Specifications

Setting Up a Server as a Backup Domain Controller (BDC)
Using Server Admin, you can set up Mac OS X Server as a Windows backup domain
controller (BDC). The BDC provides automatic failover and backup of Windows domain
login and other Windows client requests for authentication and directory services.
The BDC server can provide other Windows services (SMB services), including le, print,
browsing, and Windows Internet Name Service (WINS). The BDC can host home folders
for users who have user accounts on the PDC/BDC.
When authenticating, use an LDAP directory administrator account. You can’t use
a local administrator account, such as the primary server administrator account
(user ID 501).
To set up a Windows BDC:
1 Make sure the server is an Open Directory replica.
To determine whether a server is an Open Directory replica, open Server Admin and
connect to the server, click the triangle at the left of the server (to expand the list),
select Open Directory from the expanded services list, then click Overview. The rst
line of status information states the server’s Open Directory role.
2 Open Server Admin and connect to the server.
3 Click the triangle at the left of the server.
The list of services appears.
4 From the expanded Servers list, select SMB.
5 Click Settings, then click General.
6 From the Role pop-up menu, choose Backup Domain Controller (BDC), then enter the
following:
 Description: If you want, create a description. This description appears in the Network
Places window on Windows computers and is optional.
 Computer Name: Enter the name you want Windows users to see when they connect
to the server. This is the server’s NetBIOS name. The name should contain no more
than 15 characters, no special characters, and no punctuation.
If practical, make the server name match its unqualied DNS host name. For
example, if your DNS server has an entry for your server as server.example.com,”
give your server the name “server.”
 Domain: Enter the name of the Windows domain that the server will host. The
domain name cannot exceed 15 characters and cannot be “workgroup.”
7 Click Save.
8 Enter the name and password of a user account that can administer the LDAP
directory on the server, then click OK.
90 Chapter 5 Setting Up Open Directory Services