
32 Chapter 3 Administering Windows Users, Groups, Computers, and Share Points
Creating Windows User Accounts in a Read/Write Directory
Domain
You can use Workgroup Manager to create Windows user accounts in directory
domains other than the LDAP directory domain of a server that is a primary domain
controller. If Mac OS X Server provides Windows services, you can create Windows user
accounts in the server’s local directory domain. If this server is connected to an LDAP
directory domain of another server, you can also create Windows user accounts in the
other server’s LDAP directory domain. The other server’s LDAP directory domain must
be configured for write access; it must not be read-only.
User accounts in the local directory domain or another server’s LDAP directory domain
cannot be used for Windows domain login. These user accounts can access other
services, such as Windows file service, if the server that hosts the service has an
authentication search policy that includes the directory domain in which the user
account resides. For example, a Windows user account in the local directory domain of
a server can access the Windows file service of the same server. For information on
search policies, see the Open Directory administration guide.
To create a user account in a read/write directory domain:
1 Ensure that the directory services of the Mac OS X Server you’re administering has been
configured to access the domain of interest.
Mac OS X Server can always access its own local directory domain. Use Directory Access
to configure access to another server’s LDAP directory domain. See the Open Directory
administrator’s guide for instructions.
2 In Workgroup Manager, click Accounts, then click the User button.
3 Open the directory domain in which you want to create user accounts, and
authenticate as an administrator of the domain.
To open a directory domain, click the small globe icon above the list of users and
choose from the pop-up menu.
To authenticate, click the lock icon and enter the name and password of an
administrator of the directory domain. Authenticate as an administrator whose
password type is Open Directory so you can create user accounts whose password type
is also Open Directory, which is recommended for Windows user accounts.
4 Choose Server > New User or click New User in the toolbar.
5 Specify settings for the user in the tabs provided.
See “Working With Basic Settings for Users” on page 33 through “Working With Print
Settings for Users” on page 37 for details.
You can also use a preset or an import file to create a new user. For details, see the user
management guide.
LL2356.book Page 32 Thursday, September 4, 2003 3:21 PM
Komentarze do niniejszej Instrukcji