Anomaly Guard Module

Im trying to understand the relationship between the detector and guard modules. Can the guard operate without the detector?

The Guard module is a denial-of-service (DDoS) mitigation product that receives traffic diverted from attacked targets, cleans this traffic, and forwards the cleaned traffic to its original path.
The Detector module is a denial-of-service (DDoS) detection product that receives a copy of the traffic on the switch, analyzes that traffic, and sends out an alert when it detects a DDoS attack. The Detector module can also activate a configured Guard module to mitigate these attacks.

Similar Messages

  • Anomaly Guard Module Configuration

    I have an 1Gbps AGM and I am configuring Anomaly Guard Module. For testing purpose, I am trying to bypass/route the traffic through AGM, but I could not. The configuration is as mentioned below. I have captured the traffic using packet-dump and I could understand that traffic is forwarded to AGM, but not leaving AGM.
    Can you please advice, what is missing in this configuration to enable all traffic to pass through AGM.
    Configuration:
    6509 Config:
    firewall multiple-vlan-interfaces
    firewall module 2 vlan-group 161
    firewall vlan-group 161 2,10,62
    anomaly-guard module 8 port 1 allowed-vlan 2
    anomaly-guard module 8 port 2 allowed-vlan 61,62
    anomaly-guard module 8 port 1 native-vlan 2
    vlan 2-3,10-12,20,50-51,61-62
    end
    AGM Config:
    diversion hijacking receive-via-ip 172.17.61.16
    diversion hijacking receive-via-vlan 61
    diversion injection 172.18.10.0 255.255.255.0 nexthop 172.17.66.1
    interface eth1
    ip address 172.18.2.11 255.255.255.0
    mtu 1500
    no shutdown
    exit
    interface giga2
    mtu 1500
    proxy 172.17.61.15
    no shutdown
    exit
    interface giga2.61
    ip address 172.17.61.16 255.255.255.0
    mtu 1500
    no shutdown
    exit
    interface giga2.62
    ip address 172.17.66.15 255.255.255.0
    mtu 1500
    no shutdown
    exit
    ip route 192.168.100.0 255.255.255.0 172.17.61.1 giga2.61
    ip route 172.18.10.0 255.255.255.0 172.17.66.1 giga2.62
    default-gateway 172.17.61.1
    zone CUSTOMER GUARD_DEFAULT
    ip address 172.18.10.0 255.255.255.0
    no bypass-filter *
    bypass-filter 10 * * * no-fragments
    bypass-filter 11 172.17.61.1 * * no-fragments
    bypass-filter 12 192.168.100.1 * * no-fragments
    end

    The Guard module can operate at two different bandwidth performance levels: 1 Gigabit per second (Gbps) or 3 Gbps. The software image that you load on the Guard module determines the operating bandwidth by controlling the three physical interfaces between the module and the supervisor engine.

  • Has anybody experience with "Cisco Anomaly Guard Module"

    Hello,
    had anybody experience with "Cisco Anomaly Guard Module" WS-SVC-AGM-1-K9 for Catalyst 6500?
    We're looking for some IDS/IPS prevention system which could take 2-3 Gbits of traffic. From the documentation it looks not bad, and we can get them as used parts (6500 + Sup720 + AGM +ADM) quite cheap. The second solution is Arbor with cisco12000 as boader router (10Gbit uplink) is much more expencevie.
    Arbor tries of cause sell us their solution as "Cisco Anomaly Guard Module" is ot of sale and doesn't have any new features, but from the Data sheets Cisco AGM is eactly what we need.
    Or may be is there another solution which could be comparable to those two?
    Thank you.

    Hello padatta,
    AGM/ADM are IDS/IPS systems, one can of couse discuss about the terms, but it won't be productive :).
    IDSM2 has not enough performance and it should sit inline, ADM/AGM can change he next hop for the diverted traffic and be out of traffic path during the normal operation.
    Konstantin

  • ADM(Anomaly Dectector Module) PowerDown Failure in upgrade process.

    hellow, everyone.
    i'm yunchouljung in korea
    i have a question about ADM module power down issue.
    i had upgraded AGM Module successfully in version 6.1.2 to 6.1.6
    but failed ADM Module upgrade in version 6.1.2 to 6.1.6
    i uploaded a AP images in MP status and enterd "hw-module module 12 reset cf:4" command.
    (i waited a message "you can now reset the module....")
    after a reset process, ADM module disabled by SCP dnld Failure.
    so, i enabled a power on ADM Module but result is same.
    my upgrade process is below.
    1.     hw-module module 12 reset cf:1
    2.     copy ftp://[email protected]/c6svc-adm1G-k9.6-1-6.bin pclc#12-fs:
    3.     hw-module module 12 reset cf:4
    anybody help me?
    thanks in advance.
    p.s : i have already tested other ios version and ap/mp images.
    ================================================================
    the module version and log is below.
    Router_OUT#sh module
    Mod Ports Card Type                              Model              Serial No.
      2    3  Anomaly Guard Module                   WS-SVC-AGM-1-K9   
      3   16  16 port 1000mb GBIC ethernet           WS-X6416-GBIC     
      5   48  SFM-capable 48 port 10/100/1000mb RJ45 WS-X6548-GE-TX    
      7    2  Supervisor Engine 720 (Active)         WS-SUP720-3B      
      9    4  CEF720 4 port 10-Gigabit Ethernet      WS-X6704-10GE     
    10    8  Network Analysis Module                WS-SVC-NAM-2      
    12    3  Anomaly Detector Module                WS-SVC-ADM-1-K9   
    Mod MAC addresses                       Hw    Fw           Sw           Status
      2  0017.e067.ec6c to 0017.e067.ec73   2.0   7.2(1)       6.1(6)       Ok
      3  000e.d73c.3d40 to 000e.d73c.3d4f   2.5   5.4(2)       8.5(0.46)RFW Ok
      5  0015.2bfe.c130 to 0015.2bfe.c15f  10.1   7.2(1)       8.5(0.46)RFW Ok
      7  0016.c85e.3aa0 to 0016.c85e.3aa3   5.2   8.4(2)       12.2(18)SXF1 Ok
      9  001b.d45d.f890 to 001b.d45d.f893   2.6   12.2(14r)S5  12.2(18)SXF1 Ok
    10  0003.fead.7592 to 0003.fead.7599   2.0   7.2(1)       4.0(1)       Ok
    12  0012.80f1.1ae8 to 0012.80f1.1aef   1.0   7.2(1)       8.5(0.46)RFW PwrDown
    Mod  Sub-Module                  Model              Serial       Hw     Status
      7  Policy Feature Card 3       WS-F6K-PFC3B       SAL10478K1R  2.3    Ok
      7  MSFC3 Daughterboard         WS-SUP720          SAL104892TJ  2.5    Ok
      9  Centralized Forwarding Card WS-F6700-CFC       SAL1124QX44  3.1    Ok
    Mod  Online Diag Status
      2  Pass
      3  Pass
      5  Pass
      7  Pass
      9  Pass
    10  Pass
    12  Not Applicable
    Router_OUT#
    47w1d: SP: The PC in slot 2 is shutting down. Please wait ...
    47w1d: SP: shutdown_pc_process:No response from module 2
    Jul 13 16:54:49: %C6KPWR-SP-4-DISABLED: power to module in slot 2 set off (Reset)
    47w1d: SP: OS_BOOT_STATUS(2) MP OS Boot Status: finished booting
    Jul 13 16:56:50: %DIAG-SP-6-RUN_MINIMUM: Module 2: Running Minimal Diagnostics...
    Jul 13 16:56:57: %MLS_RATE-4-DISABLING: The Layer2 Rate Limiters have been disabled.
    Jul 13 16:56:57: %DIAG-SP-6-DIAG_OK: Module 2: Passed Online Diagnostics
    Jul 13 16:56:57: %OIR-SP-6-INSCARD: Card inserted in slot 2, interfaces are now online
    Jul 13 16:56:58: %SVCLC-5-FWTRUNK: Firewalled VLANs configured on trunks
    Jul 13 17:32:23: %SVCLC-SP-5-STRRECVD: mod 2: <Application upgrade has started>
    Jul 13 17:32:23: %SVCLC-SP-5-STRRECVD: mod 2: <Do not reset the module till upgrade completes!!>
    Jul 13 17:42:11: %SVCLC-SP-5-STRRECVD: mod 2: <Application upgrade has succeeded>
    Jul 13 17:42:11: %SVCLC-SP-5-STRRECVD: mod 2: <You can now reset the module>
    47w1d: SP: The PC in slot 2 is shutting down. Please wait ...
    47w1d: SP: PC shutdown completed for module 2
    Jul 13 17:42:57: %C6KPWR-SP-4-DISABLED: power to module in slot 2 set off (Reset)
    47w1d: SP: OS_BOOT_STATUS(2) Anomaly Guard OS Boot Status: finished booting
    Jul 13 17:45:03: %DIAG-SP-6-RUN_MINIMUM: Module 2: Running Minimal Diagnostics...
    Jul 13 17:45:06: %MLS_RATE-4-DISABLING: The Layer2 Rate Limiters have been disabled.
    Jul 13 17:45:06: %DIAG-SP-6-DIAG_OK: Module 2: Passed Online Diagnostics
    Jul 13 17:45:06: %OIR-SP-6-INSCARD: Card inserted in slot 2, interfaces are now online
    Jul 13 17:45:07: %SVCLC-5-FWTRUNK: Firewalled VLANs configured on trunks
    47w1d: SP: The PC in slot 12 is shutting down. Please wait ...
    47w1d: SP: shutdown_pc_process:No response from module 12
    Jul 13 17:53:29: %C6KPWR-SP-4-DISABLED: power to module in slot 12 set off (Reset)
    47w1d: SP: OS_BOOT_STATUS(12) MP OS Boot Status: finished booting
    Jul 13 17:55:30: %DIAG-SP-6-RUN_MINIMUM: Module 12: Running Minimal Diagnostics...
    Jul 13 17:55:37: %MLS_RATE-4-DISABLING: The Layer2 Rate Limiters have been disabled.
    Jul 13 17:55:36: %DIAG-SP-6-DIAG_OK: Module 12: Passed Online Diagnostics
    Jul 13 17:55:37: %OIR-SP-6-INSCARD: Card inserted in slot 12, interfaces are now online
    Jul 13 18:26:27: %SVCLC-SP-5-STRRECVD: mod 12: <Application upgrade has started>
    Jul 13 18:26:27: %SVCLC-SP-5-STRRECVD: mod 12: <Do not reset the module till upgrade completes!!>
    Jul 13 18:37:05: %SVCLC-SP-5-STRRECVD: mod 12: <Application upgrade has succeeded>
    Jul 13 18:37:05: %SVCLC-SP-5-STRRECVD: mod 12: <You can now reset the module>
    47w1d: SP: The PC in slot 12 is shutting down. Please wait ...
    47w1d: SP: PC shutdown completed for module 12
    Jul 13 18:38:35: %C6KPWR-SP-4-DISABLED: power to module in slot 12 set off (Reset)
    Jul 13 18:46:04: %C6KPWR-SP-4-DISABLED: power to module in slot 12 set off (Module  Failed SCP dnld)
    Jul 13 18:53:54: %OIR-SP-6-REMCARD: Card removed from slot 12, interfaces disabled
    Jul 13 19:01:28: %C6KPWR-SP-4-DISABLED: power to module in slot 12 set off (Module  Failed SCP dnld)

    > *** ERROR => ThInit: db_connect (step 1, th_errno
    >  13, action 3, level 1) [thxxhead.c   10156]
    Is your database running (mounted and open)?
    Markus

  • Anomaly Guard & Anomaly Detector image upgradation

    Dear all,
    Is there any way to upgrade image for Anomaly Guard & Detector as I have tried the way mentioned in the documentation but its not working b/c new-version option in the command is not visible.
    I have tried using following way but its not working...
    admin@AD-2#copy ftp login-banner 172.16.250.10 /c6svc-adm1G-k9.6-1-5.
    bin cisco cisco123
    FTP in progress...
    Error: Cannot import non-text banner file
    admin@AD-2#
    As per the documentation we need to use the following command but that is not available with any user
    copy ftp new-version server full-file-name [login [password]]
    Regards,
    Akhtar

    Akhtar, Is this an Anomaly Guard/Detector Appliance or an Anomaly Guard/Detector Module?
    Based upon the image you are trying to use I would guess the module. Unfortunately the modules do not follow the same upgrade documentation as the appliance.
    To upgrade the module devices you must use the Maintenance Partition. See documentation here:
    http://www.cisco.com/en/US/docs/interfaces_modules/services_modules/anomaly_guard/v6.1/configuration/guide/mainten.html#wp1265062

  • 1 compact flash partition on Detector or Guard

    Hello
    There is 1 compact flash in the Detector or Guard module to save Activity log and Attack report.
    I would like to know structure of 1 CF on G&D,
    There are three data on G&D, configuration and log, attack-report.
    Configuration, log, attack-report is saved in 1 CF memory? if so. could you tell me the each partition size, for example configuration is allocated 100Mbytes, and log is assigned 50M like so,
    I appreciate it if you give me the answer as soon as possible.
    Thank you.

    You really should start your own thread rather then posting it to bottom of one that has been dorment for a year.
    If you start your own thread you will have control over and will be able to mark it solved whereas here you can't do that.
    In additon if you start your own thread your problem will get much attention that at the bottom of this dorment one.
    Allan

  • How can I use Local SPAN with RSPAN ??

    How can I use Local SPAN with RSPAN ??
    I want to mirror traffics from ISP-A and ISP-B to Anomaly-detector module.
    so I had configured like this...
    C6500-A
    vlan 1000
    name RSPAN
    remote-span
    monitor session 10 source interface Gi5/1 - 2 rx
    monitor session 10 destination remote vlan 1000
    monitor session 20 destination anomaly-detector-module 3 data-port 1
    monitor session 20 source remote vlan 1000
    interface GigabitEthernet1/13
    switchport
    switchport trunk encapsulation dot1q
    switchport trunk allowed vlan 1000
    switchport mode trunk
    no ip address
    C6500-B
    vlan 1000
    name RSPAN
    remote-span
    monitor session 10 source interface Gi5/1 - 2 rx
    monitor session 10 destination remote vlan 1000
    interface GigabitEthernet1/13
    switchport
    switchport trunk encapsulation dot1q
    switchport trunk allowed vlan 1000
    switchport mode trunk
    no ip address
    end
    but it was not working..
    it wasn't any change of input packet hit count when
    I'd enter a command 'show anomaly-detector module 3 data-port 1 traffic'
    was upper configuration wrong..?
    Can I use VACL configuration ?

    try to change "monitor session 10 destination remote vlan 1000 " to "monitor session 10 destination anomaly-detector-module 3 data-port 1 " on C6500-A

  • Authentication on an IDSM-2?

    I have a requirement to have Authentication on our network devices using RSA Secure tokens or restrict it's mgmt interface from the network.
    So far I am using AAA through the ACS to accomplish this but I can find nothing about AAA for the IDSM-2.
    Does AAA exist for the IDSM-2 or does anyone have another suggestion for said devices?
    Thanks!
    (Current HW setup. Will be upgrading to 720's soon but my security deadline is looming sooner.)
    Mod Slot Ports Module-Type Model Sub Status
    1 1 2 1000BaseX Supervisor WS-X6K-SUP2-2GE yes ok
    15 1 1 Multilayer Switch Feature WS-F6K-MSFC2 no ok
    2 2 16 1000BaseX Ethernet WS-X6516-GBIC no ok
    3 3 16 10/100/1000BaseT Ethernet WS-X6516-GE-TX no ok
    4 4 16 10/100/1000BaseT Ethernet WS-X6516-GE-TX no ok
    13 13 8 Intrusion Detection Mod WS-SVC-IDSM-2 yes ok

    Cisco Traffic Anomaly Detector Module:
    Authentication, Authorization, and Accounting (AAA) Support
    Integrates with AAA through TACACS+
    Privilege-level and command-level authorization and accounting
    http://www.cisco.com/en/US/products/hw/modules/ps2706/products_data_sheet0900aecd80220a6e.html

  • IDSM-2 (7.0.2) want it to monitoring traffic and not affect anything

    Hello All,
    I am pretty new to IDSM's, just trying to learn about them.  I am working on a production network so I'm having to be pretty careful..
    We have 2 X 6513 with two IDSM-2 installed in each which have just been upgraded to 7.0.2.  They are all in promiscuous mode and we are using VACLS to redirect traffic to them for checking, I want to ensure there is no way that the production traffic can be affected, I can see most of the actions that affect traffic require the IDSM's to be working in INLINE mode.
         The action I was worried about was the TCP RESET, from what I read it seems that this is sent from the management interface of the device and I believe (I may not be correct) that this is available both in inline and in promiscuous mode.  Can anyone confirm if this is correct, is the TCP RESET available in PROMISCUOUS mode and if it is how do I turn it off.  Currently we only want the devices to monitor and then move to the more advanced features after we get a better understanding of our network.
    P.S.  Could anyone suggest a good document on how to go about managing and making use of the amount of alerts, and also IDSM setting up and tuning in general..
    Any help anyone could give would be gratefully appreciated.
    Thanks in advance.

    The action that you specify on each signature defines the action taken. When in promiscuous mode (IDS), actions like drop inline etc will not be available. The best way to go about what you want is to set all your signatures to just fire alerts when they trigger. Some signatures will have actions like tcp reset but if you sort from the action column in the IDM you can easily find these and remove the action and rather just produce alert for it instead. This will allow you to tweak your IDS before applying it inline (IPS) if that is your goal.
    Be aware also that the IDS will baseline your network and the Anomaly Detection module will act a little crazy if you don't let it monitor your network for 1-2 days of normal traffic.

  • SAP treasury or Sun guard's "integrity" treasure module

    HI Gurus,
    i want to know if SAP treasury or Sun guard’s “integrity” treasure module and why?
    Especially for customers who already have an SAP landscape. Can any one suggest or direct me to any SAP Docs and Links where i can get more information indepth.
    Any information ASAP would be really appreciated.
    Thanks in advance.

    Hi Shravan,
    I don't think there is just one (correct) answer to that kind of question - depends on number of factors.
    as Sunguard states on their homepage, 'AvantGard Treasury Corporate (Integrity) is aimed at meeting more basic cash management requirements'. please find a link to an overview of AVANTGARD INTEGRITY - Treasury Corporate Edition (CE) - http://www.sungard.com/~/media/FinancialSystems/Brochures/Corporations/Treasury/AvantGard_Datasheet_Integrity_CE.ashx
    Kind regards,
    Renatas

  • WM/IM modules for SAP

    Being a newby to the WM/IM modules for SAP, does anyone know where I can get documentation and/or refer me to documentation on low level features of these modules.  I'm basically looking for answers to the features listed below. Thanks
    Feature
    RECEIVING
    ASN/EDI:
    Conventional:
    Automatic:
    Purchase Order:
    Lot:
    Serial Number:
    Vendor:
    QC Sampling:
    Receipts Tagging:
    Cross-docking:
    STORAGE/PUTAWAY
    Operator Directed:
    System Directed:
    Dedicated Storage:
    Random Storage:
    Verification:
    Quarantine:
    INVENTORY CONTROL
    Units of Measure:
    Shelf Life:
    QC Status:
    Bulk Storages:
    Lot Tracking:
    Consolidation:
    Relocation:
    Cycle Counting:
    ORDER PROCESSING
    Conventional:
    Local Terminal:
    Emergency:
    Back Orders:
    ORDER PICKING
    Mechanized:
    Pick Generation:
    Stock Allocation:
    Picking Labels:
    Picking Strategy:
    Negative Picking:
    Sortation:
    Restrictions:
    Pick Strategies:
    Verification:
    Pick Retasking:
    SHIPPING
    Order Verification:
    Anomaly Handling:
    Manifesting:
    Bills of Lading:
    Freight Ratings:
    Shipment Labels:
    Product Sizing:
    OTHER
    Reports/Screens:
    GUI
    Host Link:
    Returns:
    Fine Granularity
    Partial Receiving
    Handling Unknown
    Reverse Pick

    Hi Sonny,
    I am working with Extended Warehouse Management, the latest solution of SAP for WM/PI, and you will be glad to know that all the functionality asked by you are provided by EWM and many more.
    to know more about EWM you can search its documantation at https://help.sap.com
    search for mySAP Business Suite -> Supply Chain Management-> SCM 5.0 -> EWM
    you will find the complete documentation explaining the solutions to all your problems regarding warehouse management and PI. Just check it out.
    If you still faces problems or need some direct answers just ask me I will be happy to help you out.
    Regards,
    Shailesh

  • SNMP issues after upgrading Guard

    We recently upgraded one of our Cisco Guards from 6.0(10) to the latest version (6.1(2)) and now the following OID's do not appear to work/exist any longer:
    rhNEAcceleratorCPUUtilization.1
    rhNEAcceleratorMemoryUtilization.1
    The ability to graph these are critical due to the following bug:
    CSCsc05116 - The Guard may stop functioning or start logging errors after reaching 100 percent anomaly detection engine memory utilization. Workaround: Use the show resources command in global mode to view the amount of anomaly detection engine memory currently being used by the Guard. Reducing the number of active zones may free up memory.
    I thought that maybe they changed the way it is queried but was unsuccessful with anything else I tried (using the latest MIB).
    I apologize if I have posted this in the wrong place.
    Any help is greatly appreciated.
    Thank you.

    There is a bug filed for this issue you have mentioned and the work around for this issue is that the Anomaly Detection memory should be freed by deactivating one or more zones, or alternatively by disabling several number of policies/services.
    You can delete a specific service relating to a policy template.
    To delete a service from a policy, enter the following at the policy template prompt:
    remove-service service-num

  • Images are blurred in Library module

    I am having some new issues when viewing images in the Library module. I have been using LR for quite sometime and this is the first time. I saw a thread somewhere here that maybe this might be a bug. Is that correct. Let me walk you through some of the chronological process.
    1-I was viewing RAW images in the Library module and noticed the images were trying to stay in focus. Then since that time the images have been rather soft, blurred.
    2-I Optimized the Catalog, and changed the "preview settings". But it didn't not make any improvement.
    3- I viewed the same images using Image Browser just for a comparison, and I was amazed how sharp the images were compared to LR. Keep in mind that I have never experienced this shooting RAW. I am aware that RAW images have imbedded JPG Preview images, but this is not the case
    4- I am not editing, or making any changes, so need to suggest to view the images in the Develop module. All I'm doing at this time is to select my best shots.
    5- However, I noticed something interesting. The images that are displayed blurred, were shot with my G9 camera. But if I view other RAW images shots with my 40D, and even my old D60 they are not blurred at all.
    I am wondering if this anomaly has any connection between the G9 and LR? I'm very frustrated since I have deleted some images based of how they were displayed,but now I'm wondering if they were good shots and they were displayed blurred.
    Any suggestion

    There's nothing wrong with posting a question to multiple forums. I was trying to show that at the Canon forum you stated LR was initially working properly, and sometime later the same images appeared blurry. This is an indication that something changed in your system, not an issue with LR’s capabilities:
    -Corrupted LR preferences file
    -LR application, corrupted
    -System Virus
    -Low hard drive space
    -Failing hard drive
    -System memory issues (insufficient memory, failing memory)
    -Camera problem (not likely)
    The problems logging into the Adobe LR forum is another indication that you may have one or more of the above system issues.
    There is an issue concerning LR not applying sharpening and noise reduction to images in the Library module, except at very high ISO settings:
    http://forums.adobe.com/thread/889490?tstart=120
    I doubt this is the "blurring" you describe in the Library module, since your 40D and older 60D camera images are not blurred. You would also be able to see 'Sharpening' and 'Noise Reduction' applied in the Develop module at 'Fit' image view size. You stated that you see no difference.
    As you can see there are numerous things that could be causing your problem. I suggest trying the suggestions I provided in my last reply as a good starting point to finding and "fixing" the source of the problem.

  • When executing Finance Module, I am getting error in Workflow

    Hi,
    When I started workflow for financial module, It gets stuck at SILOS:SIL_InsertRowInRunTable workflow. I dont know what is the problem actually. I try to change user name for integration services but it wont work.
    Please help me out in this problem as i am new to OBIA and Informatica.
    This is the log file for my error...
    +2010-06-30 12:05:08.939 INFORMATICA TASK:SILOS:SIL_InsertRowInRunTable:(Source : FULL Target : FULL) has started.+
    ANOMALY INFO::: Error while executing : INFORMATICA TASK:SILOS:SIL_InsertRowInRunTable:(Source : FULL Target : FULL)
    MESSAGE:::
    Irrecoverable Error
    Request to start workflow : 'SIL_InsertRowInRunTable' has completed with error code 7
    Error Message : You used an invalid username or password.
    Command Used: pmcmd startworkflow -sv BIAPPS_INT -d Domain_BIDPOOLW42S0004 -u Administrator -p **** -f SILOS  -lpf C:\Informatica\PowerCenter8.6.0\server\infa_shared\SrcFiles\FlatFileConnection.DataWarehouse.SILOS.SIL_InsertRowInRunTable.txt SIL_InsertRowInRunTable
    Workflow Message:
    +=====================================+
    STD OUTPUT
    +=====================================+
    Informatica(r) PMCMD, version [8.6.0], build [178.0613], Windows 32-bit
    Copyright (c) Informatica Corporation 1994 - 2008
    All Rights Reserved.
    Invoked at Wed Jun 30 12:05:13 2010
    +ERROR: Failed to authenticate login. [PCSF_10342] [PCSF_10342] Exception occurred: [[AUTHEN_10000] The Service Manager failed to authenticate user [Administrator] in security domain [Native].].+
    Disconnecting from Integration Service
    Completed at Wed Jun 30 12:05:13 2010
    +=====================================+
    ERROR OUTPUT
    +=====================================+
    EXCEPTION CLASS::: com.siebel.analytics.etl.etltask.IrrecoverableException
    com.siebel.analytics.etl.etltask.InformaticaTask.doExecute(InformaticaTask.java:179)
    com.siebel.analytics.etl.etltask.GenericTaskImpl.doExecuteWithRetries(GenericTaskImpl.java:410)
    com.siebel.analytics.etl.etltask.GenericTaskImpl.execute(GenericTaskImpl.java:306)
    com.siebel.analytics.etl.etltask.GenericTaskImpl.execute(GenericTaskImpl.java:213)
    com.siebel.analytics.etl.etltask.GenericTaskImpl.run(GenericTaskImpl.java:585)
    com.siebel.analytics.etl.taskmanager.XCallable.call(XCallable.java:63)
    java.util.concurrent.FutureTask$Sync.innerRun(FutureTask.java:303)
    java.util.concurrent.FutureTask.run(FutureTask.java:138)
    java.util.concurrent.Executors$RunnableAdapter.call(Executors.java:441)
    java.util.concurrent.FutureTask$Sync.innerRun(FutureTask.java:303)
    java.util.concurrent.FutureTask.run(FutureTask.java:138)
    java.util.concurrent.ThreadPoolExecutor$Worker.runTask(ThreadPoolExecutor.java:885)
    java.util.concurrent.ThreadPoolExecutor$Worker.run(ThreadPoolExecutor.java:907)
    java.lang.Thread.run(Thread.java:619)
    +(Number of retries : 1)+
    pmcmd startworkflow -sv BIAPPS_INT -d Domain_BIDPOOLW42S0004 -u Administrator -p **** -f SILOS  -lpf C:\Informatica\PowerCenter8.6.0\server\infa_shared\SrcFiles\FlatFileConnection.DataWarehouse.SILOS.SIL_InsertRowInRunTable.txt SIL_InsertRowInRunTable
    +2010-06-30 12:05:13.548 INFORMATICA TASK:SILOS:SIL_InsertRowInRunTable:(Source : FULL Target : FULL) has finished execution with Failed status+

    Looks like invalid Informatica credentials.
    Try to issue a pmrep connect with the same credentials that you have entered in DAC.
    HTH,
    AW

  • Data Guard is not working

    I have configured Oracle data guard in 11gR2 RAC database.
    In the primary database I get "ORA-16198: Timeout incurred on internal channel during remote
    archival" error.
    In the physical standby database log file there is shown consistently
    "Possible network disconnect with primary database"
    and
    "Deleted Oracle managed file +RECOVERY/bddipdrs/archivelog/2010_09_02/thread_2_seq_90.289.728688311"
    In the primary database log file consistently it shows,
    "Reclaiming FAL entry from dead process"
    "ARCk: Standby redo logfile selected for thread 1 sequence 120 for destination LOG_ARCHIVE_DEST_2"
    But no redo apply is done is standby database.
    Any feedback is really welcomed.
    Thank you very much

    After setting log_archive_dest_2 in primary I see a different error,
    SQL> SELECT DEST_ID "ID",STATUS "DB_status",DESTINATION "Archive_dest",ERROR "Error" FROM V$ARCHIVE_DEST WHERE DEST_ID =2;
    ID DB_status
    Archive_dest
    Error
    2 ERROR
    bddipdrs
    ORA-12160: TNS:internal error: Bad error number
    1 row selected.
    From trace file,
    [oracle@DC-DB-01 ~]$ tail -n 200 /u01/app/oracle/diag/rdbms/bddipdc/bddipdc1/alert/log.xml
    </txt>
    </msg>
    <msg time='2010-09-03T11:17:45.412+06:00' org_id='oracle' comp_id='rdbms'
    type='UNKNOWN' level='16' host_id='DC-DB-01'
    host_addr='192.168.100.101'>
    <txt> nt OS err code: 0
    </txt>
    </msg>
    <msg time='2010-09-03T11:17:45.445+06:00' org_id='oracle' comp_id='rdbms'
    type='UNKNOWN' level='16' host_id='DC-DB-01'
    host_addr='192.168.100.101'>
    <txt>
    </txt>
    </msg>
    <msg time='2010-09-03T11:17:45.445+06:00' org_id='oracle' comp_id='rdbms'
    type='UNKNOWN' level='16' host_id='DC-DB-01'
    host_addr='192.168.100.101'>
    <txt>
    Fatal NI connect error 12160, connecting to:
    (DESCRIPTION=(ADDRESS=(PROTOCOL=TCP)(HOST=DRS-DB-01-vip)(PORT=1521))(CONNECT_DATA=(SERVER=DEDICATED)(SERVICE_NAME=bddipdc.world)(CID=(PROGRAM=oracle)(HOST=DC-DB-01)(USER=oracle))))
    </txt>
    </msg>
    <msg time='2010-09-03T11:17:45.445+06:00' org_id='oracle' comp_id='rdbms'
    type='UNKNOWN' level='16' host_id='DC-DB-01'
    host_addr='192.168.100.101'>
    <txt>
    VERSION INFORMATION:
    TNS for Linux: Version 11.2.0.1.0 - Production
    TCP/IP NT Protocol Adapter for Linux: Version 11.2.0.1.0 - Production
    </txt>
    </msg>
    <msg time='2010-09-03T11:17:45.445+06:00' org_id='oracle' comp_id='rdbms'
    type='UNKNOWN' level='16' host_id='DC-DB-01'
    host_addr='192.168.100.101'>
    <txt> Time: 03-SEP-2010 11:17:45
    </txt>
    </msg>
    <msg time='2010-09-03T11:17:45.446+06:00' org_id='oracle' comp_id='rdbms'
    type='UNKNOWN' level='16' host_id='DC-DB-01'
    host_addr='192.168.100.101'>
    <txt> Tracing not turned on.
    </txt>
    </msg>
    <msg time='2010-09-03T11:17:45.446+06:00' org_id='oracle' comp_id='rdbms'
    type='UNKNOWN' level='16' host_id='DC-DB-01'
    host_addr='192.168.100.101'>
    <txt> Tns error struct:
    </txt>
    </msg>
    <msg time='2010-09-03T11:17:45.446+06:00' org_id='oracle' comp_id='rdbms'
    type='UNKNOWN' level='16' host_id='DC-DB-01'
    host_addr='192.168.100.101'>
    <txt> ns main err code: 1
    </txt>
    </msg>
    <msg time='2010-09-03T11:17:45.446+06:00' org_id='oracle' comp_id='rdbms'
    type='UNKNOWN' level='16' host_id='DC-DB-01'
    host_addr='192.168.100.101'>
    <txt>
    </txt>
    </msg>
    <msg time='2010-09-03T11:17:45.446+06:00' org_id='oracle' comp_id='rdbms'
    type='UNKNOWN' level='16' host_id='DC-DB-01'
    host_addr='192.168.100.101'>
    <txt>TNS-00001: INTCTL: error while getting command line from the terminal
    </txt>
    </msg>
    <msg time='2010-09-03T11:17:45.446+06:00' org_id='oracle' comp_id='rdbms'
    type='UNKNOWN' level='16' host_id='DC-DB-01'
    host_addr='192.168.100.101'>
    <txt> ns secondary err code: 0
    </txt>
    </msg>
    <msg time='2010-09-03T11:17:45.446+06:00' org_id='oracle' comp_id='rdbms'
    type='UNKNOWN' level='16' host_id='DC-DB-01'
    host_addr='192.168.100.101'>
    <txt> nt main err code: 0
    </txt>
    </msg>
    <msg time='2010-09-03T11:17:45.446+06:00' org_id='oracle' comp_id='rdbms'
    type='UNKNOWN' level='16' host_id='DC-DB-01'
    host_addr='192.168.100.101'>
    <txt> nt secondary err code: 0
    </txt>
    </msg>
    <msg time='2010-09-03T11:17:45.446+06:00' org_id='oracle' comp_id='rdbms'
    type='UNKNOWN' level='16' host_id='DC-DB-01'
    host_addr='192.168.100.101'>
    <txt> nt OS err code: 0
    </txt>
    </msg>
    <msg time='2010-09-03T11:17:45.479+06:00' org_id='oracle' comp_id='rdbms'
    type='UNKNOWN' level='16' host_id='DC-DB-01'
    host_addr='192.168.100.101'>
    <txt>
    </txt>
    </msg>
    <msg time='2010-09-03T11:17:45.479+06:00' org_id='oracle' comp_id='rdbms'
    type='UNKNOWN' level='16' host_id='DC-DB-01'
    host_addr='192.168.100.101'>
    <txt>
    Fatal NI connect error 12160, connecting to:
    (DESCRIPTION=(ADDRESS=(PROTOCOL=TCP)(HOST=DRS-DB-01-vip)(PORT=1521))(CONNECT_DATA=(SERVER=DEDICATED)(SERVICE_NAME=bddipdc.world)(CID=(PROGRAM=oracle)(HOST=DC-DB-01)(USER=oracle))))
    </txt>
    </msg>
    <msg time='2010-09-03T11:17:45.479+06:00' org_id='oracle' comp_id='rdbms'
    type='UNKNOWN' level='16' host_id='DC-DB-01'
    host_addr='192.168.100.101'>
    <txt>
    VERSION INFORMATION:
    TNS for Linux: Version 11.2.0.1.0 - Production
    TCP/IP NT Protocol Adapter for Linux: Version 11.2.0.1.0 - Production
    </txt>
    </msg>
    <msg time='2010-09-03T11:17:45.479+06:00' org_id='oracle' comp_id='rdbms'
    type='UNKNOWN' level='16' host_id='DC-DB-01'
    host_addr='192.168.100.101'>
    <txt> Time: 03-SEP-2010 11:17:45
    </txt>
    </msg>
    <msg time='2010-09-03T11:17:45.480+06:00' org_id='oracle' comp_id='rdbms'
    type='UNKNOWN' level='16' host_id='DC-DB-01'
    host_addr='192.168.100.101'>
    <txt> Tracing not turned on.
    </txt>
    </msg>
    <msg time='2010-09-03T11:17:45.480+06:00' org_id='oracle' comp_id='rdbms'
    type='UNKNOWN' level='16' host_id='DC-DB-01'
    host_addr='192.168.100.101'>
    <txt> Tns error struct:
    </txt>
    </msg>
    <msg time='2010-09-03T11:17:45.480+06:00' org_id='oracle' comp_id='rdbms'
    type='UNKNOWN' level='16' host_id='DC-DB-01'
    host_addr='192.168.100.101'>
    <txt> ns main err code: 1
    </txt>
    </msg>
    <msg time='2010-09-03T11:17:45.480+06:00' org_id='oracle' comp_id='rdbms'
    type='UNKNOWN' level='16' host_id='DC-DB-01'
    host_addr='192.168.100.101'>
    <txt>
    </txt>
    </msg>
    <msg time='2010-09-03T11:17:45.480+06:00' org_id='oracle' comp_id='rdbms'
    type='UNKNOWN' level='16' host_id='DC-DB-01'
    host_addr='192.168.100.101'>
    <txt>TNS-00001: INTCTL: error while getting command line from the terminal
    </txt>
    </msg>
    <msg time='2010-09-03T11:17:45.480+06:00' org_id='oracle' comp_id='rdbms'
    type='UNKNOWN' level='16' host_id='DC-DB-01'
    host_addr='192.168.100.101'>
    <txt> ns secondary err code: 0
    </txt>
    </msg>
    <msg time='2010-09-03T11:17:45.480+06:00' org_id='oracle' comp_id='rdbms'
    type='UNKNOWN' level='16' host_id='DC-DB-01'
    host_addr='192.168.100.101'>
    <txt> nt main err code: 0
    </txt>
    </msg>
    <msg time='2010-09-03T11:17:45.480+06:00' org_id='oracle' comp_id='rdbms'
    type='UNKNOWN' level='16' host_id='DC-DB-01'
    host_addr='192.168.100.101'>
    <txt> nt secondary err code: 0
    </txt>
    </msg>
    <msg time='2010-09-03T11:17:45.480+06:00' org_id='oracle' comp_id='rdbms'
    type='UNKNOWN' level='16' host_id='DC-DB-01'
    host_addr='192.168.100.101'>
    <txt> nt OS err code: 0
    </txt>
    </msg>
    <msg time='2010-09-03T11:17:45.480+06:00' org_id='oracle' comp_id='rdbms'
    client_id='' type='UNKNOWN' level='16'
    host_id='DC-DB-01' host_addr='192.168.100.101' module=''
    pid='24310'>
    <txt>Error 12160 received logging on to the standby
    </txt>
    </msg>
    <msg time='2010-09-03T11:17:45.480+06:00' org_id='oracle' comp_id='rdbms'
    client_id='' type='UNKNOWN' level='16'
    host_id='DC-DB-01' host_addr='192.168.100.101' module=''
    pid='24310'>
    <txt>Errors in file /u01/app/oracle/diag/rdbms/bddipdc/bddipdc1/trace/bddipdc1_arcq_24310.trc:
    ORA-12160: TNS:internal error: Bad error number
    </txt>
    </msg>
    <msg time='2010-09-03T11:17:45.480+06:00' org_id='oracle' comp_id='rdbms'
    client_id='' type='UNKNOWN' level='16'
    host_id='DC-DB-01' host_addr='192.168.100.101' module=''
    pid='24310'>
    <txt>PING[ARCq]: Heartbeat failed to connect to standby &apos;bddipdrs&apos;. Error is 12160.
    </txt>
    </msg>
    [oracle@DC-DB-01 ~]$
    [oracle@DC-DB-01 ~]$
    [oracle@DC-DB-01 ~]$
    [oracle@DC-DB-01 ~]$ less /u01/app/oracle/diag/rdbms/bddipdc/bddipdc1/trace/bddipdc1_arcq_24310.trc
    *** 2010-09-03 11:03:44.868 869 krsu.c
    Error 12160 connecting to destination LOG_ARCHIVE_DEST_2 standby host 'bddipdrs'
    Error 12160 attaching to destination LOG_ARCHIVE_DEST_2 standby host 'bddipdrs'
    *** 2010-09-03 11:03:44.868 4132 krsh.c
    PING[ARCq]: Heartbeat failed to connect to standby 'bddipdrs'. Error is 12160.
    *** 2010-09-03 11:03:44.868 2747 krsi.c
    krsi_dst_fail: dest:2 err:12160 force:0 blast:1
    Redo shipping client performing standby login
    *** 2010-09-03 11:12:45.149
    OCIServerAttach failed -1
    .. Detailed OCI error val is 12160 and errmsg is 'ORA-12160: TNS:internal error: Bad error number
    OCIServerAttach failed -1
    .. Detailed OCI error val is 12160 and errmsg is 'ORA-12160: TNS:internal error: Bad error number
    OCIServerAttach failed -1
    .. Detailed OCI error val is 12160 and errmsg is 'ORA-12160: TNS:internal error: Bad error number
    *** 2010-09-03 11:12:45.213 4132 krsh.c
    Error 12160 received logging on to the standby
    *** 2010-09-03 11:12:45.213 869 krsu.c
    Error 12160 connecting to destination LOG_ARCHIVE_DEST_2 standby host 'bddipdrs'
    Error 12160 attaching to destination LOG_ARCHIVE_DEST_2 standby host 'bddipdrs'
    ORA-12160: TNS:internal error: Bad error number
    *** 2010-09-03 11:12:45.214 4132 krsh.c
    PING[ARCq]: Heartbeat failed to connect to standby 'bddipdrs'. Error is 12160.
    *** 2010-09-03 11:12:45.214 2747 krsi.c
    krsi_dst_fail: dest:2 err:12160 force:0 blast:1
    *** 2010-09-03 11:17:45.377
    Redo shipping client performing standby login
    OCIServerAttach failed -1
    .. Detailed OCI error val is 12160 and errmsg is 'ORA-12160: TNS:internal error: Bad error number
    OCIServerAttach failed -1
    .. Detailed OCI error val is 12160 and errmsg is 'ORA-12160: TNS:internal error: Bad error number
    OCIServerAttach failed -1
    .. Detailed OCI error val is 12160 and errmsg is 'ORA-12160: TNS:internal error: Bad error number
    *** 2010-09-03 11:17:45.480 4132 krsh.c
    Error 12160 received logging on to the standby
    *** 2010-09-03 11:17:45.480 869 krsu.c
    Error 12160 connecting to destination LOG_ARCHIVE_DEST_2 standby host 'bddipdrs'
    Error 12160 attaching to destination LOG_ARCHIVE_DEST_2 standby host 'bddipdrs'
    ORA-12160: TNS:internal error: Bad error number
    *** 2010-09-03 11:17:45.481 4132 krsh.c
    PING[ARCq]: Heartbeat failed to connect to standby 'bddipdrs'. Error is 12160.
    *** 2010-09-03 11:17:45.481 2747 krsi.c
    krsi_dst_fail: dest:2 err:12160 force:0 blast:1
    It looked very interesting!

Maybe you are looking for

  • While opening images in PSE 8 error message is coming up

    I am receiving a "maximum size exceeded" message on many of my jpegs.  I am running Elements 8 under Windows 7 64 bit.  In a previou s configuration I was executing Elements 6 under a Windows XP OS.  In that configuration Adobe issued a fix in your k

  • Error when trying to create (print) a page from a web-based program

    When trying to print a web page as a pdf document (i.e., via the Distiller in Acrobat 9 Pro) I get the following error message: %%[ ProductName: Distiller ]%% 48ofgdu not found, using Courier. %%[ Error: invalidfont; OffendingCommand: xshow ]%% Stack

  • 10.5 Client refuses to authenticate Kerberos or obey managed preferences

    I am sure this has come up time and again, but a search in the forums has not come back with a work around. I am running Tiger Server 10.4.11 as an OD master serving up portable accounts in a mixed Tiger and Leopard Client Environment. I just did a L

  • REP-52251 and FRM-41214

    Hi All, I've made a detailed investigation, but haven't fund solution, that works for me: The goal is to show on the web html, and pdf reports. My code is: repid report_object; v_rep varchar2(100); rep_status varchar2(20); pl_id paramlist; BEGIN pl_i

  • Drawing a maze from multidimensional array

    Hi i have to create a maze using a properties file. The program has to be constructed using mvc. I have managed to read the information in the file using a string tokenizer and convert each value to an int. So my properties file is being read in the