Mobile account folders failing to sync
Hello All,
Having a strange problem with syncing mobile folders on our Mac clients.
We are running an OSX server with Mountain Lion that has open directory on it and this essentially just validates with our Windows domain controller that is using active directory. All of our Mac clients are running Snow Leopard and everything seems to be operating swimmingly except for one issue…
We have mobile accounts set up, so that users can gain access to their Windows based ‘my documents’, ‘my music’ and ‘my pictures’ folders. Everything seems to sync fine except that sometimes when users try to log off, or try to sync their data manually, the process fails. It will either claim that username/password details could not be validated then hang, or it will say that the user’s password has expired and lock them out of their accounts (which we then need to unlock in Active Directory).
After checking the logs on the client machines there are a couple of noteworthy errors:
SMB_Mount – Mount failed to SMB://Storageserver.co.uk/staff$ - syserr = Authentication error
And
SMB_Mount – Mount failed to SMB://Storageserver.co.uk/staff$ - syserr = Unknown Error -5999
It seems to be very random and inconsistent as users can go a week or so without the problem occurring, and then have it happen twice in an hour. Has anyone experienced any issues with mobile accounts syncing?
Address sync with google inly works with 10.6
Similar Messages
-
HT3258 OS/X 10.6.8 Mail account now fails to sync to Mobile Me email
Some time this month, my iMac running OS/X 10.6.8 stopped syncing to my Mobile Me email account. I know that Apple was planning on cutting off ME but why did OS Mail stop working? WHat
If you are on a user account, get someone with administrator access to whitelist this websight:
https://s3.amazonaws.com
You would do this by going to:
System Settings> Parental Controls>
click the padlock to unlock this area (this is where administrator log in is required)
Click the user account that you wish to whitelist and then sellect the "web" tab
Here you might see a selected area like; "Try to limit access to adult websites automatically" and a "customize" button under it, or "Allow access to only these websites".
You can do two things from here, convince the admin you are an adult and ask they select "Allow unrestricted access to websites", or ask them to add the above website to the whitelist.
The white list under "Try to limit access to adult websites automatically" is found by clicking the "customize" button. Hit the "+" button under the top half section and paste the website I've provided there.
The white list under "Allow access to only these websites" is obviousely directly under it and you must click the "+" and then add the website I've provided there. -
Lion Server Setup (Network Login/Mobile Account and more...)
Hardware:
Mac mini Intel Core i7, 2 GHz, 8 GB memory (Server) x 1
iMac 21.5" 2.8GHz Intel Core i7, 12 GB memory (Workstation) x 6
Operating System:
Mac OS X Server Lion 10.7.4 (11E53)
Mac OS X Lion 10.7.4 (11E53)
Relevant Software:
Server.app Version 10.7.4 (1.4.3)
Workgroup Manager Version 10.7 (400.3)
Server Admin Version 10.7 (355)
So my head's swimming with "I dunno's" and I've been perusing probably all the wrong threads trying not to sound like a noob and find the literature that will finally lead me to a solution. This is my first rodeo so make no assumptions about my experience (maybe).
Short Version
I can't login network users. I get an error "You are unable to log in to the user account "<%short_name%>" at this time. Logging in using >console tells me this No home directory: <path to home directory> i.e. /Network/Servers/department.domain.com/Department/Accounts/bbunny
If anyone can point me where to read, I will do so.
Perhaps a longer discussion on how to verify that the proper permissions exist on the share/home directory in question and what those would be.
More detail...
I want to setup a Mac Mini server to have network login accounts stored on the 2nd data volume in a directory we shall call Accounts*. Here all the "network users/logins" have their home directories, so that when they login at the workstation the idea is the workstation will sync their account and allow them to login, if the server is not available, the hope is I can configure it to allow them to login if they've logged in before and the files will sync when they are able. That being the ideal, I get the impression that for best practices, Apple is discouraging the use of mobile accounts that use Home Sync perhaps because it's reliability has been iffy, please advise. A windows user might think of this as "roaming profiles" but, if I understand it, its a little more than that.
Note, I do not want to login to the server and actively work on that network share, I want the account to be local and sync'd as needed. But I want the user to be able to sit at any of the 6 other workstations and see the same documents, emails etc. Obviously if the server is down, it won't be possible to authenticate, but I think it should have cached credentials that should allow the user to login if the server is down and still go about their work.
This is the small picture...there is a larger picture that involves, parallel virtual machines of Windows Server 2008 R2 on server and and Windows 7 on the client, ical, ichat and perhaps wiki's.
I apologize for the roughness of this question, in the interest of brevity, I have plenty of problems that led me here that I can expound upon if asked.
Also a silly question someone might know the answer too, Why does the login payload settings that I have pushed to a workstation device, sometimes vanish inconsistently upon logout?Ok, Some Good news and clearer understanding to disseminate in this post I hope it helps
"the Universe" so I am posting it here in my "ever-the-noob" blog on apple forums.
Problem
What do you do when you get an error when logging into a mobile account setup?
One symptom would be the error message below...
"You are unable to log in to the user account "<%short_name%>" at this time.
Logging in using >console You get the message…
"No home directory: <path to home directory>"
or
"You are unable to log in to the user account "<%short_name%>" at this time.
Logging in using >console tells me this No home directory: <path to home directory>
Solution
Do the check list…
Short Version
Sever Admin.app > Access (Key Component)
Check Permissions on directories for your file shares.
(The reason stuff doesn't work especially when you're rebuilding/recovering a server)
File sharing setup (Turned ON, Home sharing Enabled)
Directory Utility > Directory Editor or dscl
( Do not underestimate the importance of this part!!!!
Use white-gloves when you're handling it though!!! )
Workgroup Manager
(You're poopy "main" interface that really is a "window", not a "door", but maybe Apple likes to do things "Dukes of Hazard" style?)
Long Version
Check Sever Admin.app > Access
Make sure that your user has the "Proper" access. For me I created a test user from Server.app and saw what access he had as a way to "check myself for a properly created users" and because I think one is kind of on his/her own using WGM and duplicated the same access. (I was a little neater, though and did it with a group, not individual users, that would have been a mess!)
Server Admin.app > Access
Click the "+" sign, sort by UID and Add the imported users to the following Services…
( You can use a group, but understand when Server.app creates users they get added
individually to each of these groups. )
Address Book
AFP
iCal
iChat
Mail
Profile Manager
SMB
VPN
Check Permissions on directories for your file shares.
(That's an understatement) I could go in depth about all the crap I had to read about, I still
know I am missing a chunk of tech brain when it comes to the particulars. Basically, I boil
it down to this…
Permissions require thinking about things first with regards to POSIX permissions... good
ole ls, chmod, chgrp, chown to the rescue with ugo permissions or the old 755, 600 etc
stuff.
Apple's file-sharing access uses this as a starting point to see what the user is allowed to
access.
I also needed to use chflags once to unhide a file that I mucked around with using xattr.
I still haven't figured out why folders can lose their triangles, but I didn't find out if you cp or
move them from terminal, the triangles come back in the moved or copied directory. For a
minute I thought it was because cp alone doesn't preserve flag attributes, but mv actually
works by doing a cp that preserves the flags, unless it's a bug. I dunno.
This helped me get my file visible again...
chflags hidden path_to_file
chflags nohidden path_to_file
Read up on those manuals, if you're not a terminal type go to apples website
http://developer.apple.com/library/mac/#documentation/Darwin/Reference/ManPages/
or download...
http://www.bruji.com/bwana/ I thought that was cool.
or if you prefer to read the manual in pdf try…
man -t sharing | pstopdf -i -o ./Desktop/Sharing\ Manual.pdf
man -t chown | pstopdf -i -o ./Desktop/CHOWN\ Manual.pdf
man -t chmod | pstopdf -i -o ./Desktop/CHMOD\ Manual.pdf
man -t chgrp | pstopdf -i -o ./Desktop/CHGRP\ Manual.pdf
My basic guideline was avoid using ACLs if at all possible, if you try to use them, things
can get crazy complicated, take notes and plan, baby. If you read above, opening up
permissions wide is wrong though. You would restrict permissions tightly to begin with and
then place ACE (Access Control Entries) to specifically target the rights you want to enable.
Here's one that's obviously a novice attempt to do this, but since the novice is the only one
speaking…. here it is, Universe… >:P
sudo chmod -R +ai "admin allow read,write,delete,file_inherit,directory_inherit,search,list" Department/
That allowed my admin to do all the things a normal user could do so far… It fixed things for
my admin, which made me happy. I really hate having to authenticate or sudo just to see
the contents of a nested directory. I could explain it, and even give a few notes on why its
probably overkill, but I will attempt to look less stupid till "poked".
There's another command line utility I STILL haven't read, which may bear mentioning
because…well I haven't read it. umask (see wikipedia or unix.com)…I worked past my
problems without going into it so far, but obviously it's there, and it serves a purpose.
I also found this article helpful…and educational. :O
http://www.bresink.de/osx/300321023/Docs-en/pgs/ACL.html
( Its enlightening to hear the air whistling between a developer/coder's ears, still it's
apparent he has a clear idea what's going on.
Ever wonder why when you use get info to check or assign permissions it kind of
flakes out and doesn't take? Read this article! )
Second, if you can't obtain the "specific" permissions you need with POSIX, chmod also
can set the 2nd category of permissions, which windows users may be familiar with
Access Control Lists (ACLs) and here you get some really fine granularity...messy stuff.
All in all, if I felt I could guide you through these murky waters, I would, but I think I'll let
the professionals weigh in on that one and cut my wall-of-text to ribbons.
To heuristically check I would connect from a client as one or two of my users and see what
folders I could mount as a share, armored with an understanding of what ls -le@O * showed
me in Terminal.
3.) File sharing setup (Turned ON, Home sharing Enabled)
Here is an example of using command line sharing utility where each share is properly
labeled (that took a bit for me to figure out) still this share only enables the AFP share as
you can see from my flags.
sudo sharing -a /Volumes/Hard\ Drive/Department/Database -A Database-afp -F Database-ftp -S Database-smb -n Database -s 100 -g 000 -i 10
Then you do a sudo sharing -l and get back what you just did…
List of Share Points
name: Database
path: /Volumes/Hard Drive/Department/Database
afp: {
name: Database-afp
shared: 1
guest access: 0
inherit perms: 1
ftp: {
name: Database-ftp
shared: 0
guest access: 0
smb: {
name: Database-smb
shared: 0
guest access: 0
If you mess up the sharing command, you may not be paying attention (I wasn't) but there
are a lot of defaults that Apple will just assume you meant to do anyway and it won't read
any of your flags, you have to get it right or the flags will be defaulted.
( Basically I could tell I was bombing it for one, I explicitly only wanted afp working, but
the default was afp and smb. So each time I ran sudo sharing -l after I shot my sharing
command…back would come smb shared: 1 and I knew that wasn't right. Also my
custom names were defaulting to the name of the directory not the name I had
specified. )
I like to know what protocol my share is over so when it doesn't work, I know which protocol's
are connecting. It's not full-proof, but it's a bookmark. I wish the network browser would
identify the protocol that its available listed shares are using, because small visual queues
like that help when you're trying to see what works. Maybe that's something I should
investigate via the command line?
As a note about reading forums, I discovered using command line that "\" is kind of like a
way of going to next line neatly with long commands…."\ " is a way to insert a space. As you
can see above where I have a volume with a space in it.
Removing shares was a little trickier though, sharing -r Share\ With-space didn't work….I
had to enclose it in quotes and do "Share With-space" instead. So nooby beware!
( *nix users are now rolling their eyes at this tip. )
I wasn't sure how you enabled a share for home directories from the command line, maybe its
in the manual, but I was up to my eyeballs in manuals already so I haven't gone back to
revisit this question since my work around was to go to Server.app and verify that what I set
up in the sharing in terminal was being reflected in the gui…sort of my own MVC
(model-view-controller) check.
4.) Directory Utility > Directory Editor or dscl
Make sure what you see in WGM and Server.app are reflected here….to that question let's
take a journey where I did some exploring about that.
Ever really wonder "WHY CAN"T I REMOVE AN OLD HOME DIRECTORY SHARE?!!!"
Ah, then you will - LOVE - this tip…
( Provided my testing or yours, later, doesn't prove that in my ignorance I've broken
Open Directory. Remember, WHITEGLOVES!!!! but here we get a little dirty. I think of
OD as Apple's Registry, but that's not what it is at all. However, you as the user do have
to "****" around in it from time to time. )
I scoured the forums and everyone was saying things like "You have to change your server
role" etc. which seemed a little bit dumb to me (dumb because you're pushing views around
not "controlling"), and well, yea, that share that I couldn't modify or delete was REALLY
bugging me.
Now hmm… Before you do ANYTHING, how do you try to not hurt yourself…in Windows you
can make a Registry Backup….(yea bad analogy) In Server Admin.app you can go to your Open
Directory Service > Archive and Choose a place to Archive your information. (Figure this out by
yourself, this is getting long…sheesh! It's easy. Restoring is just as easy and painless.)
Before we can remove the entry we "SEE" in WGM we should make sure no
one has it selected so as not to "corrupt" the OD db, so in WGM first before going to Directory
Utility set the Home directory to "None". (We need to remember to set this to a correct share
later….Mental Note!!!)
Now Open Directory Utility
Method 1
System Preferences > Users & Groups > Login Options
Click the Lock to make changes…
Authenticate -> click "OK" (do I REALLY have to step-by-step this?)
Network Account Sever: • Local Server - click "Edit" button here.
Open Directory Utility > Directory Editor
( Wow, did Apple hire someone from Microsoft? You'ld think with all their research in to
Human Interface Design that's WAY too many clicks to get to something you need. )
or
Method 2 (It's good to know about this directory, neat-o speed-o app's hidden here.)
Use "Go to Folder" Under Finder > Go > Go to Folder...
⇧⌘G /System/Library/CoreServices/
Click "OK"
and Double click Directory Utility.app
or
Method 3
Terminal
open /System/Library/CoreServices/Directory\ Utility.app/
Now From the Directory Editor Pane you will see a Pop-up menu Labeled "Viewing"
You should glance through this and get to know it. You should use it to see what
information is really being stored about your Users, Groups, Mounts…
We are interested in Mounts, which is where we want to go…and there is the pesky
mount that you will see reflected in WGM.
Authenticate, and delete the bugger.
Quit WGM and restart it. Voila, bad share is GONE!!!!!
a.) First select all my users
b.) Then I clicked on the "+" and added the correct share
( Remember, I only showed you the first one we created, this is another and
for THIS one you HAVE to go into Server.app and verify that it is set to be
available for Home Directories in this case for AFP. )
For the home directory entry you do this...
afp://computer.domain.com/Accounts-afp
%short_name%
/Network/Servers/computer.domain.com/Volumes/Hard\ Drive/Department/Accounts/%short_name%
%short_name% is a wild card for the short name there are other wild cards check out Apple's
Documentation on them. I lost the link sorry \<shrug\>
Interesting dscl commands…(check it out in command line form and compare side by side with
what you see in the GUI Directory Utility)
dscl . list /users
dscl . list /groups
If you want to output information about each user, though, use readall:
dscl . readall /users
dscl . readall /groups
And if you need to programatically parse said information, use -plist to make your life easier:
dscl -plist . readall /users
dscl -plist . readall /groups
This made a little more direct sense to me, language wise…but fyi "." is kind of a wild card I think so the first
commands I think look in ALL directories local, Search, LDAP whatever you have. The command here
corresponds to the Entry from the Pop-up menu "…in node > Blah…" see GUI of Directory Utility to confirm.
dscl /LDAPv3/127.0.0.1 -list /Users
dscl /Local/Default -list /Users
5.) Workgroup Manager
Remember this is a utility that is not long for this world. Apple's Mountain Lion is rumored to fully
replace it, why? Yea, Apple's making a go at MDM (Mobile Device Management) and somehow
desktop computers are being pulled/dragged along for the ride. I have plenty of issues with
Profile Manager, but I'll likely revisit it in a couple of months and see where we stand.
Anyway, treat this baby like the bottom rung, because, well it is built like you start your
foundation here, but it's just a viewer with controlling "tweaks". Use the other areas to get a solid
grasp of what is actually going on. Server.app is where you should create accounts you can
feel are safe. When you create accounts in WGM, you are responsible for making sure they
have the appropriate EVERYTHING.
This list is by no means complete, but these are the areas this noob is or was prepared to talk about.
Good night for now. Enjoy climbing my wall of text, and yea sorry about that. :O Run for you lives!!!!
- Signed Shadowwraith -
Cannot login with mobile account when server is switched off
Hello all,
First of all, my condolences to the Jobs family.
OK. On with my problem. I apologise in advance if this has been answered before. I've trawlled through various boards and I can't seem to find an answer.
I'll try to keep it brief.
I've set up a mac mini with lion server. Done all necessary updates.
I have a lion macbook which is the client.
On server, created an Open Directory etc..
I created 2 mobile network accounts on the server. Set preferences etc.. Added both to workgroup.
Added the client to the domain in system prefs login options.
Logged into the 2 accounts on the client. All working well. Can see my mounts. Mobile accounts created successfully and syncing working.
So, the problem I have is, when I shutdown the server, my mobile accounts on the client disappear. Also, the login screen states, 'Network accounts are unavailable.'
I've been looking at this for a week now and it's driving me mad. I must have missed something - can anyone shed any light on this please?
With thanks, Paul.oh well - gave up and reinstalled lion server.
GROAN! -
Mobile accounts sudo Password dont work
i have mobile accounts which stay in sync with homesync to the server.
we i want to change some settings sudo in terminal on the mobile account it always say wrong password but use the admin password of the computer!?If I am understanding your problem it sounds similar to what I considered to be a bug introduced way back when Tiger came out.
A mobile account on say a laptop cannot do sudo even if you know and use the correct local admin password. The same mobile account can enter a valid admin name and password in to a GUI dialog box to authenticate. I did report this to Apple but they did not seem to agree or understand.
A workaround I found was to do the following
su admin
enter password
sudo command
enter password
That is a mobile account can switch user to an admin account in Terminal and then from that do the sudo command as normal. -
Mobile Accounts - Sync of iCal and Desktop Background Fails
I just set up mobile accounts and mobile home syncing on my computers so network users have a local home rather than just their network home. However it is interesting to me that the desktop picture is independent of the network home. That is to say, each machine has its own desktop picture for any one account.
However iCal does the same thing and thats a problem for me. For example, if I set up iCal to sync with my gmail on on computer, the other computers will not do it. I'm trying to avoid going into every computer and setting up the calendar preferences because that would be a pain in the tail.
Any clues?Ditto. I am having the same problem. I don't understand why ~/Library/Application Support/ doesn't sync. There are two entries in the exclusion list, but none of them would prevent Mail, iCal, AddressBook, or iChat from syncing their configuration (.plist) files.
The only reason I bought this Mini Server was to manage these portable home directories (or Mobile Accounts) so that my family could login on any Mac and have their account all setup with everything configured and files available as if they were on their primary Mac.
Really a bummer! -
Problem syncing Mobile account home folder
I'm trying to get mobile accounts working correctly so that i can support users (including myself) having laptops and iMacs with files all in sync. My initial tests seem to go well, but when I started moving the first user account over (mine) I noticed a number of errors appear. Here is an example of what I'm currently working on (I've trimmed it down to just before the error message):
<hr>
Client ~/Library/Logs/FileSyncAgent/FileSyncAgent-verbose.log:
<Logout> 1:: \[10/06/16 15:22:57.357] <OK> network: MODIFY "Library/Preferences/com.apple.recentitems.plist" {(Priority=1, EXECUTING)}
<Logout> 1:: \[10/06/16 15:22:57.387] <OK> network: MODIFY "Library/Preferences/com.apple.systemuiserver.plist" {(Priority=1, EXECUTING)}
<Logout> 1:: \[10/06/16 15:22:57.417] <OK> network: MODIFY "Library/Preferences/com.apple.Terminal.plist" {(Priority=1, EXECUTING)}
<Logout> 0:: \[10/06/16 15:22:57.435] EXCEPTION: \[data writeToFile:'/Volumes/Users/synctest/.FileSync/PHD-R-wO-0oQq9MqC-synctest.FileS yncHistory' options:0 error:&error] (Cocoa error 512) <-\[SStoreFileOperator_FS writeFileData:] (StoreFileOperator-FS.m:1091): "(Error Domain=NSCocoaErrorDomain Code=512 UserInfo=0x102fdd8c0 "The file “PHD-R-wO-0oQq9MqC-synctest.FileSyncHistory” couldn’t be saved in the folder “.FileSync”." Underlying Error=(Error Domain=NSPOSIXErrorDomain Code=35 "The operation couldn’t be completed. Resource temporarily unavailable"))">
<Logout> 0:: \[10/06/16 15:22:57.435] USERINFO: {
<Logout> 0:: \[10/06/16 15:22:57.435] NSFilePath = "/Volumes/Users/synctest/.FileSync/PHD-R-wO-0oQq9MqC-synctest.FileSyncHistory";
<Logout> 0:: \[10/06/16 15:22:57.435] NSUnderlyingError = "Error Domain=NSPOSIXErrorDomain Code=35 \"The operation couldn\U2019t be completed. Resource temporarily unavailable\"";
<Logout> 0:: \[10/06/16 15:22:57.435] }
<Logout> 0:: \[10/06/16 15:22:57.435] BACKTRACE: {
<Logout> 0:: \[10/06/16 15:22:57.435] ? | 0x1000bc73c
<Logout> 0:: \[10/06/16 15:22:57.435] ? | 0x1000b9eec
<Logout> 0:: \[10/06/16 15:22:57.435] ? | 0x100066a00
<Logout> 0:: \[10/06/16 15:22:57.435] ? | 0x100065fe6
<Logout> 0:: \[10/06/16 15:22:57.435] ? | 0x1000c8f1a
<Logout> 0:: \[10/06/16 15:22:57.435] ? | 0x7fff800cbe8d
<Logout> 0:: \[10/06/16 15:22:57.435] ? | 0x7fff820a3456
<Logout> 0:: \[10/06/16 15:22:57.435] ? | 0x7fff820a3309
<Logout> 0:: \[10/06/16 15:22:57.435] }
<Logout> 1:: \[10/06/16 15:22:57.544] -\[SStore(protected) cleanupTree]: PHD-L-iI.arrVC0G4-synctest: required 0.0 seconds to execute
<Logout> 1:: \[10/06/16 15:22:57.557] Store "PHD-L-iI.arrVC0G4-synctest" finished syncing with root version PHD-L-iI.arrVC0G4-synctest1276714848PHD-R-wO-0oQq9MqC-synctest1276714849\[]
<Logout> 1:: \[10/06/16 15:22:57.558] -\[SStore_FS deleteStateTreeTurdFile] (Store-FS.m:481): unlink('/Users/synctest/.FileSync/store.filesyncstatetree.statetree_dirty')
<Logout> 1:: \[10/06/16 15:22:57.737] Store "PHD-R-wO-0oQq9MqC-synctest" finished syncing with root version PHD-L-iI.arrVC0G4-synctest1276714848PHD-R-wO-0oQq9MqC-synctest1276714849\[]
<Logout> 1:: \[10/06/16 15:22:59.041] Compress/upload of "/Volumes/Users/synctest/.FileSync/Store-FS-PHD-network-home.filesyncstatetree. bz2" took 1.30 seconds
<Logout> 1:: \[10/06/16 15:22:59.041] -\[SStore_FS deleteStateTreeTurdFile] (Store-FS.m:481): unlink('/Volumes/Users/synctest/.FileSync/Store-FS-PHD-network-home.filesyncsta tetree.bz2.statetree_dirty')
<Logout> 1:: \[10/06/16 15:22:59.043] 1-pass sync of "HomeSync_Mirror" took 4.75 seconds
<Logout> 0:: \[10/06/16 15:22:59.374] Finished sync of "HomeSync_Mirror".
1:: \[10/06/16 15:22:59.914] -\[MainObj shutdownAgent]
0:: \[10/06/16 15:22:59.949] EXCEPTION: User Cancelled <_incomingIPC (ipc.m:210): "'((userCanceledErr))' error -128">
0:: \[10/06/16 15:22:59.949] USERINFO: {
0:: \[10/06/16 15:22:59.949] NSLocalizedDescription = "User Cancelled";
0:: \[10/06/16 15:22:59.949] }
0:: \[10/06/16 15:22:59.949] BACKTRACE: {
0:: \[10/06/16 15:22:59.949] ? | 0x10000e2a8
0:: \[10/06/16 15:22:59.949] ? | 0x7fff82d74af1
0:: \[10/06/16 15:22:59.949] ? | 0x7fff82d0f171
0:: \[10/06/16 15:22:59.949] ? | 0x7fff82d0d84f
0:: \[10/06/16 15:22:59.949] ? | 0x1000049d9
0:: \[10/06/16 15:22:59.949] ? | 0x7fff820a3456
0:: \[10/06/16 15:22:59.949] ? | 0x7fff820a3309
0:: \[10/06/16 15:22:59.949] }
1:: \[10/06/16 15:22:59.949] _incomingIPC: caught exception _incomingIPC (ipc.m:210): "'((userCanceledErr))' error -128"
0:: \[10/06/16 15:23:00.669] Bye (PID:2246)
<hr>
Server ~/Library/Logs/FileSync-server/FileSync-server-verbose.log:
1:: \[10/06/16 15:22:54.616] PHD-R-wO-0oQq9MqC-synctest Scanning flagged directory "Library/"
1:: \[10/06/16 15:22:54.625] PHD-R-wO-0oQq9MqC-synctest Scanning flagged directory "Library/Preferences/"
1:: \[10/06/16 15:22:54.644] PHD-R-wO-0oQq9MqC-synctest Scanning flagged directory "Library/Preferences/ByHost/"
1:: \[10/06/16 15:22:54.665] Store "PHD-R-wO-0oQq9MqC-synctest" finished prepareForSync with root version PHD-L-iI.arrVC0G4-synctest1276714845PHD-R-wO-0oQq9MqC-synctest1276714849\[]
1:: \[10/06/16 15:22:54.671] -\[SStore_FS deleteStateTreeTurdFile] (Store-FS.m:481): unlink('/Users/synctest/.FileSync/Store-FS-PHD-network-home.filesyncstatetree.s tatetree_dirty')
1:: \[10/06/16 15:22:56.113] -\[SPeer_FS zip] (Peer-FS.m:361): unlink('/Users/synctest/.FileSync/Store-FS-PHD-network-home.filesyncstatetree')
0:: \[10/06/16 15:22:59.705] EXCEPTION: Unknown error 2002 <-\[SNetworkReachabilityMonitor init] (NetworkReachabilityMonitor.m:72): "(Error Domain=com.apple.SystemConfiguration Code=2002 UserInfo=0x100243d20 "The operation couldn<E2><80><99>t be completed. (com.apple.SystemConfiguration error 2002 - Configuration daemon not (no longer) available)")">
0:: \[10/06/16 15:22:59.705] USERINFO: {
0:: \[10/06/16 15:22:59.705] NSDescription = "Configuration daemon not (no longer) available";
0:: \[10/06/16 15:22:59.705] }
0:: \[10/06/16 15:22:59.705] BACKTRACE: {
0:: \[10/06/16 15:22:59.705] ?<C2><A0>|<C2><A0>0x100014831
0:: \[10/06/16 15:22:59.705] ?<C2><A0>|<C2><A0>0x100014688
0:: \[10/06/16 15:22:59.705] ?<C2><A0>|<C2><A0>0x7fff82ffb535
0:: \[10/06/16 15:22:59.705] ?<C2><A0>|<C2><A0>0x7fff8300963e
0:: \[10/06/16 15:22:59.705] ?<C2><A0>|<C2><A0>0x7fff83001eaa
0:: \[10/06/16 15:22:59.705] ?<C2><A0>|<C2><A0>0x7fff82ffa1ba
0:: \[10/06/16 15:22:59.705] ?<C2><A0>|<C2><A0>0x1000036c3
0:: \[10/06/16 15:22:59.705] ?<C2><A0>|<C2><A0>0x10007f4e0
0:: \[10/06/16 15:22:59.705] ?<C2><A0>|<C2><A0>0x2
0:: \[10/06/16 15:22:59.705] }
0:: \[10/06/16 15:22:59.705] Bye (PID:9460)
<hr>
Now I've not done much with OS X programming, but I've done quite a bit of Unix systems work. The client appears to be getting an EAGAIN error (essentially that the syscall didn't complete, but not that it failed). Ideally, it should try again, and perhaps there is something I can set that will have it do a couple of retry attempts before giving up?
However, the error on the server side is the likely culprit. I don't know what the error message regarding com.apple.SystemConfiguration means, but my googling for hints implies that it is some sort of error connecting over the network. To try and debug that, I had both machines connected to the same switch with firewalls turned off and the error continues. The previous lines imply that it is trying to delete a file that it created from the local disk. What bothers me about that is that in the WGM I set the home directory to be "afp://servername/Users" and it shows that it should be either "afp://servername/Users/synctest" or "/Network/Servers/servername/Users/synctest" but the server is accessing the home folder directly, so why an issue with network reachability?
Can anyone offer any hints as to what I should be looking for? I had hoped that PHDs would solve the whole multiple computer issue, but they don't seem to be working reliably for me. Since I get this issue consistently I'm guessing that there is something misconfigured on my end.Shawn,
I've done the deletion of those folders a number of times, with no luck.
The most recent attempt to get this to work was:
1. Delete ~/.FileSync and ~/Library/FileSync from the server machine.
2. With a brand-new install of OS X on a laptop, create a local administrator, join the server, then login as the user account that wants a mobile account
3. Look at logs
I still get an exception on the server
0:: \[10/07/31 13:39:47.791\] EXCEPTION: Unknown error 2002 <-\[SNetworkReachabilityMonitor init\] (NetworkReachabilityMonitor.m:72): "(Error Domain=com.apple.SystemConfiguration Code=2002 UserInfo=0x10027adc0 "The operation couldn<E2><80><99>t be completed. (com.apple.SystemConfiguration error 2002 - Configuration daemon not (no longer) available)")">
0:: \[10/07/31 13:39:47.791\] USERINFO: {
0:: \[10/07/31 13:39:47.791\] NSDescription = "Configuration daemon not (no longer) available";
0:: \[10/07/31 13:39:47.791\] }
0:: \[10/07/31 13:39:47.791\] BACKTRACE: {
0:: \[10/07/31 13:39:47.791\] ?<C2><A0>|<C2><A0>0x100014831
0:: \[10/07/31 13:39:47.791\] ?<C2><A0>|<C2><A0>0x100014688
0:: \[10/07/31 13:39:47.791\] ?<C2><A0>|<C2><A0>0x7fff82ffb535
0:: \[10/07/31 13:39:47.791\] ?<C2><A0>|<C2><A0>0x7fff8300963e
0:: \[10/07/31 13:39:47.791\] ?<C2><A0>|<C2><A0>0x7fff83001eaa
0:: \[10/07/31 13:39:47.791\] ?<C2><A0>|<C2><A0>0x7fff82ffa1ba
0:: \[10/07/31 13:39:47.791\] ?<C2><A0>|<C2><A0>0x1000036c3
0:: \[10/07/31 13:39:47.791\] ?<C2><A0>|<C2><A0>0x10007f4e0
0:: \[10/07/31 13:39:47.791\] ?<C2><A0>|<C2><A0>0x2
0:: \[10/07/31 13:39:47.791\] }
0:: \[10/07/31 13:39:47.792\] Bye (PID:38660)
as well as the corresponding error on the client.
I'm quite frustrated with the whole situation at this point. I'm sure some folks have gotten it to work, but since it has exceptions like this silently, it slowly corrupts the data in an account. I still want to get it to work, but am skeptical that it will.
Message was edited by: Benjamin Kuperman -
I have a problem syncing iCal on my Macbook air (10.7.5) and my iPhone 4s (5.1.1) over iCloud. The following server error message comes up "The request (CalDAVAccountRefreshQueueableOperation) for account “iCloud” failed." Been to Apple Store - no luck instore, or with Super genius over the phone when with genius in store, taking data in real time via ethernet!
I had to do a full wipe of my system because of time machine back up issues 2 weeks ago, and the error has only occured at some point since then. I only did a drag and drop of my user account folders/files into an External HDD rather than a copy of my user account (advised by the staff in store at Apple to do this) and when reimported, the Mail folders are all present but each message is in a sub-sub-sub folder that is numerically named. I do not have a mirror image of the hard disk prior to the wipe, only a time machine back up from 2 weeks prior to it being done. I am uncertain if this reinstall has caused the issue.
I am not happy to upgrade the software in my iPhone until I have the calendars working. I have purchased Mountain Lion, but again am concerned about upgrading until the issues are sorted.
I have tried the other solutions on here with no luck. HELP please.
Many Thanks.Progress Update.
I made a back of what existing phtos and Videos I had on my Iplhone. I used Image capture to do this making an entire back up of photos and videoa that were still intact on the phone.
Image capture is god for this purpose, as it does exactly what you ask it to do without applying any rules or squishing the files back into iphote (which might also be corupted)
Image capture wil do the basic function of retriving the contents of the phone and save them as native files on your hard drive.
Once I did this I erased my iphone, and re intitialised it restoring an older back up from icloud.
As the retore was happneing - I did retreive the missing files that cuased the intial beviour as above, and I could play the videos that were missing in the above scenerio. The wierd ting was however that even though the source files were now back on the device, the thumbnail previews were missing. Where I ahd balck thumb nails for server portions of the resotred content.
I then went to bed as the restore is a long process. When I woke up the library had library had cleaned itself up. Mysteriously the prcess had deleted the files missing the their thumbnails.
This is very perculiar and bad behavior.
I am now repeating the process, and will attempt to download the missing content as it is restored and prior to the phone trying to fix itself.
Here are the lessons learned.
DO NOT rely on Photo Stream to keep back ups and synchornise videos from you IOS device. IT DOES NOT SUPPORT THIS CAPBILITY
DO NOT rely on iCloud Back Up alone - always fd an occassional iTunes back up or more reliably still always take a back up of photos and video files using Image Capture to be doubly sure that you a have backd up any content.
DO THIS NOW - dont wait to loose your phone ofr have your phone repaired by replacement at the apple Store. (I did both :-( -
How do i reconnect mobile account home folders after re-install?
we have problems with our server interfering with the college server. It kept changing our hostname so i had to enable DNS on the second ethernet port on xserve which prevented it from changing it but now is messing up the network as our server is being used for dns by the rest of the college. So i either need to restrict our dns to only answer queeries from specific addresses i.e my laptop and colleagues and forward all of the rest to another dns server. Or i have to re-install the osx server software and change the name to correspond with their servers given name for our xserve. The problem with re-installing it is that the students have a lot of work in their home folders which i can't loose. But i'm aware that the mobile accounts will be tied to the old domain name. Is their any tips you can give us so that i don't loose their home folders and it will sync back the client machines after i have put the new domain name on. I'm also aware that you can export the usernames from workgroup manager but not the passwords. Is there anything else i need to do so that i can just reconnect their accounts to the existing home folders after re-install? In other words i need to know the easiest way to do this to reduce dissruption to students files? Any ideas would be greatly appreciated! Also will i have to delete the students local folders on their imacs and sync back from the server again?
ok reinstalled everything dns seems to be working have done sudo changeip -checkhostname and it says that both names match but then i started open directory and can't seem to get Kerberos started, i've tried changing it to stand alone then back again but it does nothing. I'm wondering why this would happen? i've tried adding a kerberos record but it doesn't do it just does nothing so i don't know what i'm doing wrong. I wondered if it might be a problem with the two network cards and dns as on ethernet one it is getting the dns name xserve.xxxx.ac.uk (which matches what the college server wants to call us) but on ethernet 2 gets xserve-2.local because it tells me that it already exists on ethernet one and renames it to this. I need to set up NAT so have ethernet coming in on port one and out again on port two. I wonder if my dns is backwards as its got the 192. address the NAT uses but its linked to the ethernet port one dns maybe this is the problem. would this cause open directory not to start kerberos?
-
Mobile Accounts not copying home folders to local machine
Having recently upgraded my MacBook to 10.5 (and having a 10.5 server) I have noticed an error with mobile accounts. My account has not synced for a couple of weeks and I have checked all the directory settings and cannot see any errors.
I've removed all directory services and rebooted, put them back and it will create a mobile account but nothing is being copied to the local hdd. So basically it is functioning like a network account rather than a mobile one.
This works fine on our 10.4 clients but having tried different users on my 10.5 system it does the same....creates the account, mounts the server but does nothing else.
This means when you sync it says its complete but does nothing...its like its lost permissions to the folder on the server but that seems very odd.
Anyone else had issues with 10.5? We have an AD server with our users and a 10.5 server with OD replicating AD and holding the home folders.Are you still ahving this issue?
Would you do like geekinit in this thread and post some partial screen grabs (although is problem included Windows server Active Directory and profile Manager which I will get up to soon.)
Unable to deploy home folder mobility settings through an Apple MDM server
Did you create a fileshare for Local Network accounts to put their stuff
If so where is OS X server?
Did you tell the user in OD to use that fileshare?
Here's a screen grab example
Francois. -
Mobile account managed preferences sync rules not applied
Hello everyone!
I am testing out mobile accounts and home sync on a few of the machines I have. My goal is too use mobile accounts as a way to backup small documents. I have many preference and Home sync rules applied to a group. All the machines I have added to this group seem to recognize these rules, but one machine does not. It is syncing folders and file types that I have excluded. I have checked the users managed preferences file and it appears to be correct, yet when I start a sync it does not appear to follow it's own managed preferences.
One thing I should add is that these machines have been using plain old local accounts and I have been migrating them to mobile accounts using this method:
http://www.macenterprise.org/articles/migratingalocalusertoanetworkuser
This method seems to work great except for the fact that the users preferences like the dock don't appear to be carried over.Did you ever solve this? I have just started testing this in our office as well. It appears I have a machine that does not appear to obey the rules ether. I am also migrating local accounts to mobile accounts.
-
Mobile account no longer syncs since 10.6.7 client update ??
My mobile account no longer connects and syncs to our network samba store since upgrading to 10.6.7 (client)
This is no fun
29/03/2011 09:59:33 com.apple.coreservicesd[73] NOTE: Using non-mach-based version of client -> server communication, via direct function calls.
29/03/2011 09:59:33 com.apple.coreservicesd[73] NOTE: Using non-mach-based version of client -> server communication, via direct function calls.
29/03/2011 09:59:33 /usr/libexec/mount_url[3787] smb_mount: mount failed to myserver.com/myusername : syserr = Authentication error
29/03/2011 09:59:34 /System/Library/CoreServices/NetAuthAgent.app/Contents/MacOS/NetAuthAgent[3788] smb_mount: mount failed to myserver.com/myusername : syserr = Authentication error
29/03/2011 09:59:34 /System/Library/CoreServices/NetAuthAgent.app/Contents/MacOS/NetAuthAgent[3788] smb_mount: mount failed to myserver.com/myusername : syserr = Authentication errorHi welly
I just got a similar issue and possibly found a (really ugly) workaround.
My Mobile Clients do their initial sync fine, also background sync worked as expected. I ran into troubles as soon as I tried to sync manually. And the logout syncs didn't work at all. The issue only occured on third party smb servers, afp currently works fine for me with the same configuration.
Additionally the poor clients desperately try to connect to the network home again and again and again and thus cause a lot of very ugly traffic on the network.
I kind of "solved" this as I realized that other shares from the same server are mounted on the machines as well. I unmounted them with the Finder and suddenly all the syncs worked like a charm..
I'm really curious if this is a newly introduced bug with 10.6.7 or 10.6.6, I had machines with 10.6.5 (or was it 10.6.4?) properly running with mobile accounts in the same setup.
Here are my error messages from system.log
Jun 21 15:02:36 machinename gssd-agent[403]: Error returned by svc_mach_gss_init_sec_context:
Jun 21 15:02:36 machinename gssd-agent[403]: Major error = 851968: Unspecified GSS failure. Minor code may provide more information
Jun 21 15:02:36 machinename gssd-agent[403]: Minor error = 100005:
Jun 21 15:02:36 machinename /System/Library/CoreServices/NetAuthAgent.app/Contents/MacOS/NetAuthAgent[402]: smb_mount: mount failed to serverfqdn/home$ : syserr = Authentication error
Jun 21 15:02:36 machinename gssd-agent[403]: Error returned by svc_mach_gss_init_sec_context:
Jun 21 15:02:36 machinename gssd-agent[403]: Major error = 851968: Unspecified GSS failure. Minor code may provide more information
Jun 21 15:02:36 machinename gssd-agent[403]: Minor error = 100005:
Cheers
See -
Documents, Downloads, Pictures, etc Folders Invisible for Mobile Accounts
For some reason, when any user navigates to their home directory, most of the subfolders (Applications, Desktop, Documents, Downloads, Library, Movies, Music, Pictures, & Public) are invisible. It's not consistent which ones can be seen: one user can see Library and Desktop, while another can see only Library. It is possible to navigate to any of the folders with the Go to Folder item in Finder's Go menu. Here are the results from listing everything in my own home directory (ls -l@):
drwx------@ 3 username staff 264 Sep 15 12:37 Desktop
com.apple.FinderInfo 32
drwx------@ 5 username staff 264 Sep 15 15:54 Documents
com.apple.FinderInfo 32
drwx------@ 4 username staff 264 Sep 15 12:37 Downloads
com.apple.FinderInfo 32
drwx------+ 27 username staff 874 Sep 17 09:24 Library
drwx------@ 3 username staff 264 Sep 15 12:37 Movies
com.apple.FinderInfo 32
drwx------@ 4 username staff 264 Sep 15 13:00 Music
com.apple.FinderInfo 32
drwxr-xr-x+ 2 username staff 264 Sep 15 15:35 New Folder
Library and New Folder are the only ones I can see in Finder. All of the invisible ones have extended attributes, but, oddly, when I navigated to one of the invisible folders in Finder and Get Info on it, there is no "invisible" checkbox in the General settings.
Here is some more info on the network setup:
Network is a Golden Triangle: our OS X server is bound to the Active Directory domain, and each client is bound both Open Directory and AD (OD has higher precedence in search policy). Network accounts are created in AD with the home folder at //osxserver.domain.local/Network Users/username (mapped to drive X:\ or Z:\ for Windows users). Accounts are imported into OD, which (through policy on each user's group) creates a mobile account at login (no prompt) using the network profile and syncs at login, logout, in background and manually. The client-side AD plugin does not force local home directories, derives network home from UNC path in AD (using AFP), and allows administration by domain admins; all other settings are default.
Any help in making all folders visible would be greatly appreciated.Here are the results from listing everything in my own home directory (ls -l@):
Use the xattr Terminal command to clear that attribute. For usage instructions, run xattr -h.
All of the invisible ones have extended attributes, but, oddly, when I navigated to one of the invisible folders in Finder and Get Info on it, there is no "invisible" checkbox in the General settings.
That's intentional.
(53827) -
Mobile Accounts: Manual Sync works, Automated Sync Does Not
I've got a small office network with about 10 users. Each have mobile accounts under Tiger (server and clients) and they've been working flawlessly for years.
All of a sudden we've noticed that for some users the background sync is no longer working. If they choose "Sync Home Now" from the menu the sync runs else. Otherwise, it does not run at all.
All background syncing is set (via WGM) to run every 30 minutes.
What is the best way to debug this?
Thanks!
scottoif you configure mobile prefs to popup a dialog to confirm creating a mobile account on new machines, train them to choose "no," and they'll login with network homes on other machines.
-
Deleted items reappear on mobile account with syncing?
On a mobile account with syncing, deleted items will reappear after syncing. One can manually do a full sync. Then delete stuff. Then do a full manual sync again and the deleted items are back.
This is on Leopard 10.5.6 client and Leopard 10.5.6 server.
Open to ideas one what I ought to look at.
Best Wishes,
PaulPaul,
I'm happy I'm not alone (sorry..)
I have exactly the same problem, although I'm using Linux server, not OSX.
It all worked nicely until 10.5.6 upgrade, after that I'm having lots of home sync problems, including:
1. locally deleted items re-appear after sync
2. a lot of sync conflicts, specially when sync cannot resolve latest file or directory version between mobile and network copy (and mobile copy will be always the latest one)
3. huge syncs even if no data has been modified, ie:
I'm syncing all on login and logout, background sync is disabled.
I do login then straight away logout, so practically no data has been modified, but the sync may show me tens of GB being transferred.
Now, this is weird: I've done tests on a freshly created mobile account, with approx 50MB of data. Basically I've logged in and out repeatedly, sometimes modifying small files. Some of the syncs showed me transfer of 60MB!!! That's 10MB more than the size of the home directory!
I've looked through release notes for 10.5.6 and some sync issues were 'fixed'. I'm wondering if other ones were introduced...
As I've said, it all worked perfectly until the latest update - I have many machines behaving in the same, bad way.
Perhaps someone has a solution?
Thanks,
Pawel
Maybe you are looking for
-
Can I add a slide show to my iWeb created site using MobileMe
Hi there, What I want to do is to create a folder with a load of pictures of me in them and then add them to the Home Page of my website, so that when people visit my website all the pictures play as an automatic slideshow at the top of the page and
-
Using Extreme as a wireless card
I have a G4 Dual 800 with no Airport card. I also have a UFO Airport Extreme Basestation. Can I connect the basestation to the G4 and use it as a wireless card to connect to my network? Does that make sense?
-
Partial trigger and required field
We developed an ADF JSF application which some of field has partial trigger . Then we add some required field. when runtime when we change any partial trigger target item all field validated and "required field missing message" occurs. How can we pre
-
Console program for iPhone terminated in 20 seconds on simulator
Hi, I have a console program for iPhone which simply uses printf to output. It works fine on iphone but not on Simulator. I noticed that iphone has a watchdog time to stop a program which loading more than 20 seconds. I believe the simulator treats m
-
After I quit safari, the next time I open Safari it opens all the windows and sites that were present in the last session. Does anyone know how I can disable this?