Mobile Account on Second Partition - Mac with AD Bind

We've recently started binding our Macs into Active Directory and are using our associates' network credentials to login. Our Macs are setup with two partitions - one for the OS and Apps and one for the associates home folders. A modified MCX setting creates a home folder on the secondary partition the first time they login.
My problem is that the associate accounts appear as "External" instead of "Mobile" in System Preferences and our preference would be that the accounts remain "Mobile". If I let the MCX settings create the Mobile account on the OS partition in /Users, it stays a Mobile account. From there we can manually move the home folder and point the account to the secondary partition and it remains a Mobile account.
So I'm looking for advice on deploying a home folder to a secondary partition and having it appear as "Mobile" rather than "External". Thanks!

That just the way it is.....

Similar Messages

  • How do I use multiple accounts on the same Mac with Apple TV2?

    I have home sharing turned on in two separate accounts on a single MacPro.  When I am logged into both accounts, I can see both accounts' iTunes Libraries available in the AppleTV2.  However, when I try to open each account iTunes Library in the AppleTV2, only one account will open (whichever one I logged into first).  (In other words, I log into Account1 then open iTunes with Home Sharing On, then log into Account2 (while Account1 is still logged on), open iTunes with Home Sharing On. AppleTV2 shows Account1 Library and Account2 Library under Computers, but will only load Account1 Library.  Account2 Library will just cause AppleTV2 to search for the Library then give an error.)  How come AppleTV2 can see both Libraries but will only open one Library?  How can I fix this?
    Thanks,
    zpockets

    Thank you for replying.  Both of the accounts are Admin accounts.  The Libraries are kept in the user/music/itunes/itunes media folder on each account.  However, I do use multiple iTunes Libraries on my Account1.  One of the Libraries I use in Account1 is on a separate internal HD.  However, the other Libraries I use in Account1 are stored in user/music/itunes/itunes media folder on the main HD (which hosts both Account1 and Account2).  It doesn't seem to matter whether I am using an iTunes Library on an external drive or the main drive in Account1, I still get the same problem: only account1 library will load.  AppleTV sees that the Account2 Library is there, but it won't load it.

  • "Partition For" with a bind variable

    Does anyone know if a bind variable can be used with the "partition for" syntax? For example,
    select max(col1) into myvar from t partition for (mydate);where t is an interval-partitioned table.
    I couldn't find any documentation specifically on this and all the ways I've tried it have failed :-(
    Edit: version 11.2

    The table has an interval partition on a date column so that all records for a particular day are stored in the same partition. The query is actually the equivalent of
    select max(col1) into myvar from t
    where date_col >= trunc(mydate) and date_col < trunc(mydate+1);but I'd rather use the shorter statement if possible.

  • Mobile account folders failing to sync

    Hello All,
    Having a strange problem with syncing mobile folders on our Mac clients.
    We are running an OSX server with Mountain Lion that has open directory on it and this essentially just validates with our Windows domain controller that is using active directory. All of our Mac clients are running Snow Leopard and everything seems to be operating swimmingly except for one issue…
    We have mobile accounts set up, so that users can gain access to their Windows based ‘my documents’, ‘my music’ and ‘my pictures’ folders. Everything seems to sync fine except that sometimes when users try to log off, or try to sync their data manually, the process fails. It will either claim that username/password details could not be validated then hang, or it will say that the user’s password has expired and lock them out of their accounts (which we then need to unlock in Active Directory). 
    After checking the logs on the client machines there are a couple of noteworthy errors:
    SMB_Mount – Mount failed to SMB://Storageserver.co.uk/staff$ - syserr = Authentication error
    And
    SMB_Mount – Mount failed to SMB://Storageserver.co.uk/staff$ - syserr = Unknown Error -5999
    It seems to be very random and inconsistent as users can go a week or so without the problem occurring, and then have it happen twice in an hour. Has anyone experienced any issues with mobile accounts syncing?

    Address sync with google inly works with 10.6

  • Using a mobile account on the server, external home directory

    Hi All,
    Running Server 4, Yosemite 10.10
    I have setup a few mobile accounts via the server. These accounts have been given new home locations on an external thunderbolt HD. Everything is working as expected when connecting via an external MBA and MBP, login and sync work as expected:
    However, when I try to use one of the network accounts on the actual server I come across sync issues, the Directory Util details used are:
    HomeDirectory:
    <home_dir><url>smb://imac.local/Users</url><path>Username</path></home_dir>
    NFSHomeDirectory:
    /Network/Servers/imac.local/Volumes/Server/Users/Username
    Could someone explain the difference between these two, as it appears the first one comes into effect when I log into the server with the mobile account.
    When i login with the account and select sync from the menubar icon I get get the following errors:
    So, I can see from the errors what is happening, but have no idea how to fix..
    Setting for the Shared Folder:
    Any ideas welcome, thanks in advance!

    Is this a new requirement?  I have been using home sync (portable home directories) with NFS for several years.
    However, my laptop has not been able to sync since it and the server have gone to Yosemite.

  • Mobile Accounts

    Hello,
    I have a G5 Server running Leopard Server. Is there a way to setup a mobile account where on some Macs, it syncs the Home Folder, but on others, it just accesses the Folder and does not sync it?
    Thanks

    if you set mobility prefs at the machine (individual or group) level, yes.
    if you've already set mobility prefs on users or groups, then no.
    you'll have to do one or the other.

  • Unable to activate mobile account

    Hi, I am in a dead end.
    I am trying to settup mobile account on 10.8 Server, with 10.8 clients.
    So far, I got my Open Directory seted up server.name.private
    I created a new user in the Users tab, named test
    The Home Folder is setted up for my Homes folder, which is on a secondary hard drive.
    This file is shared with File Sharing, and have read/write permission for the group of my user.
    If I check the folder permission in the Finder, it is strange, but I don't know how to clean them. Each group is there two times, and they have Custom privilege
    With Workgroup Manager, I selected my user, went to the Preferences tab, and setted up the Mobility section.
    The options for Account Creation are Manage: Always, Account Expiry are Manage: Never and under Rules, Home Sync, I selected Once.
    On the client side, I activated the mobile account option, and entered the Open Directory adress.
    And when I log in, I put my info test/password, and the message You are unable to log in to the user account "test" at this time. Logging in to the account failed because an error occured.
    And here is the log from the server
    CFPreferences: user home directory for user kCFPreferencesCurrentUser at /var/teamsserver is unavailable. User domains will be volatile
    Does someone have a clue for me?
    Thanks!

    Can you wipe the sytems and migrate the data? With my experience in Mobile Users this will probably be quicker than trying to troubleshoot MObility problems.

  • Mobile accounts sudo Password dont work

    i have mobile accounts which stay in sync with homesync to the server.
    we i want to change some settings sudo in terminal on the mobile account it always say wrong password but use the admin password of the computer!?

    If I am understanding your problem it sounds similar to what I considered to be a bug introduced way back when Tiger came out.
    A mobile account on say a laptop cannot do sudo even if you know and use the correct local admin password. The same mobile account can enter a valid admin name and password in to a GUI dialog box to authenticate. I did report this to Apple but they did not seem to agree or understand.
    A workaround I found was to do the following
    su admin
    enter password
    sudo command
    enter password
    That is a mobile account can switch user to an admin account in Terminal and then from that do the sudo command as normal.

  • I've lost the use of Appleworks in 10.9.2. Is it possible to partition the internal hard drive of my MacBook Pro and install an older Mac OS (10.6.8) on the second partition with OS 10.9.2 on the other?

    I've lost the use of Appleworks by upgrading to 10.9.2.
    Is it possible to partition the internal hard drive of my MacBook Pro and install an older Mac OS (10.6.8) on the second partition with OS 10.9.2 on the other? I'd like to be able to boot to the older OS when I need Appleworks and  few other applications that aren't available on OS 10.9.2.
    Any suggestions?
    Thank you for your help.

    Hello again, WZZZ,
    Here's an update. I was successful in creating two partitions on my internal drive, and in installing OS 10.6.6 on the second partition, as per your guidence. I now have it up to 10.6.8 with all the security updates and AppleWorks. A great thing.
    Some thoughts:
    • The partitioning had one hitch; it failed at first. But once I "repaired" the disc with Disc Utility the partitioning went thru.
    • The partitioning took a long time in 'resizing the partition.' A few hours I think it was. Lots of progress bar watching.
    • If I had it to do again, I'd size the two partitions differently. My original data was occupying about 230 Gb of the 320 Gb disc. I made the new partitions share the space, about 230 and 75Gb. That left very little available space for the main disc. I ought to have put some breathing room in there. As it is, it's an incentive to clean up all those files, especially all those iTunes files. I now have about 10% of available space there and mean to continue deleting.
    So, all in all a good project that got me where I wanted to go. Thank you for your help.
    Appreciatively,
    wallah

  • AD mobile account with local home directory

    I basically have the same question as this post:
    http://discussions.apple.com/message.jspa?messageID=696367
    I have set up Tiger workstations to authenticate to AD, I am forcing a local home dir. Everything works great. I want to do the same thing for Tiger laptop users with mobile accounts. The problem is that OS X creates a second home directory outside of /Users based on attributes from my AD schema. Just like with the non-mobile users, I want to ignore all home dir attributes from AD and just use the user's home dir that is in /Users. So the question is, how can you use a mobile account and force a local home dir with Apple's AD plugin??????

    Yes, I know how to click buttons in the gui, that does not fix the issue. The issue is that the Active Directory schema at my company includes extended attributes from the RFC 2307 schema. Apple's AD plugin does not know how to handle this extended schema especially when using mobile accounts.
    Apple's AD plugin reads these unix attributes from AD and thinks it knows what to do but ends up causing more problems then if there were no unix attributes at all.
    Since this post, I have opened a ticket with Apple. They were able to recreate the problem in their lab with their AD server. The only work around is to create a custom ActiveDirectory.plist file that forces the Mac to ignore what AD is telling it.
    This solution works unless the ActiveDirectory.plist file is deleted or corrupted. This problem will only become worse once Microsoft includes all of the RFC 2307 schema in their next service pack of Win 2003 server.

  • I bought a new mac with software installed and my username will not update from another account?

    I recently bought an new power mac with Logic Pro and Final Cut Pro Installed.
    When I updated to the new OS X operating system, they need to be updated as well. And will no longer work.
    But it says it is on another account. Not sure what account. How do I find out what account they are on? How or can I do I move them into my other account?
    The Power Mac is registered to the account I am logged in on.

    Before buying a second-hand computer, you should have run Apple Diagnostics or the Apple Hardware Test, whichever is applicable.
    The first thing to do after buying the computer is to erase the internal drive and install a clean copy of OS X. You—not the original owner—must do that. Changes made by Apple over the years have made this seemingly straightforward task very complex.
    How you go about it depends on the model, and on whether you already own another Mac. If you're not sure of the model, enter the serial number on this page. Then find the model on this page to see what OS version was originally installed.
    It's unsafe, and may be unlawful, to use a computer with software installed by a previous owner.
    1. If you don't own another Mac
    a. If the machine shipped with OS X 10.4 or 10.5, you need a boxed and shrink-wrapped retail Snow Leopard (OS X 10.6) installation disc from the Apple Store or a reputable reseller—not from eBay or anything of the kind. If the machine is very old and has less than 1 GB of memory, you'll need to add more in order to install 10.6. Preferably, install as much memory as it can take, according to the technical specifications.
    b. If the machine shipped with OS X 10.6, you need the installation media that came with it: gray installation discs, or a USB flash drive for a MacBook Air. You should have received the media from the original owner, but if you didn't, order replacements from Apple. A retail disc, or the gray discs from another model, will not work.
    To start up from an optical disc or a flash drive, insert it, then restart the computer and hold down the C key at the startup chime. Release the key when you see the gray Apple logo on the screen.
    c. If the machine shipped with OS X 10.7 or later, you don't need media. It should start up in Internet Recovery mode when you hold down the key combination option-command-R at the startup chime. Release the keys when you see a spinning globe.
    d. Some 2010-2011 models shipped with OS X 10.6 and received a firmware update after 10.7 was released, enabling them to use Internet Recovery. If you have one of those models, you can't reinstall 10.6 even from the original media, and Internet Recovery will not work either without the original owner's Apple ID. In that case, contact Apple Support, or take the machine to an Apple Store or another authorized service provider to have the OS installed.
    2. If you do own another Mac
    If you already own another Mac that was upgraded in the App Store to the version of OS X that you want to install, and if the new Mac is compatible with it, then you can install it. Use Recovery Disk Assistant to prepare a USB device, then start up the new Mac from it by holding down the C key at the startup chime. Alternatively, if you have a Time Machine backup of OS X 10.7.3 or later on an external hard drive (not a Time Capsule or other network device), you can start from that by holding down the option key and selecting it from the row of icons that appears. Note that if your other Mac was never upgraded in the App Store, you can't use this method.
    3. Partition and install OS X
    a. If you see a lock screen when trying to start up from installation media or in Recovery mode, then a firmware password was set by the previous owner, or the machine was remotely locked via iCloud. You'll either have to contact the owner or take the machine to an Apple Store or another service provider to be unlocked. You may be asked for proof of ownership.
    b. Launch Disk Utility and select the icon of the internal drive—not any of the volume icons nested beneath it. In the  Partition tab, select the default options: a GUID partition table with one data volume in Mac OS Extended (Journaled) format. This operation will permanently remove all existing data on the drive.
    c. An unusual problem may arise if all the following conditions apply:
              OS X 10.7 or later was installed by the previous owner
              The startup volume was encrypted with FileVault
              You're booted in Recovery mode (that is, not from a 10.6 installation disc)
    In that case, you won't be able to unlock the volume or partition the drive without the FileVault password. Ask for guidance or see this discussion.
    d. After partitioning, quit Disk Utility and run the OS X Installer. If you're installing a version of OS X acquired from the App Store, you will need the Apple ID and password that you used. When the installation is done, the system will automatically restart into the Setup Assistant, which will prompt you to transfer the data from another Mac, its backups, or from a Windows computer. If you have any data to transfer, this is usually the best time to do it.
    e. Run Software Update and install all available system updates from Apple. To upgrade to a major version of OS X newer than 10.6, get it from the Mac App Store. Note that you can't keep an upgraded version that was installed by the original owner. He or she can't legally transfer it to you, and without the Apple ID you won't be able to update it in Software Update or reinstall, if that becomes necessary. The same goes for any App Store products that the previous owner installed—you have to repurchase them.
    4. Other issues
    a. If the original owner "accepted" the bundled iLife applications (iPhoto, iMovie, and Garage Band) in the App Store so that he or she could update them, then they're irrevocably linked to that Apple ID and you won't be able to download them without buying them. Reportedly, Mac App Store Customer Service has sometimes issued redemption codes for these apps to second owners who asked.
    b. If the previous owner didn't deauthorize the computer in the iTunes Store under his Apple ID, you wont be able to  authorize it immediately under your ID. In that case, you'll either have to wait up to 90 days or contact iTunes Support.
    c. When trying to create a new iCloud account, you might get a failure message: "Account limit reached." Apple imposes a lifetime limit of three iCloud account setups per device. Erasing the device does not reset the limit. You can still use an iCloud account that was created on another device, but you won't be able to create a new one. Contact iCloud Support for more information. The setup limit doesn't apply to Apple ID accounts used for other services, such as the iTunes and Mac App Stores, or iMessage. You can create as many of those accounts as you like.

  • Getting Mobile Accounts to work with Active Directory

    Just curious to see if anyone got this to work. I am running OSX server version 10.4.4. I binded the server via directory access to our Active Directory Domain. I could see the active directory accounts in Workgroup manager and was able to get client Mac systems to log in using their AD account info. When I tried to set up the accounts as mobile accounts I ran into probelms. When you enter your login info on the client end, the screen would just go to a blnak blue desktop and not get any further. Anyone have any luck getting their AD accounts set up on the client Macs running as mobile directories?

    Heh. Yeah, and tried switching it on and off a few times, too.
    I think I might have found the problem, but I think I might have also borked my ability to play with it tonight -- in the Advanced Rules section in the firewall settings, there were a bunch of "deny" rules in there that weren't enabled... I guessed that those needed to be turned on, so that it would deny everything by default, but then allow the stuff I want through (set on the other page).
    Except after enabling those, I now can't connect to the server with ARD any more. Oops.
    The good news is that at least I also can't mount AFP shares from here any more either.
    The bad news is that when logging into the MacBook now, with my mobile account, it still starts up the Home Sync process on login (after spending about 35 seconds doing nothing after entering the password), and then hangs there for about 2 minutes trying to contact the sync server before giving up and continuing with the login properly -- this is what I was hoping to avoid.

  • Partitioning the HD with the second partition as the Users directory

    Please help. Does anybody know how to do this, Boot drive is the first partition and the second partition is the Users directory. Please provide step by step instructions if possible. Thanks

    yes you can, but I would advise against doing so.
    The purpose is usually to use another disk drive to improve performance. Using a partition on the same drive just adds longer seeks from head movement instead.
    you can use FW but if the drive is not available, does not power on or mount, you can run into problem of creating a default account and messing up the /Volumes directory.
    In "Missing Manual" and elsewhere the easy way is to just open NetInfo Manager, click on Users tab, then your short-name. Authenticate and change the value for "home" from /Users/account-name to
    /Volumes/vol-name/Users/account-name
    Save, update, restart the netinfo database, logout and log back in.
    You are better off usually with two drives on separate buses, not on the same bus but different channels to improve I/O and to keep the boot drive free of media files etc to help performance and maintenance.
    You can also change /Users to another volume and use a symbolic link in its place. Changing Home Directory
    G4 MDD WD 320 OEM 9600 1.75GB SoftAID 3   Mac OS X (10.4.7)   Mac Pro "rev 2" (hopefully)

  • Cannot login with mobile account when server is switched off

    Hello all,
    First of all, my condolences to the Jobs family. 
    OK.  On with my problem.  I apologise in advance if this has been answered before.  I've trawlled through various boards and I can't seem to find an answer.
    I'll try to keep it brief.
    I've set up a mac mini with lion server.  Done all necessary updates.
    I have a lion macbook which is the client.
    On server, created an Open Directory etc..
    I created 2 mobile network accounts on the server.  Set preferences etc..  Added both to workgroup.
    Added the client to the domain in system prefs login options.
    Logged into the 2 accounts on the client.  All working well.  Can see my mounts.  Mobile accounts created successfully and syncing working.
    So, the problem I have is, when I shutdown the server, my mobile accounts on the client disappear.  Also, the login screen states, 'Network accounts are unavailable.'
    I've been looking at this for a week now and it's driving me mad.  I must have missed something - can anyone shed any light on this please?
    With thanks, Paul.

    oh well - gave up and reinstalled lion server.
    GROAN!

  • How can I share the home folder with different accounts on the same mac?

    Hi, here's a question:
    How can I share the home folder with different accounts on the same mac?
    The whole point being not to have to install all my apps, and move all my files each time between users.
    The second thing would be to be able to modify one document on one account, and have it changed on the other account without having to copy it.
    I would like to have a pro and a private account on my mac.
    Thanks for you answers,
    Doug

    Your apps should not be installed in your home folder--they should be in /Applications where every user can access them.
    If you want to share things between users on the same Mac, use the /Users/Shared folder. Keep your home folder private. Trying to defeat the protections on the home folder subfolders just gets messy. I've never bothered to figure out all of the problems associated with it so I can't explain how to do it.
    Even with using Shared, you would need to alter the ACLs on the shared folder in order to allow both users to modify the documents.
    You must create a Group in Users & Groups and put each user in that group. Then create a folder inside /Users/Shared where you want to share the various files.
    Then, add an ACL to the shared folder that gives the group special permissions. on that folder.
    sudo chmod -R +a "<sharinggroup> allow delete,chown,list,search,add_file,add_subdirectory,delete_child,file_inherit,directory_inherit" /Users/Shared/<sharing folder>
    Replace <sharinggroup> and <sharingfolder> with the name of your group and your folder. Then, run the command in the Terminal.
    With that ACL, each user in <sharinggroup> will be able to alter the files created by any user in the group in that <sharingfolder>.
    Essentially, the client OS is not designed for true file sharing among the individual users. It is designed to isolate each user account from the others.

Maybe you are looking for

  • Print of documents

    How do we take the print of the followings: Purchase requisition. Contract & Scheduling agreement. Material document & accounting document at GR Material document at transfer posting. Invoice document at IR. regards, VS

  • My iPod is stuck on the Apple sign and I believe i've tried EVERYTHING!

    Right, I think my battery died the other day, I put it on charge when I got home. And it took me a while to realise it hadn't gone to the original main screen. At first I thought it might just need resetting so I tried that and it just went back onto

  • Debugging in XI

    Hi gurus,     I have a scenario having file on the sender side and ABAP Proxy on the receiver side.The mapping used is XSLT mapping.To determine the receiver,Receiver determination is being used.There are 2 XSLT mappings under the Interface mapping.

  • Send PO Adobe form as email using BBP_PO_ACTION_DEF

    Hello SRM Guru's I need to send my PO adobe form as an EMail....So please guid me ...how to setup the configuration using T-code BBP_PO_ACTION_DEF . Thanks and Regards... Priyank Dixit

  • KDC has no support for encryption type

    Hi, I hope not too much people are not reading this post because of the very common error message. But I'm really somewhat confused: For testing Kerberos 5 SSO I set up a little domain controller running Windows 2003 Server and a client in the domain