A conflicting local user account as indicated was found on the identified nodes Oracle 12c GRID runclufy check
Dear Team,
Oracle 12c GRID Runclufy check failing with below error. Even After Changing Local Built in Administrator User Name also same failure reporting. Kindly help to resolve this Issue and Provide steps to Avoid this conflict.
Windows user account consistency check across nodes - Checks consistency of Windows user account across nodes Error:
PRVG-11818 : Windows user "MDCCOMMONLDAP\Administrator" is a domain user but a conflicting local user account was found on nodes "sep03vvm-401,sep03vvm-402" -
Cause: A conflicting local user account as indicated was found on the identified nodes. - Action: Ensure that the Windows user account used for Oracle installation and configuration is defined as a domain user on all nodes or as a local user on all nodes, but not a mixture of the two.
Check Failed on Nodes: [sep03vvm-402, sep03vvm-401]
c:\Oracle12c_software\Oracle12c_grid\grid>runcluvfy.bat stage -pre crsinst -verbose -n SEP03VVM-401,SEP03VVM-402
Performing pre-checks for cluster services setup
Checking node reachability...
Check: Node reachability from node "sep03vvm-401"
Destination Node Reachable?
sep03vvm-401 yes
sep03vvm-402 yes
Result: Node reachability check passed from node "sep03vvm-401"
Checking user equivalence...
Check: User equivalence for user "Administrator"
Node Name Status
sep03vvm-402 passed
sep03vvm-401 passed
Result: User equivalence check passed for user "Administrator"
Checking node connectivity...
Interface information for node "sep03vvm-402"
Name IP Address Subnet Gateway Def. Gateway HW Addre
ss MTU
PublicLAN 153.71.45.202 153.71.45.0 On-link 153.71.45.254 00:50
:56:91:05:30 1500
PrivateLAN 10.10.10.15 10.10.10.0 On-link 153.71.45.254 00:5
0:56:91:75:1B 1500
6TO4 Adapter 2002:9947:2dca::9947:2dca 2002::
00:00:00:00:00:00 1280
Interface information for node "sep03vvm-401"
Name IP Address Subnet Gateway Def. Gateway HW Addre
ss MTU
PublicLAN 153.71.45.201 153.71.45.0 On-link 153.71.45.254 00:50
:56:91:56:B6 1500
PrivateLAN 10.10.10.14 10.10.10.0 On-link 153.71.45.254 00:5
0:56:91:60:99 1500
6TO4 Adapter 2002:9947:2dc9::9947:2dc9 2002::
00:00:00:00:00:00 1280
Check: Node connectivity of subnet "153.71.45.0"
Source Destination Connected?
sep03vvm-402[153.71.45.202] sep03vvm-401[153.71.45.201] yes
Result: Node connectivity passed for subnet "153.71.45.0" with node(s) sep03vvm-
402,sep03vvm-401
Check: TCP connectivity of subnet "153.71.45.0"
Source Destination Connected?
sep03vvm-402 : 153.71.45.202 sep03vvm-402 : 153.71.45.202 passed
sep03vvm-401 : 153.71.45.201 sep03vvm-402 : 153.71.45.202 passed
sep03vvm-402 : 153.71.45.202 sep03vvm-401 : 153.71.45.201 passed
sep03vvm-401 : 153.71.45.201 sep03vvm-401 : 153.71.45.201 passed
Result: TCP connectivity check passed for subnet "153.71.45.0"
Check: Node connectivity of subnet "10.10.10.0"
Source Destination Connected?
sep03vvm-402[10.10.10.15] sep03vvm-401[10.10.10.14] yes
Result: Node connectivity passed for subnet "10.10.10.0" with node(s) sep03vvm-4
02,sep03vvm-401
Check: TCP connectivity of subnet "10.10.10.0"
Source Destination Connected?
sep03vvm-402 : 10.10.10.15 sep03vvm-402 : 10.10.10.15 passed
sep03vvm-401 : 10.10.10.14 sep03vvm-402 : 10.10.10.15 passed
sep03vvm-402 : 10.10.10.15 sep03vvm-401 : 10.10.10.14 passed
sep03vvm-401 : 10.10.10.14 sep03vvm-401 : 10.10.10.14 passed
Result: TCP connectivity check passed for subnet "10.10.10.0"
Check: Node connectivity of subnet "2002::"
Source Destination Connected?
sep03vvm-402[2002:9947:2dca::9947:2dca] sep03vvm-401[2002:9947:2dc9::9947:2dc
9] yes
Result: Node connectivity passed for subnet "2002::" with node(s) sep03vvm-402,s
ep03vvm-401
Check: TCP connectivity of subnet "2002::"
Source Destination Connected?
sep03vvm-402 : 2002:9947:2dca::9947:2dca sep03vvm-402 : 2002:9947:2dca::9947:
2dca passed
sep03vvm-401 : 2002:9947:2dc9::9947:2dc9 sep03vvm-402 : 2002:9947:2dca::9947:
2dca passed
sep03vvm-402 : 2002:9947:2dca::9947:2dca sep03vvm-401 : 2002:9947:2dc9::9947:
2dc9 passed
sep03vvm-401 : 2002:9947:2dc9::9947:2dc9 sep03vvm-401 : 2002:9947:2dc9::9947:
2dc9 passed
Result: TCP connectivity check passed for subnet "2002::"
Interfaces found on subnet "153.71.45.0" that are likely candidates for VIP are:
sep03vvm-402 PublicLAN:153.71.45.202
sep03vvm-401 PublicLAN:153.71.45.201
Interfaces found on subnet "2002::" that are likely candidates for VIP are:
sep03vvm-402 6TO4 Adapter:2002:9947:2dca::9947:2dca
sep03vvm-401 6TO4 Adapter:2002:9947:2dc9::9947:2dc9
Interfaces found on subnet "10.10.10.0" that are likely candidates for a private
interconnect are:
sep03vvm-402 PrivateLAN:10.10.10.15
sep03vvm-401 PrivateLAN:10.10.10.14
Checking subnet mask consistency...
Subnet mask consistency check passed for subnet "153.71.45.0".
Subnet mask consistency check passed for subnet "10.10.10.0".
Subnet mask consistency check passed for subnet "2002::".
Subnet mask consistency check passed.
Result: Node connectivity check passed
Checking multicast communication...
Checking subnet "153.71.45.0" for multicast communication with multicast group "
224.0.0.251"...
Check of subnet "153.71.45.0" for multicast communication with multicast group "
224.0.0.251" passed.
Check of multicast communication passed.
Checking the status of Windows firewall
Node Name Enabled? Comment
sep03vvm-402 no passed
sep03vvm-401 no passed
Result: Windows firewall verification check passed
Check: Total memory
Node Name Available Required Status
sep03vvm-402 4.9996GB (5242420.0KB) 4GB (4194304.0KB) passed
sep03vvm-401 4.9996GB (5242420.0KB) 4GB (4194304.0KB) passed
Result: Total memory check passed
Check: Available memory
Node Name Available Required Status
sep03vvm-402 3.6612GB (3839028.0KB) 50MB (51200.0KB) passed
sep03vvm-401 3.3152GB (3476244.0KB) 50MB (51200.0KB) passed
Result: Available memory check passed
Check: Swap space
Node Name Available Required Status
sep03vvm-402 5.8121GB (6094388.0KB) 4.9996GB (5242420.0KB) passed
sep03vvm-401 5.8121GB (6094388.0KB) 4.9996GB (5242420.0KB) passed
Result: Swap space check passed
Check: Free disk space for "sep03vvm-402:C:\Windows\temp"
Path Node Name Mount point Available Required Stat
us
C:\Windows\temp sep03vvm-402 C 82.6484GB 1GB pass
ed
Result: Free disk space check passed for "sep03vvm-402:C:\Windows\temp"
Check: Free disk space for "sep03vvm-401:C:\Windows\temp"
Path Node Name Mount point Available Required Stat
us
C:\Windows\temp sep03vvm-401 C 82.6112GB 1GB pass
ed
Result: Free disk space check passed for "sep03vvm-401:C:\Windows\temp"
Check: System architecture
Node Name Available Required Status
sep03vvm-402 64-bit 64-bit passed
sep03vvm-401 64-bit 64-bit passed
Result: System architecture check passed
Checking length of value of environment variable "PATH"
Check: Length of value of environment variable "PATH"
Node Name Set? Maximum Length Actual Length Comment
sep03vvm-402 yes 5119 100 passed
sep03vvm-401 yes 5119 129 passed
Result: Check for length of value of environment variable "PATH" passed.
Checking availability of ports "6200,6100" required for component "Oracle Notifi
cation Service (ONS)"
Node Name Port Number Protocol Available Status
sep03vvm-402 6200 TCP yes successful
sep03vvm-401 6200 TCP yes successful
sep03vvm-402 6100 TCP yes successful
sep03vvm-401 6100 TCP yes successful
Result: Port availability check passed for ports "6200,6100"
Starting Clock synchronization checks using Network Time Protocol(NTP)...
Checking daemon liveness...
Check: Liveness for "W32Time"
Node Name Running?
sep03vvm-402 yes
sep03vvm-401 yes
Result: Liveness check passed for "W32Time"
Check for NTP daemon or service alive passed on all nodes
Result: Clock synchronization check using Network Time Protocol(NTP) passed
Checking if current user is a domain user...
Check: If user "Administrator" is a domain user
Result: User "MDCCOMMONLDAP\Administrator" is a part of the domain "MDCCOMMONLDA
P"
Check: Time zone consistency
Result: Time zone consistency check passed
Checking for status of Automount feature
Node Name Enabled? Comment
sep03vvm-402 yes passed
sep03vvm-401 yes passed
Result: Check for status of Automount feature passed
Checking consistency of current Windows user account across all nodes
PRVG-11818 : Windows user "MDCCOMMONLDAP\Administrator" is a domain user but a c
conflicting local user account was found on nodes "sep03vvm-402"
Result: Check for Windows user account "MDCCOMMONLDAP\Administrator" consistency
failed
Pre-check for cluster services setup was unsuccessful.
Checks did not pass for the following node(s):
sep03vvm-402
SEVERE: [FATAL] [INS-30131] Initial setup required for the execution of installer validations failed.
CAUSE: Failed to access the temporary location.
ACTION: Ensure that the current user has required permissions to access the temporary location.
Are you using a supported OS version (listed in the Install Doc) and following all of the steps in the Install Doc ?
HTH
Srini
Similar Messages
-
Local user account is trying to autenticating against domain controller
Hi all. I am seeing a weird user logon issue on one of my laptop and on another user's PC. Both of the laptop and the PC is a member of our domain. However, on this particular laptop and PC, we are not login with a domain user account,
rather we've created a local user account, grant it the local admin access, and login with this local user account. Now, on my domain controller, I am seeing a bunch of account login failure message, which happens few times per minute and filling up
the domain controller security log. For the laptop, this is a clean build, with fresh Windows 7 installation, alone with MS Office 2010 and few third party application (eg: Adobe Reader, 7-ZIP, etc). I've checked all group policy to ensure there
are no service or connection that requires domain credential access that have applied to this laptop (or the PC). I am not sure why this local user is trying to authenticating to our domain controller. This user account doesn't exist in our domain.
The only thing I can think of is Microsoft Outlook 2010 might doing back ground authentication against the domain controller by using the current login user account, I just can't confirm this. Did anyone encountered this issue in their environment?
Thank you.
Below is a copy of the event.
Log Name: Security
Source: Microsoft-Windows-Security-Auditing
Date: 13/06/2014 8:56:27 AM
Event ID: 4625
Task Category: Logon
Level: Information
Keywords: Audit Failure
User: N/A
Computer: domaincontroller.mydomain.local
Description:
An account failed to log on.
Subject:
Security ID: NULL SID
Account Name: -
Account Domain: -
Logon ID: 0x0
Logon Type: 3
Account For Which Logon Failed:
Security ID: NULL SID
Account Name: dummy
Account Domain: l-sparet400sc
Failure Information:
Failure Reason: Unknown user name or bad password.
Status: 0xc000006d
Sub Status: 0xc0000064
Process Information:
Caller Process ID: 0x0
Caller Process Name: -
Network Information:
Workstation Name: L-SPARET400SC
Source Network Address: 192.168.2.181
Source Port: 60720
Detailed Authentication Information:
Logon Process: NtLmSsp
Authentication Package: NTLM
Transited Services: -
Package Name (NTLM only): -
Key Length: 0
This event is generated when a logon request fails. It is generated on the computer where access was attempted.
The Subject fields indicate the account on the local system which requested the logon. This is most commonly a service such as the Server service, or a local process such as Winlogon.exe or Services.exe.
The Logon Type field indicates the kind of logon that was requested. The most common types are 2 (interactive) and 3 (network).
The Process Information fields indicate which account and process on the system requested the logon.
The Network Information fields indicate where a remote logon request originated. Workstation name is not always available and may be left blank in some cases.
The authentication information fields provide detailed information about this specific logon request.
- Transited services indicate which intermediate services have participated in this logon request.
- Package name indicates which sub-protocol was used among the NTLM protocols.
- Key length indicates the length of the generated session key. This will be 0 if no session key was requested.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Security-Auditing" Guid="{54849625-5478-4994-A5BA-3E3B0328C30D}" />
<EventID>4625</EventID>
<Version>0</Version>
<Level>0</Level>
<Task>12544</Task>
<Opcode>0</Opcode>
<Keywords>0x8010000000000000</Keywords>
<TimeCreated SystemTime="2014-06-13T12:56:27.263546000Z" />
<EventRecordID>299829083</EventRecordID>
<Correlation />
<Execution ProcessID="488" ThreadID="640" />
<Channel>Security</Channel>
<Computer>domaincontroller.mydomain.local</Computer>
<Security />
</System>
<EventData>
<Data Name="SubjectUserSid">S-1-0-0</Data>
<Data Name="SubjectUserName">-</Data>
<Data Name="SubjectDomainName">-</Data>
<Data Name="SubjectLogonId">0x0</Data>
<Data Name="TargetUserSid">S-1-0-0</Data>
<Data Name="TargetUserName">dummy</Data>
<Data Name="TargetDomainName">l-sparet400sc</Data>
<Data Name="Status">0xc000006d</Data>
<Data Name="FailureReason">%%2313</Data>
<Data Name="SubStatus">0xc0000064</Data>
<Data Name="LogonType">3</Data>
<Data Name="LogonProcessName">NtLmSsp </Data>
<Data Name="AuthenticationPackageName">NTLM</Data>
<Data Name="WorkstationName">L-SPARET400SC</Data>
<Data Name="TransmittedServices">-</Data>
<Data Name="LmPackageName">-</Data>
<Data Name="KeyLength">0</Data>
<Data Name="ProcessId">0x0</Data>
<Data Name="ProcessName">-</Data>
<Data Name="IpAddress">192.168.2.181</Data>
<Data Name="IpPort">60720</Data>
</EventData>
</Event>its the service which is using the account info and authenticating against the DC to obtain service ticket and fails
Interesting log section is NULL SID which doesn't corresponds to any account name.
Security ID: NULL SID
Account Name: -
Account Domain: -
Logon ID: 0x0
and the below section explains , the request is made over network, which is most of the times by the service
Detailed Authentication Information:
Logon Process: NtLmSsp
Authentication Package: NTLM
Transited Services: -
Package Name (NTLM only): -
Key Length: 0
The below is assumed to be performed on a client which does not run mission critical production applications which has zero impact when you perform the below actions,
can you disable
a) Server service
b) Workstation service
c) Disable RPC dependent service and services which depend on RPC and test
Question:
What is the level of DC hardening you have in your environment ? -
Bug When Converting (Back) To Local User Account
I am using Windows 8.1 Pro and began by setting up a local user account, which is the Administrator account. I then successfully switched the account to a Microsoft account, with the same user name.
As a test, I then decided to switch back to a local user account.
The bug is that I was not permitted to use the same user name. I had to select a different user name. This defeats the purpose of transparently switching a from a Microsoft account to a local account.
Fortunately (for me) I had anticipated that something might go wrong and had performed a full system backup to a external USB drive before I began this switching test.
L.M.CohenWhile Windows 8.1 (Pro) allows you to create new User accounts, it is set up to "convince" you to create Microsoft-type user accounts, rather than local user accounts.
And if you try to convert a Microsoft-type account to a local user account,
with the same user name, it will not yet you do it. However it will allow you to convert in the opposite direction,
with the same user name.
So I started all over and carefully read the small print -- to learn that you can initially set up a local user account. But this is discouraged, but if you persist, it can be done -- even though it is implied that "the sky might fall."
This is disingenuous.
However now that I understand the dynamics, I have no more problems.
Regards,
L.M.Cohen
L.M.Cohen -
Local user account not working after trying to connect to windows domain
Newb Question
I was trying to log into a domain with my macbook today at work without success. I think I selected something that is telling my mac to search the domain for the user account, and NOT the local computer. So now when I boot it up the local user account isn't displayed, only 'other...'. When I click that it takes me to a log in text box that doesn't accept either my long or short user names. I booted up from the Snow Leopard disk and tried to change my password there, and that can see the local account there (and lets me change the password). However, when I boot back up from the HDD I get the same problem.
Is there a way of telling it to look locally rather than on the domain when logging in?you could reset password on the root account from the boot disk also while booted to the system disk, open startup disk, and make sure your computer is set to boot from the built in hard drive.
This will enable root, and hopefully you can log into the computer. try logging in with the user name 'root' and what ever password you set. if you do get in, you can go to apple menu, system preferences, accounts, login options.
Make sure to set display login in window to list.
also make sure that when you click on the join button under login options, that there is nothing there. as in blank. -
Migrating local user accounts/home directories to network user accounts
Hi,
I am planning on moving the user accounts from several Mac OS X client machines to a new Mac OS X Server machine (Quad core Xeon MacPro). I am very familiar with OS X client in a support environment, but do not have extensive experience with Server.
I read over the instructions in this article
http://docs.info.apple.com/article.html?path=ServerAdmin/10.4/en/c6um3.html
and it appears to be fairly straight forward, although I do have some questions regarding the existing data (home folders) and how to set the clients to log in to the network account.
Previously, in the event that I have needed to move a person's home directory to a new computer or recover from a corrupt OS (and Archive&install was not an option), in OS X client I would:
1) Back up the home directory.
2) Erase/reinstall OS X client.
3) Log in as Root.
4) Go into "Accounts" pref pane and create user with same short name as original/backed-up home directory.
5) Replace the newly created home directory with the backed-up home directory.
6) Go into Terminal and chown/chgrp the home directory to username/staff, respectively.
This would result in a perfectly migrated user account. All settings and files working just as they did on the previous system/install of OS X.
First Question: Could I employee a similar method to retain the content and settings from the local user accounts on the server as I migrate them to network users? Moving the user accounts to the server as described, then running terminal to set proper ownership...
Second Question: What do I do on each client system to tell it to recognize the networked home directory for each user? Do I just change the user's home folder path in Netinfo Manager to the automount location?
Thanks in advance for any help you can offer,
-David
MacPro 2.66 Quad Core (MA356LL/A) Mac OS X Server 10.4.8A network account is really existing only on the server but if you use "portable homefolders" (Tiger client and server) you could "migrate" the local account to a "server" one by:
Login locally as another user with administrative rights.
Change the name of the old account folder in /Users.
Remove the "old" account locally (woun't remove the "old" folder as you changed the name) only Netinfo data.
Login using the serveraccount login/password thus creating a homefolder on the server.
Logout and back in, enable portable homefolder.
Logout and then in as a local admin and remove the new user folder.
Change the name on the old userfolder to what the new one had.
I'm not a 100% sure Netinfo has the server account UID now (added by logging in and creating the portable account?) but if it does:
(http://forums.macosxhints.com/archive/index.php/t-12077.html)
"Finding and changing UIDs across the filesystem is a one-liner command:
sudo find / -user UID -exec chown userName {} \;
(replace UID with the old UID number and userName with the new user name to associate file ownership.)"
(A portable account must have got some "kind" of UID?)
Let the machine "sync" with the server account.
If you want an "on network only" account I don't know what you need to remove locally afterwards.
HTH -
We are currently using local user accounts with CUCM 9.1.2 and are looking at integrating it into the active directory structure.
We do utilize the same structure for user ID's.
I am looking to find out what the changeover will entail and if anything else needs to be done prior to the integration.
We also have Unity syncing up with CUCM for users as well as Contact Center sync'ed up for our ACD system.
Thanks
MikeHey Mike,
The process is pretty straight forward. CUCM 9.X supports the coexistence of AD integrated users and local users so you don't have to worry about local accounts disappearing if they don't have an AD account. The biggest thing to watch out for is that if you decide to revert back for whatever reason then the accounts that were in AD will be marked for deletion (from the CUCM, not AD) and will be removed after approximately 24 hours.
I recommend the following if you'd like to move to AD.
Run a DRS backup of CUCM. This is not necessary for the integration but is good practice in my opinion. I'd also do a full export of your users using the BAT so you can reimport users to how they were before the integration should you decide to revert for any reason.
Determine if you want to put the user's extensions in the telephonenumber field or ipPhone field in AD. Once you make a decision, I recommend populating that information in AD so it is available when you do the integration.
Make sure your local CUCM user accounts usernames are exactly the same as your domain accounts. That way when you do the integration the local users become AD users and keep all of their phone associations, group memberships, etc. If you need to change the usernames then be sure to notify your users ahead of time so they can start logging into UCCX or UCM user pages, etc. using their new username.
Create an account in AD that has read-only rights to your directory. Set the password to never expire. You will use this account later for the integration.
In CUCM, go into Serviceability and make sure the "Cisco DirSync" service is activated on the Publisher server.
Also in CUCM, navigate to the administration page and do the following:
Go to System > LDAP > LDAP System and Check the box to enable Synchronizing. Confirm the LDAP server type and attribute for User ID is accurate. This is typically Microsoft Active Directory and sAMAccountName respectively.
Go to System > LDAP > LDAP Directory
Click Add New
Give it a name (whatever you want).
Put in the Distinguished Name of the AD integration account you created earlier. For example, if you created an account called ciscoldap in the Service Accounts OU in the abc.com domain then it would look something like this... CN=ciscoldap,OU=Service Accounts,DC=abc,DC=com
Enter the password for the account.
Enter the search base. This can be a specific OU where your users exist, a parent OU which contains other OUs which contain all of your users or the entire domain. If you do the entire domain then in the abc.com example you would specify DC=abc,DC=com.
Select the option to perform a sync with AD on periodic intervals. The lowest interval you can set is every 6 hours.
Select either the telephonenumber or ipPhone field to be used for the user's extensions. This will be whatever you decided and populated in AD in an earlier step.
Add your primary and any backup domain controllers and ports. If they are just domain controllers and you are not using SSL then specify port 389. If they are also global catalog servers then you can do port 3268.
Click Save and Click the "Perform Full Sync Now" button.
I recommend that you also use LDAP for authentication as well so you only have one username and password to remember which is all controlled by AD. To add this do the following:Go to System > LDAP > LDAP Authentication.
Click Add New
Check the box to use LDAP Authentication
Add the same Distinguished name, passwords and user seach base that you used for your integration account earlier under the synchronization section. Also add the same primary and secondary LDAP servers and ports you used earlier.
Click Save
You can go a step further and create a filter to only pull in the users within the search base you specified and apply that. For example, maybe only pull in users that have their ipPhone field populated. Let me know if you have any questions on that or any of the above.
I hope this helps! -
Adding Local User Account Alongside RADIUS
Greetings!
Currently every Cisco device authenticates with a RADIUS server we have on campus. I'm trying to add a local user account onto our switches and routers so that if the RADIUS server is unavailable or the switch looses connection we are able to use another login to access what we need. However when I add aaa authorization and authentication commands (no default) I think the switch cannot identify what is a RADIUS login and what is a local login. Depending on how we move commands around local will work and RADIUS will not, or RADIUS will work and local will not. Any suggestions on how to get both to work at the same time?
Thanks!
-NoahPerhaps I do not have a correct understanding of what you are asking. But let me explain a little and if that does not address your issue then perhaps you can provide some clarification.
You can not have Radius and the local account work at the same time - at least not in the sense that you can login and enter either one and expect it to work. What you can do (and what most people do) is to define one as primary (usually Radius) and one as backup (usually local account). Then when you attempt to login the device will attempt to use Radius, and if the Radius server is not available then it will use the local account.
If that does not clarify your issue then please help us understand better what your issue is.
HTH
Rick -
Lion server : local user account disappear after power outage
On the server computer.After power outage I restart server the machine starts up ok.At login screen local user name disappear but there's others account same as client computer.I can log in to network account but can't log in as local.
In sytem preference local user account is still there.
I don't want to reinstall lion server .
What can i do now?
Thank you for your assistance.It sounds like the user directory is damaged. You might try booting into the recovery partition, running Disk Utility, and doing a Repair Volume (and maybe a repair permissions) on the server volume.
-
i use migrate assistant to move files from my old pc to the new Mac , but it creates the user account. How can i delete the unwanted user account.
Welcome to Apple Support Communities
That's the classic behaviour after using Migration Assistant and that's normal.
To transfer the data from the new user account to your old user account, you can follow some steps. Here is all the information you need to do this > https://discussions.apple.com/docs/DOC-5472 -
COREid Federation Error: A local user session could not be created for the
Hi,
I installed two instances of COREid Federation in my machine. Also installed SiteMinder and LDAP. Source Domain of COREid (8101) uses LDAP as IdMBridge and Destination Domain (9101) uses SiteMinder as IdMBridge. I am trying to access the resource protected by the SiteMinder from the source domain using the URL which is constructed using the pattern given in the PDF:
http://mymachine.domain.com:8101/shareid/saml/ObSAMLTransferService?DOMAIN=DestinationDomain&method=POST&TARGET=http://mymachine.domain.com:8887/Source/Source.html
Assertions are generated and I can see the assertion in the Source domain and transferred to the Destination Domain.
I get the following error in the Destination Domain Shareid Log file:
ERROR - [http10113-Processor3] - RECEIVER: ERROR: A local user session could not be created for the assertion
Please help me to solve this issue?
Note: The Web agent runs on the web server instance 8887.
SiteMinder is able to protect the resource when accessed.Typically that error occurs when the destinations access management system can't find the user based on the SAML attribute. Check to make sure that the attribute that you are matching on matches exactly.
-
SHAREid - A local user session could not be created for the assertion
Problem: We have a client trying to federate to our environment using POST profile but we are getting the following error, "RECEIVER: ERROR: A local user session could not be created for the assertion".
I verified that the user exist in the directory and I am able to execute a test successfully as that user.
Thanks.There is a requirement that the client needs to send an attribute called "traveler" in the assertion. We found out that the problem occurs only when client sends a attribute in the assertion. When the assertion does not include the attribute, there is no issue. Not sure why that is the case as we have other clients sending the same attribute in the assertion.
Here is the AttributeStatement.
<saml:AttributeStatement xmlns:xsd="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"><saml:Subject><saml:NameIdentifier Format="urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified">XXXXXX</saml:NameIdentifier></saml:Subject><saml:Attribute AttributeName="XXXID" AttributeNamespace="http://schemas.xmlsoap.org/claims"><saml:AttributeValue>XXXXX</saml:AttributeValue></saml:Attribute></saml:AttributeStatement>
It does not have <saml:SubjectConfirmation> and <ConfirmationMethod> element. Can that be a problem?
Thanks,
Vinay
Edited by: user504421 on Jul 9, 2009 2:17 PM -
Openshot + Blender: No frame was found in the Output from Blender
Can't get this to work. Anyone know why?
Using OpenShot version 1.4.0
blender -v
Blender 2.61 (sub 0)
build date: 2012-01-05
build time: 10:31:02
build revision: unknown
build platform: Linux
build type: Release
build c flags: -march=x86-64 -mtune=generic -O2 -pipe -fstack-protector --param=ssp-buffer-size=4 -D_FORTIFY_SOURCE=2 -fopenmp -msse2 -msse -pipe -fPIC -funsigned-char -fno-strict-aliasing -Wall -Wcast-align -Werror=declaration-after-statement -Werror=implicit-function-declaration -Werror=return-type -Wstrict-prototypes -Wno-char-subscripts -Wno-unknown-pragmas -Wpointer-arith -Wunused-parameter -Wwrite-strings -Wno-error=unused-but-set-variable
build c++ flags: -march=x86-64 -mtune=generic -O2 -pipe -fstack-protector --param=ssp-buffer-size=4 -D_FORTIFY_SOURCE=2 -D__STDC_CONSTANT_MACROS -fopenmp -msse2 -msse -pipe -fPIC -funsigned-char -fno-strict-aliasing -Wall -Wno-invalid-offsetof -Wno-sign-compare
build link flags: -pthread
build system: CMake
Blender command: blender -b '/usr/lib/python2.7/site-packages/openshot/blender/blend/blur.blend' -P '/home/user/.openshot/blender/fdd1c574-44dd-11e1-bf0d-54e6fc88c972/blur.py'
Traceback (most recent call last):
File "/home/user/.openshot/blender/fdd1c574-44dd-11e1-bf0d-54e6fc88c972/blur.py", line 150, in <module>
bpy.context.scene.render.file_format = params["file_format"]
AttributeError: 'RenderSettings' object has no attribute 'file_format'
No frame was found in the output from Blender
Blender render thread finished
Last edited by whoops (2012-01-22 09:47:37)yes, that is correct that it crashes with the new code when i have both made it a separate library function node and when i incorporated it into an existing code. the odd thing is that it actually seems to work now. i believe that i was using the wrong environment to call the new codes, which is why whenever i tried to revert to the original code previously, it still crashed. it seems that in order to be called, i need to use Deployment rather than Development and ppc instead of i386 in the active configuration and architecture in Xcode, respectively. while playing around with the iphone app, it must have reset my defaults to a non-labview friendly form. so now that i've got that part of the code working, i need to find out why it's still crashing on me. at first, i thought it must be the random number generator, but testing that separately in the code works just fine, so there must be something internal in the code. probably a memory allocation fault. but now that i can actually get everything running once more, i should be able to sort that issue out myself.
thank you very much for the help. sorry i didn't actually have anything to fix, unfortunately. i'm going to spend some time trying to debug this section of code to find where the fault lays. i may come back if i cannot find it in there, but hopefully it will not come to that.
take care and many thanks,
justin -
InsertPage RaiseError: An incorrect structure was found in the PDF file
Hi,
I am trying to build a button script that will create a new document, copy (insert) from the first page of the open document, save it, then close it. I believe the part where it gets tricky -- and possibly not doable -- is that the original (source) document uses a template; full of form fields to possibly be spawned off as new pages.
Given the above, ideally the user of the form can click on the "save new page" button: it creates anj Inserted copy of the first form page, cleared of content if any has been entered, and not including any other pages that may have been spawned.
With the code I am using, it currently creates the copy of the page and it inserts it as the zeroeth page (ahead of a blank page I intend to add code later to delete) and saves it. However, there are a couple of problems that come up with this. First is the error code that opens in the debugger:
RaiseError: An incorrect structure was found in the PDF file
Doc.insertPages:29:AcroForm:Save New Form:Annot1:MouseUp:Action1
===> An incorrect structure was found in the PDF file
Despite the error it does still save the page (form copy) as mentioned above. However, if you try to start working with it, it lets you know that there are no form fields on the document (even though they are all there and seemingly functional). When I look to edit the fields, it will then ask you if you want to try to recognize the fields. If I click on "yes", it says it was unable to, but then the form opens up with all of the field names perfectly matching the original. If I click on "no" it just opens the page with all of the fields perfectly matching again. So I feel like I am close to being able to do this!
I am using the following code to produce my results:
(In the JavaScript "app" folder, I have the following trusted functions:)
myTrustedMenu = app.trustedFunction(function(name)
app.beginPriv();
app.execMenuItem(name);
app.endPriv();
myTrustedSaveAs = app.trustedFunction(function(doc, namePath)
app.beginPriv();
doc.saveAs(namePath);
app.endPriv();
myTrustedNewDoc = app.trustedFunction(function()
app.beginPriv();
var doc = app.newDoc();
app.endPriv();
return doc;
myTrustedInsertPage = app.trustedFunction(function(doc, namePath)
app.beginPriv();
doc.insertPages ({
nPage: -1,
cPath: namePath,
nStart: 0
app.endPriv();
(On the "Save New Form" button, the following code is activated:)
// First split document path into an array
var aPathComps = this.path.split("/");
// Get File Name off end of array
var myFileName = aPathComps.pop();
var pathway = aPathComps.join("/");
var myDoc = myTrustedNewDoc();
myTrustedSaveAs(myDoc, pathway + "/test.pdf");
myTrustedInsertPage(myDoc, this.path);
//myDoc.resetForm();
//myDoc.closeDoc(true);
I apologize for the long post and I appreciate anyone who takes the time to look into this issue for me.
Thanks,
MikeMikeIs2C wrote:
You nailed it TSN! Deleting the tags did the trick. Thank you so much for your help! Just an FYI for any of you fellow "noobs" that might be referencing this discussion, to open the "Tabs" view (in Adobe Acrobat Pro XI in my case) go to View > Show/Hide > Navigation Panels > Tags. I looked all over the place for that until I found a document that mentioned how to open it.
Thanks for pointing out specifically how to get here. Thanks to the all for this post!
I also encountered this error, "An incorrect structure was found in the PDF file" from my published MadCap Flare user guide. I am attempting to find a way to build a bridge between Flare and Google documents for corporate-wide collaboration. Thus far, it's a crazy challenge finding a way to produce gdocs from Flare output. Neither product makes this easy. The closest I can get is by publishing the Flare doc as a PDF... but then I must break that document down into 2mb chucks...which led me to this problem, after attempting to use the Adobe Acrobat splitting tool.
Question:
What is the root cause of these bad tags. There are a LOT of them! Is this a fault in the way MadCap Flare creates a PDF document?
Yes, deleting some of the tags will allow me to finally split a PDF document. Unfortunately, this error occurs in all my published PDF documents, thus preventing me from automating (scripting) this split and then conversion to Google Docs!
Thank you -
No META-INF/application.xml was found in the EAR
I create a EAR using:
jar -cvf e:\workspace\otnapp\otnapp.ear
Then, I depoy this EAR through:
e:\jdk160_18\bin>java weblogic.Deployer -adminurl t3:\\localhost:7001 -user weblogic -passwork welcome1 -deploy -upload e:\workspace\otnapp\otnapp.ear
But, I get errors as follow:
java.io.IOException: No META-INF/application.xml was found in the EAR otnapp.ear
How to change the jar in the command line?otnapp is an adf web application. META-INF is not in the E:\soaworkspace\otnapp.
It is in the :
E:\SOAworkspace\otnapp\.adf\META-INF
E:\SOAworkspace\otnapp\Model\classes\META-INF
E:\SOAworkspace\otnapp\src\META-INF
None of them contains application.xml.
I run jar in E:\soaworkspace\otnapp. But I get error : 'jar' is not recognized as an internal or external command, operable program or batch file.
Microsoft Windows [Version 6.0.6001]
Copyright (c) 2006 Microsoft Corporation. All rights reserved.
C:\Users\Administrator>d:
D:\>e:
E:\>cd E:\soaworkspace\otnapp
E:\SOAworkspace\otnapp>jar -cvf otnapp.ear
'jar' is not recognized as an internal or external command, operable program or batch file.
E:\SOAworkspace\otnapp>jar -cvf otnapp.ear */ .
'jar' is not recognized as an internal or external command, operable program or batch file.
E:\SOAworkspace\otnapp>set java_home
JAVA_HOME=E:\OracleBI_win2008_32_20101206\jdk160_18
path=
CD:\apache-maven-2.0.11\bin;C:\app\Administrator\product\11.2.0\dbhome_1\bin;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Common Files\Thunder Network\KanKan\Codecs;C:\apps\FME\;C:\Program Files\Subversion\bin;C:\Program Files\TortoiseSVN\bin;D:\win2008EclipseWorkspace;E:\OracleBI_win2008_32_20101206\Oracle_BI1\bin;E:\OracleBI_win2008_32_20101206\Oracle_BI1\opmn\bin;E:\OracleBI_win2008_32_20101206\Oracle_BI1\opmn\lib;E:\OracleBI_win2008_32_20101206\Oracle_BI1\perl\bin;%JAVA_HOME%\bin;CATALINA_HOME\bin;C:\Users\Administrator>E:\SOAworkspace\otnapp> -
An internal error was found in the SAP lock management system when opening
Hello SDN Experts ,
When i am trying to open any t-ocde in my productive system
it is displaying an error message "An internal error was found in the SAP lock management system " , not only for me but also for all the users .
Could please tell me what colud be the problem and solution for this??
it's very urgent .....
Thanks in Advance !
Siva reddyHi,
Check in SM12 if tht particular Tcode is being locked by some other person.
Else contact your basis team. There may be some auth issues.
Regards,
Lalit
Maybe you are looking for
-
I constructed a calendar in iPhoto'09, but I can't buy it, as my country (Russia) is not on the list in the drop-down box of the countries. And I can't export it and save it in any other format so that I could print it off myself. Would upgrading t
-
Does not display all content after first loading of page
Hello all, I am having quite strange problem which is hard for me to figure out. I have 8 buttons on my web site. Each button will display different content. My page is: www.itconnect.co.nz When you go to my page first time, by default "Design & Soft
-
Chipset drivers are a disorganized mess.
I took the time to leave you honest feedback for your MSI FM2-A55M-E33 chipset driver download. If this is the best that MSI can do then I will not be purchasing another MSI product.
-
I have created a windows based app which has a form that the user can fill in several text boxes and also an ole richtext box. They can either type in text or paste graphics or what ever to this box. When the form is complete a button appends this da
-
SLD Bridge vs SLD Synchronization
Hi all, Can you please explain the differences between SLD Bridge versus SLD Synchronization ? And why and when to choose one option over the other ? Thanks alot. Nadir