So, I was recently asked to change the URL of the data share that is mapped for all users district wide Mac or Windows. I was able to achieve that in the JSS no problem, but I seem to have a minor pesky issue that is somewhat annoying.
So on a machine that successfully received the new share profile and removed the old one, I log as a user that has never logged in before and everything is hunky dory....works great..share mounts automagically, users is able to get going. The problem is when I log in as an existing user on that Mac (a hard-wired desktop Mac)...immediately upon login, the user is presented with a credentials window for the new share instead of relying on Kerberos tickets. I will note that I also tried mapping manually in the Finder and again am asked for creds.
I have tried running kdestroy and kinit for the user and we still seem to have the problem, though on a new user we don't. I'll be honest...I don't like AD binding, but we need to use it for one more year here. We are only bound to AD and not any other directory system. I have double checked authorizations for the share on the AD side. I'm running out of ideas and would love to have to avoid recreating people's local profiles. If anyone has ideas or needs me to post the products of commands, I can do that to help.
Thank you folks in advance,
blackholemac
