Approvals in Engineering Module
Hi All,
I am working on Oracle 11i Engineering.
In ECO(Engineering change order) , we want to send notifications to Approvers in Approval List for Implementing ECO.
I have assigned standard workflow to ECO change types and defined users in Approval List.
But notifications are not going to approvers after submitting the ECO.
Please advice do we need to do any thing to Standard work flow are am I missing any thing.
Please advice.
Thanks in Advance
Ravi
Hi Ravi,
Please check the following :-
1. Check if the Notifications are getting created , you can check it from the Notification Worklist or from WF_NOTIFICATIONS table
2. Even the Workflow status diagram will let you know whether Notifications were created or not.
2. If the Notification got created but users did not receive an email, then it can be due to one of the following reasons.
a. Notification Mailer is down.
b. Notification Mailer is pointing to a wrong server\configuration issue.
c. Notification mailer is up and the server configuration is correct, but an Override address has been set by DBA to restrict emails going - to all the users.
If you can see the Notifications in the worklist or in the WF_NOTIFICATIONS table and for any of a,b,c related as mentioned above , then the DBA needs to resolve it.
3. Check Oracle Support (support.oracle.com) for your workflow type if there are similar issue logged already sometimes it could be a patch issue as well.
Thanks,
Neeraj.
Similar Messages
-
Approvals Management Engine applicable Product Families
Hello,
I was wondering what product families/modules AME was able to be applied to within both the 11i and r12 environment. In particular if the GL - Journal Entries could utilize the AME approval system.
Thanks,
-SteveHi Steve;
Please check below notes which could be helpful for your issue:
Is Journal Approval/Authorization Integrated With Approvals Management (AME)? [ID 359789.1]
How To Diagnose Issues With Approvals Management Engine (AME) In Procurement [ID 428552.1]
Regard
Helios -
Content Engine Module is logging DHCP errors
Content Engine Module in Cisco 3725 is logging the following eror continously:
Sep 29 16:47:50 ContentEngine dhclient: %CE-DHCP-5-191000: DHCPDISCOVER on eth0 to 255.255.255.255 port 67 interval 4
Sep 29 16:47:54 ContentEngine dhclient: %CE-DHCP-5-191000: DHCPDISCOVER on eth0 to 255.255.255.255 port 67 interval 11
Sep 29 16:47:58 ContentEngine smartd: %CE-SMARTD-3-435000: No Errors Logged
Sep 29 16:48:05 ContentEngine dhclient: %CE-DHCP-5-191000: DHCPDISCOVER on eth0 to 255.255.255.255 port 67 interval 1
Sep 29 16:48:06 ContentEngine dhclient: %CE-DHCP-5-191000: No DHCPOFFERS received.
Sep 29 16:48:06 ContentEngine dhclient: %CE-DHCP-5-191000: No working leases in persistent database - sleeping.
Sep 29 16:48:06 ContentEngine %CE-DHCP-5-191000: Script called with reason: FAIL
Sep 29 16:52:58 ContentEngine smartd: %CE-SMARTD-3-435000: No Errors Logged
Disable the external interface (shutdown) didn't fix the problem:
Sep 29 17:02:05 ContentEngine dhclient: %CE-DHCP-5-191000: DHCPDISCOVER on eth0 to 255.255.255.255 port 67 interval 3
Sep 29 17:02:05 ContentEngine dhclient: %CE-DHCP-3-191000: send_packet: Network is down
Sep 29 17:02:08 ContentEngine dhclient: %CE-DHCP-5-191000: DHCPDISCOVER on eth0 to 255.255.255.255 port 67 interval 3
Sep 29 17:02:08 ContentEngine dhclient: %CE-DHCP-3-191000: send_packet: Network is down
Sep 29 17:02:11 ContentEngine dhclient: %CE-DHCP-5-191000: DHCPDISCOVER on eth0 to 255.255.255.255 port 67 interval 5
Sep 29 17:02:11 ContentEngine dhclient: %CE-DHCP-3-191000: send_packet: Network is down
Sep 29 17:02:16 ContentEngine dhclient: %CE-DHCP-5-191000: DHCPDISCOVER on eth0 to 255.255.255.255 port 67 interval 5
Sep 29 17:02:16 ContentEngine dhclient: %CE-DHCP-3-191000: send_packet: Network is down
Sep 29 17:02:21 ContentEngine dhclient: %CE-DHCP-5-191000: No DHCPOFFERS received.
Sep 29 17:02:21 ContentEngine dhclient: %CE-DHCP-5-191000: No working leases in persistent database - sleeping.
Sep 29 17:02:21 ContentEngine %CE-DHCP-5-191000: Script called with reason: FAIL
Sep 29 17:02:58 ContentEngine smartd: %CE-SMARTD-3-435000: No Errors Logged
Any ideas how to fix this problem ?Try the global command:
ce(config)# no auto-register enable
http://www.cisco.com/univercd/cc/td/doc/product/webscale/uce/acns53/53cref/6812ref.htm#wp1038726 -
Smartfilter with Content Engine Module (NM-CE-BP-40G-K9) & ACNS on 3661
I've been looking over the CCO docs, but can't find one that has sample configs for using a 3661 router containing content engine module, smartfilter, & ACNS. Topology is basically the following...
(PC's)----(LAN Switch)-----(3661 w/content engine module)----(PIX)---(internet)
I don't want to creat a new IP subnet for the 3 interfaces within the content engine module/router. I want to use the IP's from the current LAN IP Block.
Any advice appreciated.I thought this might help.
Easy NM-CE Configuration Guide!
Router IOS:c3725-ik9o3s-mz.122-15.T2
Content Engine Software: ACNS 5.0.3.5
Configure basic router configuration as normal.
Set the IP addresses for the Service Module (Content-Engine) using these commands:
interface Content-Engine2/0
ip address 10.1.1.1 255.255.255.0
ip nat inside
service-module external ip address 10.0.0.1 255.255.255.0
service-module ip address 10.1.1.2 255.255.255.0
service-module ip default-gateway 10.1.1.1
Complete Config Example (DHCP and NAT for Lab):
urrent configuration : 2440 bytes
version 12.2
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
hostname lab3745_NM-CE
logging queue-limit 100
enable password cisco
ip subnet-zero
ip wccp web-cache
ip dhcp pool NM-ESW-16-POOL
network 10.1.2.0 255.255.255.0
domain-name cisco.com
default-router 10.1.2.1
dns-server 171.68.226.120 171.70.168.183
lease 7
ip audit notify log
ip audit po max-events 100
no voice hpi capture buffer
no voice hpi capture destination
mta receive maximum-recipients 0
interface FastEthernet0/0
ip address 172.16.12.108 255.255.255.0
ip wccp web-cache redirect out
ip nat outside
duplex auto
speed auto
interface FastEthernet0/1
no ip address
shutdown
duplex auto
speed auto
interface FastEthernet1/0
no ip address
interface FastEthernet1/1
no ip address
interface FastEthernet1/2
no ip address
interface FastEthernet1/3
no ip address
interface FastEthernet1/4
no ip address
interface FastEthernet1/5
no ip address
interface FastEthernet1/6
no ip address
interface FastEthernet1/7
no ip address
interface FastEthernet1/8
no ip address
interface FastEthernet1/9
no ip address
interface FastEthernet1/10
no ip address
interface FastEthernet1/11
no ip address
interface FastEthernet1/12
no ip address
interface FastEthernet1/13
no ip address
interface FastEthernet1/14
no ip address
interface FastEthernet1/15
no ip address
interface Content-Engine2/0
ip address 10.1.1.1 255.255.255.0
ip nat inside
service-module external ip address 10.0.0.1 255.255.255.0
service-module ip address 10.1.1.2 255.255.255.0
service-module ip default-gateway 10.1.1.1
interface Vlan1
ip address 10.1.2.1 255.255.255.0
ip nat inside
ip local pool NM-ESW-16-POOL 10.1.2.2 10.1.2.254
ip nat pool TEST-NAT-POOL 172.16.12.108 172.16.12.108 prefix-length 24
ip nat inside source list 7 pool TEST-NAT-POOL overload
ip http server
no ip http secure-server
ip classless
ip route 0.0.0.0 0.0.0.0 172.16.12.254
access-list 7 permit 10.1.2.0 0.0.0.255
access-list 7 permit 10.1.1.0 0.0.0.255
access-list 7 permit 10.0.0.0 0.0.0.255
call rsvp-sync
mgcp profile default
dial-peer cor custom
line con 0
speed 115200
line 65
flush-at-activation
no activation-character
no exec
transport input all
line aux 0
line vty 0 4
password cisco
login
end
reset service-module 2 to reboot the Content-Engine:
service-module content-Engine 2/0 reload
Within 30 Seconds Session from the Router to the Service Module:
service-module content-engine session
Enter Basic Configuration for Network Module:
Password, etc
Configure The service Modeule using the command line interface:
hostname NM-CE-BP
ip domain-name CISCO.COM
interface FastEthernet 0/0
ip address 10.0.0.1 255.255.255.0
exit
interface FastEthernet 0/1
ip address 10.1.1.2 255.255.255.0
exit
ip default-gateway 10.1.1.1
primary-interface FastEthernet 0/1
ip name-server 172.72.1.1
wccp router-list 1 172.16.12.108
wccp web-cache router-list-num 1
wccp version 2
username xxx password xxxx
username xxxx privilege 15
authentication login local enable primary
authentication configuration local enable primary
NM-CE-BP#exit
You can use the command line interface to show statics from the Content Engine by using the show statistics screen command or use your web browers for a more graphical report. -
Hi, is it possible for a content engine module to work in a 2600 with the following scenario? I want the clients gateway to be the 2600 with content engine installed but I want the 2600 to forward all traffic out a seperate gateway. I know a content switch can do this but can a content module in a 2600 do it too. The reason for wanting this is I want to use url filtering software such as websense and at the moment the existing gateway/firewall is not compatible with websense so Im looking to use a 2600 with content module installed to filter webtraffic and forward out the existing gateway. Thanks
this is no problem
Just look at the nm-ce as a standalone device connected by ethernet to the 2600.
The 2600 can be the default gateway for the client and the cache [nm-ce].
The 2600 will intercept traffic from client and forward to nm-ce.
The nm-ce will use the 2600 as its default gateway.
Gilles. -
Can i get sample BP80 for Quality,BOM,WIP and Engineering Modules
Can anybody let me know from where i can get the sample BP80 Docs for quality,BOM ,WIP,MRP and Engineering.
I have the templates of BP80 as per AIM Methodology but i need some same docs on the above modules.
Regards,
Bala.Hi
Please find the link for this as http://www.ziddu.com/downloadfile/1682474/AIMtoolaset.EXE.html
Install this. You will find link in software itself for all templates.
I have quick question for you.
Can you please share your organisation structure format of automotive solution?
Thanks in Advance.
Edited by: user11981009 on 03-Dec-2011 21:18 -
AME (Approvals Management Engine) patch 6699770
Hi Friends,
We have EBS 11i on IBM AIX 5L 64-bit server. And the functional consultant wants to use AME.
I read the docs and I found out that AME is installed using the patch 6699770. Is my understanding correct?
I also searched the patch on metalink and found out only 32-bit version of this patch? Can I use this for our 64-bt server?
Thanks a lotThanks hussein,
I am just comfused with the statement "Please note that this patch is included in (Patch 6699770 - Human Resources Suite 11i.HR_PF.K.delta.3), but it is not necessary to apply 11i.HR_PF.K.delta.3 to be on 11i.AME.B)."
How do I know if I have 11i.AME.B.?
I tried to get the version on AME using :
SQL> select decode(bug_number, '2614213','2614213 (pre-11.5.10)'
2 ,'2863619','2863619 - (pre-11.5.10)'
3 ,'3858763','AME 11.5.10'
4 ,'3962268','AME.A'
5 ,'4433707','AME.A RUP'
6 ,'4428060','AME.B'
7 ,'4873179','AME.B RUP'
8 ,'3333633','HR FP J'
9 ,'3500000','HR FP K'
10 ,'5055050','HR FP K RUP1'
11 ,'3140000','Apps Release 11.5.10'
12 ,'3640000','Apps Release 11.5.10 CU1'
13 ,'3480000','Apps Release 11.5.10 CU2'
14 ,'NONE') AME_LEVEL
15 from ad_bugs
16 where bug_number in ('2614213'
17 ,'2863619'
18 ,'3858763'
19 ,'3962268'
20 ,'4433707'
21 ,'4428060'
22 ,'4873179'
23 ,'3333633'
24 ,'3500000'
25 ,'5055050'
26 ,'3140000'
27 ,'3640000'
28 ,'3480000'
29 ,'5708576'
30 ,'5337777'
31 );
AME_LEVEL
2614213 (pre-11.5.10)
2863619 - (pre-11.5.10)
Apps Release 11.5.10
Are the above result acceptable? or do I have the AME installed?
Also metalink said 11i.AME.B is superseded by 11i.HR_PF.K.delta.3 ...is not it logical to use the latest instead? :)
Thanks again -
Can we enhance the Sender SOAP Adapter with our own modules?
Hi All,
Can we enhance the Sender SOAP Adapter with our own modules on the Module Tab Page in the Module Processor?
I believe the answer is no. However, whatever may be the answer, I would like to know that is there any specific reason for that.
Please help me in this regard.
Thanks,
Yogi.Hi,
I think, we are mentioning the URL of the adapter channel directly in the configuration. SO there is no place we can customize this flow..just a thought
Because in the file adapter etc, After Adapter Engine picks up the data and before it goes into integration engine module is processed..
http://help.sap.com/saphelp_nw2004s/helpdata/en/fc/5ad93f130f9215e10000000a155106/content.htm
https://www.sdn.sap.com/irj/sdn/go/portal/prtroot/docs/library/uuid/f013e82c-e56e-2910-c3ae-c602a67b918e
Rgds,
Moorthy -
With Ajay Kumar and Telmo Pereira
Welcome to the Cisco Support Community Ask the Expert conversation. This is an opportunity to learn and ask questions about configuration and troubleshooting the Cisco Application Control Engine (ACE) load balancer with Cisco expert Ajay Kumar and Telmo Pereira. The Cisco ACE Application Control Engine Module for Cisco Catalyst 6500 Series Switches and Cisco 7600 Series Routers is a next-generation load-balancing and application-delivery solution. A member of the Cisco family of Data Center 3.0 solutions, the module: Helps ensure business continuity by increasing application availability Improves business productivity by accelerating application and server performance Reduces data center power, space, and cooling needs through a virtualized architecture Helps lower operational costs associated with application provisioning and scaling
Ajay Kumar is a customer support engineer in the Cisco Technical Assistance Center in Brussels, covering content delivery network technologies including Cisco Application Control Engine, Cisco Wide Area Application Services, Cisco Content Switching Module, Cisco Content Services Switches, and others. He has been with Cisco for more than four years, working with major customers to help resolve their issues related to content products. He holds DCASI and VCP certifications.
Telmo Pereira is a customer support engineer in the Cisco Technical Assistance Center in Brussels, where he covers all Cisco content delivery network technologies including Cisco Application Control Engine (ACE), Cisco Wide Area Application Services (WAAS), and Digital Media Suite. He has worked with multiple customers around the globe, helping them solve interesting and often highly complex issues. Pereira has worked in the networking field for more than 7 years. He holds a computer science degree as well as multiple certifications including CCNP, DCASI, DCUCI, and VCP
Remember to use the rating system to let Ajay know if you have received an adequate response.
Ajay and Telmo might not be able to answer each question due to the volume expected during this event. Remember that you can continue the conversation on the Data Center sub-community discussion forum Application Networking shortly after the event.
This event lasts through July 26, 2013. Visit this forum often to view responses to your questions and the questions of other community members.Hello Krzysztof,
Another set of good/interesting questions posted. Thanks!
I will try to clarify your doubts.
In the output below both resources (proxy-connections and ssl-connections rate) are configured with a min percentage of resources (column Min), while 'Max' is set to equal to the min.
ACE/Context# show resource usage
Allocation
Resource Current Peak Min Max Denied
-- outputs omitted for brevity --
proxy-connections 0 16358 16358 16358 17872
ssl-connections rate 0 626 626 626 23204
Most columns are self explanatory, 'Current' is current usage, 'Peak' is the maximum value reached, and the most important counter to monitor 'Denied' represents the amount of packets denied/dropped due to exceeding the configured limits.
On the resources themselves, Proxy-connections is simply the amount of proxied connections, in other words all connections handled at layer 7 (SSL connections are proxied, as are any connections with layer 7 load balance policies, or inspection).
So in this particular case for the proxy-connections we see that Peak is equal to the Max allocated, and as we have denies we can conclude that you have surpassed the limits for this resource. We see there were 17872 connections dropped due to that.
ssl-connections rate should be read in the same manner, however all values for this resource are in bytes/s, except for Denied counter, that is simply the amount of packets that were dropped due to exceeding this resource.
For your particular tests you have allocated a min percentage and set max equal to min, this way you make sure that this context will not use any other additional resources.
If you had set the max to unlimited during resource allocation, ACE would be allowed to use additional resources on top of those guaranteed, if those resources were available.
This might sound a great idea, but resource planning on ACE should be done carefully to avoid any sort of oversubscription, specially if you have business critical contexts.
We have a good reference for ACE resource planning that contains also description of all resources (this will help to understand the output better):
http://www.cisco.com/en/US/docs/interfaces_modules/services_modules/ace/v3.00_A2/configuration/virtualization/guide/config.html#wp1008224
1) When a resource is utilized to its maximum limit, the ACE denies additional requests made by any context for that resource. In other words, the action is to Drop. ACE should in theory silently drop (No RST is sent back to the client). So unless we changed something on the code, this is what you should see.
To give more context, seeing resets with SSL connections is not necessarily synonym of drops. As it is usual to see them during normal transactions.
For instance Microsoft servers are usually ungracefully terminating SSL connections with RESET. Also when there is renegotiation during an SSL transaction you may see RESETS, but this will pass unnoticed for end users.
2) ACE will simply drop/ignore new connections when we reach the maximum amount of proxied connections for that context. Exisiting connections will continue there.
As ACE doesn't respond back, client would simply retransmit, and if he is lucky maybe in the next attempt he will be able to establish the connection.
To overcome the denies, you will definitely have to increase the resource allocation. This of course, assuming you are not reaching any physical limit of the box.
As mentioned setting max as unlimited might work for you, assuming there are a lot of unused resources on the box.
3) If a new connection comes in with a sticky value, that matches the sticky entry of a real server, which is already in MAXCONNS state, then both the ACE module/appliance should reject the connection and that sticky entry would be removed.
The client would at that point reestablish a new connection and ACE would associate a new sticky entry with the flow for a new RSERVER after the loadbalancing decision.
I hope this makes things clearer! Uff...
Regards,
Telmo -
Unable to Access Itune's Store Cisco Content Scanning Engine
Hi there, new to apple forums. Having all sort of problems downloading from Itunes Store and updates, via our Cisco ASA Firewall.
Have identified that the Trend Micro Scanning Engine Module is causing the issue, and the only work around is to disable the Scanning Engine altogether, or to configure IP address exclusions from the scanning process. Using the logs from the firewall, I managed to locate some of the IP's related to Itunes; registered to Akamai Technologies.,US (81.23.243.0/24) and got things working, but now it has stopped working again. Is there a list of IP addresses that Apple and Itunes use?
Would appreciate any pointers if anyone else has resolved similar issues.
ThanksApple uses a distributed server system and so may use a number of IP addresses, none of which have ever been officially published, so trying to allow specific addresses may not be possible. If your system will accept domain names and not just IP addresses, try using these two domains instead:
phobos.apple.com
phobos.apple.com.edgesuite.net
Hope this helps. -
Cisco 4500 series switch-Supervisor Engine.
Is it possible to add two different supervisor engine module in a chassis(WS-C4507R+E Chassis)? (WS-X45-SUP7E in slot 3 and WS-X45-SUP6E-
Redundancy in slot number 4)http://www.cisco.com/en/US/docs/switches/lan/catalyst4500/12.2/31sga/configuration/guide/RPR.html
Redundancy requires both supervisor engines in the chassis to be of the same supervisor engine model (same model, same memory, NFL daughter card and so on), and to use the same Cisco IOS software image.
Thanks
Hari.Sivaji -
Content engine for video on the LAN
Hi
I have a video server on the LAN. I want to position the content engine on the LAN to use it for stream splitting to avoid loading the video server. Can i do this i.e. placing the Content engine on the same network as the source? Or could I use the Content engine module on the router. If so then how do I connect it?
Thank you
SanjI suggest that you use the content engine module on the router.
-
Can not import ACE module to ANM
Hello,
Good day.
I recently facing an interesting problem.
We are running ANM 5.1.0 to manage our LB contexts, those contexts are configured on ACE20-MOD-K9 module which installed in Catalyst6500 switch. Our installation is like this, two ACE20-MOD-K9 modules installed into same Catalyst6513 different slots. And those two ACE modules serves different Data Halls, contexts configured on those modules are completely seperated, different VLAN, different subnet no relation at all.
I'm able to import the catalyst chassis into ANM and under Config>Guided Setup>Import Device>Modules, I'm able to see both ACE modules but only one module able to be imported, another one I can not even choose it. There are slightly difference those two modules show themselves in that page. The one I'm able to import shows exactly it's module type and version number but another one is showing someting strange.
Slot# Model Type Serial # State Version Description #VC
3 ACE20-MOD-K9 ACE v2.3 XXXXXX up A2(3.5) Application Control Engine Module 28
9 ACE20-MOD-K9 Module XXXXXX Not Imported ace2t_main_d Application Control Engine Module N/A <---problem module
Does any was facing samiliar problem?
ThanksI think I found something related to my issue.
In ANM operating Guidance,section"Importing ACE Modules after the Host Chassis has been Imported" mentioned some restriction. The module in slot 9 actually has samiliar situation, show module commands shows that Catalyst chassis doesn't really recognize the software version that might caused ANM not able to figure out if that module is supported or not so it makes a simple decision deny import. I will try to reboot that module see if we can fix this issue.
"Guidelines and Restrictions
ANM 3.0 and greater releases do not support the importing of an ACE module that contains an A1(6.x) software release or an ACE appliance that contains an A1(7.x) or A1(8.x) software release. If you attempt to import an ACE that supports one of these releases, ANM displays a message to instruct you that it failed to import the unrecognized ACE configuration and that device discovery failed.
However, if you perform an ANM upgrade (for example, from ANM 2.2 to ANM 3.0), and the earlier ANM release contained an inventory with an ACE module that supported the A1(6x) software release or an ACE appliance that supported the A1(7.x) or A1(8.x) software release, ANM 3.0 (and greater) allows the A1(x) software release to reside in the ANM database and will support operations for the release. ANM prevents a new import of an ACE module or ACE appliance that contains the unsupported software version.
We strongly recommend that you upgrade your ACE module or ACE appliance to a supported ACE software release, and that you instruct ANM to recognize the updated release. See the "Instructing ANM to Recognize an ACE Module Software Upgrade" section.
See the Supported Device Tables for the Cisco Application Networking Manager for a complete list of supported ACE module and ACE appliance software releases."
http://www.cisco.com/en/US/docs/app_ntwk_services/data_center_app_services/application_networking_manager/5.2/user/guide/UG_manage_devices.html -
VSS on 6800 using mix 10GE modules
Hello,
We are about to set up two Cisco 6800 running VSS across them.
I have read and I quote ¨ VSLs can be configured with up to eight links between the two switches across any combination of line cards or supervisor ports to provide a high level of redundancy.¨
Each switch come with a VS-S2T-10G(2 x 10GbE) supervisor and a WS-X6704-10GE module card.
My questions is: Can I use one port from the each supervisor and one port from each module card to create the VSLs with no issue? Please see the attached image as reference.
Thanks!!!Hi,
6704 module can't be configured as part of a VSL link. There is 6708 and 6716 that support VSL.
VSL Hardware Requirements
The VSL EtherChannel supports only 10-Gigabit Ethernet ports. The 10-Gigabit Ethernet port can be located on the supervisor engine module or on one of the following switching modules:
•WS-X6708-10G-3C or WS-X6708-10G-3CXL
•WS-X6716-10G-3C or WS-X6716-10G-3CXL
•WS-X6716-10T-3C or WS-X6716-10T-3CXL
Link:
http://www.cisco.com/c/en/us/td/docs/switches/lan/catalyst6500/ios/12-2SX/configuration/guide/book/vss.html#wp1053988
HTH -
ACE module SSL url rewrite and path rewrite
Hi all,
I'm hoping some of you helpful people on this forum can guide me or suggest a solution to a problem I'm faced with.
I am currently load balancing exchange 2010 traffic via an ACE module. Software version is A2(3.3). I have most parts of it working fine however I am having an issue when it comes to SSL termination for Outlook Web Access (OWA).
The problem comes down to a HTTP header (field is location). I have configured an action list to re-write the SSL pure URL as per page 96 of the "Cisco Application Control Engine Module SSL Configuration Guide". example:
ssl url rewrite location bnecas\.mycompany\.com sslport 443
That part works, the http header location field that comes back from the GET request is changed to https://cas.mycompany.com which is great. However, in addition to that url, there is also a path or something following that part. The actual string that is returned is:
https://cas.mycompany.com/owa/auth/logon.aspx?url=http://cas.mycompany.com/owa/&reason=0
The first bit of it, (https://cas.mycompany.com) is changed by the ssl url rewrite command, however the last part (http://cas.mycompany.com/owa/&reason=0) isn't changed.
This is where I've been trying to get the http Header Rewrite command to do something. I don't know if it can work in conjunction with the ssl url rewrite function however with the ssl rewrite function it seems it can't change bits of the string that aren't the pure URL at the front.
The end result is that while I have an SSL connection to the OWA login page, when I do login to OWA it reverts back to HTTP. I'm fairly sure it is because of the last part of the location string above. Is there a way to change that location string to do the following:
1. change the first part of the string to be https://cas.mycompany.com (like the ssl url rewrite function)
2. change the last part of the location string to put https in there instead of http
Ideally I would love to have this string
http://cas.mycompany.com/owa/auth/logon.aspx?url=http://cas.mycompany.com/owa/&reason=0
replaced with this one
https://cas.mycompany.com/owa/auth/logon.aspx?url=https://cas.mycompany.com/owa/&reason=0
I had originally tried the following in the action list:
header rewrite response location header-value "(owa/auth/logon\.aspx\?url=)http(://bnecas\.thiess\.aus/owa/&reason=0)" replace "%1https%2"
ssl url rewrite location bnecas\.mycompany\.com sslport 443
but it didn't work. I'm probably screwing up the regex somewhere however there doesn't seem to be very clear examples anywhere I can find.
Any help will be greatly appreciated and of course I will be sure to rate every post that responds to my plea for help.
BradHi Brad,
try this:
/* Style Definitions */
table.MsoNormalTable
{mso-style-name:"Table Normal";
mso-tstyle-rowband-size:0;
mso-tstyle-colband-size:0;
mso-style-noshow:yes;
mso-style-priority:99;
mso-style-qformat:yes;
mso-style-parent:"";
mso-padding-alt:0in 5.4pt 0in 5.4pt;
mso-para-margin:0in;
mso-para-margin-bottom:.0001pt;
mso-pagination:widow-orphan;
font-size:11.0pt;
font-family:"Calibri","sans-serif";
mso-ascii-font-family:Calibri;
mso-ascii-theme-font:minor-latin;
mso-fareast-font-family:"Times New Roman";
mso-fareast-theme-font:minor-fareast;
mso-hansi-font-family:Calibri;
mso-hansi-theme-font:minor-latin;
mso-bidi-font-family:"Times New Roman";
mso-bidi-theme-font:minor-bidi;}
action-list type modify http X
header rewrite response Location header-value "http://(.*url=)http://(.*)" replace "https://%1https://%2"
we wont be using ssl url rewrite in this case
Also we will be needing persistence rebalance applied through application parameter map and apply that under the VIP class
Maybe you are looking for
-
Writeback button still grayed out after all the steps I have taken
Hi experts, I have created simple writeback request, and writeback is enabled for one column, and I have placed xlm template under: C:\OracleBI\web\msgdb\customMessages\ and my writeback button still grayed out. Below is my xml content: <?xml version
-
Ok so after a bit of digging I haven't been able to find a consensus on this topic, so I'm going to guess that ARD doens't support multiple displays or listening ports? I want to be able to have my ARD server allow for more than one client to connect
-
What ports need to be enabled on a firewall to perform an on-device update to IOS7?
I am working in schools using iPads and need to perform IOS7 updates on multiple devices. I can update by plugging into iTunes but this is a slow process. When I try an on-device update the iPad downloads the file but fails at the verification stage.
-
Hi, I need your opinion on how to code the following view using SQL. This is for a research project on HANA. The table has sequential meter readings with the following table structure: CustomerID, MeterID, Date, Time, Meter Reading Now I need to know
-
I have a Sun v215 currently running Solaris 10 and I had a question about re-partitioning the disks. The v215 that I bought has two 70Gb disks. Disk 0 (c1t0d0) is allocated as the boot disc and has solaris installed. Disk 1 (c1t1d0) is allocated with