Questions tagged [directory-services]
21 questions
10
votes
5 answers
Add daemon account on OS X
I'm trying to manually install a daemon (Oracle Grid Engine) on my machine, and I would like it to run under an isolated account. What is the preferred way, using Directory Services, to add a "system" account to the local machine on OS X? Plenty of…

Tim Yates
- 235
- 2
- 7
8
votes
5 answers
How to check AD DS domain/forest functional level from domain joined workstation?
Is it possible to define AD DS domain/forest functional levels from domain joined workstation? Preferably through CLI/PS and if possible w/o Domain Admin rights...
How I can accomplish it?

Mikhail
- 1,295
- 3
- 19
- 35
5
votes
1 answer
Demote 2003 DC from within Directory Services Restore Mode
We've had a child DC fail on us, and can't get into Windows on it as Directory Services is failing. A restore of the backed-up active directory hasn't worked due to a corruption, and so we've decided to demote the child DC and - for now - run AD…

adam
- 243
- 2
- 6
4
votes
2 answers
Upgrading Windows Server + Domain Controller to Windows Server 2019 - Fails On "ADPrep.exe"
I'm am using the instructions here to upgrade my Windows Server 2012 AD Controller to Windows Server 2019. This server is a isolated AD controller that has no other server/clients connected to it in any way.
When I run the following on this…

David Rogers
- 215
- 2
- 11
3
votes
1 answer
In the context of Active Directory, what does "single schema" mean and why is this an advantage?
in my learning of AD DS Ecosystem I came across with this definition [link]:
By using the Windows Server® 2008 Active Directory® Lightweight Directory Services (AD LDS) role, formerly known as Active Directory Application Mode (ADAM), you can…

Noob_Number_1
- 145
- 1
- 7
3
votes
1 answer
What are the differences in schemas of main directory servers?
Active Directory, OpenLDAP or Apple's Open Directory have different schemas for holding user info and group membership. Having a Open Directory here I can say for example that user's Distinguished Name is attribute dn, while it seems to be…

CharlesB
- 545
- 1
- 4
- 20
2
votes
0 answers
How to search based on custom attribute?
I have some special custom attributes with my ldap setup. I have a custom attribute called GroupCode. I have bunch of entries with this special attribute that I was able to write to the ldap database.
Lets say that I have one object with GroupCode…

special_cheese
- 21
- 1
2
votes
1 answer
Reset dscl UniqueID and PrimaryGroupID of root to 0 on Mac OS X
Because of a very faulty script my root's PrimaryGroupID is 101 and UniqueID is 101. I have still an access to root, I can run sudo from my admin account, but the sudo and root do not have all the necessary rights obviously.
I can read dscl output,…

pirags
- 23
- 1
- 5
1
vote
1 answer
Scripting Directory Services without passwords
I'm in an environment where user/group information is maintained in /etc/passwd and /etc/group files, which are NFS mounted. This is nice because we can just edit flat files to change user/group information. However, the OS X machines in our setup…

singingwolfboy
- 153
- 4
1
vote
1 answer
How to relocate the database directory for Red Hat Directory Server 9.0
I am running RHDS in a VM, but would like to store the data and logs on a separate volume, that is on a SAN. The partition is ext4fs on /sdb1 and is mounted as /data.
I tried many variations of the different approaches described here. First, after…

Luke Koops
- 11
- 3
1
vote
0 answers
Open Directory authenticated bind succeeds, but creates incomplete record
I have about a dozen Macs running 10.6.7 or 10.6.8, which are all failing to bind properly to my new 10.7.4 Server OD.
I can bind them just fine via Directory Utility or dsconfigldap, and it reports success. However, when I look at the record, it is…

Jay Thompson
- 111
- 2
1
vote
3 answers
Guides to implement OpenLDAP just as directory and not to control Network access?
I have been trying to configure OpenLDAP in Ubuntu Intrepid Ibex but the guides I find in the web are confusing for me. I have had no succes.
I think the problem is most guides assume you want to use Samba for access control and use OpenLDAP as the…

vmarquez
- 131
- 2
- 6
0
votes
2 answers
Is there any relation between LDAP and SNMP? Can SNMP exist without LDAP?
I understand that SNMP is a protocol for managing (view/update) system resources information remotely and LDAP is a protocol to access and use directory services information.
But is there any correlation between both protocols? Is one dependent on…

GP92
- 681
- 2
- 9
- 27
0
votes
1 answer
ODSEE 11.1.1.7 pagination support
I installed Oracle Directory Services Enterprise Edition 11.1.1.7 and it by default does not support pagination critical extension. I searched in the web and
found that ODSEE 5.2 has not been supported it (by default or by any configuraiton).
My…

pointer
- 105
- 6
0
votes
1 answer
AWS AD connector to on premise AD failed
I am attempting to setup AWS AD Connector to our on-premise Active Directory by following Amazon document "AD Connector Prerequisites".
The status is Failed with the following error.
Connectivity issues detected: DNS unavailable (TCP port 53) for…

Roger
- 91
- 1
- 3
- 8