OS X NFS not honoring group permission (again?)

I have a NFS appliance exporting an NFS share.  It has group X configured, and folders owned by that group, and se to read/write/execute by the group.
On my Mac, I have created the same group, with the same GID.  I then my user to that group (secondary group).
The Mac seems to think that my user does not belong to that group, because I get "Permission Denied" if I try to go into one of the directories in the Terminal.  The Finder also shows the folder as locked.  (Yes, I did try logging out, rebooting, etc.)
Anybody have any news about this problem?  Looking around the support forums, it does not appear to be new.  There are posts going back to 2008.
https://discussions.apple.com/message/9066836#9066836

Safe boot your computer.
Turn off computer. Hold shift key. Turn on computer. Keep holding shift. Once progress bar starts moving let go. If you can then login and use your computer it is not the OS it is some other application installed on the computer that is causing the issue.

Similar Messages

  • I have been successfully sending out e-mails to all people listed in a Group Address but yesterday only some of the people received their mail. Today I split the list, 25 in each Group Address, again, the same people did not receive their e-mail. Why?

    I have been successfully sending out e-mails each month to about 50 people whose addresses are listed under a Group Name. Yesterday about half of the e-mails were received, the other half weren't. So I tried splitting the group into 2 separate Groups, again the list who didn't receive the first mailing again did not receive the second mailing. There does not seem to be anything that connects the recipients or non-recipients. They have a mix of providers, it was not just the first half of list that was affected, it appears to be totally random.  Any suggestions?

    Neither of these error message look like they're from Exchange.
    Connected to 68.232.130.28 but connection died. (#4.4.2)
    I'm not going to try again; this message has been in the queue too long.
    Sorry, I wasn't able to establish an SMTP connection. (#4.4.1)
    I'm not going to try again; this message has been in the queue to long.
    Are those from NDRs someone in your organization received, or are they from NDRs received by a sender outside your organization?
    Is 68.232.130.28 your IP address? The IP address resolves to the name esa2.firstam.iphmx.com. Is that a MX for the recipient's domain?
    --- Rich Matheisen MCSE&I, Exchange MVP

  • Online chat quote not honored by Verizon or Verizon is trained to lie here too

    I Was quoted by Taelor in a live chat and I quote"If you were to upgrade at that 2 year discounted price this would bring your bill to $160 before tax in which I'm seeing we can add our 30% discount on both line access fees for 1 year with a 1 year contract agreement,map dating your bill to $136 before taxes.". I was told I would be getting 15 gig plan and she also said we could add 1 gig of bonus data for a total of 16 gig, the plan would also be 2 smartphones for $136.  I then had to leave tht chat session.  A few hours later I contacted the live chat again.  This time chatting with Lyndsey.  i then asked her about what Taelor had said and she also confirmed the plan and told me I could also get the s5 pro owned phone for $99 and the Galaxy note 3 pre owned $99 phone with the 1 year contract however I would have to call as she could not do sales.  Well I just got off the phone with Verizon and they would not honor one bit of that agreement even though the lady on the phone (very nice lady by the way) could read exactly what Taelor and Lyndsey both said in our chat session.  I thanked her but I'm going to most likely be moving on to sprint and get unlimited everything for my wife and I at $60 each.  My sister and her family and my brother in law and his family live in the same area and say they have great service and Internet as I know with sprint that can be a concern.  Too bad because I really like Verizon.

    I could title my experience the same! 
    I have had an S5 for about 6 months and have hated at least 23 of those weeks.  A couple of weeks ago I signed onto chat to find out my options:
    first agent, before she even answered my question as to my options, proceeded to tell me that if I changed my plan that I would save xz&y.  I stated that while that sounded good, I wanted to sort out my phone problems first.  While I was waiting for her reply, I got a text message notifying me that a change on my account had been made.  I immediately stated in the chat that I had not authorized an account change and that before they had permission to do anything I wanted to know about my phone options.  STRANGELY, the chat got cut off.   WT$%^*
    I copied the chat and initiated another session.  A new rep comes on and I paste the previous chat into the window and inform her that no change was authorized, and while the change may make sense I want to understand what options I have for getting a new device.  She apologized and then gave me my options: 1) buy a new no-contract phone at $750, 2)pay the ETF (prorated to around $250) and then either go onto a new 2 yr contract or go onto an edge contract.  I said I will go with option 2.  At which point she told me that I would have to go to the store to do the phone transaction but that she would review my plan options.  We reviewed the options and I agreed to make the changes.
    now I go into the closest VW store and after waiting for 30 minutes for service and another 30 of explaining and the rep talking with her manager, they tell me that they will not honor that.  They will allow me to pay the ETF and go to a different device but I will lose my phone number.
    So of these options is true:
    Chat Reps are not trained properly, or
    Chat Reps are intentionally misleading customers, or
    Local stores are not trained properly, or
    Local stores are refusing to follow VW agreements.
    Which ever is a problem.  My options are pay $750 or move my accounts to another carrier.  Does anyone have any other suggestions?

  • My iTunes won't open! It keeps saying 'The iTunes Library.itl is locked on a locked disk or you not have write permission for this file.' Please Help!

    My iTunes won't open! It keeps saying 'The iTunes Library.itl is locked on a locked disk or you not have write permission for this file.' Please Help!

    this may happen on external drives if:
    The external drive was hotpluged (removed) without going the correct "eject" way
    The iTunes library (database) got corrupted
    First Aid for external drive
    Close iTunes
    Unmount (eject) external drive the right way.
    Mount drive again
    Go to Workplace -> right click external drive -> choose "clean up" This will force the filesystem to rescan the file structure of the drive and rebuilding the file system table and journaling file.
    After the tool shows "done" (could last some time depending on size of drive) restart iTunes
    If your iTunes library is on your internal drive, this may happen
    The system was not shoot down correct, e.g. "pulled the plug"
    The iTunes library (database) got corrupted
    First Aid for internal hard drive
    Close iTunes
    Reboot system
    Go to Workplace -> right click external drive -> choose "clean up"
    After the tool shows "done" (could last some time depending on size of drive)
    Reboot system, restart iTunes
    If none of the above fixes your problem, post here.
    Lupunus

  • I receive the follwing error message when trying to open my ipod touch/itunes "the itunes libary.itlfile is lockedon  a lockdisk or you do not have write permission on this file. How do I resolve this problem?

    I receive the follwing error message when trying to open my ipod touch/itunes "the itunes libary.itlfile is lockedon  a lockdisk or you do not have write permission on this file. How do I resolve this problem?

    Repair iTunes Security Permissions
    Right-click on your main iTunes folder and click Properties, then go to the Securitytab and click Advanced. Use the Change Permissions... button grant to your account (or the Users group) and SYSTEM full control of this folder, subfolders and files, then tick the option to Replace permissions entries... which will repair permissions throughout the library. When complete switch to the General tab, click in the Read-only check box to clear it, then click Apply.
    If you don't have the option to change the permissions then use the Owner tab and Edit... button to take ownership from an account with administrator privileges. Tick the option to Replace owner on subcontainers and objects.
    Repeat with the media folder if it isn't stored inside the main iTunes folder.
    If you've brought over the library from another computer you may also want to remove any "mystery" identities (S<string of dashes & digts>) that have come over from the old computer...
    The images above are from Windows 7. Hopefully the system isn't too different in Windows 8.
    tt2

  • I have downloaded the most recent itunes on my new computer with windows 8        but a message pops up saying "the itunes library.itl file is locked, on a locked disk or you do not have write permission for this file. How do I fix?

    I have downloaded the most recent itunes on my new computer with windows 8 but when I attempt to get in I get this message "The itunes library.itl file is locked, ona locked disk, or you do not have write permission for this file."  How do i fix this?

    Repair iTunes Security Permissions
    Right-click on your main iTunes folder and click Properties, then go to the Securitytab and click Advanced. Use the Change Permissions... button grant to your account (or the Users group) and SYSTEM full control of this folder, subfolders and files, then tick the option to Replace permissions entries... which will repair permissions throughout the library. When complete switch to the General tab, click in the Read-only check box to clear it, then click Apply.
    If you don't have the option to change the permissions then use the Owner tab and Edit... button to take ownership from an account with administrator privileges. Tick the option to Replace owner on subcontainers and objects.
    Repeat with the media folder if it isn't stored inside the main iTunes folder.
    If you've brought over the library from another computer you may also want to remove any "mystery" identities (S<string of dashes & digts>) that have come over from the old computer...
    The images above are from Windows 7. Hopefully the system isn't too different in Windows 8.
    tt2

  • "changes to the distribution list membership cannot be saved. you do not have sufficient permission to perform this operation on this object"

    Running Exchange 2010/latest updates on Windows 2008 R2 servers.
    When I create a new DL that I want someone to manage, they received the following message when trying to add/remove from the DL:
    "changes to the distribution list membership cannot be saved.  you do not have sufficient permission to perform this operation on this object"
    I have followed everything in "http://msexchangeteam.com/archive/2009/11/18/453251.aspx" with no luck
    Any suggestions?

    Piggybacking off of the discussion above, with our deployment of Exchange 2007, we created a set of web-based tools that allowed people to create Exchange Resources including distribution lists.  To allow multiple people to manage the lists for a given
    department, we programmatically created a group, which is populated with one or more users from the "resource department".  We then set the following AD permissions to allow members of the group to manage membership of departmental distribution lists:
    Add-ADPermission -User DepartmentalGroup -AccessRights ReadProperty, WriteProperty -Properties 'Member' -DomainController dc.contoso.com
    Fast forward to Exchange 2010 and the landscape has changed with Exchange 2010's implementation of Role Based Access Control and I'm struggling to come up with a way to programmatically allow a group of users to manage distribution list membership for a
    subset of distribution lists - note that we have approximately 75 departments, with each having its own set of coordinators who should be able to manage distribution lists for their department but not lists created by other departments.  The specific
    error we receive in Outlook when attempting to modify group membership is the same as the title of this thread - "Changes to the distribution list membership cannot be saved.  You do not have sufficient permission to perform this operation on this object". 
    I implemented the settings referred to at
    http://sysadmin-talk.org/2010/06/omg-allowing-end-users-to-manage-distribution-group-membership-in-exchange-2010-2/ which details the process of creating a new management role and revoking the role's ability to create new distribution lists and remove distribution
    lists (which we want because we want those actions to be performed using our web tools). 
    All that to say that the ultimate problem we have is that the above relies on the "ManagedBy" field of a distribution list (viewable by Get-DistributionList Listname | fl *ManagedBy*) to determine group ownership.  When "ManagedBy" is set to a user,
    the user CAN edit a distribution list's membership from Outlook and OWA.  When "ManagedBy" is set to a group, members of the group are UNABLE to edit the membership of the distribution list via Outlook or Outlook Web Access/ECP.   Furthermore,
    Set-DistributionGroup does not allow you to specify a list of users to assign to the ManagedBy field.  However, if "ManagedBy" was set to a specific user and that user logs in to the Exchange Control Panel and adds additional "owners" of the distribution
    list, which I can then see from EMS - both the original owner and any additional owners added can in turn modify group membership for the list using Outlook or Outlook Web Access/ECP.
    My questions:
    1) Is it "expected" behavior that while I can assign a group to the "ManagedBy" property of distribution list, members of that group are still unable to edit the group membership?  ...or is there a fix for the behavior I'm seeing?
    2) Can multiple values be assigned to the "ManagedBy" property when using Set-DistributionList - ex: Set-DistributionList DLName -ManagedBy:user1,user2
    3) Any other suggestions?
    Thanks,
    -Lance

  • Reg:: People and Groups Permission reports in sharepoint 2013

    Hi Techys,
    We have one SharePoinr 2013 team site, The total number of users for the site is 3200 members. Now my customer requirement is, they requested a report for people and groups and its permissions along with member names by group wise.
    Example: I'm having one SharePoint 2013 team site named as "My Auditions", it contains 28 groups with different permission levels. Each group having minimum 70 users. Now we need a report for each group permission along with group members.
    Kindly help me to getdown from the customer concern.
    Many Thanks,
    Madhu

    I would suggest a tool like Metalogix ControlPoint. It can quickly produce nice looking reports for this type of information.
    Trevor Seward
    Follow or contact me at...
    This post is my own opinion and does not necessarily reflect the opinion or view of Microsoft, its employees, or other MVPs.
    Hi Trevor,
    I have decided to say very big thank for your great suggestion, I have installed the Control-point trial version in my personal Lab environment. It's working as i'm expected. But, I have to do the same task for my customer. How can i install the control-point
    in prod server without customer permission. even i'm having all uid and password as administrator.
    Could you please suggest me is there any scripting or ootb features.
    Many Thnaks,
    Madhu

  • Bug #81169 - Div bkgrnd color (of 1st div w/ content) not honored if cfdocument/pdf written to disk

    Bug for: Div background color (of 1st div w/ content) is not honored when cfdocument/pdf is written directly to disk.
    ==================
    Steps to reproduce
    ==================
    Run the following code with (and without) the cfdocument 'name' attribute.  Then compare both PDFs (the PDF written directly to browser, and the PDF written directly to disk)
    <cfdocument format="pdf" name="myPDF">
    <div style="background-color:#1a9cee;"></div>
    <div style="background-color:#1a9cee; border:2px solid #1a9cee;">I am the 1st div w/ content. Background color is only honored when PDF is written to browser. When PDF is written to disk, background color is near black.</div>
    <div style="background-color:#1a9cee; border:2px solid #1a9cee;">I am the 2nd div w/ content. Background color is always honored.</div>
    </cfdocument>
    <cfif structKeyExists(variables, "myPDF")>
      <cfpdf action="write" source="variables.myPDF" destination="#expandPath('./MyPDF.pdf')#" overwrite="yes" />
    </cfif>
    ==================
    Attachments
    ==================
    PDF written directly to disk: 20091214_Bug_81169_CFDocumentPDFDivBkgrndColorNotHonored_01.pdf
    PDF written directly to browser: 20091214_Bug_81169_CFDocumentPDFDivBkgrndColorNotHonored_02.pdf
    Thanks!,
    -Aaron Neff
    Btw, this bug is new to CF9.  This bug did not affect CF 8.0.1.

    Ok, if anyone else is experiencing this same issue, here is a workaround.  The issue is that when a cfdocument-generated PDF is written directly to disk, then the background color of the 1st non-empty block-display HTML element is ignored (unless there is an inline-display HTML element preceding it).  Instead, the background color is near-black.
    So, the workaround is to simply ensure an inline-display HTML element preceds the problematic block-display HTML element.  (a <span></span> will do the trick)
    Here was the original code.  Note that line #3 is the 1st non-empty HTML element, and that it is a div (block-display), and it has a background color.  If the PDF is written to disk, then the specified background color is ignored.  Instead, the background color is near-black.  Again, this does not occur when the PDF is written directly to browser.
    1| <cfdocument format="pdf" name="myPDF">
    2| <div style="background-color:#1a9cee;"></div>
    3| <div style="background-color:#1a9cee; border:2px solid #1a9cee;">I am the 1st non-empty block-display HTML element. Background color is only honored when PDF is written to browser. When PDF is written to disk, background color is near black (unless preceded by an inline-display HTML element).</div>
    4| <div style="background-color:#1a9cee; border:2px solid #1a9cee;">I am the 2nd div w/ content. Background color is always honored.</div>
    5| </cfdocument>
    6| <cfif structKeyExists(variables, "myPDF")>
    7|   <cfpdf action="write" source="variables.myPDF" destination="#expandPath('./MyPDF.pdf')#" overwrite="yes" />
    8| </cfif>
    Here is the 'fixed' code (note that "display:inline" has been added to line #2):
    1| <cfdocument format="pdf" name="myPDF">
    2| <div style="background-color:#1a9cee; display:inline;"></div>
    3| <div style="background-color:#1a9cee; border:2px solid #1a9cee;">I am the 1st non-empty block-display HTML element. Background color is only honored when PDF is written to browser. When PDF is written to disk, background color is near black (unless preceded by an inline-display HTML element).</div>
    4| <div style="background-color:#1a9cee; border:2px solid #1a9cee;">I am the 2nd div w/ content. Background color is always honored.</div>
    5| </cfdocument>
    6| <cfif structKeyExists(variables, "myPDF")>
    7|   <cfpdf action="write" source="variables.myPDF" destination="#expandPath('./MyPDF.pdf')#" overwrite="yes" />
    8| </cfif>
    magical

  • Enable Audit on SCOM Agent An exception was thrown while processing Submit Tasks does not have sufficient permission to perform the operation.

    Hi All,
    An exception was thrown while processing Submit Tasks Domain\"SDK Account" does not have sufficient permission to perform the operation.
    am getting this error when try to enable audit in one of Domain controllers.

    Dear Mark,
    i face similar problem before, i had resolve it be adding SDK service account to Operation Manager Administration group.
    Regards, Ibrahim Hamdy

  • Photosmart 7525 shows 7520 series missing or failed printhead + HP not honoring 1 year warranty...

    As you've gathered from the title there is two issues:
    1.  The Photosmart 7525 (alias:  CZ046A)  is no longer functions and says Missing or failed printhead.
    2.  HP's warranty check says warranty expired on Aug 31, 2013 even though it was bought Aug 6, 2013...
    Issue 1.
    I replaced colour ink cartridges and this message appeared immediately after.
    I followed HP's help guide and this did not clear the message or get printer working again.
    Details:
    The Printer's touch screen shows:
      [ !]  Missing or failed printhead
      The printhead appears to be missing, not detected, or incorrectly installed.
    Also, the HP software that came with printer gives a popup (in WinXP SP3):
      HP Photosmart 7520 series
      (X)  Missing or Failed Printhead
      Cyan/Magenta/Yellow/Black/PhotoBlack
      The printhead appears to be missing, not detected, incorrectly installed, or incompatible.
    I troubleshooted following the HP online help guide (scroll down and choose 'No Code Displays')
    http://h10025.www1.hp.com/ewfrf/wc/document?cc=ca&lc=en&docname=c01458034
    The steps I took in brief (as per HP guide above).:
    reseated cartridges, checked vents, turned on then unplugged printer for a minute, cleaned cartridge contacts, turned on then unplugged printer again, removed printheads and cleaned contacts
    The last step the guide says is replace printhead or contact HP if still in warranty.
    (as a former electronic repair person, then PC technician, now SysAdmin, I'm no stranger to following repair guides, and troubleshooting.)
    Issue 2.
    I used the provided warranty check at the bottom of the aforementioned HP guide:
    http://www.hp.com/go/warrantycheck
    The printer was purchased Aug 6th, 2013 and on Aug 8th I set up the printer and mailed the warranty card.
    On March 6th, 2014, I entered the serial number and the other Model number  CZ046A
    And HP's website indicated:  Warranty has expired  2013-08-30
    So I used the "Online warranty dispute form".
    Then next day an email from Sush "have updated the warranty of your HP Product".
    On March 7th, 2014, I did the warranty check again
    And HP's website indicated:  Warranty has expired  2013-08-31
    I replied to Sush's email, nicely explaining the problem.
    On March 8th, 2014, ATCHUTA RAO.V replied "have updated the warranty of your HP Product".
    But there was no change and HP's website still indicates:  Warranty has expired  2013-08-31
    So I used the "Online warranty dispute form" again and only received an autoreply on March 10th.
    It's now the 20th, and I still get Warranty has expired  2013-08-31
    It simply appears to me that HP is Not honoring their 1 year warranty on their product.
    (For obvious reasons I'm not putting my serial number or ServiceTicket number online)

    Hi Kashews,
    Welcome to the HP Forums, I hope you enjoy your experience! To help you get the most out of the HP Forums I would like to direct your attention to the HP Forums Guide First Time Here? Learn How to Post and More.
    I see that you have had you're share of warranty issues.  I  suggest calling HP's Technical Support to see about further options for you. If you are calling within North America, the number is 1-800-474-6836 and for all other regions, click here.
    Thank you for your time.
    Click the “Kudos Thumbs Up" at the bottom of this post to say “Thanks” for helping!
    Please click “Accept as Solution ” if you feel my post solved your issue, it will help others find the solution.
    W a t e r b o y 71
    I work on behalf of HP

  • Powershell not honoring GPO to hide drives

    Hello,
    I have a farm of terminal servers running windows 2008 r2. I have a GPO that hides and restricts access to the C drive and cmd.exe. If I use MSWord or another app and do file open, the drive is not displayed and if I type it in it says access denied. This
    all works correctly. However if I run Powershell I can change to the C drive and run any command I want, like dir and see everything. Why can powershell see restricted drives when no other app can? Anyone know a way to fix besides restrict powershell itself,
    which is an option just not a good one.
    Thanks in advance
    Life moves pretty fast. If you don't stop and look around once in a while, you could miss it.

    Hi,
    If you want tight control over which exes are able to run on the server then you should take a look at AppLocker.  You may also consider NTFS permissions.
    In general group policy works as I described.  It is trivial to create a program that does not honor the two group policy settings you mentioned.  There are other group policy settings that do potentially have a more significant system-wide
    impact that is difficult for an individual program to bypass but the ones you are referring to do not.
    Please read the explain text for the group policy settings you are using for more information.  For example, below is the text for Prevent access to drives from My Computer:
    Prevents users from using My Computer to gain access to the content of selected drives.
    If you enable this setting, users can browse the directory structure of the selected drives in My Computer or Windows Explorer, but they cannot open folders and access the contents. Also, they cannot use the Run dialog box or the Map Network Drive
    dialog box to view the directories on these drives.
    To use this setting, select a drive or combination of drives from the drop-down list. To allow access to all drive directories, disable this setting or select the "Do not restrict drives" option from the drop-down list.
    Note: The icons representing the specified drives still appear in My Computer, but if users double-click the icons, a message appears explaining that a setting prevents the action.
    Also, this setting does not prevent users from using programs to access local and network drives. And, it does not prevent them from using the Disk Management snap-in to view and change drive characteristics.
    Also, see the "Hide these specified drives in My Computer" setting.
    Thanks.
    -TP

  • Rwrun not working with permission as we moved from solaris 9 to solaris10-

    we moved our setup from solaris9 to solaris10.
    but rwrn is not executing with permission issue though permission are there.
    Do I need to copy this exec from solaris10 , if yes where can I get it

    So I finally gave up with BT and as much as I dislike Rupert Murdoch, felt I had little choice but to move to Sky after the appalling customer service from BT.
    I have one remaining problem though.
    when the engineer installed BT vision about a year ago he said we would LOSE a telephone point downstairs.
    I dont know why - is it a BT vision thing?
    This was annoying as we have to run upstairs to answer the phone before it cuts out - quite a challenge.
    At the time this seemed incredibly poor and I included it in my complaints about miss-selling of BT infinity, only to never get it actioned and told it was a "technical issue"
    The Sky engineer arrived today to install Sky, but because this phone socket was disconnected downstairs in our living room when BT vision was installed he couldnt install Sky.
    so I call BT and after the usual 15-20 minutes on hold, finally get through to be told they can't send an engineer out to put this back as I'm no longer a customer.
    My services do not officially move until the 1st of October, which I explained.
    All I'm asking is for BT to make the telephone point they made inactive active again.
    I was advised to call Sky who would then call BT wholesale to arrange an engineer.
    I have no fatih in this happening any time soon - If BT wont send an engineer out when I call why will they if Sky call them?
    Has anyone experienced this kind of craziness?
    I go on holiday soon and need an engineer out ASAP but it seems impossible to get anyone at BT to own this problem.
    I sometimes feel like I'm actually going mad when I speak to BT.  
    Is there a direct email address, or telephone number where I wont be on hold for 20 minutes?
    Any help or ideas would be much appreciated.

  • Changing group permission using java in unix

    Hi,
    I have a java application which will create files in a particular
    directory in the unix server.The application is started using
    root.When the file is created the permission it has is -rw-r-r.I need
    to change this and give group also rw.Anyone knows how to do this
    after file is created.I dont wanna run "chmod" using
    Process.getRuntime().Is there any other java api to do this.Please
    help me
    Thanks,
    Sidhartha

    luttapi wrote:
    Hey thanks.Are you sure that "FilePermission" package cannot do this?I saw some api's in that which sets permission.But i couldn't find anything for group permission.No, those just handle whatever restrictions the Java platform imposes on top of the operating system restrictions. They come into play when you're running an Applet for example, which must not have all the rights that a normal user application has (i.e. it may not read or write any files at all, even if the user running the Applet was allowed to do so).

  • Warranty Not Honored For Non-activated iPhones?

    Hello,
    Is it true that Apple will not honor warranties against manufacture defects for iPhones that have not been activated? I went back to the store where I purchased my iPhone from, and that was exactly what I was told, however, the store manager could not find where it explicitly states that under the terms and conditions for warranty. Can someone please clarify this?

    If your iPhone was purchased in the U.S., it was sold as carrier locked with at&t only. None of the iPhone functions work until the iPhone is activated with at&t, or hacked to be unlocked for use with another provider.
    Copied from the written warranty.
    +This warranty does not apply: (a) to damage caused by use with non-Apple products; (b) to damage caused by accident, abuse, misuse, flood, fire, earthquake or other external causes; (c) to damage caused by operating the product outside the permitted or intended uses described by Apple; (d) to damage caused by service (including upgrades and expansions) performed by anyone who is not a representative of Apple or an Apple Authorized Service Provider (“AASP”); *(e) to a product or part that has been modified to alter functionality or capability without the written permission of Apple;* (f) to consumable parts, such as batteries, unless damage has occurred due to a defect in materials or workmanship; (g) to cosmetic damage, including but not limited to scratches, dents and broken plastic on ports; or (h) if any Apple serial number has been removed or defaced.+
    I believe the highlighted portion for exclusions applies to a hacked/modified iPhone for use with another provider. Doing so alters the functionality or capability.
    An iPhone sold in the U.S. is designed to function as activated with at&t only.

Maybe you are looking for