ACS and Windows 2000 user database communication port

Could my Windows 2000 SP4 + ACS v3.23 can install any new Windows 2000 service pack ?
I'm affraid to infect ACS Service.
So, I want to install firewall on this server to block malicious traffic.
However, my ACS used external user database Windows 2000 for authentication.
Who can tell me What protocols or port list they are communication?
I have to avoid these traffic on my firewall.

Hi cheng
I think you can install any servie pack without problem and the SP4 is the latest one for WIN2000 and you server already has this SP
For your second question you need to specify many protocols according to your active directory config in this link you can find a list of this protocols and the best way is to make debug or logging or use a siniffer to know the exactly protocols flow between your ACS and AD server
http://www.microsoft.com/technet/prodtechnol/windows2000serv/technologies/activedirectory/deploy/confeat/adrepfir.mspx
Best Regards

Similar Messages

  • ACS and Windows Domain / AD

    Hi All,
    In my environment there are two Windows Domain - Doamin A and B. ACS is configured on member server in domain B and hence Windows Authentication for users in Domain B is working fine. However I'm unable to see domain A in Configure Domain List on ACS server in Windows Domain configuration menu.
    Please note, there is one way trust between domain A and B with Domain A trusting Domain B.
    Is there a way I can use the same instance of ACS to authenticate the users in Domain A as well? If YES, can you please guide me with some pointers - thanks.
    I'm using ACS and Windows AD elements to authenticate users for SSL Web VPN on ASA 5540.
    Apprecaite quick help on this.
    -Satishcp

    Unfortunatley we are not using the Cisco Secure ACS Appliances, rather its ACS Ver 3.3 running on Windows 2000 Server (member server in Domain B).
    My guess Remote Agents for Windows / Solaris works with Appliances alone.

  • Acrobat 3D and Windows 2000

    Everyone that has the Windows 2000 operating system has problems with the Acrobat 3D models. The models were created using Windows XP and were tested using Windows XP. I am assuming that Acrobat 3D and Windows 2000 are incompatible. Adobe states Windows 2000 compatibility. Does anyone know why users with Windows 2000 are having problems with my models?
    Thanks

    Yes, I have checked the version and they have Reader 7.0.8. I also checked that they have the latest version of DirectX. Of course there are a number of remote Windows2000 users, so I haven't the ability to check the service pack installations, graphics drivers, and so on. Many of these users are schedule to be upgraded to new laptops (with Windows XP installed).
    I also have the most recent version of Acrobat 3D and have installed all the updates.
    It seems the problems are different among different users, but everyone seems to have some type of problem when using Acrobat 3D and Win2000.

  • Windows 2000 users abandoned?

    When I recently tried to buy an album I got a message box telling me to upgrade to v7.4.1 or later. This version is for XP or Vista. With Windows 2000, I am upgraded as far as I can go to v7.3.2.6. After several emails back and forth to iTunes support, they told me I would not be able to "complete an album" but that I should be able to buy an album. They gave me a number for Apple support which is never answered. The recording tells you to call back. What I have discovered is, as a Windows 2000 user, I can buy individual songs but cannot buy an album with a digital booklet, which usually I don't care about. I can buy any album if I want at the rate of 99 cents per song. Has anyone found a solution for this?

    The last version of iTunes to support Windows 2000 is 7.3
    Download here:
    http://www.apple.com/support/downloads/itunes732forwindows2000.html
    If your iPod will work with 7.3 you are OK, if it requires a higher version, then you will not be able to use it with iTunes unless you upgrage your OS.
    However there are some third party programs that you may be able to use provided you do not want to use the iTunes store or play DRM protected tracks from the store.
    Some examples;
    Yamipod
    http://www.yamipod.com/main/modules/home/
    Foola
    http://www.floola.com/modules/wiwimod/index.php?page=WiwiHome
    anapod
    http://www.redchairsoftware.com/anapod/

  • I am interested in purchasing Adobe's Creative Suite 6 Master Collection for Mac and Windows (Single User Educational License) FOR STUDENTS & EDUCATORS ONLY.

         I am interested in purchasing Adobe's Creative Suite 6 Master Collection for Mac and Windows (Single User Educational License) FOR STUDENTS & EDUCATORS ONLY. I am purchasing this program for my son who attends George Washington High School: The College Academy in New York, New York. He is a sophomore and is interested in web design. I would like to know if he is eligible to use/activate the Creative Suite 6 Master Collection for Mac and Windows (Single User Educational License) FOR STUDENTS & EDUCATORS ONLY prior to my purchase.

    Peru Bob makes a good point.  I just assumed the OP understood what the System requirements | Adobe Creative Suite 6 were.
    Nancy O.

  • Error on database communication port

    Dear Guru's,
    While installing solman, database communication port 5912 has been used by another instance which was running on the same host. Could any one suggest is it possible to have any other port number other than 5912.
    regards,
    Guna

    Hi,
    Guess you are using DB2?
    try this
    db2set DB2COMM = TCPIP to set the value.
    Suggest you to check database manager configuration parameters once before changing the parameter.
    Feel free to revert back.
    -=-Ragu

  • Nokia 6085, PC Suite and Windows 2000

    I can't find the PC Suite version that will work with my phone and Windows 2000. Can someone point me to where it is so I can download it please?

    Active_Lad wrote:
    I have a trusty 6600 (that neither slides nor folds!) but find that I can't use the normal PC Suite that is Win7 compatible; I must use a device-specific version. However, the device specific version doesn't support Windows 7. So I am stuck. Is there a workaround to either force the device-specific version to work on Win7 of get the 6600 to work with the normal PC Suite?
    Sure you can. Install in XP compatibility mode as admin.
    http://europe.nokia.com/support/product-support/nokia-6600/software/pc-suite#
    ‡Thank you for hitting the Blue/Green Star button‡
    N8-00 RM 596 V:111.030.0609; E71-1(05) RM 346 V: 500.21.009

  • Can i setup a secure reverse proxy using sun one web proxy server and windows 2000?

    I've tried this on IPlanet Proxy 3.6 and, after reading the documentation, realized that SSL is not supported on the Windows platform. So I'm asking if it is supported using Sun One Web Proxy Server

    Hi,
    Yes, What you say is right.
    "The NT and Windows 2000 versions of iPlanet Web Proxy Server 3.6 do not support SSL".
    Sun One Web Proxy Server is as same as iPlanet webproxy server.
    May be in future relase of proxy server SSL will be supported in Win2000.
    Regards,
    Dakshin.
    Developer Technical Support
    Sun Microsystems
    http://www.sun.com/developers/support.

  • Problems with 802.1x,ACS and Windows Server 2000

    Hi,
    My components: ACS 3.3 running on a Server with Windows 2000 Server SP4 , 2950 Catalyst (AAA-Client) ,
    Laptop with Windows XP SP2 (802.1x Client)
    I have everything configured according to Cisco documentation, but I am getting one error in the ACS's log.( Failed Attempts active.csv)
    Authen-Failure-Code : EAP-TLS or PEAP authentication failed during SSL handshake
    I have a valide certificate on my Radius(ACS) server and about machine authentication I have a valide certificate on my laptop. (I have installed this certificate before i started to login at the 802.1x port of the switch)
    Does anyone have any idea what the problem is?
    Here is the Config of the Catalyst 2950 if that will help:
    version 12.1
    no service pad
    service timestamps debug uptime
    service timestamps log uptime
    no service password-encryption
    hostname ACS-Client1
    aaa new-model
    aaa authentication dot1x default group radius
    enable secret xxxx
    username xxxx privilege xxx password xxx
    ip subnet-zero
    ip ssh time-out 120
    ip ssh authentication-retries 3
    spanning-tree mode pvst
    no spanning-tree optimize bpdu transmission
    spanning-tree extend system-id
    dot1x system-auth-control
    interface FastEthernet0/13
    switchport mode access
    dot1x port-control auto
    dot1x timeout quiet-period 3
    dot1x timeout reauth-period 1
    dot1x reauthentication
    interface GigabitEthernet0/2
    interface Vlan1
    ip address 10.10.3.253 255.255.255.0
    no ip route-cache
    ip default-gateway 10.10.3.254
    ip http server
    radius-server host 10.10.3.1 auth-port 1812 acct-port 1813
    radius-server retransmit 3
    radius-server key radius
    line con 0
    password xxx
    line vty 0 4
    password xxx
    line vty 5 15
    password xxx
    end

    Yes we get to solve this problem. Because it is a only a test senario, we installed everything new, win2000 server SP4,the certificate service and the winXP on the client.
    The config of the switch is ok, we set the reauth-period and quiet-period to default.
    Then we test the whole configuration with the IAS-Radius (MS). After this we install the ACS, following this document:(Certificates were already installed)
    http://www.cisco.com/en/US/products/sw/secursw/ps2086/products_configuration_example09186a00801df0ea.shtml
    Attention, we used the AEGIS Client not the XP Client!

  • Interfacing of RS232 serial devices through USB ports within LabVIEW 6.1 and Windows 2000 Pro?

    I have a data acqusition requirement of using 5 RS232 devices, but the motherboard i use only has two serial ports. However, it does have 4 USB ports. Does anyone know if it is possible to use these USB ports to input data from an RS232 device through a serial to USB converter?
    Does LabVIEW 6.1 support this under Windows 2000 Pro?
    Thanks in advance,
    Fraser

    Hi Fraser,
    I just moved an app to a new laptop and had to use a USB to serial comm adapter. At first try the app did not find the comm port.
    After sleeping on it, we downlaoded the most up-to-date driver for the device and upgraded VISA to the latest and gretest version.
    Everything worked fine after that.
    Ben
    Ben Rayner
    I am currently active on.. MainStream Preppers
    Rayner's Ridge is under construction

  • OS authentication w/ 10.2 database and Windows 2000

    Not a new issue - but still not too easy for me...
    Got a Windows 2000 domain, a 10g enterprise database server on Windows 2003 as part of this domain and a client machine running a 10.2 client on Windows 2000 in the same domain.
    remote_os_authent is FALSE.
    OS_AUTH_PREFIX_DOMAIN is not set.
    On both sides sqlnet.ora contains the line SQLNET.AUTHENTICATION_SERVICES= (NTS)
    A database account exists as <domainname>\<username> with create session priviledge granted. <domainname> is the same as Windows' %USERDOMAIN%. <username> is the ID to which one logs into that domain on the client machine.
    But still "sqlplus /" raises exception 01017. Password authenticated connects do work. What am I missing?
    Thanks a lot..

    Assuming it still doesn't work: sorry no, as I recall this info from a Metalink note, and the Metalink note worked for me. The only thing I can remember right now is one needs to enclose the Oracle account in double quotes, or it wouldn't work, due to the \. If that also doesn't help, I'm stuck.
    Sybrand Bakker
    Senior Oracle DBA

  • Oracle 8.1.7 for Unix and Windows 2000 Active Directory

    Is it possible to integrate the users and passwords of an Oracle Database running on Solaris with the users and passwords defined in a Windows 2000 Active Directory? What are the requirements and the necesary steps?
    I've read the documentation and it shows how to do it if you install Oracle in a Windows 2000 Server, but it does not mention about installing it in any kind of Unix.

    You should consider to base your firm security and central user repository on REALLY SECURE and ROBUST product technology. Not on Windows 2000 Active Directory. Win2K AD is known to be slow and insecure. If you have Oracle on Solaris your data is secure and next step is to move user accounts to real user repository. It may be one of well-known LDAP servers. Try to read some materials on CERT Coordination Center (http://www.cert.org) which describe LDAP servers. After this you can choose the server which best suite your needs.

  • Problems with JFileChooser and Windows 2000 (can't see mydocuments contents

    Hi! I've an applet which has a JFileChooser component. In other Windows, I can select the MyDocuments folder and it goes there and list all the contents OK. But, in Windows 2000, when I go to MyDocuments, none of the contents is listed in the file chooser. I need to navigate through all the directories to get there (C:\documents and settings\user\my documents) and then, it shows its contents, but obviously, I don't want it to be this way because is difficult for the common user.
    Any idea of why is going on this?
    Thanks in advance!

    Hello, You need to use something like o=isp as the
    root DN, then o=yourorg.com goes beneath it.
    i.e.
    For the other questions on setup, just choose o=isp
    as base DN when you set up the directory server. When
    you run ims_dssetup.pl, choose o=internet as the DC
    tree base, then choose o=isp as the user/groups base
    suffix.
    When you are installing messaging server it will ask
    where to put the default organization, this is where
    you would choose o=abc.com, o=isp
    For more info on how this structure works please take
    a look at this link and it will all fit into place:
    http://docs.sun.com/source/816-6017-10/changes.htm#170
    8Alright, I got ims_dssetup to run successfully. But now when the ims 5.2 installation is about 50% done, I get the message:
    A serious problem occurred while installing the iPlanet Messaging Server Messaging SIE entry in LDAP (msg.cfgldap.sie.inf). It reported the following problem:
    The server configuration for the Messaging SIE entry in LDAP (msg.cfgldap.sie.inf) cannot be created.

  • Hanging problems with JRE 1.4.0 and Windows 2000

    We have written a Java application which is an editor using Swing components. Most of us happily run it on Windows 2000 PCs with a decent PC spec of 512 Mb RAM and 1 Gb Processors and Java JDK 1.4.0 installed. However, other users with smaller spec PCs of 128 Mb RAM and 450 MHz processors and using only the Java Runtime Environment v1.4.0 keep making the application hang.
    I've done plenty of debugging and investigation and am now convinced that this is not our application software that is causing the problems - the hangs are never consistent in their behaviour. I don't think that lack of memory is the problem either as it hangs with no other application running and it only uses a small amount itself.
    So what could cause this problem ? Is there a significant difference between using the JDK and JRE ? Could it be PC spec ? Are there some config settings that I should check ?
    Any help would be appreciated as the application has become unusable for our users when we seem to be having no problems at all !
    Sarah.

    I have been tring to track down a similar problem for quite some time, with no luck as of yet. On 4 out of 6 machines running Windows 2000 Pro, any application that I write using any graphical component AWT or Swing, will hang at run time using JDK 1.4. I have no solution for you but I am hoping this message might spark some more advice.
    Bryan

  • Facebook reports that i'm using v3.5 of Firefox and Windows 2000 when running on 16.0.2 and XP (upgraded system). where is this info and how to reset?

    the PC was upgraded from Win2000 to XP, and has all the XP service packs installed. it is also running Firefox 16.0.2. when i go to Facebook, and other pages, it says that i'm running an unsupported operating system (says i'm using Windows 2000), and i should upgrade my browser to the latest version (says i'm running FF 3.5, or FF 3.6, can't remember which). i' ve looked thru the registry, but haven't found anything that jumps out. where else could this info be stored that Firefox is looking at.

    '' pbturner wrote:''
    where is this information stored? and how can i correct it?
    It's explained in the “Firefox is showing the wrong User Agent” section of the aforementioned article.
    # Type ''about:config'' in the address bar and press Enter.
    # Press the big button to bypass the warning.
    # In the Search bar, paste ''general.useragent''
    # If any of the search results show “Status: user set”, right-click each one and choose '''Reset'''
    You should also get rid of Fast Browser Search, which is what corrupted your user agent string. Other names to watch out for are “Fast Browser search protection”, “Fast Browser Search (MyTattoo)”.<br>These may appear not only in your Firefox add-ons, but also your Internet Explorer add-ons and Windows Control Panel, in the Uninstall or Add or Remove Programs category.
    * [[Disable or remove Add-ons]]

Maybe you are looking for

  • Questions, Suggestions, Bugs - results from 7-day workshop

    Last week we (AMIS that is) finished yet another JHeadstart workshop with one of our customer’s development teams. In this workshop we focused on Struts, BC4J and both JSP and UIX. (so no Toplink this time). By the way: we used JHeadstart 9.0.4.5 in

  • [CS3 JS] Getting a page item by its script label

    I have a text frame on a master page with its script label set. In my script, I am trying to get a reference to the text frame with this: var doc = app.activeDocument; var spread = doc.masterSpreads[0]; var tabFrame = spread.allPageItems.item("TabLef

  • Date format in 11G

    Hi, I am new to OBIEE 11g report development so please excuse my daft question. In report Analysis one of the date column with value NULL is displaying value *00--0*. I have tried to format this column in "Column Properties" as well is "Conditional F

  • Process Control Error in Workspace

    Hello Gurus, Please Help me in this ASAP. we have stopped our Production servers and in the process of up and running Disaster recovery servers. completed the following tasks. system configurationis successful registered the application successfully

  • [SOLVED] Pacman error when installing Arch from installation cd

    Hey I''ve been checking the wiki, forum and even google and I've found some responses but they don't seem to apply to my problem and I just need a little help. I'm at the 4th step "Select Packages" and when I select it I get "Pacman preparation faile