AppServer: problems trying to add users to roles in security dialog

I'm trying to learn J2EE using AppServer. My current example has a client accessing
an entity bean. I want two classes of user - Reader, and Updater. Most methods
of Home and Remote are accessible to both classes, a few are restricted to users
in Updater role. I'm currently having problems adding users to roles in deploytool.
I have defined users using the Admin client.
I have implemented and test run client and entity bean without security restrictions, it works.
I have defined roles associated with the application.
I have allocated roles to every method in Home and Remote interface of bean.
I have extracted the generated XML file and checked the <assembly-descriptor> section and
it appears that all roles and role descriptions are defined as required.
deploytool lets me use the "Security Role Mapping" dialog, I can select either of my roles and
try "Add user to role" - subsequent dialog shows my users and allows me to "Map user to role" -
but selected user does NOT appear in the user names panel.
What am I doing wrong or what am I omitting? Hints please!

Thanks for suggestions. (I'm using Windows so file-protections pretty
non-existent).
I looked in the Sun file you mentioned and found the users were defined.
When I restarted AppServer and deploytool, the users were shown in the appropriate
panel.
There is probably some minor bug in deploytool that causes the User Panel not
to be updated as it should be after a user has been added to a role.

Similar Messages

  • Error: 0x80073701 when trying to add Print Services Role in Windows 2012 Standard

    Hello,
    I'm getting an error when trying to add Print Services role in Windows 2012 Standard. I'm getting the same error whether I use the GUI or from PowerShell.
    This is a new server install.
    The PowerShell error follows:
    add-windowsfeature : The request to add or remove features on the specified server failed.
    Installation of one or more roles, role services, or features failed.
    The referenced assembly could not be found. Error: 0x80073701
    At line:1 char:1
    + add-windowsfeature print-services
    + ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
        + CategoryInfo          : InvalidOperation: (@{Vhd=; Credent...Name=localhost}:PSObject) [Install-WindowsFeature],
        Exception
        + FullyQualifiedErrorId : DISMAPI_Error__Failed_To_Enable_Updates,Microsoft.Windows.ServerManager.Commands.AddWind
       owsFeatureCommand
    Success Restart Needed Exit Code      Feature Result
    False   No             Failed         {}
    Any help with this issue will be greatly appreciated.

    Hi,
    I think you should start with chkdsk C: /F and sfc /scannow.
    Regards.
    Vivian Wang

  • JHeadStart Security problem-error page cannot be found- role based security

    JHeadStart Security problem-error page cannot be found- role based security
    Good morning! How are you? I would need some help in a jheadstart 10.1.3.2 security case and I was wondering if you could give me a hand to go on. I create the Model project with tables of oe schema. Then in JHeadStart to perform security I follow the following steps: In ViewController/WEB-INF/web.xml – properties I do the following: login configuration: http basic authentication rfc 7617: realm:jazn.com
    Security roles : I define two roles: customer and administrator , Security Constraints: web_resources: All_pages, Url Patterns: faces/*. Then in Tools/Embedded OC4J Preferences/Global/Authentication JAZN/Realms/jazn.com/users: I define two users c1, password c1 and a1,password a1, roles/member users/ I attribute the roles to the relevant users c1—customer and a1—administrator. Then in application definition editor on service level I define security/use role based authorization=true , authorization type: JAAS and when access denied go to next group=true. On group level e.g.: ProductInformation: Authorization/Authorized Roles Permissions: administrator.On item level : Orders/Items/OrderTotal/Operations/Update Allowed: #{jhsUserRoles['administrator']},Then I generate the pages (run the jag) . The generation is completed successfully but when I run the View Controller project a “the website declined to show this webpage…(page cannot be found)’ is displayed. What should I do? I would appreciate it if you would help me on this issue! Thank you very much.

    Thand you very much for your reply! Unfortunately there is a specific restriction-convention in the project I work in. I am supposed to perform role based security with my own tables and no by the jheadstart’s ones. Could you find out what is my fault with the steps I follow trying to perform the process?
    To remind you my steps I paste the following again:
    JHeadStart Security problem-error page cannot be found- role based security
    Good morning! How are you? I would need some help in a jheadstart 10.1.3.2 security case and I was wondering if you could give me a hand to go on. I create the Model project with tables of oe schema. Then in JHeadStart to perform security I follow the following steps: In ViewController/WEB-INF/web.xml – properties I do the following: login configuration: http basic authentication rfc 7617: realm:jazn.com
    Security roles : I define two roles: customer and administrator , Security Constraints: web_resources: All_pages, Url Patterns: faces/*. Then in Tools/Embedded OC4J Preferences/Global/Authentication JAZN/Realms/jazn.com/users: I define two users c1, password c1 and a1,password a1, roles/member users/ I attribute the roles to the relevant users c1—customer and a1—administrator. Then in application definition editor on service level I define security/use role based authorization=true , authorization type: JAAS and when access denied go to next group=true. On group level e.g.: ProductInformation: Authorization/Authorized Roles Permissions: administrator.On item level : Orders/Items/OrderTotal/Operations/Update Allowed: #{jhsUserRoles['administrator']},Then I generate the pages (run the jag) . The generation is completed successfully but when I run the View Controller project a “the website declined to show this webpage…(page cannot be found)’ is displayed. What should I do? I would appreciate it if you would help me on this issue! Thank you very much.

  • Cannot add users to roles

    I have configured OpenLDAP data store with Access Manager. I can see the users added in LDAP in the Subjects tab of Access Manager, but when I create a role ad try to add users in the role I get the exception
    Plug-in com.sun.identity.idm.plugins.files.FilesRepo: Unable to find entry: C:\Documents and Settings\161101\amserver\idRepo\user\frank
    Can anybody suggest what is problem

    Hi there,
    The reason why you have file repo is because you installed the AM using file repo instead of LDAP.
    Deleting the File Repo configuration for that realm will not affect the configuration part of the AM ( I would still do a backup ... just in case) because the datastore configuration has nothing to do with that. The configuration part of the AM is at the platform level and you have that configured on the configurations tab of the platform. What I'm sugesting is on that specific Realm ( I usually use a different Realm other than the Root realm ... this way I'm sure not to mess it up ) go to the datastores (which is the place where user data is stored and not the configurations (though they might be the same) ) and delete the file datastore configuration (or point it to a different location ... but do not delete the files on the filesystem, because they are still in use by other Realms and the configuration ) .
    Configuration data and User repositories can be configured in different places .... which is what you are now trying to do .... have the conf on the file system and have the users on an LDAP.
    Defenetly do a backup of your stuff ... and if at all possible use a different realm other than the root realm.
    Hope this helps .... and makes any sense !
    Rp

  • Am I trying to add users to a group correctly?!

    Experts (Dave?!):
    As posted yesterday, I'm finally able to log in to the RHS Admin Console.
    I've been testing the Users areas. I'm having trouble adding users to a group other than the RobAdmin. Please let me know what/if I'm doing wrong. My procedure:
    1) Access the Users panel:
    2) Click the upper Add to add new group writers:
    3) Click OK. The writers group appears in the Group pulldown:
    4) Type in new user Kurt:
    5) Click Add. Note how the selected group snaps back to RobAdmin!
    6) Click Yes to confirm the user addition:
    7) Observe how Kurt is now added to the RoboAdmin group. (D'oh!).
    8) Observer how Kurt is NOT added to the writers group. (D'oh d'oh!)
    Is the above the expected behavior? If so, how does one add users to a non-RobAdmin group?!?!?
    Thanks in advance!.
    -Kurt

    Kurt, I hope the robo team is reading this, because I think this problem has been going on for a long while. What happens for us is, you can create the group, then add the user, then the group disappears from the drop-down upon refresh. I remember John Daigle looked at it a while back and was puzzled. It's the only part of server that isn't working right for us now, but it's a real pain--I can't create groups or add users.
    David
    HTML11/Server 9

  • Lots of problems trying to delete users

    My situation is that my girlfriend and I were sharing one account. Well the desktop and dock was getting very cluttered, so I wanted to create a seperate account for her. Which then I decided that I was just going to change the names of both accounts and use the new account because it would be easier to transfer my files.
    I had alot of problems trying to change short names of accounts, and since that did not seem possible I tried to delete the account which I had just made. In Account Preferences, I tried to delete a newly created account. I unlocked the padlock to make changes, but I could not even select any of the accounts. I did this from another admin account first. I even tried this with the root account, and still I could not even select any accounts in Account Prefences.
    The only accounts I can select/delete are accounts that I had just created and not logged into yet. After I logged into a new account, an orange cirlce icon with the check mark in the middle shows up beside the new account in Account Preferences.
    Then I found something in a forum that mentioned how to delete an account through Terminal. I created a dummy account just for practice. That seemed to work well enough. I tried to delete my other new account that I made for myself. Well I had switched the names on the two accounts. So when I typed in the name of the new account, Terminal thought it was still the name of the original account. The original account seems to be gone, but all the files are still accessible(luckly I had set the permissions before so that we had access to each others files easily.) I stopped in the middle of the process of fully following the instuctions on a forum on the original account and I lost the site because I was on the original account when deleteing in terminal.
    My question is what can I do to either get the account back or any other things I can do to fix my problem. I was thinking about just taking all the files from the old account and just transfer them to a newly created account.
    She has photoshop, so I was not sure how that would effect that program.
    All the files are still in Users folder in the Mac folder in My Computer. So that is good.
    I created another new account called "Jennifer Stoltes"(short name "jennifer") so I could just transfer everything from the accidentally deleted account. When I sign on this user the name shows up as "new" in the User name in the upper right corner of the screen. "new" is the name of the account I created to try deleting through Terminal, which I thought I completely deleted.
    How do I transfer everything from one account to another. Can I re-create the original account because the folder is still in the Users folder in finder.
    I don't know who would want to tackel the problems I created. If all else fails, I might just have to call tech support or take it to the apple genius bar.

    Choose Go to Folder from the Finder's Go menu and enter /private/var/log/ as the folder's location; once this folder has appeared, check the modification date of the file named daily.out. If this date is prior to the deletion of the account, follow the instructions in sections 1 and 2 of this article. Doing this will restore the account setup to the configuration it was in within 5 minutes of the timestamp on the file mentioned earlier.
    If not, create two new administrator accounts on the machine, log in with each account, and then copy the data associated with one of the two original accounts to the desktop. Once this has been done, move the files to the correct location in the current home folder, restart the computer or log out from all of the accounts except for either of the new ones, delete the old ones, and then use this application to change the short names of the current accounts.
    (20493)

  • CUPC goes offline when trying to add user

    CUPC 8.03 will go offline and reconnect when trying to add a user and it will say something about unable to add user to group. I would have to check again to see exactly what it says. This is only happening on a few users. I have tried logging in with my account on their computer and I can add the same people they could not. I have tried deleting everything in their local settings and application data related to cisco with no luck.
    I attached a detailed and simple log.
    The user that I was trying to add was Patti
    Has anyone seen this before? We have had nothing but trouble since upgrading to CUPC 8

    Hello,
    Please go the user option page of the user for CUPS and check the privacy policy if they are blocked or not
    if that fails try re-licensing the users from callmanager > system > licensing > capabilities assignment > "concerned user"
    and then restart the "intercluster sync agent" service from CUPS.
    Thanks

  • Error when trying to add users - The server is not operational [domain]

    Installed the admin console and went to start adding users to the system.  On the add users screen I select the domain and then get the following error:
    The server is not operational [domain]
    I looked this up in Service Notes and found this and found SN 1098415.
    The root cause indicated there is that the server is part of a WindowsNT domain and as such can't issue the LDAP query.
    This server is running in an active directory domain (not sure if it is 2000 or 2003, but it is AD nonetheless.
    Any thoughts?  There are no firewalls in-between the servers that provide AD and this server.
    McP

    I solved my problem.  For purposes of discussion let's call my Pre-Windows 2000 domain name ACME and my Windows 2000/2003 domain acme.net.
    After writing several manual VBScript LDAP queries (to take BPC out of the equation) I determined that the DC didn't want to answer to ACME.  It would only answer to acme.net.
    So, I went into Server Manager to "Define System User Groups" and updated the system user group "Domain Users" to look at acme.net for the domain name instead of just ACME.
    That did the trick - I am now able to see all the users in the domain.
    Thanks for all the suggestions.
    McP

  • Error when trying to add users

    Hi,
    I have BPC NW 7.5 SP 3 installed. From the client system I have opened Appshell and when I click on Users I am getting the following error
    "Could not find function module UJE_API_GET_ALL_TEAMS_DATA"
    I checked in ABAP in SE37 and it says that this function is not available.
    What could be the problem and the possible resolution.
    Thanks,
    Prasanth.

    Hi Prasanth,
    The function module UJE_API_GET_ALL_TEAMS_DATA is not exist in my system when i checked in SE37 but still iam able add users with Domain\id by selecting your domain in Available domain..
    Please let me still your facing same issue.
    Regards,
    Naresh.K

  • Error when trying to add users to project

    I am receiving an error when I try to add users to my projects. I have given all the new users the rights to see the projects I need them to see and when I go to the project right click select Project Access and click add users to project in the pop up window the next window that opens says "error" and has a Close button on the bottom right hand of the screen.
    This is an urgent matter to get fixed need to have figured out as soon as possible need to get users added to have server go live by noon central time.
    Thank you.

    I presume if it's that urgent you've also logged a service request with Oracle Primavera Support, right?
    What error does the server.log show?
    have you checked if the MYPV user exists in the ADMN table, in the Expadmin db?

  • PROBLEM: Trying 2 add an AIRPORT EXPRESS to an already existing AIRPORT EXTREME network

    I'm trying 2 add an AIRPORT EXPRESS to an already existing AIRPORT EXTREME network in my home.
    I see the EXPRESS in ARPT UTILITY but when I click on "CONTINUE" or "MANUAL", the only option I'm given is to SWITCH networks, which I do not want to do.
    I am using a MACBOOK PRO (MAC OS X 10.6.8)
    Can someone offer me help with this?
    Thanks!

    Hi, I have a similiar setup.  When you click onto the express, and it asks you to switch networks, it's not actually asking you to "change" networks.  It's just actually switching to the xpress.  When the xpress comes up, you'll input the name of your existing network, which you set up and named for the extreme.  You'll have to change the extreme to "participate in a network", which is what you'll also do for the xpress.  In the extreme under the WDS tab, you'll input the wds mode as "wds main".  And then put a check mark in the "allow wireless clients".  Where it says wds remotes, you'll input the the airport id's for the xpress's.  In each of the xpress's, you'll set up as participating in a wds network.  In the xpress's, under the wds tab, you'll set the wds mode to remote, and check
    mark in the allow wireless clients.  You'll have to input the airport id of the extreme in the wds main block.  Under the internet icon on top, in internet conect tab for connect using: airport (wds), connect sharing: off (bridge mode).
    Remember to insure that the express's show the same channel as the extreme, if you're using 802.11n (80211b/g compatible).  Of course the security that you decide to use should also be the same.

  • Reseeding cache for users with role based security

    I have role based security and trying to set up cache by purging all cache and later seeding cache by query. The query would be different for different users. What is the best way to purge all cache and reseed cache for administrator as well as all users. The EPT would purge cache based on updated tables. But how do I next go about reseeding cache for better performance to all the users. Thanks.

    I have created an ibot with the following:
    General - Normal Priority, Personalized (recipient's data visibility)
    Conditional Request - example_report
    Schedule - some schedule
    Recipients - Me(administrator) and User1
    Destinations - Oracle BI Server cache
    when the ibot runs 2 cache entries are created (for the 2 recipients).
    I have the report (example_report) on the dashboard (1 dashboard, 1 page, 1 report).
    After the ibot runs:
    When the administrator logs in first, there is a cache hit on the report. Followed by when the User1 logs in there is NO cache hit.
    On the other hand when the User1 logs in first, there is a cache hit on the report. Followed by when the administrator logs in there is no cache hit. The query log creates a Query issued to the database instead of cache hit on query.
    The User1 has a data level security.
    Please let me know where was I making an error in setting the ibot and how to get the cache seeding work for the different users with different role based security.
    Thanks for your inputs.

  • Trying to Add user to my team, box grays out after I click "Add user"

    It keeps going gray after i click to add the user. It jus sits there for a long period of time. Anyone else have this problem?  Have tried on multi browsers & computers.

    Team license links that may help
    -team plans https://creative.adobe.com/plans?plan=team
    -manage your team account http://forums.adobe.com/thread/1460939?tstart=0

  • Add user to role during reconciliation

    Hi,
    I have this scenario:
    We have a database resource on which we run reconciliation to link accounts to our users in IDM.
    I also have roles that contains this resource. When the reconciliation runs I would like to add the user
    to that role, instead of linking the user to the resource account directly.
    Our problem now is that if users gets linked to the resource, and then gets the role, if the role is removed, the user still has the link to the resource.
    Did that make any sense?
    I'm guessing that I need to use the "per account workflow" to make this happen, but I'm not sure how to do write this workflow.
    Regards,
    Henrik

    Hi Henrik,
    You could do it during reconciliation with a per-account workflow.
    Another approach is to use a regular workflow that lists users with accounts on that target resource and processes each of them to remove any unneeded direct assignments. That is what I went with, and I run the workflow periodically.

  • "Low-level" authorizations for accessing BW reports - add users to role

    Using the advice in Topic "Low-level" authorizations for accessing BW reports, I have been able to publish a query to a role that has 3 test users and each user gets the same query but with different data, as determined in the tables.
    Is there a way to look up the users and e-mail addresses from a table and associate them to the role? We have several hundred e-mail recipients that will not need BW access, but only need an e-mail with a static report that contains data on their own territories.

    Hi!
    i think programatically it might be complex. You got to maintain a seperate variant of report per user and use this variant to send mail. that means you need to maintain a variant and a Broadcast setting per user. once maintained you can use it any number of times the values will be recalculated everytime.
    with regards
    ashwin
    <i>PS n: Assigning point to the helpful answers is the way of saying thanks in SDN.  you can assign points by clicking on the appropriate radio button displayed next to the answers for your question. yellow for 2, green for 6 points(2)and blue for 10 points and to close the question and marked as problem solved. closing the threads which has a solution will help the members to deal with open issues with out wasting time on problems which has a solution and also to the people who encounter the same porblem in future. This is just to give you information as you are a new user.</i>

Maybe you are looking for

  • Error in Data Transfer : From CO-PA to SOP Flexible Planning

    Hi Friends I am working on a Scenario of Transferring CO-PA data to Flexible Planning, I am encountering few problems, I have done the followig steps, request you to check and get back to me.. The following configuration steps are done with Example;

  • Reporting Services? - sorry, none here

    Okay, I updated my Windows 2003 server to ZEN 10.1. I have just the one server and all of my data and my database are here. The install went great, very smooth. I've got a couple of issues that I'll address under different topics. Now, I followed the

  • Compile WebUI JSP

    I think that all class library files for the WebUI .JSP files have been installed in the 9iFS. So I tried to use all class library files in <9iFS>\lib to compile the WebUI .JSP files in addition to all system class library files of JDeveloper 9i R2.

  • Why can't I buy the new Iphone?

    Is anyone as ****** off as me that I cannot buy the new Iphone without paying $499? I purchased the first phone for $700, the second phone for $500 all on the day they came out. Now Apple will let anyone who didn't buy it before get it for $299 but I

  • New powermanager version 6.32 out

    There is a new power manager version out. Fixed an issue where the LCD was turned off 2 seconds after enter OS when system   resume from hibernation state. Think I may have seen this but from resume from sleep. Who knows. Anyway maybe this version co