Specifications
Chapter 5 Setting Up Open Directory Services 103
Magic Triangle General Setup Overview
Here is a summary of the general tasks you perform to set up a magic triangle with an
Active Directory and Open Directory server. For detailed information about each step,
see the pages indicated.
Step 1: Check the Active Directory conguration.
Make sure your Active Directory server and its DNA service is properly congured
and running.
Step 2: Turn on Open Directory service.
Use Server Admin to turn the Open Directory service on. After the service is turned on
you can congure Open Directory service settings. For more information about turning
on Open Directory service, see “Turning Open Directory On” on page 79.
Step 3: Set up a standalone directory service.
To set up servers that won’t get authentication and other administrative information
from a directory service, see “Setting Up a Standalone Directory Service” on page 80.
Step 4: Connect to Active Directory.
Use Account preferences (or Directory Utility for advanced connections) to connect
your standalone directory server to your Active Directory server, see “Setting Up a
Connection to a Directory Server” on page 92.
Step 5: Set up an Open Directory master.
Make your standalone directory server an Open Directory masters, see “Setting Up an
Open Directory Master” on page 81.
Step 6: Disable Kerberos on Open Directory master.
Disable Kerberos on your Open Directory Master server to avoid conicts with your
Active Directory Kerberos realm, see “Disabling Kerberos After Setting Up an Open
Directory Master” on page 99.
Step 7: Kerberize services.
Kerberize your Open Directory server services with the Kerberos realm of your Active
Directory server, see “About Kerberized Services” on page 47 and “Kerberizing Services
with an Active Directory Server” on page 207.
Step 8: Set up client computers to connect to directory services.
Use Account preferences (or Directory Utility for advanced connections) to connect
your Mac OS X client computers to both the Active Directory and Open Directory
servers, see Chapter 7, “Managing Directory Clients Using Accounts Preferences,” on
page 11 9 and Chapter 8, “Advanced Directory Client Settings,” on page 126.