CAS/CAM logs

Hello,
Just wanted to know is there any way to turn on additional logging on CAS let's say? I have enabled logging on CAM, it sends to local syslog daemon which is really useful. In this log I can see what is going on after agent is downloaded.
I'd like to see: connection attempts from different IPs, CAS triggers for Radius accounting packets (something like: packet is accepted, users is valod now), assigning to User Role process would be really helpful on deployment stage, etc. In fact we have only tomcat logs, which is not so bad as staring point but definately not enough.
Am I such a dreamer?
Misha

Misha,
Most of the information is recorded in the log files under tomcat. You can tune up the level of logging by going to the CAS admin page directly (https://IP_ADDRESS_OF_CAS/admin) and changing the values to either TRACE or ALL under the support logs page.
As for syslogging, unfortunately that isn't available on the CAS yet. If it's something you really value, talk to your account team and they can file a feature request for you, to be added in the later versions.
HTH,
Faisal

Similar Messages

  • How to schedule script to automate backup of CAS/CAM

    Hi Team,
    I want to configure automate backup of CAS/CAM Device on any free server available in network.
    Is there any script or setting we can configure on these devices

    Hi Amir,
       You can take the Create SSAS database XMLA script and run the job to create the cube. The script contains the Metadata definition of the Database and it does not contain the actual data. 
    Pros: Since you are only creating an empty cube the script will run faster 
    Cons: You still need to process the created cube to use it for reports.
    Fastest option is to take the backup of the cube and restore wherever necessary.
    And you can also use TFS source control to deploy the cube and process it later.
    Regards,
    Venkata
    Venkata Koppula

  • NAC 4.7.1 CAS CAM Login issues

    Hello,
    I upgraded from 4.5.1 to 4.7.1. I am having trouble with the communication between the CAS and the CAM
    Here is an outline of the issue
    1.       After Authentication, DHCP, ACS ok, WALL !!!
    2.       Nac Online Users = 0
    3.       Ping the CAM HA service ip
              Client = NO
              CAS = Yes
    4.       Things are broken at the moment where the Agent/Web Broswer has to communicate with the Nac Manager… it just times out.
    5.       Attached are pics of where it hits the 1. wall and the 2. error that pops up.
    Notes
    Cam Service IP Web UI > Cas Service IP is connected
    Certs from the Cam imported into TCA on Cas and vice versa @ ver 4.5.1 then upgraded
    DNS working
    Login & remediation was working with ver 4.5.1
    Any help would be greatly appreciated
    Thank you Kindly

    Desperately I decided to check everything et voila FIREWALL. With 4.7.1 the CAS needs access to the DNS server. I’m not sure exactly why. It was a fast one liner in the firewall among all the logging but it was the CAS being denied access to the DNS? Added the rule BANG all is good.
    The problem was the login works (inconsistently) for a few moments right after I upgraded or changing the cert… this really was misleading. Just got hung up on the cert being the problem.
    If anyone can tell me why the CAS need to talk to the DNS server i'd appreciate it
    Cheers

  • Importing Footage from Camera (Log and Capture)

    I am importing footage from my camera onto FC. Now my laptop doesn't have nearly enough space to import all the footage, but I have an external HD with 500 GB which is more than enough. But when I press log and capture, it immediately takes up space on the computer. Is there a way to import the footage directly to the hard drive?
    thanks.

    In Final Cut Pro, go to the menu Final Cut Pro > System Settings.
    When the System Settings Pane opens, on the Scratch Disks Tab, you can deselect your system disk and select your external drive as the location for the media you are using. You need to deselect the system drive, not just add your external. When done, click OK. Any media you have already transferred to the system disk will still be available for use in the edit, this will direct FC to use your external as the media storage device from this point forward.
    Your external drive should be connected to your computer via firewire or esata, USB (other than USB3) is not recommend for video work, and may give you performance issues.
    MtD

  • NAC CAS & CAM version ?

    Ask a question
    If we use different version from CAS and CAM , is it work OK ?
    thanks

    No.
    Upgrade the CAS first.
    Please read the release notes for version 4.6 to see the latest information:
    "Starting from Cisco NAC Appliance release 4.1(6), the Clean Access Manager and Clean Access Server require encrypted communication. Therefore, you must upgrade CASs before the CAM that
    manages them to ensure the CASs have the same (upgraded) release when the CAM comes back online and attempts to reconnect to the managed CASs. If you upgrade the Clean Access Manager
    by itself, the Clean Access Server(which loses connectivity to the CAM during Clean Access Manager restart or reboot) continues to pass authenticated user traffic only if the CAS Fallback Policy specifies that Cisco NAC Appliance should “ignore” traffic from client machines."
    Hope this helps.

  • Two Camera log/capture not working....

    I can't get both cameras to work.
    If I select one, it works, if I select the other, it works, but I can't get both cameras to work at the same time. Any idea why? There are also NO BLUE markers.
    Thank you and hello.

    Final Cut Pro is not a switcher...it is a non-linear editor. One camera at a time. It cannot capture from two cameras at once.
    You can only do that with a very expensive setup. www.pictureready.com
    Shane

  • Where does the agent live on the CAS/CAM?

    My host is prompting me that agent update 4.8.2.3 is available. I do not see this as an option for download via CCO. what is the dir on the server where the MSI lives ?

    Great news! The location is /perfigo/control/data/upload on the Mgmt server.

  • Multiple classic 4999 error logged intermittently in HT-CAS server ?

    People,
    I'm running my 2x Virtualized HT-CAS role on my Exchange Server 2010 SP3 as Windows NLB cluster, Somehow I see that the following error message is always logged randomly in both HT-CAS servers:
    Log Name:      Application
    Source:        MSExchange Common
    Date:          17/03/2015 7:07:10 AM
    Event ID:      4999
    Task Category: General
    Level:         Error
    Keywords:      Classic
    User:          N/A
    Computer:      PRODHT-CAS01.Domain.com
    Description:
    Watson report about to be sent for process id: 2956, with parameters: E12, c-RTL-AMD64, 14.03.0123.004, M.E.RpcClientAccess.Service, M.Exchange.StoreProvider, M.M.MapiStream.get_Length, M.E.D.Storage.TooManyObjectsOpenedException-18334, 41f3-505f, 14.03.0123.002.
    ErrorReportingEnabled: False
    Log Name:      Application
    Source:        MSExchange Common
    Date:          16/03/2015 7:06:57 PM
    Event ID:      4999
    Task Category: General
    Level:         Error
    Keywords:      Classic
    User:          N/A
    Computer:      PRODHT-CAS02.Domain.com
    Description:
    Watson report about to be sent for process id: 2668, with parameters: E12, c-RTL-AMD64, 14.03.0123.004, M.E.RpcClientAccess.Service, M.Exchange.StoreProvider, M.M.MapiStream.get_Length, M.E.D.Storage.CorruptDataException-18334, aea7-d008, 14.03.0123.002.
    ErrorReportingEnabled: False
    Any kind of help and suggestion would be greatly appreciated.
    Thanks.
    /* Server Support Specialist */

    Hello,
    It’s a known issue and so far there is no user impact. You can safely ignore this event.
    If you have further concern about this isse, feel free to let me know.
    Thanks,
    Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Subscriber Support, contact
    [email protected]
    Simon Wu
    TechNet Community Support

  • Installing and configuring NAC/CAM/CAS/COLLECTOR

    Hi everybody,
    I have been new to this community and I just joined this.
    I need some help regarding CISCO Nac profiler.
    I have 3 cisco nac appliances as below.
    1. 3355
    2. 3315
    3. 3315.
    My question is that when I power on these devices CAS is pre-configured in it but I have to install profiler, CAS, CAM.
    Got 5 hardware total of cisco which are as follows.
    1. CISCO NAC 3355.
    2. CISCO NAC 3315
    3. CISCO NAC 3315.
    4. CISCO Router.
    5. CISCO Switch.
    I have to installed these devices into a network.
    But the confusion is that whom to make profiler server, CAM, CAS and Collector.
    Please help me on this if you have a simple document describing about NAC profiler server, NAC profiler collector, CAS, CAM and how to configure these devices.
    Please help me on this its urgent

    Abuzar,
    Welcome.
    As for your questions, you can install the Profiler, CAM and CAS on any of these devices. Which ever device you make the CAS can act as a collector also. I would suggest making the biggest box you have (3355) the Profiler, and putting CAM/CAS on the 3315s.
    As for a simple document, I'm afraid no such thing exists. NAC installations are complex by nature and you really have to have a very good idea of what you're looking to accomplish before you even touch the first piece of hardware.
    HTH,
    Faisal

  • CAS SSO not working for VPN Group

    Hello,
    I am trying to get SSO working for a CAS/CAM in a inband virtual gateway for VPN users coming in off a ASA5520. There are two VPN groups each with its own group policy and tunnel group. One group uses a Windows IAS Radius Server and the other a token based RADIUS RSA device.
    Users use the AnyConnect client to connect to the ASA where they are dumped into a vlan. SSO works for the group that uses the Winodws radius server. On the CAS the Cisco VPN Auth server has the Unauthenticated Group as the default group, and then I use mapping rules (Framed_IP_Address) to get the different vpn groups into the right roles. This works for the one group, but since SSO is not working on the second group the CAS never gets the chance to assign them into the correct role.
    The only thing I got is this from the ASA:
    AAA Marking RADIUS server billybob in aaa-server group cas_accounting as ACTIVE
    AAA Marking RADIUS server billybob in aaa-server group cas_accounting as FAILED
    I am so close but cant call this done yet....

    Hey Faisel,
    Thanks for the question.
    This is the stange thing. For days Group A (Windows Radius Server) was working and Group B (RSA Radius Server)  would not work. Then for some reason I had to reboot the CAS and BOOM...Group B started working and Group A STOPPED working.
    So on the ASA I now get these:
    AAA Marking RADIUS server cas2-hvn-3515 in aaa-server group cas_accounting2 as ACTIVE
    AAA Marking RADIUS server cas2-hvn-3515 in aaa-server group cas_accounting2 as FAILED
    Where cas_accounting2 is the AAA server group for Group A
    On the ASA I can see that the FW sends a packet to the cas:
    "send pkt cas2-hvn-3515/1813"
    but the FW never gets an answer back from the CAS for Group A whereas with Group B I can see the response from the CAS.
    "rad_vrfy() : response message verified"
    What can I look for in the CAS logs to see where the problem is. I will try and setup a packet capture on the CAS and debug it too.

  • NAC 4.7 "CAS unavailable" temporary role

    I have a VGW, OOB with layer 3 enabled pilot deployment right now. Everything looks fine. However, about
    30% of the time (and its increasing) when I log on using the 4.7 agent, the agent will give me the error that the cas is unavialbe on the network. When I check the CAM, the user can be viewed on the monitoring tab, in-band and placed in the temporary role. (highlighted quarantined)
    When i kick the user, more often than not , the user can log back in and it places him in the oob role that he is assigned to and all works fine.
    core switch -----------cas/cam
         |
    distribution switch
         |
    End user switch---------end user pc
    Any ideas as to why when placed in the temp role transitioning to the authenticated role it would lose contact???? and why would it be placed in the in-band section of the monitoring online users?

    the cn name on the cas was indeed wrong. the IP address was that of the CAM.
    However, that still hasnt fully fixed the problem.
    I took all the checks away from the auth role assigned and it seems to fix the problem.
    Yes, Faisal all the end points are Layer 2, no hops in between. I have a 6509E as the core switch. Each vlan on the switch, apart from the Auth vlans have a SVI.
    ie. on the core switch
    interface GigabitEthernet2/28
    description trusted
    no ip address
    switchport
    switchport trunk native vlan 997
    switchport trunk allowed vlan 5,100,110,120,130,140,150,160,250,298 >>>Access Vlans
    switchport mode trunk
    interface GigabitEthernet2/29
    description untrusted
    no ip address
    switchport
    switchport trunk native vlan 996
    switchport trunk allowed vlan 9,10,20,30,40,50,60,400 >>>> Auth Vlans
    switchport mode trunk
    Example SVI for access VLANS
    interface Vlan110
    description StaffLowerPT
    ip address 1.1.1.1 255.255.255.0
    ip helper-address 1.1.1.4
    ip pim sparse-dense-mode
    ipx network 8
    no SVI's for auth vlans.
    I remember reading somewhere that if no checks are done (ie if the agent is not running any rules on it) then it moves straight from authenitcation (phase1) to authenticated role (phase 3) without ever hitting the temp user role. Could it be that a rule would cause the CAS to become unavailable if it could not remediate?
    I have a AV check rule, and two sus/WSUS rules.

  • What architecture is best for accurate data logging

    Hello,
    I'm desiging some LabVIEW code for a standard DAQ application that is required to plot about 100 variables onto the screen on several different graphs and numeric indicators, as well as perform some simple feedback control and log data into a file once a second.
    I've done this before, and used a simple state machine architecture, where one state takes care of my logging, and I have a timer vi in there that countsdown 1 second and then writes to file.  However, this method makes me miss a second every once in a while.
    I started looking into the producer/consumer architecture as a possible remedy for this.  Because I hear it's good for running two things at different times, so I"ll have my quicker loop handling data acquistion, plots and feedback control, and my slower logging loop, executing once a second.  But I don't see how to implement this
    questions:
    1. is a simple producer consumer the right topology for my application?
    2. when I create my queue do I create it a 100 element array (my data for logging) and then enqueue that in my producer loop from my data acquistion, then pass that to the logging VI.... this seems wrong to me, cause I'm going to be enqueing alot of 100 element arrays... and will be de-queing them slowly at once a second..
    3. How do I trigger my consumer loop to execute every second, should I set it up as a timed while loop? or should something from the producer loop tell it to?
    I'm sure this is a pretty standard thing to do, I'm jus tnot sure how to implment the correct architecture.
    much thanks! 

    Ok, let's try this.  I've put together an example that should do what you need.  I put notes in the block diagram, but essentially it runs data in a while loop at whatever execution rate you specify, then sends the data to another graph (or in your case, a log) every one second.  Basically, I've used a 100ms execution rate for the while loop, then every 10th time (you can change this if you want), it sends a boolean 'true' to a case structure within the while loop that contains the enqueue element.  The graphs that I included show that it does indeed add a new point to the second graph once a second while the first one is adding a point every 100ms.
    The actual wiring of this Vi could be cleaner for sure, but it was a quick and dirty example I put together.  Hopefully this will help you accomplish what you're trying to do.
    Regards,
    Austin S.
    National Instruments
    Academic Field Engineer
    Attachments:
    Enqueue array 2.vi ‏28 KB

  • Why is my iPhone Camera Roll using 10.0 GB but my Photo Library only using 6.3 GB?

    When I look at usage in my iPhone, Camera Roll is using 10.0 GB, but Photo Library is only using 6.3 GB. I do not have Photo Stream enabled. Why the difference?

    In my case, Camera Roll is just the pictures taken on my phone and the remainder of the photos on my phone were synced from my computer via iTunes and are under "Photo Library". If you go to Photos and then tap Albums at the bottom right, it will show which pictures are in the Camera Roll. My Camera Roll usage is much smaller than Photo Library as I only have 2 pictures there since I regularly import them to my computer where I have more control and extra backup capability. I then sync back some that I want to also have on the phone.

  • Transaction log shipping restore with standby failed: log file corrupted

    Restore transaction log failed and I get this error: for only 04 no of database in same SQL server, renaming are working fine.
    Date                     
    9/10/2014 6:09:27 AM
    Log                        
    Job History (LSRestore_DATA_TPSSYS)
    Step ID                
    1
    Server                  
    DATADR
    Job Name                           
    LSRestore_DATA_TPSSYS
    Step Name                        
    Log shipping restore log job step.
    Duration                             
    00:00:03
    Sql Severity        0
    Sql Message ID 0
    Operator Emailed           
    Operator Net sent          
    Operator Paged               
    Retries Attempted         
    0
    Message
    2014-09-10 06:09:30.37  *** Error: Could not apply log backup file '\\10.227.32.27\LsSecondery\TPSSYS\TPSSYS_20140910003724.trn' to secondary database 'TPSSYS'.(Microsoft.SqlServer.Management.LogShipping) ***
    2014-09-10 06:09:30.37  *** Error: An error occurred while processing the log for database 'TPSSYS'. 
    If possible, restore from backup. If a backup is not available, it might be necessary to rebuild the log.
    An error occurred during recovery, preventing the database 'TPSSYS' (13:0) from restarting. Diagnose the recovery errors and fix them, or restore from a known good backup. If errors are not corrected or expected, contact Technical Support.
    RESTORE LOG is terminating abnormally.
    Processed 0 pages for database 'TPSSYS', file 'TPSSYS' on file 1.
    Processed 1 pages for database 'TPSSYS', file 'TPSSYS_log' on file 1.(.Net SqlClient Data Provider) ***
    2014-09-10 06:09:30.37  *** Error: Could not log history/error message.(Microsoft.SqlServer.Management.LogShipping) ***
    2014-09-10 06:09:30.37  *** Error: ExecuteNonQuery requires an open and available Connection. The connection's current state is closed.(System.Data) ***
    2014-09-10 06:09:30.37  Skipping log backup file '\\10.227.32.27\LsSecondery\TPSSYS\TPSSYS_20140910003724.trn' for secondary database 'TPSSYS' because the file could not be verified.
    2014-09-10 06:09:30.37  *** Error: Could not log history/error message.(Microsoft.SqlServer.Management.LogShipping) ***
    2014-09-10 06:09:30.37  *** Error: ExecuteNonQuery requires an open and available Connection. The connection's current state is closed.(System.Data) ***
    2014-09-10 06:09:30.37  *** Error: An error occurred restoring the database access mode.(Microsoft.SqlServer.Management.LogShipping) ***
    2014-09-10 06:09:30.37  *** Error: ExecuteScalar requires an open and available Connection. The connection's current state is closed.(System.Data) ***
    2014-09-10 06:09:30.37  *** Error: Could not log history/error message.(Microsoft.SqlServer.Management.LogShipping) ***
    2014-09-10 06:09:30.37  *** Error: ExecuteNonQuery requires an open and available Connection. The connection's current state is closed.(System.Data) ***
    2014-09-10 06:09:30.37  *** Error: An error occurred restoring the database access mode.(Microsoft.SqlServer.Management.LogShipping) ***
    2014-09-10 06:09:30.37  *** Error: ExecuteScalar requires an open and available Connection. The connection's current state is closed.(System.Data) ***
    2014-09-10 06:09:30.37  *** Error: Could not log history/error message.(Microsoft.SqlServer.Management.LogShipping) ***
    2014-09-10 06:09:30.37  *** Error: ExecuteNonQuery requires an open and available Connection. The connection's current state is closed.(System.Data) ***
    2014-09-10 06:09:30.37  Deleting old log backup files. Primary Database: 'TPSSYS'
    2014-09-10 06:09:30.37  *** Error: Could not log history/error message.(Microsoft.SqlServer.Management.LogShipping) ***
    2014-09-10 06:09:30.37  *** Error: ExecuteNonQuery requires an open and available Connection. The connection's current state is closed.(System.Data) ***
    2014-09-10 06:09:30.37  The restore operation completed with errors. Secondary ID: 'dd25135a-24dd-4642-83d2-424f29e9e04c'
    2014-09-10 06:09:30.37  *** Error: Could not log history/error message.(Microsoft.SqlServer.Management.LogShipping) ***
    2014-09-10 06:09:30.37  *** Error: ExecuteNonQuery requires an open and available Connection. The connection's current state is closed.(System.Data) ***
    2014-09-10 06:09:30.37  *** Error: Could not cleanup history.(Microsoft.SqlServer.Management.LogShipping) ***
    2014-09-10 06:09:30.37  *** Error: ExecuteNonQuery requires an open and available Connection. The connection's current state is closed.(System.Data) ***
    2014-09-10 06:09:30.38  ----- END OF TRANSACTION LOG RESTORE    
    Exit Status: 1 (Error)

    I Have restore the database to new server and check with new log shipping but its give this same error again, If it is network issue i believe issue need to occur on every database in  that server with log shipping configuration
    error :
    Message
    2014-09-12 10:50:03.18    *** Error: Could not apply log backup file 'E:\LsSecondery\EAPDAT\EAPDAT_20140912051511.trn' to secondary database 'EAPDAT'.(Microsoft.SqlServer.Management.LogShipping) ***
    2014-09-12 10:50:03.18    *** Error: An error occurred while processing the log for database 'EAPDAT'.  If possible, restore from backup. If a backup is not available, it might be necessary to rebuild the log.
    An error occurred during recovery, preventing the database 'EAPDAT' (8:0) from restarting. Diagnose the recovery errors and fix them, or restore from a known good backup. If errors are not corrected or expected, contact Technical Support.
    RESTORE LOG is terminating abnormally.
    can this happened due to data base or log file corruption, if so how can i check on that to verify the issue
    Its not necessary if the issue is with network it would happen every day IMO it basically happens when load on network is high and you transfer log file which is big in size.
    As per message database engine was not able to restore log backup and said that you must rebuild log because it did not find out log to be consistent. From here it seems log corruption.
    Is it the same log file you restored ? if that is the case since log file was corrupt it would ofcourse give error on wehatever server you restore.
    Can you try creating logshipping on new server by taking fresh full and log backup and see if you get issue there as well. I would also say you to raise case with Microsoft and let them tell what is root cause to this problem
    Please mark this reply as answer if it solved your issue or vote as helpful if it helped so that other forum members can benefit from it
    My Technet Articles

  • How do I log a bug in Crystal Reports 2008 ?

    I cant find any links at all.
    Can anyone help please?
    Thanks
    Richard

    Hi,
    Below are the answers to your queries:
    Login to SAP and Business Objects portal
    For getting the Login Id and Password fro SAP and BusinessObjects Portal you have to contact to our Customer Interaction Center (CIC)
    Below are the contact number of CIC:
    +49-6227-744969 (available worldwide)
    Contact information for Business Objects # new support telephone number available 24 hours 7 days a week
    We can not make our involvement because it involves lots of documentation and we are not well versed with that so CIC is the right place to deal with this and they will help you further for getting your credentials for SAP and CO portal.
    Or
    If you do not have SAP credentials then :
    You will get the further details regarding the creation of new case or logging for a bug from CIC (customer Service), for this you need to create a new incidetn with the BusinessObjects SAP support.
    CIC (Customer Interaction Center) Numbers
    You can use Customer Interaction Center to submit support requests and service requests for problem messages and remote service postings.
    Use the Customer Message Wizard to enter problem messages on SAP Service Marketplace. If you do not have online access, the relevant Support Center can create a message on your behalf.
    Call the following number:
    +49-6227-744969 (available worldwide)
    Business Objects customers:
    Contact information for Business Objects # new support telephone numbers, all numbers available 24 hours 7 days a week
    More information:
    - Business Objects Knowledgebase Central
    https://www.sdn.sap.com/irj/sdn/advancedsearch?cat=sdn_ossnotes&query=&adv=true
    It will ask you for a guest account and you can create it there itself.
    - Software downloads (Crystal Designer fix packs)
    http://resources.businessobjects.com/support/additional_downloads/
    - Documentation on Crystal Designer XI and Developer
    you can get the documentations on CR and BO on below link:
    Http: //help.sap.com/
    Click on tab BusinessObjects and then you can give the search criteria for the documents.
    Useful links related to Crystal Reports Designer and Java API
    https://boc.sdn.sap.com/developer/library
    Hope this helps.
    Regards,
    Deepti Bajpai

Maybe you are looking for

  • How do I get an edited pdf out of Adobe reader and into my dropbox so I can access it later?

    I have an ipad mini that I use to read journal articles.  I open them in Adobe Reader and use the tool to edit them (highlight, underline, comment, etc).  Once Ihave finished editing them how do I export them back to drop dropbox so that I can use th

  • Leopard, can it run without core image?

    well i got an ibook g4 from my friend and i bought leopard disk new from ebay it was boxed and all well anyways i want to install leopard on my ibook which is running 10.4.11 the specs are 1.7 ghz 786 ram 60 gb hard drive my question is that i think

  • Working between different versions of FCP

    Hi folks, I've seen some posts where this is addressed a bit, but not for the versions of FCP that I'm dealing with so I wanted to see if anyone had any insight. I have one of the final generation PowerPC G5s and I got FCP 5.0 (as part of FCS) when I

  • Error when create Infotype 0007-Planned Working Time of Personnel data

    Hi Experts, I'm creating Infotype 0007-Planned Working Time for Personnel data then having a error below.( I created Work schedule rule and Gennerated it). Feature structure cannot be recognized, please see documentation Message no. P0568 Diagnosis C

  • Can someone help with a div that pops up when you hover over a button?

    I made a div that pops up (stacked on the rest of the page) when you hover over a button (gigs). It works in the safari preview but when I test it online it doesn't. It's above the logo instead of blocking it and on the left site instead of the right