Questions tagged [directory-services]

21 questions
10
votes
5 answers

Add daemon account on OS X

I'm trying to manually install a daemon (Oracle Grid Engine) on my machine, and I would like it to run under an isolated account. What is the preferred way, using Directory Services, to add a "system" account to the local machine on OS X? Plenty of…
Tim Yates
  • 235
  • 2
  • 7
8
votes
5 answers

How to check AD DS domain/forest functional level from domain joined workstation?

Is it possible to define AD DS domain/forest functional levels from domain joined workstation? Preferably through CLI/PS and if possible w/o Domain Admin rights... How I can accomplish it?
Mikhail
  • 1,295
  • 3
  • 19
  • 35
5
votes
1 answer

Demote 2003 DC from within Directory Services Restore Mode

We've had a child DC fail on us, and can't get into Windows on it as Directory Services is failing. A restore of the backed-up active directory hasn't worked due to a corruption, and so we've decided to demote the child DC and - for now - run AD…
4
votes
2 answers

Upgrading Windows Server + Domain Controller to Windows Server 2019 - Fails On "ADPrep.exe"

I'm am using the instructions here to upgrade my Windows Server 2012 AD Controller to Windows Server 2019. This server is a isolated AD controller that has no other server/clients connected to it in any way. When I run the following on this…
3
votes
1 answer

In the context of Active Directory, what does "single schema" mean and why is this an advantage?

in my learning of AD DS Ecosystem I came across with this definition [link]: By using the Windows Server® 2008 Active Directory® Lightweight Directory Services (AD LDS) role, formerly known as Active Directory Application Mode (ADAM), you can…
3
votes
1 answer

What are the differences in schemas of main directory servers?

Active Directory, OpenLDAP or Apple's Open Directory have different schemas for holding user info and group membership. Having a Open Directory here I can say for example that user's Distinguished Name is attribute dn, while it seems to be…
2
votes
0 answers

How to search based on custom attribute?

I have some special custom attributes with my ldap setup. I have a custom attribute called GroupCode. I have bunch of entries with this special attribute that I was able to write to the ldap database. Lets say that I have one object with GroupCode…
2
votes
1 answer

Reset dscl UniqueID and PrimaryGroupID of root to 0 on Mac OS X

Because of a very faulty script my root's PrimaryGroupID is 101 and UniqueID is 101. I have still an access to root, I can run sudo from my admin account, but the sudo and root do not have all the necessary rights obviously. I can read dscl output,…
pirags
  • 23
  • 1
  • 5
1
vote
1 answer

Scripting Directory Services without passwords

I'm in an environment where user/group information is maintained in /etc/passwd and /etc/group files, which are NFS mounted. This is nice because we can just edit flat files to change user/group information. However, the OS X machines in our setup…
1
vote
1 answer

How to relocate the database directory for Red Hat Directory Server 9.0

I am running RHDS in a VM, but would like to store the data and logs on a separate volume, that is on a SAN. The partition is ext4fs on /sdb1 and is mounted as /data. I tried many variations of the different approaches described here. First, after…
Luke Koops
  • 11
  • 3
1
vote
0 answers

Open Directory authenticated bind succeeds, but creates incomplete record

I have about a dozen Macs running 10.6.7 or 10.6.8, which are all failing to bind properly to my new 10.7.4 Server OD. I can bind them just fine via Directory Utility or dsconfigldap, and it reports success. However, when I look at the record, it is…
1
vote
3 answers

Guides to implement OpenLDAP just as directory and not to control Network access?

I have been trying to configure OpenLDAP in Ubuntu Intrepid Ibex but the guides I find in the web are confusing for me. I have had no succes. I think the problem is most guides assume you want to use Samba for access control and use OpenLDAP as the…
vmarquez
  • 131
  • 2
  • 6
0
votes
2 answers

Is there any relation between LDAP and SNMP? Can SNMP exist without LDAP?

I understand that SNMP is a protocol for managing (view/update) system resources information remotely and LDAP is a protocol to access and use directory services information. But is there any correlation between both protocols? Is one dependent on…
GP92
  • 681
  • 2
  • 9
  • 27
0
votes
1 answer

ODSEE 11.1.1.7 pagination support

I installed Oracle Directory Services Enterprise Edition 11.1.1.7 and it by default does not support pagination critical extension. I searched in the web and found that ODSEE 5.2 has not been supported it (by default or by any configuraiton). My…
pointer
  • 105
  • 6
0
votes
1 answer

AWS AD connector to on premise AD failed

I am attempting to setup AWS AD Connector to our on-premise Active Directory by following Amazon document "AD Connector Prerequisites". The status is Failed with the following error. Connectivity issues detected: DNS unavailable (TCP port 53) for…
1
2