Back to browser
Active Directory
com.apple.DirectoryService.managed
The payload that configures an Active Directory (AD) domain.
macOS
macOS 10.8+exclusiveConfiguration Keys (39)
| Key | Type | Title | |
|---|---|---|---|
HostNamerequired | string | HostName | |
UserName | string | UserName | |
Password | string | Password | |
ClientID | string | Client ID | |
ADOrganizationalUnit | string | ADOrganizationalUnit | |
ADCreateMobileAccountAtLoginFlag | boolean | Enable ADCreateMobileAccountAtLogin Flag | |
ADCreateMobileAccountAtLogin | boolean | Create mobile account at login | |
ADWarnUserBeforeCreatingMAFlag | boolean | Enable ADWarnUserBeforeCreatingMA Flag | |
ADWarnUserBeforeCreatingMA | boolean | Require confirmation before creating mobile account | |
ADForceHomeLocalFlag | boolean | Enable ADForceHomeLocal Flag | |
ADForceHomeLocal | boolean | Force local home directory on startup disk | |
ADUseWindowsUNCPathFlag | boolean | Enable ADUseWindowsUNCPath Flag | |
ADUseWindowsUNCPath | boolean | Use UNC path for network home location | |
ADMountStyle | string | Mount Style | |
ADDefaultUserShellFlag | boolean | Enable ADDefaultUserShell Key | |
ADDefaultUserShell | string | Default user shell | |
ADMapUIDAttributeFlag | boolean | Enable ADMapUIDAttribute Key | |
ADMapUIDAttribute | string | Map UID to attribute | |
ADMapGIDAttributeFlag | boolean | Enable ADMapGIDAttribute Key | |
ADMapGIDAttribute | string | Map user GID to attribute | |
ADMapGGIDAttributeFlag | boolean | Enable ADMapGGIDAttribute Key | |
ADMapGGIDAttribute | string | Map group GID to attribute | |
ADPreferredDCServerFlag | boolean | Enable ADPreferredDCServer Key | |
ADPreferredDCServer | string | Preferred domain server | |
ADDomainAdminGroupListFlag | boolean | Enable ADDomainAdminGroupList Key | |
ADDomainAdminGroupList | array | Allow administration by specified Active Directory groups. | |
ADDomainAdminGroupListItemrequired | string | Domain Admin Group Item | |
ADAllowMultiDomainAuthFlag | boolean | Enable ADAllowMultiDomainAuth Key | |
ADAllowMultiDomainAuth | boolean | Allow authentication from any domain in the forest | |
ADNamespaceFlag | boolean | Enable ADNamespace Key | |
ADNamespace | string | Set primary user account naming convention: "forest" or "domain" | |
ADPacketSignFlag | boolean | Enable ADPacketSign Key | |
ADPacketSign | string | Packet signing | |
ADPacketEncryptFlag | boolean | Enable ADPacketEncrypt Key | |
ADPacketEncrypt | string | Packet encryption | |
ADRestrictDDNSFlag | boolean | Enable ADRestrictDDNS Key | |
ADRestrictDDNS | array | Restrict DDNS on interfaces | |
ADRestrictDDNSItemrequired | string | Allowed DDNS Interface Item | |
ADTrustChangePassIntervalDaysFlag | boolean | Enable ADTrustChangePassIntervalDays Key | |
ADTrustChangePassIntervalDays | integer | Password trust interval | |
Description | string | Description | |
ADDomainAdminGroupListItemrequired | string | Domain Admin Group Item | |
ADRestrictDDNSItemrequired | string | Allowed DDNS Interface Item |