ProfileForge
Back to browser

Active Directory

com.apple.DirectoryService.managed

The payload that configures an Active Directory (AD) domain.

macOS
macOS 10.8+exclusive

Configuration Keys (39)

KeyTypeTitle
HostNamerequired
stringHostName
UserName
stringUserName
Password
stringPassword
ClientID
stringClient ID
ADOrganizationalUnit
stringADOrganizationalUnit
ADCreateMobileAccountAtLoginFlag
booleanEnable ADCreateMobileAccountAtLogin Flag
ADCreateMobileAccountAtLogin
booleanCreate mobile account at login
ADWarnUserBeforeCreatingMAFlag
booleanEnable ADWarnUserBeforeCreatingMA Flag
ADWarnUserBeforeCreatingMA
booleanRequire confirmation before creating mobile account
ADForceHomeLocalFlag
booleanEnable ADForceHomeLocal Flag
ADForceHomeLocal
booleanForce local home directory on startup disk
ADUseWindowsUNCPathFlag
booleanEnable ADUseWindowsUNCPath Flag
ADUseWindowsUNCPath
booleanUse UNC path for network home location
ADMountStyle
stringMount Style
ADDefaultUserShellFlag
booleanEnable ADDefaultUserShell Key
ADDefaultUserShell
stringDefault user shell
ADMapUIDAttributeFlag
booleanEnable ADMapUIDAttribute Key
ADMapUIDAttribute
stringMap UID to attribute
ADMapGIDAttributeFlag
booleanEnable ADMapGIDAttribute Key
ADMapGIDAttribute
stringMap user GID to attribute
ADMapGGIDAttributeFlag
booleanEnable ADMapGGIDAttribute Key
ADMapGGIDAttribute
stringMap group GID to attribute
ADPreferredDCServerFlag
booleanEnable ADPreferredDCServer Key
ADPreferredDCServer
stringPreferred domain server
ADDomainAdminGroupListFlag
booleanEnable ADDomainAdminGroupList Key
ADDomainAdminGroupList
arrayAllow administration by specified Active Directory groups.
ADDomainAdminGroupListItemrequired
stringDomain Admin Group Item
ADAllowMultiDomainAuthFlag
booleanEnable ADAllowMultiDomainAuth Key
ADAllowMultiDomainAuth
booleanAllow authentication from any domain in the forest
ADNamespaceFlag
booleanEnable ADNamespace Key
ADNamespace
stringSet primary user account naming convention: "forest" or "domain"
ADPacketSignFlag
booleanEnable ADPacketSign Key
ADPacketSign
stringPacket signing
ADPacketEncryptFlag
booleanEnable ADPacketEncrypt Key
ADPacketEncrypt
stringPacket encryption
ADRestrictDDNSFlag
booleanEnable ADRestrictDDNS Key
ADRestrictDDNS
arrayRestrict DDNS on interfaces
ADRestrictDDNSItemrequired
stringAllowed DDNS Interface Item
ADTrustChangePassIntervalDaysFlag
booleanEnable ADTrustChangePassIntervalDays Key
ADTrustChangePassIntervalDays
integerPassword trust interval
Description
stringDescription
ADDomainAdminGroupListItemrequired
stringDomain Admin Group Item
ADRestrictDDNSItemrequired
stringAllowed DDNS Interface Item