Connected to Domain but can't log in using Actived Directory Credentials

Hey everyone.  I've been working on this issue for two weeks now, and I don't know what else to try.  I'm connected to my domain but cannot get my Macbooks to log in using Active Directory credenitals both through our wireless network, and hard wired with an ethernet cable.  The weird part about it is that it is not uniform all across our network.  This only happens to certain Macbooks and as of right now there doesn't seem to be a pattern.  I can say that it has happened to all new Macbook Pros that we have ordered lately though.
We use Jamf to manage our Macs on our network, and ever since upgrading to a new version (9.01 and now 9.1) we have had this issue.  However I can't connect after manually adding the domain either, so for now it makes me think it is not a Jamf issue.  Has anyone dealt with this issue before, that might know of a fix?  Thanks!

Hi Burnettb1,
I have come across a similar issue as yours.  I have included the instructions that I use to bind the Mac at my institution.  In regards to wifi, I have not tried binding the Mac over wifi. Should you need to log in to a Mac with domain user credentials I would suggest to bind the Mac over ethernet.  Once you get to the:
*Click on triangle to the left of Show Advanced Options to expand"
portion of the instructions click on the Mappings tab and select the checkbox for creating a mobile account at login.  This will create a domain user profile on the machine that you can log into when not connected to the domain.
Hope this helps.
BIND iMac:
          Login into iMac using administrative credentials
          Open System Preferences
                    *Goto Users & Groups
                    *Click on lock in lower left-hand corner
                    *Use same password used to log into iMac
                    *Click on Login Options
  *Click on ‘Join...’ button right of "Network Account Server: "
                    *Click on ‘Open Directory Utility…’ button
                    *Click on lock in lower left-hand corner
                    *use same password used to log into iMac and click on Modify Configuration
                    *Double-click on Active Directory
  Active Directory Domain = domain
                              Computer ID = name of Mac
                    *Click on triangle to the left of Show Advanced Options to expand
                              *Click on Administrative tab
                              *Check  Prefer this domain server
Type  domainserver_ipaddr -or- servername.domain in this field
                              *Click on ‘Bind…’ button
                              *When prompted for network administrator login
                                        username = [domain admin user]
                                        pwd = [domain user password]
                              *Click OK (Note: search path will be updating. Until completed the ‘OK’
button will be greyed out
  *Click OK
  *Click lock to lock and close window
                    *Click lock to lock and close window
BIND CHECK:
          *Search AD for added mac host - it should be there.
          Open Terminal app by either:
                    1)
                              *Press command+spacebar
                              *Type Terminal and select app
                    2)
                              *Click on desktop
                              *Press shift+command+A
                              *Goto Utilities folder located within Application folder (which you should
  be in) and open Terminal
          *Once Terminal is opened type in id [domain username] and press return key.  The output should be
some some network account information
          *Close app by pressing command+Q and any other opened windows
          *Restart iMac
          *Log in

Similar Messages

  • Connected to network but can't log on

    My iBook G4 works great on my home wireless network, but not at my workplace. It connects to the network, has a strong signal, the WEP password is correct, but I can't log on to any sites or do eMail. Any suggestions? Anyone? I'm not exactly a Mac novice, but I've tried everything I know in preferences and Airport settings, with no luck.

    I believe you have DHCP addressing turned on on your network settings. Does your mac aquire a normal LAN IP, or does the IP begin with "169"?
    In either case, looks like your workplace's wireless router doesn't have DHCP server turned on, or it doesn't allow WAN connections to machines with non-registered MAC addresses. You should check with your workplace's network administrator, or examine the router's settings, if you have administrator access to it.

  • Users of Windows 7 Computers connected to Domain but can not get Internet Randomly

    After crash of DC, I have replaced the domain controller server 2008 with another machine but with same name. I got trust relationship issue, which I resolved by disjoining and rejoining. After this I am facing below mentioned issue on computers randomly.
    High Privileges users have no issue with internet access. Low privileges users can not access internet on workstations randomly. Users login properly, all group policy settings applied to them. but internet does not work with them using Internet Explorer
    and Google Chrome. All pings work fine. I viewed the proxy settings by command line as proxy settings are disabled for low privileges users. It was correct but still internet was not working. While over Firefox by adding manually proxy(not set
    through group policy), internet works.
    When I tried to login through a new user which has not logged in over affected machine. Internet works. After logging off by new user and logging on old users (already created profiles), internet starts working for them too. I am afraid may this trick does
    not work on other machines.
    Now I want to know, if above mentioned trick does not work what should I do to activate the internet. What is the root cause of this issue.

    Hi,
    Did you mean you set the same proxy, high privileges user could keep connection and low privileges user drop connection randomly? At the same time, Firefox also could keep connection, right?
    Please try to reset Winsock and DNS for a test on problematic computer. Open command prompt with Administrator Previleges, then type the following commands.
    netsh int reset  
    ipconfig /flushdns   
    Besides that, update the network driver for test.
    Karen Hu
    TechNet Community Support

  • N8 - Trying to connect to Facebook but can't log i...

    Having lost my social widget I tried to log in to facebook using the social app instead, but it told me I had to log into my nokia account first. I tried but it said my password was invalid. I sent a password reset to my email and reset it, but its still not letting me in, still saying its invalid?
    Any ideas?
    Nix x

    I found the solution for this problem.
    The application platform should be enabled in the facebook account as Ovi by Nokia is one of them.
    I had it disabled for reducing spams.
    In your Facebook account, Go to
    Account
    Privacy Settings
    Edit your Settings under "Apps and Websites" at lower left corner
    Click Turn on all platform apps.
    Then your facebook will login under Social Networking Client provided by Nokia without "Invalid username or password. Tip. Password is case sensitive."
    I created a new facebook account and it logged in the very first time and i knew it must have been the account security or application platform. The latter was the one. <
    Happy Networking!!!

  • Can bring up certain websites but can't log-in

    I can bring up certain websites but can't log-in.  I believe this has something to do with Verizon's software.   A few of the cites where this occurs are: healthcare.gov; united.com; genetaylorsrentals.com.   I have brought up these sites and logged in using my laptop and going through other ISPs (friend's home using Cox Communications connection (Newport News VA) and at  George Mason District Public Library (Fairfax County VA).  I am located in Annandale, VA.  Has anyone else experienced this problem; do you have a solution? 

    williec wrote:
    I can bring up certain websites but can't log-in.  I believe this has something to do with Verizon's software.   A few of the cites where this occurs are: healthcare.gov; united.com; genetaylorsrentals.com.   I have brought up these sites and logged in using my laptop and going through other ISPs (friend's home using Cox Communications connection (Newport News VA) and at  George Mason District Public Library (Fairfax County VA).  I am located in Annandale, VA.  Has anyone else experienced this problem; do you have a solution? 
    Which Anti Virus are you using?  Do you have the issue with multiple browsers?
    I experienced login issues with some sites when using Avast AV with the WebRep plugin enabled.  I've had to disable the plugin to be able to complete the sign in process.

  • Got my password wrong twice and my mini is disable. I connected to iTunes, but can't get it to work. Can some one guide my through?

    got my password wrong twice and my mini is disable. I connected to iTunes, but can't get it to work. Can some one guide my through?

    If it's showing the red disabled screen due to incorrect passcodes then you may need to put the iPad into recovery mode : http://support.apple.com/kb/ht1808 - you should then be able to reset the iPad via your computer's iTunes and restore/resync your content to it

  • HT2497 Connected to wifi but can't get on internet on MacBook Pro laptop

    Connected to wifi but can't use internet on laptop??

    Information.
    Can’t Connect to the Internet
    Can’t Connect to the Internet (2)
    Connect to the Internet – Solutions and Troubleshooting
    Connecting to the Internet - Solve Problems 

  • I am connected to wifi, but can't open webpages or collect mail

    I am connected to wifi, but can't open webpages or collect mail. I have tried to reconnect; to forget the network, all those things that should hepl. My phone and my computer recognize the network, the ipad doesn't.  I mean I am connected  and have a full scala of connection bows, but nothing happens.

    You iPad recognizes the wifi signal, but is not connected.
    Some things to try first:
    1. Turn Off your iPad. Then turn Off (disconnect power cord for 30 seconds or longer) the wireless router & then back On. Now boot your iPad. Hopefully it will see the WiFi.
    2. Go to Settings>Wi-Fi and turn Off. Then while at Settings>Wi-Fi, turn back On and chose a Network.
    3. Change the channel on your wireless router (Auto or Channel 6 is best). Instructions at http://macintoshhowto.com/advanced/how-to-get-a-good-range-on-your-wireless-netw ork.html
    4. Go into your router security settings and change from WEP to WPA with AES.
    5.  Renew IP Address: (especially if you are droping internet connection)
        •    Launch Settings app
        •    Tap on Wi-Fi
        •    Tap on the blue arrow of the Wi-Fi network that you connect to from the list
        •    In the window that opens, tap on the Renew Lease button
    ~~~~~~~~~~~~~~~~~~~~~~~~~
    iOS 6 Wifi Problems/Fixes
    How To: Workaround iPad Wi-Fi Issues
    http://www.theipadfan.com/workaround-ipad-wifi-issues/
    Another Fix For iOS 6 WiFi Problems
    http://tabletcrunch.com/2012/10/27/fix-ios-6-wifi-problems-ssid/
    Wifi Doesn't Connect After Waking From Sleep - Sometimes increasing screen brightness prevents the failure to reconnect after waking from sleep. According to Apple, “If brightness is at lowest level, increase it by moving the slider to the right and set auto brightness to off.”
    Fix For iOS 6 WiFi Problems?
    http://tabletcrunch.com/2012/09/27/fix-ios-6-wifi-problems/
    Did iOS 6 Screw Your Wi-Fi? Here’s How to Fix It
    http://gizmodo.com/5944761/does-ios-6-have-a-wi+fi-bug
    How To Fix Wi-Fi Connectivity Issue After Upgrading To iOS 6
    http://www.iphonehacks.com/2012/09/fix-wi-fi-connectivity-issue-after-upgrading- to-ios-6.html
    iOS 6 iPad 3 wi-fi "connection fix" for netgear router
    http://www.youtube.com/watch?v=XsWS4ha-dn0
    Apple's iOS 6 Wi-Fi problems
    http://www.zdnet.com/apples-ios-6-wi-fi-problems-linger-on-7000004799/
    ~~~~~~~~~~~~~~~~~~~~~~~
    How to Fix a Poor Wi-Fi Signal on Your iPad
    http://ipad.about.com/od/iPad_Troubleshooting/a/How-To-Fix-A-Poor-Wi-Fi-Signal-O n-Your-iPad.htm
    iOS Troubleshooting Wi-Fi networks and connections  http://support.apple.com/kb/TS1398
    iPad: Issues connecting to Wi-Fi networks  http://support.apple.com/kb/ts3304
    WiFi Connecting/Troubleshooting http://www.apple.com/support/ipad/wifi/
    How to Fix: My iPad Won't Connect to WiFi
    http://ipad.about.com/od/iPad_Troubleshooting/ss/How-To-Fix-My-Ipad-Wont-Connect -To-Wi-Fi.htm
    iOS: Connecting to the Internet http://support.apple.com/kb/HT1695
    iOS: Recommended settings for Wi-Fi routers and access points  http://support.apple.com/kb/HT4199
    How to Quickly Fix iPad 3 Wi-Fi Reception Problems
    http://osxdaily.com/2012/03/21/fix-new-ipad-3-wi-fi-reception-problems/
    iPad Wi-Fi Problems: Comprehensive List of Fixes
    http://appletoolbox.com/2010/04/ipad-wi-fi-problems-comprehensive-list-of-fixes/
    Connect iPad to Wi-Fi (with troubleshooting info)
    http://thehowto.wikidot.com/wifi-connect-ipad
    Fix iPad Wifi Connection and Signal Issues  http://www.youtube.com/watch?v=uwWtIG5jUxE
    Fix Slow WiFi Issue https://discussions.apple.com/thread/2398063?start=60&tstart=0
    How To Fix iPhone, iPad, iPod Touch Wi-Fi Connectivity Issue http://tinyurl.com/7nvxbmz
    Unable to Connect After iOS Update - saw this solution on another post.
    https://discussions.apple.com/thread/4010130
    Note - When troubleshooting wifi connection problems, don't hold your iPad by hand. There have been a few reports that holding the iPad by hand, seems to attenuate the wifi signal.
    ~~~~~~~~~~~~~~~
    If any of the above solutions work, please post back what solved your problem. It will help others with the same problem.
     Cheers, Tom

  • When I instaled new verson my Iphone4 stoped, in the sight shows the Itunes symbol. I tried to connect to Itunes, but can't repair. MISTAKE 3004. What can I do? I'm brasilian and don't speak english very well... Please, help me. Use my e-mail. Junara

    When I instaled new verson my Iphone4 stoped, in the sight shows the Itunes symbol. I tried to connect to Itunes, but can't repair. MISTAKE 3004. What can I do? I'm brasilian and don't speak english very well... Please, help me. Use my e-mail. Junara
    <Personal Information Edited by Host>

    Hello Junara1969,
    Thank you for contacting Apple Support Communirties. I have a couple of articles for you to take a look at to troubleshoot your issue.
    I would start with basic troubleshooting
    Resolve iOS update and restore errors in iTunes
    http://support.apple.com/kb/TS1275
    If you are still having the same issue, then there are further steps for this specific error code here:
    Resolve specific iTunes update and restore errors
    http://support.apple.com/kb/TS3694
    Regards,
    Jeff D.

  • I have some money left from a gift card on an itunes account, but can't log in.  I've tried to reset the password but I didn't receive the email. Also I can't remember the security question. What can I try next?

    I have some money left from a gift card on an itunes account, but can't log in.  I've tried to reset the password but I didn't receive the email. Also I can't remember the security question. What can I try next?

    Reset Security Questions
    http://support.apple.com/kb/ht5312
    If you still have problem, call Apple to help reset your Security Question.
    http://support.apple.com/kb/HT5699

  • Can surf the web, but can't log onto itunes. What got changed?

    Can surf the web, but can't log onto Itunes Store or anything to do with Itunes online. What setting got changed?

    Can surf the web, but can't log onto Itunes Store or anything to do with Itunes online. What setting got changed?

  • The box indicating that this domain controller is the last controller for the domain is unchecked. However, no other Active Directory domain controllers for that domain can be contacted

    I have 2 domain controllers running 2003 server, server1 and server2. I ran dcpromo on server1 and removed AD and removed him from the domain and disconnected from network. I then added a 2012 server
    with the same name and IP address server1 with no problem. Replication from sites and services work fine on both controllers.
    The new 2012 server1 is GC. I transferred all FSMO roles to server1. Again no problem and replicating using sites and services. AD on server1 is populated correctly.
    Now what I had intended on doing was a dcpromo to remove server2 from the domain so I can then add another 2012 server. That is when I get the: "The box indicating that this domain controller is the last controller for the domain
     is unchecked. However, no other Active Directory domain controllers for that domain can be contacted.
    I have DNS installed on both servers and both look good with replicating there. Strange thing is when on the 2012 server within DNS if I right click and connect to another DNS server I can add server2 just fine but from server2 adding server1 it tells me it
    is not available.
    Help please!

    Hi,
    As there is server 2012 DC (SERVER1) DC is operational in a domain then "This domain controller is the last controller for the domain" should be remain unchecked when you demote SERVER2 DC. 
    If you are getting error "Active Directory domain controllers for that domain can be contacted" while demoting SERVER2 DC then check the DNS pointing on both as per below article, disable windows firewall on all DC, less possiblities but worth to check if both
    are different site then check the ports are open on firewall. 
    http://abhijitw.wordpress.com/2012/03/03/best-practices-for-dns-client-settings-on-domain-controller/
    http://technet.microsoft.com/en-us/library/cc766337(v=ws.10).aspx
    http://social.technet.microsoft.com/wiki/contents/articles/584.active-directory-replication-over-firewalls.aspx
    run “ipconfig /flushdns & ipconfig /registerdns“, restart DNS server and NETLOGON service on each DC and try to demote server2 DC.
    If issue reoccurs, post dcdiag /q result.
    NOTE: If initial replication was completed between both DC (new 2012 and old DC) then you may remove the server2 DC from Active Directory forcefully (DCPROMO /FORCEREMOVAL) and perform metadata cleanup.
    Active Directory Metadata Cleanup
    http://abhijitw.wordpress.com/2012/03/03/active-directory-metadata-cleanup/
    Best regards,
    Abhijit Waikar.
    MCSA | MCSA:Messaging | MCITP:SA | MCC:2012
    Blog: http://abhijitw.wordpress.com
    Disclaimer: This posting is provided "AS IS" with no warranties or guarantees and confers no rights.

  • Is there any way to log in to active directory from a mac without joining the AD domain?

    I am looking for a way to log in to active directory without having the Mac join the AD domain. Basically i have not been able to understand all the ramifications of joining the AD domain. From what I have read in various documentations on the apple site and some of the AD plug in sites, it seems that if the mac joins the domain, all kinds of group policies get 'transfered' to the mac experience. How exactly does that affect the privileges of the local mac user on their machine? do they need to change their mac password? what happens to their existing home directories? what happens when they have their laptops at home?
    TIA
    Costas Manousakis

    Costas Manousakis wrote:
    The reason i am hesitant about binding the macs is that i'm not sure what are all the effects of that. will they have to change their mac passwords / usernames? more than likely the auto login will have to go. If there are multiple accounts on the mac (ex one admin account and other regular and admin accounts) how does binding affect them? how will it work when the mac is not in the office? if they have admin rights on the mac but not on the windows AD, how will that affect them? Do you know of a source i could go to to find answers for questions like these?
    Unfortunately, the source for answers should be your IT department. I can tell you how my machine works. I have a personal machine with no restrictions and a work machine bound to an Active Directory domain. Even my work machine has few restrictions compared to normal. I have a privileged account I can use if necessary. Also, I'm pretty much a goody-two-shoes so I don't try to circumvent restrictions.
    Basically, the Mac uses a system called Open Directory to manage user accounts. Every Mac comes with its own miniature Open Directory server. If you have a network with MacOS X Server, you can use the server's Open Directory. You can also use Microsoft's Active Directory to perform all the same tasks. The user's logins and passwords would be whatever is on Active Directory. They can change their password on the Mac and it will change the Active Directory password. Active Directory can enforce passwords expirations too.
    I am not an Active Directory administrator, so I can't give you specifics. Pretty much everything you have mentioned can be controlled via Active Directory. That is what it is for. It does require active participation of your IT staff. If you don't have that, then I don't see it working out well. It sounds like a paradox. IT wants to control users, but doesn't want to deal with it. You can't have it both ways. Maybe let it be known among the Mac users that visiting those restricted sites could cause IT to get rid of Mac altogether. That does sound like a probable outcome.

  • You can only log in using your primary BigPond Broadband account

    Hi I recently moved from QLD to WA and moved my bundle with me, I had foxtel on tbox over there but the box got left in the move so I bought another one today.  I have tried to register it but it comes up with the following message ' You can only log in using your primary BigPond Broadband account , If you can’t remember your primary account username and password, you will need to speak to a Customer Service Representative on 1800 331 402 So after calling the first time the lady registered the tbox and I thought that would be me on my way so I hung up and tried to get foxtel on tbox.  Ended up getting the same message and now my tbox does not appear to be registered at all.  So after another call which lasted around 30mins of me being on hold and a 3 way conversation where both telstra members were trying to fob responsibility off to each other and one being quite rude I was told I would be called back.. After another half an hour the guy called back and said that I could not get foxtel on tbox at my address.  To me this seems like Im being fobbed off as he didnt know what the problem was,  I am in a unit and I checked my address on the telstra website which stated 'great news, foxtel on tbox is available in your area' and after being told I couldnt get it, I put a note on the notice board of the aparment block to see if anyone else had foxtel and they do so clearly that is not the problem. Can anyone advise what to do or who to speak too to try and clear this up? Thank you

    There are times like this I wish I could log in to customers accounts and fix it however not allowed  ESQ check which is a serviceability check and checks what services are available at your address. So if it says Foxtel Tbox is eligible then its all good to go then this wouldn't be the problem mate. What needs to happen is that your email address and serial number might be still on the admin portal of the tbox registration. However you said Tbox support have removed this from the account in saying that this can take a little while to be completely removed from our records which would then allow you to register a new device. Try the registration a little later on or again tomorrow and see how you go. Please let us know how you get along. Cheers bud.      

  • Can't log in using forum name/password

    When ever I try to log in using my forum name/password I get a little message at the top of my browser saying something about no zip code and then I am back to the login page.  I have to use my Verizon account name and password to get into the forums.  I tried to find where I could check to see if there is an issue with my forum profile but I can't seem to find that info.  I would appreciate some help with this issue.

    Before I start my post, I noticed that this afternoon, it seems the issue is FIXED for me!  I had this info in notepad from earlier in the day but didn't have a chance to post until now.  I thought I would post it anyway just to give an idea of what was happening for me.
    I was getting the zip code error along with this following problem.  I've been having trouble the past few days also...this is different from all the other times I have logged in to the forums and I have never had issues previously at those log-ins. 
    Okay, here is goes:
    From this page:
    http://forums.verizon.com/vrzn/
    I'll click sign in.  I'll enter my username from my verizon account log in. ***of note, I have never been able to log in to the forums using my actual forum log-in name, which is different from the username I use to access my billing info (even using the forum username and checking forums user doesn't work*** Once I put that info in, I get directed to this page:
    https://www22.verizon.com/foryourhome/registration/reg/login.aspx?TYPE=33554433&REALMOID=06-3e5e92b5-8a92-010b-0000-379f0000379f&GUID=&SMAUTHREASON=0&METHOD=GET&SMAGENTNAME=$SM$bEwI%204RT//ht0%20M8xQ87x4qXmsiwWcbn1qYew3b40Of8i5oEV6/NOQ%20wSmu%20nyBH&TARGET=$SM$HTTP://www22.verizon.com/foryourhome/myaccount/Main/MyAccount.asp?Page=QadMA
    This has a message on it that says the username and password are wrong, but when I type in the exact same info I typed in the first page, it works and I log in to my account.  I'm in the "overview" page. When I click on forums on the right side, it takes me to the forums back to the first link:
    http://forums.verizon.com/vrzn/
    I have to click sign-in and then it comes up that I'm signed into the forums with the forum username (that is different from my billing username).
    It's a little lengthy process that never happened before, I was able to just sign in to the forums using my verizon account username and had no redirection to another page.  (as noted above, this afternoon this issue was fixed for me)
    Oh and worth a mention, when I try to use my forum username, I get a password/user ID error.  When I try to obtain the password or user ID info, it says that I'm not an active user and to please activate my account.  But when I log in using my billing username, it automatically directs me to the username I use for the forums.  The reason they are both different is that I signed up a while ago for the billing username and then about 6 months later signed up for the forum username because it wouldn't let me using my existing billing username.
    Sorry if it sounds confusing!

Maybe you are looking for