beautypg.com

Apple Mac OS X Server (version 10.2.3 or later) User Manual

Page 81

background image

Directory Services

81

4

Advance to the Directory Use step, and then select the option “The server will use a non-
shared local directory.”

5

Go to the first Security step and select “Password and authentication information will be
provided to other systems.”

6

Advance to the next Security step.

Open Directory Assistant displays the short name of the user account that will become an
administrator of the Password Server. This user account is the one you used to authenticate
when you started Open Directory Assistant. You can make additional Password Server
administrators by selecting the option “User can administer this directory domain” in the
Basic pane of Workgroup Manager. For instructions, see “Assigning Administrator Rights for a
Directory Domain” on page 142 of Chapter 3, “Users and Groups.”

7

Go to the next Security step and select the authentication methods that you want the
Password Server to support.

SMB-NT is required for some Windows computers to get Windows services in Mac OS X
Server.

SMB-LAN Manager is required for some Windows computers to get Windows services in
Mac OS X Server.

CRAM-MD5 can be used for IMAP mail service by Mac OS X Server and users’ mail client
software. CRAM-MD5 is also used by some LDAP software.

APOP can be used for POP mail service by Mac OS X Server and users’ mail client software.

In addition to the listed authentication methods, Password Server always supports the
following methods: DHX and Digest-MD5.

You’ll find more information about the different authentication methods in “Password Server
Authentication Methods” on page 65.

8

In the onscreen Finish Up step, click Go Ahead to configure the server with the displayed
settings.

Using a Non-Shared Local Directory Domain and an Existing Password
Server

Using the Open Directory Assistant application, you can set up a Mac OS X Server to use only
its local directory domain, while it obtains authentication information from another system.
This server obtains authentication information from another server’s Password Server. The
server does not provide directory information to other computers or get directory
information from an existing system. (The local directory domain cannot be shared.)

LL0395.Book Page 81 Wednesday, November 20, 2002 11:44 AM