Server App showing hidden users?

Hi,
I am a little familiar with 10.8 sever, have it running on a few machines, but i'm still a novice so go easy please.
I loaded up my server app today and I was greeted with this massive list of what I presume to be hidden users, not sure why they are appearing and how to turn that off? The pictures explain better what the issue is.
Many thanks in advance for any help.
Christopher

Hi Christopher,
Sometimes the solution is right in front of you but you just don't see it. It was very easy to solve:
Select the "Users" tab in the Server.app and then from the toplevel menubar select View -> Hide System Accounts
That's it!! (Must have accidentally selected it without noticing ......)
Decided to put it in this thread as well in case somobody else (or you) might stumble across this problem as well.
Jan.

Similar Messages

  • Server app v3.01 User Accounts password add/reset/editing functions greyed out

    I recently upgraded a Lion server to Mavericks with 1500 users and 450 clients on Xserve early2009 2.26Ghz Quad core Xeon 24GB RAM  32 TB Raid.
            All the upgrade went ok through 10.7 to 10.8 to 10.9 apart from having to rekerberise the realm to get users to log in from various 10.7,10.8,10.9x10) clients . I do not use Profile Manager as yet as I have had lots of faults on test networks etc so I continue to use Workgroup Manager 10.9 and Server app v3.01 now that Server Admin Tools has been discontinued.
            I have noticed however that all my users in Accounts/Server App are not editable such as password resets adding and deleting users etc. If you choose Edit User all the information shows but is greyed out for editing etc.
      I still use WorkGroup Manager for adding/editing users and changing passwords which still functions(thank goodness).
            Am I missing something in that I cant edit/add users because I upgraded from a previous directory and OS etc? Do I have to accept the server app wont edit/add users and stick with WGM? Or are there serious underlying faults with my  open directory?
             There are also lots of quirks in the File Sharing pane with users hanging on after logging out from clients and duplicates of log ins when they log in again. Today I restarted my server to update the Server app to 3.01 and i got a message saying 361 users were logged in although no users were showing in the File Sharing pane for about 12 hours! Obviously there is some problem with the termination of the log out process in AFP that doesnt take place. Since reboot this morning the memory usage has dramatically decreased so I am waiting to see if the errors return when we get a busy network situation later today.
    Anyone had tthese problems or fixed the issues?

    Just to update my post I referred to the the brilliant Krypted site to see if anything would help my situation and found this post on resetting the Server.app. I havent had time to try this yet but I'd like others to comment if they try it first:
    "Unresponsive Server After Mavericks Upgrade? Reset Server App
    The Server 3 app is great. But when you go making changes to some things, you’re just going to cause problems, sometimes something as simple as just upgrading to the latest and greatest version of Server… I know, you’ve been told that host name changes and IP changes are all kinds of OK at this point; “look, Charles, there’s a button!” Well, go ahead, click it. Don’t mind me, you might just be alright. But then again, you might not… And upgrades that use a migration wizard… Um, when it works it’s a thing of beauty. But when it doesn’t, you might be restoring some stuff from backup. But just before you do that restore, let’s try one more thing. Let’s try and rebuild some certificates and configuration settings that shouldn’t impact actual service operation. Let’s try to reset the Server app and let a fresh install of the Server see if it can fix issues.
    Now, I want to be clear, this is the last resort before restoration. I’ve had a lot of luck with services remaining functional and preserving settings when I do this, but don’t expect that. Basically, we’re going to do what we looked at doing back in ’09 with AppleSetupDone but one designed just for servers, so the file is in the same place (/var/db) and called .ServerSetupDone. To remove it, close Server app and run the following command:
    sudo rm /var/db/.ServerSetupDone
    Once removed, open the Server app again and then let the Server app run as though it’s new. Cruft, begone!"
    http://krypted.com/mac-os-x-server/unresponsive-server-after-mavericks-upgrade-r eset-server-app/

  • DR server still showing consolidation users and messages from production

    We are doing a DR exercise. My first. We copied the production database to the dr servers. Since they are on the same domain, we put entries in the host files on all our servers to spoof the prod server names to point to dr servers. Moved selected data files for essbase, etc to the dr application disks.
    Everything appears to be working except for HFM. I still see production users activity and messages in the shared services console when I go to administer, show consolidation user activity or messages.
    I have searched the registry, all database tables I could think of, and the application disks on the HFM and shared services services looking for a hardcoded IP and can not find one.
    The message below came out of the hfm config log which has the production database name (which when pinged points to the DR database serrver) but the IP listed is the production IP. Any suggestions?
    (Jul 30, 2010, 10:21:25 AM), com.hyperion.config.wizard.impl.DBWizardState$1$1, DEBUG, DB component setHost: p5wiadbs10.FNFIS.COM/10.132.205.63

    Couple more comments :
    1.) WHERE are you accessing HFM Web from? Locally on one of those servers or from another computer?
    If this were me at this point, I would break out Fiddler2 (to verify which servers web traffic is coming/going to) and then I would fire up wireshark (all network scanning) to try and figure out what server(s) are trying to talk ot production and when. Network Monitor from MS may be a good option as well as I believe you can see network traffic by PROCESS which will help you narrow down what program(s) are trying to hit production envirionment information. (http://www.microsoft.com/en-us/download/details.aspx?id=4865)
    My understanding is that HFM directly only has cluster information in the HFM database (HSX_CLUSTER_INFO, HSX_CLUTER_CONTROLLERS, HSX_CLUSTER_SERVERS, etc.) There shouldn't be any other machine specific information in HFM database, etc.
    I do know that the workspace has some redirects going on in the .CONF file; however, if there was something hardcoded, you would have found that...
    My guess is that something in the Shared Services/Foundation Services database is pointing to production as the other servers talk to that machine for config info. Otherwise, something is buried in a web config file, but you should have discovered that already.
    2.) Additionally, note that HOSTS file changes only affect DNS resolution. If there are any type of broadcast messages or WINS resolution happening that won't address it. To hardcode WINS resolution, you would update LMHOSTS file in the same folder as HOSTS. Using wireshark to monitor network traffic on the same subnet as those servers would definitely be valuable here...... Broadcast messages would be using MAC address of networkcard and not hostname, for instance.
    3.) Maybe try some simpler stuff first. What happens if you re-register the app through workspace? What about unregistering / re-registering server to shared services via configuration utility? (Though, I'd be a little bit concerned that it might unregister your real application if it is talking to production shared services...)
    Edited by: beyerch2 on Aug 30, 2012 8:51 AM

  • Server.app shows as uninstalled in App Store

    Hi there,
    I just upgraded a Mac Mini from Snow Leopard Server to Lion Server via the App Store, and as expected, it installed OS X Lion Server (aka Server.app) along with it. However, during the installation some migration failed and I then rebooted into the OS, which seems to work as expected (only use it as time machine, file and DNS server so I guess the lack of migration didn't impact me).
    However, now when I launch the App Store on the brand new Lion Server and go to "Purchased" I get OS X Lion as installed but OS X Lion Server as not installed, even though the app is there in Applications and working fine as far as I can see. When I try to install it from the "Purchased" tab, I get an error: "Server is already installed on this computer. Choose Software Update from the Apple menu to check for available updates". A Software Update gives me no Server.app updates and the "Updates" tab in the App Store is empty.
    Any ideas?
    Thanks!
    Carles

    Hi there,
    Thanks for your reply.
    superstantial wrote:
    I believe this is standard behavior for an installed Lion Server.  If you want to reinstall, I'm afraid you'll have to use the recovery partition, which doesn't like Lion Server and demands that you erase the disk prior to reinstalling.
    Please note that it is the "OS X Lion Server" item in the App Store that shows as uninstalled, not "OS X Lion" itself, which correctly displays as installed. I don't really want to reinstall although I do know I have the option wiht Cmd+R when booting, all I want is for Server.app to show as installed on my App Store given that it _is_ installed and working perfectly.
    I find it strange for this to be standard behavior as you mention, since Server.app is just another App Store item. I have the suspicion that the failed Server components migration just after install marked Server.app as "half installed" or something similar.
    Cheers.

  • I hope apple can create Cloud search , search every app show to every user.

    I hope apple can create Cloud search , search every app can be show to every user.  example:
    when 1-25 show to user1, next 25-50show to user 2 , ......  10000-10025 show to user 5000 ... every app can be show to every user , I think Cloud search is a fair to developer ,  it can search every app show to user , not only first 1000 hot app show to user , 1001-425000 apps  is cool , no any user note the 1001-425000 apps .
    I hope apple can create a Cloud search , help developer fair to show them apps .
    < Edited by Host >

    I don't know why you're telling us users,  You should be telling Apple:  http://www.apple.com/feedback/iphone.html

  • Server.app / OD users don't show up

    Hi, it worked somehow but since a couple of days I can't see my OD users in server.app
    Within the OD / Kerberos log I see:
    2011-10-20T14:47:09 AS-REQ [email protected] from 127.0.0.1:52165 for krbtgt/[email protected]
    2011-10-20T14:47:09 UNKNOWN -- [email protected]: no such entry found in hdb
    Which seems to fail.
    Looking with Worgroup manager I see one computer entry in the list:
    s1.saphirion.com$
    This one has "Name: s1.local$" and "Shortname: s1.local$"
    Taking a look with the directory service app I can see two computer systems in the list:
    s1.local$ with a bunch of name / value paris and
    s1.saphirion.com$ with no name / value pairs at all.
    I don't have a clue what's going on nor, if this is the problem nor how to fix it. I hope some OD / Kerberos gurus can help... Thanks a lot.

    I've re-installed Mountain Lion from the app store but that didn't fix the issue.  As a last resort I could try to re-install the OS from scratch, create a new admin user and migrate my personal data by hand instead of using the migration assistant but that seems extreme.
    Here's some additional information.  If I enable the root user and then log in through the GUI as root, then users I add in "Users & Groups" will show up in the user list (for all users).  But if I add the user from any other admin account the new account is not listed, not even for the root user.
    ironically,  accounts are all listed correctly for fast user switching, and if I query using dscl in a terminal window I'm ablle to see them there as well.

  • Server.app: Users button ( + / -) are disabled of a replica server

    Hi everybody,
    After upgrade the server to 10.9.5 and server app 3.2.1 version, it has been crashing during the importation of users into server app using a text file. At the beginning everything was ok with a text file where there were only one user, but when I tried to do the same thing with all users file, the progress bar was freeze and just after reopen server app the buttons + and - were disabled. We have 1 master than 5 replicas servers working with the same OS X and server app version and this particular issue is only here. There is a similar postBug: Manage +/- buttons "Users" and "Users' Groups" disabled in server.app  but this issue coming back again after the first importation (It doesn't matter if you are using a text file with 5, 20 o 100 users).
    Moreover, if I set it up as a master, everything is right so I was wondering if this new server app version cause this issue or if it is related to mavericks itself because we upgraded all servers two month ago.
    I'll appreciate every clue,
    Thanks

    This is a copy from Slapconfig.log. This start creating a replica and finish when it is destroyed. Between 21:39:39 ans 22:20:49 the server app crashed and nothing is reported with this service, after that, I destroyed the replica. The only problem that I see, is in times of each register, the real time was already 16:00 aprox. but It show 21:33 aprox, I don't now why and the others files are correct in time.
    2014-09-24 21:33:29 +0000 slapconfig -createreplica
    2014-09-24 21:33:30 +0000 1 Creating computer record for replica
    2014-09-24 21:38:38 +0000 command: /usr/sbin/slapconfig -delkeychain /LDAPv3/127.0.0.1 server_replica.domain.ca$
    2014-09-24 21:38:38 +0000 slapconfig -delkeychain
    2014-09-24 21:38:39 +0000 Added computer password to keychain
    2014-09-24 21:38:39 +0000 Adding ldap and host service principals
    2014-09-24 21:38:41 +0000 2 Creating ldap replicator user
    2014-09-24 21:38:41 +0000 _ldap_replicator exists from previous replica - migrating
    2014-09-24 21:38:41 +0000 ServerID for this replica 37
    2014-09-24 21:38:43 +0000 command: /usr/bin/sntp -s time.apple.com.
    2014-09-24 21:38:44 +0000 3 Updating local replica configuration
    2014-09-24 21:38:44 +0000 4 Gathering replication data from the master
    2014-09-24 21:38:44 +0000 5 Copying master database to new replica
    2014-09-24 21:38:44 +0000 Removed directory at path /var/db/openldap/openldap-data.
    2014-09-24 21:38:55 +0000 Starting LDAP server (slapd)
    2014-09-24 21:38:58 +0000 slapd started
    2014-09-24 21:38:58 +0000 Stopping LDAP server (slapd)
    2014-09-24 21:39:02 +0000 command: /usr/sbin/slaptest -f /etc/openldap/slapd.conf -F /etc/openldap/slapd.d
    2014-09-24 21:39:02 +0000 command: /usr/sbin/slapadd -c -w -l /var/db/openldap/openldap-data/backup.ldif
    2014-09-24 21:39:08 +0000 command: /usr/sbin/slapadd -c -w -b cn=authdata -l /var/db/openldap/authdata/authdata.ldif
    2014-09-24 21:39:09 +0000
    2014-09-24 21:39:09 +0000 542339fc slapd is running in import mode - only use if importing large data
      542339fd bdb_monitor_db_open: monitoring disabled; configure monitor database to enable
    2014-09-24 21:39:09 +0000 6 Starting new replica
    2014-09-24 21:39:09 +0000 Starting LDAP server (slapd)
    2014-09-24 21:39:09 +0000 slapd started
    2014-09-24 21:39:09 +0000 command: /usr/bin/ldapmodify -c -x -H ldapi://%2Fvar%2Frun%2Fldapi
    2014-09-24 21:39:09 +0000 command: /usr/bin/ldapsearch -x -LLL -H ldapi://%2Fvar%2Frun%2Fldapi -b cn=config -s base olcServerID
    2014-09-24 21:39:09 +0000 command: /usr/bin/ldapmodify -c -x -H ldapi://%2Fvar%2Frun%2Fldapi
    2014-09-24 21:39:09 +0000 Starting password server
    2014-09-24 21:39:15 +0000 7 Enabling local Kerberos server
    2014-09-24 21:39:15 +0000 Configuring Kerberos server, realm is servermaster.domain.CA
    2014-09-24 21:39:15 +0000 command: /usr/sbin/sso_util configure -x -k -r servermaster.domain.CA -f /LDAPv3/ldapi://%2Fvar%2Frun%2Fldapi -a diradmin -p **** -v 1 all
    2014-09-24 21:39:17 +0000 command: /usr/bin/ldapmodify -c -x -H ldapi://%2Fvar%2Frun%2Fldapi
    2014-09-24 21:39:17 +0000 Stopping LDAP server (slapd)
    2014-09-24 21:39:18 +0000 Starting LDAP server (slapd)
    2014-09-24 21:39:18 +0000 slapd started
    2014-09-24 21:39:19 +0000 8 Enabling syncprov overlay on the replica
    2014-09-24 21:39:19 +0000 command: /usr/bin/ldapsearch -x -LLL -H ldapi://%2Fvar%2Frun%2Fldapi -b cn=config objectClass=olcSyncProvConfig dn
    2014-09-24 21:39:19 +0000 command: /usr/bin/ldapmodify -c -x -H ldapi://%2Fvar%2Frun%2Fldapi
    2014-09-24 21:39:19 +0000 adding new entry "olcOverlay=syncprov,olcDatabase={1}bdb,cn=config"
    2014-09-24 21:39:19 +0000 command: /usr/bin/ldapmodify -c -x -H ldapi://%2Fvar%2Frun%2Fldapi
    2014-09-24 21:39:19 +0000 adding new entry "olcOverlay=syncprov,olcDatabase={2}bdb,cn=config"
    2014-09-24 21:39:19 +0000 9 Adding replica to master
    2014-09-24 21:39:19 +0000 Configuring multimaster for (server_replica.domain.ca) with ServerID (37)
    2014-09-24 21:39:19 +0000 Remote server (servermaster.domain.ca) ID: 1
    2014-09-24 21:39:19 +0000 command: /usr/bin/ldapsearch -x -LLL -H ldapi://%2Fvar%2Frun%2Fldapi -b dc=servermaster,dc=domain,dc=ca uid=_ldap_replicator dn
    2014-09-24 21:39:19 +0000 command: /usr/bin/ldapsearch -x -LLL -H ldapi://%2Fvar%2Frun%2Fldapi -b cn=config -s base olcServerID
    2014-09-24 21:39:19 +0000 command: /usr/bin/ldapsearch -x -LLL -H ldapi://%2Fvar%2Frun%2Fldapi -b cn=config objectClass=olcSyncProvConfig dn
    2014-09-24 21:39:20 +0000 default realm: servermaster.domain.CA
    2014-09-24 21:39:20 +0000 Configuring multimaster
    2014-09-24 21:39:20 +0000 command: /usr/bin/ldapsearch -x -LLL -H ldapi://%2Fvar%2Frun%2Fldapi -b cn=config -s base olcServerID
    2014-09-24 21:39:20 +0000 command: /usr/bin/ldapmodify -c -x -H ldapi://%2Fvar%2Frun%2Fldapi
    2014-09-24 21:39:20 +0000 modifying entry "cn=config"
      modifying entry "olcDatabase={1}bdb,cn=config"
      modifying entry "olcDatabase={1}bdb,cn=config"
      modifying entry "olcDatabase={2}bdb,cn=config"
      modifying entry "olcDatabase={2}bdb,cn=config"
    2014-09-24 21:39:20 +0000 Stopping LDAP server (slapd)
    2014-09-24 21:39:21 +0000 Starting LDAP server (slapd)
    2014-09-24 21:39:21 +0000 slapd started
    2014-09-24 21:39:21 +0000 Updating ldapreplicas on servermaster.domain.ca as diradmin
    2014-09-24 21:39:21 +0000 Updating ldapreplicas record
    2014-09-24 21:39:22 +0000 Updating ldapreplicas plist.
    2014-09-24 21:39:22 +0000 Binding to 127.0.0.1
    2014-09-24 21:39:27 +0000 command: /usr/bin/ldapadd -c -x -H ldapi://%2Fvar%2Frun%2Fldapi
    2014-09-24 21:39:33 +0000 Could not find root CA certificate in system keychain
    2014-09-24 21:39:39 +0000 IntermediateCA not configured as CA admin email not found.
    2014-09-24 21:39:39 +0000 Replica Creation successfully completed
    2014-09-24 22:20:49 +0000 slapconfig -destroyldapserver
    2014-09-24 22:20:49 +0000 Deleting Cert Authority related data
    2014-09-24 22:20:49 +0000 No intCAIdentity, not removing int CA from keychain
    2014-09-24 22:20:49 +0000 command: /bin/launchctl unload -w /System/Library/LaunchDaemons/com.apple.xscertd.plist
    2014-09-24 22:20:49 +0000 command: /bin/launchctl unload -w /System/Library/LaunchDaemons/com.apple.xscertd-helper.plist
    2014-09-24 22:20:49 +0000 command: /bin/launchctl unload -w /System/Library/LaunchDaemons/com.apple.xscertadmin.plist
    2014-09-24 22:20:49 +0000 Updating ldapreplicas on primary master
    2014-09-24 22:20:52 +0000 Removing self from the database
    2014-09-24 22:20:54 +0000 Stopping LDAP server (slapd)
    2014-09-24 22:21:24 +0000 Stopping password server
    2014-09-24 22:21:29 +0000 Removed all service principals from keytab for realm servermaster.domain.CA
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/__db.001.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/__db.002.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/__db.003.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/__db.004.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/__db.005.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/__db.006.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/altSecurityIdentities.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/apple-computers.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/apple-config-realname.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/apple-generateduid.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/apple-group-memberguid.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/apple-group-nestedgroup.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/apple-group-realname.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/apple-hwuuid.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/apple-locale-subnets.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/apple-realname.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/apple-serviceslocator.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/c.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/cn.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/DB_CONFIG.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/dn2id.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/entryCSN.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/entryUUID.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/gidNumber.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/givenName.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/id2entry.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/ipHostNumber.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/l.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/log.0000000001.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/log.0000000002.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/log.0000000003.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/log.0000000004.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/log.0000000005.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/log.0000000006.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/log.0000000007.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/log.0000000008.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/macAddress.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/mail.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/memberUid.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/objectClass.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/ou.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/postalCode.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/sn.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/st.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/street.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/telephoneNumber.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/uid.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/openldap-data/uidNumber.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/authdata/__db.001.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/authdata/__db.002.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/authdata/__db.003.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/authdata/__db.004.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/authdata/__db.005.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/authdata/__db.006.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/authdata/alock.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/authdata/authdata.ldif.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/authdata/authGUID.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/authdata/DB_CONFIG.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/authdata/dn2id.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/authdata/draft-krbPrincipalAliases.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/authdata/draft-krbPrincipalName.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/authdata/entryCSN.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/authdata/entryUUID.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/authdata/id2entry.bdb.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/authdata/log.0000000001.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/openldap/authdata/objectClass.bdb.
    2014-09-24 22:21:29 +0000 Removed directory at path /var/db/openldap/authdata.
    2014-09-24 22:21:29 +0000 Removed file at path /etc/openldap/slapd_macosxserver.conf.
    2014-09-24 22:21:29 +0000 Removed file at path /etc/openldap/slapd.conf.
    2014-09-24 22:21:29 +0000 Removed file at path /etc/openldap/rootDSE.ldif.
    2014-09-24 22:21:29 +0000 Removed file at path /var/db/dslocal/nodes/Default/groups/com.apple.access_dsproxy.plist.
    2014-09-24 22:21:29 +0000 Removed directory at path /etc/openldap/slapd.d/cn=config.
    2014-09-24 22:21:29 +0000 Removed file at path /etc/openldap/slapd.d/cn=config.ldif.
    2014-09-24 22:21:29 +0000 Removed directory at path /etc/openldap/slapd.d.
    2014-09-24 22:21:29 +0000 Removed directory at path /etc/openldap/slapd.d.backup/cn=config.
    2014-09-24 22:21:29 +0000 Removed file at path /etc/openldap/slapd.d.backup/cn=config.ldif.
    2014-09-24 22:21:29 +0000 Removed directory at path /etc/openldap/slapd.d.backup.
    2014-09-24 22:21:29 +0000 Stopping password server
    2014-09-24 22:21:29 +0000 Removed file at path /etc/ntp_opendirectory.conf.
    2014-09-24 22:21:29 +0000 Removed file at path /Library/Preferences/com.apple.openldap.plist.
    2014-09-24 22:21:29 +0000 Attempting to remove principal [email protected]
    2014-09-24 22:21:29 +0000 command: /usr/bin/kdestroy [email protected]
    2014-09-24 22:21:29 +0000 Notifying peer servermaster.domain.ca we have been destroyed

  • How to reset users and groups in Server.app?

    Recently after change settings in the Server.app (like turn off/on open directory, delete/add certificates), I got a strange problem:
    In the users and groups list, it display all local users and groups (looks like system users and groups, about 100 users and groups, but this is a new server)
    I tried reset the server.app by following
    howto reinstall/reinitialize os x server
    http://support.apple.com/kb/HT200271?viewlocale=en_US
    These users and groups still showing there.
    Have you seen this before and how can I completely reset the server.app to factory default so that I can start over the set up?

    In theory, that should restore the users.  You can do some surgery if you are really brave.  But the reinstall generally should be enough. 
    These accounts are in the DSLocal data store.  Basically, this is very similar to the any OS X machine.  Apple keeps a default copy of the Local Database here:
    /System/Library/DirectoryServices/DefaultLocalDB/Default
    Should you need to reset a machine to the default local database, you can remove the current database (/var/db/dslocal/nodes/Default) and then copy the default one to the same location.  I would not go this far unless the reinstall was unsuccessful. 
    To check, you can run this command:
    dscl . list /Users
    That will list all the Users in the local DB.   To get a count, pipe to wc
    dscl . list /Users | wc -l
    On a Server that I just jumped on, I see 79 users and 111 groups (dscl . list /Groups | wc -l)  But this is a system will man SACL groups so I likely have more than the default.
    Hope this continues to help.  Probably more info that you want. 
    Reid
    Apple Consultants Network
    Author "Mavericks Server – Foundation Services" :: Exclusively available in Apple's iBooks Store
    Author "Mavericks Server – Control and Collaboration" :: Exclusively available in Apple's iBooks Store

  • Server.app does not authenticate network admin users

    Running fresh installation of Lion Server 10.7.3. I'm logged in as the original, local, administrator.
    I open Server.app and successfully log in to the local machine with the local administrator creditials. I create a networked user allowed to administer the machine. Close Server.app window.
    Attempt to log in as the new networked administrator. I get a message about using the server's self-signed certificate. I click accept, then the log-in shakes it head, won't let network admin log-in. Repeated attempts to log in do not show the certificate warning -- the log-in fails every time, though.
    Attempt to log is as local admin, works OK.
    How to fix?

    Hi Stefan, I have the Server app problem here on my Xserve 2009 and it happened after about 14 days of working correctly. No users or groups(850 network) show in the panes other than the two local admin users on the server. The +/- buttons are greyed out also. If you enter some letters for a search in Users/Groups it will actually display the network users containing the letters and eventually it populates the window with network users up to the usual 500+ limit but refresh and they all disappear again. Thinking back before it happened I used WGM to add a new user instead of Server and it was shortly after when the users "disappeared" and the+- buttons greyed out. I dont have much confidence in Server app at the moment and im just glad WGM/SA is still in operation. I agree with Danny_Sch that Server app starts to act strangely after using WGM
           WGM acts as usual with all my 850 users showing from the OD and Server admin shows all my services running ok. All users can log in and out fortunately at the moment. This happened initially when I migrated to Lion and I had to use my OD archive demoting and promoting to master to get it to work but I dont want to have to rebuild the whole thing again as we have very limited downtime to do it in a big institution etc. I'm trawling the net looking for a fix but no definitive answer. Has anyone reported this as a bug to Apple I wonder?

  • How do I get my airport extreme to show up under hardware in my Lion server app.

    My airport extreme is not showing up in Hardware in my lion server app. How do i configure the settings on my airport extreme to work with the lion server app?

    Hi there, it's pretty easy, see this link & check back if you have any problems...
    http://email.about.com/od/macosxmailtips/qt/et_gmailosxmail.htm

  • Need help with network user accounts on Mac server App on Yosemite, any tips?

    I've been trying to set up a small network with the Server app on Yosemite. I don't want to do anything crazy with the server, I'd just like to know how I can set up network user accounts so that they can login from other Mac computers on the same network. I already have Open directory set up, the Macs that will be used on the network with the server have already been joined to the server under login options. I have created the network user account, I have also joined the user account to a group that I created. When I try to login to the network account from one of the Macs, it doesn't work. I'm pretty rookie with Mac server, can anyway give me any pointers of what I should be doing? Or if I am doing something wrong. Thanks guys.

    The most important step, once you've got Open Directory and DNS set up, with Local Network Users set up in Server.app, is to make sure that all client Macs are using the server's IP address as the primary DNS server in System Preferences > Network, and that they have joined the Network server in System Preferences > Users and Groups > Login Options.
    Having said all that, I have just spent hours setting this all up only to find out that Mail doesn't currently work with Network Homes in 10.10.3 / Server.app 4.1.
    I will be hoping that Apple recognise the bug, and put out a fix soon.

  • Server app task list not showing up!

    All of a sudden when I try connecting to my Macpro server locally using the Server app. I connect (no error msg's) but the dialog box with the setup boxes, views, task ..etc is not showing up. When I look at the view on menu bar all the features are greyed out. The only thing showing up is "hide accounts'. Working fine couple of days ago, no changes were made Any idea?

    Thanks everyone for the replies. Here is how I corrected the problem. I deleted and installed a fresh Server app, so now I was able to connect and view my profiles, Noticed in the "Alerts" window that my localhost IP has changed from the original one I used to setup the server. I normally use DHCP with manual i/p. The other night I played around with network addressing and changed to DHCP. That's when my problem started. All is good now and again thanks for quick response!

  • Server App not seeing external LDAP users & groups

    I have a clean 10.8.2 + Server install set up with our standard external LDAP directory (Novell's eDirectory in our case) configuration that is known to support Lion & Mountain Lion client LDAP authentication. With this same configuration on OS X 10.8.2 Server both Directory Utility and WGM can see all the LDAP users and groups as expected.
    When I look for the external users & groups in the LDAP domain under the Server App "Accounts" heading I cannot see any entries in either users or groups lists. Should I be able to or is this a Server App quirk?
    I can add individual LDAP users to a local group and enable access to individual services. How can I give access to services to all LDAP users without having to build & maintain a massive "All LDAP Users" local group?
    Is there a published list of required LDAP attributes for users & groups for Mountain Lion Server? I suspect there are new requirements over and above those for 10.6 server but I have failed to find a good reference. I've noticed I get different behaviours for LDAP templates that includes a mapping for GeneratedUID to one which does not for example.
    This is all so much more opaque than our superbly reliable Snow Leopard servers!
    TIA

    Ok, and again:
    You want to see Users and Groups , which are stored in an third Party directory service like OpenLDAP, in your Server.app? This is what you have to do:
    Connect the third party ldap to your server
    Have all your external LDAP entries made so you can see them in the Workgroup Manager and are able to Login with them
    When you see your LDAP-entry in the Directory Manager, change it from "From Server" to "RFC2307"
    Edit the entry, add the following mapping to it:GeneratedUUID maps to apple-generateduuid
    To your group and user entries in the external LDAP add the follwing attribute:apple-generateduuid gets the value taken from the output of "uuidgen"
    Feel lucky
    And there ist ist; now you are able to use The accounts taken from an external LDAP.

  • I am unable to update any add-ons at all. Every time I try and install an add-on or even the new "show hidden add-ons" add-on, I get a server error. How do I fix this?

    I am unable to update any add-ons at all. Every time I try and install an add-on or even the new "show hidden add-ons" add-on, I get a server error. How do I fix this?

    You may have triggered some intermittent database issues but it should be running smooth by now. Let us know if you still see server errors.
    Also, if your addons appear to go missing after updating there is a workaround http://blog.mozilla.com/addons/2011/09/28/issue-discovered-with-firefox-add-on-upgrades/ And there is a 7.0.1 fix on its way.

  • Server name change leads to Server.app not being able to add users/groups

    I changed the name of my server from vanroodewierda.rna.nl to rna.nl. I recreated my DNS setup (only used on the LAN) and everything works. I do have one problem, though: in Server.app, it is impossible to add/delete users and groups. (Yes, I can use Workgroup Manager, but this situation makes the system less robust, certainly, so it should not persist)
    changeip -checkhostname says all is well:
    $ sudo changeip -checkhostname
    Password:
    Primary address     = 192.168.2.66
    Current HostName    = rna.nl
    DNS HostName        = rna.nl
    The names match. There is nothing to change.
    dirserv:success = "success"
    system log says
    Apr  7 12:36:47 rna.nl servermgrd[5046]: servermgr_accounts: got error 5000 trying to auth to local LDAP node
    Apr  7 12:36:48 rna.nl servermgrd[5046]: flushing dns cache
    Apr  7 12:36:54 rna.nl servermgrd[5046]: servermgr_accounts: got error 5000 trying to auth to local LDAP node
    Apr  7 12:36:55 rna.nl servermgrd[5046]: --Module servermgr_devicemgr's response has retain count of 3.
    Apr  7 12:36:55 rna.nl servermgrd[5046]: --request was {
    Apr  7 12:36:55 rna.nl servermgrd[5046]: --response was {
    Apr  7 12:36:55 rna.nl servermgrd[5046]: servermgr_accounts: got error 5000 trying to auth to local LDAP node
    Apr  7 12:37:01 rna.nl servermgrd[5046]: nsc_smb XPC: handle_event error : < Connection invalid >
    Apr  7 12:37:01 rna.nl servermgrd[5046]: nsc_smb XPC: handle_event error : < Connection invalid >
    Apr  7 12:37:27 rna.nl servermgrd[5046]: nsc_smb XPC: handle_event error : < Connection invalid >
    Apr  7 12:37:48 rna.nl servermgrd[5046]: -[AccountsRequestHandler(AccountsSystemConfigurationObservation) registerForKeychainEventNotifications]: SecKeychainAddCallback() status: -25297
    Apr  7 12:37:48 rna.nl servermgrd[5046]: servermgr_accounts: got error 5000 trying to auth to local LDAP node
    Apr  7 12:38:48 rna.nl servermgrd[5046]: servermgr_accounts: got error 5000 trying to auth to local LDAP node
    Apr  7 12:41:24 rna.nl servermgrd[5046]: getting service list
    Apr  7 12:46:25 rna.nl servermgrd[5046]: No requests in 300 seconds, shutting down
    Apr  7 12:48:38 rna.nl servermgrd[148]: -[AccountsRequestHandler(AccountsOpenDirectoryHelpers) openLocalLDAPNodeIfNeeded]: dsLocalLDAP = (null), error = Error Domain=com.apple.OpenDirectory Code=2100 "Connection failed to node '/LDAPv3/127.0.0.1'" UserInfo=0x7f9fc501c950 {NSLocalizedDescription=Connection failed to node '/LDAPv3/127.0.0.1', NSLocalizedFailureReason=Connection failed to the directory server.}
    Apr  7 12:48:49 rna.nl servermgrd[148]: servermgr_accounts: noteDirectorySearchPolicyChanged (reopening nodes)
    Apr  7 12:48:50 rna.nl serveradmin[156]: --Module servermgr_devicemgr's response has retain count of 3.
    Apr  7 12:48:52 rna.nl servermgrd[148]: servermgr_accounts: got error 5000 trying to auth to local LDAP node
    Apr  7 12:48:52 rna.nl serveradmin[156]: servermgr_accounts: noteDirectorySearchPolicyChanged (reopening nodes)
    Apr  7 12:48:53 rna.nl serveradmin[156]: servermgr_accounts: got error 5000 trying to auth to local LDAP node
    Apr  7 12:49:44 rna.nl servermgrd[148]: servermgr_accounts: got error 5000 trying to auth to local LDAP node
    Apr  7 12:49:44 rna.nl servermgrd[148]: servermgr_accounts: got error 5000 trying to auth to local LDAP node
    Apr  7 12:49:44 rna.nl servermgrd[148]: getting service list
    Apr  7 12:50:44 rna.nl servermgrd[148]: servermgr_accounts: got error 5000 trying to auth to local LDAP node
    Apr  7 12:53:44 rna.nl servermgrd[148]: No requests in 300 seconds, shutting down
    Apr  7 12:56:59 rna.nl servermgrd[422]: servermgr_accounts: got error 5000 trying to auth to local LDAP node
    Apr  7 12:57:00 rna.nl servermgrd[422]: flushing dns cache
    Apr  7 12:57:03 rna.nl servermgrd[422]: servermgr_accounts: got error 5000 trying to auth to local LDAP node
    Apr  7 12:57:04 rna.nl servermgrd[422]: --Module servermgr_devicemgr's response has retain count of 3.
    Apr  7 12:57:04 rna.nl servermgrd[422]: --request was {
    Apr  7 12:57:04 rna.nl servermgrd[422]: --response was {
    Apr  7 12:57:04 rna.nl servermgrd[422]: servermgr_accounts: got error 5000 trying to auth to local LDAP node
    Apr  7 12:57:08 rna.nl servermgrd[422]: nsc_smb XPC: handle_event error : < Connection invalid >
    Apr  7 12:57:59 rna.nl servermgrd[422]: -[AccountsRequestHandler(AccountsSystemConfigurationObservation) registerForKeychainEventNotifications]: SecKeychainAddCallback() status: -25297
    Apr  7 12:58:00 rna.nl servermgrd[422]: servermgr_accounts: got error 5000 trying to auth to local LDAP node
    Apr  7 12:58:59 rna.nl servermgrd[422]: servermgr_accounts: got error 5000 trying to auth to local LDAP node
    In All messages, I see that the name VANROODEWIERDA.RNA.NL is still used (note: vanroodewierda.rna.nl is an alias in DNS for rna.nl)
    4/7/13 1:07:55.037 PM kdc[73]: AS-REQ [email protected] from 192.168.2.86:56402 for krbtgt/[email protected]
    4/7/13 1:07:55.046 PM kdc[73]: AS-REQ [email protected] from 192.168.2.86:56402 for krbtgt/[email protected]
    4/7/13 1:07:55.048 PM kdc[73]: Client sent patypes: REQ-ENC-PA-REP
    4/7/13 1:07:55.048 PM kdc[73]: Need to use PA-ENC-TIMESTAMP/PA-PK-AS-REQ
    4/7/13 1:07:55.072 PM kdc[73]: AS-REQ [email protected] from 192.168.2.86:56901 for krbtgt/[email protected]
    4/7/13 1:07:55.081 PM kdc[73]: AS-REQ [email protected] from 192.168.2.86:56901 for krbtgt/[email protected]
    4/7/13 1:07:55.082 PM kdc[73]: Client sent patypes: ENC-TS, REQ-ENC-PA-REP
    4/7/13 1:07:55.083 PM kdc[73]: ENC-TS pre-authentication succeeded -- [email protected]
    4/7/13 1:07:55.083 PM kdc[73]: Client supported enctypes: aes256-cts-hmac-sha1-96, aes128-cts-hmac-sha1-96, des3-cbc-sha1, arcfour-hmac-md5, using aes256-cts-hmac-sha1-96/aes256-cts-hmac-sha1-96
    4/7/13 1:07:55.083 PM kdc[73]: Requested flags: forwardable
    There is one stupid thing I might have done myself that caused this. In WGM in my Machines directory there was a machine called vanroodewierda.rna.nl$, I removed that and replaced it with the same MAC address and the name rna.nl$. Might the following have to do with that?
    4/7/13 2:03:57.457 PM kdc[73]: Server not found in database: ldap/[email protected]: no such entry found in hdb
    4/7/13 2:03:57.457 PM kdc[73]: Failed building TGS-REP to 127.0.0.1:50170
    4/7/13 2:03:57.458 PM opendirectoryd[31]: GSSAPI Error:  Miscellaneous failure (see text (Server (ldap/[email protected]) unknown while looking up 'ldap/[email protected]' (cached result, timeout in 1200 sec))
    What must I do to correct this? It feels like something should change in the Keychain and/or in Kerberos, but what and how?
    Thanks,

    @John & MrHoffMan,
    thanks for replying.
    - I know about the split-horizon DNS, it is by design so that, say, mail.rna.nl on the LAN resolves to the same machine as on the WAN and people can take their laptops anywhere and mail 'just works'.
    I tried this in Server.app (last night also). I now changed from rna.nl to rna.nl to vanroodewierda.rna.nl and back to rna.nl. (I did this because a change to the same might be ignored by some services and I wanted to force them). In the system log I notice (esp. the first 4 lines):
    Apr  7 18:28:21 rna.nl changeip_certs[5029]: found identity for vanroodewierda.rna.nl in keychain
    Apr  7 18:28:21 rna.nl changeip_certs[5029]: certificate for vanroodewierda.rna.nl is not self-signed
    Apr  7 18:28:21 rna.nl changeip_certs[5029]: no self-signed identity for the previous hostname 'vanroodewierda.rna.nl' found in keychain
    Apr  7 18:28:21 rna.nl changeip_certs[5029]: not generating a self-signed certificate for new hostname 'rna.nl'
    Apr  7 18:28:21 rna.nl serveradmin[5034]: servermgr_jabber[N]: Processing changeip request.
    Apr  7 18:28:22 rna.nl changeip_mail.py[5035]: Mail Service change IP: old hostname: "vanroodewierda.rna.nl (192.168.2.66)" to: new hostname: "rna.nl (192.168.2.66)"
    Apr  7 18:28:22 rna.nl changeip_mail.py[5035]: Mail Service new host/domain/IP settings:
                        mail:postfix:submit_cred:rna.nl:username = "submit"
                        mail:postfix:submit_cred:rna.nl:password = "8OOkDnAXKi8bHYHwft1mWs"
                        mail:postfix:mydomain = "rna.nl"
                        mail:imap:postmaster_address = "[email protected]"
                        mail:postfix:submit_cred:nl:username = "submit"
                        mail:postfix:submit_cred:nl:password = "8OOkDnAXKi8bHYHwft1mWs"
                        mail:postfix:add_whitelist_host = "rna.nl"
                        mail:postfix:add_whitelist_domain = "nl"
    Apr  7 18:28:22 rna.nl com.apple.SecurityServer[22]: Succeeded authorizing right 'system.privilege.admin' by client '/Applications/Server.app/Contents/ServerRoot/usr/libexec/ServerEventAgent' [147] for authorization created by '/Applications/Server.app/Contents/ServerRoot/usr/libexec/ServerEventAgent' [147] (2,0)
    Apr  7 18:28:22 rna.nl com.apple.SecurityServer[22]: Succeeded authorizing right 'system.privilege.admin' by client '/Library/PrivilegedHelperTools/com.apple.serverd' [89] for authorization created by '/Applications/Server.app/Contents/ServerRoot/usr/libexec/ServerEventAgent' [147] (100000,0)
    Apr  7 18:28:22 rna.nl serveradmin[5034]: servermgr_jabber[I]: Proxy65 config file successfully created.
    Apr  7 18:28:22 rna.nl kdc[73]: AS-REQ [email protected] from 127.0.0.1:64299 for krbtgt/[email protected]
    Apr  7 18:28:22 --- last message repeated 1 time ---
    Apr  7 18:28:22 rna.nl kdc[73]: Client sent patypes: REQ-ENC-PA-REP
    Apr  7 18:28:22 rna.nl kdc[73]: Need to use PA-ENC-TIMESTAMP/PA-PK-AS-REQ
    Apr  7 18:28:22 rna.nl kdc[73]: AS-REQ [email protected] from 127.0.0.1:52730 for krbtgt/[email protected]
    Apr  7 18:28:22 --- last message repeated 1 time ---
    Apr  7 18:28:22 rna.nl kdc[73]: Client sent patypes: ENC-TS, REQ-ENC-PA-REP
    Apr  7 18:28:22 rna.nl kdc[73]: Need to use PA-ENC-TIMESTAMP/PA-PK-AS-REQ
    Apr  7 18:28:23 rna.nl servermgrd[1402]: servermgr_accounts: got error 5000 trying to auth to local LDAP node
    Problem remains, but I wonder: can I remove the identities in Keychain that may be messing things up? And if so, which ones? Some are even duplicated in System and login key chain.
    (never mind the weird whitelist domains Server creates, I'm managing that by hand anyway)

Maybe you are looking for

  • HT4436 Can I use one iCloud account for multiple apple ID's - ie, all of those that are part of our family sharing?

    There are five members of my family and we each have multiple devices, it seems.  I want to know if we can set up one iCloud account where we can store all of our iTunes downloads (movies, TVshows, & music) from more than one account.

  • Import tax account with g/l

    i have created tax code import with condition type jmo1 and jec1 with 0% for both the condition, but i dont want want to assigned G/L account for both the condition type. how should i go about. regard nabil

  • Programmatically Change Array to Cluster Size

    Hello, I have a Chart with several values scrolling across it. The number of values is variable. To prepare the data for the Chart, I use the Array to Cluster element. Is there a way I can programmatically change the size of the cluster output? Thank

  • How to get IAttributeStrand for each Cell in Table

    Hello All, I am trying to set the font and size depending upon the user inputs under each cell in the table. For Text frame I am able to achieve this by using ITextModel->QueryStrand(). But for Table I am not able to find any function which can allow

  • Web Services (in JDeveloper)

    Hi I have been trying to expose a method returning XMLDocument type as a web service in JDeveloper. This does not work. Rather it says that Element type should be returned and not XMLDocument type. However, after changing the return type, test class