Block access through listener by IP Range - Wildcard

Hi,
I know you can block access to oracle database through listener using following configuration in sqlnet.ora
tcp.validnode_checking = yes
tcp.invited_nodes = (hostname1, hostname2)
tcp.excluded_nodes = (192.168.10.3)but, is there a way to give IP-Range rather than giving individual address one-by-one.
for e.g
tcp.validnode_checking = yes
tcp.invited_nodes = (192.168.10.*,192.168.20.*)
tcp.excluded_nodes = (192.168.222.*,192.168.333.*)Thanks.

Hi,
CMAN is part of enterprise version to much expensive!
Use:
tcp.validnode_checking = yes
tcp.invited_nodes = (192.168.10.1/24,192.168.20.1/24) # /24 = 0..255
tcp.excluded_nodes = (192.168.10.64/26,192.168.20.64/26) # /26 = 0..63
# So from 192.168.10.1..192.168.10.63, 192.168.10.128..192.168.10.255
# So from 192.168.20.1..192.168.20.63, 192.168.30.128..192.168.20.255
François

Similar Messages

  • How do I access Firefox when Norton 360 firewall seems to be blocking access but all links on Norton 360 default to Mozilla page which can't connect?

    I'm writing this via a Windows Explorer browser window which should tell you the problem, or at least that I can't connect through Mozilla Firefox.
    Mozilla has been my default for years and I've always had Norton, 360 for the last few years. I've been through the traditional update problems with Toolbar/ID Safe and both of those are working fine.
    Both were updated to absolute latest version within the last week due to an Update/Restart problem I was having with Windows 8.
    There were some periodic problems with initializing the Norton problems which generally led to a Firefox not responding situation.
    But I was able to run both quick and complete scans yesterdays and the Norton Autofix tells me no problems with their program/app.
    I just downloaded newest Mozilla 25.0.1 last night again as last resort because I can't access Firefox beyond the homepage.
    Spotify also told me there appeared to be a firewall blocking access. I also can't access iTunes.
    I went to Windows 8 Action Center and it listed Norton 360 as controlling the firewall.
    But I went to the allow apps through Windows Firewall tab in System anyway and didn't see any listing for Mozilla or Firefox there (maybe you have a less obvious filename).
    My own network connection is working fine, obviously I'm on Explorer and no problems with my other computer.
    I'm going to contact Norton to deal with this problem, too.
    But my real problem now is that any attempt to contact the Symantec/Norton help/support site is automatically sent through a Firefox page which can't connect.
    Right now I can't figure out how to do a tech chat or something to work at it from their end.
    So that's why I'm here asking if you've run into this or know any way around it.
    Obviously, the quicker a response the better.
    Thanks for your time.
    Ciao 4 now,
    Don Snowden

    Hello J Scher,
    I don't know if this answer solves it, but I did contact Norton Support through IE and the tech had me download Firefox again...just like I did the night before on my own. But for the moment, for whatever reason, all those issues have gone away, knock on wood three million times. I can access Norton support pages, I can get on Spotify and I can reach the iTunes store.
    I will freely admit to not being a great computer person but I have no idea why my machine did this to me all weekend and why it cleared up now, unless the Norton tech did some behind-the-scenes tweakery. But for now, I'm okay and things are working, knock on wood four million more times (figure I better up the ante).
    Thanks for your help.
    Don Snowden

  • My phone is set to the switch button and i have a red block rotating through my phone not allowing me to do anything at all.. what do i do?

    I have a red block rotating through my iphone and i can't access anything while its doing this. what do i do?

    Reset: Hold down the Sleep/Wake button and the Home button at the same time for at least ten seconds, until the Apple logo appears. Note: You will not lose any data

  • Need software to block access to certain websites at night

    OK. I'm going to admit it. I've got a shopping compulsion that's somewhat out of control when I get tired at night.
    Anyone have suggestions for software or another method to block access, ideally to just forms, or just certain websites, between certain times? I know if I'm the admin I'd be able to get around it, but it would help stop me from buying when I'm not awake enough to make good decisions.
    I'm thinking a children's filter would work, but none of them seem to go more specific than turning off the internet entirely between certain times, and that's a bit too broad. In any case, I'm pretty sure I could script just turning off the Airport link for a time if that's what I really wanted.
    Any suggestions for scripting the Airport config or other site lookup files (the ones that say ebay.com -> this address), perhaps? That would keep me from getting on with the iPhone too.
    Thanks, and
    Aym

    AymR wrote:
    Maybe I just need to make my own scripts... I know if I'm the admin I'd be able to get around it, but it would help...
    You might try the script below. It works by looping through a predefined list of text items, comparing each item to the URL of the frontmost Safari document. When a match is found, the frontmost document is replaced by a blank page. A dialog then appears informing you that you've attempted to reach a prohibited web site.
    The script below should be copied and pasted into your AppleScript Script Editor. From the Editor's File menu choose Save As > File Format: application. Be sure to check Stay Open under Options. Once saved, the script can be launched from the dock or desktop, or launched as part of a repeating iCal event, with iCal's alarm feature set to open the script file at a certain time each day. Once running, the script can be stopped at any time by selecting its docked icon and choosing Quit from the menu.
    +The script:+
    *property prohibited_list : {"ebay.com", "amazon.com", "shopping.yahoo.com"} --> add or remove items as desired*
    *on idle*
    *tell application "System Events"*
    *if exists application process "Safari" then*
    try
    *tell application "Safari"*
    *set x to URL of front document*
    *set y to every character of x as text*
    *repeat with an_item in prohibited_list*
    *if an_item is in y then*
    *set the URL of front document to ""*
    *tell application "System Events"*
    activate
    *display dialog "You have attempted to access a prohibited web site." with icon stop buttons ("OK") default button 1 giving up after 10*
    *end tell*
    *tell application "Safari" to activate*
    *end if*
    *end repeat*
    *end tell*
    *end try*
    *end if*
    *end tell*
    *return 5*
    *end idle*
    Good luck.
    +The script was tested in Mac OS 10.4.11. Leopard and Snow Leopard users' results may vary.+

  • Disable Webservices access through web

    Hi All,
    In OFMW and AIA 11g ps3, how can we disable webservices access through web i.e. restrict webservice call from outside
    world using OWSM security policies?
    We dont want to use username based authentication or any other policies that is based on authentication and authorization.
    Please let me know how can we achieve this?
    Thanks in advance.

    Hi,
    I think the best way would be to block the access to services at firewall so that these services have restricted access within the network. This can be achieved only if none of the services need to be exposed over to the internet.
    Regards,
    Neeraj Sehgal

  • Block access to disk on guest network?

    Is it possible to block access to the disk through the guest network?
    I have a hard disk connected to the USB port of an AEBS so I can access it through the secure primary network.
    However, it seems that also those connected through the guest network can see and read the disk.
    Is there a way to block the disk from the guest network?

    Yes goto disk / file sharing / disk access guest network. and turn off access.

  • Using .htaccess file to block access from certain networks

    Does anybody have any tips on getting a .htaccess file to work to block access to my Web Access server from certain network ranges on SuSE 10 SP3 with GW 8.0.2.
    It does seem like the file does anything? With Web Access I'm not exactly sure where to put the file. I used to accomplish this using iptables, but I was seeing if I could do the same with .htaccess.
    Thanks!

    Originally Posted by bbilut
    Does anybody have any tips on getting a .htaccess file to work to block access to my Web Access server from certain network ranges on SuSE 10 SP3 with GW 8.0.2.
    It does seem like the file does anything? With Web Access I'm not exactly sure where to put the file. I used to accomplish this using iptables, but I was seeing if I could do the same with .htaccess.
    Thanks!
    You can block a range with the .htaccess file, for example by defining the range as
    Code:
    order allow,deny
    deny from 10.0.
    allow from all
    ...that would block all 10.0.0.0 upto 10.0.255.255 addresses
    You cannot use this file in tomcat, so useless I think... but as Apache is used as frontend for the tomcat webacc application and you might be able to edit the gw conf apache files to include the range denies (which by default can be found in /etc/opt/novell/groupwise/webaccess/gw.conf).
    Maybe this thread might help as there are some examples in howto include denies in the .conf files.
    Deny IP Ranges in httpd.conf Apache Web Server forum at WebmasterWorld
    Do make a backup of you current gw.conf in case it blows up :)
    -Willem

  • OID Access through PL/SQL

    We are trying to access OID data user creation and access through PL/SQL. In Oracle examples are specified in PL/SQL block and the password is visible. Is there any other best practice to use otherways.

    The mainframe Transparent Gateways are an extra-cost option that require some DBA configuration. Once that configuration is done, the mainframe data would be exposed as a table across a database link, i.e.
    SELECT *
      FROM <<data file>>@<<database link>>Are you talking about just loading in a basic flat file? Or real mainframe integration?
    Justin
    Distributed Database Consulting, Inc.
    http://www.ddbcinc.com/askDDBC

  • HT1329 if the music that is on the iPod can no longer be accessed through iTunes because it was deleted, is there anyway to recover the music on the iPod if it wasn't purchased?

    if the music that is on an iPod can no longer be accessed through iTunes because it was deleted, is there anyway to recover the music on the iPod if it wasn't purchased?

    See this support article:
    http://support.apple.com/kb/HT1848
    You can also download at least some of your content (audiobooks being a notable exception) again from the iTunes Store:
    http://support.apple.com/kb/ht2519
    For additional instructions, particularly for content not purchased from the iTunes Store, check out this user tip from TuringTest:
    https://discussions.apple.com/docs/DOC-3991
    and this page on "How-to Geek":
    http://www.howtogeek.com/104298/sync-your-ios-device-with-a-new-computer-without -losing-data/
    Regards.
    Forum Tip: Since you're new here, you've probably not discovered the Search feature available on every Communities page, but next time, it might save you time (and everyone else from having to answer the same question multiple times) if you search a couple of ways for a topic, both in the relevant forums and in the Apple Knowledge Base, before you post a question.

  • Blocking access to file sharing (AFP/SMB) from outside of network

    Hello all,
    Is there a way to block access to file shares from outside of our LAN? I have a machine that has some sharing turned on (it is also my email server) and I can reach it across the internet and mount shares as if I was in the office.
    How can I block this access? Both SMB and AFP?
    Thank you,
    -John

    Justin, thank you for your reply. The machine is on a public ip address and is not behind a NAT router. I've turned on the software firewall and that is working now. However, I imagine it would be better to use a hardware firewall. Any suggestions on a good one? Thank you.

  • Can I use the new Time Capsule to backup my mid 2010 Macbook Pro? Also can I want to free up my hard disk, can I save my photos and files on the time capsule and later access through wifi?

    Can I use the new Time Capsule to backup my mid 2010 Macbook Pro? Also can I want to free up my hard disk, can I save my photos and files on the time capsule and later access through wifi?

    Can I use the new Time Capsule to backup my mid 2010 Macbook Pro?
    Yes, if you are asking about using Time Machine to backup the Mac.
    Also can I want to free up my hard disk, can I save my photos and files on the time capsule and later access through wifi?
    You are not thinking of deleting the photos and files on your Mac, are you?  If you do this, you will have no backups for those files.
    Another concern is that Time Machine backs up the changes on your Mac. At some point, Time Machine will automatically delete the photos and files from the Time Capsule.....you just don't know when this might occur.
    In other words, only delete files from your Mac that you can afford to lose.

  • How do I BLOCK access to ONEDRIVE that come with Office 2013 Home & Business

    System consists of
    Window 2012 Server + Exchange 2013
    Workstaions are Windows 7 Pro with Office Home and Business 2013
    I have been asked by the business owners to Block access to onedrive
    documents are to be only stored on local Server
    ChrisS

    Hi,
    We can disable OneDrive in Office with Group Policy.
    First, please download Office 2013 Administrative Template files (ADMX/ADML) from this link below:
    http://www.microsoft.com/en-us/download/details.aspx?id=35554
    Then, press Win + R, type "gpedit.msc" in the blank box, press Enter.
    The settings can be found under User Configuration -> Administrative Templates -> Microsoft Office 2013 -> Miscellaneous. Select the “Block signing into Office” option in the list of settings. In the Properties window, click “Enable” and select
    the option “None Allowed.” Save the settings and open Word to check, there should be no OneDrive option for the user.
    Regards,
    Melon Chen
    TechNet Community Support
    It's recommended to download and install
    Configuration Analyzer Tool (OffCAT), which is developed by Microsoft Support teams. Once the tool is installed, you can run it at any time to scan for hundreds of known issues in Office
    programs.

  • Remote panel and selective control access through Security with DSC

    Hi Everyone,
    I looked around to see what labview had to offer concerning security of remote panel and all the solutions I've found only propose full access to a remote panel, or none. The login page is not an option for me as everyone on the intranet can access the remote panel for monitoring but not everyone can have control to the buttons on it.
    With the DSC module, I can give securities to the different controls and it works great with the exe, if I log in or out, the controls appears or disapears. Unfortunately, with remote panels, those controls are always visibles. Furthermore, when I log in from a remote panel, all the other remote panels get logged in with the same username and priviledges. When I log out, same thing, it logs out all the other remote panels. So the last guy who logs in gives its priviledges to every one else who is monitoring the remote panel at that time. when he logs out, he logs everyone out. I used a reentrant vi hoping that this would solve the problem but it didnt.
    I would like to do what my colleague does with Advantech without any problem. He has only 1 .exe is running on the server and whoever connects to it through webserver, just needs to log in and he has all the priviledges of an guest, operator, admin, etc.. with access to controls and features accordingly. All this without interfering with the other people using the remote panels. This colleague has always been doubtful about the capabilities of labview to do SCADA systems and uptil now, I've been able to prove him wrong.. please help me continue
    There are workarounds, using remote desktop to the server instead of webserver but it definitely is not as practical for the client and it will need quite some work to to synchronise all the exes open from the differents sessions, through the use of shared variables, binding and securities.
    Thank you for your help.
    Solved!
    Go to Solution.

    Thank you very much for your reply Jordan.
    The NI security info is on the server (local domain with groups and users), and the running exes as well. The remote panel is not supposed to be accessed by internet, at least not yet, but just by the computers on the network and thinkline computers who are directly connected to the servers. the remote panel is accessed through the simple url: http://serverip/Application.html
    There is no problem with accessing the remote panel of the exes on the server from another computer on the network. But there are several security issues when logging in and out with the NI Security Programmatic Login and logout VIs through the remote panel..
    The 1st problem occurs when several people access the remote panel at the same time. In my setup, everyone is allowed to check what's happening on the front panel of the running exe, go through the tabs, check the graphs, the tables, etc.. , but only the administrators and the operators can send commands to the machines and the production line through this remote panel. Hence some buttons are accessible to all users, while others are only accessible depending  on the privileges of the person logged in.
    So like I said in the 1st post, I configured some buttons to be accessible only by the users of the admin group. When the exe runs, it's perfect, if I log in and out with an admin account, the buttons appears and disappear accordingly. But when I check the remote panel, those admin buttons are always visible, even if I am logged in as a guest or even logged out. Is it because the remote panel only needs minimum runtime engine and doesnt use the dsc runtime engine? if so, any work around?
    Furthermore, another big problem is that if I login as an admin in one remote panel, then login as an guest in another remote panel, and then logout back from the first remote panel, it says: "User Domain/Guest logged out". Hence, my second login logged out my first user. I can actually see the admin buttons appearing and disappearing on the exe when login as admin and guest from the different remote panels.
    So that's it, I would like my remote panel to behave like a normal scada system, with one exe running in the back (on the server) and with all the users accessing it through web server. Several users might/will access the remote panel at the same time and each of the users have a login/password that grant some of them the privileges to take some actions while giving the others only monitoring rights.
    I hope that I have been more clear in this 2nd post,
    Thank you again for your time.
    Best Regards,
    Tom.

  • I used to able to access and listen to my itunes library from my ipad using the remote app but this no longer works.  I am connected but sound thru ipad.  Is this because of they want us to use itunes match

    I used to able to access and listen to my itunes library on my ipad  using the remote app but this no longer works.  I am connected but sound thru ipad- just controls my library on iMac.  Is this because of they want us to use itunes match

    That has nothing to do with iTunes match. The Remote app on iPad can control the computer's iTunes but not play content from iTunes on your iPad.
    To play for example iTunes imusic on iPad
    You need to have Home Sharing On.
    Check Settings > Music > Home Sharing (key in your Apple ID & password here, must be the same on computer's iTunes)
    Start iPad's Music app, tap the ... More (bottom right), tap Shared.
    Choose your iTunes' library and have fun.

  • Internet Access through TMG for all HO & Branch office

    Dear Experts!,
    I am new to the Forefront TMG 2010. Have requirement to implement internet access.
    Head office : 192.168.11.x/24 (192.168.11.1 is the TMG server)
    Branch Office 1: 192.168.12.x/24
    Branch Office 2 : 192.168.14.x/24
    Branch Office 2 : 192.168.16.x/24
    Forefront TMG 2010 standard edition.
    Having 3 NIC's two have different ISP network addresses and one has 192.168.11.1.
    Branch office are connected using MPLS network, the requirement is all branch site internet must be accessed through TMG 2010 server which is homed in Head Office. How to achieve ?
    What needs to be done in external firewall and in TMG for enabling internet access.
    Thanks!
    Regards, Ganesh, MCTS, MCP, ITILV2 This posting is provided with no warranties and confers no rights. Please remember to click Mark as Answer and Vote as Helpful on posts that help you. This can be beneficial to other community members reading the thread.

    Hi Ganesh,
    Hope this helps
    1 - If you wish to give internet as Proxy to users.
    Ensure the Below subnet is able to reach TMG Internal Interface that is 192.168.11.1
    Subnet
    Branch Office 1: 192.168.12.x/24
    Branch Office 2 : 192.168.14.x/24
    Branch Office 2 : 192.168.16.x/24
    Configuration
    Enable Proxy in TMG and configure Proper Ports as per your requirements
    On the Client IE – Ensure you put Proxy IP as TMG and Port configured in TMG configuration.
    Enable a Rule
    Access Rule
    Source : Internal
    Destination : External
    Ports : HTTP / HTTPS
    Users : Authenticated Users
    2 As normal Internet as Gateway to users
    You need to request your MPLS provider to change the Default Route of below subnet to 192.168.11.1. By doing this, all the internet request from the below subnet to internet will hit TMG.
    Subnet
    Branch Office 1: 192.168.12.x/24 Default Route 192.168.11.1
    Branch Office 2 : 192.168.14.x/24 Default Route 192.168.11.1
    Branch Office 2 : 192.168.16.x/24 Default Route 192.168.11.1
    IF you have any L3 Switch then you can also make Default gateway as L3 for all the subnet and from L3 device point it to TMG
    Enable a Rule
    Access Rule
    Source : Internal
    Destination : External
    Ports : HTTP / HTTPS
    Users : All Users ( Important )
    Two ISP
    In network Rules : You need to use NAT
    You will have a Rule which NATS internal to  External
    On external - Choose which ISP interface should be used  and Apply NAT rule

Maybe you are looking for

  • N95 8GB unlokced , Vibrating alert does not work

    Hi I just bought used N95 8 GB from my friend which is locked to a network provider. My friend took it to shop to unlock service provider (he didn't realise that service provider does it for free), now I tried to test income call vibration but it see

  • A gloom outlook on the fut

    To me this is a very simple situation. A. I bought the best product CL had to offer for a hefty sum of money, just a few months ago (X-Fi Elite Pro). B. At that time CL was communicating that drivers would be ready for Vista in time for the "official

  • Windows 8 Detects Audio But I don't hear any sound.

    Hi, I have an HP Pavillion 500-314 running windows 8.1. Yesterday all sound stopped working though windows still detects sound in the control panel and device manager. I've tried system restore and uninstallilng/reinstalling the audio drivers. This i

  • Xferring 45gb HD from a regular Lap 'Top to a mini PC laptop

    I wonder if it is possible to transfer a 45GB HD (Windows XP OS) to a minicomputer (Windows XP OS).  My reason is that I have a laptop that I can no longer access because one keyboard letter does not work, and it happens to be one that Is in my log o

  • Where is the instruction manual for iOS 6?

    Ive spent 15 minutes looking around the Apple site trying to find just a basic insttuction manual for IOS6 Please help.