You have not defined Mobility settings for the user/group/device via MCX or Profile Manager. MCX is depreciated so unless you are supporting a mix of devices from 10.6.x to present, you likely should be going with Profile Manager.
Based on your post, I assume you have:
• Defined internal DNS
• Created an Open Directory Master
• Created users and groups and assigned proper SACLs
• Ensured the user accounts have a valid NFSHomeDirectory value
• Bound the workstations to the OD domain
Unless you are using Network Home Folders, this is not enough. You need to apply a setting that is sent to the machines telling them that it is ok to support network logins. This is the Mobility payload and, as mentioned, can be found in both Profile Manager and MCX.
Reid
Apple Consultants Network
Apple Professional Services
Author "Mavericks Server – Foundation Services" :: Exclusively available in Apple's iBooks Store
Author "Mavericks Server – Control and Collaboration" :: Exclusively available in Apple's iBooks Store