Manuals
/
Apple
/
Computer Equipment
/
Server
Apple
10.6
manual
Mac OS X Server
Models:
10.6
1
1
197
197
Download
197 pages
50.37 Kb
1
2
3
4
5
6
7
8
Install
Password
Ports Open By Default
Login
Administration Tools
ÂÂ Configure Manually
Initial Server Setup
Command-Line Tools
Understanding Backup Types
Setting Sacl Permissions
Page 1
Image 1
Mac OS X Server
Advanced Server Administration Version 10.6 Snow Leopard
Page 1
Page 2
Page 1
Image 1
Page 1
Page 2
Contents
Mac OS X Server
019-1410/2009-08-15
Contents
Enhancing Security
Administration Tools
Installation and Deployment
Initial Server Setup
Ongoing System Management
Monitoring Your System
Index
Push Notification Server
Contents
What’s in This Guide
About This Guide
To see the most recent server help topics
Using Onscreen Help
Getting Started
Document Road Map
Preface About This Guide
Getting Additional Information
Getting Documentation Updates
Standards
System Requirements for Installing Mac OS X Server
ÂÂ iCal Server
What’s New in Mac OS X Server
Understanding Server Configuration Methods
What’s New in Server Admin
Snmp NFS
Radius
Supported Standards
System Overview and Supported Standards
System Overview and Supported Standards
Mac OS X Server’s Unix Heritage
Determining Your Server Needs
Planning Server Usage
Setting Up a Planning Team
Determining Whether to Upgrade or Migrate
Determining Services to Host on Each Server
Identifying Servers to Set Up
Planning Server Usage
Migrating from Windows
Defining a Migration Strategy
Defining an Integration Strategy
Defining Physical Infrastructure Requirements
Defining Server Setup Infrastructure Requirements
Setting up basic server infrastructure
Defining Backup and Restore Policies
Minimizing the Need to Relocate Servers After Setup
Making Sure Required Server Hardware Is Available
Understanding Backup and Restore Policies
Understanding Backup Types
Understanding Restores
Understanding Backup Scheduling
Defining a Backup Verification Mechanism
Other Backup Policy Considerations
Understanding Time Machine as a Server Backup Tool
Command-Line Backup and Restoration Tools
ÂÂ Wiki ÂÂ Xgrid
ÂÂ Remote Access Settings ÂÂ Software Update
Opening and Authenticating in Server Admin
Server Admin
M N
Server Admin Interface
Customizing the Server Admin Environment
Server Assistant is used for
Server Assistant
Workgroup Manager
Server Preferences
Workgroup Manager Interface
Customizing the Workgroup Manager Environment
Server Monitor
For additional information, see Server Monitor Help
ICal Service Utility Interface
ICal Service Utility
Media Streaming Management
System Image Management
RAID Admin
Command-Line Tools
Server Status Widget
Podcast Capture, Composer, and Producer
Xgrid Admin
Apple Remote Desktop
About Physical Security
Enhancing Security
Firewalls and Packet Filters
About Network Security
Network DMZ
MAC Filtering
VLANs
Payload Encryption
Transport Encryption
File and Folder Permissions
About File Security
About File Encryption
Secure Delete
About Authentication and Authorization
ÂÂ Secure Shell SSH
You have several options for authenticating users
Single Sign-On
Public and Private Keys
About Certificates, SSL, and Public Key Infrastructure
About Certificate Authorities CAs
Certificates
About Self-Signed Certificates
About Identities
About Intermediate Trust
To configure clients to trust a certificate
Certificate Manager in Server Admin
From the command line
Enhancing Security
Readying Certificates
Requesting a Certificate from a Certificate Authority
Creating a Self-Signed Certificate
To create a self-signed certificate
To request a signed certificate
To create a CA
Creating a Certificate Authority
Enhancing Security
Importing a Certificate Identity
Using a CA to Create a Certificate for Someone Else
To create a certificate for someone else
To import an existing OpenSSL style certificate
Editing a Certificate
Managing Certificates
Deleting a Certificate
Distributing a CA Public Certificate to Clients
To distribute your certificate to your clients
To delete a certificate
Renewing an Expiring Certificate
Using Certificates
Replacing an Existing Certificate
To renew an expiring certificate
To do this, run the following commands in Terminal
Key-Based SSH Login
SSH and SSH Keys
Generating a Key Pair for SSH
Key-Based SSH with Scripting Sample
Setting Administration Level Privileges
Administration Level Security
Setting Sacl Permissions
Service Level Security
To set Sacl permissions for a service
Security Best Practices
Password Guidelines
Creating Complex Passwords
Confirm you meet the requirements
Installation Overview
Gather your information
Start up the computer from an installation disk
Set up the environment
Start the installer
Prepare the target disk
Gathering the Information You Need
Set Up Services
About the Server Install Disc
Setting Up Network Services
Connecting to the Directory During Installation
SSH During Installation
Mac OS X Server Install Disc
Preparing an Administrator Computer
Administration Tools CD
To install Mac OS X Server v10.6 administration tools
About Starting Up for Installation
Before Starting Up
To start up the computer with the installation disc
Starting Up from the Install DVD
Starting Up from an Alternate Partition
Restore the image to the alternate partition
Create a restorable image of the Install DVD
To create an image of the Install DVD
Prepare the disks and partitions on the target computer
To restore the image to a free volume
To access the computer with Server Assistant
Remotely Accessing the Install DVD
To access the computer using Screen Sharing
To access the computer with VNC
To access the computer with SSH
Identify the target server
Identifying Remote Servers When Installing Mac OS X Server
Starting Up from a NetBoot Environment
Create a NetInstall image from the Install DVD
Preparing Disks for Installing Mac OS X Server
Start up the computer from the NetBoot server
To create a NetInstall image from the Install DVD
ÂÂ Mac OS Extended Journaled, Case-Sensitive aka Hfsx
Choosing a File System
About Hard Disk Partitioning
Partitioning a Disk
To partition a disk using Disk Utility
About Creating a RAID Set
So the command is
You cannot create a RAID set from the startup disk
To create a RAID set using Disk Utility
Diskutil createRAID mirror setName format device device
For example
Installing Server Software Interactively
To install server software locally
Installing Locally from the Installation Disc
To install on a remote server by using Server Assistant
Installing Remotely with Server Assistant
Installing Remotely with Screen Sharing and VNC
To change a remote computer’s startup disk
Changing a Remote Computer’s Startup Disk
To use installer to install server software
105
Most Efficient Methods of Installation
Installing Multiple Servers
More Interactive Methods of Installation
Upgrading a Computer from Mac OS X to Mac OS X Server
How to Keep Current
To postpone setting up Mac OS X Server
Postponing Server Setup Following Installation
Information You Need
Configuring Servers with Multiple Ethernet Ports
Connecting to the Network During Initial Server Setup
About Settings Established During Initial Server Setup
ÂÂ Create Users and Groups
Specifying Initial Open Directory Usage
ÂÂ Configure Manually
Not Changing Directory Usage When Upgrading
ÂÂ Import Users and Groups
Binding a Server to Multiple Directory Servers
Setting Up a Server as a Standalone Server
To interactively connect to an additional directory server
Setting up Servers Interactively
Select the target servers from the configuration list
To set up servers interactively
Using Automatic Server Setup
Creating and Saving Setup Data
To create a setup data file
How a Server Searches for Saved Setup Data Files
Using Encryption with Setup Data Files
Setting Up Servers Automatically Using Data Saved in a File
Create the saved setup folder on the remote server
To use setup data from a file remotely
Restart the remote server
To set the server serial number
Handling Setup Errors
Adding Services to the Server View
Setting Up Services
To change services to administer
From the command-line
Setting Up User Management
Setting Up Open Directory
Setting Up All Other Services
To set up a user account
Setting Up an Administrator Computer
Computers You Can Use to Administer a Server
Insert the Mac OS X Server Admin Tools CD
Using a Non-Mac OS X Computer for Administration
Working with Pre-v10.6 Computers from v10.6 Servers
Using the Administration Tools
Ports Open By Default
Ports Used for Administration
Adding and Removing Servers in Server Admin
Server Admin Basics
Grouping Servers Manually
Grouping Servers Using Smart Groups
To create a server group
To create a server smart group
Working with Settings for a Specific Server
Toolbar button Shows
132
ÂÂ NetBoot
ÂÂ Directory Service ÂÂ Firewall ÂÂ Mobile Access
Understanding Mac OS X Server Names
Dhcp
Directory Service and Kerberos
NetBoot
Mobile Access Proxy Services
Firewall
Web
ÂÂ MySQL
MySQL
Certificates for Web and Wiki Services
Wiki
138
ÂÂ Certificates for collaboration services
Certificates for Mail Services
Imap and POP
Mailing List
ICal Service
Address Book Service
IChat Service
Certificates for Collaboration Services
To change the DNS name of the Podcast Producer computer
To change the IP address of the Podcast Producer computer
Print
Software Update Server
Push Notification
Xgrid
Changing the IP Address of a Server
Changing the Server’s DNS Name After Setup
Changing the Server’s Computer Name and the Local Hostname
To change the DNS name
From the command line
Administering Services
To change computer name and local hostname
Importing and Exporting Service Settings
Adding and Removing Services in Server Admin
To add or remove a service in Server Admin
To export service settings
To configure service access SACLs
Controlling Access to Services
Managing Sharing
Using SSL for Remote Server Administration
Tiered Administration Permissions
Workgroup Manager Basics
Defining Administrative Permissions
To assign permissions
Opening and Authenticating in Workgroup Manager
Administering Accounts
Working with Users and Groups
152
Defining Managed Preferences
To display the inspector
Working with Directory Data
Critical Configuration and Data Files
Service Configuration Assistants
Assistants are available for the following services
General
Mail Service
Firewall Service
IChat Server
Mail-POP/IMAP Server Dovecot
NAT Service
MySQL Service
Notifications
OpenDirectory Service
QuickTime Streaming Server
Tomcat App Server
Web Service
Improving Service Availability
Eliminating Single Points of Failure
Wiki and Blog Server
Using Xserve for High Availability
Using Backup Power
Setting Up Your Server for Automatic Restart
Using UPS with Xserve
Following is the Energy Saver panel of System Preferences
Ensuring Proper Operational Conditions
To enable automatic restart
Providing Open Directory Replication
Automatic restart options are
Link Aggregation
Link Aggregation Scenarios
About the Link Aggregation Control Protocol Lacp
Computer to Switch
To create a link aggregate
Setting Up Link Aggregation in Mac OS X Server
To monitor the status of a link aggregate
Monitoring Link Aggregation Status
Load Balancing
ÂÂ mDNSresponder local network service discovery process
Using launchd for Daemon Control
Daemon Overview
Viewing Running Daemons
170
Planning Monitoring Response
Planning a Monitoring Policy
Using Server Monitor
Using with Server Status Widget
To configure the Server Status widget
Using Console for Server Monitoring
Using RAID Admin for Server Monitoring
Using Disk Monitoring Tools
Using Network Monitoring Tools
Monitoring Server Status Overviews Using Server Admin
Using Server Status Notification in Server Admin
To set a notification
To see a status overview for one server
Following shows a sample Overview pane for a single server
Using Remote Kernel Core Dumps
177
Setting up a core dump server
Setting Up a Core Dump Server
Setting up a core dump client
Setting Up a Core Dump Client
Restart the computer for the settings to take effect
About Simple Network Management Protocol Snmp
Configuring Common Core Dump Options
To enable Snmp
Configuring snmpd
Enabling Snmp reporting
Customize data
To enable and configure Snmp
Restart snmpd to take changes
Additional Information about Snmp
About Notification and Event Monitoring Daemons
Tools to Use with Snmp
There are two main notification daemons syslogd and emond
Syslog
Logging
Syslog Configuration File
Directory Service Debug Logging
Open Directory Logging
To start debugging at startup
Additional Monitoring Aids
To enable client-side logging
AFP Logging
To run slapd in debugging mode
About Push Notification Server
Push Notification Server
Starting and Stopping Push Notification
To enable Push Notification
Click Save, then restart the service
Changing a Service’s Push Notification Server
To change the existing push notification server
Index
192
193
194
195
196
197
Top
Page
Image
Contents