Apple Event: May 7th at 7 am PT

Newsroom Update

Beginning in May, a special Today at Apple series titled “Made for Business” will offer small business owners and entrepreneurs free opportunities to learn how Apple products and services can support their growth and success. Learn more >

Looks like no one’s replied in a while. To start the conversation again, simply ask a new question.

Lion Server problem - Computer is already a network directory server

So I purchased Lion Server to trial it at home and it is not going well. Initially I was having issues connecting to the web interfaces for profile manager, etc. The server was not responding and so I uninstalled server and reinstalled it from the Mac Store (FYI: Apple has charged me for the OS and the server app as a result of this for some reason!!!)


With Server reinstalled I went to set up the server as a network directory and am shown this message every time I try to set up the directory admin account: "Computer is already a network directory server - This computer is already configured to manage network accounts. It cannot be configured again."


This leaves me unable to set up any profile or device management, I have tried the following solutions:


  1. Uninstall and reinstall server
  2. Deleted ServerVersion plist
  3. Reinstalled Lion
  4. Reinstalled Lion with format of HDD (although I did recover from a Time Machine Backup which included settings)


Any help would be appreciated.

Posted on Jul 28, 2011 2:10 AM

Reply
Question marked as Best reply

Posted on Jul 28, 2011 2:29 AM

i would test to configure the server again as "standalone server", and then promote again to "Open Directory Master" and see if that works.


make backups!!! , that will erase all entries in OD (groups, users, machines, profiles, etc...)


You can do it from "Server Tools" better than "Server.app".


Here you'll find the "almost classic" Server Tools: http://support.apple.com/kb/DL1419


good luck!

40 replies

Sep 2, 2011 2:09 AM in response to true3man

I think I managed to solve this accidentially and in an unexpected way...


I went to Network in System Preferences and changed the machine IP address (and made it fixed at the same time). I had been unable to do this via Server.


When I restarted Server, an alert was showing, saying the network configuration had changed. Under that was 'Recovery Options' and the option to 'Update services' - 'Apply the new network configuration to your sevices'.


I'd not seen this option anywhere else so clicked 'Recover' and after a few seconds, was able to set up a Network Directory Server no problem.


I'm yet to get all my services working so may encouter related problems later, but this got me over the hurdle described here.


This certainly seems worth doing if you change the hostname automatically assigned to the server, as I did.


Hope this helps.

Sep 13, 2011 6:27 AM in response to Xenolith

I found the best results (i.e. it's now working) from Craig Weston.

  • Check DNS - both forward and reverse zones
  • Certificates


The key I found was that you must remember to check your certificates *on the server*. If you're running Server.app from another machine and you use Certificate Assistant (the application that opens when you select "Custom" for the certificate and then "Manage Certificates") you are accessing the *local* keychain. However, when you "Change Role" of the OD server that process, of course, uses the keychain on the server. Stupidity sieve struck again for me "Item 7: Are you running on the machine you think you're running on?" ;-)


Let me know if that helps.

Sep 13, 2011 7:06 AM in response to Xenolith

In the configuration log there's nothing

in the LDAP-log:



Sep 13 16:01:10 ocserver slapd[734]: @(#) $OpenLDAP: slapd 2.4.23 (Jun 25 2011 03:21:20) $

root@b1004.apple.com:/private/var/tmp/OpenLDAP/OpenLDAP-186~22/servers/slapd

Sep 13 16:01:10 ocserver slapd[734]: daemon: SLAP_SOCK_INIT: dtblsize=8192

Sep 13 16:01:12 ocserver slapd[734]: bdb_monitor_db_open: monitoring disabled; configure monitor database to enable

Sep 13 16:01:12 ocserver slapd[734]: slapd starting

Sep 13 16:01:12 ocserver slapd[734]: daemon: posting com.apple.slapd.startup notification

Sep 13 16:01:26 ocserver slapd[734]: daemon: shutdown requested and initiated.

Sep 13 16:01:26 ocserver slapd[734]: daemon: posting daemon shutdown notification.

Sep 13 16:01:26 ocserver slapd[734]: slapd shutdown: waiting for 1 operations/tasks to finish

Sep 13 16:01:32 ocserver slapd[734]: slapd stopped.

Sep 13 16:01:33 ocserver slapd[752]: @(#) $OpenLDAP: slapd 2.4.23 (Jun 25 2011 03:21:20) $

root@b1004.apple.com:/private/var/tmp/OpenLDAP/OpenLDAP-186~22/servers/slapd

Sep 13 16:01:33 ocserver slapd[752]: daemon: SLAP_SOCK_INIT: dtblsize=8192

Sep 13 16:01:33 ocserver slapd[752]: bdb_monitor_db_open: monitoring disabled; configure monitor database to enable

Sep 13 16:01:33 ocserver slapd[752]: slapd starting

Sep 13 16:01:33 ocserver slapd[752]: daemon: posting com.apple.slapd.startup notification

Sep 13 16:01:38 ocserver slapd[752]: daemon: shutdown requested and initiated.

Sep 13 16:01:38 ocserver slapd[752]: daemon: posting daemon shutdown notification.

Sep 13 16:01:38 ocserver slapd[752]: slapd shutdown: waiting for 0 operations/tasks to finish

Sep 13 16:01:40 ocserver slapd[752]: slapd stopped.

Sep 13 16:01:40 ocserver slapd[771]: @(#) $OpenLDAP: slapd 2.4.23 (Jun 25 2011 03:21:20) $

root@b1004.apple.com:/private/var/tmp/OpenLDAP/OpenLDAP-186~22/servers/slapd

Sep 13 16:01:40 ocserver slapd[771]: daemon: SLAP_SOCK_INIT: dtblsize=8192

Sep 13 16:01:40 ocserver slapd[771]: bdb_monitor_db_open: monitoring disabled; configure monitor database to enable

Sep 13 16:01:40 ocserver slapd[771]: slapd starting

Sep 13 16:01:40 ocserver slapd[771]: daemon: posting com.apple.slapd.startup notification

Sep 13 16:01:43 ocserver slapd[771]: => bdb_idl_delete_key: c_get failed: DB_LOCK_DEADLOCK: Locker killed to resolve a deadlock (-30994)

Sep 13 16:01:43 ocserver slapd[771]: conn=1014 op=6: attribute "entryCSN" index delete failure

Sep 13 16:01:47 ocserver slapd[771]: => bdb_idl_delete_key: c_get failed: DB_LOCK_DEADLOCK: Locker killed to resolve a deadlock (-30994)

Sep 13 16:01:47 ocserver slapd[771]: conn=1014 op=37: attribute "entryCSN" index delete failure

Sep 13 16:01:51 ocserver slapd[771]: => bdb_idl_delete_key: c_get failed: DB_LOCK_DEADLOCK: Locker killed to resolve a deadlock (-30994)

Sep 13 16:01:51 ocserver slapd[771]: conn=1014 op=70: attribute "entryCSN" index delete failure

Sep 13 16:01:55 ocserver slapd[771]: => bdb_idl_delete_key: c_get failed: DB_LOCK_DEADLOCK: Locker killed to resolve a deadlock (-30994)

Sep 13 16:01:55 ocserver slapd[771]: conn=1014 op=101: attribute "entryCSN" index delete failure

Sep 13 16:01:58 ocserver slapd[771]: => bdb_idl_delete_key: c_get failed: DB_LOCK_DEADLOCK: Locker killed to resolve a deadlock (-30994)

Sep 13 16:01:58 ocserver slapd[771]: conn=1014 op=132: attribute "entryCSN" index delete failure

Sep 13 16:02:24 ocserver slapd[771]: daemon: shutdown requested and initiated.

Sep 13 16:02:24 ocserver slapd[771]: daemon: posting daemon shutdown notification.

Sep 13 16:02:24 ocserver slapd[771]: slapd shutdown: waiting for 0 operations/tasks to finish

Sep 13 16:02:27 ocserver slapd[771]: slapd stopped.

Sep 13, 2011 11:22 PM in response to Craig Weston

It turned out to be a problem with de local DNS-zone after all.

The DNS-zone that was created was the FQDN of my server

myserver.mydomain.private and

the administrator email for it was info@myserver.mydomain.private.


I changed the zone to myprivatedomain.com and forward en reverse lookup worked fine.

Then I changed the admin email to my personal emailaddress (info@myprovider.com) and OD troubles began.



Everthing working now except that I still can't enrol devices (another discussion).

Oct 8, 2011 10:09 AM in response to OneClick

Hi,

I have this issue and its driving me nuts.

I've read through all the suggestions but can't seem to resolve this at all.

Anyone got any hints or advice as I just can't get a local OD to premote with getting the CA error.


2011-10-08 17:05:59 +0000 ***Error creating intermediate CA. Error - The specified item already exists in the keychain.

2011-10-08 17:05:59 +0000 Intermediate CA creation failed with error - -25299

2011-10-08 17:05:59 +0000 Destroying OD master as CA creation failed with error 75


Thanks for any advice you might be able to offer.

Lion Server problem - Computer is already a network directory server

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple ID.