Missing Lion Server Directory

After getting Lion Server up and running for a few days, I ran in too several issues.  First, when Server.app is open, I receive errore reading settings when trying to enable web service.  I have looked at https://discussions.apple.com/message/15859672#15859672 as well as https://help.apple.com/advancedserveradmin/mac/10.7/#apd163efc3a-1465-4a44-ad2d- c76094144512 but get invalid command error.  I then deleted Server.app and emptied trash adn rebooted.  Then went to the App store and DL'd it again.  Now the odd thing is that in /Library/Server/ there are only folders for iChat and Podcast Library.  and in About This Mac, it shows as v. 10.7.
Anyone have any thoughts or solutions?
Thanks.

1]  [-] Main loop terminated.
2011-09-25 20:26:26-0400 [-] [caldav-1]  [-] Server Shut Down.
2011-09-25 20:26:26-0400 [AMPLoggingProtocol,0,] AMPLoggingProtocol connection lost (HOST:UNIXAddress('/var/run/caldavd/caldavd.sock') PEER:UNIXAddress(''))
2011-09-25 20:26:28-0400 [-] Main loop terminated.
2011-09-25 20:26:28-0400 [-] Server Shut Down.
2011-09-25 20:28:40-0400 [-] Log opened.
2011-09-25 20:28:40-0400 [-] twistd 11.0.0 (/System/Library/Frameworks/Python.framework/Versions/2.7/Resources/Python.app/ Contents/MacOS/Python 2.7.1) starting up.
2011-09-25 20:28:40-0400 [-] reactor class: twext.internet.kqreactor.KQueueReactor.
2011-09-25 20:28:40-0400 [-] calendarserver.accesslog.AMPLoggingFactory starting on "'/var/run/caldavd/caldavd.sock'"
2011-09-25 20:28:40-0400 [-] calendarserver.tap.caldav.CalDAVStatisticsServer starting on "'/var/run/caldavd/caldavd-stats.sock'"
2011-09-25 20:28:40-0400 [-] <class 'twext.web2.metafd.LimitingInheritingProtocolFactory'> starting on 8008
2011-09-25 20:28:40-0400 [-] <class 'twext.web2.metafd.LimitingInheritingProtocolFactory'> starting on 8800
2011-09-25 20:28:46-0400 [-] [notifications] 2011-09-25 20:28:46-0400 [-] Log opened.
2011-09-25 20:28:46-0400 [-] [notifications] 2011-09-25 20:28:46-0400 [-] twistd 11.0.0 (/System/Library/Frameworks/Python.framework/Versions/2.7/Resources/Python.app/ Contents/MacOS/Python 2.7.1) starting up.
2011-09-25 20:28:46-0400 [-] [notifications] 2011-09-25 20:28:46-0400 [-] reactor class: twext.internet.kqreactor.KQueueReactor.
2011-09-25 20:28:46-0400 [-] [notifications] 2011-09-25 20:28:46-0400 [-] twistedcaldav.notify.InternalNotificationFactory starting on 62309
2011-09-25 20:28:46-0400 [-] [notifications] 2011-09-25 20:28:46-0400 [-] set uid/gid 93/93
2011-09-25 20:28:48-0400 [-] [caldav-0] Reading configuration from file: /etc/caldavd/caldavd.plist
2011-09-25 20:28:48-0400 [-] [caldav-0]  [-] Log opened.
2011-09-25 20:28:48-0400 [-] [caldav-0]  [-] twistd 11.0.0 (/System/Library/Frameworks/Python.framework/Versions/2.7/Resources/Python.app/ Contents/MacOS/Python 2.7.1) starting up.
2011-09-25 20:28:48-0400 [-] [caldav-0]  [-] reactor class: twext.internet.kqreactor.KQueueReactor.
2011-09-25 20:28:48-0400 [-] [mailgateway] 2011-09-25 20:28:48-0400 [-] Log opened.
2011-09-25 20:28:48-0400 [-] [mailgateway] 2011-09-25 20:28:48-0400 [-] twistd 11.0.0 (/System/Library/Frameworks/Python.framework/Versions/2.7/Resources/Python.app/ Contents/MacOS/Python 2.7.1) starting up.
2011-09-25 20:28:48-0400 [-] [mailgateway] 2011-09-25 20:28:48-0400 [-] reactor class: twext.internet.kqreactor.KQueueReactor.
2011-09-25 20:28:48-0400 [-] [mailgateway] 2011-09-25 20:28:48-0400 [-] twext.web2.channel.http.HTTPFactory starting on 62310
2011-09-25 20:28:48-0400 [-] [caldav-0]  [-] set uid/gid 93/93
2011-09-25 20:28:48-0400 [-] [mailgateway] 2011-09-25 20:28:48-0400 [-] set uid/gid 93/93
2011-09-25 20:28:48-0400 [-] [caldav-1] Reading configuration from file: /etc/caldavd/caldavd.plist
2011-09-25 20:28:48-0400 [-] [caldav-1]  [-] Log opened.
2011-09-25 20:28:48-0400 [-] [caldav-1]  [-] twistd 11.0.0 (/System/Library/Frameworks/Python.framework/Versions/2.7/Resources/Python.app/ Contents/MacOS/Python 2.7.1) starting up.
2011-09-25 20:28:48-0400 [-] [caldav-1]  [-] reactor class: twext.internet.kqreactor.KQueueReactor.
2011-09-25 20:28:48-0400 [-] [caldav-1]  [-] set uid/gid 93/93
2011-09-25 20:28:48-0400 [calendarserver.accesslog.AMPLoggingFactory] AMPLoggingProtocol connection established (HOST:UNIXAddress('/var/run/caldavd/caldavd.sock') PEER:UNIXAddress(''))
2011-09-25 20:28:48-0400 [-] [caldav-0]  [-] AMP connection established (HOST:UNIXAddress(None) PEER:UNIXAddress('/var/run/caldavd/caldavd.sock'))
2011-09-25 20:28:48-0400 [calendarserver.accesslog.AMPLoggingFactory] AMPLoggingProtocol connection established (HOST:UNIXAddress('/var/run/caldavd/caldavd.sock') PEER:UNIXAddress(''))
2011-09-25 20:28:48-0400 [-] [caldav-1]  [-] AMP connection established (HOST:UNIXAddress(None) PEER:UNIXAddress('/var/run/caldavd/caldavd.sock'))
2011-09-25 20:28:50-0400 [-] [mailgateway] 2011-09-25 20:28:50-0400 [POP3DownloadProtocol,client] [twistedcaldav.mail.POP3DownloadProtocol#error] POP3 login failed for [email protected]
2011-09-25 20:29:21-0400 [-] [mailgateway] 2011-09-25 20:29:21-0400 [POP3DownloadProtocol,client] [twistedcaldav.mail.POP3DownloadProtocol#error] POP3 login failed for [email protected]
2011-09-25 20:29:53-0400 [-] [mailgateway] 2011-09-25 20:29:53-0400 [POP3DownloadProtocol,client] [twistedcaldav.mail.POP3DownloadProtocol#error] POP3 login failed for [email protected]
2011-09-25 20:30:25-0400 [-] [mailgateway] 2011-09-25 20:30:25-0400 [POP3DownloadProtocol,client] [twistedcaldav.mail.POP3DownloadProtocol#error] POP3 login failed for [email protected]
2011-09-25 20:30:57-0400 [-] [mailgateway] 2011-09-25 20:30:57-0400 [POP3DownloadProtocol,client] [twistedcaldav.mail.POP3DownloadProtocol#error] POP3 login failed for [email protected]
2011-09-25 20:31:29-0400 [-] [mailgateway] 2011-09-25 20:31:29-0400 [POP3DownloadProtocol,client] [twistedcaldav.mail.POP3DownloadProtocol#error] POP3 login failed for [email protected]
2011-09-25 20:32:00-0400 [-] [mailgateway] 2011-09-25 20:32:00-0400 [POP3DownloadProtocol,client] [twistedcaldav.mail.POP3DownloadProtocol#error] POP3 login failed for [email protected]
2011-09-25 20:32:32-0400 [-] [mailgateway] 2011-09-25 20:32:32-0400 [POP3DownloadProtocol,client] [twistedcaldav.mail.POP3DownloadProtocol#error] POP3 login failed for [email protected]
2011-09-25 20:33:04-0400 [-] [mailgateway] 2011-09-25 20:33:04-0400 [POP3DownloadProtocol,client] [twistedcaldav.mail.POP3DownloadProtocol#error] POP3 login failed for [email protected]
2011-09-25 20:33:35-0400 [-] [mailgateway] 2011-09-25 20:33:35-0400 [POP3DownloadProtocol,client] [twistedcaldav.mail.POP3DownloadProtocol#error] POP3 login failed for [email protected]
2011-09-25 20:34:07-0400 [-] [mailgateway] 2011-09-25 20:34:07-0400 [POP3DownloadProtocol,client] [twistedcaldav.mail.POP3DownloadProtocol#error] POP3 login failed for [email protected]
2011-09-25 20:37:50-0400 [-] [mailgateway] 2011-09-25 20:37:50-0400 [POP3DownloadProtocol,client] [twistedcaldav.mail.POP3DownloadProtocol#error] POP3 login failed for [email protected]
2011-09-25 20:38:21-0400 [-] [mailgateway] 2011-09-25 20:38:21-0400 [POP3DownloadProtocol,client] [twistedcaldav.mail.POP3DownloadProtocol#error] POP3 login failed for [email protected]
2011-09-25 20:38:53-0400 [-] [mailgateway] 2011-09-25 20:38:53-0400 [POP3DownloadProtocol,client] [twistedcaldav.mail.POP3DownloadProtocol#error] POP3 login failed for [email protected]
2011-09-25 20:39:24-0400 [-] [mailgateway] 2011-09-25 20:39:24-0400 [POP3DownloadProtocol,client] [twistedcaldav.mail.POP3DownloadProtocol#error] POP3 login failed for [email protected]
2011-09-25 20:39:56-0400 [-] [mailgateway] 2011-09-25 20:39:56-0400 [POP3DownloadProtocol,client] [twistedcaldav.mail.POP3DownloadProtocol#error] POP3 login failed for [email protected]
2011-09-25 20:40:27-0400 [-] [mailgateway] 2011-09-25 20:40:27-0400 [POP3DownloadProtocol,client] [twistedcaldav.mail.POP3DownloadProtocol#error] POP3 login failed for [email protected]
2011-09-25 20:40:59-0400 [-] [mailgateway] 2011-09-25 20:40:59-0400 [POP3DownloadProtocol,client] [twistedcaldav.mail.POP3DownloadProtocol#error] POP3 login failed for [email protected]
2011-09-25 20:41:31-0400 [-] [mailgateway] 2011-09-25 20:41:31-0400 [POP3DownloadProtocol,client] [twistedcaldav.mail.POP3DownloadProtocol#error] POP3 login failed for [email protected]
2011-09-25 20:42:02-0400 [-] [mailgateway] 2011-09-25 20:42:02-0400 [POP3DownloadProtocol,client] [twistedcaldav.mail.POP3DownloadProtocol#error] POP3 login failed for [email protected]
2011-09-25 20:42:34-0400 [-] [mailgateway] 2011-09-25 20:42:34-0400 [POP3DownloadProtocol,client] [twistedcaldav.mail.POP3DownloadProtocol#error] POP3 login failed for [email protected]
2011-09-25 20:42:37-0400 [-] Received SIGTERM, shutting down.
2011-09-25 20:42:37-0400 [-] (TCP Port 8800 Closed)
2011-09-25 20:42:37-0400 [-] (TCP Port 8008 Closed)
2011-09-25 20:42:37-0400 [-] (UNIX Port '/var/run/caldavd/caldavd-stats.sock' Closed)
2011-09-25 20:42:37-0400 [-] (UNIX Port '/var/run/caldavd/caldavd.sock' Closed)
2011-09-25 20:42:37-0400 [-] [notifications] 2011-09-25 20:42:37-0400 [-] Received SIGTERM, shutting down.
2011-09-25 20:42:37-0400 [-] [notifications] 2011-09-25 20:42:37-0400 [-] (TCP Port 62309 Closed)
2011-09-25 20:42:37-0400 [-] [notifications] 2011-09-25 20:42:37-0400 [-] Main loop terminated.
2011-09-25 20:42:37-0400 [-] [notifications] 2011-09-25 20:42:37-0400 [-] Server Shut Down.
2011-09-25 20:42:37-0400 [-] [caldav-0]  [-] Received SIGTERM, shutting down.
2011-09-25 20:42:37-0400 [-] [caldav-0]  [AMP,client] AMP connection lost (HOST:UNIXAddress(None) PEER:UNIXAddress('/var/run/caldavd/caldavd.sock'))
2011-09-25 20:42:37-0400 [-] [caldav-0]  [-] Main loop terminated.
2011-09-25 20:42:37-0400 [-] [caldav-0]  [-] Server Shut Down.
2011-09-25 20:42:37-0400 [AMPLoggingProtocol,0,] AMPLoggingProtocol connection lost (HOST:UNIXAddress('/var/run/caldavd/caldavd.sock') PEER:UNIXAddress(''))
2011-09-25 20:42:37-0400 [-] [caldav-1]  [-] Received SIGTERM, shutting down.
2011-09-25 20:42:37-0400 [-] [caldav-1]  [AMP,client] AMP connection lost (HOST:UNIXAddress(None) PEER:UNIXAddress('/var/run/caldavd/caldavd.sock'))
2011-09-25 20:42:37-0400 [-] [caldav-1]  [-] Main loop terminated.
2011-09-25 20:42:37-0400 [-] [caldav-1]  [-] Server Shut Down.
2011-09-25 20:42:37-0400 [AMPLoggingProtocol,1,] AMPLoggingProtocol connection lost (HOST:UNIXAddress('/var/run/caldavd/caldavd.sock') PEER:UNIXAddress(''))
2011-09-25 20:42:37-0400 [-] [mailgateway] 2011-09-25 20:42:37-0400 [-] Received SIGTERM, shutting down.
2011-09-25 20:42:37-0400 [-] [mailgateway] 2011-09-25 20:42:37-0400 [-] (TCP Port 62310 Closed)
2011-09-25 20:42:37-0400 [-] [mailgateway] 2011-09-25 20:42:37-0400 [-] Main loop terminated.
2011-09-25 20:42:37-0400 [-] [mailgateway] 2011-09-25 20:42:37-0400 [-] Server Shut Down.
2011-09-25 20:42:37-0400 [-] Main loop terminated.
2011-09-25 20:42:37-0400 [-] Server Shut Down.

Similar Messages

  • How to do an Open Directory Restore in Lion Server?

    Lion Server on a Mac Mini was having issues when being rebooted. We've pulled the plug a few times in the past to bring it back up, An update was done last night to 10.7.5, then it hung on restart. Once it was hard reset, it hung on start, went into Safe Mode and everything came up, rebooted normally and Open Direcorty services won't start and all users are missing.
    Never did a manual archive of OD with Server Admin, but have Time Machine backups going back a few weeks.
    Is there anyway to just restore Open Directory? Can I use Server Admin to point to a TM backup and pull a file there? If so, what type of file am I looking for?

    Hi,
    actually this functionality does not work. The reason for this is that Forms9i is Web only and there is no functionality downloaded with the generic Java Applet. For the moment I filed an enhancement request to have this on our radar. Meanwhile, if you need thi sfunctionality you can help yourself by writing a PJC that opens a dialog and performs the action that you want to.
    Frank
    Forms Product Management

  • Lion Server 10.7.4 VPN service not using my Active Directory domain for authentication

    I have Lion Server 10.7.4 setup on a Mac Mini and I have enabled the VPN service for both L2TP and PPTP. The Mac Mini is joined to my Windows Domain at a functional level of Server 2008 R2. I have set the authentication paths to point to my domain in Directory Utility.
    What I would like to have happen is for my laptop to be able to VPN into my office network remotely using domain credentials and not local account credentials on the Mac Mini itself. This is a process I have done numerous times on Windows boxes, but for some reason the only way I can get the VPN to work on this instance of Lion Server 10.7.4 is by authenticating using local accounts only.
    Does Lion Server 10.7.4 only authenticate VPN users based on it's local account schema? Or can it truly authenticate against an active directory domain?
    Any suggestions or help is greatly appreciated. Thanks,

    Hi g-pirtle,
    Yes, I had already done that a few days ago. I was able to add the desired AD group to the allowed users/groups for the VPN service. Thats exactly what is so weird about this...it allows me to search for and add an AD user or group to the list of allowed users/groups, but then when I actually try to use a domain account to authenticate to the VPN is just gives me the "cannot authenticate" error. Very strange.
    I wondered if for some reason Apple is only allowing local accounts to be authenticated against. Sounds crazy, but I cannot for the life of me get this to work. I also wondered if Kerberizing the server would help, but when I go to join a Kerberos realm in Open Directory inside of Server Admin, it just has no realm listed in the drop down menu.
    Other than that, all other aspects of the Mac Mini being joined to the AD domain seems to be good. I'm really stumped here...
    Thanks again,

  • Lion Server not reading Active Directory Groups reliably

    I am trying to upgrade one of our XServes from Snow Leopard Server to Lion Server and am running into a strange issue with our Active Directory based users and Groups.
    The current Snow Leopard Server serving files from a XSan volume is running fine, though we find a very long Lag time for Windows users to connect. Once a few users have connected the lag seems to go away, but it is still not nearly as fast as Mac users connecting or Windows connecting to a PC server.
    So I have connected a second Xserve to the SAN and performed a clean install of Lion Server. Initially while it would find my Active Directory Groups it would not import any of the users, so obvioulsly no one could connect. In a last ditch effort I installed the beta of 10.7.4, which seemed to resolve the issue for a small group of test users. However as I expanded the test I found that some users would get a message that the were no resources available to them, or they didn't have the correct permissions. This is very strange as everyone is in the same group so should have the same permissions. As a test I took one of the user accounts and created a new share and gave him R/W permission to that share and suddenly all of the shares that he should have had permission to in the first place popped up.
    The only thing that I can think of is that we have such a large Active Directory structure that the authentication is timing out or reaching some user limit and stops looking. (we have over 50,000 users and thousands of groups spread through multiple OUs in the AD structure)
    The new Server.app in Lion looks nice, but it does not seem to have nearly the robustness of the previous Server Admin tools. For instance, I never needed or wanted to setup a "Golden Triangle" but with Lion it is required. Perviously I could search for AD users or groups and drag them from the search window to the share to assign permission, now even though I've imported the groups and users it needs to search the entire directory when assigning permissions - why can't it see the groups that are already there? Why can I run a dscl search and find a user or group instantly, but the Server.app hangs for 5 minutes and shows 0 results?
    Has anyone found a way to make Lion Server work in an enterprise environment?

    Yesterday morning I bound a 10.7.4 server to our AD, and in the afternoon I eventually saw all the AD users, groups, etc show in Workgroup Manager. Now, with dscl, I can see all the AD user and group records, and with Workgroup Manager, I can search the groups, users, and computers, but with the Server.app, when trying to create new group of the type "Imported group from another directory", the searches returned nothing. Directory Utility can show all the AD information also. Our AD has thousands of user record, and so it is reasonable that it may take some time for the Mac server to get all the info. But from the add users or groups interface, I just could not get any search results. What could be wrong then? 

  • Can't log in to Lion Server. Open Directory Log Message says: unable to connect to password server

    I am setting up Lion Server. I can't log in to Lion Server from client.
    Checking the Open Directory Log: says: "unable to connect to password server" or
    "3394.14268, Node: /LDAPv3/127.0.0.1, Module: AppleODClient - unable to read Password Server response - connection to Password Server was closed, socket fd 18 (5205)"
    Thanks for help with this.

    I never discovered the problem, and instead rebuilt the server from the ground up.  I followed instructions at this discussion thread.  Very helpful.
    How To Install A (Almost) Working Lion Server With Profile Management/SSL/OD/Mail/iCal/Address Book/VNC/Web/etc.
    I have had some log-in problems with users.  I have found that restarting the server helps. If this doesn't work, I rebuild permissions on the server, followed by opening up Workgroup Manager, go to the user's password, click on options and require that the user change password on the next log-in. For some reason, this will usually fix the problem.  I then log in as the user, and "change" the password to the original one. Also note, that if you import a user, the password is not brought in.  You must enter it for each user that you imported.  Even so, I have often had to resort to the re-set password procedure to enable a log-in.

  • How can I creat a 802.1x Profile without Lion Server? I miss the plus-button in Lion to creat a 802.1x Profile.

    How can I creat a 802.1x Profile without Lion Server? I miss the plus-button in the Network Configuration (OS X Lion) to creat a 802.1x Profile.

    Tried this?
    http://blog.affien.com/archives/2011/03/16/802-1x-configuration-profile-on-lion- mac-os-x-10-7/

  • Lion Server: How can I enable directory listing for the Web Server?

    The functionality was part of the Server App in Lion Server but was not included in Lion.  Can anyone shed some light on how to enable Directory Listing.  Any help is appreciated!

    Go to /etc/apache2 and edit the file 000_any_80_.conf
    using sudo nano command and replace  "-Indexes" with "+Indexes".
    Restart Apache with "sudo apachecrl restart"
    Good luck,
    Ricky
    from Costa Rica

  • Lion Server problem - Computer is already a network directory server

    So I purchased Lion Server to trial it at home and it is not going well. Initially I was having issues connecting to the web interfaces for profile manager, etc. The server was not responding and so I uninstalled server and reinstalled it from the Mac Store (FYI: Apple has charged me for the OS and the server app as a result of this for some reason!!!)
    With Server reinstalled I went to set up the server as a network directory and am shown this message every time I try to set up the directory admin account: "Computer is already a network directory server - This computer is already configured to manage network accounts. It cannot be configured again."
    This leaves me unable to set up any profile or device management, I have tried the following solutions:
    Uninstall and reinstall server
    Deleted ServerVersion plist
    Reinstalled Lion
    Reinstalled Lion with format of HDD (although I did recover from a Time Machine Backup which included settings)
    Any help would be appreciated.

    Sorry I copied the wrong log.
    What is happening is the Open Directory Assistant attempts to create and Open Directory Master but fails claiming there was a configuration error and to view the configuration log which I have copied below.
    2011-07-28 19:57:45 +0000 command: /usr/bin/ldapmodify -c -x -H ldapi://%2Fvar%2Frun%2Fldapi
    2011-07-28 19:57:45 +0000 command: /usr/bin/ldapsearch -x -LLL -H ldapi://%2Fvar%2Frun%2Fldapi -b cn=config -s base olcServerID
    2011-07-28 19:57:45 +0000 command: /usr/bin/ldapmodify -c -x -H ldapi://%2Fvar%2Frun%2Fldapi
    2011-07-28 19:57:45 +0000 command: /usr/sbin/mkpassdb -o -u diradmin -p -q
    2011-07-28 19:57:46 +0000
    2011-07-28 19:57:48 +0000 command: /usr/sbin/mkpassdb -setadmin 0xdc9dacf8b95311e0b494d49a20d93acc 0
    2011-07-28 19:57:48 +0000 Admin's entry UUID is: 9134bc0a-a748-4161-b6b2-53c136b933b9
    2011-07-28 19:57:48 +0000 Setting SASL realm to <SERVER.FREEMAN.PRIVATE>
    2011-07-28 19:57:48 +0000 command: /usr/sbin/mkpassdb -setrealm SERVER.FREEMAN.PRIVATE
    2011-07-28 19:57:48 +0000 command: /bin/launchctl load -w /System/Library/LaunchDaemons/com.apple.PasswordService.plist
    2011-07-28 19:57:49 +0000 Stopping LDAP server (slapd)
    2011-07-28 19:57:52 +0000 Starting LDAP server (slapd)
    2011-07-28 19:57:52 +0000 Waiting for slapd to start
    2011-07-28 19:57:52 +0000 ...
    2011-07-28 19:57:54 +0000 Configuring Kerberos server, realm is SERVER.FREEMAN.PRIVATE
    2011-07-28 19:57:54 +0000 command: /usr/sbin/kdcsetup -f /LDAPv3/ldapi://%2Fvar%2Frun%2Fldapi -w -a diradmin -p **** -v 1 SERVER.FREEMAN.PRIVATE
    2011-07-28 19:58:18 +0000 Contacting the Directory Server
    Authenticating to the Directory Server
    Creating Kerberos directory
    Creating KDC Config File
    Creating Kerberos Database
    Creating new random master key
    Creating Kerberos Admin user
    Creating ACL file
    Adding kerberos auth authority to admin user
    Starting kdc & kadmind
    Adding the new KDC into the KerberosClient config record
    Finished
    2011-07-28 19:58:18 +0000 command: /usr/sbin/kdcsetup -e
    2011-07-28 19:58:18 +0000 command: /usr/sbin/sso_util configure -x -r SERVER.FREEMAN.PRIVATE -f /LDAPv3/ldapi://%2Fvar%2Frun%2Fldapi -a diradmin -p **** -v 1 all
    2011-07-28 19:58:19 +0000 command: /usr/sbin/mkpassdb -kerberize
    2011-07-28 19:58:19 +0000 Updating user records and principals
    2011-07-28 19:58:34 +0000 Asking OpenDirectoryConfig to bind to server: 127.0.0.1
    2011-07-28 19:58:38 +0000 Attempting to open /LDAPv3/127.0.0.1 node
    2011-07-28 19:58:38 +0000 Verified /LDAPv3/127.0.0.1 node is available
    2011-07-28 19:58:40 +0000 command: /usr/sbin/sso_util info -r /LDAPv3/127.0.0.1 -p
    2011-07-28 19:58:40 +0000 Creating Root CA
    2011-07-28 19:58:41 +0000 ***Error creating domain CA. Error - The specified item already exists in the keychain.
    2011-07-28 19:58:41 +0000 Root CA creation failed with error - -25299
    2011-07-28 19:58:41 +0000 Destroying OD master as CA creation failed with error 75
    2011-07-28 19:58:41 +0000 Logging slapd container data to /var/run/slapconfig_error_1311883121
    2011-07-28 19:58:41 +0000 Stopping LDAP server (slapd)
    2011-07-28 19:58:44 +0000 command: /usr/sbin/slapcat -l /var/run/slapconfig_error_1311883121/user.ldif
    2011-07-28 19:58:44 +0000 command: /usr/sbin/slapcat -b cn=authdata -l /var/run/slapconfig_error_1311883121/authdata.ldif
    2011-07-28 19:58:45 +0000 Error retrieving kerberos realm
    2011-07-28 19:58:45 +0000 CopyReplicaArray: ldap_search_ext_s failed
    2011-07-28 19:58:45 +0000 Error retrieving replica array
    2011-07-28 19:58:45 +0000 command: /bin/launchctl unload -w /System/Library/LaunchDaemons/com.apple.opendirectorybackup.plist
    2011-07-28 19:58:45 +0000 Deleting Cert Authority related data
    2011-07-28 19:58:45 +0000 No intCAIdentity, not removing int CA from keychain
    2011-07-28 19:58:45 +0000 command: /bin/launchctl unload -w /System/Library/LaunchDaemons/com.apple.xscertd.plist
    2011-07-28 19:58:45 +0000 command: /bin/launchctl unload -w /System/Library/LaunchDaemons/com.apple.xscertd-helper.plist
    2011-07-28 19:58:45 +0000 command: /bin/launchctl unload -w /System/Library/LaunchDaemons/com.apple.xscertadmin.plist
    2011-07-28 19:58:45 +0000 _destroyLDAPServer: Failed to find computer record named server.freeman.private$: 2100 Connection failed to the directory server.
    2011-07-28 19:58:45 +0000 Updating ldapreplicas on primary master
    2011-07-28 19:58:45 +0000 Unable to locate primary master
    2011-07-28 19:58:45 +0000 Primary master node is nil!
    2011-07-28 19:58:45 +0000 Unable to locate ldapreplicas record: 0 (null)
    2011-07-28 19:58:45 +0000 Error setting read ldap replicas array: 0 (null)
    2011-07-28 19:58:45 +0000 Error setting write ldap replicas array: 0 (null)
    2011-07-28 19:58:45 +0000 Could not retrieve xmlplist from ldapreplicas: 0 (null)
    2011-07-28 19:58:45 +0000 Error synchronizing ldapreplicas: 0 (null)
    2011-07-28 19:58:45 +0000 Removing self from the database
    2011-07-28 19:58:45 +0000 Warning: An error occurred while re-enabling GSSAPI.
    2011-07-28 19:58:45 +0000 Stopping LDAP server (slapd)
    2011-07-28 19:58:46 +0000 cleanKeytab: unable to retrieve default realm

  • Mountain lion server network accounts are not mounting network home directory, rather its creating a blank local directory

    I have set up a scratch mountain lion server with open directory.  copied over old user account directories and added my users that match the directory ids.  Currently if a networked user logs into a networked computer, instead of mounting the network home directory, its creating a local home directory.  suggestions?
    thanks,
    Dave

    Additional info: it appears that certificates are not working either: setting up ical: "the certificate for this server was signed by an unknown certifying authority."...

  • In Lion Server what comes first, DNS, Certificates, or Open Directory

    For a fresh install of Lion Server in what order should things be installed?
    Certificates, DNS service, Open Directory

    thank you,
    how do you know if it 'clears' , sudo changeip -checkhostname
    what I get back when I run the command is,
    Primary address     = 192.168.1.80
    Current HostName    = test.local
    The DNS hostname is not available, please repair DNS and re-run this tool.
    dirserv:success = "success"
    I assume something (DNS) is broken from that

  • Deleting wikis with missing About pages in Lion server.

    I am new mac mini lion server owner.  Somehow I ended up with Wikis without  About Pages n Wiki server and am unable to delete those wikis even with my admin account.  When I go to those wikis I get a message "An unexpected error occurred.".  I see Action (gear) icon on the page but it only has "Settings" and "Help" links, but no option to delete the wiki even when logged in with an account that own the wiki.  Clicking on Settings does not take me there, but remains on the same page.   But I am able to go to settings pages of those wikis by manually changing the url to "/settings" after removing the html page of the wiki.
    Can someone please help me on how to delete those wikis?  I searched in google but found no answers to this.  I even looked at Lion documentation but it has no helpful information for this case.  I am new to Mac OS, have been a PC user for all these years.  So I am new to even simple things on a Mac OS.  Please help.
    Thank you.

    Hi RajPad,
    i have not yet found a commandline tool to remove pages. If you're familiar with SQL you can use a tool to connect to the postgresql database where the pages are stored.
    I won't try to write a "howto connect to pgsql on lion" here because i know this has been answered already.
    If youre connected to the database collabd and you have a page url like:
    http://my.lion.server/wiki/pages/P9c196z/somepage.html
    Then your SQL to find the entity is:
    SELECT * FROM entity where tiny_id='P9c196z';
    Note the uid from that result and find and remove all related entries in other tables there after removing this entity.
    I have not excercised that myself because i don't have a system to screw
    Make a Database dump prior to your actions and hope nobody is editing pages while you're at work.
    If you have a plain SQL dump you could pick individual datasets from there to rebuild if something goes wrong. You'll only have to note what you changed to be able to revert.
    Just an idea ....
    Make a copy of your page and compare both pages in database. If one is working and the other aint you should be able to find the difference.
    Good Luck
    Andreas

  • Advise about setting up a permissons on Lion server for a small office.

    What is the common wisdom and advise about setting up permissions optimally for a small office using OS X Lion Server as a file server?  I thought I had this solved by setting the ACL permissions so that all users and appropriate groups can read and write all files on the server.  This works great until a new file is created.  Then it appears that the POSIX umask kicks in and takes priority over the ACL permissions.  I need to allow group write permissions on all new files.  My options seem to be:
    Make everyone an admin - not great for obvious security reasons
    Change the umask for the whole machine - also security problems, though perhaps fewer than the everyone-an-admin route above
    Write a folder action applescript to add group write permission on all new files.  This works fine if you have a static number of folders  With new folders it has the problem: How do new folders created by non-admin users get this folder action automatically applied to them - some cronjob to hunt down the new folders; an applesscrpt folder action that adds a folder action to all new folders (sounds recursively complicated)?
    Have a cron job regularly do something like  `chmod -R 664` on all files.  This will break during those between the cracks times between when someone creates a new file and when the cronjob runs - not ideal.
    Seems like this should be easier which makes me think I'm missing something obvious.
    Any help great appreciated.  Thank you in advance!

    Good-heart's advice is certainly your first step, but if you've already done that and still have the problem you've described, you might have the 10.7.3 ACL bug, particularly if your users and groups are in an OD or AD rather than being local accounts on the server. The problem is that ACL's for directory accounts are incorrectly ignored, resulting in POSIX permissions coming into play.
    I've descibed my workaround for this here;
    https://discussions.apple.com/message/18037703
    I haven't yet tried the other trick I've read about, which is to ensure your Share's data directories are at least one level down on the volume - there is a post here on the Communities that mentions this;
    https://discussions.apple.com/message/18028746
    I seem to remember that this helped with an earlier version of AFP, if using external firewire or usb storage.
    Let us know if you find a fix, it seems a number of people have problems with this.
    Regards,
    Ian

  • Simple guide to Migrate SL Server Wiki 10.6.8 to Lion Server 10.7.2

    These instructions assumes that you already have the Wiki server functional on the new OSX Lion Server 10.7.2 and that you are logged in as a system administrator.
    On the SL Server, browse to \Library\Collaboration and right click on the Collaboration folder and click "Get Info"
    Scroll all the way to the bottom and expand "Sharing & Permissions"
    If the Lock icon shows to be locked, click it and enter an Administrators password associated with the user account you are logged in under.  Make sure the permissions for "Everyone" are set to "Read & Write".  Then click on the small Gear icon below that and select "Apply to Enclosed Items".  It will ask you if you are sure, tell it yes.
    Now copy the Collaborations folder to the new Lion Server.  Create the following directory to save the files too.  \myoldwiki  It will probably ask you to authenticate making a new folder at the root of the drive.  So if prompted, tell it to allow and enter your administrator password is prompted.  So now you have \myoldwiki\collaboration at the root of your new lion server.
    Open Safari and browse to http://localhost on your Lion Server to verify that your existing server is working.  If you get the "Welcome to OS X Lion Server" page with several icons for My page, Updates, Wikis, People, & Podcasts then your server is working.  If not, see "Setting up OS X Lion Wiki Server".  (An article that has not yet been written-Soon to follow)
    If you click on Wikis, and if this is a fresh install, you will not see any wiki pages listed.  On the top right of the web page, click on the + sign to create a new wiki.  You can name it Test Wiki like I did and then create the page.  Once created, go to it to make sure that its there.
    Once your new Wiki server is confirmed to be functional, open terminal and enter the following command:
    sudo wikiadmin migrate -r /myoldwiki/collaboration
    Then press Enter/Return.  Enter your users password if prompted. (Remember, passwords do not use echo in terminal so you will not see your password as you type it.  Press Enter/Return again and you should see something similar to the following:
    2011-12-18 10:50:18.315 wikiadmin[5033:307] Updating schema...
    2011-12-18 10:50:18.324 wikiadmin[5033:307] Schema updates completed.
    2011-12-18 10:50:18.326 wikiadmin[5033:307] Migrating...
    2011-12-18 10:50:18.899 wikiadmin[5033:307] Migrating known users
    2011-12-18 10:50:18.921 wikiadmin[5033:307] Generating placeholders for all known pages and wikis
    2011-12-18 10:50:29.054 wikiadmin[5033:307] Found 7 pages belonging to 6 wikis and 2 users.
    2011-12-18 10:50:29.057 wikiadmin[5033:307] Migrating project '(Wiki Page 1 Title Here)' (1 of 6)
    2011-12-18 10:50:39.137 wikiadmin[5033:307] Migrating project '(Wiki Page 2 Title Here) ' (2 of 6)
    2011-12-18 10:50:49.282 wikiadmin[5033:307] Migrating project '(Wiki Page 3 Title Here) ' (3 of 6)
    2011-12-18 10:50:59.350 wikiadmin[5033:307] Migrating project '(Wiki Page 4 Title Here) ' (4 of 6)
    2011-12-18 10:51:09.475 wikiadmin[5033:307] Migrating project '(Wiki Page 5 Title Here) ' (5 of 6)
    2011-12-18 10:51:19.635 wikiadmin[5033:307] Migrating project '(Wiki Page 6 Title Here) ' (6 of 6)
    2011-12-18 10:51:29.666 wikiadmin[5033:307] Re-scanning 0 pages for pasted image/attachment URLs
    2011-12-18 10:51:29.669 wikiadmin[5033:307] Copying content to real tables...
    2011-12-18 10:51:29.942 wikiadmin[5033:307] Destroying migration entity and scratch tables...
    2011-12-18 10:51:30.295 wikiadmin[5033:307] Done
    2011-12-18 10:51:30.304 wikiadmin[5033:307] Importing user preferences
    2011-12-18 10:51:40.311 wikiadmin[5033:307] Rebuilding search index...
    2011-12-18 10:51:50.724 wikiadmin[5033:307] Done
    2011-12-18 10:51:50.726 wikiadmin[5033:307] Migration complete 
    Depending on the size of your wiki on SL Server, and depending on how many pages and attachments you have installed on it, this process could take anywhere from several seconds to several minutes.  Also your entry may vary from mine above depending on how many pages you have as well.  I currently only have 6 pages as you can see.  Overall, the end result is what you want to see: "Migration complete".  This is a very good sign. 
    If you get a lot of errors like i did my first time trying to do this, I found that i forgot to turn on and verify that my new Lion Server web server and wiki page were fully functional prior to starting the migration.  So if you get several errors that look similar to this.......
    2011-12-18 01:23:52.160 wikiadmin[2930:307] *** Terminating app due to uncaught exception 'PGCConnectionError', reason: 'could not connect to server: No such file or directory 
              Is the server running locally and accepting
              connections on Unix domain socket "/var/pgsql_socket/.s.PGSQL.5432"?
    *** First throw call stack:
              0   CoreFoundation                      0x00007fff915d6286 __exceptionPreprocess + 198
              1   libobjc.A.dylib                     0x00007fff958d9d5e objc_exception_throw + 43
              2   PostgreSQLClient                    0x0000000110038349 -[PGCConnection init] + 0
              3   PostgreSQLClient                    0x0000000110038425 -[PGCConnection initWithInfo:] + 157
              4   PostgreSQLClient                    0x0000000110037f8a +[PGCConnection connectWithInfo:] + 47
              5   wikiadmin                           0x000000010ff0db1e wikiadmin + 31518
              6   wikiadmin                           0x000000010ff2248f wikiadmin + 115855
              7   wikiadmin                           0x000000010ff0824c wikiadmin + 8780
              8   wikiadmin                           0x000000010ff07ba4 wikiadmin + 7076
    You need to check your web server and wiki settings again.
    Once everything is complete, you will need to go into your Server app on Lion Server and turn off the web server and also the wiki server.  After about a minute or so, restart the web server then the wiki server and give it about 30 seconds or so to completely come back online.  Now browse to http://localhost on the Lion Server and you should once again see the "Welcome to OS X Lion Server" page.  Click on wikis and you should see the list of wikis you imported as well as the test wiki you created earlier.  This will confirm that the files have been truly copied to the proper location for wikis on the new Lion Server.
    At this point, your old wiki pages are ready to be used on your new OS X Lion Server.
    There is a drawback with this process.  Since you are moving ONLY the wiki database over to the new machine, all of the original users and groups is not transferred.  As you can see i have 6 wikis and 2 users.  This process doe not import the users and their configurations over to the new server.  That process is completed by "Exporting" the "Server Admin Settings" & "Service Settings" from the SL Server "Server Admin" and importing them in the reversed fashion on the new Lion Server using Server Admin on the new server.  This, however, is for another tutorial yet to be written.  Mostly because i have yet to do it.
    Good Luck.....
    Isaac-in-Texas
    NOTE: If you find an error in this posting, keep in mind we are all human and all make mistakes.  Shoot me an email and i'll see if i can get it corrected.
    Proud Owner of.....
    2011 MabBook Pro * 2.3Ghz i7 * 16GB 1333 Ram * 750GB HDD Internal
    2008 iMac 21.5" * 3.06Ghz Core 2 Duo * 16GB 1067 Ram * 1TB HDD Internal * Mercury Elite Pro 5TB RAID 5 External
    iPhone 4 32GB
    iPhone 4 8GB (Wife)
    iPhone 3G 16GB (Spare)
    iPad 32GB 1st Gen
    iPod Touch 2nd Gen (My Son)
    Apple TV 2nd Gen
    Airport Extreme
    I'm sure i'm missing something.....

    Hi.
    Purchase Mac OS X Lion v10.7 (or OS X Lion Server) at the App Store.
    Make sure your Mac meets Lion's requirements before purchasing.
    Mac computer with an Intel Core 2 Duo, Core i3, Core i5, Core i7, or Xeon processor
    2GB of memory
    OSX v10.6.6 or later (V10.6.8 recommended)
    7GB of available spare
    From here > Apple - OS X Lion - Technical specifications
    A must read before upgrading to Lion >  Lion upgrade questions: Apple Support Communities
    You can access the App Store from your Apple menu, your Dock, or your Applications folder.

  • How do I multi-home Lion Server

    My Mac-Mini Lion server is using both the wired and wireless connections.  I have two network connections available to  the internet.  However, one is significantly faster than the other.  I want to use the wireless connection for the internet, and the wired connection for local lan traffic.  I should mention that this server is on a combined Active Directory and Open Directory network.  This is the only Mac server and is set up in the Golden Triangle configuration.
    What I have done so far:  configured both interfaces with static addresses, pointing at the respective routers.  I should also point out that the slower connection to the internet goes through an authenticated proxy server, so unless that is configured, internet traffic will not work.  The faster internet connection (my wireless connection) does not have that restriction.
    I have already turned on the Software Update service for the Mac clients, made a group to update them, and bound the clients to both the Active Directory and Open Directory servers.
    The final thing I did was to reorder the network connections in the Network Preference panel, so the wireless connection was at the top of the list.  Until I did that, I could not browse the internet with Safari.
    So, have I missed anything which would prevent the Lion Server from downloading Software Updates for the network through the wireless connection, while allowing the client macs to get their updates through the server's wired connection.

    I had multiple IP's set on my server, which randomly seemed to switch. It seems like there is an incompatibility still between Server Admin and server.app. Since Apple is pressing developers to test server admin and server.app I am confident those problems will resolve eventually, but for now I have deleted all-but-1 IPv4 and 1 IPv6 address (same interface), the networking interface overview for my server within Server Admin was updated and it looks like it works solid now, this was not by design I presume, so this must be another bug plaguing Lion...
    After upgrading Postgres to 9.1.3 and upgrading webmail (upgrade: usr/share/webmail) from www.roundcube.net, making a new site webmail.example.com with the files stored in /Library/Server/Web/Data/Sites/CustomSitesDefault/webmail/ I made a symbolic link from that 'directory' to the actual built in webmail facility found in /usr/share/webmail by entering the following in terminal.
    ln -s -i /usr/share/webmail/ /Library/Server/Web/Data/Sites/CustomSitesDefault/webmail/
    By doing this it will ask to remove a directory, if you didn't put any important files in there, which I presume you didn't, confirm with the letter y and press enter.
    Webmail now works every time the way I want it
    As does profile manager.

  • Help setting up Lion Server for remote access

    I have been going in cricles for weeks trying to set this up correctly.  Can anyone tell me what I'm doing wrong?
    I got Lion Server and Server Admin Tools all updated and have been trying to follow Terry Walsh from We Got Served's guide but I missing something.
    I purchased a domain from GoDaddy. Let's call it bradnet.com
    My domain and dyn domain are not really what I have typed here but close enought that they should work for my example and trouble shooting.
    Because my ISP (Comcast) doesn't provide a static IP I registerd for an account with dyn.com.  This is where I get really confused.  With dyn.com i created a host name: bradnet.dyndns-rocks.com and downloaded there updater software.  It found my public IP address and said everything is ok.
    I went back to GoDaddy and in my DNS manger page added the host: bradnet.dyndns-rocks.com and entered my public IP.
    I then went to the server pane to edit the host name.  I followed your instructions to edit the name and selected Host Name for Internet.  I left the computer name as mini (what I had previously named it for file sharing before the server upgrade) and entered  mini.bradnet.dyndns-rocks.com as the host name.  When it takes me back to the server pane, in the bottom window it states:
    Your Server's host name is mini.bradnet.dyndns-rocks.com, and its IP address is 192.168.1.10. You can change network settings in the Server pane.
    I never get the your network is configured properly message.
    I went and set my computer's IP to DHCP with manual address (although all of my machines are set up with DHCP reservations so I guess that is a little redundant) to 192.168.1.10.
    I skipped the port forwarding step because I am using the latest AirPort Extreme as my router.
    I then opened a browser and tried:
    http://bradnet.com
    http://mini.bradnet.dyndns-rocks.com
    http://mini.bradnet.com
    http://bradnet.dyndns-rocks.com
    All of these got me the can't find the server response from Safari.
    Also, I have not yet set up Directory Services.  Terry's guide seems to suggest to do this step first.
    I'm sure I have messed up some step somewhere can you see what I have done wrong?
    Also, is it a problem to set up open directory services using a .local host and then go back and change it for internet access later or do you need to set that up from the start?  My family is getting impatient with me trying to get this to work.
    Thanks for any help anyone can offer!
    Brad

    That manual page is not fully correct. There is written:
    Public UDP Port(s): <enter the appropriate UDP port value(s)>
    Public TCP Port(s): <enter the appropriate TCP port value(s)>
    Private IP Address: <enter the reserved IP address of the host device (from step 1)>
    Private UDP Port(s): <enter the same Public UDP Ports or your choice>
    Private TCP Port(s): <enter the same Public TCP Ports or your choice>
    But it should be:
    Public UDP Port(s): <enter unique UDP Ports of your choice>
    Public TCP Port(s): <enter unique TCP Ports of your choice>
    Private IP Address: <enter the reserved IP address of the host device (from step 1)>
    Private UDP Port(s): <enter the UDP Ports used by your device>
    Private TCP Port(s): <enter the TCP Ports used by your device>
    Make sure you use the same ports in the private settings as you have defined in your IP camera. Normally a camera will use port 80 by default, so use 80 here.
    The Public ports must all be unique. If you have not defined a port 80 here, you can also use 80. This will fail however when using multiple cameras. I for instance have 5 IP cameras and use the public ports 8451, 8452, 8453 etc.

Maybe you are looking for