looking for

  • SRM User defined fields -- can not input values

    Hi, We are using SRM 4.0. I have created a user defined field at the PO header according to note 672960. But I can not input anything to this field. This is what I did: 1. in both structures INCL_EEW_PD_HEADER_CSF and INCL_EEW_PD_HEADER_CSF_PO add th

  • Even and odd page break

    Hi ALL I have a requirement in my report there are two things location with customer details and meter reading with costing Now my req is that location details should come on odd pages and starting from page 3. For meter details should come on even p

  • PI Mapping Problem

    Hi, Plzzz help me on this. IN EDI data DTM Segment has 2 fields Date Qualifier, and Date two fields. DTM1020100202 DTM2020100102 i need date in output when Qualifier is 10. If qualifier is 20 ignore that date in output. i need to check this thing and

  • Why SLD for Adaptive RFC Model?

    Hi, Is it necessary to configure the settings in SLD in order to run an adaptive RFC Model or does one have alternatives? Because, while defining an adaptive RFC Model in NW-Dev-Studio, one does explicitly enter the SAP Log on information. Regards Me

  • How to switch to the Graphic HD in WIN7?

    How to switch to the Graphic HD in WIN7?