Mailing Lists: Apple Mailing Lists

Image of Mac OS face in stamp
 
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE:AD Mobile User Accounts & External Network



This problem has been discussed fairly recently on the macenterprise.org mailing list.  We've seen the same problem here at CU with our AD-bound laptops.  The working theory is that if the DC is resolvable from off-campus, which ours is, but can't be connected to (firewalled off), the machines will hang until the connection attempt times out.  We've yet to find a way to change the timeout value, but the same problem exists with our PC laptops, so this problem isn't just a mac issue.  The PC laptops get around it by being able to open a VPN connection before login.

Lance Ogletree from Rice U posted to the macenterprise list a possible solution.  After having the user login and having their credentials cached, he removed the AD server from the authentication path in Directory Access.  The user could still login to the machine with their cached AD logins, and the machine wouldn't try to connect to the AD.  A downside obviously is that any password changes made to the user's AD password wouldn't be reflected on the laptop.

--
Jeff Greene
University of Colorado at Boulder
ITS Educational Technology Engineering and Design



 _______________________________________________
Do not post admin requests to the list. They will be ignored.
Client-management mailing list      (email@hidden)
Help/Unsubscribe/Update your Subscription:
http://lists.apple.com/mailman/options/client-management/email@hidden

This email sent to email@hidden



Visit the Apple Store online or at retail locations.
1-800-MY-APPLE

Contact Apple | Terms of Use | Privacy Policy

Copyright © 2007 Apple Inc. All rights reserved.