Automatic service setup with network accounts

Hi all,
I'm having terrible trouble getting automatic service (e.g. iCal, iChat, etc.) setup to work with network accounts, either with network home directories or local home directories, and I can't work out what I'm doing wrong.
When I log in as a local user and join the Network Account Server, all services get set up as expected, without problems. When I log in with a network account however, whether the account has a server-hosted home directory or a local home directory, services aren't automatically set up, I don't get the auto configuration wizard/dialogue, and attempting to join the network account server again fails. Surely there's a way for network accounts to have services automatically set up on initial login? Any ideas?

Hi all,
I'm having terrible trouble getting automatic service (e.g. iCal, iChat, etc.) setup to work with network accounts, either with network home directories or local home directories, and I can't work out what I'm doing wrong.
When I log in as a local user and join the Network Account Server, all services get set up as expected, without problems. When I log in with a network account however, whether the account has a server-hosted home directory or a local home directory, services aren't automatically set up, I don't get the auto configuration wizard/dialogue, and attempting to join the network account server again fails. Surely there's a way for network accounts to have services automatically set up on initial login? Any ideas?

Similar Messages

  • I can't print to a kyocera c3232E with network accounting

    I'm working with a Krocera KM-C3232E printer with network accounting. I added the printer using it's IP addr. It indicated the correct driver name, a valid unit and IP. After continuing an problem is indicated and asks if I still want to create a que. I check OK and the printer is added. When the print dialgue box comes up there is no place to input an acct ID, in fact there are nearly no choices at all. The job goes to que but never connects to the printer. Help.

    assuming all the connections are good (wires or wifi), make sure that you have updated the printer software to include the printer model
    Then install, ensure that the printer is in the list of printers in System Preferences.
    Good luck!

  • Azure AAD Mobile Service Authentication with corporate accounts fails.

    I have been having on-going issue with Authenticating against a Windows Azure mobile service with corporate accounts.
    Here is the complete environment.
    Initially we set up with Office 365 / CRM Online / and Azure for our corporate infrastructure. We have set up single sign on. Everything works well. There is ADFS set up and running to allow us to Authenticate with {username}@{companyDomainName} and everything
    works, including single signon. 
    Along comes Azure Active directory. We have an Automatically created Azure active directory in the corporate azure account. The domain is the default created {accountname}.onmicrosoft.com domain structure. This is set as the Default directory.
    We had a consultant come in, who was organized through Microsoft, to do some work. After everything was set and done we ended up with another active directory created in Azure that is named with the corporate domain name. This second domain has had all of
    the corporate accounts synched to it. 
    I have now created an Azure Mobile Service. The service is a basic service, I haven't updated any of the code yet, except to publish the service. I have followed all of the configuration instructions for setting up the authentication. 
    If configure the Authentication to point at the first active directory, I am able to Authenticate against the service using the credentials for a user that has been created in that domain. The Authentication works correctly, and goes through.
    However if I switch the configuration to use the second Active Directory, the one with the corporate accounts synched to it, the authentication fails. I am able to enter my corporate email address into the web page that is presented. Then the web control
    started to call into the ADFS in order to authenticate the corporate user name and password. At this point the authentication fails with a message about the service not being available.
    The login code is the standard:
    user = await App.MobileService.LoginAsync(MobileServiceAuthenticationProvider.WindowsAzureActiveDirectory);
    The project is a Universal Application as the service needs to be available from both a phone and a desktop. The project was started from the starter project downloaded form the Mobile Service site.
    # Update
    I've just switched the mobile service configuration back to use the AAD with the corporate accounts synchronized. The login through the application fails. However if I log in through IE by browsing to : https://{ServiceName}.azure-mobile.net/login/aad
    The authentication goes through correctly. 

    A few questions on the details:
    What client platform are you using for login. In particular, is this a Windows Store application?
    What do you mean exactly by "authentication fails?" Does an error get thrown, or does the UI just hang?
    Is this being done from a domain-joined machine and/or on a machine connected to a corporate network?
    We have seen an issue where some configurations of ADFS will not play nicely with Windows Store apps since the Web Authentication Broker (WAB) is based on the IE browser, and ADFS will attempt to do SSO in the special IE way instead of presenting a form,
    etc. Unless the WAB is configured to handle this scenario, you will get a non-responsive UI.
    Any details you can provide would be helpful.

  • Can't Login With Network Account After Upgrade To Yosemite Server 4

    I've been putting off this troubleshooting for a while now, and after trying everything I could find, decided to post.
    - After upgrading my server to Yosemite with Server 4, and my MacBook to Yosemite, I can no longer login with any network accounts.
    - I was on clean installs of Mavericks before the upgrade.
    - I'm using SSL for the OD, with a GoDaddy cert, the same one that was working on Mavericks.
    - I've tried removing the laptop's binding using the Users and Groups preferences dialog, which does not remove the laptop's entry from Open Directory, so I manually deleted the record on the server.
    - I then choose to Join again, and it looks as though everything goes through, but I still cannot login with a network account.  Also, when rejoining, it does not create a binding on the server.
    - If I use the Directory Utility->Services->LDAPv3, and add it that way, entering the FQDN and checking Encrypt..., Use for auth and Use for contacts, it asks me for the directory admin username and password, and does in fact create the binding on the server, but I still cannot login.  What's strange about that method, is that it forces the use of the IP address of the server, rather than the FQDN, like I entered it, which would of course have problems, because the certificate's common name is the server's FQDN.  It does not allow me to change from using the IP address, graying out that field.
    - I've also tried destroying the OD and restoring from archive to no avail.
    It looks like many users have hit dead ends with this, with some having success by completely formatting and setting up a new iteration of the server, but I will not be doing that.  However, I'll be happy to try any other suggestions.
    Thanks for your time,
       -- Mike

         Okay, I've finally resolved the issue, thanks to the Apple Enterprise tech support team.  I'm thinking they wouldn't mind if I share this information, but I can't guarantee that this will work on your system or, worse yet, degrade your system further.  However, that's fairly unlikely, just make sure you have plenty of backups before you begin any troubleshooting session.
         So I was told to perform the following instructions, which I did, line for line.  The part about closing Server.app seems a given, but I'm not sure why they want you to open Server.app at the the end (maybe taken out of context from some other instructions?).  I did it anyway, but you should be able to begin testing, on a client workstation, right after rekerberizing is complete.  I did, however, need to reboot my client, login as local admin, and then binding would proceed, and network users are able to login again.  The engineer also let me know to expect an error, something like the following: "2015-03-11 21:58:38 +0000 Error synchronizing removal of attribute draft-krbPrincipalACL from record 72519e4c-7ac7-15e4-bd42-10adb1944cbc: 77013 result: 16 No such attribute" - this is apparently normal, and did in fact happen in my experience.
    So here's the fix:
    - Quit Server.app (don’t just close the window)
    - On the Open Directory Server, execute these Terminal commands:
      - sudo mkdir /var/db/openldap/migration/
      - sudo touch /var/db/openldap/migration/.rekerberize
      - sudo slapconfig -firstboot
    - Open Server.app
    And that's it.  I did nothing else on my OD server, just logged out.  Immediately tried binding on my MacBook client, it failed, I rebooted, tried again, it worked quickly, and I'm able to login with network user accounts again.

  • Create a service request with the Account confirmed filled out

    Hi all, I'm working on an IC scenario where we have to create a Service Request based on: functional location and customer.
    This is the process steps:
    1) search for the functional location (FL) and confirm it
    2) confirm the account of the FL (we have a list of account related to the FL, partner function)
    3) create a service request referring to the FL and the Account confirmed in the prev-step
    My need is to find an automatic way to replicate the FL and the Account prev-confirmed directly into the Service Request, without repeat the search.
    Any suggestions?

    Hi Anubhav, thanks for your replay. Your idea is good, but unfortunately our process is a little different. We have to manage with the FL, that is the central item of the Service Request, and with one of the several partner function of the FL.
    So, first, the Agent has to search the FL and then confirm the right Account between the FL's partner (each time we have to create a service request, the Customer could be one of the FL's partner function). Now, I'm investigating if with a Badi, I can transfer the FL confirmed with the Account Identification, directly into the Service Request.
    Interaction Center WebClient->Business Transaction->Service Ticket->BADI: Product Assignment for creation of Service Items
    Thanks.
    BR,
    Andrea.

  • Cannot login with Network account.

    Hi,
    I am an experimented Mac user, but quite new with Snow Leopard Server.
    I've just purchased the brand new MacMini Server.
    I have configured my server with the name server.local and installed OpenDirectory as Master.
    I wanted to try the network login, so I created a Test1 account in Open Directory. Then from my iMac I joined my server.local through System Preferences/Accounts/Options/... then I log off and try to use the newly created account test1.... I asked the system to change the password from first loggin... which works, but then I receive a message saying that I cannot log in for the moment... I tried everything but I just can't use the network account.
    Any hints?
    Cheers.

    You should avoid .local at all costs when configuring an OS X Server.
    .local is reserved for zeroconfig/Bonjour, and will cause conflicts.
    There's an excellent tutorial for new users here
    http://www.wazmac.com/serversnetwork/fileservers/osxserver_setup/osxserver106setup.htm
    Jeff

  • WCF service setup with certificate authentication error

    I have a WCF service setup and I need to use a certificate with it and are getting numerous errors when I attempt to browse it. The 1st error I get is "Security settings for this service require 'Anonymous' Authentication but it is not enabled for
    the IIS application that hosts this service."
    This sounds like a straightforward error message and setting the authentication method in IIS to anonymous resolves being able to browse the service. But I need to use a certificate and setting authentication to anonymous is obviously not right since we
    only want those with the proper certificate to access the service. I have all authentication methods in IIS set to disabled when I get the above error message. I have the SSL settings in IIS for the service set to require a certificate as well. I am using
    IIS 8.5 as well.
    Here is my config file in hoping someone could point me in the correct direction. The service should only work over HTTPS since we are using a certificate and I need the meta data exposed as well hence the mexHttpBinding. I have searched the web but no solution
    is working. Any help is appreciated.
    <?xml version="1.0" encoding="UTF-8"?>
    <configuration>
    <configSections>
    <sectionGroup name="applicationSettings" type="System.Configuration.ApplicationSettingsGroup, System, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089">
    <section name="HEALookupProxy.Properties.Settings" type="System.Configuration.ClientSettingsSection, System, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089" requirePermission="false" />
    </sectionGroup>
    </configSections>
    <appSettings>
    <add key="aspnet:UseTaskFriendlySynchronizationContext" value="true" />
    </appSettings>
    <system.web>
    <compilation targetFramework="4.5.1" />
    <httpRuntime targetFramework="4.5.1" />
    <authentication mode="None"></authentication>
    </system.web>
    <system.serviceModel>
    <serviceHostingEnvironment multipleSiteBindingsEnabled="true">
    <baseAddressPrefixFilters >
    <add prefix="https"/>
    </baseAddressPrefixFilters>
    </serviceHostingEnvironment>
    <services>
    <service name="HEALookupProxy.HEALookupService" behaviorConfiguration="HEALookupServiceBehavior">
    <endpoint address="" binding="wsHttpBinding" contract="HEALookupProxy.IHEALookupService" bindingConfiguration="HEALookupConfig" />
    <endpoint contract="IMetadataExchange" binding="mexHttpBinding" address="mex" />
    </service>
    </services>
    <bindings>
    <wsHttpBinding>
    <binding name="HEALookupConfig">
    <security mode="TransportWithMessageCredential">
    <transport clientCredentialType="Certificate"/>
    </security>
    </binding>
    </wsHttpBinding>
    </bindings>
    <behaviors>
    <serviceBehaviors>
    <behavior name="HEALookupServiceBehavior">
    <serviceMetadata httpsGetEnabled="true"/>
    <serviceDebug includeExceptionDetailInFaults="false" />
    <serviceCredentials>
    <serviceCertificate x509FindType="FindBySubjectName" storeLocation="LocalMachine" storeName="My" findValue="certnameremoved" />
    </serviceCredentials>
    </behavior>
    </serviceBehaviors>
    </behaviors>
    </system.serviceModel>
    <system.webServer>
    <modules runAllManagedModulesForAllRequests="true" />
    <!--
    To browse web app root directory during debugging, set the value below to true.
    Set to false before deployment to avoid disclosing web app folder information.
    -->
    <directoryBrowse enabled="false" />
    <security>
    <authorization>
    <remove users="*" roles="" verbs="" />
    <add accessType="Allow" users="user1, user2" />
    </authorization>
    </security>
    </system.webServer>
    </configuration>

    Hi spark29er,
    >>The service should only work over HTTPS since we are using a certificate and I need the meta data exposed as well hence the mexHttpBinding.
    For creating the HTTPS WCF service, first please change the mexHttpBinding to
    mexHttpsBinding as following:
    <endpoint contract="IMetadataExchange" binding="mexHttpsBinding" address="mex" />
    For more information, please try to refer to:
    #Seven simple steps to enable HTTPS on WCF WsHttp bindings:
    http://www.codeproject.com/Articles/36705/simple-steps-to-enable-HTTPS-on-WCF-WsHttp-bindi .
    Then please try to check the following article about how to do the certificate authentication on HTTPS WCF Service:
    http://blogs.msdn.com/b/imayak/archive/2008/09/12/wcf-2-way-ssl-security-using-certificates.aspx .
    Besides, setting the
    includeExceptionDetailInFaults as false can give us more detailed error information.
    Best Regards,
    Amy Peng
    We are trying to better understand customer views on social support experience, so your participation in this interview project would be greatly appreciated if you have time. Thanks for helping make community forums a great place.
    Click
    HERE to participate the survey.

  • Illustrator "not responding" with networked account

    Hello
    1st time here...
    We are running a small network of 33 iMacs (current Thunderbolt edition) on MacOS 10.6.8, attached to a MacPro Server running MacOS X Server 10.6.8.
    We have about 130 users (school environment).
    As maybe a speciality, the user home folders are on the Server in the Directory called "Home" (which is not on the server boot volume)
    We bought a Volume Licence of CS Master collection vesrion 5.5.
    We tweaked Adobe Acrobat to not crash following the redirect advices given elsewhere....
    But we have no luck getting Illustrator to do what it should on these networked accounts...
    What it does: click the Icon in the Dock (or double click the Application Icon in Finder):
    it bounces a few seconds in the Dock and comes to rest. No splash screen or any kind of message.
    If we look in Activity Monitor, Illustrator is in status of "not responding".
    If I check the Log Illustrator writes in it's log, it stops after verifying the serial number.
    I already contacted the local (Swiss) Adobe support by telephone, they told me:
    if Illustrator runs with a local administrator account, we cannot help you
    I contacted Adobe Live chat this morning. They told me to contact the phone number that gave me the above answer...
    Any hints? I seem to be running in circles...
    (sorry for english terms, it is not my native language, and i'm trying to translate from a german speaking Mac system)
    Andreas

    well, I did not change the operating system, I changed computers (server and clients) which came with a new operating system :-). The new computers probably would not run with the old operating system (10.4.11) and is not really good punblicity as a school to run old versions of applications ;-)
    I got it running today...
    For the records: Our support suggested to redirect
    ~/Library/Caches/Adobe/
    ~/Library/Caches/AdobeHelpData/
    to the local disk.
    I did not find
    ~/Library/Caches/AdobeHelpData/
    in the folders of a local user who had already started Illustrator once, so in the end I redirected the whole
    ~/Library/Caches/
    to the local disk. This might be too much for the problem I had to solve, but seems to do the trick and doesn't seem to have bad sideeffects...

  • IWork and iCloud don't work with network account

    I am trying to access files that I have saved on my icloud account but when I login with my network account, iWork apps just error when I choose iCloud and it shows me my document folder.  If I login to a local account it works correctly.  I go to open a document in an iWork document and choose iCloud it correctly shows the documents that I have in iCloud.  Is this a server issue or is there something that I am doing wrong.  I do have webdav running. could that be confusing it?
    David

    HI,
    Try repairing disk permissions...
    Launch Disk Utility. (Applications/Utilities) Select MacintoshHD in the panel on the left, select the FirstAid tab. Click: Repair Disk Permissions. When it's finished from the Menu Bar, Quit Disk Utility and restart your Mac. If you see a long list of "messages" in the permissions window, it's ok. That can be ignored. As long as you see, "Permissions Repair Complete" when it's finished... you're done. Quit Disk Utility and restart your Mac.
    Carolyn

  • How can i configure autologin with network account?

    right now when i go to user preferences for network account, login window and options are non manageable for network users.
    im using network accounts on all public machines and now after reboot they all require manual logon, how can i configure autologin to use network account

    Did you try authenticating with a local admin account to get into the login options from a network user account? Then you might be able to set auto login for that account. I've set network accounts as admin users on particular machines that way.

  • Service purchase order with network account assignment

    purchase requsition  made with N acct *** and D item category, value 1000 $ but quantity in PR given 1 now purchase order made from this requisition of value 700$ and quantity 1, migo miro also done......System is not allowing to use remaining 300 $ in PO saying quantity fully used. how to use this remaining 300 $ . in services tab service no given which is made in project system..pls help.. also purchase req value cant be changed to 700$

    Hi,
    Have you done service entry sheet in ML81N?
    For service procurement, the process is :
    1. Create PR with item catg. D ME51N
    2. Create PO from PR (ME21N) - Enter the services to be performed with the quantity in the services tab for the PO item.
    3. Make service entry sheet (ML81N) for the PO item. Here you confirm the quantity & amount of service performed.
    If only partial portion of the service is to be peformed, enter only partial qty & amount here.
    4. Vendor invoice (MIRO) - here you book the vendor invoice amount for the quantity of service performed.
    Please follow the above procedure and you should be able to handle this scenario.
    Regards
    Prabhu S

  • Problem printing with network accounts in Rosetta apps

    This is a weird one that I've been trying to fix for weeks with no luck. Any thoughts would be helpful before I dump the AD Plugin and switch to ADmitMac...
    Setup:
    We have some (about 50) student iMacs, bound to our Active Directory domain.
    On logging in, students are authenticated via an Active Directory server.
    The students have Home Folders on another Windows 2003 server.
    Force Local Home is off in the AD plugin, so when a student logs in, they get an ordinary account (non-admin) and see the Desktop, etc. that is held on the server, so if they log into any iMac they get the same Home Folder.
    Problem:
    The odd problem has just occurred with 4 new iMacs. These are the first Intel Macs on the network using AD logins and network Home Folders. Old PowerPC iMacs work just fine. However, the Intels exhibit this strange behaviour:
    If a student prints from any Rosetta application (e.g. Word or Photoshop) the print goes ahead and prints, but the application immediately crashes (quits unexpectedly). Intel Apps (e.g. Preview) however, print fine.
    I've just done a print from Word with one of my students' accounts (username bbjarhsy, Home Folder on a server called d4, as you'll see at the end). The crash log for Word tells me:
    No log handling enabled - turning on stderr logging
    snmpget: Timeout
    snmpget: Timeout
    snmpInk: writeSupplies() write failed.
    snmpInk: writeSupplies():: Broken pipe
    Ignoring Quickdraw drawing between QDBeginCGContext and QDEndCGContext
    Ignoring Quickdraw drawing between QDBeginCGContext and QDEndCGContext
    Ignoring Quickdraw drawing between QDBeginCGContext and QDEndCGContext
    Ignoring Quickdraw drawing between QDBeginCGContext and QDEndCGContext
    Ignoring Quickdraw drawing between QDBeginCGContext and QDEndCGContext
    Ignoring Quickdraw drawing between QDBeginCGContext and QDEndCGContext
    No log handling enabled - turning on stderr logging
    snmpget: Timeout
    Ignoring Quickdraw drawing between QDBeginCGContext and QDEndCGContext
    Ignoring Quickdraw drawing between QDBeginCGContext and QDEndCGContext
    snmpget: Timeout
    Ignoring Quickdraw drawing between QDBeginCGContext and QDEndCGContext
    Ignoring Quickdraw drawing between QDBeginCGContext and QDEndCGContext
    Ignoring Quickdraw drawing between QDBeginCGContext and QDEndCGContext
    Ignoring Quickdraw drawing between QDBeginCGContext and QDEndCGContext
    Ignoring Quickdraw drawing between QDBeginCGContext and QDEndCGContext
    Ignoring Quickdraw drawing between QDBeginCGContext and QDEndCGContext
    Ignoring Quickdraw drawing between QDBeginCGContext and QDEndCGContext
    Word(618,0x1ac7e00) malloc: * vm_allocate(size=2751467520) failed (error code=3)
    Word(618,0x1ac7e00) malloc: * error: can't allocate region
    Word(618,0x1ac7e00) malloc: * set a breakpoint in szone_error to debug
    Word(618,0x1ac7e00) malloc: * vm_allocate(size=1543507968) failed (error code=3)
    Word(618,0x1ac7e00) malloc: * error: can't allocate region
    Word(618,0x1ac7e00) malloc: * set a breakpoint in szone_error to debug
    Word(618,0x1ac7e00) malloc: * vm_allocate(size=1543507968) failed (error code=3)
    Word(618,0x1ac7e00) malloc: * error: can't allocate region
    Word(618,0x1ac7e00) malloc: * set a breakpoint in szone_error to debug
    Dec 1 10:49:33 STU-868-M01 crashdump[628]: Microsoft Word crashed
    Dec 1 10:49:33 STU-868-M01 crashdump[628]: crash report written to: /Network/Servers/d4.students.ioead/bbjarhsy$/Library/Logs/CrashReporter/Microso ft Word.crash.log
    This seems to indicate some sort of problem with addressing Virtual Memory after/during sending the print job. (??)
    I should mention that the prints are going to a (Windows) print server which does its stuff properly - queues and prints the job and deducts pages properly from the quotas set up.
    I've tried making a test account an Admin account but these crash too, so it doesn't seem to have anything to do with the local permissions.
    Any idea where I can go with this? Anyone doing the same thing with no problem? It definitely seems to be a bug with the Intel version of Tiger as the G5s have exactly the same set up with no such problems.
    Thanks for anything anyone can offer!!
    Jem
    iMac Intel Core 2 Duo, 2GHz, 1GB RAM   Mac OS X (10.4.8)  

    10.4.9 update fixed this - phew!

  • Deleting all print jobs on a computer with network accounts

    In a school environment, we are using a network server with individual student accounts. Is there a way to delete all print jobs for all users on a given computer? I can reset print system and it only clears the print jobs for that single user.

    System Preferences > Printers & Scanners > Print
    Click: Open Print Queue
    You should be able to delete print jobs from there.

  • Adobe Bridge permission issues when working with network account

    We have some users using Adobe Bridge CS3, CS4 and CS5.
    They are using Bridge to browse arround the file server.
    I have ACL's so the users can have full access using the Finder, deleting, making folders etc.
    Users are logged in to their AD account with their home folder synced to a Mac OS X server 10.6.4.
    Unless they are Posix owner of a folder they can't make changes or nothing using Bridge.
    If they log in to a local account on a Mac and then manually connect to a share on the same server all is fine with Bridge. They can make folders, delete files etc etc.
    Any ideas?
    I know Adobe made it easy for themselfs years ago by simply stating it is not supported to work on a server using any Adobe app.

    jhellstrom wrote:
    We have some users using Adobe Bridge CS3, CS4 and CS5.
    They are using Bridge to browse arround the file server.
    I have ACL's so the users can have full access using the Finder, deleting, making folders etc.
    Users are logged in to their AD account with their home folder synced to a Mac OS X server 10.6.4.
    Unless they are Posix owner of a folder they can't make changes or nothing using Bridge.
    If they log in to a local account on a Mac and then manually connect to a share on the same server all is fine with Bridge. They can make folders, delete files etc etc.
    Any ideas?
    I know Adobe made it easy for themselfs years ago by simply stating it is not supported to work on a server using any Adobe app.
    As you said Adobe washed their hands of the matter and as any business customer is almost certainly going to use a server, and as Adobe products are so expensive pretty much only business customers can afford them, this is totally inexcusable.
    I had a similar network login related problem with Acrobat Pro in version 7.0 which after +two years+ (no exaggeration) was eventually fixed in Acrobat Pro 8.1. Unfortunately it was then broken again in Acrobat Pro 9.0. Based on my experiences with Acrobat Pro and due to a totally different reason (nothing to to do with using Adobe SW) I found that when I switched from using AFP for network home directories to instead using NFS, my problems with Adobe software and network login accounts went away.
    So, it might be worth your thinking about switching to using NFS for home directories as a workaround.
    Adobe have become even worse than Microsoft for their software. They use a variety of sucky installers instead of Apple's free Installer (Microsoft have switched to using Apple's Installer), they use product activation, they are even worse than MS Office at working with servers. The only redeeming fact Adobe has is that their Mac and Windows products are mostly equivalent unlike Microsoft who still cripple their Mac software.

  • Huge problems with network accounts. They keep disapear all the time, after restart they are back. But only for 1h or less. Anyone have any suggestions?

    I`m using Open Directory, its been working fine for 2 months. But now all of a sudden this very annoying error keeps repeating itself.
    It started happen about a week ago,and after a reboot of the server it was working fine, until now. Now the accounts is gone after 1h or so uptime, and after restart all accounts is there, but soon to be disapeared again. Anyone have any suggestion what to look for? And why did it happen in the first place?
    For now theres only one user at the office so he uses my admin account (Local user on the server) to connect to shares etc. But in less then a week there will be much more people at the office, so i will need to sort this out ASAP. Appriciate any suggestions/help. thanks in advance.

    Open Directory; Password Service Server Log:
    (A little shortend, nothing seems wrong there?)
    Jul 30 2013 09:51:18 456163us    Mac OS X Password Service version 387.2 (pid = 139) was started at: Tue Jul 30 09:51:18 2013
    Jul 30 2013 09:51:18 873014us    RunAppThread Created
    Jul 30 2013 09:51:18 873099us    RunAppThread Started
    Jul 30 2013 09:51:18 873122us    Initializing Server Globals ...
    Jul 30 2013 09:51:19 820305us    Initializing Networking ...
    Jul 30 2013 09:51:19 820361us    Initializing TCP ...
    Jul 30 2013 09:51:39 735055us    SASL is using realm "server.xxxx.no"
    Jul 30 2013 09:51:39 735100us    Starting Central Thread ...
    Jul 30 2013 09:51:39 735109us    Starting other server processes ...
    Jul 30 2013 09:51:39 735117us    StartCentralThreads: 1 threads to stop
    Jul 30 2013 09:51:39 735152us    Initializing TCP ...
    Jul 30 2013 09:51:39 735186us    Starting TCP/IP Listener on ethernet interface, port 106
    Jul 30 2013 09:51:39 735242us    Starting TCP/IP Listener on ethernet interface, port 3659
    Jul 30 2013 09:51:39 735265us    Starting TCP/IP Listener on interface lo0, port 106
    Jul 30 2013 09:51:39 735290us    Starting TCP/IP Listener on interface lo0, port 3659
    Jul 30 2013 09:51:39 735318us    StartCentralThreads: Created 4 TCP/IP Connection Listeners
    Jul 30 2013 09:51:39 735329us    Starting UNIX domain socket listener /var/run/passwordserver
    Jul 30 2013 09:51:39 736296us    Finished starting other server processes ...
    Jul 30 2013 09:51:39 736313us    -- Password Server successfully started --
    Jul 30 2013 09:51:39 736321us    -- Start time: 21 sec, 287 msec --
    Jul 30 2013 09:52:19 502436us    GETPOLICY: user {0x1eab69bc916811e28e60a8206623cd3d, server.xxx.no$}.
    Jul 30 2013 09:52:19 516404us    GETPOLICY: user {0x1eab69bc916811e28e60a8206623cd3d, server.xxx.no$}.
    Jul 30 2013 09:52:19 865774us    GETPOLICY: user {0x1eab69bc916811e28e60a8206623cd3d, server.xxxx.no$}.
    Jul 30 2013 09:52:19 870922us    GETPOLICY: user {0x1eab69bc916811e28e60a8206623cd3d, server.xxxx.no$}.
    Jul 30 2013 09:52:19 879988us    GETPOLICY: user {0x1eab69bc916811e28e60a8206623cd3d, server.xxxx.no$}.
    Jul 30 2013 09:52:19 892772us    GETPOLICY: user {0x1eab69bc916811e28e60a8206623cd3d, server.xxxo.no$}.
    Jul 30 2013 09:52:22 897368us    GETPOLICY: user {0xfc35f9dcb0b711e28baca820661e5a32, geir}.
    Jul 30 2013 09:52:22 904252us    GETPOLICY: user {0x9ae96942a73011e2aac5a8206623cd3d, christoffer}.
    Jul 30 2013 09:52:22 916530us    GETPOLICY: user {0x523107c8ae7911e28baca820661e5a32, anst}.
    Jul 30 2013 09:52:22 964934us    GETPOLICY: user {0x5841b68eb09611e28baca820661e5a32, fres}.
    Jul 30 2013 09:52:23 12619us    GETPOLICY: user {0x148c7f5c916811e28cd3a8206623cd3d, admin}.

Maybe you are looking for