8.1. Open Directory Master on S10.4
• Click on “Server Admin” (and make sure that the arrow on the left of the server
name points downwards).
• Click on “Open Direcotry”
• Click on “Settings”
• Click on “General”, “Role” should be “Open Directory Master”
• Click on “Protocols”
• LDAP settings should remain untouched, i.e., “search base” should be
“dc=mmac-servr00” (or whatever your server’s name is. Database should be:
“/var/db/openldap/openldap-data”. Set “policies” and “replicas” as needed (or
ignore).
• Start or restart Open Directory services.
• Click “Overview”, you should see “lookup”, “LDAP”, “password” “running”,
“Netinfo” being “local” and “Kerberos” possibly “stopped” (unless you have
enabled it).
• Make sure Apple Filing Protocol (AFP) is running (green disc next to its name)
• Open a terminal window and create a common user directory /NetUsers:
sudo mkdir /NetUsers
sudo chmod 775 /NetUsers
• Open “Workgroup Manager”, click on “Sharing” then on “All”. Clcik on
“MacintoshHD”, then on “NetUsers”. Under the “General” settings, check
“Share this item and its contests”.
Adding users:
• Open “Workgroup Manager” and log in as “diradmin”. Click “New User”. Enter
User’s name and password into the appropriate boxes. Click on “Home” and then
on “+”; Share point should be: “afp://mmac-servr00.local/NetUsers”; Path
should be the user name you have picked; Home should be:
“/NetUsers/username” substituting username for the user name you have picked.
Click on “OK”, “Create home now” and “Save”.
• Open terminal window and type:
sudo mkdir /Netusers/username
sudo chown username /NetUsers/username
substituting “username” for the user name you have picked.
8.2. Open Directory Clients on C10.4
• Open “System preferences” and click on accounts (open lock if necessary).
Under login options uncheck “automatic login” and enable fast user switching
(for convenience).
• Go to “Finder” and click on “Applications→Utilities→Directory Access” (open
lock if necessary). Disable “SLP”, “SMB”, “Active Directory”, “BSD”, and
“Netinfo”; enable: “LDAP”, “Apple talk”, and “Bonjour”. Configure LDAP,
show options (but do not add DHCP). Click “New” and use for “authentication”
and “contacts”; enter server name: “mmac-servr00.local”, click on Continue and
on “OK”.
Comentários a estes Manuais