Newly-added users to private wiki canʻt login

I set up a secured wiki under Snow Leopard Server (unlimited license) a couple of months ago but, now, when I create new users (via Server Preferences) and I try to login with their usernames/passwords via Safari 4.0.4 or Firefox 3.5.7, the login is rejected. Previously created users can access the wiki just fine. Iʻve read through this Forum for similar problems and here are some details Iʻve seen requested from others with similar problems:
1. Server Admin > Access is set to "For all services" and "allow all users and groups."
2. When I login to the wiki as an administrator, under Services, Iʻve tried various combinations of Public, Public w/login required (with both "All authenticated users can write" and "Only the following users and groups can write"-w/all user and group names entered manually), Private (w/all user and group names entered manually).
3. When I enter the following into the terminal, the response is "user is a member of the group" for all groups for which new users are defined: > dsmemberutil checkmembership -U username -G groupname
4. Iʻve tried "> dsmemberutil flushcache" multiple times, to no avail.
Any suggestions on how to fix this problem? Or other things to try?
Steve Abrams, Ph.D.
School of Information and Computer Sciences
University of california, Irvine

Is the wiki service the only one affected? Can you log into the server as those users, or su - s <username> in terminal?
Alternatively, if you have enabled calendar or mail (or any other service), can these new users connect to the server via iCal and Mail, respectively?
Could you look at the wiki error log (/Library/Logs/wikid/error.log by default) and see what the error message is? Incorrect username/passwords usually trigger a message like the following, but it might be different...
Unhandled Error
Traceback (most recent call last):
Failure: twisted.cred.error.UnauthorizedLogin: bad username or password : rjarratt

Similar Messages

  • HT4798 I'm seeing the above problem, how can i open "Users&Groups" if i can't login?

    I'm seeing the above problem, how can i open "Users&Groups" if i can't login?

    If the system is associated with an Apple ID, and you know that account password, the Apple ID can be used to reset your user account password.
    Otherwise, boot into Recovery by holding down the key combination command-R at startup. Release the keys when you see a gray screen with a spinning dial.
    When the OS X Utilities screen appears, select Utilities ▹ Terminal from the menu bar.
    In the Terminal window, type this:
    resetpassword
    That's one word with no spaces. Then press return. A Reset Password window opens.
    Select your boot volume if not already selected.
    Select your username from the menu labeled Select the user account if not already selected.
    Follow the prompts to reset the password. It's safest to choose a password that includes only the characters a-z, A-Z, and 0-9.
    Select  ▹ Restart from the menu bar.
    You should now be able to log in with the new password, but you won't be able to unlock the Keychain. If you've forgotten the Keychain password (which is ordinarily the same as your login password), there's no way to recover it. You’ll need to reset your keychain in the preferences of the Keychain Access application.

  • New users created in APEX can't login to new App

    I've imported an APEX application that I created with the downloaded version of APEX (2.1.0.00.39), into apex.oracle.com. I tried to create a new user for the application. With a NULL default schema (meaning it should have access to any schema), no user I seem to create though is able to log in to the application. It says invalid credentials.
    When I create a new user, does that user go through some sort of validation process by Oracle and isn't valid until Oracle does it's magic tap on the newly created user?

    Hi Tyler,
    As you have created application users (as opposed to database users) is your application using "application authentication" or is it using "database authentication"?
    You can check which one is current on the application's "Shared Components >> Authentication Schemes" and change it if required.
    Regards,
    Mike

  • Webmail not updating newly added users

    Our webmail has been working for several years without much trouble. If I added a user in the Workgroup Manager and the mail for that user worked it was a given that it would work in webmail as well. This was setup by someone who is no longer here. We are using RoundCube and even the address books for the users are available just like they were using Mail.ap. Now the new users are "invalid" in webmail and the address books don't update. Anyone have any ideas how I fix this?

    i have imported all the users with pics but  the new user added into active directory
    How did you do the the above? I've not got any experience with the MySites. But Id try manually syncing the users to see if that fixed the issue.
    Okay tested it:
    To make the picture sit in AD for the user do this:
    $photo = [byte[]](Get-Content C:\pictures\USER.jpg -Encoding byte)
    Set-ADUser USER -Replace @{thumbnailPhoto=$photo}
    This will add the image to the users Thumbnail attributable in AD. It will then sync to all Microsoft applications that allow the image e.g. SharePoint, Lync, Outlook. 
    Then you can run the sync PowerShell I linked before.
    I must say this is quite neat. Thanks this helped me get some points in the good book here at work! :)
    If this is helpful please mark it so. Also if this solved your problem mark as answer.

  • Webcenter group space access denied for newly added user in oid group .

    Hi All,
    We have upgraded our webcenter with latest version 11.1.1.4.
    We have created a groupspace where we set the acceess for group space usiing add groups .
    Suppose i have added userRoles1 to get access of this groupspace.
    Now i am adding another user part of this usergroup from some oid console .
    I am able to see this user in the member of this userRoles but whenever this user
    is trying to access this gs getting unauthorized access message .
    Any pointer please .
    Regards ,
    Arun

    Hi,
    User Account Control treats members of the Administrators group as standard users.
    With UAC enabled, members of the local Administrators group run with the same access token as standard users. Only when a member of the local Administrators group gives approval can a process use the administrator’s full access token. This process is the
    basis of the principle of Admin Approval Mode.
    When an administrator logs on to Windows Vista or newer, the Local Security Authority (LSA) creates two access tokens. If LSA is notified that the user is a member of the Administrators group, LSA creates the second logon that has the administrator rights
    removed (filtered).
    To work around this issue, use the net use command together with a UNC name to access the network location.
    Programs may be unable to access some network locations after you turn on User Account Control in Windows Vista or newer operating systems
    http://support.microsoft.com/kb/937624
    Regards,
    Mandy
    We
    are trying to better understand customer views on social support experience, so your participation in this
    interview project would be greatly appreciated if you have time.
    Thanks for helping make community forums a great place.

  • No Start Menu, removed and added User Account then no "Built In" Apps - Build 1049

    So quick history, was having problem with start menu not working under build 1044 for the second user I'd added to the machine (Microsoft account). Rebuilt using "Remove everything and reinstall windows". Seemed to resolve the problem for the newly
    added user and was still working under the original user (also Microsoft Account).  Then along came build 1049 and now the same start menu issue occurred for the original user account.  So, as both were setup as admins, removed the original
    user account, restarted, checked all data removed and added the account again. 
    First attempt added the account as a local account then added the Microsoft account after login, result = start menu working but no "built in" apps (store beta, insider app etc).
    So removed account again and added again, this time using Microsoft account immediately, logged in and exactly the same result.
    Any ideas how to resolve?

    You cannot use the Start Menu logging in as anything that would be in the BUILTIN\administrator group on the computer.  I had the same problem when I added the machine to a domain, thus domain admins is in the BUILTIN\Administrator group.
    The reason being that the Windows 10 Start Menu is an appxpackage, and you can't run appxpackages using the built-in administrator account.  As is the case for example with Windows Store.  It doesn't however give you a warning message, you
    just click on the windows button and nothing happens.
    This is just total madness imv.  It kind of made sense when all the appxpackages where apps, but now they include parts of the OS, the OS is essentially non-functional when you log in using anything in the BUILTIN\ administrator group.
    If you really want to blow your mind, go into PowerShell and run the command: get-appxpackage|remove-appxpackage
    If you run that on Windows 8.1 it will remove all the bloatware apps for the logged on user.  Run it in Windows 10 and it removes various parts of the OS for that user as well, such as the Start Menu!

  • Can't login in to OS X 10.6.7 without domain admin account

    Have just bought a mac mini to test in a Windows server environment.
    I successfully bound to the Acitve Directory server and was able to login as my default user account;
    I moved on and did a software update which moved me from 10.6.4 to 10.6.7 and since this I have not been able to logon using that or any normal user accounts.
    I can successfully login as the administrator (default account created during install) and surprisingly can login as any  Domain Administrator account, something I don't want to be doing. I tested with other normal users with the same issue and can sucessfully install with any Domain Administrator account.
    I have seen a few things that are similar but none of the fixes seem to work...
    This doesn't bode well for Macs in the workplease :S

    I would recommend preparing your system first and then update by following these instructions:
    1. Backup first using Time Machine!
    2. Disconnect all peripherals except the keyboard and mouse.
    4. Download the Combo Update from Apple Downloads.
    5. Boot computer in Safe Mode. Note: Safe Boot loads a stripped down system which may reduce any chance of incompatibility while the update is running. Keep all Applications closed.
    6. Repair Permissions from Disk Utility while booted in Safe Mode.
    7. Install the update from Safe Mode.
    8. Restart as you normally would if prompted.

  • Can't Login to New OD Master - Even when bound to OD

    This is a completely new server installation on a multi-core MacPro of Leopard Server 10.5. I have followed best practice standards by configuring DNS first and double checking with changeip command. I than went from Standalone to OD Master and all the setting checked out. I configured DHCP for our small network. That worked fine. I than configured a home directory share with automount, created one new account and created home directory. I verified login to the server and creation of the home directory. Server updates are also done now.
    Now the confusing part. I took a Mac OS X Leopard client machine, fully updated and used Directory Utility to bind client to server. Directory Utility reports bind is operational and working. I can use the Directory app to see myself as a user. HOWEVER - I can NOT login to the OD Master as the user I setup. The login screen just shakes me off as if the password is wrong. It is not.
    I looked at the OD logs and I am being successfully autheticated by server. The client just refuses to login. I have tried 10.4 and 10.5 clients.
    What have a messed up? <grin>

    Hi
    I'm guessing when you supply the user name and password there is a slight delay before you get the shake? is that correct? Or do you provide the user's credentials and you get the shake immediately with a message telling you the AFP or SMB Server can't be found?
    To start with verify if the created user is a principal of the Kerberos Realm. On the server issue:
    sudo kadmin.local -q list_principals
    amongst other things you should see an entry for that user. Something like [email protected]
    What you can do is to unbind. Remove the DirectoryServices folder and the edu.mit.Kerberos file from /Library/Preferences, restart the client and then place the Server's IP address in the client's DNS Server's field as well as the Domain name in the Search Domains field. Use Terminal and the host command to resolve the server's fqdn and then its IP address from the client. This will qualify the server's DNS service on the forward and reverse pointers. Use Directory Utility to bind to the Server using its IP address alone and don't bother with authenticated binding. Double-check the edu.mit.Kerberos file has been created in /Library/Preferences (this is evidence that you have received a TGT - you can refer to the server logs as well that should show this happening), log out of the local admin account and select Other. Go for the log in again and hopefully you should be now logged in with a network user's account and home folder.
    Hope this helps, Tony

  • How can i get newly added contacts for a Mailbox User in Exchange Server 2013

    Hi all,
    I need to synchronize contacts in Exchange Server and Sugar CRM Application, for that
    i need to get newly added contacts for a User in Exchange Server 2013 by using EWS Managed API.
    I know how get the list of all contacts for a particular user , but in the list how i can find
    new contacts ?

    Hi Dora,
    that's the fun thing:
    You add your own property (and it'll be invisible to outlook users, not to worry).
    Extended Properties allow you to define custom property on Exchange Items. And it has a
    method for setting those too.
    Here's a short post doing a very simple intro on using Extended Properties.
    Glen's Exchange Blog is a generally useful resource when working with EWS, I'm confident you'll be able to find lots of tips there as well.
    Cheers,
    Fred
    There's no place like 127.0.0.1

  • HT1751 if i back up my itunes library to an external hard drive and then add subsequent music and want to back that up a few days later, can i backup the only newly added music without backing up the entire library again?

    hello,
    if i back up my itunes library to an external hard drive and then add subsequent music and want to back up the newly added music a few days later, can i do it without backing up the entire library again? or do i need to back up the entire library each and every time i back up to the external hard drive?

    Just copy Users/yourusername/Music/iTunes (containing your library-files) to your external drive as well as that (extaernal) folder that contains all your audio-tracks.

  • How can I view the newly added node in a JTree

    Hi! I have a problem with my project. I set up a JTree. At first it has a node that contains FARInfo object. When I click this node, the other program in the package will pop up a form to let user input and submit, then it will add a new node into the other node. The new node will contain FilledInfo object. But I cannot view this newly added node. The source code related with the 2 different object is as following:
    tree.addTreeSelectionListener( new TreeSelectionListener()
    public void valueChanged(TreeSelectionEvent e4)
    DefaultMutableTreeNode node = ( DefaultMutableTreeNode )
    (tree.getLastSelectedPathComponent ());
    Object nodeInfo = node.getUserObject();
    if (node.isLeaf())
    if ( nodeInfo instanceof FARInfo )
    FARInfo category = (FARInfo) nodeInfo;
    displayURL ( category.categoryURL );
    displayForm ( category.farFormName );
    if ( DEBUG )
    System.out.print ( category.categoryURL + ":\n" );
    else if ( nodeInfo instanceof FilledInfo )
         FilledInfo category2 = ( FilledInfo ) nodeInfo;      
         displayFilledForm ( category2.num );
    }else
    return;
    My question is: how to deal with the nodes containing 2 different objects: FARInfo and FilledInfo? FilledInfo is created by the other program in the package. Thanks for your help!

    I used insertNodeInto() to inser a new node into the tree, and it can be displayed. But when I used addTreeSelectionListener() to click on the newly added node, it cann not reaspond the click. Following is my original addTreeSelectionListener(). You see, if you click a node of FARInfo, then it will open a form, and after user filled in and submit it, a new node will be added into the Jtree. If you click a node of FilledInfo, then the user should view the content of this new node. But now, it seems that the sencond click cannot work. Thanks for your help.
    tree.addTreeSelectionListener( new TreeSelectionListener()
    public void valueChanged(TreeSelectionEvent e4)
    DefaultMutableTreeNode node = ( DefaultMutableTreeNode )
    (tree.getLastSelectedPathComponent ());
    Object nodeInfo = node.getUserObject();
    if (node.isLeaf())
    if ( nodeInfo instanceof FARInfo )
    FARInfo category = (FARInfo) nodeInfo;
    displayURL ( category.categoryURL );
    displayForm ( category.farFormName );
    if ( DEBUG )
    System.out.print ( category.categoryURL + ":\n" );
    else if ( nodeInfo instanceof FilledInfo )
    FilledInfo category2 = ( FilledInfo ) nodeInfo;
    displayFilledForm ( category2.num );
    }else
    return;

  • HT1692 I am not able to scroll my contacts. If i add or mahe any change in existing contacts, it appaers at the top of the contacts and freezes rest above the first letter of newly added or changed one. Anyone can help?

    I am not able to scroll my contacts. If i add or mahe any change in existing contacts, it appaers at the top of the contacts and freezes rest above the first letter of newly added or changed one. Anyone can help?

    Hi,
    >>1. how can i align Title(DCS Clinical Report-Technician wise) center of pdf report with image named:logo5.png immediately coming to it's right?.
    2. how do i add the given below row and it's data to my top my table in pdf report from c# windows forms using itextsharp?
    3.how to make my column headers in bold?<<
    I’m sorry for the issue that you are hitting now.
    This itextsharp is third party control, for this issue, I recommended to consult the control provider directly, I think they can give more precise troubleshooting.
    http://sourceforge.net/projects/itextsharp/
    Thanks for your understanding.
    Regards,
    Marvin
    We are trying to better understand customer views on social support experience, so your participation in this interview project would be greatly appreciated if you have time. Thanks for helping make community forums a great place.
    Click
    HERE to participate the survey.

  • Can iTunes transfer only newly added songs?

    Hi, just need a quick answer. Couldn't find the answer I was looking for in the FAQ section. Posted in the iTunes forum, but not as many people on there as here.
    I know iTunes can either transfer the whole library or we can manually do it, but is there a way iTunes can transfer only new songs added to the library since it last transfered to the iPod? And if we changed the info for an existing song, would it know it's newly added if the first question is possible?
    Thanks,
    JayDee

    This is something that I haved wondered and the simple answer unfortunately is no (to the best of my knowledge). With podcasts and Photos, iTunes keeps whats on the iPod and only adds to this bringing the collection up to date. For some silly reason, there is not an option to do this with music - an auto update will erase and replace the entire iPod library to match your iTunes library (very annoyingly). The only way round this is to use manual manage songs, which as you've probably found out saves you a **** of alot of time! The first time you re-connect your ipod and discover it is starting from scratch is quite agrivating! 55GB and USB1!

  • Leopard Server - Can I link the users calendar to wiki?

    Hi there,
    Is it possible to link the user calendar to the wiki and not the group calendar.
    gr maarten

    Hi,
    AFAIK, this is not possible.
    The user calendar does not have a GUID associated with it. Even if you add the link to a wiki page as an http:// reference there is no way to authenticate to it.
    The wiki uses the GUID to reference a logged in user to the group and therefore access to the calendar. In the user calendar case the wiki can't authenticate to it.
    Additionally, user calendars are stored in calendar/users directory and not in the calendar/groups directory. As separate locations the two areas do not correspond and for the same reason.
    HTH,
    Harry

  • Can't add groups or users to the wiki

    I've found a few threads on this, but none of them have presented a solution.
    Setup:
    XServe with Leopard 10.5.4 on it.
    Advanced mode.
    Problem:
    Under the Server Admin panel, if I add a user or group to have Wiki and Blog permissions, if I click save, the user and or groups do not stay in the list. And on the site they do not have wiki or blog options. The group/user vanished.
    If I try to enable wiki and blog options for a group under the "basic" tab in Workgroup Manager, all options are disabled (i.e. - "Enable the following services for this group on: (None)" is disabled.
    The DNS is set appropriately.
    The machine is (correctly) set for Open Directory - Stand Alone server.
    Here is an interesting addition to the problem.
    1.) Through the System Admin panel, if I add a user to the wiki permission list, and click save
    2.) Open a broswer over the System Admin panel (without navigating to anywhere else in System Admin) and log in to the local wiki
    3.) The "groups" button is enabled, but the "users" button is not.
    4.) Click on "groups"
    5.) Now the "users" button is also enabled.
    6.) Go to "Users"
    7.) Select "create a blog" and enter my username and password.
    8.) Give my blog a name.
    9.) Now the blog shows up under the Users list.
    10.) Open my blog in the users list.
    11.) Create a new blog entry.
    12.) Go back to System Admin panel, navigate anywhere else, and then return to the wiki settings for the appropriate site, the user and or groups are gone once again.
    13.) Go back to the web broswers and pull up the local wiki.
    14.) "groups" will be enabled. "users" will be disabled.
    15.) Click "groups"
    16.) "Users" is now enabled.
    17.) Click on "users"
    18 a.) Often a 404 page appears, or a wiki page that is pure text (no html).
    18 b.) Refresh the page, and now the normal list of user blogs appears.
    19.) Click on the blog I created previously.
    20.) Viola! It is completely usable and viewable, but the User will NEVER appear as having permissions under the Web options in Server Admin.

    @ Pope7
    Hi
    The machine is (correctly) set for Open Directory - Stand Alone server
    If this is truly what is says then whatever you are trying to achieve won't happen. The Server has to be an OD Master and users and groups need to exist in the LDAP node. Wiki, Blog and iCal will not be available as services until you you do this.
    The DNS is set appropriately
    The foundation for a successful Open Directory Master offering LDAP and SSO is DNS. Don't confuse an external DNS service with an internal one that the server will require. You don't have to configure DNS on the server itself just as long as it is configured on another server on the same network will do.
    @ simonblackledge
    Hi
    Using DM to make a group. Goto the tab for services and everything ..wiki etc.. is ghosted out
    What's DM? If you are not seeing an option to enable calendaring in the Users Advanced Tab or similar options for Wiki, Blog etc in the Groups Tab then either you are in the Local node in which case these services won't work or your Server is not configured as an OD Master. Same advice applies to you really.
    The admin manual although poor does clearly state what's required:
    http://images.apple.com/server/macosx/docs/iCalService_Admin_v10.5_2ndEd.pdf
    You should download this one as well:
    http://images.apple.com/server/macosx/docs/OpenDirectory_Admin_v10.5_2ndEd.pdf
    Finally there is a requirement for clients to be bound to the Server for this to be truly effective. Use Directory Utility found in /Applications/Utilites to achieve this.
    If I'm telling you something you already know then please accept my apologies.
    Tony

Maybe you are looking for