Tanyamiaaaauw

Q: Profile and password issues after migrating to OS X Mavericks

Recently I upgraded from Mountain Lion to Mavericks on my Macmini server. And now I encounter several problems with the Local Network Users, setting password and Open Directory and such. After the upgrade I created a new Local Network User and enabled a Mail configuration for that account. When downloading this from the Profile Manager, the System Preferences could not install this. And gave me the error message for Auto Discovery errors.

 

At the same time I also noticed my reversed DNS hostname was changed at the DNS server of my IP provider. This has changed today. And I have reset the hostname within Server.app after that. When dowmloading that userprofile again, it was succefully loaded into System Preferences. This worked exactly once, not working now anymore and it's driving me mad.

 

Related issue (I guess). I also installed Roundcube to have the accounts access their mail through the Web. After some struggling with configurations this now works like a charm. But I also wanted them to be able to change their password. For this Roundcube has a plugin 'password'. Until now have not been able to get this working. using 'ldap' as driver does not work, I simply get a blank, hanging page. There ios also the possiblity to the 'dscl' commandline interface. This also gives me a hanging, blank page. When trying this in Terminal it gave me the following error:

 

passwd: DS error: eDSNotAuthorized

<dscl_cmd> DS Error: -14484 (eDSNotAuthorized)

 

So, in my search for these problem(s) I have been struggling with passwords and accounts today :( Suddenly I seem to be unable to reset the passwords for the Local Network Users in Server.app. When trying this I just see the circling wheel, in the left lower corner, quickly turning and then disappearing. Nothing happens. Also adding a new Local Network User has made the Server.app crash at one time. Using Workgroup Manager to change those passwords, was no success either. Had to login with 'diradmin' and thought I probably had forgotten the password. But when trying the solution with 'mkpassdb -setpassword <slot-ID>' this suddenly does not seem to work with Mavericks anymore. The setting '-setpassword' simply is not available in Mavericks (so it seems)...

 

I am not not sure what has happened, but perhaps the upgrading to Mavericks has somehow distorted something in OD and such. It's all driving me mad and giving me a unstable feeling about this all.


Anybody here recognizes these problems?  :(

Mac mini, OS X Mavericks (10.9)

Posted on Dec 8, 2013 8:34 AM

Close

Q: Profile and password issues after migrating to OS X Mavericks

  • All replies
  • Helpful answers

  • by Tanyamiaaaauw,Solvedanswer

    Tanyamiaaaauw Tanyamiaaaauw Dec 8, 2013 2:17 PM in response to Tanyamiaaaauw
    Level 1 (0 points)
    Dec 8, 2013 2:17 PM in response to Tanyamiaaaauw

    Yes! Finally I found the solution to my problem *sigh*

     

     

    After several attempts to change the Password database with the 'mkpassdb' (via root) command, still nothing worked properly. After a while I finally remembered my own password for the 'diradmin' account. And hoped to start changing passwords in Workgroup Manager. But the weird thing was, that I could do some changes, but not all. E.g. changing passwords was still not possible. Even though the properties of all accounts were set to 'Open Directory'; I still got the errormessage that I could not change a password of type Open Directory. So weird, because all the Local Network Users have this property.

     

     

    The more I was thinking of it, the more I was convinced that all of this must have to do something with the Password database. So, based on that belief I started searching for problems related to that. More specifically in relation to the migration to OS X Mavericks. And that is when I came across the following page "OS X Server (Mavericks): After upgrading or migrating, network user cannot be created" (http://support.apple.com/kb/TS5289)

     

     

    And this solved the problem. Yaay!

     

     

    Btw.

    I do use the 'dscl' driver for changing passwords in Roundcube. Not the 'ldap' one. And it works perfectly.

  • by Tanyamiaaaauw,

    Tanyamiaaaauw Tanyamiaaaauw Dec 8, 2013 2:21 PM in response to Tanyamiaaaauw
    Level 1 (0 points)
    Dec 8, 2013 2:21 PM in response to Tanyamiaaaauw

    Btw. I still have the problem with loading of new or modified profiles. And getting the 'Auto discovery of settings' error message. So if anyone else has a solution for that? Please help me out on that.

  • by askmehow1,

    askmehow1 askmehow1 May 10, 2015 12:50 PM in response to Tanyamiaaaauw
    Level 1 (0 points)
    May 10, 2015 12:50 PM in response to Tanyamiaaaauw

    This rekerberize was not the solution I needed:

     

    osx:10.9.5

    server 3.2.2

     

    error1 - server app:

    unable to create secure connection with credentials from existing connection: password change denied

     

    error2 - workgroup manager:

    In order to set the password of a user with an Open Directory Password, your, own password type must be Open Directory. Administrators with other password types cannot set the password of a user with an Open Directory password.