Good morning, all.
I build a monolithic image each summer for deployment for the Fall and Spring semester. I am running into a critical issue a week before we go live; when an authenticated AD user tries to save a file, the Desktop & Downloads folders show no access through the straightforward saving through Finder. It requires them to navigate to Macintosh HD>Users>username>Desktop and then they are able to successfully save. While this may not seem like a big deal, the "powers that be" are hyperventilating over the thought of having the "normal" way not work.
Can anyone help me with a terminal command that might help with this permissions issue? As a backstory, I edited the System/Library/User Template/English.lproj while making the image; I disabled SIP in order to do this and now I think this is why I'm running into this issue, as SIP is a per-machine setting. I have no time to re-image 500+ machines and am in almost-full panic mode.
As a side note, I just spent a half-week with Steve Welgoss from JAMF setting up Casper and will never be making a monolithic image again!!
Thanks in advance and I hope to meet some of you in Minneapolis for the JNUC in October.
--Paul Reyman

