image
image

Go Back   macosx.com > Mac Help Forums > Networking & Compatibility

Reply
 
Thread Tools
  #1  
Old August 7th, 2008, 04:32 PM
Registered User
 
Join Date: Aug 2008
Posts: 2
Thanks: 0
Thanked 0 Times in 0 Posts
kayote is on a distinguished road
Limiting which Active Directory users can login

Computer running OS X 10.4.11, authenticates via MS Active Directory.

I only want users in certain AD groups to be able to use the machine.

I know how to limit logins with Group Policy on Windows XP boxes, but there is preference to the newest limited-access being OS X. I haven't been able to figure out how to do it.

If needed, I can hard code an AD user list (rather than an AD group), but I'd prefer to use groups for consistency with other machines & simpler upkeep.

All I've come up with is a LoginHook that checks usernames & promptly logs off if the usernames doesn't match a given list. That's really clunky & hacked together (and resulting in support calls from people who don't realize they aren't supposed to be able to login). I'm hoping for a cleaner solution.
Reply With Quote
Reply

Tags
acitve directory, login, os x

Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off
Forum Jump


All times are GMT -5. The time now is 04:52 AM.


Mac Support® Version 3.7.2
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Search Engine Friendly URLs by vBSEO 3.1.0
Copyright 2000-2008 DigitalCrowd, Inc.