Cisco prime 2.2.0 "Telnet/SSH : Unreachable"

Hi,
I've installed the Cisco Prime 2.2.0 OVA (VMware) and ran discovery with a Credential Profile.
some of the device has discovered with complete state and some with Partial Collection Failure state.
when trying to edit the device (under network inventory) and verify credentials i'm getting the above error "Telnet/SSH : Unreachable", but when SSH from the Cisco Prime CLI with the same credentials all works just fine.
%SSH-5-SSH2_SESSION: SSH2 Session request from X.X.X.X (tty = 1) using crypto cipher '', hmac '' Failed
please help...
10x
Eyal

Hi Afroz,
All of my net devices use AAA for login.
I'm using credentials profile to discover my devices and some of them has discovered as they should and some of them are partialy discover with the Cisco Prime log it with CLI/ssh issue.
But when I'm SSH to the partialy discovered device via the Cisco Prime CLI with the same credentials as configured at the credential profile, I'm able to login with no issue.
Please note - while I'm editing the partialy discovered device and testing the credential via the Prime GUI, it display the error message "Telnet/SSH : Unreachable" - and the device log meeage is %SSH-5-SSH2_SESSION: SSH2 Session request from X.X.X.X (tty = 1) using crypto cipher '', hmac '' Failed.
What does it mean?
10x
Eyal

Similar Messages

  • Cisco Prime device challenge

    How do I connect via server console to cisco prime infrastructure?
    I can ssh and telnet to it.
    What happens if the CPI is  not  pingable?
    Kindly revert,
    Regards,
    Tioluwani

    Please see a description of the issue below as regarding my first discussion above
    a description of the problem(s)I am facing with the Cisco Prime device.
    I can't connect to it via the web management interface
    It takes several attempts to boot the device... most cases it hangs in the initial stages of booting. At times it is able to boot into console mode. 
    ​I would appreciate if someone could come and look at the device
    Regards,
    Tioluwani.

  • Cisco Prime: Restore Backup-Configuration

    Hi,
    how can I restore a backup-configuration with cisco prime on a cisco-router through TFTP? 
    Is there a way to say cisco prime: logon the router through ssh and then run comand copy tftp:... ?
    Thanks for your help!
    Cu, Marco

    Marco,
    In PI you use Templates to be pushed on devices as configurations.
    For more details check the following document for Overview of device configurations from PI.
    -Thanks
    Vinod

  • Cisco Prime LMS device unreachable dont know why

    Hi
    Currently running Cisco Prime LMS v4.2
    I am trying to get some Nexus 7K Switches to work and become reachable.
    They are running  kickstart: version 6.2(2)
                                 system:    version 6.2(2)
    Now as far as I can see i have 2 identical switches but one is unreachable and the other is reachable.
    When i use my snmp tester they both work with the correct V3 auth/priv passwords and the correct ssh
    works on the switches.
    When i go to monitor/Troubleshooting Tools/Troubleshooting Workflows
    Then for the non working one  i get the following fails.... 
    Device Information   Device availability  x
    Collector Status
    Data Collection  Failure
    User Tracking    Failure
    Fault discovery   Failure
    On the working one The above all are a Success.
    Also
    Reachability Details
    Both ping and traceroute work fine on both switches 
    For the life of me I cannot see any difference in the configuration of the two devices.
    Has anyone come across this before ?
    I have attached a copy of the snmp config.
    Thanks
    Steve

    What is the server OS? Windows/Linux or Unix?
    From the server to ping and poll device for SNMP and see if both device works fine?
    SNMP walk is available under :
    Windows : NMSROOT/objects/jt/bin
    Linux/unnix/: /opt/SCOpx/objects/jt/bin
    Example:
    NSROOT/objects/jt/bin/snmpwalk -v2c -c public <ip_add> <OID>
    Try to configure the problematic device for SNMP v2 and try to add it from there and test if it works fine.
    -Thanks
    Vinod

  • Unable to Telnet / SSH to a particular cisco switch

    Hello,
    I have an unusual issue that I just can't seem to track down.  We have a Windows Server 2008 R2 box that is unable to telnet or ssh to one switch in our network.
    Server IP:  10.0.0.74
    Cisco Switch IP:  10.1.0.7
    I am able to access all other switches/routers on the 10.1.0.x network, but not this one.  I ping and tracert by ip address and name.
    We have a number other servers on our network and they all can access this switch
    Example:  
    a.  10.0.0.73 can telnet/ssh to 10.1.0.7
    b.  10.0.0.72  can telnet/ssh to 10.1.0.7
    c.  10.0.0.50  can telnet/ssh to 10.1.0.7
    d.  My workstation (10.0.250.213) can telnet/ssh to 10.1.0.7
    If anyone can help with troubleshooting further, I would greatly appreciate it.

    Thanks for the reply Philippe!  Here is the route print
    IPv4 Route Table
    ===========================================================================
    Active Routes:
    Network Destination        Netmask          Gateway       Interface  Metric
              0.0.0.0          0.0.0.0         10.0.0.2        10.0.0.74    266
             10.0.0.0      255.255.0.0         On-link         10.0.0.74    266
            10.0.0.74  255.255.255.255         On-link         10.0.0.74    266
         10.0.255.255  255.255.255.255         On-link         10.0.0.74    266
            10.10.0.0      255.255.0.0         On-link         10.0.0.74    266
           10.10.0.74  255.255.255.255         On-link         10.0.0.74    266
        10.10.255.255  255.255.255.255         On-link         10.0.0.74    266
            127.0.0.0        255.0.0.0         On-link         127.0.0.1    306
            127.0.0.1  255.255.255.255         On-link         127.0.0.1    306
      127.255.255.255  255.255.255.255         On-link         127.0.0.1    306
            224.0.0.0        240.0.0.0         On-link         127.0.0.1    306
            224.0.0.0        240.0.0.0         On-link         10.0.0.74    266
      255.255.255.255  255.255.255.255         On-link         127.0.0.1    306
      255.255.255.255  255.255.255.255         On-link         10.0.0.74    266
    ===========================================================================
    Persistent Routes:
      Network Address          Netmask  Gateway Address  Metric
              0.0.0.0          0.0.0.0         10.0.0.2  Default
    ===========================================================================
    IPv6 Route Table
    ===========================================================================
    Active Routes:
     If Metric Network Destination      Gateway
      1    306 ::1/128                  On-link
      1    306 ff00::/8                 On-link
    ===========================================================================
    Persistent Routes:
      None
    Firewall is disabled and there is no active antivirus.  Im pretty sure port blocking is not the issue.  I am able to ssh and telnet from this box to every other switch/router in our network.
    This server has Solarwinds on it and tracks the health of our network (servers, routers, switches, ups, ect.).  The only reason we noticed an issue is because it stopped backing up the config for this particular switch.  All other switchs/routers
    config is backed up to this server every morning at 2:00AM.  
    With solarwinds, this server is also able to communicate with this switch via snmp / icmp and ping.
    Thanks again for the help!

  • Prime 4.2 Telnet/ SSH Connections to Switches

    Hi everybody,
    I have a problem with LMS 4.2 and use Telnet/ SSH tool to open network devices.
    If I start the tool telnet/ssh, always starts a telnet session and no ssh session.
    But telnet is disabled on all devices in my network. Can I change something to open automatically a ssh session with putty?
    regards Bjoern

    Hi Bjoern,
    I am assuming you refer to the Device Center > Tools > Telnet/SSH option.
    The problem is not on LMS actually. What happens is that in the background, a telnet:// is being called.
    What will happen is that your system will launch whatever application has been assigned to the telnet protocol, typically the Windows CMD, which will open a telnet session automatically.
    In order to change this to use Putty for example, which would allow you to change to SSH connectivity (manually though) you can do the following:
    1) BACKUP YOUR REGISTRY.
    Go to Start > Run > Regedit > File > Export.
    2) Locate the following key:
    HKEY_CLASSES_ROOT > Telnet > shell > Open > command > (default)
    3) Modify the key value to point to the location of your "putty.exe" file (make sure to include the double quotes).
    Default value:
    "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\url.dll",TelnetProtocolHandler %l
    New value (will open putty automatically to the selected IP):
    "D:\Tools\putty.exe" %l
    New value (will open putty normally, you will need to type the IP but can change the connection protocol/port if desired):
    "D:\Tools\putty.exe"
    This should make your system open Putty for any "telnet://" links, including the Telnet/SSH link in the Tools section of Device Center.
    Best regards,
    Luis
    Message was edited by: Luis Jimenez
    Message was edited by: Luis Jimenez

  • Install wildcard SSL on Cisco Prime Infrastructure 1.4

    I'm trying to install a wildcard SSL on a Cisco Prime Infrastrucure 1.4.
    I've manage to install this certificate on the Cisco 5508 WLC, however not so much success with the Cisco Prime.
    There are alot of documentation regarding the installtion of CSR certificates however I could not find anything related to wildcard or public key certificates from Cisco.
    I did find the following from a NetBoyers, I've tried this process however this seems to apply for NCS versions prior to 1.4 as it was unsuccessful
    Any assistance would be creatly appreciated.

    I was able to follow the procedure in the Admin Guide to successfully import and use a CA-issued wildcard certificate (from GoDaddy) with unencrypted private key where the original CSR was not generated by the Prime Infrastructure server.
    Prime needs to be defined with a record in your DNS serving the domain in the wildcard certificate. In my case I am using both an A record and cname alias.
    Following a server restart the wildcard certificate appears fine in Chrome, Firefox and IE when I browse to https://prime.<my_customer's_domain>.
    Below are the commands I used. You would need to have your own certificate and keyfile. My certificate includes the full chain - server certificate, intermediate certificate and root certificate in that order.
    PI01/admin# copy ftp://192.168.254.7/privatekeyplaintext.pem disk:
    Username: admin
    Password:
    PI01/admin# copy ftp://192.168.254.7/gd_bundle-g2-g1.crt disk:
    Username: admin
    Password:
    PI01/admin#
    PI01/admin# root
    Enter root password : 
    Starting root bash shell ... 
    ade # pwd
    /root
    ade #
    ade # cd ..
    ade #
    ade # cd localdisk
    ade # ls -al
    total 68
    drwxr-xr-x 8 root root 4096 Nov 2 09:51 .
    drwxr-xr-x 28 root root 4096 Oct 28 11:22 ..
    lrwxrwxrwx 1 root root 20 Jul 14 13:11 crash -> /opt/CSCOlumos/crash
    drwxr-xr-x 2 root root 4096 Jul 15 23:31 defaultRepo
    drwxr-xr-x 2 root root 4096 Jul 14 13:10 ftp
    -rw-rw-rw- 1 root gadmin 6710 Nov 2 09:51 gd_bundle-g2-g1.crt
    drwx------ 2 root root 16384 Apr 17 2014 lost+found
    -rw-rw-rw- 1 root gadmin 1679 Nov 2 09:50 privatekeyplaintext.pem
    drwxr-xr-x 2 root root 4096 Jul 14 13:10 ssh
    drwxr-xr-x 2 root root 4096 Jul 14 13:10 telnet
    drwxr-xr-x 2 root root 12288 Nov 2 09:57 tftp
    ade #
    ade # mv ./gd_bundle-g2-g1.crt ./defaultRepo
    ade # mv ./privatekeyplaintext.pem ./defaultRepo
    ade #
    ade # exit
    exit
    PI01/admin# show repository defaultRepo
    PI01-140715-0330.tar.gpg
    PI01-140716-0330.tar.gpg
    gd_bundle-g2-g1.crt
    privatekeyplaintext.pem
    PI01/admin#
    PI01/admin# ncs key importcacert wildcardcert gd_bundle-g2-g1.crt repository defaultRepo
    INFO: no staging url defined, using local space. rval:2
    truststore used is /opt/CSCOlumos/conf/truststore
    The NCS server is running
    Changes will take affect on the next server restart
    Importing certificate to trust store
    PI01/admin#
    PI01/admin# ncs key importkey privatekeyplaintext.pem gd_bundle-g2-g1.crt repository defaultRepo
    INFO: no staging url defined, using local space. rval:2
    INFO: no staging url defined, using local space. rval:2
    truststore used is /opt/CSCOlumos/conf/truststore
    The NCS server is running
    Changes will take affect on the next server restart
    Importing RSA key and matching certificate
    PI01/admin#
    PI01/admin# ncs stop
    Stopping Network Control System...
    This may take a few minutes...
    Network Control System successfully shutdown.
    Plug and Play Gateway is being shut down..... Please wait!!!
    Stop of Plug and Play Gateway Completed!!
    SAM daemon process id does not exist
    DA daemon process id does not exist
    DA syslog daemon process id does not exist
    PI01/admin# ncs start
    Starting Network Control System...
    This may take a few minutes...
    Network Control System started successfully.
    PI01/admin#

  • Cisco Prime Assurance install Help..!!!! :( :(

    Hi all,
    We would like to bring cisco prime assurance 9.1 in to our Organization
    Guys could you please provide me install guide or screen shot of the  application for the assurance version 9.1 and I wanted to know the prerequisite  for this application like server requirement etc
    We are having a UCS in which we can run a VM machine but I wanted to know is  cisco prime is installed on windows server 2008 ent edition R2,R1?
    Or it has any OVI template like CUCM or how do I install and integrate  it?
    Please help me to proceed in this case..
    Rgds,
    Rebecca
    God bless u all!!

    Hi Rebecca,
    Well....at least you're getting there
    I believe you'd need glabaladmin for the UI as admin is for cli;
    User Accounts
    For  Prime Collaboration, you will be required to specify various passwords  at different instances. This section is designed to help you specify  appropriate passwords in several scenarios that demand your login  credentials (applicable for both converged application and standalone  Prime Collaboration Assurance and Prime Collaboration Provisioning  applications).
    •globaladmin- A superuser who can access both Prime Collaboration Assurance and Prime Collaboration Provisioning UIs.
    •globaladmin  password- Specify this password when you configure your virtual  appliance for either standalone or converged applications. See Configuring the Prime Collaboration Assurance Virtual Appliance and Configuring the Prime Collaboration Provisioning Virtual Appliance. You are also required to specify this password when you log in to the UI (see Password Rules for root User and globaladmin).
    In  Prime Collaboration Provisioning, this password is synched with the  password of postgres admin (to perform backup and restore operations).  The password is then updated in the database and in the /opt/cupm/sep/dfc.properties file. You must log in as a root user to access the dfc.properties file.
    Note If  you plan to install both Prime Collaboration Assurance and Prime  Collaboration Provisioning, ensure that you specify the same password  for both applications during installation.
    •CLI Admin Username—The default username is admin. However, you can specify the username of your choice.
    •CLI  Admin Password—Specify a password for the SSH CLI admin. This password  is used to log in to the CLI to check the application status and perform  backup and restore (see Password Rules for CLI admin).
    The  CLI is supported only through SSH; Telnet is not supported. You can log  in through SSH using port 26 for Assurance and port 22 for Provisioning.
    •Root user—A superuser who has all privileges in Linux shell.
    •Root password—Specify a password for the root user (see Password Rules for root User and globaladmin).
    Password Rules for root User and globaladmin
    •Must contain at least one of each: lowercase letter, uppercase letter, number, and special characters.
    •No character in the password may be repeated more than three times consecutively.
    •Cannot contain non-ASCII characters, %, +, and &.
    •Cannot be cisco or ocsic or any variant obtained by changing the capitalization of letters therein, or by substituting 1,!, or | for i, substituting 0 for o, or substituting $ for s.
    •Cannot be same as the username, and cannot be the username reversed.
    •Must contain from 8 to 80 characters.
    •Cannot end with these characters: *, ; or #.
    Caution We recommend that you write down the root password, as it cannot be retrieved.
    Note•To  change the root password, you must log in as root user and execute the  "passwd" command, which prompts you for a new password.
    •If  you are planning to integrate Provisioning and Assurance servers, make  sure that you adhere to the Assurance-specific globaladmin password  rules while setting up / creating the password for globaladmin in  Provisioning.
    Password Rules for CLI admin
    •Must contain atleast six characters.
    •Must contain at least one of each: lowercase letter, uppercase letter, and number.
    •Must not be the same as the username itself.
    Installation Prompts
    We  recommend that you find out the values beforehand for the following  parameters, as you will be required to enter them at the console prompts  when you configure the virtual appliance:
    •IP address—The IP address of the virtual appliance. If you wish to change the IP address, see
    •IP default netmask—The default subnet mask for the IP address
    •IP default gateway—The IP address of the default gateway
    •Default DNS domain—The default domain name
    •Primary nameserver—The primary name server. You may add a name server. To configure several name servers, enter y.
    •Primary NTP server[time.nist.gov]—The primary NTP server. To enter a secondary NTP server, enter y at the next prompt.
    Note Prime Collaboration 9.5 supports three NTP servers. To configure a tertiary NTP server, enter y at the next prompt, after you specify a secondary NTP server.
    •Timezone—The  timestamp that is displayed on the UI is the server time. By default,  the configured timezone is UTC. For a list of supported timezones, see Supported Timezones for Prime Collaboration. You must use the same timezone for Prime Collaboration Assurance and Prime Collaboration Provisioning servers in converged mode.
    •Username—The CLI admin username. The default is admin. However, you can specify the username of your choice.
    •Password—The  CLI admin password. This password is used to log in to the CLI to check  the application status and perform backup and restore.
    •Root user—A superuser who has all privileges in Linux shell.
    •Root password—Specify a password for the root user.
    •globaladmin—A  superuser of the application who has all privileges, and whose account  used for initial login to the application (UI).
    •globaladmin password—Specify a password for the globaladmin.
    •Network deployment mode-Select the network deployment mode you need. Specify E for Enterprise Deployment or M for Managed Service Provider Deployment (E/M).
    http://www.cisco.com/en/US/docs/net_mgmt/prime/collaboration/9.5/quick/start/guide/Cisco_Prime_Collaboration_Quick_Start_Guide_9_5.html#wp109430
    Cheers!
    Rob
    "When it comes to luck you make your own  " 
    - Springsteen

  • Cisco Prime 2.0 - CLI credential

    Hi PI Experts,
    Is CLI credential mandatory on Cisco Prime?
    What would happen if no dedicated CLI credential were configured on Prime to access Cisco network devices?
    Right now we use TACACS+ to login to Cisco switches and routers and use Radius to login to PI.
    However, our security policy prevents us from either creating a AD account on AD servers or creating a local TACACS+ user account on ACS server for PI appliance.
    So, when we do device discovery, if we want to use SSH/Telnet, we need to put in our own AD user credentials, then remove them after the discovery is done.
    Thanks
    Cedar

    Hi Ceder,
    What would happen if no dedicated CLI credential were configured on Prime to access Cisco network devices?
    why Telenet credentilas are required :
    Telnet Credential
    you can specify the Telnet credentials during discovery so that Prime  Infrastructure can collect the device configurations and fully manage  the devices. If you do not specify Telnet credentials in the discovery  settings, Prime Infrastructure discovers the devices but is unable to  manage the device until you specify the Telnet credentials.
    In  case you are using SSH  on your devices:
    SSH Credential
    For full device support via SSH, you must use SSHv2 with a 1024 bit key. You can configure SSH before running discovery.
    Telnet\SSH , credentilas would be required later on as well to Fetch the config , to push any template on the device etc..
    Thanks-
    Afroz
    [Do rate the useful post]
    ****Ratings Encourages Contributors ****

  • Topology View / Service with Cisco Prime Infrastructure 2.x "PRIME-NCS-APL-K9" ????

    Hi Team,
    Hope you all doing well.
    I just want know few thing about Cisco Prime Infra 2.x.
    1st thing is does CPI2.x support Network topology View? if not then is that any other feature which can provide Network View (exa :- Map,etc)?
    2nd thing is it possible to take Telnet/Ssh of discovered device from CPI2.x then how we can do that?
    3rd Thing if we want to add third party device in CPI2.x then what are prerequisite for the same (Vendor MIB, etc) and procedure?
    Your help will be appreciated.
    Thanks,
    Vishal

    Hi Vishal,
    Since you don't have any data as such on PI 2.1 , go ahead installed PI 2.2 on the Appliance.
    Yes , you need to download , the .ISO image and burned it on DVD and start the installation.
    here is the download link::
    https://software.cisco.com/download/release.html?mdfid=286236028&flowid=72882&softwareid=284272932&release=2.2&relind=AVAILABLE&rellifecycle=&reltype=latest
    You need to check if you are entitle for download or not.
    Can we installed PI 2.2 from current PI 2.1 GUI access? No , it is not possible.
    check these links for installation step::
    http://www.cisco.com/c/en/us/td/docs/net_mgmt/prime/infrastructure/2-2/quickstart/guide/cpi_qsg.html#pgfId-43441
    http://www.cisco.com/c/en/us/td/docs/net_mgmt/prime/infrastructure/2-2/hardware_install/guide/Cisco_PI_Hardware_Appliance_Installation_Guide/cpi_higmain.html#pgfId-1062344
    Thanks-
    Afroz
    ***Ratings Encourages Contributors ****

  • Cisco Prime 'Nouser' device alarms...

    Dear All,
    I have a recently setup Cisco Prime solution running in our test lab with a view to managing various wireless lan controllers and associated AP's. As part of the device management process we are using SNMPv3 but do not want to allow the PRIME v1.2 appliance to use HTTPS or SSH for management. So left this config empty when setting up the device telnet/SSH and HTTP fields when adding our WLC within the device centre.
    We now get the following alarm regularly....Is there any way of avoiding this and disabling the telnet/SSH/HTTP options or is it a MUST DO thing?
    User 'nouser' with IP Address '10.172.198.19' has made too many unsuccessful login attempts.
    Any advice gratefully received.
    Thanks.

    Hi,
    Here is the link to the document containing the detailed steps regarding Credential Sets.
    After defining your sets then set up Credential Set Policies.
    Thanks!

  • Getting past "Fetch VLAN configuration - Command failed" errors in Cisco Prime Infrastructure 2.0 - How?

    I've got a handful of devices in Cisco Prime Infrastructure 2.0 which show up in the "Archive Failed Devices" view.  The "Failure Reason" is some variation of "Fetch VLAN configuration - Command failed" sometimes including "TELNET: Failed to establish TELNET connection to x.x.x.x".  What does this mean?  How do I overcome this?  In all cases, the device is configured to use SSH and has valid SSH credentials.  In all cases, I can SSH from the command line of the NCS appliance to the devices listed in the "Archive Failed Devices" view.

    Hi
    I was able to fix the "Fetch VLAN configuration - Command failed" by allowing tftp from the device to PI server in firewall. See if this can help.

  • Can't ping, telnet, SSH or find APs in ARP, but associated to WLC & has clients

    Hi All,
    I have an interesting problem. I have a Cisco 2504 WLC, and six Access Points that are associated to it.  I can reach 4 of the access points, which are connected to Cisco 300 POE switches, but the other 2 I cannot ping, telnet, SSH or find in the ARP table on the network.  However, they are both associated to the WLC and as far as I can tell, they have clients associated to them.  If I reboot them from the WLC, they find their way back to the correct WLC, and the WLC sees them in CDP, but I still can't access them in any way.
    The two problem APs appear to be connected to ports 3 & 4 on the WLC, which are the POE ports. I read some documentation that says that those ports don't support Access Points but basically that you can still connect them and have it work, but don't expect any help from Cisco if you run into problems.  I've confirmed that POE is being supplied in the port configs, and I have other sites with WLC's that are configured identically with APs on ports 3 & 4 that are up and not having any issues.
    Wondering if anyone has had similar issues and if so, can you shed any light on this strange behavior?
    Thanks.

    please
    https://supportforums.cisco.com/discussion/11288621/2500-wlc-attach-ap

  • Cisco Prime 2.0

    Hi,
    I am trying to distribute an image to my device (3750G)
    Error:
    SWIM5017: Could not initiate copy operation to device. Recommended Action: 
    Please verify whether PI server is reachable (pingable) from device.
    Error loading image to Flash.For more details please check /opt/CSCOlumos/conf/ifm/swim/jobs/10.1.1.1_tftp_telnet.log for the output from the device on which the image transfer failed.Image Copy Operation Failed
    The supported protocols for image transfer are: SCPConnecting to the device using SSH...Connected successfully.Sufficient free space is available on flash1 to copy the image.
    Retrieving configuration file from the device...Current device config is copied to /opt/CSCOlumos/conf/ifm/swim/jobs/10.1.1.1_ConfigChecking if HTTP server is enabled on the device...
    Http Server is not enabled, will continue with Software Upgrade Operation.Copying c3750-ipbasek9-mz.122-58.SE2.bin from Software 
    Repository to scp-specific directory.Copied successfully to /localdisk/tftp/c3750-ipbasek9-mz.122-58.SE2.binLoading image file to flash device : c3750-ipbasek9-mz.122-58.SE2.bin --> 
    flash1:c3750-ipbasek9-mz.122-58.SE2.bin using SCP Error loading image to Flash.
    For more details please check /opt/CSCOlumos/conf/ifm/swim/jobs/10.1.1.1_scp_telnet.log for the output from the device on which the image transfer failed.Image Copy Operation Failed
    Cisco Prime 2.0 error SWIM5001 Image copy operation failed
    Regards,
    Otto

    Hi Jonas,
    thnx for the reply but I already found the answer.
    The answer is:
    Upgrade to Prime 2.1 and the use of tar-files to deploy images to the switches.
    Regards,
    Otto

  • Cisco Prime Infra 1.2 Web server

    Hello,
    I have installed a version of Cisco Prime Infrastructure 1.2.11 with a kickstart .ova file on my production network.
    Everything goes fine and I follow the instructions for installation ; i can ping my Cisco PI server and ssh into it as admin.
    However, when I try to reach the web server via https, it does not work. I have reviewed my proxy settings and they are not to blame. The nslookup returns the IP address when I poll it. I have read elsewhere that I would need "NCS" service to be started, but I can't find anything called NCS on my Prime Infra server in CLI mode.
    Anyone with a suggestion for this issue ?
    Thanks
    Jeremy

    Actually I know what's happening ; the PnP (plug n play) setup was not configured, and so 443 port was not up.
    I configured PnP using "pnp setup" command, but then I have to supply a list of certificates and keys :
    Enter absolute pathname of PnP Gateway server key file:
    Enter absolute pathname of PnP Gateway server certificate file:
    Enter absolute pathname of Prime Infrastructure server certificate file:
    I tried to do this with the private key I had for my server. I created it on my Certificate Authentication and got a .key and a .csr (certificate server request).
    However when i feed them to my PnP setup I get this error :
    Setup is in progress.......
    Stop PnP Gateway server
    OpenSSL command failed for mycert.csr and mykey.key
    any idea as to why this is happening?
    I read elswhere again that i need to run commands with "ncs" but I don't have "ncs" commands on my prompt...
    Thank you for your time

Maybe you are looking for

  • Table Controls/Settings in VF02/VF03

    Hi, Is anyone aware of way to supress the Table Control icon on VF02 and VF03 using exits or a badi. We have a situation where we need to hide the Cost (WAVWR) field from certain users but not for the majority (we've hidden the cost in the pricing co

  • Overlay Creator preview issues

    I'm currently working on creating a tablet publication pitch for a client and followed the directions to install the Folio Producer tools compatible with CS 5.5 and everything seems to be working... except for the preview option on Overlay Creator an

  • OO4O in NET framework

    As there is no immediate plan to make object-relational features in ODP.NET, does Oralce plan to release any bridge to make OO4O accessible from .NET framework?

  • Kernel 2.6.10 conflicts with hardware volume control SOLVED

    I've just installed a custom 2.6.10 kernel on my Dell laptop, compiled using ABS with the config from my current 2.6.9 kernel, which works perfectly. 2.6.10 boots up fine mostly - one error message about usbdevfs, which is easily corrected - and my h

  • Authorization Object - Checks

    Hello Experts, We make use of Authority checks in our applications which require User authorization . For example Sales application makes use of Standard authorization object 'V_VBAK_VKO' . AUTHORITY-CHECK OBJECT 'V_VBAK_VKO'        ID 'VKORG' FIELD