ACI Normalization

Two quick questions for you "employees" out there.
Does adding ACIs to the directory in their normalized format cause a performance gain, even if it's slight? In other words, can we avoid or minimize the need for the server to normalize every time it reads an ACI if we enter them properly up front?
Secondly, what exactly is that normalized format? We are trying to standardize our ACI format across corporate directory instances, and would like to know what the directory considers normalized.
Here's what we use now (with _ indicating a single space):
(targetattr="attr1_||_attr2")(targetfilter="(attr=val)")(version_3.0;acl_"ACL_Name";allow(read,search)_userdn="ldap:///uid=abc,dc=domain,dc=com";)Thanks in advance!

ACI is a paradigm shift in data centre designs.
According to this solution overview ACI is the next generation of Software Defined Networking:
http://www.cisco.com/c/en/us/products/collateral/switches/nexus-9000-series-switches/guide-c07-731461.html
Having worked with Nexus switches for a couple of years now I haven't encountered any serious drawbacks with these devices.

Similar Messages

  • Does ACI support a VXLAN Tunnel between Leaf(Leaves) and VMware-vDS, and MS-vSwtich?

    Hi Experts,
    I have a quick question about Normalized Forwarding of ACI Fabric.
    Does ACI support a VXLAN Tunnel between Leaf(Leaves) and VMware-vDS, and MS-vSwtich? Otherwise any plan to provide that function in the future?
    If there is no function and plan How is Normalized Forwarding possible with VXLAN headers that are generated by each Hypervisor? Of course I know it's possible for a VM on ESXi to communicate with another VMs on Hper-V without VXLAN but I just focus on Normalized Forwarding between Multi-Hypervisor.
    Or If AVSs are implemented on ESXi and Hyper-V repectively, is it possible to make a VXLAN Tunnel between Leaf(Leaves) and AVSs on ESXi and Hyper-V? And what is a example of that usage?
    Thanks in advance.
    Paul 

    Hi Paul,
    As I understand, ACI Leaf to the VMware-vDS is still vlan so no tunnel for VXLAN. When we integrate Vcenter with the ACI, We define the vlan range for the traffic from VM-ware-vDS to map EPG to a VMware ESXi port group. 
    For the MS-vSwitch, As It support OpFlex agent could act as VTEP but not part of the fabric. But I am not sure about this. 
    As AVS is part of the fabric so It will act as a VTEP (VXLAN Tunnel between Leaf(Leaves) and AVSs)
    But what is the benefit are you looking? Traffic normalization is still there because Traffic within the fabric is encapsulated as VXLAN. External VLAN/VXLAN/NVGRE tags are mapped at ingress to an internal VXLAN tag.
    Note:the VLAN ID has local significance for the leaf node
    Regards,
    Anser

  • Can not change the number of decimal places in the normalization of result

    dear all
        i want to see the proportion of some data, for example, the income of May is 300, and the total income is 1000, i need to display it like 33.33% . so i set the
    Calculate single values as normalization of result, and then it display 33.333%, i like to display only two number of decimal places, so i set the number of decimal places as 0.00, but i doesn't work, it still display three decimal numbers.
        maybe you say i can use the percentage function like %CT %GT %RT, but i need to allow external access to my query, so the i can not use those functions.
        can somebody helps me ? your advice is appreciated.

    hi,thanks for your advice, but that doesn't suit for my problem.
    before i set the normalization of result, i can change the decimal values. After that i cann't.
    In your thread, someone proposes use the T-code OY04. but this wouldn't help. As i change to other key figure, such as user quantity, when i set normalization of result, it still display 3 decimal values.
    i think the point maybe lie in the normalization of result. please advise... thanks...

  • SNC - Sistema de Normalização Contabilistica - Portugal

    Bom dia,
    No decorrer deste ano foi aprovado em concelho de ministros o novo Sistema de Normalização Contabilistica, que entrará em vigor no inicio do ano de 2010 em Portugal.
    Alguem tem a noção dos impactos e que metodologias se deverá aplicar para que a transição para esta nova realidade se efectue de forma pacifica?
    Terá a SAP alguma estratégia para a alteração para esta nova realidade? (tenho conhecimento da ferramenta SLO - system landscape optimization, para a alteração do plano de contas, mas esta nova abordagem não se resume á alteração do plano de contas, mas sim a um conjunto de principios contabilisticos que deverão ser repeitados pelas empresas).
    Qual a vossa opinião sobre este assunto?

    Oi Jackson
    Sugiro você dar uma olhada nas best practices.
    http://service.sap.com/bestpractices
    Selecione baseline packages > Portugal > Technical > Content Library
    Ali você vai achar o guia de configuração, fluxo do processo e procedimento de negócio para todos módulos e processos de negócio suportados.
    * vale também para outros países inclusive o Brasil.
    Abraço
    Eduardo Chagas

  • Converting CAP file to JCA using normalizer

    Hi, I'm trying to generate 2.2.1(or 2.2.2) JCA file from 2.2.1(or 2.2.2) CAP file using JCDK 3.0 normalizer. I generated class files successfully but when using converter from javacard-kit 2.2.2 i get following error messages
    unsupported class file format of version 50.0.
    Is there any way to solve the error? I also like to know if there exists any other tool other than normalizer to convert cap file to jca file,

    javac -g -source 1.2 -target 1.2 -classpath $JC_HOME/lib/api.jar:$JC_HOME/lib/installer.jar src/xu/test/*.java -d binYou can have a look at the man file for javac in the section source/target and try the different options. I'm using sun-java6-jdk with these compiler parameters and have no problem when it comes to converting the files.
    Hope this can help you.
    Cheers

  • Error While running ATG ACI 9.2 OOTB Reports.

    Hi All,
    I am getting following error when I run some of the OOTB ACI 9.2 reports.
    UDA-SQL-0107 A general exception has occurred during the operation "prepare".ORA-32035: unreferenced query name defined in WITH clause RSV-SRV-0042 Trace back:RSReportService.cpp(758): QFException: CCL_CAUGHT: RSReportService::process()RSReportServiceMethod.cpp(239): QFException: CCL_RETHROW: RSReportServiceMethod::process(): promptPagingForward_RequestRSASyncExecutionThread.cpp(774): QFException: RSASyncExecutionThread::checkExceptionRSASyncExecutionThread.cpp(211): QFException: CCL_CAUGHT: RSASyncExecutionThread::run(): promptPagingForward_RequestRSASyncExecutionThread.cpp(824): QFException: CCL_RETHROW: RSASyncExecutionThread::processCommand(): promptPagingForward_RequestExecution/RSRenderExecution.cpp(593): QFException: CCL_RETHROW: RSRenderExecution::executeAssembly/RSDocAssemblyDispatch.cpp(264): QFException: CCL_RETHROW: RSDocAssemblyDispatch::dispatchAssemblyAssembly/RSLayoutAssembly.cpp(64): QFException: CCL_RETHROW: RSLayoutAssembly::assembleAssembly/RSDocAssemblyDispatch.cpp(331): QFException: CCL_RETHROW: RSDocAssemblyDispatch::dispatchChildrenAssemblyForwardAssembly/RSReportPagesAssembly.cpp(163): QFException: CCL_RETHROW: RSReportPagesAssembly::assembleAssembly/RSDocAssemblyDispatch.cpp(281): QFException: CCL_RETHROW: RSDocAssemblyDispatch::dispatchAssemblyAssembly/RSPageAssembly.cpp(287): QFException: CCL_RETHROW: RSPageAssembly::assembleAssembly/RSDocAssemblyDispatch.cpp(281): QFException: CCL_RETHROW: RSDocAssemblyDispatch::dispatchAssemblyAssembly/RSTableRowAssembly.cpp(160): QFException: CCL_RETHROW: RSTableRowAssembly::assembleAssembly/RSDocAssemblyDispatch.cpp(281): QFException: CCL_RETHROW: RSDocAssemblyDispatch::dispatchAssemblyAssembly/RSTableCellAssembly.cpp(122): QFException: CCL_RETHROW: RSTableCellAssembly::assembleAssembly/RSDocAssemblyDispatch.cpp(331): QFException: CCL_RETHROW: RSDocAssemblyDispatch::dispatchChildrenAssemblyForwardAssembly/RSTableAssembly.cpp(97): QFException: CCL_RETHROW: RSTableAssembly::assembleAssembly/RSDocAssemblyDispatch.cpp(331): QFException: CCL_RETHROW: RSDocAssemblyDispatch::dispatchChildrenAssemblyForwardAssembly/RSTableRowAssembly.cpp(160): QFException: CCL_RETHROW: RSTableRowAssembly::assembleAssembly/RSDocAssemblyDispatch.cpp(281): QFException: CCL_RETHROW: RSDocAssemblyDispatch::dispatchAssemblyAssembly/RSTableCellAssembly.cpp(122): QFException: CCL_RETHROW: RSTableCellAssembly::assembleAssembly/RSDocAssemblyDispatch.cpp(331): QFException: CCL_RETHROW: RSDocAssemblyDispatch::dispatchChildrenAssemblyForwardAssembly/RSAssembly.cpp(626): QFException: CCL_RETHROW: RSAssembly::createListIteratorAssembly/RSAssembly.cpp(667): QFException: CCL_RETHROW: RSAssembly::createListIteratorRSQueryMgr.cpp(978): QFException: CCL_RETHROW: RSQueryMgr::getListIteratorRSQueryMgr.cpp(1051): QFException: CCL_RETHROW: RSQueryMgr::getResultSetIteratorRSQueryMgr.cpp(1211): QFException: CCL_RETHROW: RSQueryMgr::createIteratorRSQueryMgr.cpp(1511): QFException: CCL_RETHROW: RSQueryMgr::executeRsapiCommandRSQueryMgr.cpp(1498): QFException: CCL_RETHROW: RSQueryMgr::executeRsapiCommandRSQueryMgrExecutionHandlerImpl.cpp(174): QFException: CCL_RETHROW: RSQueryMgrExecutionHandlerImpl::execute()RSQueryMgrExecutionHandlerImpl.cpp(154): QFException: CCL_RETHROW: RSQueryMgrExecutionHandlerImpl::execute()RSQFSession.cpp(243): QFException: CCL_RETHROW: RSQFSession::DoRequestQFSSession.cpp(603): QFException: CCL_RETHROW: QFSSession::ProcessDoRequest()QFSSession.cpp(601): QFException: CCL_CAUGHT: QFSSession::ProcessDoRequest()QFSSession.cpp(558): QFException: CCL_RETHROW: QFSSession::ProcessDoRequest()QFSConnection.cpp(737): QFException: CCL_RETHROW: QFSConnection::ExecuteQFSQuery.cpp(199): QFException: CCL_RETHROW: QFSQuery::Execute v2CoordinationQFSQuery.cpp(4174): QFException: CCL_THROW: CoordinationPlanner
    I changed "Use SQL With Clause" to "No" to resolve that. After changing that I got the following error when I run the same OOTB report.
    RSV-SRV-0042 Trace back:RSReportService.cpp(758): QFException: CCL_CAUGHT: RSReportService::process()RSReportServiceMethod.cpp(239): QFException: CCL_RETHROW: RSReportServiceMethod::process(): promptPagingForward_RequestRSASyncExecutionThread.cpp(774): QFException: RSASyncExecutionThread::checkExceptionRSASyncExecutionThread.cpp(211): QFException: CCL_CAUGHT: RSASyncExecutionThread::run(): promptPagingForward_RequestRSASyncExecutionThread.cpp(824): QFException: CCL_RETHROW: RSASyncExecutionThread::processCommand(): promptPagingForward_RequestExecution/RSRenderExecution.cpp(593): QFException: CCL_RETHROW: RSRenderExecution::executeAssembly/RSDocAssemblyDispatch.cpp(264): QFException: CCL_RETHROW: RSDocAssemblyDispatch::dispatchAssemblyAssembly/RSLayoutAssembly.cpp(64): QFException: CCL_RETHROW: RSLayoutAssembly::assembleAssembly/RSDocAssemblyDispatch.cpp(331): QFException: CCL_RETHROW: RSDocAssemblyDispatch::dispatchChildrenAssemblyForwardAssembly/RSReportPagesAssembly.cpp(163): QFException: CCL_RETHROW: RSReportPagesAssembly::assembleAssembly/RSDocAssemblyDispatch.cpp(281): QFException: CCL_RETHROW: RSDocAssemblyDispatch::dispatchAssemblyAssembly/RSPageAssembly.cpp(287): QFException: CCL_RETHROW: RSPageAssembly::assembleAssembly/RSDocAssemblyDispatch.cpp(281): QFException: CCL_RETHROW: RSDocAssemblyDispatch::dispatchAssemblyAssembly/RSTableRowAssembly.cpp(160): QFException: CCL_RETHROW: RSTableRowAssembly::assembleAssembly/RSDocAssemblyDispatch.cpp(281): QFException: CCL_RETHROW: RSDocAssemblyDispatch::dispatchAssemblyAssembly/RSTableCellAssembly.cpp(122): QFException: CCL_RETHROW: RSTableCellAssembly::assembleAssembly/RSDocAssemblyDispatch.cpp(331): QFException: CCL_RETHROW: RSDocAssemblyDispatch::dispatchChildrenAssemblyForwardAssembly/RSTableAssembly.cpp(97): QFException: CCL_RETHROW: RSTableAssembly::assembleAssembly/RSDocAssemblyDispatch.cpp(331): QFException: CCL_RETHROW: RSDocAssemblyDispatch::dispatchChildrenAssemblyForwardAssembly/RSTableRowAssembly.cpp(160): QFException: CCL_RETHROW: RSTableRowAssembly::assembleAssembly/RSDocAssemblyDispatch.cpp(281): QFException: CCL_RETHROW: RSDocAssemblyDispatch::dispatchAssemblyAssembly/RSTableCellAssembly.cpp(122): QFException: CCL_RETHROW: RSTableCellAssembly::assembleAssembly/RSDocAssemblyDispatch.cpp(331): QFException: CCL_RETHROW: RSDocAssemblyDispatch::dispatchChildrenAssemblyForwardAssembly/RSAssembly.cpp(626): QFException: CCL_RETHROW: RSAssembly::createListIteratorAssembly/RSAssembly.cpp(667): QFException: CCL_RETHROW: RSAssembly::createListIteratorRSQueryMgr.cpp(978): QFException: CCL_RETHROW: RSQueryMgr::getListIteratorRSQueryMgr.cpp(1051): QFException: CCL_RETHROW: RSQueryMgr::getResultSetIteratorRSQueryMgr.cpp(1211): QFException: CCL_RETHROW: RSQueryMgr::createIteratorRSQueryMgr.cpp(1511): QFException: CCL_RETHROW: RSQueryMgr::executeRsapiCommandRSQueryMgr.cpp(1498): QFException: CCL_RETHROW: RSQueryMgr::executeRsapiCommandRSQueryMgrExecutionHandlerImpl.cpp(174): QFException: CCL_RETHROW: RSQueryMgrExecutionHandlerImpl::execute()RSQueryMgrExecutionHandlerImpl.cpp(154): QFException: CCL_RETHROW: RSQueryMgrExecutionHandlerImpl::execute()RSQFSession.cpp(243): QFException: CCL_RETHROW: RSQFSession::DoRequestQFSSession.cpp(603): QFException: CCL_RETHROW: QFSSession::ProcessDoRequest()QFSSession.cpp(601): QFException: CCL_CAUGHT: QFSSession::ProcessDoRequest()QFSSession.cpp(558): QFException: CCL_RETHROW: QFSSession::ProcessDoRequest()QFSConnection.cpp(737): QFException: CCL_RETHROW: QFSConnection::ExecuteQFSQuery.cpp(199): QFException: CCL_RETHROW: QFSQuery::Execute v2CoordinationQFSQuery.cpp(4174): QFException: CCL_THROW: CoordinationPlanner
    I changed "Auto Group & Summarize" to No then this error is resolved, report is displaying but the data within the report is showing duplication of reocrds. It seems because of changes for "Auto Group & Summarize" the report is not displaying aggregation or group data.
    I am using ATG 9.2, Oracle 10g , Oracle thin driver. Please help me to resolve these issues.
    Advanced Thanks for any help.
    Edited by: ram_atg_867614 on Jun 23, 2011 3:17 AM
    Edited by: ram_atg_867614 on Jun 23, 2011 3:22 AM

    Hi
    I think you may be running into a known product issue here - ARF-168034.
    You will need to contact the support team and log a support case.
    There are fixes available for this issue.
    Please send the full server log files containing both the errors you saw while opening the case.
    Thanks
    Gareth

  • Restrict % symbol in normalization BI 7.0

    Dear Friends,
    I have two quick questions.
    1. In Bex, while selecting variable values, how do i do setting to read the values either from Master data table or from the cube (data target).
    2. I have normalized a key figure. It shows normalization with symbol %. How to i restrict display of the % symbol.
    Your earliest help will be highly appreciated.
    Regards
    PK

    Hi,
    you can not insert directly.
    I can suggest you this options:
    1) Workbook introducind in MS-Excel "%" symbol.
    2) Introduce, like attribute of a IO Char in ODS, an IO that contains only %. Then in query use Formula Variable to take value % like attribute from that IO. Not sure but you can try.
    Ciao.
    create either calculated key figure or formula. Select your key figure, percentage share (%A) out of section "percentage functions" and 100 so formula will show up like this
    'key figure' %A 100
    If you created formula, hide your key figure from output to display result only once.
    Regards,
    Ravi.

  • Setting ACI using Macros

    Hi All,
    I want to restrict access for each domain to its users emails: A user belonging to a domain has to see the users of its own domain.
    Here is my ACI:
    (targetattr = "*") (target = "ldap:///($dn),dc=acme,dc=net")(version 3.0;acl "Domain Restriction";deny (read,search)(userdn != "ldap:///[$dn],dc=acme,dc=net??sub?(objectclass=inetOrgPerson)");)
    At my surprise, it denies the user to see everything! Can you tell me what's wrong with this ACI. If you have another method than using macros, please say it.
    Note that the domains in the tree are below dc=acme,dc=net

    Hi,
    The matching mechanism for [$dn] is slightly different than for ($dn). The DN of the targeted resource is examined several times, each time dropping the left-most
    RDN component, until a match is found.
    For example, ACI in the question restrict reading and seaching in DN dc=wharever,dc=acme,dc=net and below.
    IF you could create groups or roles for each domain this would be easy.
    This ACI give permission to users to access the entries within their group.
    targetattr = "*") (target = "ldap:///($dn),dc=acme,dc=net")(version 3.0;acl "Domain Restriction";allow (read,search,write,compare)(groupdn = "ldap:///($dn),dc=acme,dc=net and (objectclass=inetOrgPerson)")
    Best Regards,
    Ravi

  • How to do a time normalization on my data?

    I am trying to "time normalize" my data.Labview offers a way to normalize(ie.the amplitude).But how do I time normalize?
    To explain more:We have different kinds of movement(several movements inside one data file) starting and ending at different times-we would like to time normalize the data, so that each individual movement starts and ends at the same time-so we can compare it for our analysis.
    Thanks,
    Sujani.

    Well let me say that I appreciate the life you spare to help us!
    And judging by the following post, the "father of LV" appreciates it enough to thank you publicly!
    http://exchange.ni.com/servlet/ProcessRequest?RHIVEID=101&RPAGEID=135&HOID=506500000008000000B7D70000&USEARCHCONTEXT_CATEGORY_0=_49_%24_6_&USEARCHCONTEXT_CATEGORY_S=0&UCATEGORY_0=_49_%24_6_&UCATEGORY_S=0
    If you click on his link, it looks like he registered on the Dev-Exchange just to acknowledge you.
    Dennis, you have now accomplished the super-human twice over!
    Ben
    Ben Rayner
    I am currently active on.. MainStream Preppers
    Rayner's Ridge is under construction

  • Sql to normalize data in a table

    I have a table which has a column called 'species' this lists the species present at particular sites. At the moment this is a comma separated list for each site:
    Create table species_test (
    site_name number,
    species varchar2(255));
    insert into species_test values (1, 'Gallirallus_philippensis_assimilis, Botaurus_poiciloptilus, Cyclosorus_interruptus');
    insert into species_test values (2, 'Pomaderris_rugosa');
    insert into species_test values (3, 'Ptisana_salicina, Anguilla_dieffenbachii');
    What I want to do is normalize this data by having each species on a separate row so that it looks like:
    Create table species_testv2 (
    site_name number,
    species varchar2(255));
    insert into species_testv2 values (1, 'Gallirallus_philippensis_assimilis');
    insert into species_testv2 values (1, 'Botaurus_poiciloptilus');
    insert into species_testv2 values (1, 'Cyclosorus_interruptus');
    insert into species_testv2 values (2, 'Pomaderris_rugosa');
    insert into species_testv2 values (3, 'Ptisana_salicina');
    insert into species_testv2 values (3, 'Anguilla_dieffenbachii');
    Is this possible to do this with a query? At the moment I'm going through and normalizing it manually. This is just a sample - the actual dataset is much larger.
    Any help would be much appreciated.

    Hi,
    Here's one way:
    INSERT INTO species_testv2 (site_name, species)
    WITH    got_cnt    AS
        SELECT  site_name, species
        ,       1 + REGEXP_COUNT ( species
                                 )    AS cnt
        FROM    species_test
    ,   cntr    AS
        SELECT  LEVEL    AS n
        FROM    (
                    SELECT  MAX (cnt) AS max_cnt
                    FROM got_cnt
        CONNECT BY   LEVEL <= max_cnt
    SELECT  g.site_name
    ,       REGEXP_SUBSTR ( g.species
                          , '[^, ]+'
                          , 1
                          , c.n
    FROM    got_cnt  g
    JOIN    cntr     c  ON  c.n  <= g.cnt

  • DPS global ACI (mapping not working)

    Hello!
    we are using DPS 6.3.
    We have several connection handlers configured which are mapping the requests from base dc=unicreditgroup,dc=eu to dc=hvb,dc=de and back from dc=hvb,dc=de to dc=unicreditgroup,dc=eu. Works fine.
    We now want to configure a global ACI for DPS to allow only certain Attributes to be available through the DPS.
    To test the global ACI I configured:
    bash-3.00# less access_controls.ldif
    dn: cn=virtual access controls
    objectclass: top
    objectclass: ldapSubentry
    cn: virtual access controls
    dn: cn=vitualaci,cn=virtual access controls
    objectclass: aciSource
    dpsaci: (targetattr="*")(target="ldap:///ou=people,dc=unicreditgroup,dc=eu"
    ) (version 3.0;acl "perm1"; allow(all) userdn ="ldap:///anyone";)
    cn: cn=vitualaci
    And I configured a connection handler to use this ACI:
    dpconf set-connection-handler-prop -h localhost -p 389 hvbBinds aci-source:vitualaci
    When I now try a ldapsearch I won't get any information back. The access log shows that the mapping unicreditgroup to hvb is not working any more.
    Without global ACI the access log looks like this. The underlined words show the mapping:
    [17/Nov/2008:10:26:56 +0100] - CONNECT - INFO - conn=2 client=127.0.0.1:41528 server=localhost:389 protocol=LDAP
    [17/Nov/2008:10:26:56 +0100] - PROFILE - INFO - conn=2 assigned to connection handler cn=default connection handler, cn=connection handlers
    , cn=config
    [17/Nov/2008:10:26:56 +0100] - OPERATION - INFO - conn=2 op=0 BIND dn="uid=m050183,ou=people,dc=unicreditgroup,dc=eu" method="SIMPLE" version
    =3
    [17/Nov/2008:10:26:56 +0100] - SERVER_OP - INFO - conn=2 op=0 BIND dn="uid=m050183,ou=people,dc=hvb,dc=de" method="SIMPLE"" version=3 s_msgid
    =2 s_conn=dsmmucqsu09:16
    [17/Nov/2008:10:26:56 +0100] - SERVER_OP - INFO - conn=2 op=0 BIND RESPONSE err=0 msg="" s_conn=dsmmucqsu09:16
    [17/Nov/2008:10:26:56 +0100] - PROFILE - INFO - conn=2 assigned to connection handler cn=hvbBinds,cn=connection handlers,cn=config
    [17/Nov/2008:10:26:56 +0100] - OPERATION - INFO - conn=2 op=0 BIND RESPONSE err=0 msg="" etime=0
    [17/Nov/2008:10:26:56 +0100] - OPERATION - INFO - conn=2 op=1 msgid=2 SEARCH base="_dc=unicreditgroup,dc=eu_" scope=2 filter="(uid=m050183)" at
    trs="*"
    [17/Nov/2008:10:26:56 +0100] - SERVER_OP - INFO - conn=2 op=1 SEARCH base="_dc=hvb,dc=de_" scope=2 filter="(uid=m050183)" attrs="*" s_msgid=3 s
    _conn=dsmmucqsu09:16
    [17/Nov/2008:10:26:56 +0100] - SERVER_OP - INFO - conn=2 op=1 SEARCH RESPONSE err=0 msg="" nentries=1 s_conn=dsmmucqsu09:16
    [17/Nov/2008:10:26:56 +0100] - OPERATION - INFO - conn=2 op=1 SEARCH RESPONSE err=0 msg="" nentries=1 etime=510
    [17/Nov/2008:10:26:56 +0100] - OPERATION - INFO - conn=2 op=2 UNBIND
    [17/Nov/2008:10:26:56 +0100] - DISCONNECT - INFO - conn=2 reason="unbind"
    *With global ACI* the mapping does not work any more and the access log looks like this.
    I underlined only dc=unicreditgroup,dc=eu because there is no mapping to dc=hvb,dc=de:
    [17/Nov/2008:10:22:31 +0100] - CONNECT - INFO - conn=57 client=127.0.0.1:41360 server=localhost:389 protocol=LDAP
    [17/Nov/2008:10:22:31 +0100] - PROFILE - INFO - conn=57 assigned to connection handler cn=default connection handler, cn=connection handler
    s, cn=config
    [17/Nov/2008:10:22:31 +0100] - OPERATION - INFO - conn=57 op=0 BIND dn="uid=m050183,ou=people,dc=unicreditgroup,dc=eu" method="SIMPLE" versio
    n=3
    [17/Nov/2008:10:22:31 +0100] - SERVER_OP - INFO - conn=57 op=0 BIND dn="uid=m050183,ou=people,dc=hvb,dc=de" method="SIMPLE"" version=3 s_msgi
    d=3 s_conn=dsmmucqsu08:4
    [17/Nov/2008:10:22:31 +0100] - SERVER_OP - INFO - conn=57 op=0 BIND RESPONSE err=0 msg="" s_conn=dsmmucqsu08:4
    [17/Nov/2008:10:22:31 +0100] - PROFILE - INFO - conn=57 assigned to connection handler cn=hvbBinds,cn=connection handlers,cn=config
    [17/Nov/2008:10:22:31 +0100] - OPERATION - INFO - conn=57 op=0 BIND RESPONSE err=0 msg="" etime=0
    [17/Nov/2008:10:22:31 +0100] - OPERATION - INFO - conn=57 op=1 msgid=2 SEARCH base="_dc=unicreditgroup,dc=eu_" scope=2 filter="(uid=m050183)" a
    ttrs="*"
    [17/Nov/2008:10:22:31 +0100] - OPERATION - INFO - conn=57 op=1 SEARCH RESPONSE err=0 msg="" nentries=0 etime=0
    [17/Nov/2008:10:22:31 +0100] - OPERATION - INFO - conn=57 op=2 UNBIND
    [17/Nov/2008:10:22:31 +0100] - DISCONNECT - INFO - conn=57 reason="unbind"
    This seems to be the problem why I don't get any data back when I'm trying an ldapsearch.
    ldapsearch -h localhost -p 389 -b dc=unicreditgroup,dc=eu -D "uid=m050183,ou=people,dc=unicreditgroup,dc=eu" -w xxxxxx '(uid=m050183)'
    Any idea if I'm doing something wrong or if it is a bug that the mapping does not work?
    Best regards,
    Beate

    Hello!
    I was told by Sun that it is a bug.
    Regards,
    Beate

  • ACI modification with Plug-in, but Problem, it has no effect.

    I wrote Plug-in which modifies some entries' ACI attribute according to client's certain request.
    My Plug-in works well, ACI is updated well, and updated ACI Syntax is legal.
    But, the updated ACI does not effect on Access controll.
    It effects nothing
    until the ldap server is restarted
    or it(the ACI updated by Plug-in) is re-edited via iPlanet console.
    following is real ACI example and more detailed .
    1. After client`s certain request (modifying some entry), following ACI value is added to an entry by plug-in. ( My fellow wrote the plug-in)
    (targetfilter = "(ssoUsPathId=mt04-01)")
    (targetattr = "*")
    (version 3.0; acl "SLAPI-generated Permissions"; allow (all)
    (userdn = "ldap:///uid=ga,ou=user,o=ssoroot??sub?(ssoAccessAllowed=TRUE)");)
    2. But the user "ldap:///uid=ga,ou=user,o=ssoroot??sub?(ssoAccessAllowed=TRUE)");)" has no Access
    to the entries allowed by the updated ACI.
    3. Two mothods make it effect the updated ACI, but it's manual and impractical.
    3.1. one : restart the iplanet ldap server 5.0.
    3.2. two : edit & save the ACI updated by plug-in, through the iPlanet Console 5.0.
         but, "edit & save" only does add meaningless space the ACI.
         following is the same case before and after "edit & save"
    (targetfilter ...) (...) (...) : before
    (targetfilter ...) _(...) (...) : after
    ("_" means space)
         Difference between before & after is only meaningless space.
         Before & after has same meaning in ACI Syntax.
    There is no difference between step 2. and step 3.2. in ACI meaning & syntax.
    4. what can i do for resolving this problem?
         Thanks in advance.

    If you want to ensure the ACI has that value you need to write a pre-op plugin which only makes this change when the aci is changed. Aci's are cached and the only way to trigger a re-cache is a modify operation involving the aci attribute.

  • ACI, 2 BD´s and 2 EPGs in L2 mode won´t talk even with contract supplied

    Hi experts
    I tried to make a L2 connection between 2 EPG in different BD, both BD are in L2 mode and in the same Private network, I saw in the sniffer that the traffic was send between the EPG ( hosts)  but the "ping" between the hosts did not got answered. we had a contract between the EPG´s that was allow any in both directions.
    the connection works between the 2 host  with the  2 EPG´s  in the same BD with the same any contract.
    is it intended that 2 BDS won´t let 2 EPG´s talk in L2 mode ( Floodmode ) ?.
    And I read that the L2 external is not a separate BD but 2 EPG´s  in a " L2 construct"  with a contract between and the AEP stuff to get physical to work
    /Ola

    Just to understand, you created two BDs in flood and L2 mode and two EPGs. The two hosts are using the same subnet/address space to talk to each other and you have a contract in between the two EPGs yet the communication is not working. 
    When you put the two EPGs in the same BD it works? correct?
    Its a very interesting question, but there is something you must remember about ACI. The BD is the flood/forwarding boundary. Since you are using two different flood domains and no routing (unicast off and no subnet/SVI on the BD), ARPs and general data flood/packets will not traverse the flood domains, even with a contract. 
    What other questions do you have? Thanks for using Support Forums, hope that helps!

  • Possible to restrict logins on hosts w/ ACI?

    Greetings,
    My DS impelementation is beginning to mature some, and I'm not faced with the possibility that I may need to restrict logins on various hosts. My current setup is using LDAP netgroups to define who can log in to which server, but now I'm being asked to restrict it even further...some people in those netgroups will be explicitly disallowed from logging into some servers (think about contractors working with an already established team...you may not want them logging into just any server simply because they're part of a netgroup that can).
    So, what I'm looking to do is set up ACI's to say something like "User X can log into servers A, B, and C, but none other".
    Any ideas? I've tried creating ACI's using the ACI-builder, and I've done so at both the leaf entry and at the branch point, and I can still log into any server that that user's netgroup allows. So, either my ACI's are not built properly, or I"m not putting them in the right place. I suppose another possibility is that this type of access restriction isn't possible, but I'd have guessed that this was part of the point of ACI's :)
    Thanks!
    Patrick

    Hi Tom,
    Thank you for posting in Windows Server Forum.
    For your environment, I would suggest you to use following command.
    Firstly find user session ID with: Query Session /Server:Servername
    For disconnecting existing login: 
    Disconnect-RDUser -HostServer sessionhost.contoso.com -UnifiedSessionID 2
    For sending message to users:
    Send-RDUserMessage -HostServer "rdsh.contoso.com" -UnifiedSessionID 1 -MessageTitle "Message from Administrator" –MessageBody "Please save your work. You will be logged off in 10 minutes"
    You can deny new user logons by specifying user login mode.
    Change Logon /Disable
    http://technet.microsoft.com/en-us/library/bb490792.aspx
    Hope it helps!
    Thanks.
    Dharmesh Solanki
    TechNet Community Support

  • Volume, Normalize, Louder Button, Hard Limit, Equalize

    I have some fairly decent and really quite beautiful recordings of live readings of classical English poetry by professional actors to which I own the copyright.  I want to put them up on one of my websites as a free offering to students and professors and anyone else interested. That means I would be saving the edited Soundbooth files as mp3s.
    I have 3 qs:
    1. When dealing with a Soundbooth file in Soundbooth, what standard of normality should I use for the volume? Should I keep my speakers at medium volume or turn them to their lowest or highest?
    2. They sound a little low at medium volume right now.  So assuming that's where the dial should be, what do I do to the file in Soundbooth? Should I select <normalize> and then <hard limit>?  Should I click 2x on the <louder button> to make them louder and reach <hard limit>?  Should I simply click on the <equalize> button? Should I click on the <equalize> button and then on something else?  Is there a right way of doing this?
    3. If not. Can anyone volunteer how he/she would go with this?  Each of the above in my #2 seems to give a different result. 
    Best & thanks,
    Karla

    @Dave_LaRonde Mylenium
    Thanks guys. I know AE's audio capabilities are severely malnourished. So... I accept that there is NOT a solution inside AE for my question. I know there are infinite ways to batch process audio outside of AE. We use Audition, and some nice VST plugins... so, IF we had the luxury of mastering audio outside of AE, we would. We do as much normalizing as possible before we include files into the audio libraries: sample/bit rates, mono, hard limiting, etc.
    Our workflow is such that we have a vast library of audio variables that are sitting on a server. We receive a data set from our client that indicates which specific audio variables to incorporate into an AE project. Then our visual elements are also scripted (specifically text layers, captions) to correspond to the audio. (Think audio/visual mad libs).... We can't possibly build all the combinations and master them in advance.
    Our workflow is: receive data, run script, import relevant audio files into an .aep, edit corresponding text layer values, render, deliver to corresponding target recipient (each one getting a unique video). It's kind of a realtime workflow, meaning the whole process takes about 5 minutes to return 1000s of customized video experiences. Does that make sense?
    Anyway, I really value both your experience in AE. I'm using new Adobe ID, so I look like a new guy, but have been using the forums for a couple years and often found your answers and insights to be most helpful! Thanks.

Maybe you are looking for

  • Problems with Software Update

    When attempting to use software update, I am receiving a message that says update is unable to connect to the internet. Meanwhile I can still use Safari and Mail successfully so my connection is actually there. Any thoughts as to what could be causin

  • My boss needs to share his calendar with me. How can we do it without buying more hardware?

    So my boss has tons of mac stuff, iPhone, macbook, iPad, etc and he has dozens of calendars all synchronized between them with iCloud. He needs to share them with me. I signed up for an iCloud account, but it says: "To sign in with this account, use

  • External Web Service - User and password in HTTP header

    Hi! How is it possible to add user and password in the HTTP header in a external web service call?  I have created a "Portal Service from WSDL file - Client side" with the wizard in SAP Developer Studio.  I following the Java Development Guide - Web

  • Getting network error in facebook app in my ipad mini

    I'm using ipad min wi-fi. Facebook app is showing network error and while trying to open through Safari it is showing "WARNIGN!! your flash player is out of date. please update to continue" I have uninstalled and installed again. But it is not workin

  • Signed applets and dialogs

    hi all, question to clarify my understanding of signed applets. got a bog-standard applet. nothing clever or special. got myself a bog-standard cert from thawte. signed the applet and put it on a webserver. displays the correct security notice on fir