To help you get the most out of your mac!
In: IT| Mac Support| Tutorials
11 Mar 2010In Mac OS X v10.6, the man page for krb5.conf states that the order of precedence for Kerberos configuration files is as follows: ~/Library/Preferences/edu.mit.Kerberos /Library/Preferences/edu.mit.Kerberos /etc/krb5.conf When certain preferences related using DNS to locate Kerberos servers are set, they may not respect the order of precedence for location Kerberos servers.
In: Mac Support| Tutorials
5 Nov 2009When attempting to access a resource in Active Directory via Kerberos authentication, authentication may not work. The following may appear in the logs when this happens: DirectoryService[26]: GSSAPI Error: Unspecified GSS failure. Minor code may provide more information (Requested effective lifetime is negative or too short).
In: Mac Support| Tutorials
4 Sep 2009To allow access to Windows Active Directory users and groups, you must modify the Final Cut Server settings preference file.
In: Mac Support| Tutorials
27 Aug 2009In order for Kerberos authentication to work for iChat Server in a disjoint Kerberos namespace, two LDAP attributes need to be added/modified for users using Kerberos authentication from another realm.
In: Mac Support| Tutorials
5 Aug 2009After upgrading from Mac OS X Server v10.4 to Mac OS X Server v10.5, iChat users may no longer be able to use Kerberos authentication to the iChat service.
In: Mac Support| Tutorials
23 Jul 2009In order for Active Directory bound Windows Final Cut Server client systems to successfully authenticate to Final Cut Server, you must create a custom Kerberos configuration file on the Windows client system.
In: IT| Mac Support| Tutorials
15 Jul 2009The iCal server uses the MD5 Digest authentication method by default. This does not allow Active directory users to log into the iCal server using their Active Directory credentials. It is strongly recommended that Kerberos be configured for Active Directory users. For customers who require a non-Kerberos solution to support Active Directory users, cleartext authentication can be enabled for the iCal service, as described below. For customers who choose to use cleartext authentication, Apple recommends the use of SSL to provide a more secure environment.
In: IT| Mac Support| Tutorials
7 Jul 2009In certain cases, it may be desirable to rebuild the Kerberos Key Distribution Center (KDC) on a 10.5 server in a manner that retains the existing databases for LDAP and PasswordServer. The steps outlined in this article will accomplish this. Note: You must have at least one of the “Recoverable Authentication Methods” (WebDAV-Digest and/or APOP) checked in the Policy tab under Settings for the Open Directory service in Server Admin, otherwise passwords will not be recreated properly. Important: Be sure to back up the files mentioned in the steps below prior to editing or deleting them.
The outside of the box said "Windows base machine or better", so I bought a Mac.