Managing ASE - DBACOCKPIT, CLI or SCC?

Hi experts,
first question, is it the correct category for ASE-discussions?
Regarding my question...
I am new on ASE and want to know, which tool are you using for managing your ASE and which one is the "best" or most powerfull.
I mean the CLI will be the most powerfull, for sure, but what about the DBACOCKPIT and SAP Control Center?
I am talking about activities like:
- enlarge DB
- changing DB parameter
- starting job scheduler
- check on errors
We are using ASE on Windows and Linux RH.
Kind regards

From an ASE management perspective (ie, more of a DBA related activity), and assuming you're *NOT* running a SAP *application* on ASE, the 'right' group would probably be:
SAP Adaptive Server Enterprise (SAP ASE) for Custom Applications
On the other hand if you're running a SAP *application* on ASE, the 'right' group would be:
SAP Applications on SAP Adaptive Server Enterprise (SAP ASE)
But you can take some comfort in knowing that there are quite a few folks who routinely post in the 'wrong' group anyway, which usually isn't too much of an issue since the same folks who can help with answers/suggestions typically troll all of the ASE related groups (the 2 above plus this one).
NOTE: While I've worked with ASE for 20+ years, I do *not* (at least not yet) work with any SAP applications running on ASE, so fwiw ...
dbacockpit comes with the SAP application suite and provides a buffer between the SAP administrator and the underlying database (which could be Oracle, MSSQL, Sybase, etc), freeing the SAP administrator from having to know a lot of nitty-gritty details about DBA-related activities.
So unless you're running a SAP application in your environment you likely won't be using dbacockpit.
But if you are running a SAP application and you do in fact have access to dbacockpit ... *shrug* ... I've never used dbacockpit so I can't say one way or the other if it's 'better' than the other options (though this will really come back to the skills and knowledge of the operator, eh).
If you're looking for a GUI tool to help with ASE management you'll probably want to lean towards SCC (SAP/Sybase Control Center) as this is designed more for the general ASE DBA.
Personally ... I use the good ol' 'isql' command line tool plus a library of UNIX shell scripts for most activities ... but then I'm more of a command line type of guy.
NOTE: I don't use ASE's job scheduler; found the early incarnations buggy and somewhat convoluted; I prefer to stick with UNIX cron most of the time, or Autosys/ControlM if the client really insists on using a corporate-wide scheduling tool.

Similar Messages

  • X4200 Linux - RAID Management Utility?  CLI?

    Hello,
    Is anyone aware of any utility or CLI tool, for Linux, to view/manage the current configuration/settings of the RAID on an X4200 running Linux?
    I've looked around, but haven't been able to find anything... Might it be from Sun, or LSI Logic, or anywhere else. There's drivers available for the LSISAS1064, but that seems to be it.
    Having to reboot to view this information is just a tad annoying. ;)
    Regards,

    In case anyone might be interested...
    Sun's answer to the question basically is: LSI has not released any utility that allows RAID configuration from within Linux, so the only thing that can be done, is basically for LSi to release something... Sun took care of Solaris x86 (raidctl), but for Linux/Windows, it's up to LSI.
    sigh Oh well.
    Message was edited by:
    pmorin411

  • CiscoSecure AAA Server (Unix) -- Managing Profiles via CLI

    Greetings All,
    Am wanting to modify user profiles -- specifically, I am looking to apply or modify password expiry dates.
    I understand the general profile structure and syntax, however, I am not able to modify the profile line to include the expiration string (e.g. until "31 Dec 2005") using the UpdateProfile (with -a option) or UpdatePassword commands in the CLI. I know this can be done, easily, using the Web interface, but the situation I am currently facing dictates use of either the CLI commands or direct modification of the user record in the CS database (and I'm no SQL guru).
    Does anyone know how I can accomplish this, so that my user profiles will resemble the following:
    User Profile Information
    user = test{
    profile_id = 41
    profile_cycle = 4
    member = ANALYSTS
    password = clear "*******" <font color = "red">until "31 Dec 2005"</font>
    Thanks in advance for any assistance.
    Edwin Martinez II
    PS If I can only accomplish this by direct modification of the database record(s), can you detail the appropriate SQL commands?

    I appreciate your reply, but maybe I wasn't clear.
    I understand how to modify profiles using the UpdateProfile command. What is happening is that I cannot modify the password entry in the profile to change the expiration.
    In regards to the sample profile provided:
    user = test{
    profile_id = 41
    profile_cycle = 4
    member = ANALYSTS
    password = clear "*******" until "31 Dec 2005"
    Say user "test" has allowed his password to expire. The profile contains this expiration date (in this case, 31 Dec 2005) which you can view using the command "ViewProfile -u test". You can also modify the password using the command "ChangePassword -u test -pr clear -opw oldPasswd -npw newPasswd" or, more preferable, "UpdatePassword -u test -pr clear -npw newPasswd". Regardless how you change the password, the string representing the expiration date, " until "31 Dec 2005" ", remains unchanged.
    I was hoping that the date could be changed using the following command:
    UpdatePassword -a password = clear "******" until "1 Jan 2006"
    However, this is not happening. The end result is a profile that has, subesquently, been thoroughly munged, and there is no other recourse but to delete and recreate the profile . Definitely an unnecessary choice, but there seems to be no other recourse.
    Anyone with more insight???

  • UCS FI6248 In-band management

    Hi,
    We are currently managing our FI6248s CLI and UCS via the out-of-band managment interfaces on the FIs. Does anyone know if  the FI6248s can be managed in-band over the 1/10GBe connections?
    Thanks,           

    Hi,
    This feature is currently not avaiable for the UCS FIs.
    You will have to continue using the OOB management i.e. the mgmt0 ports only.
    Abhinav

  • Solaris 11.2 User Manager System Error

    Has anyone encountered a system error when attempting to add users as the root role or executing the user manager from the cli as root?
    I can use the gui manager after a user has been created in the staff group.  I run into issue creating the user as root in any group but staff and any default shell outside of /usr/bin/bash.
    Example - Using gui to create user in ftp group with /bin/bash as login shell with auto set for userid and home directory.
    Thanks in advance.

    No system error for me but I've filed Bug 20873166 - "User Manager" always creates user under "staff" group

  • Some small CLI's

    Hard to imagine 6 weeks after getting tons of approvals i've managed to get CLI's. But I hit the CLI button over at j.crew, gamestop, capital one and penfed and got increases.  J.crew -> 4650 -> 5050gamestop -> 750 -> 1150cap1 -> 500 -> 2500penfed -> 2500 -> 3500 Not sure what my next goal is, but I think im going to call up capital one EO again and request a CLI on my other cap1 card that was opened on the same day as this one (11-24-14) and then comine into a total of 5K+ which would be an awesome accomplishment (first single card being 5K+) And of course closing my credit one will be an accomplishment, waiting for my next statement to generate at $0 before I cancel.

    Yes-Its-Me wrote:
    A CLI is an increase no matter the amount.  Good job and enjoy it.+1 congrats

  • Sybase ASE  - consistent Backups from active snapshots coming?

    Looks like it.
    http://www.sybase.com/detail?id=1099394&EMC=notificationmysybase&attr=1099394
    “Adds the PREPARE DATABASE command. This command is very similar to the QUIESCE DATABASE command, with the exception that it does not block write activity during the HOLD phase. The HOLD/RELEASE options can be used to execute a mirror split or snapshot on the database using a certified agent, to create a copy of a database on which transaction logs can be loaded”.
    What this is suggesting is you can ‘snapshot’ a running ASE instance – and create a consistent copy from that snaphot.
    This is SAP playing catchup with other vendors – and about time.  It opens up a number of possibilities that should simplify managing ASE – integrating backup management into the VMware layer.
    However – this release is not out until October.

    hi Andy
    ok i've just learned how to operate the console...
    and the noise just happened at 8.52 though there is no record at 8.52 !
    17/11/2013 18:51:34.945 coreservicesd[67]: SFLEntryBase::ListHasChanged mach_msg returned 10000004d
    17/11/2013 18:51:34.946 coreservicesd[67]: SFLEntryBase::ListHasChanged mach_msg returned 10000004d
    17/11/2013 18:51:34.946 coreservicesd[67]: SFLEntryBase::ListHasChanged mach_msg returned 10000004d
    17/11/2013 18:54:20.530 Console[1851]: setPresentationOptions called with NSApplicationPresentationFullScreen when there is no visible fullscreen window; this call will be ignored.
    17/11/2013 18:55:56.802 xpcd[177]: restored permissions (100600 -> 100700) on /Users/davidjones/Library/Containers/com.apple.Notes/Container.plist
    17/11/2013 18:55:58.545 WindowServer[1674]: disable_update_timeout: UI updates were forcibly disabled by application "Notes" for over 1.00 seconds. Server has re-enabled them.
    though i did scroll back earlier and though i can't be certain it was happening at the this time i saw this suspicious entry repeated hundreds of times.  i'm a complete novice on console - this is just on the start-up screen - not tried any of the side menus.
    will try in safe mode next unless you think anything below is the culprit!
    17/11/2013 17:07:43.009 coreaudiod[169]: kAudioUnitErr_TooManyFramesToProcess : inFramesToProcess=1115, mMaxFramesPerSlice=512
    17/11/2013 17:07:44.007 coreaudiod[169]: kAudioUnitErr_TooManyFramesToProcess : inFramesToProcess=1115, mMaxFramesPerSlice=512
    17/11/2013 17:07:45.006 coreaudiod[169]: kAudioUnitErr_TooManyFramesToProcess : inFramesToProcess=1115, mMaxFramesPerSlice=512
    17/11/2013 17:07:46.004 coreaudiod[169]: kAudioUnitErr_TooManyFramesToProcess : inFramesToProcess=1115, mMaxFramesPerSlice=512

  • Dynamic Attributes from LDAP Authentication

    Is it possible to have attributes pulled directly from an LDAP V3 Directory and made available as HTTP Headers instead of from the Data Store? Reason I ask is that I have an existing 2 Million end users in an eDirectory that I can not make a schema change to accomodate a Data Store so i have Sun DS for Config. So I have created a new LDAP Auth Module anc have that working with eDirectory, however AM wants a profile. If I choose to "ignore" it in the Core Authentication module I can authenticate but get an Error 500 if I try to fetch attributes.
    The current workaround I have is to Dynamically create profile and define all the attributes I want copied in the new profile. Problem is this information is static. it never gets updated by AM id the eDirectory is updated. The only option is to delete the user profile.
    Is there a way around this? Would this entail a custom Response Provider that obtains attributes directly from the eDirectory? Would I still need a profile if I have a custom response provider?
    Thanks in advance

    I don't believe you have to add any attributes to a directory server's schema in order to use it as an LDAPv3 data store. This config works fine for me:
    <!DOCTYPE Requests
    PUBLIC "-//iPlanet//Sun Java System Access Manager 2005Q4 Admin CLI DTD//EN" "jar://com/iplanet/am/admin/cli/amAdmin.dtd"
    >
    <Requests>
        <ServiceConfigurationRequests serviceName="sunIdentityRepositoryService" realm="/MyRealm">
            <AddSubConfiguration serviceName="sunIdentityRepositoryService" subConfigId="LDAPv3" priority="0" subConfigName="ALDAPv3DataStore"/>
        </ServiceConfigurationRequests>
        <ServiceConfigurationRequests serviceName="sunIdentityRepositoryService" realm="/MyRealm">
            <ModifySubConfiguration serviceName="sunIdentityRepositoryService" subConfigName="ALDAPv3DataStore">
                <AttributeValuePair>
                    <Attribute name="sun-idrepo-ldapv3-config-ldap-server"/>
                    <Value>someserver.com:389</Value>
                </AttributeValuePair> 
                <AttributeValuePair>
                    <Attribute name="sun-idrepo-ldapv3-config-connection_pool_min_size"/>
                    <Value>20</Value>
                </AttributeValuePair>
                <AttributeValuePair>
                    <Attribute name="sun-idrepo-ldapv3-config-connection_pool_max_size"/>
                    <Value>90</Value>
                </AttributeValuePair>  
                <AttributeValuePair>
                    <Attribute name="sun-idrepo-ldapv3-config-organization_name"/>
                    <Value>dc=someserver,dc=com</Value>
                </AttributeValuePair> 
                <AttributeValuePair>
                    <Attribute name="sun-idrepo-ldapv3-config-authid"/>
                    <Value>uid=someuser,ou=people,dc=someserver,dc=com</Value>
                </AttributeValuePair>
                <AttributeValuePair>
                    <Attribute name="sun-idrepo-ldapv3-config-authpw"/>
                    <Value>somepassword</Value>
                </AttributeValuePair>
                <AttributeValuePair>
                    <Attribute name="sun-idrepo-ldapv3-config-users-search-attribute"/>
                    <Value>uid</Value>
                </AttributeValuePair>           
                <AttributeValuePair>
                    <Attribute name=""sun-idrepo-ldapv3-config-users-search-filter"/>
                    <Value>(objectclass=inetorgperson)</Value>
                </AttributeValuePair>           
                <AttributeValuePair>
                    <Attribute name="sunIdRepoSupportedOperations"/>
                    <!-- set according to LDAPv3Repo loadSupportedOps() -->
                    <Value>user=read,service</Value>
                    <!-- need this so we can assign services to the subrealm -->
                    <Value>realm=read,service</Value>
                    <Value>role=read</Value>
                    <Value>filteredrole=read</Value>
                    <Value>group=read</Value>
                </AttributeValuePair>
                <AttributeValuePair>
                    <Attribute name="sun-idrepo-ldapv3-config-user-objectclass"/>
                    <Value/>     
                </AttributeValuePair>
                <AttributeValuePair>
                    <Attribute name="sun-idrepo-ldapv3-config-user-attributes"/>
                    <Value>cn</Value>
                    <Value>entrydn</Value>
                    <Value>entryid</Value>
                    <Value>somecustomuserstatusattr</Value>
                    <Value>objectclass</Value>
                    <Value>sn</Value>
                    <Value>givenname</Value>
                    <Value>uid</Value>
                    <Value>userpassword</Value>
                    <Value>mail</Value>
                    <Value>telephonenumber</Value>
                    <Value>manager</Value>
                    <Value>somecustomattr</Value>
                    <Value>somecustomattr2</Value>
                </AttributeValuePair>
                <AttributeValuePair>
                    <Attribute name="sun-idrepo-ldapv3-config-people-container-name"/>
                    <Value/>
                </AttributeValuePair>
                <AttributeValuePair>
                    <Attribute name="sun-idrepo-ldapv3-config-people-container-value"/>
                    <Value/>
                </AttributeValuePair>
                <AttributeValuePair>
                    <Attribute name="sun-idrepo-ldapv3-config-agent-search-attribute"/>
                    <Value/>     
                </AttributeValuePair>  
                <AttributeValuePair>
                    <Attribute name="sun-idrepo-ldapv3-config-agent-container-name"/>
                    <Value/>     
                </AttributeValuePair>  
                <AttributeValuePair>
                    <Attribute name="sun-idrepo-ldapv3-config-agent-container-value"/>
                    <Value/>     
                </AttributeValuePair>  
                <AttributeValuePair>
                    <Attribute name="sun-idrepo-ldapv3-config-agent-search-filter"/>
                    <Value/>     
                </AttributeValuePair>  
                <AttributeValuePair>
                    <Attribute name="sun-idrepo-ldapv3-config-agent-objectclass"/>
                    <Value/>     
                </AttributeValuePair>  
                <AttributeValuePair>
                    <Attribute name="sun-idrepo-ldapv3-config-agent-attributes"/>
                    <Value/>
                </AttributeValuePair>  
                <AttributeValuePair>
                    <Attribute name="sun-idrepo-ldapv3-config-isactive"/>
                    <Value>somecustomuserstatusattr</Value>
                </AttributeValuePair>  
                <AttributeValuePair>
                    <Attribute name="sun-idrepo-ldapv3-config-psearchbase"/>
                    <Value>dc=someserver,dc=com</Value>
                </AttributeValuePair> 
                <AttributeValuePair>
                    <Attribute name="sun-idrepo-ldapv3-config-cache-enabled"/>
                    <Value>false</Value>
                </AttributeValuePair>
             <AttributeValuePair>
                    <Attribute name="sun-idrepo-ldapv3-config-errorcodes"/>
                     <Value>80</Value>
               <Value>81</Value>
               <Value>91</Value>
               <Value>85</Value>          
                </AttributeValuePair>           
            </ModifySubConfiguration>
        </ServiceConfigurationRequests>
    </Requests>
    {code}
    Note that sun-idrepo-ldapv3-config-user-attributes is configurable and you can add/remove attributes your are interested in. Also I don't know if eDirectory supports persistent searches so you might need to leave that value blank                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                       

  • "admin" profile on 9216

    I have created a new user with network-admin role. Now can I delete the admin user. Intially the admin profile was messed-up. Using admin, able to login to Fabric Manager but not CLI. Pls. suggest.

    I've run into similar problems before. First of all, know that there are 2 seperate passwords for each user - one for the CLI and one for Fabric Manager. If you are trying your FM password to log into the CLI, it won't work. (I think this went away in 2.1?) If you can log into the CLI with your new network-admin account, I would try to reset the password for the admin account. I'm not sure if you can delete it or not - I'd have to look it up, but my gut tells me you should be able to. Resetting the passwords should work though... Syntax like this:
    username admin password 5 thisismypassword role network-admin
    See page 23-5 of the Command Reference for details.

  • DCR Server Error LMS 4.0

    Hi,
    Dear Expert.
    first of all i apologies that my English is not good.
    i am using Microsoft Windows Server 2003 Enterprise Edition SP1 and using CiscoWorks
    LAN Management Solution
    Version 4.0
    when i click on discovery button in inventory menu. then i face this problem. kindly help me how can i discover my network devices.? i am using Routers, Switches, CMTS, Peplinks and Servers.
    Error
    Error in communicating with DCR Server. DCR Server may be down. Please start  the DCR Server and then start discovery.

    Can you try accessing the LMS application locally from the server using http://localhost:1741 and duplicate the problem?  The error in the logs implies the server is attempting to use a different address that is out of scope from the original DCR setup.
    com.cisco.nm.dcr.DCRException: CSTM Error Code [-3] CSTM Comm Type [0] - URN_OUT_OF_SCOPE : "LocalDCR"
    Do the following steps:
    1. Stop the CiscoWorks Daemon manager from the cli using "net stop crmdmgtd".
    2. Add the the CiscoWorks server to the host file mapping it to the ip address of the interface. Using notepad, open C:\WINDOWS\SYSTEM32\DRIVERS\etc\hosts file.  Add an entry "79.98.184.60 DELL6800" and save the file.
    3. Goto CSCOpx/bin and run the "perl hostnamechange.pl" and reboot the server.
    4. Start the services using "net start crmdmgtd" if it has not started on start up.
    5. Access the LMS page from the server itself using "http://localhost:1741" and duplicate the problem with the "admin" user.
    Let us know the results.

  • URL link Attachment Limitation in Foreground

    Hi Experts,
    When i am attaching a URL link through Services of Object for a invoice document.
    The Complete URL link is not copied to the Address field. Only it is accepting 1000 character.
    My question is how to increase the URL length. Since my requirement is the URL link are having more that 1000 characters.
    Example :
    Tcode : MIR4 --- Invoice Document , year
    when i goto the services of Object ---> Create the Attachment
    It popup a dialog box which contain the Title and Address.
    In the Address we will copy the URL Link ,
    URL :  documentum\Docbases\dmbsip_prd_docbase\Hydrocarbon Supply Chain 
              Management\Integration\Application Documentation\WORKFLOW\SCC- 
              HSM-07-00011 (T & I Automation Workflow)\Misc. DPSR Documents
    when i try to copy this URL link in the Address Field , it is not taking the Full URL link.
    Venkat

    Hi,
    I think that you need to do the possible development in the ECC backend system - not in Portal/UWL - since as far as I understood from your message, your workflow is in ECC.
    You could take a look into this recent thread:
    Empty URL Link with SAP_WAPI_ATTACHMENT_ADD
    I don't know if it will work in UWL. You could easily test it by adding and URL attachment to a work item in backend (in business workplace) and then see how it looks in UWL and does it work. If it works, you can find a solution in the above mentioned thread or perhaps you can ask further questions from the author of the thread.
    Regards,
    Karri

  • Live migration of domains with OVMM

    Can anybody point out the reference for performing live migration of domains through OVM Manager instead of CLI. Could not find it in the User's manual for OVM Server 2.2 release.

    Does the same thing happen if you initiate the live migration from within SCVMM?  Generally speaking, if SCVMM is in use, you should first try to perform the operation from SCVMM before trying to use the Failover Cluster Manager or the Hyper-V Manager. 
    Should not make any difference, but it would be another point of information.
    What is so strange is that a live migration within the cluster is not doing anything with the disks.  All it is doing is moving the executing VM from the memory of one node of the cluster to another node in the cluster.  The virtual hard disks,
    .vhd or .vhdx, are not touched, unless when you say 'live migration' you mean 'live storage migration'.  Very strange that it is only happening on the VMs with .vhd.
    Another thing you could try ... convert the .vhd on one of the problematic VMs to a .vhdx file and see if that fixes the issue.
    . : | : . : | : . tim

  • Implementing WAAS using 3925 and 2911 Cisco routers

    Dear all,
    I am new to Cisco WAAS and therefore I would like to request some help regarding the following scenario:
    I have a star network (1 hub and 5 spoke) topology where each satellite site is connected via a 2 MB  (symmetric)  to the Head-Quarters (Central node). In order to be able to concentrate all servers (services) at the head-quarters and improve the users experience in remote sites when accessing network services that are located at the head-quarters we want to implement Cisco WAAS instead of increasing the existing bandwidth.
    At the head-quarters we are using a 3925 Cisco router and at the remote locations we are using 2911 Cisco routers. Last but not least there will be approximately 75 concurrent users from remote sites accessing resources at the head-quarters.
    Currently I am planning to use the following:
    ·At the head-quarters I am planning to use a Cisco Wide Area Application Services (WAAS) Module: SM-SRE-900-K9 with an Enterprise license (for large deployment) in the Cisco router 3925
    ·At the remote sites I am planning to use a Cisco Wide Area Application Services (WAAS) Module: SM-SRE-700-K9 with an Enterprise license (for medium deployment) in the Cisco router 2911
    Is there anything else that I am missing or need to take into consideration for deploying the WAAS.
    Regards,
    Screech

    Hi Screech,
    Answers:
    Is the  dedicated WAE hw for central management purpose a required component?not required as WAEs can optimize even without Cntral managementbut you will not be able to collect statistics, reports and will have to manage WAEs from CLI. This a kind of highly recommended management piece you will need.
    What is the difference between using a full blown WAE instead of a  Sm  SRE module: Using a fully blown WAE at DC is recommended as you are then avoiding couple of bottlenecks.
    1. Bandwidth allcoation
    2. SM / NM models have low capacity, disks where as fully blown models like 674s have 10k/15k SATA / SAS drives.
    3. HW redundancy: you have backup PS / HD in dedicated WAEs in msot of the models.
    4. HW dependency: Your SM moduels depened upon your router / switch. If for some reason, switch or router goes down, SM moule goes down at same time.
    5. Additional NICs / HW availability.
    There are various other reasons you might want to consider. You can ask your cisco sales engineer or one of the PDI help engineer on the forum can also punch in here.
    but basicaly, I would go for fully blown WAE on DC side and central management piece as well.
    Regards.

  • IDS 4215, right place for a sniffing interface (DMZ or LAN)

    I have got at work this sensor with two interfaces only, I have been asked to check that
    IDSWORK# show version
    Application Partition:
    Cisco Systems Intrusion Detection Sensor, Version 4.1(1)S47
    OS Version 2.4.18-5smpbigphys-4215
    Platform: IDS-4215
    one interface which is Ethernet 0 connected to switch in DMZ , and Ethernet 1 connected to switch 4005,,,,logically I have to monitor DMZ zone not switch 4005 (since I have got only two interfaces, my case),,,Am I right ?
    That means Ethernet 0 should be for sniffing (monitoring)since it is connected to DMZ,and interface 1 for command and control since it is connected to 4005 switch, but according to cisco specification
    http://cisco.com/en/US/products/hw/vpndevc/ps4077/products_configuration_guide_chapter09186a008055df7d.html#wp1051279
    Table 5-2
    FastEthernet0/0: Interfaces Supporting Inline VLAN Pairs (Sensing Ports)
    FastEthernet0/1: Interfaces Not Supporting Inline (Command and Control Port)
    Note: Cisco has mentioned FastEthernet, the one that I have got Ethernet ,,,,does make any difference ?
    Since I have not done that configuration , it has been done by some one else, do I need to change that ?

    Looks like your IDS come with basic ports (2 x Ethernet) with E0 as C&C port, while E1 is monitoring port.
    BTW, Ethernet/FastEthernet ports are actually the same.
    To monitor your DMZ segment, place the E1 in that segment, while E0 on inside segment where besides direct managing the box from its web management GUI or CLI, you can probably can use basic VMS that is bundled free with it.
    And since you have dedicated switch to host the whole DMZ segment, you can easily monitor (SPAN) the whole box and send all traffic to IDS.
    Whether or not you need to change the config, you probably need to check it out, at least to verify which signature(s) is enabled/disabled, and pc/mgt host is allowed to access the box and so on. But it's a good practise to check and review the config/setup again as this is a security box that you need to trust to monitor and tell you about any possible threats, attacks or violations.
    HTH
    AK

  • DNS reverse by subnet configuration.

    I have two /28 subnets assigned on different /24 networks. I have recently been given DNS authority for the reverse lookups on those subnets. Since I don't want to be prodding around the named.conf file with a text editor and setting it up by hand the way that it is normally done, is there a proper way to do it with the server software?
    The usual method is explained in the client section of http://www.zytrax.com/books/dns/ch9/reverse.html, so I want to be able to set this up in the GUI.
    If I have to set it up with a text editor, will the GUI parse the changes without getting too confused?
    Is there a way to include another named.conf file for further rules that are outside the normal named.conf, like a local.conf or reverse.conf?
    Thanks for any help.
    -Cameron

    The problem with not using the GUI is Apple enterprise support. If they have any clue that you aren't using the GUI, or think that your problem might be a result of tampering with the configs outside of the GUI, they have been known to refuse to look at a problem until you remove the changes.
    I had one instance where I installed Squirrelmail and Mailman and they suggested that if they couldn't figure out why their software was reverting my postfix main.cf file, I'd have to uninstall them before they'd help me.
    I actually prefer managing configs by hand, and if I understood the internal workings of Apple's Server implementation, I'd probably do a lot more. Fortunately, in a way, I'm unable to work because of medical reasons, so I plan on spending a bunch of time tracking down how the Server software actually does its magic, which should make me more comfortable making changes.
    I've already got a few pet peeves regarding the way the server does logging. Why not pick one directory for logs instead of half a dozen, depending on what you are running.
    Once I understand the internals of Server, I won't be so hesitant about managing configs with CLI, and won't be so dependent on Apple enterprise support.

Maybe you are looking for

  • Player 12.0.0.77

    The as2 .send() is no longer working with player 12.0.0.77 My shop is loosing orders FAST...please help. And as this program for configuring custom made sliding door cubboards is more than 10 years old it was made with AS2 and cannot "just" be conver

  • How do I get my printer to match the colours of the image as I see it on screen?

    How do I get my printer to match the colours of the image as I see it on screen? My HP Office Jet Pro L7680 printer tends to print my images with a bias towards red compared to the image I am seeing on screen with Lightroom 5 using a Mac with Retina

  • How can I convert an ART file to pdf?

    How can I convert an ART file to pdf?

  • BURN AND UPLOAD PROBLEMS - VERSION 9 IS A MESS

    I LOVE MY IPOD/ITUNES AS LONG AS I LEAVE IT ALONE. EVERY TIME I AN FORCED TO UPGRADE I HAVE NOTHING BUT TROUBLE! NOW I WAS GIVEN A NEW IPOD 160G AND I WAS FORCED TO GO FRON VER 7 TO VER 9 IN TUNES OR I COULD NOT USE THE IPOD. SO I DID AND NOW I CAN'T

  • SPA3102 resetting back to save done ages ago

    Hi, Have no idea why this is happening and how but every time I update the config details for my SPA3102 it reverts back to an older copy that was saved months and months ago. It doesn't do it straight away, always after a couple mins or hours. This