Mobile account won't complete setup, initial sync won't complete.

I'm trying to setup a mobile account but it won't complete the sync process on the client MacBook Pro. Both the server and the MacBook Pro are running 10.5.5.
When I login to client it prompts me to create a Mobile account and proceeds with the sync to create the account, but when the sync is complete it just logs in with the default account setup. None of the user files or settings (desktop image, preferences, etc) appear. The sync process says "Checking..." for all the files that supposedly get copied to the client, but it looks like it doesn't complete.
Is there a way of knowing what the problem is? Is there an issue with the user's home directory, some file that prevents the sync and mobile home creation from completing?
Thanks.

Forgot about getting this problem solved.
The user account that had this trouble had a copy of his home directory from a laptop in his home directory. This backup had it's own Library folder which was confusing the Mobile account sync process.
When I removed the backup home directory, the initial sync went fine.

Similar Messages

  • Mobile Accounts take a long time to sync at startup

    I want to use mobile accounts as a way to authenticate to the network. I also want to sync some of these users to their home directories located on the server, but I want them to be able to log into any computer relatively fast. I have disabled syncing at login and logout and have the accounts only syncing in the background, but when the user first logs into a computer they haven't used yet, the account syncs at login. The syncing time is very long. Is there anyway to make this time shorter so login is almost instant?

    Dear Customer
    Welcome in Lenovo forums
    It seems that your machine is full of issue and that is why i would to advise you with restoring your machine to the factory setting ( Recovery )
    Please let me know if you want to know how to perform the recovery process
    Thanks
    Alaa
    Did someone help you today? Press the star on the left to thank them with a Kudo!
    If you find a post helpful and it answers your question, please mark it as an "Accepted Solution"! This will help the rest of the Community with similar issues identify the verified solution and benefit from it.
    Follow @LenovoForums on Twitter!

  • Mobile account no longer syncs since 10.6.7 client update ??

    My mobile account no longer connects and syncs to our network samba store since upgrading to 10.6.7 (client)
    This is no fun
    29/03/2011 09:59:33 com.apple.coreservicesd[73] NOTE: Using non-mach-based version of client -> server communication, via direct function calls.
    29/03/2011 09:59:33 com.apple.coreservicesd[73] NOTE: Using non-mach-based version of client -> server communication, via direct function calls.
    29/03/2011 09:59:33 /usr/libexec/mount_url[3787] smb_mount: mount failed to myserver.com/myusername : syserr = Authentication error
    29/03/2011 09:59:34 /System/Library/CoreServices/NetAuthAgent.app/Contents/MacOS/NetAuthAgent[3788] smb_mount: mount failed to myserver.com/myusername : syserr = Authentication error
    29/03/2011 09:59:34 /System/Library/CoreServices/NetAuthAgent.app/Contents/MacOS/NetAuthAgent[3788] smb_mount: mount failed to myserver.com/myusername : syserr = Authentication error

    Hi welly
    I just got a similar issue and possibly found a (really ugly) workaround.
    My Mobile Clients do their initial sync fine, also background sync worked as expected. I ran into troubles as soon as I tried to sync manually. And the logout syncs didn't work at all. The issue only occured on third party smb servers, afp currently works fine for me with the same configuration.
    Additionally the poor clients desperately try to connect to the network home again and again and again and thus cause a lot of very ugly traffic on the network.
    I kind of "solved" this as I realized that other shares from the same server are mounted on the machines as well. I unmounted them with the Finder and suddenly all the syncs worked like a charm..
    I'm really curious if this is a newly introduced bug with 10.6.7 or 10.6.6, I had machines with 10.6.5 (or was it 10.6.4?) properly running with mobile accounts in the same setup.
    Here are my error messages from system.log
    Jun 21 15:02:36 machinename gssd-agent[403]: Error returned by svc_mach_gss_init_sec_context:
    Jun 21 15:02:36 machinename gssd-agent[403]:           Major error = 851968: Unspecified GSS failure.  Minor code may provide more information
    Jun 21 15:02:36 machinename gssd-agent[403]:           Minor error = 100005:
    Jun 21 15:02:36 machinename /System/Library/CoreServices/NetAuthAgent.app/Contents/MacOS/NetAuthAgent[402]: smb_mount: mount failed to serverfqdn/home$ : syserr = Authentication error
    Jun 21 15:02:36 machinename gssd-agent[403]: Error returned by svc_mach_gss_init_sec_context:
    Jun 21 15:02:36 machinename gssd-agent[403]:           Major error = 851968: Unspecified GSS failure.  Minor code may provide more information
    Jun 21 15:02:36 machinename gssd-agent[403]:           Minor error = 100005:
    Cheers
    See

  • Mobile Accounts

    Hello,
    I have a G5 Server running Leopard Server. Is there a way to setup a mobile account where on some Macs, it syncs the Home Folder, but on others, it just accesses the Folder and does not sync it?
    Thanks

    if you set mobility prefs at the machine (individual or group) level, yes.
    if you've already set mobility prefs on users or groups, then no.
    you'll have to do one or the other.

  • Mobile Account Issue/Question

    I have set up a Golden Triangle with Open Directory and Active Directory, everything is working fine. I can have users log into their Macs with their AD accounts, set up a mobile account so that their home directory syncs with an SMB share, but I've got a problem. If I sync the entire home directory, it's going to take up way too much space on the server, mostly due to Office 2011 email databases. It doesn't appear those can be moved out of the home directory, either. So is there any way to limit what is synced up to the server? Or, even better, is there some way to just set up one folder to sync so that the users can have their important docs uploaded to the server? I'm not seeing any way to do this, but I'm hoping that it's possible.

    I've seen the error popping up, too, on a Mac running 10.8.1 connected to a server running 10.8.1 w/ OpenDirectory but no AD. I did this (in Terminal.app) I found that I had 3 kerberos-related plist files in /private/var/db/dslocal/nodes/Default/config/ which had not been updated for a while, so I deleted them to let OSX recreate them.
    $ sudo -i
    $ cd /private/var/db/dslocal/nodes/Default/config/
    $ rm *.plist
    $ reboot
    Haven't seen the error ever since. HTH. Regards,
    Christian

  • Mobile account doesn't complete initial creation and sync process

    I'm trying to setup a mobile account for a network account but it won't complete the sync process on the client MacBook Pro. Both the server and the MacBook Pro are running 10.5.5.
    When I login to client it prompts me to create a Mobile account and proceeds with the sync to create the account, but when the sync is complete it just logs in with the default account setup. None of the user files or settings (desktop image, preferences, etc) appear. The sync process says "Checking..." for all the files that supposedly get copied to the client, but it looks like it doesn't complete.
    Is there a way of knowing what the problem is? Is there an issue with the user's home directory, some file that prevents the sync and mobile home creation from completing?
    Thanks.

    I solved this myself. The user ended up have a folder on his desktop that contained a backup home folder from an old powerbook that he was trying to save. It was a complete home folder, Documents, Library, etc and I thought it might be interfering with the sync of the normal home folder. So I created a folder called Bad Stuff in the home folder and copied the old powerbook home folder into it. Then opened up the Sync Settings and excluded the Bad Stuff folder from the sync. And it worked, the sync when fine and is resyncing fine.
    Hope that helps with other people with a similar problem.

  • OSX Server Mobile Account Greyed out after initial setup?

    I just setup a new install of Mountain Lion on an iMac and installed Server.app to set it up as a server.  I activated Open Directory and configured it for a few users (with NFS mounted home directories from a Linux NFS server).  I then logged into the iMac with one of these users and it asked me if I wanted to make them a mobile user.  I did as this will activate the Portable Home Directory function.  It asked me what I would like to sync and then setup the user as normal.  Now the issue I have is with any subsequent login of that user if I go to the Users & Groups sys pref panel the Mobile Account "Configure" button is greyed out.  Syncing can still work from the menu bar pull down but I can no longer change any of my sync preferences.  I've gone through the settings in default read com.apple.homeSync but nothing in there seems to affect that button being greyed out.  To eliminate the NFS server as a possible cause I setup a local network user with local storage on the server and it acts the same way after setting up as a mobile account. Any ideas on what causes this?

    I solved this myself. The user ended up have a folder on his desktop that contained a backup home folder from an old powerbook that he was trying to save. It was a complete home folder, Documents, Library, etc and I thought it might be interfering with the sync of the normal home folder. So I created a folder called Bad Stuff in the home folder and copied the old powerbook home folder into it. Then opened up the Sync Settings and excluded the Bad Stuff folder from the sync. And it worked, the sync when fine and is resyncing fine.
    Hope that helps with other people with a similar problem.

  • Mobile account setup stops syncing and acts like a network user

    Mobile account setup stops syncing and acts like a network user system under ODM
    Setup: Mobile laptop users authenticating against an ODM. Every user has a networked home directory on an Xserve. The whole setup is 10.4 (client and server). All systems run a standard image. Most effected systems have been re-imaged since the onset of the issue.
    Issue: Some of the users are not syncing properly every time. It is as if the system forgets it is a mobile system and reverts to using the User's network home (instead of saving to /Users and syncing). If the user is effected, the system will not even accept cached credentials if they are off network. This forgetfulness does not seem to follow any pattern and does not effect all of our mobile users.
    In mucking about trying to find a cause to this issue I ran across an oddity in all effected systems Netinfo database. The users are each listed twice. Each entry has the same username, short name and UID. Also, In each case one record looks wrong... this varies somewhat from user to user, but in each case there is marked difference in the record's contents. Deleting the incomplete record in Netinfo manager seems to solve the issue (seems, as we are very early in testing this).
    Anyone have a clues as to where this double came from? The only lead so far is that it looks like the users having issues pre-date the use of mobile accounts. At some time they all had local accounts that authenticated against the ODM but never synced or had networked home directories. The pool of users who just got laptops (and thus never had a local account) seem unaffected so far.
    Also, what is the best way to browse the ODM master to find these duplicates?

    I have a similar issue with computers bound to Active Directory. Users occasionally have a problem logging into their computers even though their account is fine. Logging in as Admin and running netinfo manager always shows duplicate user accounts. Deleting the one that says disabled always clears up the issue. I'd like to find a startup script that would delete the disabled account, thus preventing the issue.

  • How do you setup a user mobile account, with the home directory stored locally and not synced to the server?

    I want to be able to setup a user mobile account, with the home directory stored locally and not synced to the server.  What is the best way to do this? I am running Server 10.6 with 10.6 clients.  Open Directory will be used to authenticate and manage preferences.   Also, this one account will be used simultaneosly in a computer lab setting, so files will be stored locally in the client, hence the need to NOT sync to the server.  Any Ideas? 

    currofelix wrote:
    So what does WGM Look like in the Home Tab? afp://servername.domainname/Users? or afp://Users?
    The attached screen shots should help you:
    You will only have to do this step once. Obviously you want to use the user's shortname here.
    Then, you will see this as an option in WGM:

  • I am trying to setup iCal syncing with Mobile Me on Mac Pro and Mac Pro Notebook.  I have accounts added in for MobileMe and Gmail.  Problem is that iCal does not appear as one of the Sync choices in the MobileMe sync window on either computer?

    I am trying to sync iCal with all my computers and devices via MobileMe.  I cannot sync iCal on my Mac Pro nor Mackbook Pro.  I believe accounts to be setup properly BUT on both computers there is NO choice to select iCal among the choices in "Sync Menu" on the MobileMe window in System Preferences.  Help?

    Greetings,
    If you delete individual messages they will be deleted from other accounts.
    If you setup the accounts as IMAP (which is the default for MobileMe accounts) you can remove the accounts and the other users will still have the email.
    Alternatively if you don't want to see the account in the other user go to Mail > Preferences > Accounts > MobileMe account > Advanced > remove the check mark for "enable account".  This leaves the account and just turns it off so you don't see it  and it doesn't send / receive messages.
    Finally,  you should be backing up your data for safekeeping so even if you did delete the account and the messages magically vanished you could restore them: http://support.apple.com/kb/HT1553
    Hope that helps.

  • Lion Server Setup (Network Login/Mobile Account and more...)

    Hardware:
         Mac mini Intel Core i7, 2 GHz, 8 GB memory (Server)     x 1
         iMac 21.5" 2.8GHz Intel Core i7, 12 GB memory (Workstation)     x 6
    Operating System:
        Mac OS X Server Lion 10.7.4 (11E53)
         Mac OS X Lion 10.7.4 (11E53)
    Relevant Software:
         Server.app Version 10.7.4 (1.4.3)
         Workgroup Manager Version 10.7 (400.3)
         Server Admin Version 10.7 (355)
    So my head's swimming with "I dunno's" and I've been perusing probably all the wrong threads trying not to sound like a noob and find the literature that will finally lead me to a solution.  This is my first rodeo so make no assumptions about my experience (maybe).
    Short Version
    I can't login network users.  I get an error "You are unable to log in to the user account "<%short_name%>" at this time.  Logging in using >console tells me this No home directory: <path to home directory>    i.e. /Network/Servers/department.domain.com/Department/Accounts/bbunny
    If anyone can point me where to read, I will do so.
    Perhaps a longer discussion on how to verify that the proper permissions exist on the share/home directory in question and what those would be.
    More detail...
    I want to setup a Mac Mini server to have network login accounts stored on the 2nd data volume in a directory we shall call Accounts*.  Here all the "network users/logins" have their home directories, so that when they login at the workstation the idea is the workstation will sync their account and allow them to login, if the server is not available, the hope is I can configure it to allow them to login if they've logged in before and the files will sync when they are able. That being the ideal, I get the impression that for best practices, Apple is discouraging the use of mobile accounts that use Home Sync perhaps because it's reliability has been iffy, please advise.  A windows user might think of this as "roaming profiles" but, if I understand it, its a little more than that.
    Note, I do not want to login to the server and actively work on that network share, I want the account to be local and sync'd as needed.  But I want the user to be able to sit at any of the 6 other workstations and see the same documents, emails etc.  Obviously if the server is down, it won't be possible to authenticate, but I think it should have cached credentials that should allow the user to login if the server is down and still go about their work.
    This is the small picture...there is a larger picture that involves, parallel virtual machines of Windows Server 2008 R2 on server and and Windows 7 on the client, ical, ichat and perhaps wiki's.
    I apologize for the roughness of this question, in the interest of brevity, I have plenty of problems that led me here that I can expound upon if asked.
    Also a silly question someone might know the answer too, Why does the login payload settings that I have pushed to a workstation device, sometimes vanish inconsistently upon logout? 

    Ok, Some Good news and clearer understanding to disseminate in this post I hope it helps
    "the Universe" so I am posting it here in my "ever-the-noob" blog on apple forums.
    Problem
    What do you do when you get an error when logging into a mobile account setup?
    One symptom would be the error message below...
         "You are unable to log in to the user account "<%short_name%>" at this time.
    Logging in using >console  You get the message…
         "No home directory: <path to home directory>"
         or
         "You are unable to log in to the user account "<%short_name%>" at this time. 
         Logging in using >console tells me this No home directory: <path to home directory>
    Solution
    Do the check list…
    Short Version
    Sever Admin.app > Access (Key Component)
    Check Permissions on directories for your file shares. 
    (The reason stuff doesn't work especially when you're rebuilding/recovering a server)
    File sharing setup (Turned ON, Home sharing Enabled)
    Directory Utility > Directory Editor or dscl 
    ( Do not underestimate the importance of this part!!!!
    Use white-gloves when you're handling it though!!! )
    Workgroup Manager
    (You're poopy "main" interface that really is a "window", not a "door", but maybe Apple likes to do things "Dukes of Hazard" style?)
    Long Version
    Check Sever Admin.app > Access
    Make sure that your user has the "Proper" access.  For me I created a test user from Server.app and saw what access he had as a way to "check myself for a properly created users" and because I think one is kind of on his/her own using WGM and duplicated the same access. (I was a little neater, though and did it with a group, not individual users, that would have been a mess!)
    Server Admin.app > Access
    Click the "+" sign, sort by UID and Add the imported users  to the following Services…
    ( You can use a group, but understand when Server.app creates users they get added
    individually to each of these groups. )
    Address Book
    AFP
    iCal
    iChat
    Mail
    Profile Manager
    SMB
    VPN
    Check Permissions on directories for your file shares. 
              (That's an understatement) I could go in depth about all the crap I had to read about, I still
              know I am missing a chunk of tech brain when it comes to the particulars. Basically, I boil
              it down to this…
              Permissions require thinking about things first with regards to POSIX permissions... good
              ole ls, chmod, chgrp, chown to the rescue with ugo permissions or the old 755, 600 etc
              stuff.
              Apple's file-sharing access uses this as a starting point to see what the user is allowed to
              access.
              I also needed to use chflags once to unhide a file that I mucked around with using xattr. 
              I still haven't figured out why folders can lose their triangles, but I didn't find out if you cp or
              move them from terminal, the triangles come back in the moved or copied directory.  For a
              minute I thought it was because cp alone doesn't preserve flag attributes, but mv actually
              works by doing a cp that preserves the flags, unless it's a bug.  I dunno.
              This helped me get my file visible again...
              chflags hidden path_to_file
              chflags nohidden path_to_file
              Read up on those manuals, if you're not a terminal type go to apples website
              http://developer.apple.com/library/mac/#documentation/Darwin/Reference/ManPages/
              or download...
              http://www.bruji.com/bwana/ I thought that was cool.
              or if you prefer to read the manual in pdf try…
      man -t sharing | pstopdf -i -o ./Desktop/Sharing\ Manual.pdf
              man -t chown | pstopdf -i -o ./Desktop/CHOWN\ Manual.pdf
              man -t chmod | pstopdf -i -o ./Desktop/CHMOD\ Manual.pdf
              man -t chgrp | pstopdf -i -o ./Desktop/CHGRP\ Manual.pdf
              My basic guideline was avoid using ACLs if at all possible, if you try to use them, things
              can get crazy complicated, take notes and plan, baby. If you read above, opening up
              permissions wide is wrong though.  You would restrict permissions tightly to begin with and
              then place ACE (Access Control Entries) to specifically target the rights you want to enable.
              Here's one that's obviously a novice attempt to do this, but since the novice is the only one
              speaking…. here it is, Universe… >:P
              sudo chmod -R +ai "admin allow read,write,delete,file_inherit,directory_inherit,search,list" Department/
              That allowed my admin to do all the things a normal user could do so far… It fixed things for
              my admin, which made me happy.  I really hate having to authenticate or sudo just to see
              the contents of a nested directory.  I could explain it, and even give a few notes on why its
              probably overkill, but I will attempt to look less stupid till "poked".
              There's another command line utility I STILL haven't read, which may bear mentioning
              because…well I haven't read it.  umask (see wikipedia or unix.com)…I worked past my
              problems without going into it so far, but obviously it's there, and it serves a purpose.
              I also found this article helpful…and educational.  :O
              http://www.bresink.de/osx/300321023/Docs-en/pgs/ACL.html
              (          Its enlightening to hear the air whistling between a developer/coder's ears, still it's
                        apparent he has a clear idea what's going on.
                        Ever wonder why when you use get info to check or assign permissions it kind of
                        flakes out and doesn't take?  Read this article!          )
              Second, if you can't obtain the "specific" permissions you need with POSIX, chmod also
              can set the 2nd category of permissions, which windows users may be familiar with
              Access Control Lists (ACLs) and here you get some really fine granularity...messy stuff. 
              All in all, if I felt I could guide you through these murky waters, I would, but I think I'll let
              the professionals weigh in on that one and cut my wall-of-text to ribbons.
              To heuristically check I would connect from a client as one or two of my users and see what
              folders I could mount as a share, armored with an understanding of what ls -le@O * showed
              me in Terminal.
    3.)           File sharing setup (Turned ON, Home sharing Enabled)
              Here is an example of using command line sharing utility where each share is properly
              labeled (that took a bit for me to figure out) still this share only enables the AFP share as
              you can see from my flags.
      sudo sharing -a /Volumes/Hard\ Drive/Department/Database -A Database-afp -F Database-ftp -S Database-smb -n Database -s 100 -g 000 -i 10
              Then you do a sudo sharing -l and get back what you just did…
                                              List of Share Points
              name:                    Database
              path:                    /Volumes/Hard Drive/Department/Database
                        afp:          {
                        name:          Database-afp
                        shared:          1
                        guest access:          0
                        inherit perms:          1
                        ftp:          {
                        name:          Database-ftp
                        shared:          0
                        guest access:          0
                        smb:          {
                        name:          Database-smb
                        shared:          0
                        guest access:          0
              If you mess up the sharing command, you may not be paying attention (I wasn't) but there
              are a lot of defaults that Apple will just assume you meant to do anyway and it won't read
              any of your flags, you have to get it right or the flags will be defaulted. 
              (          Basically I could tell I was bombing it for one, I explicitly only wanted afp working, but
                        the default was afp and smb.  So each time I ran sudo sharing -l after I shot my sharing
                        command…back would come smb shared: 1 and I knew that wasn't right.  Also my
                        custom names were defaulting to the name of the directory not the name I had
                        specified.           )
              I like to know what protocol my share is over so when it doesn't work, I know which protocol's
              are connecting. It's not full-proof, but it's a bookmark.  I wish the network browser would
              identify the protocol that its available listed shares are using, because small visual queues
              like that help when you're trying to see what works.  Maybe that's something I should
              investigate via the command line?
              As a note about reading forums, I discovered using command line that "\" is kind of like a
              way of going to next line neatly with long commands…."\ " is a way to insert a space. As you
              can see above where I have a volume with a space in it. 
              Removing shares was a little trickier though, sharing -r Share\ With-space didn't work….I
              had to enclose it in quotes and do "Share With-space" instead. So nooby beware!
              (          *nix users are now rolling their eyes at this tip.          )
              I wasn't sure how you enabled a share for home directories from the command line, maybe its
              in the manual, but I was up to my eyeballs in manuals already so I haven't gone back to
              revisit this question since my work around was to go to Server.app and verify that what I set
              up in the sharing in terminal was being reflected in the gui…sort of my own MVC
              (model-view-controller) check.
    4.)           Directory Utility > Directory Editor or dscl 
      Make sure what you see in WGM and Server.app are reflected here….to that question let's
              take a journey where I did some exploring about that.
      Ever really wonder "WHY CAN"T I REMOVE AN OLD HOME DIRECTORY SHARE?!!!"
              Ah, then you will  - LOVE -  this tip…
              (          Provided my testing or yours, later, doesn't prove that in my ignorance I've broken
                        Open Directory. Remember, WHITEGLOVES!!!! but here we get a little dirty.  I think of
                        OD as Apple's Registry, but that's not what it is at all. However, you as the user do have
                        to "****" around in it from time to time.          )
              I scoured the forums and everyone was saying things like "You have to change your server
              role" etc. which seemed a little bit dumb to me (dumb because you're pushing views around
              not "controlling"), and well, yea, that share that I couldn't modify or delete was REALLY
              bugging me.
              Now hmm… Before you do ANYTHING, how do you try to not hurt yourself…in Windows you
              can make a Registry Backup….(yea bad analogy)  In Server Admin.app you can go to your Open
              Directory Service > Archive and Choose a place to Archive your information. (Figure this out by
              yourself, this is getting long…sheesh! It's easy. Restoring is just as easy and painless.)
      Before we can remove the entry we "SEE" in WGM we should make sure no
              one has it selected so as not to "corrupt" the OD db, so in WGM first before going to Directory
              Utility set the Home directory to "None".  (We need to remember to set this to a correct share
              later….Mental Note!!!)
              Now Open Directory Utility
              Method 1
              System Preferences > Users & Groups > Login Options
              Click the Lock to make changes…
              Authenticate -> click "OK"          (do I REALLY have to step-by-step this?)
              Network Account Sever: • Local Server - click "Edit" button here.
              Open Directory Utility > Directory Editor
              (          Wow, did Apple hire someone from Microsoft?  You'ld think with all their research in to
                        Human Interface Design that's WAY too many clicks to get to something you need.          )
              or
              Method 2 (It's good to know about this directory, neat-o speed-o app's hidden here.)
              Use "Go to Folder" Under Finder > Go > Go to Folder...
      ⇧⌘G /System/Library/CoreServices/ 
              Click "OK"
              and Double click Directory Utility.app
              or
              Method 3
              Terminal
              open /System/Library/CoreServices/Directory\ Utility.app/
              Now From the Directory Editor Pane you will see a Pop-up menu Labeled "Viewing"
              You should glance through this and get to know it.  You should use it to see what
              information is really being stored about your Users, Groups, Mounts…
              We are interested in Mounts, which is where we want to go…and there is the pesky
              mount that you will see reflected in WGM.
              Authenticate, and delete the bugger.
              Quit WGM and restart it.  Voila, bad share is GONE!!!!!
              a.)          First select all my users
              b.)           Then I clicked on the "+" and added the correct share
                        (          Remember, I only showed you the first one we created, this is another and
                                  for THIS one you HAVE to go into Server.app and verify that it is set to be
                                  available for Home Directories in this case for AFP.          )
                        For the home directory entry you do this...
                        afp://computer.domain.com/Accounts-afp
                        %short_name%
                        /Network/Servers/computer.domain.com/Volumes/Hard\ Drive/Department/Accounts/%short_name%
      %short_name% is a wild card for the short name there are other wild cards check out Apple's
                        Documentation on them.  I lost the link   sorry \<shrug\>
              Interesting dscl commands…(check it out in command line form and compare side by side with
              what you see in the GUI Directory Utility)
              dscl . list /users
              dscl . list /groups
              If you want to output information about each user, though, use readall:
              dscl . readall /users
              dscl . readall /groups
              And if you need to programatically parse said information, use -plist to make your life easier:
              dscl -plist . readall /users
              dscl -plist . readall /groups
              This made a little more direct sense to me, language wise…but fyi "." is kind of a wild card I think so the first
              commands I think look in ALL directories local, Search, LDAP whatever you have.  The command here
              corresponds to the Entry from the Pop-up menu "…in node > Blah…" see GUI of Directory Utility to confirm.
              dscl /LDAPv3/127.0.0.1 -list /Users
              dscl /Local/Default -list /Users
    5.)          Workgroup Manager
              Remember this is a utility that is not long for this world.  Apple's Mountain Lion is rumored to fully
              replace it, why? Yea, Apple's making a go at MDM (Mobile Device Management) and somehow
              desktop computers are being pulled/dragged along for the ride.  I have plenty of issues with
              Profile Manager, but I'll likely revisit it in a couple of months and see where we stand.
              Anyway, treat this baby like the bottom rung, because, well it is built like you start your
              foundation here, but it's just a viewer with controlling "tweaks".  Use the other areas to get a solid
              grasp of what is actually going on.  Server.app is where you should create accounts you can
              feel are safe.  When you create accounts in WGM, you are responsible for making sure they
              have the appropriate EVERYTHING.
    This list is by no means complete, but these are the areas this noob is or was prepared to talk about.
    Good night for now.  Enjoy climbing my wall of text, and yea sorry about that.  :O Run for you lives!!!!
      - Signed Shadowwraith

  • Problem syncing Mobile account home folder

    I'm trying to get mobile accounts working correctly so that i can support users (including myself) having laptops and iMacs with files all in sync. My initial tests seem to go well, but when I started moving the first user account over (mine) I noticed a number of errors appear. Here is an example of what I'm currently working on (I've trimmed it down to just before the error message):
    <hr>
    Client ~/Library/Logs/FileSyncAgent/FileSyncAgent-verbose.log:
    <Logout> 1:: \[10/06/16 15:22:57.357] <OK> network: MODIFY "Library/Preferences/com.apple.recentitems.plist" {(Priority=1, EXECUTING)}
    <Logout> 1:: \[10/06/16 15:22:57.387] <OK> network: MODIFY "Library/Preferences/com.apple.systemuiserver.plist" {(Priority=1, EXECUTING)}
    <Logout> 1:: \[10/06/16 15:22:57.417] <OK> network: MODIFY "Library/Preferences/com.apple.Terminal.plist" {(Priority=1, EXECUTING)}
    <Logout> 0:: \[10/06/16 15:22:57.435] EXCEPTION: \[data writeToFile:'/Volumes/Users/synctest/.FileSync/PHD-R-wO-0oQq9MqC-synctest.FileS yncHistory' options:0 error:&error] (Cocoa error 512) <-\[SStoreFileOperator_FS writeFileData:] (StoreFileOperator-FS.m:1091): "(Error Domain=NSCocoaErrorDomain Code=512 UserInfo=0x102fdd8c0 "The file “PHD-R-wO-0oQq9MqC-synctest.FileSyncHistory” couldn’t be saved in the folder “.FileSync”." Underlying Error=(Error Domain=NSPOSIXErrorDomain Code=35 "The operation couldn’t be completed. Resource temporarily unavailable"))">
    <Logout> 0:: \[10/06/16 15:22:57.435] USERINFO: {
    <Logout> 0:: \[10/06/16 15:22:57.435] NSFilePath = "/Volumes/Users/synctest/.FileSync/PHD-R-wO-0oQq9MqC-synctest.FileSyncHistory";
    <Logout> 0:: \[10/06/16 15:22:57.435] NSUnderlyingError = "Error Domain=NSPOSIXErrorDomain Code=35 \"The operation couldn\U2019t be completed. Resource temporarily unavailable\"";
    <Logout> 0:: \[10/06/16 15:22:57.435] }
    <Logout> 0:: \[10/06/16 15:22:57.435] BACKTRACE: {
    <Logout> 0:: \[10/06/16 15:22:57.435] ? | 0x1000bc73c
    <Logout> 0:: \[10/06/16 15:22:57.435] ? | 0x1000b9eec
    <Logout> 0:: \[10/06/16 15:22:57.435] ? | 0x100066a00
    <Logout> 0:: \[10/06/16 15:22:57.435] ? | 0x100065fe6
    <Logout> 0:: \[10/06/16 15:22:57.435] ? | 0x1000c8f1a
    <Logout> 0:: \[10/06/16 15:22:57.435] ? | 0x7fff800cbe8d
    <Logout> 0:: \[10/06/16 15:22:57.435] ? | 0x7fff820a3456
    <Logout> 0:: \[10/06/16 15:22:57.435] ? | 0x7fff820a3309
    <Logout> 0:: \[10/06/16 15:22:57.435] }
    <Logout> 1:: \[10/06/16 15:22:57.544] -\[SStore(protected) cleanupTree]: PHD-L-iI.arrVC0G4-synctest: required 0.0 seconds to execute
    <Logout> 1:: \[10/06/16 15:22:57.557] Store "PHD-L-iI.arrVC0G4-synctest" finished syncing with root version PHD-L-iI.arrVC0G4-synctest1276714848PHD-R-wO-0oQq9MqC-synctest1276714849\[]
    <Logout> 1:: \[10/06/16 15:22:57.558] -\[SStore_FS deleteStateTreeTurdFile] (Store-FS.m:481): unlink('/Users/synctest/.FileSync/store.filesyncstatetree.statetree_dirty')
    <Logout> 1:: \[10/06/16 15:22:57.737] Store "PHD-R-wO-0oQq9MqC-synctest" finished syncing with root version PHD-L-iI.arrVC0G4-synctest1276714848PHD-R-wO-0oQq9MqC-synctest1276714849\[]
    <Logout> 1:: \[10/06/16 15:22:59.041] Compress/upload of "/Volumes/Users/synctest/.FileSync/Store-FS-PHD-network-home.filesyncstatetree. bz2" took 1.30 seconds
    <Logout> 1:: \[10/06/16 15:22:59.041] -\[SStore_FS deleteStateTreeTurdFile] (Store-FS.m:481): unlink('/Volumes/Users/synctest/.FileSync/Store-FS-PHD-network-home.filesyncsta tetree.bz2.statetree_dirty')
    <Logout> 1:: \[10/06/16 15:22:59.043] 1-pass sync of "HomeSync_Mirror" took 4.75 seconds
    <Logout> 0:: \[10/06/16 15:22:59.374] Finished sync of "HomeSync_Mirror".
    1:: \[10/06/16 15:22:59.914] -\[MainObj shutdownAgent]
    0:: \[10/06/16 15:22:59.949] EXCEPTION: User Cancelled <_incomingIPC (ipc.m:210): "'((userCanceledErr))' error -128">
    0:: \[10/06/16 15:22:59.949] USERINFO: {
    0:: \[10/06/16 15:22:59.949] NSLocalizedDescription = "User Cancelled";
    0:: \[10/06/16 15:22:59.949] }
    0:: \[10/06/16 15:22:59.949] BACKTRACE: {
    0:: \[10/06/16 15:22:59.949] ? | 0x10000e2a8
    0:: \[10/06/16 15:22:59.949] ? | 0x7fff82d74af1
    0:: \[10/06/16 15:22:59.949] ? | 0x7fff82d0f171
    0:: \[10/06/16 15:22:59.949] ? | 0x7fff82d0d84f
    0:: \[10/06/16 15:22:59.949] ? | 0x1000049d9
    0:: \[10/06/16 15:22:59.949] ? | 0x7fff820a3456
    0:: \[10/06/16 15:22:59.949] ? | 0x7fff820a3309
    0:: \[10/06/16 15:22:59.949] }
    1:: \[10/06/16 15:22:59.949] _incomingIPC: caught exception _incomingIPC (ipc.m:210): "'((userCanceledErr))' error -128"
    0:: \[10/06/16 15:23:00.669] Bye (PID:2246)
    <hr>
    Server ~/Library/Logs/FileSync-server/FileSync-server-verbose.log:
    1:: \[10/06/16 15:22:54.616] PHD-R-wO-0oQq9MqC-synctest Scanning flagged directory "Library/"
    1:: \[10/06/16 15:22:54.625] PHD-R-wO-0oQq9MqC-synctest Scanning flagged directory "Library/Preferences/"
    1:: \[10/06/16 15:22:54.644] PHD-R-wO-0oQq9MqC-synctest Scanning flagged directory "Library/Preferences/ByHost/"
    1:: \[10/06/16 15:22:54.665] Store "PHD-R-wO-0oQq9MqC-synctest" finished prepareForSync with root version PHD-L-iI.arrVC0G4-synctest1276714845PHD-R-wO-0oQq9MqC-synctest1276714849\[]
    1:: \[10/06/16 15:22:54.671] -\[SStore_FS deleteStateTreeTurdFile] (Store-FS.m:481): unlink('/Users/synctest/.FileSync/Store-FS-PHD-network-home.filesyncstatetree.s tatetree_dirty')
    1:: \[10/06/16 15:22:56.113] -\[SPeer_FS zip] (Peer-FS.m:361): unlink('/Users/synctest/.FileSync/Store-FS-PHD-network-home.filesyncstatetree')
    0:: \[10/06/16 15:22:59.705] EXCEPTION: Unknown error 2002 <-\[SNetworkReachabilityMonitor init] (NetworkReachabilityMonitor.m:72): "(Error Domain=com.apple.SystemConfiguration Code=2002 UserInfo=0x100243d20 "The operation couldn<E2><80><99>t be completed. (com.apple.SystemConfiguration error 2002 - Configuration daemon not (no longer) available)")">
    0:: \[10/06/16 15:22:59.705] USERINFO: {
    0:: \[10/06/16 15:22:59.705] NSDescription = "Configuration daemon not (no longer) available";
    0:: \[10/06/16 15:22:59.705] }
    0:: \[10/06/16 15:22:59.705] BACKTRACE: {
    0:: \[10/06/16 15:22:59.705] ?<C2><A0>|<C2><A0>0x100014831
    0:: \[10/06/16 15:22:59.705] ?<C2><A0>|<C2><A0>0x100014688
    0:: \[10/06/16 15:22:59.705] ?<C2><A0>|<C2><A0>0x7fff82ffb535
    0:: \[10/06/16 15:22:59.705] ?<C2><A0>|<C2><A0>0x7fff8300963e
    0:: \[10/06/16 15:22:59.705] ?<C2><A0>|<C2><A0>0x7fff83001eaa
    0:: \[10/06/16 15:22:59.705] ?<C2><A0>|<C2><A0>0x7fff82ffa1ba
    0:: \[10/06/16 15:22:59.705] ?<C2><A0>|<C2><A0>0x1000036c3
    0:: \[10/06/16 15:22:59.705] ?<C2><A0>|<C2><A0>0x10007f4e0
    0:: \[10/06/16 15:22:59.705] ?<C2><A0>|<C2><A0>0x2
    0:: \[10/06/16 15:22:59.705] }
    0:: \[10/06/16 15:22:59.705] Bye (PID:9460)
    <hr>
    Now I've not done much with OS X programming, but I've done quite a bit of Unix systems work. The client appears to be getting an EAGAIN error (essentially that the syscall didn't complete, but not that it failed). Ideally, it should try again, and perhaps there is something I can set that will have it do a couple of retry attempts before giving up?
    However, the error on the server side is the likely culprit. I don't know what the error message regarding com.apple.SystemConfiguration means, but my googling for hints implies that it is some sort of error connecting over the network. To try and debug that, I had both machines connected to the same switch with firewalls turned off and the error continues. The previous lines imply that it is trying to delete a file that it created from the local disk. What bothers me about that is that in the WGM I set the home directory to be "afp://servername/Users" and it shows that it should be either "afp://servername/Users/synctest" or "/Network/Servers/servername/Users/synctest" but the server is accessing the home folder directly, so why an issue with network reachability?
    Can anyone offer any hints as to what I should be looking for? I had hoped that PHDs would solve the whole multiple computer issue, but they don't seem to be working reliably for me. Since I get this issue consistently I'm guessing that there is something misconfigured on my end.

    Shawn,
    I've done the deletion of those folders a number of times, with no luck.
    The most recent attempt to get this to work was:
    1. Delete ~/.FileSync and ~/Library/FileSync from the server machine.
    2. With a brand-new install of OS X on a laptop, create a local administrator, join the server, then login as the user account that wants a mobile account
    3. Look at logs
    I still get an exception on the server
    0:: \[10/07/31 13:39:47.791\] EXCEPTION: Unknown error 2002 <-\[SNetworkReachabilityMonitor init\] (NetworkReachabilityMonitor.m:72): "(Error Domain=com.apple.SystemConfiguration Code=2002 UserInfo=0x10027adc0 "The operation couldn<E2><80><99>t be completed. (com.apple.SystemConfiguration error 2002 - Configuration daemon not (no longer) available)")">
    0:: \[10/07/31 13:39:47.791\] USERINFO: {
    0:: \[10/07/31 13:39:47.791\] NSDescription = "Configuration daemon not (no longer) available";
    0:: \[10/07/31 13:39:47.791\] }
    0:: \[10/07/31 13:39:47.791\] BACKTRACE: {
    0:: \[10/07/31 13:39:47.791\] ?<C2><A0>|<C2><A0>0x100014831
    0:: \[10/07/31 13:39:47.791\] ?<C2><A0>|<C2><A0>0x100014688
    0:: \[10/07/31 13:39:47.791\] ?<C2><A0>|<C2><A0>0x7fff82ffb535
    0:: \[10/07/31 13:39:47.791\] ?<C2><A0>|<C2><A0>0x7fff8300963e
    0:: \[10/07/31 13:39:47.791\] ?<C2><A0>|<C2><A0>0x7fff83001eaa
    0:: \[10/07/31 13:39:47.791\] ?<C2><A0>|<C2><A0>0x7fff82ffa1ba
    0:: \[10/07/31 13:39:47.791\] ?<C2><A0>|<C2><A0>0x1000036c3
    0:: \[10/07/31 13:39:47.791\] ?<C2><A0>|<C2><A0>0x10007f4e0
    0:: \[10/07/31 13:39:47.791\] ?<C2><A0>|<C2><A0>0x2
    0:: \[10/07/31 13:39:47.791\] }
    0:: \[10/07/31 13:39:47.792\] Bye (PID:38660)
    as well as the corresponding error on the client.
    I'm quite frustrated with the whole situation at this point. I'm sure some folks have gotten it to work, but since it has exceptions like this silently, it slowly corrupts the data in an account. I still want to get it to work, but am skeptical that it will.
    Message was edited by: Benjamin Kuperman

  • Mobile Accounts: Sync new accounts first time only.

    When a user logs into a computer for the first time it is set to create a mobile account, however we don't use home directory syncing because the typical size of our 200 users' home directories is over 100Gb which makes syncing home directories not viable.
    It would be very handy, though, to have it sync the first time only at login so that our user directory template is automatically copied over which will save a lot of time setting up new users.
    Accoring to Apple's User Management v10.5 documentation on page 203:
    +"To initially sync local and network homes so that the network home folder replaces the local home folder, choose “Create home with default sync settings."+
    (This refers to Workgroup Manger -> Preferences -> the Mobility pane -> Account Creation -> Creation tab)
    After testing, though, it is quite clear that this does not work - at least on my setup. I can get it to work by going to the Rules tab in the Mobility pane and ticking the sync at login and logout, but this syncs every time on both login and logout, which is not what I want to achieve.
    Any ideas?

    I also mentioned, that some Safari-Extensions I installed on the iMac are missing now on my iMac-Profile. I also mentioned, that some settings for 1Password are reset to default values.

  • Migration Assistant won't migrate mobile accounts

    I have an LDAP directory that our accounts reside on. I had setup mobile accounts so that when away from home with our MacBooks, we could still log in with cached credentials.
    I reinstalled my MBP with 10.5 and upgraded to 10.5.6. With Migration Assistant and a backup sparse image file mounted, it sees my OLD system from the mounted image. It sees both my and my wife's old accounts, my Applications, Library files etc. Everything has a size associated with it (e.g., 2.5GB for Applications), except our accounts both say 0.0KB. When I try to migrate ONLY the accounts, it migrates nothing and completes in just a second or two saying it completed.
    Any clues? Is there a manual process I can do. I just want to preserve modification times on my Documents for timeline purposes.

    thanks,
    the thing is the Mac was behaving strangely - that's why I sent it to the lab in the first place.
    This Mac is just over a year old but it's content was initially migrated from the older mac.
    And it (the new Mac) wasn't working properly from the get go..
    It took ages for it to start up and wouldn't start up if any external disk was attached (via USB).
    I had to start it up and only then connect external disks.
    In the lab - They couldn't find and HW issues.
    So they formatted and reinstalled the OS - I think that's all they've sone in the lab
    The idea was to start afresh and slowly reinstall softwares - only those necessary.
    So, having said all that- does that change your answer?

  • Mobile account settings & home sync

    I've learned recently that introducing a MacBook into a corporate Windows world is easier said than done, but I've been fairly successful. One problem that has occurred recently (maybe due to a recent update) is that I can no longer access the Mobile account settings in my Accounts preferences. I setup the first MacBook Pro around the first of March. I successfully assigned a networked location as my home folder, and it synced just fine.
    Now I've setup a second MacBook Pro today and found that I can't access the Mobile account settings in the Accounts preferences. Going back to my original MacBook Pro, I get the same thing... greyed out. I click on the Home Sync button in the toolbar and I click on "Sync Now" and I get no response. I see that it shows my last Home sync was on 3/4/10.
    I don't have an OSX server here, we're using Active Directory on a Win2008 server. No specific rules have been assigned to these machines, but the accounts are Active Directory accounts.
    Anyone have an idea why I can't use the home functions? These are new 15" MacBook Pro models with 10.6.3 software.
    Thanks in advance.

    Hi,
    I got the same problem with our second Mac. But after activating it in: System -> Library -> CoreServices -> Menu Extras and then HomeSync.menu, it became editable.
    Does someone know how to change the server folder that the mac will sunc with?
    BR
    Paul

Maybe you are looking for