Specifications

Chapter 5 Setting Up Open Directory Services 103
Magic Triangle General Setup Overview
Here is a summary of the general tasks you perform to set up a magic triangle with an
Active Directory and Open Directory server. For detailed information about each step,
see the pages indicated.
Step 1: Check the Active Directory conguration.
Make sure your Active Directory server and its DNA service is properly congured
and running.
Step 2: Turn on Open Directory service.
Use Server Admin to turn the Open Directory service on. After the service is turned on
you can congure Open Directory service settings. For more information about turning
on Open Directory service, see Turning Open Directory On on page 79.
Step 3: Set up a standalone directory service.
To set up servers that won’t get authentication and other administrative information
from a directory service, see “Setting Up a Standalone Directory Service on page 80.
Step 4: Connect to Active Directory.
Use Account preferences (or Directory Utility for advanced connections) to connect
your standalone directory server to your Active Directory server, see “Setting Up a
Connection to a Directory Server on page 92.
Step 5: Set up an Open Directory master.
Make your standalone directory server an Open Directory masters, see Setting Up an
Open Directory Master on page 81.
Step 6: Disable Kerberos on Open Directory master.
Disable Kerberos on your Open Directory Master server to avoid conicts with your
Active Directory Kerberos realm, see “Disabling Kerberos After Setting Up an Open
Directory Master on page 99.
Step 7: Kerberize services.
Kerberize your Open Directory server services with the Kerberos realm of your Active
Directory server, see About Kerberized Services on page 47 and “Kerberizing Services
with an Active Directory Server on page 207.
Step 8: Set up client computers to connect to directory services.
Use Account preferences (or Directory Utility for advanced connections) to connect
your Mac OS X client computers to both the Active Directory and Open Directory
servers, see Chapter 7,Managing Directory Clients Using Accounts Preferences,” on
page 11 9 and Chapter 8,Advanced Directory Client Settings,” on page 126.