Synchronize user accounts

Hi!
I am now in Solaris cluster.
I am running two Solaris machines clustered with Veritas. I would like to ask how to synchronize user accounts between these two Solaris machines? Is it possible to done this by share the passwd, group and shadow in the shared storage (A1000)?
Thanks you all in advance.
Alan

Hi Alan,
it is psossible, but you will have no possibility to login to your machine if you loose the connection to your shared storage.
Yout should use NIS or somthing like that to share your user,groups and passwd between the cluster nodes.
Thorsten

Similar Messages

  • Synchronizing multiple user accounts on the same computer

    We bought a .mac family pack. Synchronizing 3 computers works great. But we cannot synchronize our 5 family member's multiple user accounts on the brand new iMac G5. Can it be true that synchronizing does not work between different user accounts on the same computer? To be able to do this was the prime motivator to buy a .mac family pack. Please someone tell us that we are doing something wrong!?
    Cheers, Leo
    PowerBook G4   Mac OS X (10.4.3)   iMacG5 and G3

    Leo,
    I seem to be having better luck with what I think you are trying to do. Let me describe my situation.
    I have accounts for my wife and I and each of our children on each of our several Macs.
    For my wife's accounts (on each of the Macs) and my account (on each of the Macs) I enabled syncing via the preference pane. I did not sync the mail accounts (she has different e-mail accounts) but we did sync the addresses, bookmarks and such. We did not sync the calendars since we each "subscribe" to each others calendar.
    On each machine and across the machines our "sync'd" information appears properly synchronized.
    Now, here is one difference, I do NOT have a family pack. I only have my single .Mac account and I use that one account as the .Mac account for my wife and I. Now that I think about it, that would seem to be the big difference.
    Might I suggest that you go into your wife's account and change her .Mac information to be YOUR information and see if it synchorizes.
    Regards,
    Tom

  • New Macbook Air setup problem with deleting user account

    I recently changed from a MBP to a MBA and upon completing my migration data from old mac to new one I had an extra user account. So I have my admin account and a guest account and a third account that I don't want. Upon trying to delete this account it show "deleting user account and home folder" but it has been doing this for more than an hour therefore it will not let me exit system preferences. Any help on this?

    I'm not sure I understand what you mean by "need configuration data ... " However, if both computers are on your network then you should be able to synchronize various files or folders using backup software. However, to start you will need to enable File Sharing on one of the computers.
    For help with this select Mac Help from the Finder's Help menu. Search for "file sharing." You should find several links on how to configure it on your computer. Also see Mac 101- File sharing and Tutorial- File sharing in OS X - MacFixIt.
    Once file sharing is set up you can then try a backup utility to do the synching. Most backup utilities not only do backups but can also be configured to synchronize files and/or folders. Here are some possibilities:
    Backup Software Recommendations
    1. Synchronize! Pro X (Commercial)
    2. Synk (Backup, Standard, or Pro)
    3. Deja Vu (Shareware)
    4. Carbon Copy Cloner (Donationware)
    5. Data Backup (Commercial)
    6. SilverKeeper 2.0 (Freeware)
    7. Tri-Backup (Commercial)
    8. SyncTwoFolders (Freeware)
    9, Data Lore (Commercial - exclusively for network file transfers over Bonjour.)
    Others may be found at VersionTracker or MacUpdate.
    Visit The XLab FAQs and read the FAQ on backup and restore. Also read How to Back Up and Restore Your Files.
    Hope this helps get you started.

  • Various process crashes prevent login to main user account

    Here's a good one. I can't log in to my main user account; here's the recap:
    Computer was acting slow and pausing a lot over past couple of weeks; I put it down to internet slowness at first, but after awhile I began closing down less-critical processes like .mac synchronization, mySQL, etc. Can't recall running any new installs recently, or updates, except perhaps Firefox.
    Checked the logs, saw that my old pal mdimport was crashing repeatedly, like every 15 seconds or so. That will slow things down! So I turned off the Spotlight indexing for all categories, and eventually made the hard disk a private item. mdimport still crashing.
    Ran permissions repair; some problems fixed, nothing too alarming in the logs (I think). Verified the hard disk; no problems found.
    At some point the main account became unable to log me in. The login window accepts a password and disappears, but after a little while a blue screen appears, and the login window returns. I am able to log in using a secondary more-or-less virgin account on this machine, which seems to work fine.
    Console logs reveal the constantly crashing mdimport, triggered anytime I attempt to log in using the main account. Secondarily, the loginwindow process is crashing on login (main account only) and crashdump itself is consistently crashing just afterwards. Occasionally another process called lsregister will crash at the login attempt, sometimes other processes too. More worryingly, there are reported IO errors from the kernel.
    I've reset the pram, I've reset the nvram. I've booted from a 10.5 system disk and re-run disk utility for permissions and repair disk. I tried safe mode.
    I've attempted to rsync my main user account to another computer while booted to target disk mode; rsync (running on the remote machine to which I'm copying the files) copies the many gigabytes in my Documents folder, but chokes consistently at some files in my Library ("former iDisk.dmg", App Support/firefox/profiles/etc, also some Growl files) with "Input/output error (5)."
    Anyone have any good theories? Many thanks in advance.
    --David H

    Thanks for your reply; I checked out the links but nothing seems too directly related. I'm vaguely aware of what mdimport does, but I certainly have seen it crash a lot.
    At this point, I'm finally able to log back in to my main account, which (with some caveats/questions below) seems to be working.
    To get back to this point, I used the terminal utility Applejack to clear caches, check plists for corruption, and clear virtual memory. I also manually deleted a loginwindow plist and some Library/Caches/com.apple.LaunchServices/ files. Something in there seemed to help, and I'm finally back in to the main user account. There was definitely no getting into this account before I tried these steps.
    Applejack is found at http://applejack.sourceforge.net/.
    I still have some troubling log entries, and some blips in several files. While subsequently backing up my user account, rsync consistently tripped on several files in /Library/Application Support relating to Firefox and Growl, in /Library/iCal, and also a couple of image files (out of tens of thousands) in my Pictures folder. So I deleted these files; the only concern so far is the iCal file which was called "corestorage.ics." And now that I've started iCal, it looks like I still have data; but my console log shows about 70 lines of "Calendaring data empty." Ugh. Nothing like losing data but not knowing what was lost.
    Also troubling in the system log: I have several entries of "kernel[0]: disk0s3: I/O error" (though not in the latest reboot cycle). Hard to tell if these belong in the same category as the many cryptic and possibly alarming messages seen there, or if this is a real warning of a failing hard disk, or of other corrupt files the system is running into. Again, disk utility has repeatedly found no problems.
    (Also I have several hundred entries of "/System/Library/Frameworks/CoreServices.framework/Versions/A/Frameworks/Metada ta.framework/Versions/A/Support/mdimportserver: _TIFFVSetField: tiff data provider: Invalid tag "Copyright" (not supported by codec)", which I hope relate to mdimport seeing many jpg images that have copyright metadata. I'm hoping that problem will go away now that they're marked "private" as far as Spotlight is concerned.)
    At least I'm back in the account. I'm trying to decide whether to archive & install system 10.5; I'd prefer to reformat a misbehaving disk, but then you gotta have pretty serious confidence in your backups. Alternatively if the rumors are true I'm hanging on for one of the new laptops; I'd prefer that to replacing the hard drive again in this diabolical case. (Price you pay for sleek, I guess.)
    Time will tell.

  • A conflicting local user account as indicated was found on the identified nodes Oracle 12c GRID runclufy check

    Dear Team,
    Oracle 12c GRID Runclufy check failing with below error. Even After Changing Local Built in Administrator User Name also same failure reporting. Kindly help to resolve this Issue and Provide steps to Avoid this conflict.
    Windows user account consistency check across nodes - Checks consistency of Windows user account across nodes  Error:
    PRVG-11818 : Windows user "MDCCOMMONLDAP\Administrator" is a domain user but a conflicting local user account was found on nodes "sep03vvm-401,sep03vvm-402"  -
    Cause:  A conflicting local user account as indicated was found on the identified nodes.  - Action:  Ensure that the Windows user account used for Oracle installation and configuration is defined as a domain user on all nodes or as a local user on all nodes, but not a mixture of the two.
    Check Failed on Nodes: [sep03vvm-402,  sep03vvm-401]
    c:\Oracle12c_software\Oracle12c_grid\grid>runcluvfy.bat stage -pre crsinst -verbose -n SEP03VVM-401,SEP03VVM-402
    Performing pre-checks for cluster services setup
    Checking node reachability...
    Check: Node reachability from node "sep03vvm-401"
      Destination Node                      Reachable?
      sep03vvm-401                          yes
      sep03vvm-402                          yes
    Result: Node reachability check passed from node "sep03vvm-401"
    Checking user equivalence...
    Check: User equivalence for user "Administrator"
      Node Name                             Status
      sep03vvm-402                          passed
      sep03vvm-401                          passed
    Result: User equivalence check passed for user "Administrator"
    Checking node connectivity...
    Interface information for node "sep03vvm-402"
    Name   IP Address      Subnet          Gateway         Def. Gateway    HW Addre
    ss        MTU
    PublicLAN 153.71.45.202   153.71.45.0     On-link         153.71.45.254   00:50
    :56:91:05:30 1500
    PrivateLAN 10.10.10.15     10.10.10.0      On-link         153.71.45.254   00:5
    0:56:91:75:1B 1500
    6TO4 Adapter 2002:9947:2dca::9947:2dca 2002::
            00:00:00:00:00:00 1280
    Interface information for node "sep03vvm-401"
    Name   IP Address      Subnet          Gateway         Def. Gateway    HW Addre
    ss        MTU
    PublicLAN 153.71.45.201   153.71.45.0     On-link         153.71.45.254   00:50
    :56:91:56:B6 1500
    PrivateLAN 10.10.10.14     10.10.10.0      On-link         153.71.45.254   00:5
    0:56:91:60:99 1500
    6TO4 Adapter 2002:9947:2dc9::9947:2dc9 2002::
            00:00:00:00:00:00 1280
    Check: Node connectivity of subnet "153.71.45.0"
      Source                          Destination                     Connected?
      sep03vvm-402[153.71.45.202]     sep03vvm-401[153.71.45.201]     yes
    Result: Node connectivity passed for subnet "153.71.45.0" with node(s) sep03vvm-
    402,sep03vvm-401
    Check: TCP connectivity of subnet "153.71.45.0"
      Source                          Destination                     Connected?
      sep03vvm-402 : 153.71.45.202    sep03vvm-402 : 153.71.45.202    passed
      sep03vvm-401 : 153.71.45.201    sep03vvm-402 : 153.71.45.202    passed
      sep03vvm-402 : 153.71.45.202    sep03vvm-401 : 153.71.45.201    passed
      sep03vvm-401 : 153.71.45.201    sep03vvm-401 : 153.71.45.201    passed
    Result: TCP connectivity check passed for subnet "153.71.45.0"
    Check: Node connectivity of subnet "10.10.10.0"
      Source                          Destination                     Connected?
      sep03vvm-402[10.10.10.15]       sep03vvm-401[10.10.10.14]       yes
    Result: Node connectivity passed for subnet "10.10.10.0" with node(s) sep03vvm-4
    02,sep03vvm-401
    Check: TCP connectivity of subnet "10.10.10.0"
      Source                          Destination                     Connected?
      sep03vvm-402 : 10.10.10.15      sep03vvm-402 : 10.10.10.15      passed
      sep03vvm-401 : 10.10.10.14      sep03vvm-402 : 10.10.10.15      passed
      sep03vvm-402 : 10.10.10.15      sep03vvm-401 : 10.10.10.14      passed
      sep03vvm-401 : 10.10.10.14      sep03vvm-401 : 10.10.10.14      passed
    Result: TCP connectivity check passed for subnet "10.10.10.0"
    Check: Node connectivity of subnet "2002::"
      Source                          Destination                     Connected?
      sep03vvm-402[2002:9947:2dca::9947:2dca]  sep03vvm-401[2002:9947:2dc9::9947:2dc
    9]  yes
    Result: Node connectivity passed for subnet "2002::" with node(s) sep03vvm-402,s
    ep03vvm-401
    Check: TCP connectivity of subnet "2002::"
      Source                          Destination                     Connected?
      sep03vvm-402 : 2002:9947:2dca::9947:2dca  sep03vvm-402 : 2002:9947:2dca::9947:
    2dca  passed
      sep03vvm-401 : 2002:9947:2dc9::9947:2dc9  sep03vvm-402 : 2002:9947:2dca::9947:
    2dca  passed
      sep03vvm-402 : 2002:9947:2dca::9947:2dca  sep03vvm-401 : 2002:9947:2dc9::9947:
    2dc9  passed
      sep03vvm-401 : 2002:9947:2dc9::9947:2dc9  sep03vvm-401 : 2002:9947:2dc9::9947:
    2dc9  passed
    Result: TCP connectivity check passed for subnet "2002::"
    Interfaces found on subnet "153.71.45.0" that are likely candidates for VIP are:
    sep03vvm-402 PublicLAN:153.71.45.202
    sep03vvm-401 PublicLAN:153.71.45.201
    Interfaces found on subnet "2002::" that are likely candidates for VIP are:
    sep03vvm-402 6TO4 Adapter:2002:9947:2dca::9947:2dca
    sep03vvm-401 6TO4 Adapter:2002:9947:2dc9::9947:2dc9
    Interfaces found on subnet "10.10.10.0" that are likely candidates for a private
    interconnect are:
    sep03vvm-402 PrivateLAN:10.10.10.15
    sep03vvm-401 PrivateLAN:10.10.10.14
    Checking subnet mask consistency...
    Subnet mask consistency check passed for subnet "153.71.45.0".
    Subnet mask consistency check passed for subnet "10.10.10.0".
    Subnet mask consistency check passed for subnet "2002::".
    Subnet mask consistency check passed.
    Result: Node connectivity check passed
    Checking multicast communication...
    Checking subnet "153.71.45.0" for multicast communication with multicast group "
    224.0.0.251"...
    Check of subnet "153.71.45.0" for multicast communication with multicast group "
    224.0.0.251" passed.
    Check of multicast communication passed.
    Checking the status of Windows firewall
      Node Name     Enabled?                  Comment
      sep03vvm-402  no                        passed
      sep03vvm-401  no                        passed
    Result: Windows firewall verification check passed
    Check: Total memory
      Node Name     Available                 Required                  Status
      sep03vvm-402  4.9996GB (5242420.0KB)    4GB (4194304.0KB)         passed
      sep03vvm-401  4.9996GB (5242420.0KB)    4GB (4194304.0KB)         passed
    Result: Total memory check passed
    Check: Available memory
      Node Name     Available                 Required                  Status
      sep03vvm-402  3.6612GB (3839028.0KB)    50MB (51200.0KB)          passed
      sep03vvm-401  3.3152GB (3476244.0KB)    50MB (51200.0KB)          passed
    Result: Available memory check passed
    Check: Swap space
      Node Name     Available                 Required                  Status
      sep03vvm-402  5.8121GB (6094388.0KB)    4.9996GB (5242420.0KB)    passed
      sep03vvm-401  5.8121GB (6094388.0KB)    4.9996GB (5242420.0KB)    passed
    Result: Swap space check passed
    Check: Free disk space for "sep03vvm-402:C:\Windows\temp"
      Path              Node Name     Mount point   Available     Required      Stat
    us
      C:\Windows\temp   sep03vvm-402  C             82.6484GB     1GB           pass
    ed
    Result: Free disk space check passed for "sep03vvm-402:C:\Windows\temp"
    Check: Free disk space for "sep03vvm-401:C:\Windows\temp"
      Path              Node Name     Mount point   Available     Required      Stat
    us
      C:\Windows\temp   sep03vvm-401  C             82.6112GB     1GB           pass
    ed
    Result: Free disk space check passed for "sep03vvm-401:C:\Windows\temp"
    Check: System architecture
      Node Name     Available                 Required                  Status
      sep03vvm-402  64-bit                    64-bit                    passed
      sep03vvm-401  64-bit                    64-bit                    passed
    Result: System architecture check passed
    Checking length of value of environment variable "PATH"
    Check: Length of value of environment variable "PATH"
      Node Name         Set?          Maximum Length  Actual Length  Comment
      sep03vvm-402      yes           5119          100           passed
      sep03vvm-401      yes           5119          129           passed
    Result: Check for length of value of environment variable "PATH" passed.
    Checking availability of ports "6200,6100" required for component "Oracle Notifi
    cation Service (ONS)"
      Node Name         Port Number   Protocol      Available     Status
      sep03vvm-402      6200          TCP           yes           successful
      sep03vvm-401      6200          TCP           yes           successful
      sep03vvm-402      6100          TCP           yes           successful
      sep03vvm-401      6100          TCP           yes           successful
    Result: Port availability check passed for ports "6200,6100"
    Starting Clock synchronization checks using Network Time Protocol(NTP)...
    Checking daemon liveness...
    Check: Liveness for "W32Time"
      Node Name                             Running?
      sep03vvm-402                          yes
      sep03vvm-401                          yes
    Result: Liveness check passed for "W32Time"
    Check for NTP daemon or service alive passed on all nodes
    Result: Clock synchronization check using Network Time Protocol(NTP) passed
    Checking if current user is a domain user...
    Check: If user "Administrator" is a domain user
    Result: User "MDCCOMMONLDAP\Administrator" is a part of the domain "MDCCOMMONLDA
    P"
    Check: Time zone consistency
    Result: Time zone consistency check passed
    Checking for status of Automount feature
      Node Name     Enabled?                  Comment
      sep03vvm-402  yes                       passed
      sep03vvm-401  yes                       passed
    Result: Check for status of Automount feature passed
    Checking consistency of current Windows user account across all nodes
    PRVG-11818 : Windows user "MDCCOMMONLDAP\Administrator" is a domain user but a c
    conflicting local user account was found on nodes "sep03vvm-402"
    Result: Check for Windows user account "MDCCOMMONLDAP\Administrator" consistency
    failed
    Pre-check for cluster services setup was unsuccessful.
    Checks did not pass for the following node(s):
            sep03vvm-402

    SEVERE: [FATAL] [INS-30131] Initial setup required for the execution of installer validations failed.
       CAUSE: Failed to access the temporary location.
       ACTION: Ensure that the current user has required permissions to access the temporary location.
    Are you using a supported OS version (listed in the Install Doc) and following all of the steps in the Install Doc ?
    HTH
    Srini

  • HotSynch issues: can't change any settings in User Accounts, can't rename or delete, can't sync!

    Hello,  I am running Windows XP Pro Version 5.1.2600.  My wife and I both have Palm Treo 700p smartphones running Palm OS 5.2H. 
    Her phone has been having continual issues with some third-party software.  Each time we would attempt to sync her phone after installation we would get the same error message:
    HotSync Exchange synchronization failed
    HotSync Error: Unknown error. (FE00)
    We have tried to contact the software developer for the third-party application with no luck.  They simply insist that there is nothing wrong with their software. Mind you, the phone would always sync with no issues before we installed the third-party software, but that's neither here nor there.  Point being her phone would not sync no matter what I tried.
    I searched the troubleshooting articles for HotSync issues and found that the only solution that might help would be to update our Palm Desktop from version 4.2 to  6.2.  After installing the new Palm Desktop I was able to sync my 700p.  However, when I attempted to sync my wife's 700p it still did not work.  When I tried to access the HotSync log on the desktop it would only show the log for my phone.  Her name would show up in the list of users, but once I tried to select it my name would appear in the window.  When I attempt to open the "User Accounts" window in the HotSync Manager the application freezes and I must shut it down.  I am unable to delete or rename the User accounts.  
    Now we are stuck not being able to sync her phone and not being able to fix the issue.  She has a lot of files on her phone which she spent a lot of time working on, hundreds of hours, to get them where she needs them.  Our concern is that in the process of fixing the HotSync issue she'll lose her work.  We need a solution.  Any assistance you can offer would be greatly appreciated.
    Thanks,
    Sam
    Post relates to: Treo 700p (Verizon)
    Post relates to: Treo 700p (Verizon)

    Versamail is a email application on the device. As for the backup folder you may have renamed it follow these steps (You may not need to hard reset the device. You can skip that part)
    To fix this what we need to do is hard reset your device. The instructions to do that is here http://kb.palm.com/wps/portal/kb/common/article/887_en.html this tells you how to do all types of resets. Also, what we need to do is rename your backup folder. What this folder is, it hold all your programs from the last time you synced your PC. On your computer go here
    Palm Desktop 4.2 and below
    My Computer--> C drive --> Program files --> Palm/PalmOne--> your hotsync username
    Palm Desktop 6.2.2
    My Documents/Documents --> Palm OS Desktop --> your hotsync username
    Right click on your backup folder and rename it to "backupOld". Resync your device to the same user name and you will get all your contacts, calendar, tasks, and memos.
    You can install the programs again but make sure they are compatible with the device. Also try one program again and wait 24 hours to see if the same thing happens again. This way you know what program is causing the issue.

  • Best way to manage media (photos/music/videos) across user accounts in Lion?

    Yesterday I clean installed Lion. I copied only that what I need from my TimeMachine backup. The apps were reinstalled as well. Now, I've set up iPhoto to link to my library in the Users>shared folder so that its available across all user accounts shared with my family members. Same is the case with iTunes library. But with integration with iCloud and @me.com or @mac.com accounts, I'm not sure how each one of us can have out own accounts configured in these libraries while they are shared. Keeping this in mind, what is the best way to share music, videos and photos across user accounts and yet have the apps... iTunes, iPhoto, etc, know our individual settings in out respective user accounts?
    For iTunes should I just create a referenced library? Will that let me sync my photos and videos to my iPhone 4? If so, how?
    For iPhoto I guess i''ll have to create separate libraries for each user account and then have one common for our shared photos. But thats just plain complicated for users who aren't tech savvy in my family.
    Please advice before I create a mess with my media again!

    Thanks for the idea, but that strategy introduces problems of its own. Now I have two iPods (a 5G and a touch) that sync with one library and an iPhone that syncs with another. This makes my life workable on the road, but at home, it means I have to change iTunes libraries when I sync different devices. It also means that, when I download new content, if I want to take it with me on my MBP, I have to synchronize it between two libraries. That sounds like an ugly situation.

  • What is involved in going from local user accounts to active directory accounts with CCM 9.1.2?

    We are currently using local user accounts with CUCM 9.1.2 and are looking at integrating it into the active directory structure.
    We do utilize the same structure for user ID's.
    I am looking to find out what the changeover will entail and if anything else needs to be done prior to the integration.
    We also have Unity syncing up with CUCM for users as well as Contact Center sync'ed up for our ACD system.
    Thanks
    Mike

    Hey Mike,
    The process is pretty straight forward.  CUCM 9.X supports the coexistence of AD integrated users and local users so you don't have to worry about local accounts disappearing if they don't have an AD account.  The biggest thing to watch out for is that if you decide to revert back for whatever reason then the accounts that were in AD will be marked for deletion (from the CUCM, not AD) and will be removed after approximately 24 hours.  
    I recommend the following if you'd like to move to AD.
    Run a DRS backup of CUCM.  This is not necessary for the integration but is good practice in my opinion.  I'd also do a full export of your users using the BAT so you can reimport users to how they were before the integration should you decide to revert for any reason.
    Determine if you want to put the user's extensions in the telephonenumber field or ipPhone field in AD.  Once you make a decision, I recommend populating that information in AD so it is available when you do the integration.  
    Make sure your local CUCM user accounts usernames are exactly the same as your domain accounts.  That way when you do the integration the local users become AD users and keep all of their phone associations, group memberships, etc.  If you need to change the usernames then be sure to notify your users ahead of time so they can start logging into UCCX or UCM user pages, etc. using their new username. 
    Create an account in AD that has read-only rights to your directory.  Set the password to never expire.  You will use this account later for the integration.  
    In CUCM, go into Serviceability and make sure the "Cisco DirSync" service is activated on the Publisher server.
    Also in CUCM, navigate to the administration page and do the following:
    Go to System > LDAP > LDAP System and Check the box to enable Synchronizing.  Confirm the LDAP server type and attribute for User ID is accurate.  This is typically Microsoft Active Directory and sAMAccountName respectively.
    Go to System > LDAP > LDAP Directory
    Click Add New
    Give it a name (whatever you want).
    Put in the Distinguished Name of the AD integration account you created earlier. For example, if you created an account called ciscoldap in the Service Accounts OU in the abc.com domain then it would look something like this... CN=ciscoldap,OU=Service Accounts,DC=abc,DC=com
    Enter the password for the account.
    Enter the search base.  This can be a specific OU where your users exist, a parent OU which contains other OUs which contain all of your users or the entire domain.  If you do the entire domain then in the abc.com example you would specify DC=abc,DC=com.
    Select the option to perform a sync with AD on periodic intervals.  The lowest interval you can set is every 6 hours.
    Select either the telephonenumber or ipPhone field to be used for the user's extensions.  This will be whatever you decided and populated in AD in an earlier step.
    Add your primary and any backup domain controllers and ports.  If they are just domain controllers and you are not using SSL then specify port 389.  If they are also global catalog servers then you can do port 3268.
    Click Save and Click the "Perform Full Sync Now" button.
    I recommend that you also use LDAP for authentication as well so you only have one username and password to remember which is all controlled by AD.  To add this do the following:Go to System > LDAP > LDAP Authentication.
    Click Add New
    Check the box to use LDAP Authentication
    Add the same Distinguished name, passwords and user seach base that you used for your integration account earlier under the synchronization section.  Also add the same primary and secondary LDAP servers and ports you used earlier.  
    Click Save
    You can go a step further and create a filter to only pull in the users within the search base you specified and apply that.  For example, maybe only pull in users that have their ipPhone field populated.  Let me know if you have any questions on that or any of the above.
    I hope this helps!

  • [OIM 11g] How can a pwd changed in the AD be sent to OIM User account?

    Hi Gurus,
    I am working in a PoC. I have AD and AD Pwd Sync connectors, and DBAT connector installed.
    IHAC who expected to see the following behavior regarding user password management:
    1) When user change password in the OIM account, this password should be propagated for all the targets (AD and DB table).
    Ok...I got the behavior.
    2) When user change password in the AD account, this password should be propagated for OIM user account (consequently this password will be propagated for all the target)..
    How can I do to achieve that?
    With AD password sync I am able to just sync the password between Target password and Resource form password.
    Note: AD is not the Trusted Source. The AD only should be trusted source for password.
    I would appreciated any help.
    Best regards.
    Edited by: user12295533 on 01/09/2011 07:05

    Hi Kevin, Thanks for your reply.
    By the AD Pwd Sync documentation (2.3.2 Configuring the IT Resource for the Target System section), I understood that the password changed into target system (AD account) would be changed only in the process form of the resource (ADUser), and it wouldn't be propagated to OIM user account (password attribute).
    When the password is changed on Microsoft Active Directory:
    The updated password is detected by the connector and sent to Oracle Identity Manager.
    On Oracle Identity Manager, the password is compared with the current password of the Active Directory resource. Because both passwords are different, the password of the Microsoft Active resource on Oracle Identity Manager is updated.
    The updated password is detected by the user management connector and sent to Microsoft Active Directory.
    The password of the Microsoft Active Directory is modified, even though this is the same password that was set by the user.
    The password of the account is detected by the password synchronization connector and sent to Oracle Identity Manager.
    On Oracle Identity Manager, the password is compared with the current password of the Active Directory resource. Because both passwords are the same, no further action is taken.
    If password history policy is set on Oracle Identity Manager, then an exception for the SPML request (sent by the password synchronization connector) is encountered. You can ignore this exception.
    Are you informing that the password changed in the AD should be propagated to OIM user account (password field)? Sorry, I am asking because it is not clear for me and I need to be sure of that. Because in this case then I need to check the configuration and try find any error.
    Thanks again Kevin.

  • Creating user accounts with OIDDAS and use them from the OS

    Hi,
    I have a customer that is experiencing an error creating user accounts from OIDDAS, and use that user accounts from the operating system.
    My customer is using OID/OAS4OS 10.1.4.2.0, and that version is not longer available to download, then, I will try in my own environment
    with OID/OAS4OS 10.1.4.3.0.
    And the question is the following: is supported to create user accounts with OIDDAS and expect that users can work with OAS4OS and be
    able to authenticate in the operating system?
    For the reference, SR# 7222351.993:
    Thanks,
    Luis Vivero.
    Edited by: LV in ORCL on Dec 11, 2008 6:47 AM

    Hi Jacco,
    I didn't see your post before.
    Nop, unfortulately I don't have a document with that. I just received that answer
    from development (related to the plugin for AD that is not certified, and DAS is
    not intended to work with OAS4OS).
    Anyway, about the plugin to work with AD, this is working for me; at least I tested
    it by configuring the plugin, I configured synchronization, the mapping file, I did
    the bootstrap, and the accounts that were bootstraped now shows the OS attributes
    on DAS.
    Regards,
    Luis Vivero.

  • Broken user account

    For the last two weeks i have experienced diffrent kinds of problems on my mac. It started with problems when I wanted to sync my iPone. Then I had problems with getting my Airport Express using airtunes. The Adobe CS suite started to behave strange. I got various errors and messages. After trying almost everything without reinstalling the system I got a hint from a friend... he said try creating a new user with admin acces. I created a new user and everything workes fine. All syncing, all apps and the Airport Express with airtunes. I tried to repair permissions on the old user but it didn't do any difference. So I have been spending my weekend moving all my info over to the new user.
    Is there a file/files that can get damaged that the user acount acces.
    Is their anyone that have had the same problem.
    The worst thing is that I felt like I was running Windows... various faults whitout any reason or logic. Fortunatley everything runs perfect again.

    Trying a new user account is a common troubleshooting procedure. When you create a new user you start off without the preference files, contextual menu items, cache files, login items, etc. that would be included in a typical individual user account. A new account starts fresh. When everything works again then it means your problems were caused by something amiss that's in the old account but not in the new one. Given what you described a good start would be third-party software you installed such as contextual menu items and login items as well as possibly corrupted cache files.
    You could try using one of the many maintenance utilities such as TinkerTool System to clear out all system and user cache files, font caches, etc. If you have third-party preference panes, contextual menu items, and login items try removing them to see if that helps. If not you can simply add them back.
    Repairing permissions will not help because permissions are not repaired in your Home folder. Only system files and applications are scanned when you repair permissions.
    Kappy's Personal Suggestions for OS X Maintenance
    For disk repairs use Disk Utility. For situations DU cannot handle the best third-party utilities are: Disk Warrior; DW only fixes problems with the disk directory, but most disk problems are caused by directory corruption; Disk Warrior 4.0 is now Intel Mac compatible. TechTool Pro provides additional repair options including file repair and recovery, system diagnostics, and disk defragmentation. TechTool Pro 4.6.1 is Leopard compatible; Drive Genius is similar to TechTool Pro in terms of the various repair services provided. The current version, 1.5.1, is Intel Mac compatible.
    OS X performs certain maintenance functions that are scheduled to occur on a daily, weekly, or monthly period. The maintenance scripts run in the early AM only if the computer is turned on 24/7 (no sleep.) If this isn't the case, then an excellent solution is to download and install a shareware utility such as Macaroni, JAW PseudoAnacron, or Anacron that will automate the maintenance activity regardless of whether the computer is turned off or asleep.
    OS X automatically defrags files less than 20 MBs in size, so unless you have a disk full of very large files there's little need for defragmenting the hard drive. As for virus protection there are few if any such animals affecting OS X. You can protect the computer easily using the freeware Open Source virus protection software ClamXAV. Personally I would avoid most commercial anti-virus software because of their potential for causing problems.
    I would also recommend downloading the shareware utility TinkerTool System that you can use for periodic maintenance such as removing old logfiles and archives, clearing caches, etc.
    For emergency repairs install the freeware utility Applejack. If you cannot start up in OS X, you may be able to start in single-user mode from which you can run Applejack to do a whole set of repair and maintenance routines from the commandline. Note that presently AppleJack is not compatible with Leopard.
    When you install any new system software or updates be sure to repair the hard drive and permissions beforehand. I also recommend booting into safe mode before doing system software updates.
    Get an external Firewire drive at least equal in size to the internal hard drive and make (and maintain) a bootable clone/backup. You can make a bootable clone using the Restore option of Disk Utility. You can also make and maintain clones with good backup software. My personal recommendations are (order is not significant):
    1. Retrospect Desktop (Commercial - not yet universal binary)
    2. Synchronize! Pro X (Commercial)
    3. Synk (Backup, Standard, or Pro)
    4. Deja Vu (Shareware)
    5. PsynchX 2.1.1 and RsyncX 2.1 (Freeware)
    6. Carbon Copy Cloner (Freeware - 3.0 is a Universal Binary)
    7. SuperDuper! (Commercial)
    8. Data Backup (Commercial)
    The following utilities can also be used for backup, but cannot create bootable clones:
    1. Backup (requires a .Mac account with Apple both to get the software and to use it.)
    2. Toast
    3. Impression
    4. arRSync
    Apple's Backup is a full backup tool capable of also backing up across multiple media such as CD/DVD. However, it cannot create bootable backups. It is primarily an "archiving" utility as are the other two.
    Impression and Toast are disk image based backups, only. Particularly useful if you need to backup to CD/DVD across multiple media.
    Visit The XLab FAQs and read the FAQs on maintenance, optimization, virus protection, and backup and restore.
    Additional suggestions will be found in Mac Maintenance Quick Assist.
    Referenced software can be found at www.versiontracker.com and www.macupdate.com.

  • Keychain trying to synchronize with account not being synched with MobileMe

    Hey all,
    Everything installed fine. Got a message about syncing with a Laptop account that was stolen from me (not recovered) over a year ago. Keychain verification window is displayed and states... "To synchronize your keychain on this computer, enter the password for your user account on "XXXXXXXXXXXXX"
    The account that it is asking for is definitely the old account. Puzzled. I am hoping it is not still connecting, if it is, any way I can get info as to the user using it? It was password protected. I have not entered the PW in fear of what it may do. I also removed the laptop from the syncing computers list in MobileMe a week after it was stolen. Back to my mac was not running on the laptop, wasn't an option yet.
    Any help or insight would be great.

    This solved the issue for me;
    Locate the Keychain Utility in your Applications directory under Utilities.
    Launch Keychain Utility.
    Look for the fields whose Kind�is “.Mac Password.” (Unless you have changed the default Keychain configuration, it/they will be located under the “login” keychain).
    Select and remove the fields by pressing the delete key on your keyboard.
    Confirm the deletion.
    Close Keychain Utility.
    You will have to re-enter these passwords next time they need to be used (checking email, syncing to Mobile Me, etc.) and they will be “re-stored” in the Keychain.

  • Change destination for sync of portable user accounts

    I am using portable user accounts where the home folders are synced to a file server in the network. I would however need to change the destination of home folder synchronization to another file server. But I haven't managed to figure out where the setting for this is.
    When the portable users were created the destination was provided by the active directory the computers are connected to. The AD-setting is changed to the new file server, but that doesn't "bite" on the clients. So it seems the destination was read from AD at the time of creation but is stored on the clients. Somewhere...

    Hi Maitreyee,
    I picked up the incident you set up with this question, and responded there, but just saw that you had asked the question here as well (which is a good idea).
    This is the feedback I provided in the incident, so I'm not sure if you want to get feedback from someone else, but the answer is:
    In order to change the ID's and Passwords for those service accounts you will have to uninstall and reinstall BPC with the new accounts.  There is really no way to make that kind of change maunually in our system as there are too many backend pieces that use those accounts.
    Also, you'll need to make sure before reinstalling that the new accounts have the correct permissions per the installation document.
    Thank you,
    Dan

  • R12 - irecruitment external candidate user account

    Hi,
    As part of Oracle's release R12.1.2, recruiter can create external candidate's user account.
    I have set the "IRC: Create User Account" to Yes at site level. This made the e-mail field on create candidate page as required. I created the cadidate with required information.
    After that, I can search the candidate with the first name, last name etc. However, no e-mail/notification is sent to that external candidate. When I checked the user for that external candidate using system administrator responsibility, the user account is created but there is no responsibility attached to it.
    Oracle is expected to send a notification to the e-mail id of external cadidate with login information which is not happening. What am I missing?
    Thanks!

    This sounds like a problem with standard functionality to me so you might want to kick off the SR route.
    A couple of things:
    1) Can you see the notification in wf_notifications?
    SELECT *
    FROM wf_notifications
    ORDER BY notification_id desc;
    (this gets all notifications ordered by the most recent, so scan through the begin_date to see if you can find one for this user)
    2) Do you see any responsibilities after running these concurrent programs:
    - Sync responsibility role data into the WF table.
    - Synchronize WF LOCAL tables

  • Syncing multiple user accounts

    I have 2 user accounts on my computer. We both use the same email accounts, .mac and a POP account. Will mail keep both user accounts up to date (incoming mail) or do I have to set up syncing?
    Thanks
    Joe

    Not sure what you mean, but I guess the answer to your question is yes, although maybe not the way you want or expect. More precisely, it may work the way you want or expect for one account but not for the other, as the way POP and IMAP accounts work is completely different -- .Mac is IMAP by default, but can be set up as POP as well.
    First of all, .Mac Sync services are for synchronizing Mail settings only. The synchronization of mail is achieved by storing it on the server, regardless of whether you have a .Mac account or not.
    For IMAP accounts, mail stored on the server is fully synchronized between all computers and/or users that access the account, meaning that if mail is read/moved/deleted from one computer or user account, the same happens on the rest as well.
    POP accounts, on the other hand, allow the same messages to be downloaded from multiple computers and/or user accounts independently of one another if configured to leave mail on the server for some time (Preferences > Accounts > Advanced), but don’t really provide any kind of synchronization, i.e. mail downloaded on one computer or user account can be read/moved/deleted without that having any effect on the mail downloaded on the rest.
    IMAP is ideal for a single user that wants to be able to access his/her mail from multiple computers. If what you really want is multiple users to be able to access the same mail account, however, IMAP may be inappropriate, because if one user reads, moves or deletes a message, that message will also appear to the rest of users as having been read, moved or deleted.

Maybe you are looking for

  • User  exit for LT03 - Creation of transfer order.

    Hi All, In LT03 while creating a transfer order for delivery the system picks the storage unit in ascending order(FIFO - First in first out). Is there any badi available to change this picking order into descending order(LIFO- Last in first out). I h

  • Adapter Engine Queue

    Hi. I got yhe following error in default trace. ========== Could not get next EOIO QueueMessage from MessageStore. Reason: com.sap.aii.af.ra.ms.api.MessagingException: Error retrieving message from database store. Reason: Could not create Message. Re

  • Console access through USB- Solaris x86

    Hi, I installed Solaris 9 on my laptop, Compaq Presario V2000 Series. My laptop does not have a Serial Port attached. I was wondering whether I can access the console through USB . And if so, can you please also provide me the instructions on how to

  • TS1702 App did not finish loading, appears stuck in loading

    When updating iBook app, the app stopped before finishing.  Since it has not finished, I cannot delete it. How do I get a new app on me iPad, do I loose all my books? Can I tweak this one to finish?

  • I can't access and/or see Finder?

    I suspect my issue is due to either installing OS X Lion this weekend or software update to Firefox.  I can click on Finder, and see the various open windows when right clicking on Finder and selecting "See all Windows".  However, I can't actually ci