OS X 10.6.5 Server AFP share - can't change group from 'staff' ???

Hi,
I'm running a new 10.6.5 XServe within a corporate AD environment. Well, when I say 'running' I mean testing - I could never let this odd beast loose on anyone with the awful state it's in.
Trying to set up the AFP shares, I simply wanted to assign one of our AD groups as the POSIX group for the share, just as I do on our existing Tiger server. 'simply' he says... oh I wish!
Server Admin 'lets' me change the group, then puts it right back to 'staff' again as soon as I hit Save. Same result when trying to change the Owner too, but I'm not needing to change that.
From Terminal, the usual permissions commands have no effect either. Try chgrp MyGroupName MyFolderName.
Tried changing while logged in as either root or admin, no difference.
So, all I want to do is change the group that's assigned to a share's POSIX permissions. Am I expecting too much from SL? Anyone else had this problem, and know the trick to solving it?
Can't believe this is happening - something so basic and important. I've wasted countless hours already with numerous other SL issues. Wish I'd never set eyes on the thing but it's been forced down my throat - we needed a new XServe, which turned up with SL installed of course. I'd gladly do a clean install of plain Leopard over the top, but apparently that's asking for (even more) trouble.
This POSIX nonsense is just the latest obstacle I need to get sorted.
Thanks for any help,
Paul.

Hi,
I'm running a new 10.6.5 XServe within a corporate AD environment. Well, when I say 'running' I mean testing - I could never let this odd beast loose on anyone with the awful state it's in.
Trying to set up the AFP shares, I simply wanted to assign one of our AD groups as the POSIX group for the share, just as I do on our existing Tiger server. 'simply' he says... oh I wish!
Server Admin 'lets' me change the group, then puts it right back to 'staff' again as soon as I hit Save. Same result when trying to change the Owner too, but I'm not needing to change that.
From Terminal, the usual permissions commands have no effect either. Try chgrp MyGroupName MyFolderName.
Tried changing while logged in as either root or admin, no difference.
So, all I want to do is change the group that's assigned to a share's POSIX permissions. Am I expecting too much from SL? Anyone else had this problem, and know the trick to solving it?
Can't believe this is happening - something so basic and important. I've wasted countless hours already with numerous other SL issues. Wish I'd never set eyes on the thing but it's been forced down my throat - we needed a new XServe, which turned up with SL installed of course. I'd gladly do a clean install of plain Leopard over the top, but apparently that's asking for (even more) trouble.
This POSIX nonsense is just the latest obstacle I need to get sorted.
Thanks for any help,
Paul.

Similar Messages

  • I have two personal e-mail accounts and a general account that I have synced to my Mail app, but I keep getting emails sent to the non-personal e-mail because they're on the same server. How can I change that?

    I have two personal e-mail accounts and a general account that I have synced to my Mail app, but I keep getting emails sent to the non-personal e-mail because they're on the same server. How can I change that?

    The only ways I know of for email to get sent to an account are:
    1. It was addressed to that account. Someone used that email address to send you the email.
    2. It was forwarded to that account by the account to which it had been addressed. I am not aware of Mail having this feature but it is often a feature provided by your ISP that you can turn on by logging into your account via the Internet and setting it up.  I assume you have not done this, though.
    With several email addresses in the same Mail client, you have to be careful which one you are sending from. If you send from the wrong address, any replies will come back to that same address. I make this mistake all too often.

  • Iomega 2003 Storage Server AFP Shares not visible since upgrading to 10.5.6

    Iomega suggested that I post here. No AFP shares are visible since I installed the suggested 10.5.6 OSX upgrades. Nothing changed on the Iomega 2003 storage server side and it been running fine with the shares visible for over two years. What has changed in OSX? DO I need to open something up now for security purposes?? PLease advise as I am dying here!!
    Peace,
    DIGJOE

    After working with it some more...  Have figured out that the "lock" screen is a security measure from the server software.  somehow, I have it set [didn't mean to do this] to show that upon each reboot now, and I'm not sure how to disable it.  I'll get into the server manuals and have to research that. 
    It also seems that the server software sees each HD as another computer somehow...  and each partition as well.  Curious...  Anyway, once I got past the "loced" screen, the fresh install of the  server software was in effect, and the primary HD is showing both patitions. 
    All is happy...  [doing little apple happy dance]... 
    I zero'd out both of the new HD's, and am forgoing the install of the newer 10.5.6 on them.  My 10.4.11 server is just fine actually, had no problems with it until I tried to upgrade.  I suspect that the server software either wants only 10.4.11 server on everything, or somehow I must "tell " it to accept the other 10.5.6.  Not real sure how to do that, however will put  my muscles inbetween my ears in gear to think about for awhile.
    Thanks for your assistance.

  • Trouble connecting to Lion server AFP shares after changing server's hostname

    Hello everyone,
    I recently changed hostname of my Lion server box (via Server application) and now my clients are having a problem when trying to connect to its AFP shares via aliases. It takes 160 seconds of "resolving alias to <sharename>" before it finally works. Aliases were created by navigating to the server, connecting with "Connect As", providing valid credentials, then navigating one level up and dragging the share icon (blue disk with three white people outlines) to the Desktop with Option-Command.
    What is interesting, if I create a new account on a client machine, create an alias, and click on it - it works without any delay, as it was for the clients that are having problems now; so I'm assuming some details about the previous server name got cached somewhere.
    The clients with long delay problems can access the shares quickly if they click on the server in the Finder window drawer, then "Connect As" and provide their login credentials - it works instantly then.
    I've been digging around quite a bit (deleting Keychain saved Network passwords for any and all references to the server I could find), and also by looking at kerberos logs on the server. What is interesting, the newly created clients I mention above who don't have delay with connecting, don't leave any records in the kerberos log file; but the ones that have 160 second delay do - there's nothing for 160 seconds, and then there is a flurry of activity, as the connection is finally established.
    When a client who has trouble connecting uses the "Connect As" method described above, entries in the Kerberos log are created instantly when client clicks connect.
    Probably also worth noting that renaming of the server was related to me setting up Open Directory on it.
    Any pointers would be greatly apprecited.

    I experienced almost exactly the problems you described. I also found that connecting via command line using mount_afp worked right away... and once the connection is established, mounting via finder was super fast.
    Tried all kinds of craziness on the client, even a full Time Machine restore.
    Tried fixing Open Directory.
    I was absolutely stumped by what was happening, but then thought, Hmm. I'm wondering if it's related to MobileMe going down? I noticed it started to happen after July 31...
    Success! That was it! Signing out of MobileMe in System Preferences made everything work the way it should!
    CDPlayer2: check if the clients are signed in to MobileMe, and if signing out fixes things - I'd appreciate it if you could post your results. Thanks.

  • Airdisk shows as Server: afp:// How do I change this to smb://?

    Hi.
    My HFS+ formatted Seagate 2 TB hard drive shows as an afp server and not a smb server. I want to change this so I can share files and access them from my WDTV Live streaming media player. The WDTV only has the options of smb/ctif or nfs.
    How can I change this drive to present itself as a smb server and not a afp server. Currently it appears as afp://<airportname>.afpovertcp.local/2TB_NW_drive
    Where 2TB_NW_drive is the name I've called the drive.
    Thanks for any help you can provide.

    Hi William. Yes it's connected to the Airport Extreme base station.
    When I look at the 'Get Info' of the hardrive via the Mac it shows as
    "Server: afp://<airport_name>/.afpovertcp.local/2TB_NW_drive". The folders on this hdd show as folders off this drive ie. afp://<airport_name>/.afpovertcp.local/2TB_NW_drive/<folder_name.
    I'm attempting to access this drive via WiFi from my WD TV Live Streaming Media Player and I'm guessing that the WD does not see this as an SMB server so therefore ignores it. My thinking (which could be wrong) is that if this drive were to appear as smb://<airport_name>... then the WD will see it and the folders within, as an smb server. WD TV supports SMB or NFS only.
    (BTW I can access the HDD from the WD if it's directly connected to my Mac, however the Mac connects Wifi to the AEBS so there are dual Wifi paths. Connecting the HDD to the AEBS direct means there's only one path and potentially better streaming capabilities.)
    Thanks for any advice you can give.

  • Crystal Reports XI R2 Server problem when trying to load groups from LDAP

    Hi,
    I'm using Crystal Reports XI R2 SP4 on RedHat Linux. My users are being authorized through LDAP (OID). My problem is that after removing all groups (right now no groups/users are visible in CMC) in CMC Authentication tool and then trying to add them again I'm receiving following error:
    "LDAP: Failed to commit objects to server : Duplicate object name in the same folder."
    I've checked connectivity to LDAP server and it's ok. Could it be connected to CMS problems/corruption? Any help/suggestions would be appreciated.
    Regards,
    Marcin

    The only personal folders visible from under Admin panel are for users Administrator and Guest. I've tried to query CMS tables but these store entries not in plain text so I cannot identify entries connected to personal folders. I have also tried to do this via Query Repository tool but all returned entries were ok.
    I have also noticed that when trying to load group from LDAP after it returns error "LDAP: Failed to commit objects to server : Duplicate object name in the same folder." entry for this group is created in CMS table. Also this group is then visible in admin Groups panel. No users are created with the group and when I'm trying to list users belonging to added group it returns "internal secLDAP security plug-in error" but without any other suggestion what went wrong.

  • Help! Email server switched. Can't change old or add new on Blackberry

    My work email server was changed to use google apps. My problem is:
    My email address itself has not changed. I tried adding a new email account on the blackberry and it says it already exists. I tried changing the old and it tells me the info is incorrect and reverts to old info. This may be because the user name and password has changed and I cannot change the user name. It will not allow me to access that field.  Any ideas?
    I do not want to lose access to emails from the old server on my blackberry so I am afraid to delete the old account.

    I fixed it..sort of.
    Using the link below, BIS (Blackberry Internet Service)  sent an email with a link to set up the email through the web. It was a very quick and easy set-up for Google App Email. No guessing settings - it just worked. And it allowed me to have two email set-ups with the same email address..sort of. 
    There was no way to have two mail folders on the phone with the old mail & new, but by doing it this way, a new folder was set up on my phone for the new address, and all the old messages remained in the Main Message folder. I don't know if that would have happened if I deleted the old account. I read a lot of people having trouble with Google Apps setup so this is definitely the way to go:
    http://us.blackberry.com/specifications/communication/email/gmail.html

  • I share ical and changed it from view only to view

    I have changed the settings from "view only" to "view & edit" but am still unable to edit the calendar. How can I fix this?

    Try to open a new window and if that works then close the not working window.
    For future prevention see:
    * http://kb.mozillazine.org/Prevent_websites_from_disabling_new_window_features
    * http://kb.mozillazine.org/JavaScript#Advanced_JavaScript_settings

  • Discover AFP shares

    I'm looking to find the list of AFP shares within a script, and so far I can discover the systems on my network that are serving AFP shares. How can I retrieve the actual share names?
    What I have so far:
    $ dns-sd -B afpovertcp.tcp .
    Browsing for afpovertcp.tcp
    Timestamp A/R Flags if Domain Service Type Instance Name
    21:02:13.406 Add 3 6 local. afpovertcp.tcp. molokai
    21:02:13.406 Add 3 6 local. afpovertcp.tcp. kauai
    21:02:13.406 Add 2 6 local. afpovertcp.tcp. niihau
    $ dns-sd -L molokai afpovertcp.tcp .
    Lookup molokai.afpovertcp.tcp.local
    8:23:20.703 molokai.afpovertcp.tcp.local. can be reached at molokai.local.:548

    You can get the list of volumes (or "shares") on an AFP server only after you have logged in to the server. Even if the server allows guest access, you must first login as a guest.
    I don't know any command line tool which can login to AFP servers and get the list of volumes.

  • Can not change in coming mail server

    Evertime i try to check mail it say wrong incoming mail server but i can't change it cause it won't highlight?

    Hey Kittymq,
    Thanks for the question. If you are having issues sending and receiving mail, the following article outlines the best troubleshooting steps:
    OS X Mail: Troubleshooting sending and receiving email messages
    http://support.apple.com/kb/TS3276
    You can also use the Connection Doctor to troubleshoot further:
    Mail (Mountain Lion): Use Connection Doctor
    http://support.apple.com/kb/PH11796
    Thanks,
    Matt M.

  • What do I need to do to enable Active Directory users to authenticate to AFP shares in 10.8 server?

    We recently upgraded from 10.6 server to 10.8 server and are having trouble with AFP shares and Active Directory.  We have shares on each of our OS X servers that should be mountable by any Active Directory user at the site the server resides.  In 10.6, this worked beautifully.  Simply adding the appropriate AD groups with appropriate permissions to the ACL of the folder(s) being shared worked without a hitch.  In 10.8 server, this is not working.  Permissions are defined correctly (as far as I can tell), the server is bound to AD, but yet no AD user who should have access can mount the share.  When attempting to mount the share on a 10.6 client, the user gets the short and simple "You entered an invalid username or password.  Please try again."  On a 10.7 client, the window shakes. 
    What confuses me even more is that no local users can mount the share as well.  I try as our admin account, I receive the following error message on our 10.6 clients:
    Actually, as I was forumulating this post, logging in as the server administrator account is now working...???!!!
    This was the error message we were receiving on 10.7 clients before it magically started working:
    In any case, authenticating as an AD user is still no go.  Any ideas?

    I had something similar to this. In the name field put in DOMAIN\username rather than just the name.

  • Folders Not Showing in Server Admin AFP Share Point?

    Hello all,
    My problem is I can make a folder in Server Admin under AFP Share Point, But the Folder wont actually be made on the HD.
    Under Server Admin AFP Share Point it will tell me that it doesn't exist?
    So I thought I'll go to that point on the HD and make the folder then set the permissions to it... nope I can make the folder I can see it in finder and in terminal, But not in Server Admin AFP Share Point.
    I have never seen this before any help is greatly welcomed.

    Hi Kristoffer,
    I have seen an attribute for folder object which could control SharePoint folder hide or show in webdav explorer view, you can use PowerShell to output the problematic folder property, see if it the case, then use the PowerShell code to set it's property
    with blank value to make it show in explorer view,
    Use the PowerShell to get the folder object and then check the property value with this code line $folder.Properties["vti_winfileattribs"]
    #folder can be site, library level and folder level
    $folder = (Get-SPWeb http://sp).Folders["shared documents"].SubFolders["folder1"]
    #hide folder
    $folder.Properties["vti_winfileattribs"]="00000016"
    #show folder
    ####$folder.Properties["vti_winfileattribs"]=""
    $folder.Update()
    https://social.technet.microsoft.com/Forums/lync/en-US/9ceafb38-24dc-466c-b497-2cee062b81cf/explorer-view-hidden-folder-attribute?forum=sharepointgeneral
    Thanks
    Daniel Yang
    TechNet Community Support

  • File Server/AFP gets slow after a week or so

    Hi all,
    I manage a file server at our office here, with around 20-30 users, running 10.3.9 server. Users connect via AFP for general office duties, but also remote-desktop into a windows server using Rdesktop via X11. They use SMB to access their files from the windows side.
    I find after a week or so that logins to the shares, and general file access gets incredibly slow, and grinds to a halt eventually, but comes good after the server is rebooted.
    It is usually quick to authenticate in any case, but takes an age to bring up the list of shares that the users can pick from (probably 10-15 at most depending on their permissions). Even after a fresh reboot it takes about 10 seconds to bring up the list of shares to pick from. Is there any way to fix this?
    I find that is someone has their computer set to calculate folder sizes on a server drive/share it can make the server grind to a standstill, but even with everyone set up correctly it still goes slowly all by itself after a few days/weeks of running. Logging in via Remote Desktop becomes slow at this point too.
    I've tried some of the tips in this thread below with only limited success.
    http://discussions.apple.com/thread.jspa?threadID=343979&tstart=15
    Any help is greatly appreciated

    As you upgraded the router's firmware,reset the router for 30 seconds and reconfigure the router from scratch.
    On the router setup page,Under the Wireless tab,click on the Advanced Wireless Settings...Change the Beacon Interval to 75, Change the Fragmentation Threshold to 2304,Change the RTS Threshold to 2307 and Click on Save Settings...

  • Files copied from AFP share point are unwriteable by client

    This is the same issue as: http://discussions.apple.com/thread.jspa?messageID=8044984
    Has anyone found a fix yet? Basically, when copying files from an AFP server, Leopard is not having the file inherit the permissions of the parent folder. It is inheriting the permissions of the file within /Volumes.
    I am accessing an AFP share point on a server that has files that are 644 (readable by everyone, but only writable by the owner). I am not the owner. When viewing the AFP volume on my client within /Volumes/whatever the permissions appear to be 400 (unwriteable by the owner, no access to anyone else). When I copy the file over to desktop, the permissions remain as 400 when they should obviously be 600.
    What does this mean? Even though I am NOW the owner, and it is on MY desktop, I am unable to write to the file unless I chmod it. Very, very annoying and this behavior is unique to Leopard. Tiger does not mangle the permissions.
    The server is ubuntu-8.10-server running Netatalk.
    The test clients are Leopard 10.5.5 and Tiger 10.4.11
    On the server:
    $ pwd
    /srv/www
    $ ls -l
    -rw-r--r-- 1 www-data www-data 1024 2008-11-23 23:29 test.doc
    On the Leopard client:
    $ pwd
    /Volumes/www
    $ ls -l
    -r-x------@ 1 sauce staff 1024 Nov 23 23:29 test.doc
    $ cp test.doc ~/Desktop
    $ ls -l ~/Desktop/test.doc
    -r-x------@ 1 sauce staff 1024 Dec 7 00:21 /Users/sauce/Desktop/test.doc
    Message was edited by: iSauce

    I don't believe this is a problem of leopard in general. i can not reproduce this behavior with any of my afp shares. no matter how i connect (as an owner or as a guest) after I copy something to the desktop it gets standard 644 (not 600) permissions.

  • Copy from AFP share to AFP share (via VPN-Connection) - stupid?

    Hi there
    We set up an OS X server in a remote facility and are connecting to it over a VPN connection (Netgear Firewall).
    Everything works fine, there's only one annoying issue: if I want to copy a file from a mounted AFP share (share1) to another mounted AFP share (share2) - both of them residing on the same server - it seems to me that the files are being copied first to my local client and then back to the server again - instead of being copied directly from and to the server...
    Is there anything I can do about this issue or am I wrong? Is this a so called "feature" of the Finder itself?
    Thanks for any suggestions and regards
    Roman

    Thanks for your thoughts about higher vs. lower latency networking - I totally agree. It might be a quite uncommon setup; as the server is being "housed" in a datacenter with quite tough restrictions: not only do they charge us for the power consumption, but also for the traffic being generated - which is 250 GB a month. They're providing an uplink with 10mbps (guaranteed), burstable to 100mbits.
    Anyway, we're interested in keeping traffic low - hard to do if we cannot let end users do "common" tasks like moving files from one folder to another (of course, its a sharepoint - but they don't care).
    What I'm looking for? Well, I think it will take hours to find out which part of the setup (AFP implementation of the server, AFP on the local machines, either of them on a particular version, the Finder in general...) actually might be responsible for this behavior. And maybe there's a "solution" (if you agree that this is actually a problem" buried somewhere
    Regards
    Roman

Maybe you are looking for

  • MRP - schedule lines in weekly format

    Hello, we generate automatic schedule lines via MRP on a purchasing scheduling agreement. Is it possible to have the delivery date of the schedule line in a weekly format and not in a daily format? thanks

  • Controls running in evaluation mode?

    I am trying to distribute my MS Access Application that contains a couple ComponentWorks controls (cwinstr.ocx and cwanalysis.ocx). I am building the package using the Package & Deployment wizard. However, after installing the application on the appl

  • I feel so stupid asking this...

    I created a new folder within iTunes. I then dragged a couple smart playlists into that folder. But now I want to drag one of them out. But I can't...

  • Authorization issue with Dynamic Converter

    We have configured the Dynamic Converter to immediately translate documents to HTML when checked in. We have created a security group, and the Guest role has read access to that group. When we make a call from our Web App to the translated page (usin

  • LV PRoject...Novice help

    hey every1, i am new 2 this forum and 2 LV... thanx In advance for any help u can offer.. i'm a final year Mech. engg. student currently involved in project work.. My project basically involves acquiring data from a rotating machinery using a vibrati