AD Users auth Ok but cannot log into AFP Home dirs

Hello,
I have a problem that has been driving me nuts for around 6 weeks so wondering if someone can help me out.
I have an XServe that has been bound to the AD Server. This server holds the users only. The Xserve is connected to an XRAID. I recently rebuilt The XRAID to be a 0+1 (2 stripes, 1 mirroring the 2nd). I then configured the Home Dirs on the Xserve to reside on the XRAID. I created a folder called UserHomes and then shared this using AFP and SMB. I removed guest access for both protocols. I Added the AD users groups to the ACLs to allow them access. I added the AD admin with full control rights to all folders, and the AD Staff group with read only access to that folder only.
I then used a script that would use dscl to extract the AD users into a list, created a folder for their Home dir, copied the Default template into their home dirs and then chowned the homedir to the AD user and chmodded the homedir 700.
Now, when i try to log in as an AD user, they get authenticated correctly as would be expected but then the login window disappears and the user is left with the desktop picture and a spinning coloured ball. This stays like this until the machine is hard-reset or the loginwindow is quit remotely.
I have tried using mobile accounts for the same user and this results in the user logging in, synching and even having full access to their home dir from the doc as well as all shares available to them, showing that kerberos seems to be working. But this started to do the same as full network accounts as well, ie the spinning ball after login.
I have rebuilt the OD server, the clients and even swapped out the switches and cabling. Same result. I have run tcpdump which seems to suggest things are as they should be (although i don't really know what i am looking for) But AFP logs show the client opening and closing forks but never logging in).
DNS is resolving successfully also.
Any ideas on what could be the problem

I synchronize the clocks of both the OS X Server and OS X Client with the AD Server. The user gets authenticated fine and the login window disappears, but thats as far as it gets the users then starts to load (open and close forks according to the AFP Log) their profile but it never turns up. No dock, no Finder. I can see that it is trying to load though because if i manage the wallpaper setting using WGM, the background of the logging in user changes. Just doesn't do anything else

Similar Messages

  • I'm trying to update my iPhone apps but cannot log into my apple account from my phone!!!

    Why can't I log into my Apple account from my iPhone?  My phone shows two apps needing updates and I've tried five times to log in.  I KNOW I'm using the right password and username, and can log in via computer just fine, but cannot log in to update my apps!  What's going on???

    It appears that the iTunes store is down right now.
    https://discussions.apple.com/thread/4163441?tstart=0
    This is the thread where the discussion got started about this.  Add your location to this thread.

  • I have followed the instructions to enable cookies several times, and have even reset Firefox to default settings, but cannot log into Google+?

    Whenever I try to log into my Google+ account, I am getting an error that says "Browser cookies functionality is turned off, please turn on".
    I have followed the suggested steps,and my cookies are set up the same way they always have been, I have even reset Firefox to its default settings twice, but nothing helps, Google Keeps saying my cookies functionality is not turned on??

    '''Try the Firefox Safe Mode''' to see how it works there. The Safe Mode is a troubleshooting mode, which disables most add-ons.''
    ''(If you're not using it, switch to the Default theme.)''
    * You can open the Firefox 4.0+ Safe Mode by holding the '''Shift''' key when you use the Firefox desktop or Start menu shortcut.
    * Or use the Help menu item and click on the '''Restart with Add-ons Disabled...''' menu item while Firefox is running.
    ''Don't select anything right now, just use "'Start in Safe Mode"''
    ''To exit the Firefox Safe Mode, just close Firefox and wait a few seconds before using the Firefox shortcut (without the Shift key) to open it again.''
    '''''If it is good in the Firefox Safe Mode''''', your problem is probably caused by an extension, and you need to figure out which one.
    Please follow the [[Troubleshooting extensions and themes]] article for that.
    ''When you figure out what's causing your issues, please let us know. It might help other users who have the same problem.''

  • Can log into msdn but cannot log into azure portal

    I log into MSDN with my personal Hotmail account, I go to my accounts page, I can see my subscription, I click on go to Windows Azure Portal and am unable to proceed. I believe there might be a problem with the .onmicrosoft.com login that is used to bridge
    MSDN, Office365 etc. Can anyone speak directly to this?

    Greetings!
    As Mustafa suggested, would request you to follow the sign-up procedure for MS Azure. Reference of benefits for MSDN subscribers:
    http://azure.microsoft.com/en-in/pricing/member-offers/msdn-benefits/
    If you face any issues while signing up with MS Azure, you may raise a
    billing support ticket via
    http://azure.microsoft.com/en-in/support/options/
    Thank you,
    Arvind
      

  • I cannot log into my Apple ID. I have successfully changed the password but I is not accepted

    I Have successfully changed the password and received verification email on my iPad mini but cannot log into to my account

    You might try loggin in thru iTunes first.  it might be a security feature.

  • I have another computer that a virus may have taken over and I cannot log into it anymore.  I just downloaded Itunes on a new computer but most of my songs are not on there.  Is there a way to still access or find those songs?  Remotely or another way?  I

    I have another computer that a virus may have taken over and I cannot log into it anymore.  I just downloaded Itunes on a new computer but most of my songs are not on there.  Is there a way to still access or find those songs?  Remotely or another way?  Or do I need to take it to a tech to get my files off of my hard drive?

    Edit > Preferences > Store check Music under Automatic Downloads.
    Open the iTunes Store from left hand column, then select Purchasedfrom the column on the right, click the Not In My Library button and select the tunes you want to download again.
    That said, you seem to be under a misapprehension as to how iTunes works, or at least how it has worked in the past. It has, until recently, been up to you take care of your purchases once they have been downloaded. You had a one-time download which you were reminded to back up. With the recent change to this policy you can at least download your store purchases again, but having a personal backup of your iTunes store purchases, stuff purchased elsewhere and files ripped from your CDs will still be preferable to gathering all the stuff together again in the event of a disaster.
    For a backup strategy see this User Tip.
    tt2

  • Hard Drive crashed.  I have a new hard drive but I cannot log into computer.How do I reset password to my i Mac?

    Hard Drive crashed.  I have a new hard drive but I cannot log into computer.How do I reset password to my iMac?

    Forgot Your Account Password
    For Snow Leopard and earlier
         Mac OS X 10.6- If you forget your administrator password
    For Lion/Mountain Lion
        Boot to the Recovery HD:
    Restart the computer and after the chime press and hold down the COMMAND and R keys until the menu screen appears. Alternatively, restart the computer and after the chime press and hold down the OPTION key until the boot manager screen appears. Select the Recovery HD and click on the downward pointing arrow button.
         When the menubar appears select Terminal from the Utilities menu.
         Enter resetpassword at the prompt and press RETURN. Follow
         instructions in the dialog window that will appear.
         Or see Reset a Mac OS X 10.7 Lion Password and
         OS X Lion- Apple ID can be used to reset your user account password.

  • I cannot log into user account with old password after using migration assistant.

    I used Migration Assistant to move only my Settings and Users from my Power PC (User name RLE 5) to my Mac Pro.  Because of what I have read in these forums I did not migrate applications or and files/folders. I will do that manually.  After migrating I tried logging in to my user account RLE 5 on my Mac Pro, but it is telling me I am using the wrong password.  I used the same password I used on my Power PC, but with no luck.  On my Mac Pro I went into System Preferences>Accounts>RLE 5 account and changed the password.  I then rebooted and tried again.  No luck.
    Can somebody help me with this problem?
    Thank you.

    What you propose would not solve the problem I am having.  I must not have been clear about it.  So I will elaborate. 
    I have a Power PC with 10.5.8.  The admin user account name is RLE 5.  I need a password to log into my root user account on my Power PC. 
    Then I bought a used Mac Pro with a clean install of 10.7.5 and no password set up yet for my admin user account.  The admin user account name is Mac Pro.  When I turn on the computer it opens to my admin user account where I have access to everything. 
    I used Migrations Assistant to move my Settings and Users from my Power PC to my Mac Pro.  That seemed to to successfully. 
    So I now have four users on my Mac Pro:  RLE 5 (the admin user from my Power PC with the password), Mac Pro (my admin user which does not require a password), and two guest user accounts.
    I turn on my Mac Pro and it opens to my Mac Pro admin user account.  I don't need to sign in.  No problem. 
    I log out of Mac Pro.  On my screen are the four user accounts.  I click on RLE 5 (which was my admin user account on my Power PC that I migrated over to my Mac Pro) to log into that account and it asks me for a password.  I type in the password I used for my Power PC.  It keeps telling me it is the incorrect password.
    I cannot log into my user account RLE 5 on the Mac Pro.  I am being told I have the incorrect password. I've gone to System Preferences>Accounts and changed the password.  It doesn't make a difference. 
    Also I cannot log into the Guest User account that migrated from the Power PC to the Mac Pro for the same reason.  I have also tried to change the password for that Guest User account also but with no luck. 
    Another interesting thing has happened.  I decided to give my Mac Pro admin user account a password by going to System Preferences>Accounts.  But when I do a test to sign into my admin user account Mac Pro it tells me it is the wrong password.  Luckily I can reboot the computer and it opens to my Mac Pro user without asking for a password.  But if I log out of Mac Pro and try to then sign back in with the password it tells me it is the incorrect password.
    Any suggestions would be appreciated.

  • When a pop up window comes up it is - search bookmarks and history window! I cannot log into my bank as login button should open new window to log in but I get the search page. I cannot see larger images as again I get the search bookmarks and history pa

    When a pop up window comes up it is - search bookmarks and history window! I cannot log into my bank as login button should open new window to log in but I get the search page. I cannot see larger images as again I get the search bookmarks and history page etc. Happens on all options that should open new page. I am so frustrated, this has been happening since Firefox updated itself 2 days ago to Mozilla/5.0 (Windows; U; Windows NT 6.0; en-GB; rv:1.9.2.8) Gecko/20100722 Firefox/3.6.8 ( .NET CLR 3.5.30729; .NET4.0C) was fine before that. using windows vista. Can you please advise what I should do? Also can you go back to previous version? Error console eg
    Warning: Error in parsing value for 'cursor'. Declaration dropped.
    Source File: https://ib.nab.com.au/nabib/styles/menu_nab.css?id=009
    Line: 116
    ib.nab.com.au : server does not support RFC 5746, see CVE-2009-3555 and Warning: Selector expected. Ruleset ignored due to bad selector.
    Source File: https://ib.nab.com.au/nabib/styles/nabstyle.css?id=014
    Line: 837
    == This happened ==
    Every time Firefox opened
    == 2 days ago after update.

    Do you have that problem when running in the Firefox SafeMode?
    [http://support.mozilla.com/en-US/kb/Safe+Mode]
    ''Don't select anything right now, just use "Continue in SafeMode."''
    If not, see this:
    [http://support.mozilla.com/en-US/kb/troubleshooting+extensions+and+themes]

  • Windows cannot load the user's profile but has logged you on with the default profile for the system.

    My Windows 7  crashed a couple days ago after a windows update, I got this message.
    Windows cannot find the local profile and is logging you on with a temporary profile. Changes you make to this profile will be lost when you log off.
    I restarted the machine and got this message
    Windows was unable to load the registry. This problem is often caused by insufficient memory or insufficient security rights.
    DETAIL - The process cannot access the file because it is being used by another process. for C:\Users\TEMP\ntuser.dat
    I checked the event Log I found these .
    Windows cannot load the user's profile but has logged you on with the default profile for the system.
    DETAIL - Only part of a ReadProcessMemory or WriteProcessMemory request was completed.
    Windows has backed up this user profile. Windows will automatically try to use the backup profile the next time this user logs on.
    Windows cannot load the locally stored profile. Possible causes of this error include insufficient security rights or a corrupt local profile.
     DETAIL - The process cannot access the file because it is being used by another process.
    This is the first error in the event viewer after a successful logon
    The description for Event ID 34 from source ccSvcHst cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.
     If the event originated on another computer, the display information had to be saved with the event.
    ccSetMgr
    Windows cannot load the user's profile but has logged you on with the default profile for the system.
    DETAIL - Access is denied.
    Looking at the Logs all I can tell is that after the Desktop Window Manager started if caused this error.
    The winlogon notification subscriber <SessionEnv> was unavailable to handle a notification event.
    then this one
    The Desktop Window Manager has exited with code (0x40010004)
    Then this before it shutdown.
    The User Profile Service has stopped.
    I started up the PC and the first message I got was
    How can I get access to my user profile? do I need to createa new Administrator account? Please help
    The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds. The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog.

    hi do the following
    1. In Search programs and files (Windows 7) area, type in regedit, and press Enter.
    2. If prompted click yes,
    3.  expand the following HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList
    4. click the sid that related to your admin profile (if you not sure, click each sid and in turn look to the right hand side of registry editor it will show who that sid is related to one of the registry files should hae in description localhost\admin or
    something similair)
    5. right click the sid and press delete.
    6. restart your machine and log back on with the admin account, this will then rebuild the admin profile... dont worry when it loads and none of your personal settings are saved or files or folders... go to c:\users
    in here you will see two folders for the admin account, one will be just admin and the other most likely admin.localhost
    i cant remember which one is which but just check both, one will still have all your files and folders in it.
    i suggest making a backup of your data before doing this incase something does go wrong, but ive had this happen many times in a domain enviorment and has worked for me everytime.

  • HT204053 I cannot log into iCloud using my Apple username and password.  I keep getting an error message that states "CANNOT SIGN UP - The Apple ID is valid but is not an iCloud account."  How do I fix this?

    I cannot log into iCloud using my Apple username and password.  I keep getting an error message that states "CANNOT SIGN UP - The Apple ID is valid but is not an iCloud account."  How do I fix this?

    You are getting this message because you are attempting to create an iCloud account on a PC.  You can only create iCloud account on an iOS device (iPhone, iPad or iPod Touch) running iOS 5 or higher, or on a Mac running OS X Lion (10.7.2) or higher.  After creating your account on one of these devices you will then be able to sign into the account on your PC.

  • I am a cloud member but i cannot log into business catalyst could you help me

    I am a cloud member but i cannot log into business catalyst could you help me
    I can log ino all my other adobe program but business catalyst will not let me connect

    I will suggest you to reach Business catalyst support team via chat or submit a case using the link (http://www.businesscatalyst.com/contact) and support team will assist you further.
    Regards

  • Cannot log into facetime on MacBook Pro .keep getting message check network connection. I am able to log on to my apple id but not face time

    cannot log into facetime on MacBook Pro keep getting message check you network connection. I am able to log on my apple id but not on face time help

    Just figured it out!  Here it goes:
    Click on where you find the little AirPort sign (on iMac it is on top right hand side next to the date and time).
    Go down to: Open Network Preferences
    Click on: Advanced
    Then on DNS
    Then click on the + sign and put the following numbers: 8.8.8.8
    click again on the + sign and put: 8.8.4.4
    Worked for me!  Hope it helps :-)

  • Cannot log into or reset WRT54G but everything else is fine?!?

    I have a WRT54G v8 that works fine, routs the internet connection just fine to my System, my uncles System, and then also to a Vonage modem for phone service. But from my system I cannot log into 192.168.1.1. The page never comes up, it always times out. Same on the other system. Both are hard wired, no wireless. I really need to be able to access ports and forwarding and what not. BUT, I also cannot seem to reset the thing. I had DMZ enabled for the vonage, and if I'm not mistaken, that is NOT the default setting yet every time I hold reset for 30+ seconds, the DMZ light comes back on. Can anyone offer help on this? Thanks.
    (Mod Note: Edited due to non-compliance of forum guidelines.)
    Message Edited by giantherockstar on 03-25-2008 02:21 PM

    Turn off the modem while you're trying to access the router. And turn off any software firewalls or browser proxy settings.
    The box said windows xp or better... So I installed Linux!

  • My new iphone4 won't connect to the app store or iTunes. It says cannot connect to iTunes. But I logged into the game center and onto this web sit. I tryed some fixes on here but nothing has worked. Suggestions?

    My new iphone4 won't connect to the app store or iTunes. It says cannot connect to iTunes. But I logged into the game center and onto this web sit. I tryed some fixes on here but nothing has worked. Suggestions?

    HI again Andy,
    The last message had some more stuff in between the "Hello" and "Regards" - I have no idea what happened to it. But nevermind...
    I started up the Mini with the modem in one usb, and the speaker system in the other (M-Audio Sonica Theatre) - I have one of the Minis that have only 2 USB (and one FireWire) ports. The firewire has the external drive connected to it.
    So far, as I"m typing this, I AM able to be online and use iTunes simultaneously. (both SaFari and iTunes respond slower than if I was using only one or the other, but they ARE actually working - in addition to having Adium running) - So I think what you suggested ( that is was something wonky was the USB hub) was a correct, yet assessment.
    Would you have any reccommendations for USB hubs? The only thing that I have connected to the hub under normal circumstances that would be constantly "running" would be the RadioShark (even though the Radio soft isn't playing - the blue light on the RadioShark is always on) - and the speakers naturally. Everything else is of the occassional variety - iPod Sync Cable, Dual Layer External DVD Burner, and a "pass thu" to the USB ports on my Hard Drive Enclosure (which had been unplugged before the problem was noticed). The hub I current use is the
    Kensington DomeHub USB 2.0 (7 ports) Weighted Hub 33118 http://www.amazon.com/Kensington-DomeHub-ports-Weighted-33118/dp/B0002FHENE/ref= sr16/002-4275642-8664817?ie=UTF8&s=electronics&qid=1187848108&sr=8-6
    which (I thought) worked better than the "throwaway" ones I had used previously.
    You think it is the hub or something connected to it that may be causing the problem?
    Regardless, thank you for your time, and I hope to hear from you soon.

Maybe you are looking for