How to authenticate with OD on Network Accounts outside of a LAN

Does anybody have a solution for allowing a mac computer client to connect and authenticate against my mac mini OD server outside of its LAN. This is so they can access their network accounts. On the laptop at a friends house using snow leopard, I added successfully the network account server which is running at home to their system. When I log out the user accounts appear however upon passwod authentication, the screen just shakes its head.
What can be done so that my friend can be able to log in.
I could sure use some help from all you lovely people out there. Thank You for your time and God Bless.
Joe

Have you considered enabling the account to be Mobile Accounts? that way even when the network is down, say on an airplane or where ever, they could sitll log into their computers?
Have you tried turning off the firewall? or DMZ the Mac Server? (incase of a port issue) if it works, then you know where to look.
I assume you have: 389, 636, 625, 2336, 4120, 749, 88, 4511
Along the same lines, do you know if they're directly online; or behind a firewall from where ever they're trying to conenct?
Is the OD set to accept all kind of authetication? or only specific porticals? KDC vs Hash, extra. if some login methods are disabled, have you tried enabling them?
Also you could try looking at the secure.log to see if it's spitting out an error message.
you could also try turning on debugging, and seeing what shows up in the log. Mac OS X Server v10.5, 10.6: Enabling Directory Service debug logging

Similar Messages

  • How do I make a new network account visible to a client at login?

    I have just installed a new Leopard Server machine. It is an Open Directory master and I have created a number of new accounts with network home folders. On my client machines I have identified that OD server using the Directory Utility program. Yet when I log in from any of my Leopard client machines I only see local accounts, not the network accounts.
    What am I missing?
    Ian.
    --

    Did you set up your accounts on the server to be mobile or network home accounts?
    I believe they are network home accounts. For example, for the user fred I have a folder on the server hard disk called /Volumes/disk1/Users/fred, which I created as the home folder when I created the user account.
    There is a folder called "fred" visible at /Network/Servers/penguin.example.com/Users/fred/ from the client computers.
    DId you set your sharepoints up to be automount?
    I believe so. In the above example the folder /Volumes/disk1/Users is marked as a share with "Enable automount" selected and marked "Use for User home folders".
    Did you bind your computer in DIrectory Utility?
    Well, on each of the client computers I have used the Directory Utility program to connect to the OD server. Does that constitute binding?
    Is DNS resolving properly?
    Definitely. I can ping all of the computers, including the new server, from any of the computers on the network.
    I should have mentioned that I had done these things - sorry about that. Anyway, I'm stumped. Anything else to try?
    Ian.
    --

  • How to authenticate with Sharepoint using rest service and jquery

    Hi ,
    I have a requirement where i need to authenticate with  sharepoint from ios and android app using rest services and jquery.
    Can anyone help me in this .
    Thanks in Advance.
    Regards,
    Srinath 

    Hi,
    According to your post, my understanding is that you want to access SharePoint data from IOS and Android app.
    The following materials for your reference:
    How can I authenticate SharePoint REST calls from Android App?
    http://stackoverflow.com/questions/24673373/how-can-i-authenticate-sharepoint-rest-calls-from-android-app
    Calling RESTful services from your Android app
    http://www.techrepublic.com/blog/software-engineer/calling-restful-services-from-your-android-app/
    SharePoint 2013 REST API in iOS
    http://omicron-llama.co.uk/2012/12/13/sharepoint-2013-rest-api-in-ios/
    Best Regards
    Dennis Guo
    TechNet Community Support

  • How to authenticate with MSISDN using REST style in openSSO

    I need authenticate with MSISDN using the REST style in openSSO.
    So, can anybody tells how to implement it? I am aware of implementing with username password by calling the URL as /opensso/identity/authenticate. If i want to authenticate using MSISDN how we have do it using REST in openSSO 8.0.

    Hi Vijay,
    I hope there is something related to MSISDN in the administrator Guide and Administrator Reference. Administrator reference contains the MSDN attribute lists. I found that in the Developer's guide, there is a documentation related to customising authentication modules where we can specify MSISDN authentication module. I guess there is a msisdn.xml file which can be can be configured.
    I am a new bee on this front. But I guess, we will find it out together. To what extent you have done to configure. Could you give me little detail about it. ;)
    Your message too short for the forum.
    Manila

  • How to Authenticate with sharepoint using rest services

    I have a requirement where i need to authenticate with  sharepoint from ios and android app using rest services and jquery.
    Can anyone help me in this .

    You can use OAuth for authentication.
    http://msdn.microsoft.com/en-us/library/office/fp142382%28v=office.15%29.aspx

  • How do I stop firefox from opening a seperate window whenever I click on a link to log into a different website with my social network account?

    Whenever I try to log into a website (i.e. King of the Web.com,etc.) with my facebook account, a new window will appear behind my current window and when I click on it, it never shows up even when I minimize the current website, how do I get the new window to show so I can log in and vote for Tre Melvin? (P.S. vote for Tre!)

    I think Facebook uses its facebook.net domain for this function. When you have a problem with one particular site, a good "first thing to try" is clearing your Firefox cache and deleting your saved cookies for the site.
    1. Clear Firefox's Cache
    orange Firefox button ''or'' Tools menu > Options > Advanced
    On the Network mini-tab > Offline Storage : "Clear Now"
    2. If needed, delete the site's cookies here
    Right-click this page and choose View Page Info > Security > "View Cookies"
    In the search box at the top of that dialog, change the domain to facebook.net and remove the site's cookies.
    Then try using the login with FB feature again. Does it work?

  • How can you 'block' your Iphone, if somebody stole it? so that they can not mess with your social network accounts or anything alike?

    Yesterday night, somebody stole my Iphone.
    Now I'm trying to safe my privacy and everything trough itunes. But how can I 'block' the Iphone, so the thief won't be able to access my phone, or at least not my apps and stuff? is there anyway, -besides trying the impossible and getting it back- I can do??
    I'd really apprecciate any tipp and help at this one!!!

    What To Do If Your iDevice or Computer Is Lost Or Stolen
    iPhone, iPod Touch, and iPad
    If you activated Find My Phone before it was lost or stolen, you can track it only if Wi-Fi is enabled on the device. What you cannot do is track your device using a serial number or other identifying number. You cannot expect Apple or anyone else to find your device for you. You cannot recover your loss unless you insure your device for such loss. It is not covered by your warranty.
    If your iPhone, iPod, iPod Touch, or iPad is lost or stolen what do you do? There are things you should have done in advance - before you lost it or it was stolen - and some things to do after the fact. Here are some suggestions:
    This link, Re: Help! I misplaced / lost my iPhone 5 today morning in delta Chelsea hotel downtown an I am not able to track it. Please help!, has some good advice regarding your options when your iDevice is lost or stolen.
      1. Reporting a lost or stolen Apple product
      2. Find my lost iPod Touch
      3. AT&T. Sprint, and Verizon can block stolen phones/tablets
      4. What-To-Do-When-Iphone-Is-Stolen
      5. iCloud- Use Lost Mode
      6. What to do if your iOS device is lost or stolen
      7. 6 Ways to Track and Recover Your Lost/Stolen iPhone
      8. Find My iPhone
      9. Report Stolen iPad | Stolen Lost Found Online
    It pays to be proactive by following the advice on using Find My Phone before you lose your device:
      1. Find My iPhone
      2. Setup your iDevice on iCloud
      3. OS X Lion/Mountain Lion- About Find My Mac
      4. How To Set Up Free Find Your iPhone (Even on Unsupported Devices)
    Mac Computer
           Find My Mac can be used from Find My Phone at iCloud.com and via Find
           My Phone on your iDevice.
          The following is third-party anti-theft software:
               1.  STEM 2.1
               2.  MacPhoneHome 3.5
               3.  MacTrack 7.5.0
               4.  VUWER 1.7
               5.  Sneaky Bastar* 0.2.0
               6.  Undercover 5.1.1
               7.  LoJack for Laptops
               8. Hidden 2.0
               9. Prey 0.6.2

  • How to authenticate with CUPS ?

    Hello.
    At my university there is a print service and it's theoretically possible to send print jobs from home. In order to do this I have to set up a new printer as a 'windows printer via samba'. The problem is, that I have to authenticate, but I simply don't know how to send authentication information using CUPS.
    There is a manual from the central computer service of my university. It uses Ubuntu to set up the printer connection and they can authenticate, but I don't know how I can accomplish this with Arch.
    Manual (written in german):
    http://www.univie.ac.at/ZID/uprint-linux/
    Moreover the connection should be secure. Does cups support a secure authentication?
    Greetings,
    hauntergeist

    Ok, I figured out how to send a username and a password via CUPS to authenticate to the printer. It works like this
    smb://username:password@workgroup/server/printersharename
    smb://username:password@server/printersharename
    and can be found here, at the Samba docs.
    I went to my university, logged into the wireless network and tested it. I was able to print my first page via u:pring! Hooray! \o/
    The problem, that I still can't access http://localhost:631/ remains. Damnit, why does it always redirect me to www.localhost.com, which doesn't exist, when I am in the university's network?!?
    The next thing I want to try is to print a test page from my dormitory to prove that I can print via CUPS and VPN.
    Security issue: I think that the username and password are sent as clear text to the printer, so sending a print job via the a normal, non-vpn Internet connection to the printer is unsecure.
    VPN should be secure, isn't it?
    Greetz,
    haunted

  • How to deal with a shared network connection when installing 10 EX

    I am in the process of setting up a Virtual PC XP environment on my Vista Business machine to load Oracle EX in the virtual environment. I am having an issue of receiving a shared network connection with my broadband wireless card within the virtual XP SP3 environment, which Internet access is required for the Oracle EX installation. I checked out a couple tech sites and could not find a solution. I might have to get an Internet access at home from TWC.
    How to resolve this conflict? Thanks.
    Edited by: user10368779 on Aug 27, 2009 2:09 PM

    I am not sure how +"I am having an issue of receiving a shared network connection with my broadband wireless card within the virtual XP SP3 environment"+ can be resolved on an Oracle forum? There are probalby Windows experts on the forum but I would personally aim for a Windows forum.
    You may want to double check if Oracle XE is even running in a Virtual PC environment before starting this exercise.
    -Andyt

  • How to authenticate with certificate?

    I wanna try to build a more secure LAN. I want every client (wired/wireless) to connect the network used a certificate not a user/password pair.
    But now, as i am a newbie, I don't know what to choose between TACACS+ and RADIUS. Because I have a Mac mini, maybe RADIUS is more suitable, but i don't know how to establish the CA.
    Any help or suggestion will be appreciated!

    We most typically do this in the context of implementing a product like Cisco's Identity Services Engine (ISE). ISE uses 802.1x and has the ability to check clients for things like a certificate during the authentication / posture assessment / remediation process.
    It also acts as a RADIUS server and can dynamically push out Change of Authorization (CoA) to the authenticator (i.e switch or Wireless controller) in order to control things like client VLAN assignment and any access-lists you may want to apply.
    On the client side, a supplicant is used to interact with the authenticator. You can use native supplicants from OS X or Windows etc. but we generally recommend use of Cisco's AnyConnect Secure Mobility client with its Network Access Module (NAM) as it's much more full-featured for that purpose.
    You could also do 802.1x with certificate authentication and use a different backend authentication server (like a regular Cisco ACS or Microsoft Network Policy Server) but you would just get more basic authentication vs. the rich functionality ISE gives (albeit ISE costs a lot more ;) ).
    Have a look at this Youtube video for an example of setting up certificate authentication on ACS: 
         https://www.youtube.com/watch?v=U7qWJ7bIMHA

  • How do I remove a wifi network account from iMac? Or how do I encrpyt an open wifi network account to make it secure?

    Somehow a wifi network connection  has been created either on my airport router or iMac or iPad which is non secured, I.e. Open. I cannot workout how to delete it or make it a secure connection. My concern is that other users may able to access my computers via this open wifi connection.
    What can I do to correct this?

    click on the wifi icon and go all the way down to network preference click and open it once you on network window on the bottom right there is a advance icon click that then you should be able to delete all the network that your mac is remember.
    hope this is help.

  • How to publish with my iOS Dev Account ?

    Hi there,
    I wrote an iBooks and I want to publish it on the iBooks store but i can't connect to iTunes Connect. It says " The iTunes Store account entered is already being used for an iTunes Connect account that distributes Apps. To continue with this application, you must enter a different iTunes account. "
    May i create another account just for that ?
    Thanks in advance for your answer.

    i had the same question and here is an answer supplied by KT for the same question in another thread -
    the question was -
    Can I use my iTunes Connect account associated with my iOS Developers license to publish to the iBookstore?
    and KT answered -
    No, sorry
    Separate.
    Log out from one...log in to the other and use Safari's 'Empty Cache' menu to help clear the cruft if you stumble.

  • How to authenticate with UTL_SMTP to smtp-msa server

    Hi all,
    I'm trying to create a package which send html mails.
    This package use utl_smtp package to send mails and it works fine with a standard smtp server like smtp.orange.fr (I'm in France). Now I would like to use another smtp server (smtp-msa.orange.fr) but this one needs an authentication. How can I do this with my Oracle package ?
    My database where stored package is a 11g database.
    Thank you.
    Sis2b.

    I saw something like:
    utl_smtp.command(l_connection, 'AUTH LOGIN');
    utl_smtp.command(l_connection, utl_encode.base64_encode(utl_raw.cast_to_raw('mymaillogin')));
    utl_smtp.command(l_connection, utl_encode.base64_encode(utl_raw.cast_to_raw('mypassword')));
    But when I try to use it, I have that error:
    begin
    ERREUR Ó la ligne 1 :
    ORA-20000: send_html_email:ORA-20000: html_email:ORA-29279: erreur permanente
    SMTP : 535 5.7.0 Error: authentication failed: authentication failure
    ORA-06512: Ó "SUPER.MAIL_PKG", ligne 32
    ORA-06512: Ó ligne 2
    I don't know why ...
    An idea please ?
    sis2b.

  • Network Account Cannot Log On

    New, fresh install of 10.8.2 OS X Server. DHCP, DNS, Open Directory, File Sharing all working. Server hostname is set to myserver.private. Two users are created:
    test1 (and other accounts) has a network home, on AFP-shared Users, enabled for Home Directories
    test2 home is set to Local Only
    On an MBP 10.8.2, successfully joined to myserver.private, I try to log-in with those two network accounts. One works, the other does not:
    test2 is able to log-on without a problem, log-out, and log-on, and so on,
    test1 seems to authenticate, but cannot log on, displays message "You are unable to log in to the user account "test1" at this time. Logging in to the account failed because an error occurred."
    After failing with test1, test2 will also produce the same error, until I log-in and log-out successfully with a local MBP account, or it has been rebooted.
    The only error related to test1 that I can see in the Console logs is:
    authorizationhost[1197]: ERROR | -[HomeDirMounter mountNetworkHomeWithURL:attributes:dirPath:username:] | PremountHomeDirectoryWithAuthentication( url=afp://myserver.private/Users, homedir=/Network/Servers/myserver.private/Users/test1, name=test1 ) returned 64
    Now, if I change test1 home directory setting (using Server.app) to "Local Only", I will be able to log-in on the MBP, however no home directory is provided (it serves the root of the local file system). If I log-out, and then use the Server.app to change it back to the previously set network home, I will be able to log-in with this account on the MBP with test1, but not with any other accounts that have a network home directory.
    Any ideas why I am getting the "You are unable to log in" error in the first place? Many thanks for any hints...

    It seems that the problem is that LS cannot prompt you for connection requests during the very early login stage, ie. when you are still at the login window, so the connection gets rejected and the login fails.
    If you disable the LS then upon first login you will get a dialog from LS saying that there were connection attempts during login, and allow you to verfiy them, I tried it now on the second mac, and it seems that all that matters is the NetAuthSysAgent - allow outgoing connections to domain yourdomainname, but this is a rule of the user you are logging into!

  • Enabling Fast User Schwitchin for more than 2 network account

    Hello,
    My Fast User Schwitching is enabled
    When I log into an iMac, with a network account, at the right top corner, I can see black personn (icon) from where I see the local Admin account and the netowrk account that I use.
    Always from the balck person icon, I can click on Login Window, and then I have the possiblity to log into a third.
    But at this time, when I try to be log with the second network account I got that error message :
    "Your are unable to log in to the user account this time. Login in to the account failed bevauce an error accured"
    But when I log off the first network account, I can log with the any other account.
    In resume, only one local account and one network account can be log. Not 2 network account.
    Any idea why, and how can I switch between 2 or more network account?
    Many thank

    Any idea, it will help?

Maybe you are looking for

  • Maintain Varient

    Dear all What is the procedure to maintain Form Varient for Witholding tax Report. I'm getting following error: Variant SAP&TH_WTH_REP of program RFIDYYWT is not the current version Message no. DB634 Diagnosis You attempted to start report RFIDYYWT u

  • E-Mailing a PDF Form and not an .xml file

    I have created a PDF form for staff to request time off.  The form is to be emailed to the Manager for approval.  I used the "Submit by E-Mail" button, however, when I hit the Submit by E-Mail button, it submits an .xml file.  I have looked through t

  • InDesign CS5 won't package links. tried trashing pref and saving to idml. HELP

    I've read some threads and tried trashing my preferences as well as exporting the file(s) to idml and going from there but I still get the error message that it cannot package the necessary links. I tested a file with just one link that I recently wo

  • Can I use Datapump for replication of Delta from one database to another

    Good Morning Experts, I would like to know if can we use Data Pump (expdp and impdp) for replication between two database only for delta and not for complete database on daily basis and how? Regards, MS

  • Using an alias

    Hi, we have a composite key on a few of our tables. I was wondering what would be the best approach to see if a record from the one table exists in the other, and I wanted to use an alias: select col1||''|col2||''||col3||''||col4 as id from table1 wh