Need help logging in to OS X Server

whipsaw

Registered
My question to you guys is: How can I login to an OS X Server via the login window on the OS X Client?

I’ve got Mac OS X Panther on both the client and the server. My goal is to try to use the server solely for password authentication and logging. There are no applications that need to be accessed on the server. The system is (will be) a simple private LAN.

On the server I have an administrator account & some user accounts. On my client I only have an administrator account. When I try to do a user login to the server via the client login window (login window seen when the client has booted up), I am unable to get login authorization and I remain at the login window. I must not have something set up right.

I am able, however, to login to the client with the administrator password and then connect to the server using a username/password I’ve set up on the server by clicking on Go->Connect to Server. Kerberos also appears to working fine.

I will be adding more client machines however, and I need to have all user logins be handled by the server. So, how can I login to the server via the login window on the client?

Some info about my settings:

I have chosen to use LDAP on both the server and client. The server has been promoted to Open Directory Master. KDC is running. DNS appears to be running fine. SSL is disabled. I’ve tried turning DHCP on and off. Right now, I’m just trying to get one client to be able to login to one server on a private LAN. I’m not sure what I need to do nor am I sure how to troubleshoot this problem.

Any help you all can provide will really be appreciated. Thanks.
 
So, it sounds like you have a few things going on here...

First, to clarify, when you say that you are able to login to the client as the Administrator, is that meaning the administrator account that you setup on the client itself?

Where you need to be looking is in Applications -> Utilities -> Directory Access and creating a node for your Open Directory Master in the LDAP settings.

Also, if you are having to type in a username and password to authenticate to a share, that's not the same as Kerberos. Kerberos is a mechanism that grants tickets valid for services for a given period of time. You can see if you have a Kerberos ticket by opening up the terminal and typing

klist

and hitting return. That will list all valid Kerberos service principals that you have in your current ticket.

Hope that gets you started! :)
 
Back
Top