Directory Services and Windows Question

If this question has been asked before or if it seems really simple I am sorry. I have a client that has a small windows work group of XP machines. They want to move to a client server infrastructure but are not interested in the headaches involved in Windows licenses and have asked me about OS X Server on a Mac Mini. My question is if I create the users in the Mac server directory services can they use those usernames and passwords to log into their machines essentially making the Mac Mini run as a "Domain Controller" role or would those usernames and password only be used to authenticate to resources hosted on the Mini?
T

Actually, the same problems that existed in ARD 2 still exist in ARD 3 and make it difficult to make this useful with ActiveDirectory (but are not problematic in OpenDirectory). That problem is that ARD looks for a group named "ard_admin" (and others for other purposes), and when you make a group in AD it always gets prepended with your domain name (ie: DOMAINNAME\ard_admin).
The only way of handling this with ARD 2 was to create a local group named ard_admin and add the network users to it, or nest a group, but that only works with 10.4.3+. I asked this question to the project lead for ARD at Apple, and he dismissed this as a "OS issue"... not what I wanted to hear.
There is a work-arround for ARD 3 where you manually change the com.apple.remotedesktop preferences to include other groups, but this will only work if you do it manually for every computer unless you have OpenDirectory. The instructions for this are in the ARD 3 manual (page 62).

Similar Messages

  • Directory services and windows 2003

    hello all i am new to the world of solaris. So the trouble is that we have a sunfire and i installed directory services 5.2 but windows 2003 refuse to join the domain at all... the sunfire box is in nat and there's an entry in the nat dns server. the question is: is it really possible for a win box to join the solaris ds? or only other solaris boxes can do it?

    Dear Andreas:
    I have read that:
    Hello together,
    I think I've got a solution for my
    Real-Time-LDAP-Password-Check. T was right there is a BSA package,
    which exectly do this but it is not available through the website
    or any download.
    For this you don't need a NTLM Server running or a reverse
    proxy for user authentication. It simply checks over the LDAP port
    to your LDAP server and
    returns if the login is granted through the LDAP password ior
    not.
    Yesterday I spoke to a Breeze dev. and he sent me these
    scripts. He said they will be already implemented into the next
    Breeze version but will also work with Breeze 6.
    When some is interested in this solution please send me pm
    with your email adress and I will send the zip file to you.
    Regards,
    Andreas
    We are an spanish company specilized in developing PDF forms
    and other type of applications and also involved with Adobe,
    specially in Connect.
    I will appreciate if you can send me the zip file to solve
    the LDAP question.
    My email is [email protected]
    Thanks in advance.
    Desirée

  • Diff b/w Web service and window service

    What is the difference between web service and window service, whether the both are same or not, Give some explain about that each one and give some examples also.

    An XML Web service is a component that implements program
    logic and provides functionality for diseparate
    applications. These applications use standard protocols,
    such as HTTP, XML, and SOAP, to access the functionality.
    XML Web services use XML-based messaging to send and
    receive data, which enables heterogeneous applications to
    interoperate with each other. You can use XML Web services
    to integrate applications that are written in different
    programming languages and deployed on different platforms.
    In addition, you can deploy XML Web services within an
    intranet as well as on the Internet. While the Internet
    brings users closer to organizations, XML Web services
    allow organizations to integrate their applications.
    A Windows service starts much before any user logs in to
    the system (if it has been setup to start at boot up
    process). A Windows service can also be setup in such a way
    that it requires a user to start it manually ? the ultimate
    customization!
    Windows services run as background processes. These
    applications do not have a user interface, which makes them
    ideal for tasks that do not require any user interaction.
    You can install a Windows service on any server or computer
    that is running Windows 2000, Windows XP, or Windows NT.
    You can also specify a Windows service to run in the
    security context of a specific user account that is
    different from the logged on user account or the default
    computer account. For example, you can create a Windows
    service to monitor performance counter data and react to
    threshold values in a database.

  • What is "Directory Service" and why does it "use up 194%" ?

    What is "Directory Service" and why does it "use up 194%" on my istat CPU app monitor?
    Ever since I installed Leopard I've noticed this happening more and more - especially when I install an external hard drive or unplug my ethernet line - this is plainly weird and never happened under Tiger - the temperature shoots up to 84° also - I always to a restart to get rid of it but it's kind of worrying....anybody have any ideas?
    Message was edited by: Host

    Had this happen myself.
    It does have something to do with Spotlight/searching. Should go away after a while, or so I have heard from other users, 'cause it hasn't stopped driving me and my fan mad yet.
    Am going to have my MacBook index and follow-up on indexing and whatever else it feels is necessary to finally allow me to search in peace over the weekend while locking it away where I can't hear it.
    Hopefully that does the trick.
    If it wasn't for things working better/faster and most things looking better I might actually consider taking Leopard off again ...

  • Windows Server Essentials Storage Service and Windows Server Essentials Email Service eating memory

    Hi
    I have Windows Server 2012 R2 with Essentials Role installed. I have integrated server with Azure AD, Office 365 and Intune using the Essentials Dashboard integration tools.
    I can see that Windows Server Essentials Storage Service and Windows Server Essentials Email Service are eating much of server memory. What are these services for and why they use a lot of memory? Specially I am wondering about the Email Service. What is
    it for? Server dont handle email in any way so what is this service for? I tried to google it but found nothing.

    Hi
    I have 6GB of memory.
    When I check from Resource Monitor, for Essentials Storage Service, Commit Set is 4G and Working Set is 1,8G.
    Email Service Commit is about 1,8G and Working Set is just below 1G.
    So these two services are reserving almost all the memory.
    Memory is about 85-90% in use all the time, whether it be night or day.
    Server have about 12 users and at the office there is about 2-6 person at the time. Link between server and office is 100M. There are no other services installed but the basic ones. We use server for AD (O365 integration) and file shares. Traffic in File
    Shares are not big. They are more kind of an warehouse that in busy day-to-day use.
    This server is about couple of months old and it has been like this since it was fired up.
    I dont know what to look for from Event Logs and Process Monitor dont give me anything useful.

  • How can I synchronize directory service and bpm engine?

    hi,all
    I'm using bpm WL 10.3.1 with papi.
    Now I want to assign role to participant in process.
    I use DirHumanParticipant.setRolesAssignment() and DirHumanParticipant.update() to assign role dynamically.
    But it does not work.
    Actually, when I log in to the webconsole. The role has assigned to the participant.
    but when I log in to the workspace. I cannot find expect task in my work items.
    In the history view I can find it.
    Then I remove the role that i assigned previous and assign again in the webconsole.
    After that I log in to the workspace, now i can get the expect task in my work items.
    I think it need to synchronize between directory service and bpm engine. but I don't how to do it?
    Is there any way to do it with some api?
    thanks
    regards
    kenshin

    Hi!
    Here is how it works:
    1. The engine polls the directory periodically and checks if some changes were made to the participant role assignments.
    The poller frequency is configured on the Process Administrator.
    2. When a change is detected, the engine updates the information on the engine partcipant cache.
    However, if the participant is logged it, the update operation is postponed until the participant logs off.
    3. After checking the directory, the engine directory poller sends a notification to all the PAPI clients (including the Workspace)
    and the workspace side poller updates the participant assignment you see in the workspace.
    The notification mechanism is using the JMS Topic on the JEE version of the BPM.
    - First of all verify you are logged out when you add/remove the role.
    After that, wait 1 minute or the time specified in the Process Admin as the directory poller frequency.
    - Verify the JMS Topic is defined correctly. Check the engine log for any JMS Topic related error.
    Hope it helps.

  • HP LASERJET SERVICE and WINDOWS 7 PRO CRASH

    My windows 7 pro 64bit will lock up every so often and when I restart and run the Windows reliability monitor  there's always a critical error "HP Laserjet Service" which stopped working right at the same time as  the crash.
    In msconfig/services the box is checked and the status is stopped.
    That critical error message is always the only one listed by the way.
    Printer is the P1102W and I'm only using the wifi.
    Printer always works fine.
    Appreciate any suggestions.
    This question was solved.
    View Solution.

    Hi aelumley , Sorry to hear you are still having issues. After reinstalling the printer, the icon is now grayed out.
    Did you try turning the Laserjet Services in the Startup items back on again to see if that would fix this issue?
    Download and run the Print and Scan Doctor. It will diagnose the issue and might automatically resolve it. Find and fix common printer problems using HP diagnostic tools for Windows?
    I would run the Microsoft Fix It Tool to see if it will help.
    Diagnose and repair Windows File and Folder Problems automatically.
    Sfc /scannow will inspect all of the important Windows files on your computer, including Windows DLL files. If System File Checker finds an issue with any of these protected files, it will replace it.
    How To Use SFC /Scannow to Repair Windows System Files.
    If you have another computer, install the printer on it to see if you have the same results.
    Please let me know the outcome.
    Thank You.
    Please click “Accept as Solution ” if you feel my post solved your issue, it will help others find the solution.
    Click the “Kudos Thumbs Up" on the right to say “Thanks” for helping!
    Gemini02
    I work on behalf of HP

  • Bad customer service and warranty question.

    I called a couple days ago to see if could get my lcd bezel fixed, since it just started to crack and the bottom (basically the back of the lid when it's close)  for no reason at all. if i dropped it or did something to break it, i wouldn;t even bother calling. but it just started doing this naturally so i;m worried that there might be a bigger problem. i didn't think it was a big deal, and i do have a warrenty for a reason, so i thought i might get it fixed before it runs out and the problem gets worse.
    To be clear, i have the warranty that came with the machine. I called Lenovo expecting the same great service, but i got something completely different. I explained my problem and the women just started speaking at a really loud voice "it's going to cost you $995 to get it fixed, Do you still want to do that" I told her that i thought that my machine is still under warranty and she told me that is not covered.
    Since i have my thinkvantage tool open to get the model number and everything, i can see that i have 60+ days left. so i told her that and she comes back with "let me check your warranty." I'm a very patient person and rarely get mad, but at this point i was kind of confused and mad that she would just give me an answer without checking. she told me that i was not covered with accidental damage and i don't think i am.  But when i told her that the damage is not by accident, she got very defensive and told me a lot of stuff i couldn't make out. such as "it will still cost you 995 dollars and it would just be a waste of time to send in your machine and get it sent back. and that all damage plastic wise, will count as accidental damange and if there is no damage, they send it back, it;s still gonna cost 995 dollars.  This is all i could understand, since she was being loud and her voiced cracked over the phone.
    To replace a piece of pastic should not cost anywhere near 995 with or without warranty
    so i guess after complaning for this long, here is the real question.
    Is that true, that the warranty that you get when you buy a machine does not cover plastic damage because it would be part of accidental and you do not get accidental protection when you buy the machine, even when the damage was not the result of an accident. this is not even a week after they replaced my power adapter and HDD.
    I do plan to call back, but wanted to see if i can get a straight forward answer before i do.
    Thanks

    Escalate your complaint to the customer service satisfaction officer. 
    There is no warranty agreement in your warranty booklet, which explicitly states that case or plastics fitting is not covered. In such cases, one should assume that it is covered, provided that you did not damage the part yourself.
    Regards,
    Jin Li
    May this year, be the year of 'DO'!
    I am a volunteer, and not a paid staff of Lenovo or Microsoft

  • Mac and Windows Question

    I don't know if this is the right place for this question, but it's the closest thing I could find to Apple software. As of now, I only own a Dell pc. When I can fork up enough money, I'm going to get a Mac, but until then, I was wondering if there was a name to the software that changes the screen according to the mouse's position. For example, if you move the mouse pointer into the upper right hand corner, all of the windows minimize, and if you put it in the bottom left, then you can choose which window you want to open. If anyone knows, please let me know. If anyone, on the off-chance, knows of a program that can do the same for windows, that would also be greatly appreciated. I wasn't sure if that was software or just part of the mac system, but it's really convenient and I'd appreciate it if someone got back to me. Thanks a bunch,
    Ben

    Hi Ben
    Welcome to the Apple Discussions!
    That is called Exposé, and it's part of OS X.
    There are a few lookalike apps for Windows - here are a couple:
    Windows Exposer
    TopDesk
    Matt

  • Split Directory Packaging and Deployment Question

    Hello Rob Woollen and All,
    I have a question about packaging and deployment with the "split directory structure"
    in WebLogic Server 8.1.
    Specifically, how does one go about deciding which classes to put in myEnterpriseApp/myWebApp/WEB-INF/classes,
    versus myEnterpriseApp/myEjbModule, versus myEnterpriseApp/APP-INF/classes?
    I think the answer to the first part is easy enough: if there are classes depended
    on by, say, the servlets in a web app, but not depended on anywhere else in the
    enterprise app, then those classes should go in WEB-INF/classes.
    It's the other part of the question that gives me trouble. I use local interfaces
    on my session beans. Let's say I have a domain object class returned from a session
    bean method and depended on by the web app. If I put that domain object class
    under myEnterpriseApp/myEjbModule, then the web app can see it by virtue of the
    classloader arrangement.
    But the wlcompile Ant target supposedly compiles stuff to build/APP-INF/classes.
    What stuff? How does it decide? I haven't experimented and empirically observed
    yet, but I couldn't find the answer in the documentation and tutorials. Is it
    looking for java source files under src/myEnterpriseApp but not under myWebApp
    or myEjbModule? In general, does BEA have any recommendations in this area?
    Thanks,
    Randy

    "Randy Stafford" <[email protected]> wrote in message
    news:[email protected]...
    >
    Hi Mark,
    Thanks for the reply. I don't have 8.1 installed yet, so I can'tempirically
    observe the example's behavior. But I downloaded the example andinspected the
    code. It answers some, but not all, of my questions.Where to start.
    In 8.1 we have made optimizations to J2EE packaging. Mostly this is about
    not having to use manifest classpath's to do sharing of of common classes.
    MF Cp's are a pain to configure. You put your classes in one location in
    the ear and then EVERY module has to have a MF CP entry pointing to that
    location, and then you actually have N number of classes loaded per module.
    The mechanism to share classes across all modules is APP-INF/lib and
    APP-INF/classes. The benefit is that APP-INF is shared across all modules.
    So to your question below you could just put it in the EJB module, BUT if
    you have mutliple EJBs that you split into seperate modules your back tot
    the same issue. So APP-INF is just the simplist solution over-all.
    Split-dir is a specified way to lay out disk your src files
    Split-dir
    From code inspection, it looks like the JSP and EJB (therefore the web appmodule
    and EJB module) both depend on the AppUtils class, which is not inAPP-INF, but
    rather in a directory under the enterprise app directory that does notrepresent
    a web app module or EJB module. In the build file's compile target, is itthe
    wlcompile task invocation that causes compilation of AppUtils.java? Or isit
    the ant task invocation (with "build.appStartup" as the value of thetarget attribute)
    that causes compilation of AppUtils.java due to the dependency ofApplicationStartup
    on AppUtils? And what subdirectory of the build directory doesAppUtils.class
    end up in?
    Why not just put AppUtils.java in the EJB module? Both dependent moduleswould
    still be able to see it by virtue of the classloader arrangement. Doesputting
    it in outside of all dependent modules represent a convention that BEArecommends?
    >
    Finally, why not put applicationresource.properties in the same place asits user
    AppUtils.java?
    Thanks,
    Randy
    "Mark Griffith" <[email protected]> wrote:
    Randy:
    (Rob may post later, but here is my take)
    "Randy Stafford" <[email protected]> wrote in message
    news:[email protected]...
    Hello Rob Woollen and All,
    I have a question about packaging and deployment with the "split
    directory
    structure"
    in WebLogic Server 8.1.
    Specifically, how does one go about deciding which classes to put inmyEnterpriseApp/myWebApp/WEB-INF/classes,
    versus myEnterpriseApp/myEjbModule, versusmyEnterpriseApp/APP-INF/classes?
    I think the answer to the first part is easy enough: if there are
    classes
    depended
    on by, say, the servlets in a web app, but not depended on anywhereelse
    in the
    enterprise app, then those classes should go in WEB-INF/classes.
    It's the other part of the question that gives me trouble. I use localinterfaces
    on my session beans. Let's say I have a domain object class returnedfrom
    a session
    bean method and depended on by the web app. If I put that domain
    object
    class
    under myEnterpriseApp/myEjbModule, then the web app can see it by
    virtue
    of the
    classloader arrangement.
    But the wlcompile Ant target supposedly compiles stuff tobuild/APP-INF/classes.
    What stuff? How does it decide?wlcompile has a module factory. If a directory is claimed by a module
    factory then it is compiled by that specific module compiler. The rules
    for
    module definition follow the same J2EE formatting rules.
    So:
    /myejb/
    would be identified as a ebj module by:
    */myejb/meta-inf/ejb-jar.xml
    */myejb/myejb.ejb (EJBGen file)
    then src files (*.java) will be compiled to
    $BUILD_DIR/myejb/
    /myweb/
    would be identifid as a web module by:
    */myweb/WEB-INF/web.xml
    Also for webapps
    /myweb/WEB-INF/src/*.java
    will be compiled ot
    $BUILD_DIR/myweb/WEB-INF/classes
    We choose WEB-INF/src following the struts precedence.
    So a plain old module that has noting but .java files in it will go to
    $BUILD_DIR/APP-INF/classes
    If you have a jar of classes that you need to share across the entire
    ear,
    you would check it into your src tree at:
    $SRC_DIR/APP-INF/lib/mycommon.jar
    You can check out an example at:
    $BEA_HOME/weblogic81/samples/server/examples/src/examples/splitdir/helloWorl
    dEar
    Hope this helps.
    cheers
    mbg
    I haven't experimented and empirically observed
    yet, but I couldn't find the answer in the documentation and tutorials.Is it
    looking for java source files under src/myEnterpriseApp but not undermyWebApp
    or myEjbModule? In general, does BEA have any recommendations in thisarea?
    Thanks,
    Randy

  • Directory Server and windows clients

    Is it possible for a MS windows client to join a Domain on a Directory Server ver 5.2?

    Hello,
    with GPO you can't, there is no special setting for this. Adding the scheduled task is the way to do it. But the scheduled task can be added with startup scripts.
    Create shutdown.cmd for example with the following content:
    ;Create the scheduled task on remote workstation's
    if not exist %systemroot%\tasks\at1.job at 17:30 /every:m,t,w,th,f,s,su shutdown.exe /r /t 120 /c "This computer will shutdown and restart automatically, please close your open applications. Your Administrator." /f
    :Copy the shutdown.exe to remote workstation
    if not exist %systemroot%\system32\shutdown.exe copy "\\domainname\netlogon\shutdown.exe" "%systemroot%\system32\shutdown.exe"
    Keep in mind to replace domainname with your ones and to copy the shutdown.exe to the
    \\yourdomainname\netlogon folder.
    Best regards Meinolf Weber Disclaimer: This posting is provided "AS IS" with no warranties or guarantees , and confers no rights.

  • OSX Server for Directory Services and an Exchange Server

    I am about to purchase an Xserve. I only want to use this for authentication purposes (OpenLDAP, Kerberos, whatever).
    We are getting rid of Windows Small Business server, but want to keep using Exchange for our email (we will build a new server with Exchange, I am not going to try to keep Small Business).
    My network is half OSX clients, half Windows XP clients.
    My question is this:
    Is it possible to have all of my users in my Xserve and have Exchange get username/password information from an OSX server (our Xserver will be our primary controller)?
    Thanks,
    aaron
      Mac OS X (10.4.9)  

    Have you gotten anymore information regarding "MS Exchange Server"... A good portion of my office are on Macs, but they all use entourage, and I refuse.. and using webmail is a pain in the butt,
    have you found anyway to send mail externally from the network?

  • Contribute Publishing Services and Windows Server 2008

    Has anybody been able to install Contribute Publishing Services 1.11 on a 32-bit Windows Server 2008?  Any information would be greatly appreciated.

    I was able to get it "installed" by copying a previous installation from Windows Server 2003 to Windows Server 2008. Got a blog post about it here:
    http://onceuponans.blogspot.com/2009/04/installing-contribute-publishing.html
    I think our next rev of the website probably won't use Contribute any more. Too bad, really - I rather liked it.
    -Andy

  • LMS 4.1 Common Services and RME Question

    Hello,
    we are using Cisco LMS 4.1 and we going to deploy Cisco Security Manager 4.2 as well. Can CSM and LMS share RME and Common Services?
    thanks in advanced
    alex

    No that is not foreseen, so not supported. Use 2 servers.
    What can be done is having the DCR's in sync by having a common service as master and the other as slave.
    Cheers,
    Michel

  • LDAP as directory service and bind dn

    hi, i dont want to bind with the manager user for a dt subtree, but when i create acl for a entry with all permitions for his acl i have permisions problems to create groups and organizational units in administration proxy
    �i can only bind with a manager user?
    �how i must config another user diferent a manager (i delete acl in ldap thats can bind anonymous)?
    thanks

    You can bind with a user dn instead of a manager, however you will have to give the user enough rights to create and delete other users. The directory server manual should explain more on this.

Maybe you are looking for

  • Accounts Payable Trial Balance (including Cash Discount)  - printer

    Hello All, User is saying that when trying to run the Accounts Payable Trial Balance (including Cash Discount), they do not get the list of printers to choose from. How to add a printer so that it shows up while trying to run a report? Please help. C

  • LE: Problem with Bounce quality?

    Hey guys, I've been using LE for a while, but I'm just now noticing that after I bounce my tracks they sound completely different from what was playing from the application. Almost like someone or something sucked the life out of them. I've tried mes

  • I keep getting errors trying to burn AUDIO dvd:

    The attempt to burn a disc failed. An unknown error occurred (0xE00002CA) MBA MAC OS X 10.7.5 SAMSUNG SE-506 portable BD Writer Media: T DK DVD +R           SONY DVD +R Any suggestions? Thx.

  • Lightroom 2.7 exporting the wrong images

    Hi. I've been using Lightroom since the first beta, currently running LR2.7 on a MacBook Pro. I installed the new CS5 (Web Premium suite) a little more than a week ago, and I'm suddenly having problems exporting images to JPEG from Lightroom. Images

  • Within SQL*Plus, get error code of host command

    Hello everyone, I am currently writing an SQL*Plus (Oracle 10g) that has a big logic and somewhere in the middle, I have to call a host command, which is an C++ function. I call it using SQL> HOST cd SQL> HOST cd bins SQL> HOST ./my_procedureBut, I n