RE: [Fed-Talk] RE: Army AD and Macs: Not??
RE: [Fed-Talk] RE: Army AD and Macs: Not??
- Subject: RE: [Fed-Talk] RE: Army AD and Macs: Not??
- From: "Sanderson, David C MONMOUTH DOIM CTSC" <email@hidden>
- Date: Mon, 29 Nov 2004 17:21:09 -0500
Title: RE: Army AD and Macs: Not??
I don't see why this requires unplugging the
wires. It does say that MACs will not join the
AD forest, and the
Windows computers won't talk to them. I am, so far, being told only that
we can't Join an AD forest, at this time, but not that I have to pull the
plugs. It is frustrating, as I did try AdmitMac on one machine, and it
worked fine. We were just about to buy it for all our Macs when the
latest poop came down from above.
For those that were following the thread, here's the
"official" [published internally] reason why Macs will not be allowed on our
local AD network:
Latest Active Directory Compliance Requirements
Abstract: The DOIM has released the latest Active
Directory Compliance Requirements.
Please note - no
MACs or Linux machines or dual booted systems allowed.
LINUX & MACS: will not migrate, and will only
be able to talk while NTLM is low.
(NTLM is an
authentication protocol used in various Microsoft network protocol
implementations and supported by the NTLM Security Support
Provider
("NTLMSSP"). Originally used for
authentication and negotiation of secure DCE/RPC,
NTLM
is also used throughout Microsoft's systems as an integrated single
sign-on
mechanism.
Currently
ATSCNET users are at NTLM level 3 which allows communication with the
MAC clients and Linux. Once we move into the Active directory
we will be at Level 5
will doesn't allow
communications with Linux or Macs
And
"Dual boot systems will not migrate (to AD)"
Jim Monahan
Network Systems Engineer
RSI, Inc, A CIBER Company
Army
Training Support Center
mailto:email@hidden
_______________________________________________
Do not post admin requests to the list. They will be ignored.
Fed-talk mailing list (email@hidden)
Help/Unsubscribe/Update your Subscription:
This email sent to email@hidden