Lion Server won't display AD imported users

I have a Lion Server running 10.7.5 on a Mid 2011 Mac Mini Server, the server is bound to our Windows 2008 domain and the server is used to manage iOS device via Profile Manager as well as a suite of iMacs via Open Directory and Work Group Manager.
As of last week everything with the server was working perfectly (well it was after we opened up the necessary ports) I was able to enrol and manage devices and import AD users in to the relevant Profile Manager groups and assign the group a iOS Configuration Profile.
As of yesteraday all previously imported users don't show up within the Server App, I can import new users and add them to groups but previous users don't show up in the Users list.
If I check group membership the previous users are there within the Server App if I hover over the users I get their UserID and Node information from AD. If I look in Work Group Manager and check group members the membrs show up as Not Found.
As a result of this I am unable to enrol any new devices with Profile Manager or manage the current devices trying to lock devices fails and so does trying to enrol new devices.
Nothing has been changed on the server or our firewall, the server is still bound to AD and both LDAP and Open Directory are working fine. I can test the AD bind with dscl /Search –read /Users/username and get valid output.
Does anyone have any advice or pointers for me so that I can trouble shoot this issue please?
Thanks

I have a Lion Server running 10.7.5 on a Mid 2011 Mac Mini Server, the server is bound to our Windows 2008 domain and the server is used to manage iOS device via Profile Manager as well as a suite of iMacs via Open Directory and Work Group Manager.
As of last week everything with the server was working perfectly (well it was after we opened up the necessary ports) I was able to enrol and manage devices and import AD users in to the relevant Profile Manager groups and assign the group a iOS Configuration Profile.
As of yesteraday all previously imported users don't show up within the Server App, I can import new users and add them to groups but previous users don't show up in the Users list.
If I check group membership the previous users are there within the Server App if I hover over the users I get their UserID and Node information from AD. If I look in Work Group Manager and check group members the membrs show up as Not Found.
As a result of this I am unable to enrol any new devices with Profile Manager or manage the current devices trying to lock devices fails and so does trying to enrol new devices.
Nothing has been changed on the server or our firewall, the server is still bound to AD and both LDAP and Open Directory are working fine. I can test the AD bind with dscl /Search –read /Users/username and get valid output.
Does anyone have any advice or pointers for me so that I can trouble shoot this issue please?
Thanks

Similar Messages

  • Lion Server Won't Accept Password After New Motherboard Installed

    We got a mac mini with Lion Server installed on it. The motherboard went bad so we took it back, and they put in the new motherboard. We couldn't log into the computer after that for some reason so we reinstalled it using the Time Machine backup we had (running from the other drive). Then we were able to log in using our admin password. Now the connecct to server won't work, even though we're trying to connect to ourselves, which should us the admin password. We deleted all the keychain passwords but to no avail.
    Thoughts?

    We had to reinstall the software (using cmd-r when booting up) and then reload everything. That fixed it.

  • Mountain lion server won't take my password for install

    I have never run a server version of apple software.  I am wanting web sharing to host a small website.  This option was removed from sharing preferences in mountain lion. 
    I purchased server to avoid the need to use the command line interface.  It was requiring a password and I don't use a password on my system and it wouldn't take a null.  I am finding a similar problem with attempting to install server on mountain lion.
    When I run the mountain lion server installer it prompts for an administrator password.  I hit return as I set up the system without an administrator password.  This fails, but works with all other admin password requests for software installation.
    Any assistance would be appreciated.
    Best Regards,
    David Finell

    I just decided to setup passwords.  I just wanted to avoid the pain.  It worked.  Now to figure out how to share folders over the web in server.

  • My server profiles from lion server won't apply, problem with Caldav?

    I have setup lion server and am trying to apply a mobile profile but the target device keeps rejection the profile because of caldav authentication.
    Any Ideas on how to get this working?

    Have you set the DNS settings up for caldav server?
    Message was edited by: Tim Harris

  • DynamicLink Media Server won't let me import video for video frames to layers anymore.

    I am trying to load a video into photoshop cc (trial) via File > Import > Video Frames to Layers. It has worked in the past, but for some reason has seemed to have stopped working. I have uninstalled and reinstalled 3 times, and I've shut down my computer and rebooted it multiple times. I have also looked into the other questions listing "dynamiclink media server" as a problem and have tried to figure out what is wrong, or how to fix it. I have not been able to understand what I should do, so I was hoping someone would know how to help me.
    I have a macbook pro, which is about 2 years old. That's all they've told me to list, so thank you if you're able to help!!!

    Were you able to solve this problem?
    I am experiencing the same on
    Computer Environment:
    MacBook Pro Early 2011
    Graphics  AMD Radeon HD 6490M 256 MB
    Memory  16 GB 1333 MHz DDR3
    SSD with 512GB; about 81GB are still free
    Software:
    Mavericks  OS X 10.9.5
    Adobe Mastercollection CS6 Extended, 64bit.
    Including the Dynamic Link Media Server Update 1.0.1 are all individual apps up to date as of today, March 9 2015.
    Quicktime Player (v.10.3)
    I am also following this discussion Re: trying to import video"Could not complete your request because it is not the right kind of document"
    but non of the solutions under the post #4, #17 either did not work or applied to me, because they were suggested for a Windows user.
    Other notes:
    Bridge is not working at all. It launches, but crashes as soon as you see the workspace.
    Hence, Mini Bridge in Photoshop is also crashing.
    I do have all codecs for the videos, that I was trying to open, though.
    It cannot be an issue, that I have not enough RAM.
    After several other problems with After Effects, Premiere Pro and Media Encoder, which remain partly unsolved, this post starts form a fresh installation of the whole Adobe Suite. Even used the Cloud Cleaner Tool beforehand and made sure, all presets are from this CS6 version only.

  • Server won't display flash html/swf files

    I have a set of html/swf files that are "set" exacly like a dozen other nearly identical files that are served correctly by a hosting site but this set only displays a Flash Player upgrade icon on Foxpro and a blank page on IE.  My client Flash Player is the latest and works fine for the other dozen nearly identical files.  Of course the initiating fla file displays correctly with CS5.5 Flash itself.
    I've run out of ideas about what causes the problem and how to fix it.  Any ideas please?

    Thanks for your response.  I've resolved the problem.  This one troublesome file was not "set exactly".  The Publish Settings "output file" field designated a non-existent folder that was a remnant of a deleted folder.  Flash did it's best to sensibly respond.

  • Mac Mini Server won't display new web content

    I have my server up and running and my webpage (jacrouch.com) is up and running as well with coldfusion and SQL working. I have had some issues with a specific SWF file containing three links that disappears from several pages, but is working on one page. I have attempted to correct this and made changes to ensure that the SWF file is indeed working properly on my development machine.
    I uploaded the corrected files, but the web content does not change. I have completely deleted old content and ensured that the new files contain the corrections, but still the old files are the ones displayed on web.
    Any help is appreciated.

    OK. I just had a brainfart...
    apparently, when you run coldfusion on a server (this is my first time doing this), your server root folder as well as the coldfusion (wwwroot) root folder need to match. I just had to copy and paste my files into coldfusion and it runs great!

  • Login window won't display list of users

    I had 2 users, my main admin account and the default "guest".
    And it bugged me that each time I restarted the Macbook Air, unlike with my previous Macbooks or with my iMac, I didn't see a list of users to choose (and then enter password) but just a "name" and "password" fields.
    This appeared all of a sudden after an OS X update a few months ago. At first I thought it was a new thing... sorry I really can't remember WHICH update. But I know it wasn't like that when I bought the Macbook Air last January, and it appeared suddenly after a restart.
    At the time I panicked since I didn't remember right away what the heck my user name was. It's not like I use it regularly! Thankfully I remembered. And forgot all about it until the next reboot.
    And I finally decided to look into it, and realized it's a simple setting I should be able to change.
    But I can't!
    My settings were already set to "display a list of users" and NOT to "name and password".
    To make sure, I created a new "test" user (which I should've done as soon as I got the MBA anyways).
    I also tried selecting "name and password" option... hoping there was a mixup somewhere and the options were "cross-wired" somehow (ok, I didn't really believe it would work).
    And putting the option back to "users list".
    logging off inbetween each change.
    I shut the MBA off completely too.
    But nothing works.
    I still only get the name and password fields.
    My settings say one thing, reality shows another.
    It's a minor thing. But it bugs me big time.

    Triple-click anywhere in the line below to select it:
    defaults read /Library/Preferences/com.apple.loginwindow SHOWFULLNAME | open -f -a TextEdit
    Copy the selected text to the Clipboard (command-C).
    Launch the Terminal application in any of the following ways:
    ☞ Enter the first few letters of its name into a Spotlight search. Select it in the results (it should be at the top.)
    ☞ In the Finder, select Go ▹ Utilities from the menu bar, or press the key combination shift-command-U. The application is in the folder that opens.
    ☞ Open LaunchPad. Click Utilities, then Terminal in the icon grid.
    Paste into the Terminal window (command-V).
    A TextEdit window will open with the output of the command. Post the contents of that window, if any — the text, please, not a screenshot.
    If nothing appears in the TextEdit window, post the contents of the Terminal window.

  • After upgrading to Lion, Safari won't display Times font

    It just displays as a bunch of capital "A"s in square boxes. Is there a fix for this? Same behavior not happening in Chrome or Firefox.

    Try here Andy...    All I see is the letter "a": Apple Support Communities

  • Lion Server and 10.5 Clients....

    We're just setup a new Lion Server as OD Master and imported our users from our old OD using the "Restore" function within Server Admin.
    My test Lion client can login fine using a network account but when I try the same account from a 10.5 client I get the following error:
    You are unable to log in to the the user account "breilly"  at this time. Logging in to the account failed because an error occurred.
    When I checked the console logs I found this error:
    11/08/2011 14:21:02 authorizationhost[318] ERROR | -[HomeDirMounter mountNetworkHomeWithURL:attributes:dirPath:username:] | PremountHomeDirectoryWithAuthentication( url=afp://ncs-mac-od1.ncs.local/Staffhomes, homedir=/Network/Servers/ncs-mac-od1.ncs.local/Staffhomes/breilly, name=breilly ) returned 2
    It seems very odd that I can log in on a Lion client but not a 10.5 client
    Any help would be greatly appreciated.

    There is a simple way for unmanaged clients.
    To point an unmanaged client to your update server, enter the following command in terminal:
    sudo defaults write /Library/Preferences/com.apple.SoftwareUpdate CatalogURL http://<your_server>:8088/index-lion-snowleopard-leopard.merged-1.sucatalog
    (replace <your_server> with the dns name of your update server.  If the unmanaged client runs snowleopard or leopard, adjust the url accordingly. For snowleopard clients, remove the "lion-" part. For leopard clients, remove the "lion-snowleopard-" part

  • Does anyone know how to publish a site using Lion server.

    I have made a web site using I web and was trying to publish it using FTP and lion server but was quite sure were to find the server address and other required info.
    If anyone can help it'd be greatly appreciated.
    Thanks

    You shouldn't need to use ftp to publish a site when using a server, this is the whole point, that you are not uploading anywhere external, but are hosting yourself on a dedicated computer running a server.
    This is not really the place to ask.  There should be more forums here that are specially dedicated to Lion server issues.
    Try looking at the pages on the Apple site under info on Lion server and there should be a user manual for you to look at for Lion sever.  Try looking at this.
    This is an iWeb forum so not really the right place to ask questions regarding server issues.

  • Lion server wont kerberize to AD

    I can get Lion server to connect to AD without issue, but even after I set the server permissions in AD proper delegation rights, I still can Kerberize. Any ideas what to try? I reinstalled Lion and lion Server fresh again.

    Ok, I figured this out. Here's what I did:
    1. Bind Lion server to the 2003 AD
    2. Set up the server as an OD Master
    3. Set OD to SSL (I believe this is optional, but better secure than not)
    4. Bind client mac to AD.
    5. Bind client mac to lion server OD (Ldap3)
    6. Pull user from the AD on the Add User screen in Lion Server.
    7. Make group for user, add user to said group.
    Upon login with the AD user, it autheticated, and it added the user network folder to the dock.
    It still isn't pulling dock permissions, but I think that's just me needing to understand Profile Manager configurations better.
    The next step is to find a way to forward the local Documents folder to the network folder that's on the dock. That will be a different discussion.
    So in a nutshell, if you want your mac clients to authenticate to your windows AD, and pull permissions from Lion Server, the above should do the trick. Don't worry about Kerberizing or any of that junk.

  • OD client (lion server) safari crashes when downloading an email attachment

    I have a user who is having Safari and sometimes Finder crash whenever she downloads an email attachemnet from her iCloud account.  Shes signing into iCloud via Safari (v6.0), she wants to download a 1mb PDF and when ever she clicks save, it starts to download, you see the progress bar in the download manager, and then you get the spinning wheel of death.
    her user account is a OD account (lion server) with remote home folder.
    other users with the same config are not reporting the same problem.
    has anyone ells experienced this with OD user accounts?
    is she signs into icloud on a local user account the issue does not persist.
    please advise.

    Hi Kevin,
    So last night I updated to 10.7.5 and the issue persisted.
    I then went into the users Library and removed the following:
    - Safari folder
    - anything that had to do with Safari from teh cash folder
    - removed the Safari plist file from the prfrence folder
    This set the files and settings back to default, so things like home page, browsing history, etc. will go missing
    ...its like using Safari for the first time ...again.
    The good thing is this seems to have resolved the issue, i successfully downloaded PDFs and jpegs that previuosly crashed the system.  Time will tell but sofar my end users have not reported any crashes.

  • Restrict an internal website to a group under Lion Server?

    I have set up a Mac Pro as a very simple Lion Server, with just a handful of users and a single office group.  It is used primarily for file sharing and this works well.  The only services that are turned on are File Sharing and Web.  We have a series of private internal data and tools that are static computer-generated html, but updated regularly, with javascript for interaction.  I want to make the static pages available at a location like: services.domain.com/internal_tools/ with services.domain.com being the single Web Site shown in the Web Server pane.  I have no problem doing this and having it function -- but I want to restrict access to these pages to only the group. When I click on the pencil to alter the access to these pages, everything is greyed out -- I am not able to change "Who Can Access:" away from Anyone.
    For now, I don't want any other services running and I don't want to manage user's profiles.  I just want to limit access to these pages. I don't want to have to create a new website, I want to modify access to this location.
    We had a mini running Leopard Server previously, and it operated in exactly this way.  Is there a way to do it under Lion Server?

    Thanks Ajay,
    So you say that the enhancement spot can be used for the restriction of the Internal order type to Company codes.
    Thanks,
    Raja.

  • Lion Server, SL Client - list of users not displaying - only 'other'

    #1
    So I've been running a SL Server at home without (many!) problems. All SL clients connected to server just fine and you always got a list of users to log in from (as you'd expect).
    However, installed Lion Server from scratch on a my Mini Server (again without too much problems). All my client Macs (Macbook Air, Macbook, iMac - all core2duo etc) have been upgraded to Lion as well and they're all fine. You get a list of possible users to log on to - which is fine.
    However, I have one core duo (white) 2.0Ghz iMac which (obviously) is remaining with Snow Leopard client but does not display a list of users -- just Admin and 'Other. I've triped check the settings and bearing mind this was ok with SL Server, I can't figure out why this is. I even re-installed SL client on said iMac and I still get no list of users.
    I can log into the server using 'Other' i.e. specifiy full user name and password, so I know it is connecting to the lion server
    So I am confused as to whether its a Client or Server problem (I presume server) -- any ideas?
    #2
    Less of a serious problem, I am still getting the old (SL server) welcome message on all my Lion Clients logon screen (i.e. on the list of users) - how can this be if the 'welcome to snow leopard server' has been completely erased with Lion server? (I assumed the message was stored in pram but again, zapping it, does not change it)  I can't find in Lion server to config the welcome message either. Maybe zapping Pram of server? any ideas?
    Thanks in advance
    Rob

    Hi
    Managed Preferences are composited (combined) together and cached locally on client workstations. These are stored in /Library/Managed Preferences. Remove the folder and restart the workstation. Hopefully on next client login this should pick up what you've defined for MCX at User, Computer and Group level.
    For your other problem on the 10.6 workstation issue these commands:
    sudo rm -R -v /Library/Preferences/SystemConfiguration
    sudo rm -R -v /Library/Preferences/DirectoryService
    sudo rm -R -v /Library/Preferences/edu.mit.Kerberos
    sudo rm -R -v /Library/Managed\ Preferences
    sudo rm -R -v /Library/Caches/*
    sudo rm -R -v /private/tmp/*
    sudo reboot now
    On successful reboot login as the local administrator and assign the workstation an appropriate name in the Sharing Preferences Pane. Make sure it's using the same NTP Server as your Server and then join it to the LDAP Server using the Accounts Preferences Pane > Login Options > Join. Hopefully this should get things back on track.
    HTH?
    Tony

Maybe you are looking for

  • Contacts do not sync between Windows7 PC and iPad 2 and iPhone 4

    Hi, I have installed iCloud on my PC, ipad 2 and iPhone 4s and until 2 weeks back, all the data used to sync seamlessly between all the three devices. However, since last two weeks, my iPad2 and iPhone 4s does sync contacts, photos,etc between each o

  • RDE client crashes on connect under bootcamp Windows 7

    Remote Desktop (RDE) clint crashes soon after connection from Windows 7 running on bootcamp partition. I am able to connect to the remote computer from other machines. I am even able to connect to the remote computer with Mac OS on the computer. Just

  • Safari could not open because server stopped responding

    My iphone4s can not open safari and it says the server has stopped responding. I have powered off several times and have cleared the safari history. nothing works. what now?

  • IMac 21.5" hangs up or shuts down unexpectedly.

    Can someone help me decipher why my brand new iMac 21.5 hangs up or shuts down? It happens a 3-4 times a week. Not sure if I should exchange for a new one or if it's a sofware related problem. Thanks! Info below... Hardware Overview:   Model Name:   

  • Transfer Entourage 2004 in Tiger to Mail in Lion

    I've been reading postings for hours but I haven't found an answer to my specific question. I just bought a refurb May 2011 iMac that was delivered with Lion installed. I've been using a 2005 G5 running Tiger and Office/Entourage 2004. I'd like to kn