<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0"
    xmlns:dc="http://purl.org/dc/elements/1.1/"
     xmlns:admin="http://webns.net/mvcb/"
     xmlns:content="http://purl.org/rss/1.0/modules/content/"
     xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#">
	<channel> 

	<title>Comments on: MacOSX in a PC World</title>
	<link>http://ask.metafilter.com/92762/MacOSX-in-a-PC-World/</link>
	<description>Comments on Ask MetaFilter post MacOSX in a PC World</description>
	<pubDate>Fri, 30 May 2008 06:37:42 -0800</pubDate>
	<lastBuildDate>Fri, 30 May 2008 06:37:42 -0800</lastBuildDate>
	<language>en-us</language>
	<docs>http://blogs.law.harvard.edu/tech/rss</docs>
	<ttl>60</ttl>

	<item>
		<title>Question: MacOSX in a PC World</title>
		<link>http://ask.metafilter.com/92762/MacOSX-in-a-PC-World</link>	
		<description>Help a PC guy out with Mac/Linux networking. &lt;br /&gt;&lt;br /&gt; I have a pair of questions I hope someone can help me get a concise answer to:&lt;br&gt;
&lt;br&gt;
I am a PC guy, I run a 150pc+ network (Windows 2003 + XP desktops).  I am used to being able to run Login scripts to mount network drives, and single sign-on across all desktops.  &lt;br&gt;
&lt;br&gt;
I am working with a group that has 5-10 Macintosh PC&apos;s, and it seems as though they act like standalone XP machines normally (ie, you can share drives between them, but you need to setup user accounts/passwords on each machine).&lt;br&gt;
&lt;br&gt;
If we purchase a copy of OSX Server, can we somehow &quot;join&quot; all the Mac&apos;s to the server so they all centrally authenticate like XP+Windows 2003 does?  (ie, you need a valid &apos;domain&apos; login to login to any of the OSX workstations).&lt;br&gt;
&lt;br&gt;
For bonus points -- how could we bypass purchasing an OSX Server and simply do this jazz with an Ubuntu/Linux Server.</description>
		<guid isPermaLink="false">post:ask.metafilter.com,2008:site.92762</guid>
		<pubDate>Fri, 30 May 2008 06:03:35 -0800</pubDate>
		<dc:creator>SirStan</dc:creator>
		
			<category>mac</category>
		
			<category>osx</category>
		
			<category>server</category>
		
			<category>small</category>
		
			<category>workgroup</category>
		
	</item> <item>
		<title>By: paulsc</title>
		<link>http://ask.metafilter.com/92762/MacOSX-in-a-PC-World#1357813</link>	
		<description>&lt;a href=&quot;http://web.mit.edu/macdev/KfM/Common/Documentation/faq-osx.html&quot;&gt;Kerberos for Mac OSX&lt;/a&gt; can authenticate directly against Active Directory. You can also use Kerberos clients on Linux to authenticate Linux servers or clients against Active Directory; &lt;a href=&quot;http://www.windowsnetworking.com/articles_tutorials/Authenticating-Linux-Active-Directory.html&quot;&gt;here is a blow-by-blow howto&lt;/a&gt; for SUSE using YAST.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2008:site.92762-1357813</guid>
		<pubDate>Fri, 30 May 2008 06:37:42 -0800</pubDate>
		<dc:creator>paulsc</dc:creator>
	</item><item>
		<title>By: genial</title>
		<link>http://ask.metafilter.com/92762/MacOSX-in-a-PC-World#1357885</link>	
		<description>At our institution we have been using &lt;a href=&quot;http://www.thursby.com/products/admitmac-eval.html&quot;&gt;AdmitMac&lt;/a&gt;. Can&apos;t remember why we went with that as opposed to native AD support but I&apos;m sure the server guys mentioned quite a few acronyms to support the cause. In any case it works flawlessly, all macs login with AD credentials, you can mount network drives, and from what I understand they don&apos;t have to build in any extra support server-side for the Mac folks to access the networked drives. Also accessing shared printers through a windows print server seems to work well.&lt;br&gt;
&lt;br&gt;
You by no means need to have a separate server to manage the Macs if you&apos;re already on Active Directory. The one advantage to an OSX server would be applying group policy globally to all of them. This is something that is iffy on AdmitMac and we had lots of problems trying to get it to work, so if locking down the systems is important to you that would be a way of instituting parental controls and locking down components of the systems. If you just need them to logon with their AD account and access network resources go with native first and see if it works. If not try out a trial of AdmitMac off their website and see how you like it.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2008:site.92762-1357885</guid>
		<pubDate>Fri, 30 May 2008 07:53:05 -0800</pubDate>
		<dc:creator>genial</dc:creator>
	</item><item>
		<title>By: dammitjim</title>
		<link>http://ask.metafilter.com/92762/MacOSX-in-a-PC-World#1357892</link>	
		<description>Related info &lt;a href=&quot;http://ask.metafilter.com/80734/Authentication-across-Windows-Linux-and-Mac&quot;&gt;previously on AskMe&lt;/a&gt;.&lt;br&gt;
&lt;br&gt;
You can do this homogeneously: read Apple&apos;s (marketing) page on &lt;a href=&quot;http://www.apple.com/server/macosx/technology/opendirectory.html&quot;&gt;Mac Client to Mac Server authentication&lt;/a&gt;.&lt;br&gt;
&lt;br&gt;
Or, heterogeneously: paulsc gave the Mac Client to Windows Server link, and it seems possible to do Mac Client to Linux Server in a couple of ways: using Samba to approximate OpenDirectory (can&apos;t find a good cite - maybe this doesn&apos;t really work?) or &lt;a href=&quot;http://vuksan.com/linux/mac-os-x-ldap/openldap-mac-os-x-authentication.html&quot;&gt;using OpenLDAP&lt;/a&gt;.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2008:site.92762-1357892</guid>
		<pubDate>Fri, 30 May 2008 08:00:02 -0800</pubDate>
		<dc:creator>dammitjim</dc:creator>
	</item><item>
		<title>By: joshrholloway</title>
		<link>http://ask.metafilter.com/92762/MacOSX-in-a-PC-World#1357898</link>	
		<description>We just started this process a couple months ago in my organization. We&apos;re just using the built-in AD services in Leopard and we haven&apos;t run into any issues. We have a standard image we set up that has a local admin account, and once we install this image on a new machine, we bind it to the domain. At that point, file and print sharing works pretty seamlessly, and you can mount network shares by dropping a location file into the login items of the user or the user template, if you want it to apply to all new accounts.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2008:site.92762-1357898</guid>
		<pubDate>Fri, 30 May 2008 08:00:49 -0800</pubDate>
		<dc:creator>joshrholloway</dc:creator>
	</item><item>
		<title>By: odinsdream</title>
		<link>http://ask.metafilter.com/92762/MacOSX-in-a-PC-World#1358061</link>	
		<description>&lt;em&gt;Also accessing shared printers through a windows print server seems to work well.&lt;/em&gt;&lt;br&gt;
&lt;br&gt;
As far as I&apos;ve experienced, this is natively supported without any extra configuration.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2008:site.92762-1358061</guid>
		<pubDate>Fri, 30 May 2008 09:51:52 -0800</pubDate>
		<dc:creator>odinsdream</dc:creator>
	</item><item>
		<title>By: clarkie666</title>
		<link>http://ask.metafilter.com/92762/MacOSX-in-a-PC-World#1358367</link>	
		<description>If you want to bypass the Mac and Linux server and connect directly to the Windows server - you should also consider using &lt;a href=&quot;http://www.thursby.com/products/admitmac-eval.html&quot;&gt;AdmitMac from Thursby&lt;/a&gt; to simplify the management. It has really worked well here where every other configuration and setup has caused intermittent hiccups.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2008:site.92762-1358367</guid>
		<pubDate>Fri, 30 May 2008 13:53:38 -0800</pubDate>
		<dc:creator>clarkie666</dc:creator>
	</item>
	</channel>
</rss>
