Mobile Account Error Setting Up Leopard Client, createmobileaccount error.

Hi all. I posted this discussion under Portable Home Directories, but that is unfortunately a subcategory of Max OS X Server v10.4 Tiger and this is strictly a Leopard issues, so I'm reposting here.
Just following up on an earlier thread regarding mobile home accounts. Thought I'd post a new entry as the other one has been "answered".
I've just recently upgraded a slew of clients and a server to Leopard and have been trying to enable mobile accounts on existing network home accounts. When I set this as a Preference using Workgroup Manager, nothing happens on the clients. When I try to create a mobile account directly on the client while logged in as the network user, I get a standard error (The mobile account could not be created.) every time after it asks to log out and enter the user password in order to create the mobile account.
So, I followed the steps in this thread: http://discussions.apple.com/thread.jspa?threadID=1234051&tstart=0
For the account "leedale" logged in using a network home directory, entered the Terminal command as follows:
/System/Library/CoreServices/ManagedClient.app/Contents/Resources/createmobileac count -vsn leedale -h /Users/leedale
createmobileaccount built Oct 2 2007 22:44:49
verbose output on.
user name = "leedale"
home path = "/Users/leedale"
user password = "(null)"
prompt for password = FALSE
encrypt new home = FALSE
create as external account = TRUE
home sync new account = TRUE
sync URL = "(null)"
MCXCCacheMCXRecordAndGraph(): existingMCXRecord record setValues:forAttribute:dsAttrTypeNative:cachedauthpolicy == -14120 (Unable to set value(s) for dsAttrTypeNative:cachedauthpolicy in record leedale.)
MCXCCreateMobileAccount failed to create account. Error = -14120 (MCXCCacheMCXRecordAndGraph failed). Cleaning up mobile account record.
2007-11-18 17:15:19.831 createmobileaccount551:10b ### Error:-14120 File:/SourceCache/Admin/Admin-423/DSRecord.m Line:484
mobile account could not be created: -14120 (Unable to set value(s) for dsAttrTypeNative:cachedauthpolicy in record leedale.)
Any suggestions?

Hi,
The namespace you are using for creating client proxy might not be available for consumption(i.e. it might not be published) or there is no connectivity to the source system so namespace is not available.
Try checking connection.
Hoping it helps..
Regards,
Komal
Edited by: Komal Lakhwani on Feb 8, 2010 4:31 PM

Similar Messages

  • Error setting up new client proxy, unknown namespace

    Hi all.
    I am trying to setup a new client proxy, with SE80.
    I am using an WSDL file.
    Somehow I get the following error.
    Proxy-Generierung: Fehler aufgetreten
    Exception occurred in library handler
    Incorrect value: Unknown Namespace http://www.mynamespace.com/param
    Anyone have any ideas why? Does namespace need to contain specific values?
    Thanks!

    Hi,
    The namespace you are using for creating client proxy might not be available for consumption(i.e. it might not be published) or there is no connectivity to the source system so namespace is not available.
    Try checking connection.
    Hoping it helps..
    Regards,
    Komal
    Edited by: Komal Lakhwani on Feb 8, 2010 4:31 PM

  • Error message when trying to log with more than a mobile account

    Hi guys,
    I face a very strange and worrying problem : when I log with a mobile account against my Snow Leopard Server, it works. But when I try to log with a second mobile using fast user switching, I have a strange error message saying that I can't connect with this user "at the moment". Once I log off from the first mobile account, I can log with the second one...
    It is as if it is not possible to have two or more mobile/network accounts logged simultaneously on the same client. Is this a known problem ?
    Thanks for your help,
    Eric.

    By design or not, this is a flaw, and a huge one ! I wanted to set up my home network so that each member of my family has a portable account. But this stupid design decision makes it impossible, since it makes impossible to have two or more users logged at the same time on a computer. So each time a member of my family wants to log on the family iMac, they have first to ask the previous logged member to log out !
    How is that not a flawed design ? I don't even see what are the pros of that design decision ?

  • Mobile Accounts: Manual Sync works, Automated Sync Does Not

    I've got a small office network with about 10 users. Each have mobile accounts under Tiger (server and clients) and they've been working flawlessly for years.
    All of a sudden we've noticed that for some users the background sync is no longer working. If they choose "Sync Home Now" from the menu the sync runs else. Otherwise, it does not run at all.
    All background syncing is set (via WGM) to run every 30 minutes.
    What is the best way to debug this?
    Thanks!
    scotto

    if you configure mobile prefs to popup a dialog to confirm creating a mobile account on new machines, train them to choose "no," and they'll login with network homes on other machines.

  • Mobile accounts reset to normal network accounts ?

    Hello
    I've switched my network users back from mobile accounts to normal network accounts after experimenting for awhile. I have deselected the mobile account preferences for all my machines in WGM and deleted all the local home folders created by synching my network accounts on the local machines in Volume/Users. There's obviously more things I need to do, as:
    Some desktop machines allow users to login normally with their network account and mount the network home at login (shortcut in dock via MCX) as before mobile synching. This seems to be only for machines the user did not use when there were mobile account prefs. set .
    Other machines create a new local home for the user but also leave a question mark in the dock for their "User's Network Home Folder"; which mounts with full access when clicking the question mark.
    Lastly, some machines are not mounting the network home at all, but authorizing the user with their LDAP account and making a new local home instead.
    Is this a cache, preferences or corrupt config. issue or something else?
    thanks
    Xserve G5, G4s, eMacs, iMac G5s, 10.4.5 all

    Deleting the mobile user account records in System Preferences>Accounts solved it.
    http://www.macosxhints.com/article.php?story=20031222232124568

  • Mobile Account Newbie, Small issue

    Hi all,
    Apologies if this isn't the right place to post this but i'll explain a little about my issue. If there is somewhere better i should post these style issues please advise.
    I have several iMac's in an Active Directory Environment with mobile accounts, i set this up myself
    now my problem is my home folder for the mac's is shared with my Active Directory Home Folder. This basically means that my windows desktop has all the things on my mac desktop and vice versa.
    When i log into a windows box all is well, when i log into a mac box i get two annoying windows files that i know i shouldn't delete but want to so bad, is there a way i can make them hidden, or another way of setting it up so they don't appear
    the two files are desktop.ini and the folder $RECYCLE.BIN
    i am a complete novice, i know when i was at uni they didn't appear, i also don't have an osx server (wish i did) and i know uni did, maybe thats the prob
    anyway thats enough of me rambling, any help greatly appreciated
    cheers in advance guys+gals
    Tim

    Have you tried using the SetFile terminal command?
    You may have to install the Dev tools on a box, and pull it out from the /bin directory (I think), and copy it to your /bin directory
    SetFile -a V <filefullpath>
    Should do the trick (Set file "attribute" "Visible") toggles it on and off in the finder view, but doesn't get rid of it.
    Just a thought
    Philip J Doll III
    Information Processing Consultant
    UWSMPH - Pediatrics

  • Leopard Client Tiger server mobile home directory not working... hmmm

    Mobile home directory is not working for my leopard clients with my tiger server.
    I can log in via the Apple server account that is set for mobile.
    On my tiger clients it prompts me to confirm my mobile account on log in and everything works fine if i unplug the network cable.
    on my leopard clients no prompt at log in. so i go to account under system prefs and see that the account says mobile..and i click on make mobile account in the account pane in system prefs says will reboot and make account.. prompts for password for mobile account i put it in and then it says there was an error in making mobile account and then it takes me back to the main log in window.
    every client i have on leopard does this...
    am i missing something?
    thanks in advance,
    Jesse

    Tiger server can control mobile account syncing and other features present on Tiger clients.
    See this post for some more info on setting Leopard mobile account preferences on Tiger servers:
    http://discussions.apple.com/thread.jspa?messageID=6829482&#6829482

  • Cannot login to network account (leopard client and server)

    Up until now, I have used local accounts on my leopard server. I want to start experimenting with OD prior to implementing. I created a new user account in the /LDAPv3/127.0.0.1 domain, and have bound my leopard client to the server using directory utility. On the login screen, "Network Accounts Available" has a green button to the left of it. When I try and login to the server account, the login window just shakes. At first, I could enter the password and then it would prompt me for a new password. Trying to enter a new password would not allow me to login. I went back to server admin and disabled the "require new password" setting, (as well as the other good security policies)...
    I have also reset the password in WGM, and made sure to disable all the security stuff there too...
    Lastly, I have deleted the server in directory utility, rebooted, then added it back in, and rebooted again...
    I still cannot login to the server account, the login screen just shakes
    Does anyone have an idea of what settings and or logs I can check to try and narrow down what is going on?
    Thanks in advance....

    to close out the thread, I have working dns on my network, but I did not have dns enabled on my server. I enabled the dns service and entered just the info for my server, then assigned my server and client to use the server's ip addy as the primary dns server. Next, I created the home directory.
    Once both steps were done, I was able to log in from my client to my server based account...
    FYI-I found a document on afp548.com called "leopard server: advanced setup, rsync backup and automated reporting" that walks you right thru the process...Here is the link, it's a very useful doc....
    http://www.afp548.com/filemgmt_data/files/Leopard%20Server%20Quickstart%20Guide. pdf
    thanks again boomboom_uk and woVi, your suggestions were spot on....

  • 10.5 server, 10.4 clients getting multiple mobile accounts - weird results

    I would like to reopen this discussion:
    http://discussions.apple.com/thread.jspa?threadID=1664772&tstart=7
    What happens visually is that the user appears to log in to a network account, but the Macintosh HD icon changes to the "house" used for the home directory, and all the mobile account data (which is naturally in /Users/<login>) is not accessible. If you use Netinfo Manager or System Preferences, you can see multiple accounts for the user.
    We have been getting many laptops randomly succumbing to this bug. 10.5.8 server, 10.4.11 clients. I ran nicl on one that was affected today, with "nicl . -list /users", and found 3 user account records with the same login. I then used the "directory IDs" from the nicl -list commands and compared the data for each account with "nicl -v . -read <dirID>" replacing <dirID> with the numeric directory IDs for the accounts.
    One of the accounts had no "home" attribute, so I deleted it using "sudo nicl . -delete <dirID>". The only difference between the other accounts is the value of the "copy_timestamp" attribute (it differed by 20 seconds or so). I blindly removed the record with the later copy_timestamp value, after which I was able to login to the mobile account normally.
    Interestingly during the login, I pinged the machine rapidly over ssh, running the "nicl . -list /users" command. I could see the original directory ID. Then for a while a new directory ID appeared and the old one was gone. Then both the old and the new appeared. Finally, after the successful login, the old directory ID was back. I guess the mobile account login process is constantly banging on Netinfo.
    Another thing to note is that when I go to Workgroup Manager (10.5) and bring up the Mobility > Acount Creation preferences, they show up with the "Never" and "Always" buttons half-selected ("-"), as well as the one for the "Show "Don't ask me again" checkbox" setting. Guess the com.apple.MCX.plist file schema changed from 10.4 to 10.5. I will research the differences. Maybe I'll get lucky and stop this behavior from happening...

    The thing that causes the "-" half-slected buttons on the Account Creation tab is the absence of a value for the (new in 10.5?) attribute in the com.apple.MCX plist file. You can find this by using the Inspector in Workgroup Manager, getting the user account and editing the MCXSettings attrbute:
    cachedaccounts.WarnOnCreate.allowNever
    otherwise known as "Show Mobile Account Dialog's Never Option" if you look in the Details tab of Workgroup Manager,
    otherwise known as "Show "Don't ask me again" checkbox" if you look in the Account Creation tab of Workgroup Manager.
    Pet peeve -- three different terms for the same thing?

  • Setting up mobile accounts to delete after logout issues

    Running a network with about 2,000 users. Due to the amount of time to login the sever at each workstation we set up about half of them to sync and to be mobile account within workgroup manager. We have the settings as followed for the sync....
    create mobile account when users log in
    and making network home and default sync setting.
    delete mobile account after 0 hours (originally set to 5 days)
    delete only after successful sync
    for the rules we are using preference sync always, but not in background. Same for home sync rule.
    So at first the users were logging in very fast and working great, the 1st 3 or 4 days we set up the delete mobile accounts to delete in 5 days. 2 days later we changed it to 0. in that time being about 300+ users logged in with the setting set to 5 .about 1 week later after changing the account expiry from 5 days to 0 hours most users started to get sync errors (from 10, 200+ errors) we looked into it a bit and noticed that under root/users...the users home directory were not being deleted fully, the entire folder is suppose to be deleted but instead it was only deleting downloads, pictures, videos ect, and it was leaving about 3 folders within its home. (documents, desktop and something else)
    we noticed once that happened to a user, when they would to log out and try to log into the same work startion we would get an error stating
    "unable to create mobile account, there was a problem while creating or accessing /user (then says users name)"
    This issue is due to that work group manager is not fully deleting the synced account. If we go in as root and deleted the users home in HD/users, they user was able to log back in with no problem and it recreates its mobile home and works perfectly.
    but as of now we have a hand full of users with this issue. please advise.
    we are using workgroup manager version (10.6 ) 361.1.1

    Hi
    All local users have rwx and no permissions for groups or others on Desktop, Documents etc. as they should.
    Mobile users have rwx and groups and others have rwx also on every folder. 06hstest is a mobile user
    drwxr-xr-x 12 06hstest SGCSD\do 408 Feb 1 12:48 .
    drwxrwxr-t 11 root admin 374 Feb 2 10:09 ..
    -rwxrwxrwx 1 06hstest SGCSD\do 3 Jan 19 13:37 .CFUserTextEncoding
    -rwxrwxrwx 1 06hstest SGCSD\do 6148 Jan 29 11:51 .DS_Store
    drwxrwxrwx 6 06hstest SGCSD\do 204 Feb 1 12:48 Desktop
    drwxrwxrwx 26 06hstest SGCSD\do 884 Feb 1 12:48 Documents
    drwxrwxrwx 11 06hstest SGCSD\do 374 Feb 1 12:48 Library
    drwxrwxrwx 4 06hstest SGCSD\do 136 Feb 1 12:48 Movies
    drwxrwxrwx 4 06hstest SGCSD\do 136 Feb 1 12:48 Music
    drwxrwxrwx 5 06hstest SGCSD\do 170 Feb 1 12:48 Pictures
    drwxrwxrwx 4 06hstest SGCSD\do 136 Feb 1 12:48 Public
    drwxrwxrwx 7 06hstest SGCSD\do 238 Feb 1 12:48 Sites
    Thanks,
    Martha

  • Issue with Applications, file paths, mobile accounts in snow Leopard OD

    Hello Everyone,
    The Facts:
    2 x Xserves running Snow Leopard 10.6.2 Server
    (1 is a Open Directory Master, the other a backup/slave)
    About 20 end-users running 10.5.8 Leopard and 10 end-users running 10.6.2 Snow Leopard on MacBook Pro laptops.
    All laptops are Managed Mobile clients with full administrative privileges/rights for the local drive.
    The Issue(s):
    Having an odd issue with many applications like Microsoft Word, Adobe Photoshop etc. not remembering the last used file path and the default network home path showing up instead of the local one.
    This issue ONLY appears with the Snow Leopard clients and the Snow Leopard Server. No matter what, the default path will be the enduser's network home path. This leads to endusers constantly having to sync their home folders to get the copy or losing files altogether.
    The Leopard clients are unaffected, can save to the local hard drive by default and have no issue "remembering" the last accessed file's path (whether local or on the network).
    What gives? What changed? Any thoughts, workarounds, fixes most appreciated.

    Okay, I'll rephrase the issue
    When the Snow Leopard clients are connected to the network and can connect to the OD Master etc, the default path for saving files to the desktop changes to their network accounts e.g. afp://Server/Users/Enduser/Desktop. If they save a file, it will copy here and then the enduser has to synch to get a copy of the file on their local desktop.
    If the client is not connected to the network, no issue. Enduser can save files to the local desktop like normal.
    How do we change this such that the enduser can save to the local harddrive first regardless of being connected?
    All Snow Leopard Clients are mobile accounts which synch hourly the full profile.
    Any further thoughts or similar experiences gang?
    Something we could possibly change in the mcx settings perhaps or am a I missing the point?

  • Mobile account no longer syncs since 10.6.7 client update ??

    My mobile account no longer connects and syncs to our network samba store since upgrading to 10.6.7 (client)
    This is no fun
    29/03/2011 09:59:33 com.apple.coreservicesd[73] NOTE: Using non-mach-based version of client -> server communication, via direct function calls.
    29/03/2011 09:59:33 com.apple.coreservicesd[73] NOTE: Using non-mach-based version of client -> server communication, via direct function calls.
    29/03/2011 09:59:33 /usr/libexec/mount_url[3787] smb_mount: mount failed to myserver.com/myusername : syserr = Authentication error
    29/03/2011 09:59:34 /System/Library/CoreServices/NetAuthAgent.app/Contents/MacOS/NetAuthAgent[3788] smb_mount: mount failed to myserver.com/myusername : syserr = Authentication error
    29/03/2011 09:59:34 /System/Library/CoreServices/NetAuthAgent.app/Contents/MacOS/NetAuthAgent[3788] smb_mount: mount failed to myserver.com/myusername : syserr = Authentication error

    Hi welly
    I just got a similar issue and possibly found a (really ugly) workaround.
    My Mobile Clients do their initial sync fine, also background sync worked as expected. I ran into troubles as soon as I tried to sync manually. And the logout syncs didn't work at all. The issue only occured on third party smb servers, afp currently works fine for me with the same configuration.
    Additionally the poor clients desperately try to connect to the network home again and again and again and thus cause a lot of very ugly traffic on the network.
    I kind of "solved" this as I realized that other shares from the same server are mounted on the machines as well. I unmounted them with the Finder and suddenly all the syncs worked like a charm..
    I'm really curious if this is a newly introduced bug with 10.6.7 or 10.6.6, I had machines with 10.6.5 (or was it 10.6.4?) properly running with mobile accounts in the same setup.
    Here are my error messages from system.log
    Jun 21 15:02:36 machinename gssd-agent[403]: Error returned by svc_mach_gss_init_sec_context:
    Jun 21 15:02:36 machinename gssd-agent[403]:           Major error = 851968: Unspecified GSS failure.  Minor code may provide more information
    Jun 21 15:02:36 machinename gssd-agent[403]:           Minor error = 100005:
    Jun 21 15:02:36 machinename /System/Library/CoreServices/NetAuthAgent.app/Contents/MacOS/NetAuthAgent[402]: smb_mount: mount failed to serverfqdn/home$ : syserr = Authentication error
    Jun 21 15:02:36 machinename gssd-agent[403]: Error returned by svc_mach_gss_init_sec_context:
    Jun 21 15:02:36 machinename gssd-agent[403]:           Major error = 851968: Unspecified GSS failure.  Minor code may provide more information
    Jun 21 15:02:36 machinename gssd-agent[403]:           Minor error = 100005:
    Cheers
    See

  • Mobile account users can not log on to the snow leopard server machine?

    Hi all,
    I've setup a network user and designated it as a mobile account. ** OS X 10.6.2 **
    When the user logs out of the snow leopard server machine, home sync tries to sync the local and network home directories. It is never able to connect. The network home directory is automounted and is not the default path /Users. I can see the two home directories on disk.
    Anyone else able to have their mobile users log in to the snow leopard server machine without issues?
    OS X 10.6.2 **

    It was the Sync server was down and did not know it

  • Setting Up Mobile Accounts to For Users Who Already Exist

    Hi there,
    I work for a company with about 10 Macs, all laptops, all are on 10.5.
    They have never had a server and have asked me to set one up for them. I am in the process of setting up a server here with a new copy of OS X Server 10.5. Here's my question.
    The people here are half-wits and any kind of backup which involves them, you know, actually doing anything is never going to happen.
    My thought was to set up Mobile accounts for all of them s this provides seamless syncing and no issues if they leave their office, The problem seems to be to set up a mobile account seems to require a new user where all the people here already have home folders/stuff on their personal laptops (we don't share computers). The user I create on Open Directory seem, even if i give them the same details of the current user on their laptops, to be different. Is there a way to make this work or should I just make them all Time Machine backups to the server instead?
    Thanks,
    Ben

    So create a csv file with the following headers and data
    UserID, Alias
    UserID should be the user SamAccountName, and the Alias is the Mailbox Alias that you want to set. Supposing that the csv file is named users.csv and located under C:\ , open the Exchange Management Console and run:
    $users = Import-Csv c:\users.csv
    Foreach ($user in $users) {
    Enable-Mailbox -Identity $user.UserID -alias $user.alias -database 'DB1'
    Set-Mailbox -Identity $user.UserID -IssueWarningQuota 1.5gb -ProhibitSendQuota 2gb 
    Please Mark As Answer if this helps
    ammarhasayen

  • Trying to create a VM using reserved IP but getting error "Must specify MediaLocation or set a current storage account using Set-AzureSubscription"

    I have created a reserved Ip and wanted to create a VM using the reserved IP. I had also created  aimage of existing Vm to create the new VM and I have used command on Windows Powershell as mentioned below.
    New-AzureVMConfig
    -Name
    "Amazon-10eBay-1" -InstanceSize
    “Small” -ImageName
    “Amazon-10-Image” | Add-AzureProvisioningConfig
    -Windows -AdminUsername
    “Akash” -Password “Stoneindia11” |
    New-AzureVM
    -ServiceName
    "Amazon-10eBay-1" -ReservedIPName
    "ResIPamazon10eBay1" -Location
    "West US"
    But its showing error "Must specify MediaLocation or set a current storage account using Set-AzureSubscription".
    I have been trying to create this Vm from many days but not able to create one. Please help

    Hello,
    Microsoft Azure forums are over here:
    https://social.msdn.microsoft.com/forums/azure/en-US/home
    Karl
    When you see answers and helpful posts, please click Vote As Helpful, Propose As Answer, and/or Mark As Answer.
    My Blog: Unlock PowerShell
    My Book:
    Windows PowerShell 2.0 Bible
    My E-mail: -join ('6F6C646B61726C406F75746C6F6F6B2E636F6D'-split'(?<=\G.{2})'|%{if($_){[char][int]"0x$_"}})

Maybe you are looking for