OES 11 SP2 Imanager doesn't Create IP Certificates???

If I recreate certificates in Imanager from one of our older OES 2 SP3 or OES 11 SP1 systems, it recreates IP AG, SSL CertificateIP, DNS AG, and SSL CertificateDNS certificates. If I recreate them from an OES 11 SP2 system in Imanager, it only creates Certificates DNS AG and SSL Certificate DNS. I noticed there is a check box to create the IP certs, but even when that box is checked it still only creates the DNS certs. Is this how it should be? I'm guessing not since the check box still doesn't seem to affect whether the IP certs are created.

On Tue, 08 Jul 2014 16:26:02 +0000, spashia wrote:
> If I recreate certificates in Imanager from one of our older OES 2 SP3
> systems, it recreates IP AG, SSL CertificateIP, DNS AG, and SSL
> CertificateDNS certificates. If I recreate them from an OES 11 SP2
> system in Imanager, it only creates Certificates DNS AG and SSL
> Certificate DNS. I noticed there is a check box to create the IP certs,
> but even when that box is checked it still only creates the DNS certs.
> Is this how it should be? I'm guessing not since the check box still
> doesn't seem to affect whether the IP certs are created.
Yes, I've seen some other reports that suggest that it works differently
now. I don't know if this was a deliberate change, or if it's a bug. Is
it causing a problem for you?
David Gersic dgersic_@_niu.edu
Knowledge Partner http://forums.netiq.com
Please post questions in the forums. No support provided via email.
If you find this post helpful, please click on the star below.

Similar Messages

  • Creating a certificate for 802.1x wireless access....

    I know this is a complicated issue.  We are trying to setup 802.1x access to our corporate WiFi using computer identity with certificates.
    The video provided by apple here: http://www.apple.com/education/resources/information-technology.html#authenticat ion_on_mac at the 3:04 mark the instructors talk about importing a computer identity certificate into the key chain but doesn't mention how it's generted in the first place.
    This is where we are stuck.
    When we think about generating the proper certificate and click on Configure under Authenticition with TLS checked we get the following:
    No Certificates Found...
    We are using a Microsoft Windows Server 2008 Certificate Authority server as our in house certificate server.
    Any help would be greatly appreciated.  Thanks in advance!
    -Paul

    step 1a create Wirelesscert.mobleconfig with the following changing the defaults to match your needs
    The "Certtemplate key" must match the name of the Cert template on the server.
    You can use the same machine cert template as the PCs. use UUID are done in the next step
    CertServer Key use http or https depending on you cert server config
    Generic config file sortof :
    <?xml version="1.0" encoding="UTF-8"?>
    <!DOCTYPE plist PUBLIC "-//Apple//DTD PLIST 1.0//EN" "http://www.apple.com/DTDs/PropertyList-1.0.dtd">
        <dict>
            <key>PayloadContent</key>
            <array>
                <dict>
                    <key>CertServer</key>
                    <string>https://Server.domain.name/certsrv</string> 
                    <key>CertTemplate</key>
                    <string>Your_Computer_template_name</string>
                    <key>PayloadDisplayName</key>
                    <string>Enter_your_name_fort_the_policy</string>
                    <key>PayloadIdentifier</key>
                    <string>Create_payload_ident</string>
                    <key>PayloadType</key>
                    <string>com.apple.ADCertificate.managed</string>
                    <key>PayloadUUID</key>
                    <string>Change-me-to-a-new-UUID</string>
                    <key>PayloadVersion</key>
                    <integer>1</integer>
                    <key>deleted</key>
                    <false/>
                </dict>
            </array>
            <key>PayloadDescription</key>
            <string>Enter_Description_here</string>
            <key>PayloadDisplayName</key>
            <string>Enter_Display_name</string>
            <key>PayloadIdentifier</key>
            <string>Enter_paylode_name</string>
            <key>PayloadOrganization</key>
            <string>Enter_paylode_orgname</string>
            <key>PayloadRemovalDisallowed</key>
            <false/>
            <key>PayloadType</key>
            <string>SystemConfiguration</string>
            <key>PayloadUUID</key>
            <string>Change-me-to-a-new-UUID</string>
            <key>PayloadVersion</key>
            <integer>1</integer>
        </dict>
        </plist>
    Step 1b. Create two UUID on the mac command shell past into the file replace Change-me-to-a-new-UUID with two different UUIDs
    the command is "uuidgen" You must run uuidgen once for each number. Paste the resulting numbers into Wirelesscert.mobleconfig
    This must be done for every computer you install the policy on so that they are Unique to that computer.
    Do these steps in a local machine admin account  not logged into the domain
    step 2. In Lion 7.2 (only) Turn off the Cert checking to prevent a endless loop  (a known bug should be fixed in a update)
       a. open Key Chain Access
       b. Click on Keychain Acess in the apple tool bar
       c. Select Preferences
       d. Select the Certificates Tab
       f. Turn off OCSP and CRL   ( this can be turned back on after you get the Cert from ad)
    Step 3 Connect using safari to you Microsoft AD certificate server and trust the locally self signed Cert
    Step 4 copy Cert in key chain from user to system
    Step 5 open a shell for steps 6 and 7
    Step 6 type Sudo kinit -k (machinenamelowercase)$    ! the dollarsign is appended to the computer name
    Step 7 type klist -l   ! verify that a ticket in kerberos is listed under the machine name
    Step 8  double click on the file Wirelesscert.mobleconfig to import the profile and create the Certificate
    Step 9  Verify in the Key Chain that you have a system Certificate
    In the network wireless click on the Join the ssid  
    Mode is EAP-TLS
    Identity X509 Certificate  (the one just created)
    Username: host/(Your_Macs_Fully_qualified_name)
    I hope this helps now I now have a Cert from ad on the machine and I think when it expires the plugin will renew.
    Read the Original document this is based on at http://support.apple.com/kb/HT4784
    I just need to figure out how to set a policy that uses the Cert on the machine
    Message was edited by: daveBoxElderSD

  • TA24002 Is it possible to create a certificate or log to record disk erasure?

    I wanted to understand if it is possible to create a certificate or log from a Mac after a 7-pass disk erasure is performed. This is required to keep an evidence of disk erasure being performed. Something similar to what Darik's Boot & Nuke does for Windows?

    Following up on BD's post, I see that my Tiger Disk Utility Log file is in ~/Library/Logs, for instance.  It doesn't look like it gets rotated on a regular basis, so it can be pretty big.  It's best to view it in the Console utility, select the data you want to keep, then do a File->Save Selection As... operation on the info.
    Seems to be true also in Mountain Lion, so it's probably unchanged in between.

  • Trying to create a certificate file using keytool -help!

    Hi, I've followed a series of instructions using Terminal to create a certificate. Terminal produced a file and when i open it using Text Edit its about 20 lines long worth of code. I was hoping it would provide a certificate I could use. Maybe it has, I just don't know what I'm looking for!
    Im working in Viewer Builder and I'm in the Provisioning tab trying to enter the "Application ID"
    I'm totally stuck here. Please help!

    I'm using DPS pro. My app is for Android but won't be going as far as Google Play or Amazon. It's for internal use so I want to create an APK file to distribute via email. These are the set of instructions I'm following. I'm struggling to get this to work. What should I see when this has worked? Also what do I need to enter for the Application ID?
    Thanks or your help
    (Mac OS) Create a certificate file using Keytool
    Open Terminal, which is located in the Applications > Utilities folder.
    Type (or paste) the following line (replace “myname.key.p12” with the actual name of your certificate):
    1
    keytool -genkey -v -keystore myname.key.p12 -alias alias_name -keyalg RSA -keysize 2048 -storetype pkcs12 -validity 10000
    Specifying “10000” sets the expiration date after 22 October 2033.
    Enter and reenter a password. Until the Viewer Builder supports the creation of custom Android apps, it's necessary to share this password with Adobe. Create a password that you can share.
    Follow the prompts to specify the certificate information.
    When prompted to confirm choices, enter yes, and then press Return to use the same password.
    A certificate is created in your prompt location, such as your user name folder. Copy this certificate file to a known location. Write down the password as well.

  • How to create a certificate using keytool / terminal?

    I have problems with creating certificates using the terminal. I use the instructions below and typed in all the required information. When it asks me to type "yes" and confirm, the whole process just starts from the beginning over and over and I have to type in the same things. What do I do wrong? How do I confirm the information I typed in?
    I am trying to create a certificate to sign apps for GooglePlay and Amazon. I am using DPS Professional.
    Thanks for help!
    Instructions:
    (Mac OS) Create a certificate file using Keytool
    Open Terminal, which is located in the Applications > Utilities folder.
    Type (or paste) the following line (replace “myname.key.p12” with the actual name of your certificate):
    1
    keytool -genkey -v -keystore myname.key.p12 -alias alias_name -keyalg RSA -keysize 2048 -storetype pkcs12 -validity 10000
    Specifying “10000” sets the expiration date after 22 October 2033.
    Enter and reenter a password. Until the Viewer Builder supports the creation of custom Android apps, it's necessary to share this password with Adobe. Create a password that you can share.
    Follow the prompts to specify the certificate information.
    When prompted to confirm choices, enter yes, and then press Return to use the same password.
    A certificate is created in your prompt location, such as your user name folder. Copy this certificate file to a known location. Write down the password as well.

    It could be access/rights issue. Enable root user and try again.

  • Error in VT04 - Doesn't create Shipments

    Error in VT04 - Doesn't create Shipments
    We have this function module that automatically creates delivery and shipment base from the Goods Receipt.
    The problem is it doesn't createe shipment document because the delivery doc doesn't exists.
    Upop debugging, the delivery has been created. And appends the delivery number into TVARV table (found in PERFORM CHANGE_VARIANT_VALUES). Then there's this code that it doesn't recognized the delivery that it was created.
    PERFORM CHANGE_VARIANT_VALUES USING VBKOK-VBELN_VL.
          SET UPDATE TASK LOCAL.
          SUBMIT RV56TRGN WITH P_OUT  EQ C_X
                         WITH V_PSEL EQ 'RV56LFSL'
                         WITH V_PSP0 EQ 'RV56TRSP'
                         WITH V_PTR0 EQ ZVXXAUTOGRDN-DATA_OPTS
                   AND RETURN EXPORTING LIST TO MEMORY.
          COMMIT WORK AND WAIT.
    Though in the production this program works. But in QA server it doesn't. I am not sure if this is the effect of a Unicode issue also.
    Help me guys.. I just couldn't find in program RV56TRGN on how the values will get from TVARV.
    I am not familiar with the command SET UPDATE TASK LOCAL. If this is related to Memory storage that might get the last value.
    Points will be given for the helpful ideas. Thanks!

    Hi,
    The service contracts guide also says to run 'Installed Base Interface' concurrent program for shippable items. Even after running this concurrent program no contracts is created.
    Any step to be done further??
    Regards,
    Nithya

  • How to create a certificate signing request that works with Microsoft CA

    Hi, I have created a certificate signing request file with keytool. When I try to create a certificate from it with CertReq (I use a Microsoft CA) I get the following error message:
    Certificate not issued (Denied) Denied by Policy Module The request does not contain a certificate template extension or the CertificateTemplate request attribute. (The request contains no certificate template information. 0x80094801 (-214687 5391)) Certificate Request Processor: The request contains no certificate template information. 0x80094801 (-2146875391) Denied by Policy Module The request does not contain a certificate template extension or the CertificateTemplate request attribute.
    How do I create a certificate signing request file so that a Microsoft CA will accept it and create a certificate from it. Thanks, Linh.

    I'm writing a applecation about x509 to deal with certificate and certificate request.
    I found that DER format certificate request create by sun's software with no extensions.
    I think this cause your error.My be MS CA can't identify such a request!So it's difficult to solve this problem unless MS or Sun change their codes.
    JStranger

  • Oracle Wallet Manager won't allow me to create a certificate request

    Hello,
    I am trying to setup my installation with SSL, I am trying to create a certificate request on Oracle Wallet Manager and I keep getting this error:
    "Could not create certificate request. Please check user information"
    I am entering the following information:
    Common Name: portal.grupoalsea.com.mx
    Organizational Unit: Desarrollo
    Organization: Sistema Integral de Administracion, S.A. de C.V.
    Locality/City: Distrito Federal
    State/Province: Mexico
    Country: Mexico
    Key Size: 1024 bits
    Why could this be happening? Does Oracle Wallet Manager go and look for my info some place? Common Name is the name for my site on WebCache, which is in turn mapped to the HTTP Server called Mservicio.localdomain.
    At this point, I have also tried setting the Common Name to other values, like the name of my HTTP Server, the name of my HTTP server without the "localdomain", but I still get the same message.
    Any help will be really appreciated!!!!

    Problem was due to a bug that won't allow to enter commas in Organization Name. All we needed to do is remove the comma from the Organization name and the certificate was correctly created.

  • QSynth doesn't create jack port.

    I have a problem with QSynth - it doesn't create jack port, so i can't connect it to output. When i run fluidsynth from console it works properly - it creates output, I connect it to "system" port using QJackCtl and i can hear midi sound, but i really ned QSynth. Please help me.
    Messages from QSynth:
    15:11:57.027 Qsynth1: Creating synthesizer engine...
    15:11:57.058 Qsynth1: Loading soundfont: "/usr/share/soundfonts/fluidr3/FluidR3GM.SF2" (bank offset 0)...
    15:11:57.281 Qsynth1: Creating audio driver (jack)...
    15:11:57.294 Qsynth1: Creating MIDI router (alsa_seq)...
    15:11:57.295 Qsynth1: Creating MIDI driver (alsa_seq)...
    15:11:57.296 Qsynth1: Creating MIDI player...
    15:11:57.298 Qsynth1: Synthesizer engine started.
    15:11:57.298 Qsynth1: fluid_synth_set_gain(0.97)
    15:11:57.299 Qsynth1: fluid_synth_set_reverb(0.2,0.5,10,0.1)
    15:11:57.299 Qsynth1: fluid_synth_set_chorus(3,1,0.3,8,0)
    fluidsynth: warning: Failed to pin the sample data to RAM; swapping is possible.
    fluidsynth: prog 0 0 0
    fluidsynth: prog 1 0 0
    //............. some lines like above and bellow
    fluidsynth: prog 14 0 14
    fluidsynth: prog 15 0 15
    zombified - calling shutdown handler
    fluidsynth: error: Help! Lost the connection to the JACK server
    Last edited by dawidmt (2011-08-26 13:20:17)

    Sorry about the necro, but did you ever figure this out?  I'm running into the same issue.  I think *something* is being written because when I do "efibootmgr -c blahblah", and then I do an efibootmgr -v afterward, I can see the device path that shows up in the verbose options.  Then, when I reboot, I don't see the new boot option in the menu, and when I check again via a livecd (which boots via UEFI, by the way), efibootmgr -v shows "Vendor(99e275e7-75a0-4b37-a2e6-c5385e6c00cb,)" in the extra info next to the boot option I had previously created.  That vendor and GUID seem to show up when there's no path, as I've googled it and have seen similar readouts that imply such based on the context of where I saw them.
    Anyway, help.
    Thanks.
    -TJ

  • Creating Digital certificates for SOAP Receiver Adapter

    Hi
    In Visual Admin...> if we go to the "key storage" and try to create the certificates, we have the options of
    selecting the below algorithms.
    RSA-512,1024
    DH -512,1024
    DSA-512,1024
    But SOAP Receiver Adapter supports only the below encryption algorithms.
    3DES
    DES
    RC2-40
    RC2-64
    RC2-128
    Still if I try to use any of the RSA, DH, DSA algorithms to create the certificates in visual admin and if I
    use the same certificate in SOAP Receiver adapter, I am getting the below error in sxmb_moni
    com.sap.aii.af.ra.ms.api.DeliveryException: Unsupported keysize or algorithm parameters.
    Could you plz advise, is there any provision in XI to create the certificates using the algorithmS 3DES, DES, RC2 ? or We got to import the certificates from third-party which supports 3DES, DES and RC2 ??
    Regards
    kumar

    can't wait further so closing the thread

  • Creating SSL certificate and configuring it with JBOSS 4.0.1

    I have to post some data to a secured site from my application.
    For this, I am creating connection to that site using URLConnection and to send data I create OutputStream using the connection.
    But, while creating the stream it is showing SSLException and message is No trusted certificate found.
    For this, I need to create SSL certificate (mostly using keytool command) and configure it with my application server which is JBOSS 4.0.1
    Now, my problem is that I don't know the exact steps to create a certificate and configure it with JBOSS. Please provide the steps in detail.

    I think you have this back to front. Unless this exception came from the server, in which case it is misconfigured, you don't have to create a certificate, you have to import the server's certificate, or that of one of its signers, into the client's truststore, and tell Java where the truststore is if it's in a non-standard location.
    See http://java.sun.com/j2se/1.5.0/docs/guide/security/jsse/JSSERefGuide.html. You'll have to ask about the JBoss part in a JBoss forum.

  • HOW TO upload linux drivers to OES SP2 linux driver store

    Hi everyone,
    I couldn't get iprntcmd to upload a linux driver to OES SP2 driver
    store. Tried everything. Drove me crazy.
    The solution I finally came up with is multi-step but it works. Do
    this as root.
    First:
    You can't upload the drivers in compressed form (.gz extension) so to
    expand them all you run
    for filename in /usr/share/cups/model/*.gz; do gunzip
    /usr/share/cups/model/ "$filename";done
    This expands all the zipped files in the driver directory.
    Second:
    Run the following to upload the drivers to the driver store:
    for filename in /usr/share/cups/model/*.ppd; do iprntman driver linux
    -upload -username admin -P novell -from-ppd
    /usr/share/cups/model/"$filename";done
    Obviously, you need to substitute your own username and password (-P
    parameter). If you don't add the username and password, you'll be
    prompted for them for each driver uploaded.
    It's not pretty, but it'll get you there.
    Regards,
    Don

    Don,
    It appears that in the past few days you have not received a response to your posting. That concerns us, and has triggered this automated reply.
    Has your problem been resolved? If not, you might try one of the following options:
    - Do a search of our knowledgebase at http://support.novell.com/search/kb_index.jsp
    - Check all of the other support tools and options available at http://support.novell.com in both the "free product support" and "paid product support" drop down boxes.
    - You could also try posting your message again. Make sure it is posted in the correct newsgroup. (http://support.novell.com/forums)
    If this is a reply to a duplicate posting, please ignore and accept our apologies and rest assured we will issue a stern reprimand to our posting bot.
    Good luck!
    Your Novell Product Support Forums Team
    http://support.novell.com/forums/

  • Why background job sometimes doesn't create something while manually we can

    Hi friends,
    Can you help me to understand why Background job doesn't create Outbound Delivery where as manually we can create using VL10B with parameters same as that of the background job variant? The background job calls the program for VL10B.
    Thanks,
    Rana

    I have a similar problem on a SAP IS RETAIL site with VL10B.
    I have reviewed several notes and the solution should be in using VL10BATCH with a list profile created via VL10CUA.
    The list profile should be a copy of :
           5002 Run purchase orders in background
    into Z002 purchase orders in background
    and specify that the F CODE PROFILE is 5001 RUN DELIVERY LIST
    The create a variant from VL10BATCH and with the USER ROLE : Z002 (just created above).
    Let me know if this helps you.
    Sincerely,
    Richard ITHIER
    Sydney

  • Adobe Reader XI (11.0.08) doesn't create thumbnail (bitmap) using Microsoft Interface IExtractImage -- Extract on Windows Server 2008 R2, when exe to generate thumbnail is launched from Windows service.

    Adobe Reader XI (11.0.08) doesn't create thumbnail (bitmap) using Microsoft Interface IExtractImage --> Extract on Windows Server 2008 R2, when exe to generate thumbnail is launched from Windows service.
    But if exe is launched as standalone, then interface IExtractImage --> Extract, gives Bitmap to generate thumbnail of PDF document.
    Above problem occurs only for PDF documents, if we tried same with other software like CAD -CATIA it works without any problem.
    Is there any security concerns form PDF side, which doesn't allow to generate Bitmaps, if exe to generate it is launched form Windows service.

    It might be deliberate, Acrobat and Reader software is not intended to run in a service environment.

  • WTK 2.5 doesn't create the jar file

    Please help me! I'm using wtk2.5 and it's doesn't creates the jar file.
    The classes are created and the program run's in the test phone, but the jar file is not created...
    Any ideas...?
    Please help!
    Thank you
    Message was edited by:
    tprimus83

    I found something.
    "simply building does not create a package. Try Project -> Package -> create package.
    hth
    Kay "
    Thank you Kay i woul'd try it

Maybe you are looking for

  • Can I uninstall and go back to lion?

    My computer keeps restarting for no reason ever since I installed Mountain Lion. I have to much stuff on my computer to do a complete wipe out of the system. I hate this system. I have never had a problem untill this update.

  • Problems when trying to do a clean OS X install

    I have some problems when I'm trying to do a clean install of my 15" MBP. I'm using the Install DVD that came with the computer, but it seems like it won't read it. I find it very weird since it has no problems with reading audio CD's, and even the S

  • WRV200 Web UI Inaccessible

    Is the web UI crash still a known issue in Firmware version 1.0.32.2? The web ui on my WRV200 intermittently becomes inaccessible.  It usually dies within a day or two, but sometimes it will stay up for a couple weeks. The router still responds to pi

  • Query on Deployment of package in SCC for Standard CRM ESDMA.

    Hi All, I am trying to build a CRM mobile application in the Windows mobile. the steps that we have followed : DOE : 1. Activated and generated the Standard CRM mobile software component MAS_SMARTPHONE_DMSCV 2. We have downloaded the standard ESDMA f

  • Part of image display gone..

    Like this.. when i moving that window, image come back. But when i trying to work, image display gone... How to fix it?