Configuring 802.11 wireless security in WRT110
I wish to implement 802.11 wireless security settings in my router WRT110. I am unble to see how it can be done . Any suggestions ?
Thanks
Shrikant
Gain access to your admin pages in the router and select the wireless tab.
Then go here.
Similar Messages
-
Wireless security with zero client configuration
Dears,
i have a client that needs to have 802.1x based wireless security with zero configuration at his smart-phone devices , just needs to select the ssid prompt for authentication ,login by his domain account and that's it .
is it possible ?You can find examples on the Internet depending on what Radius server your using.
Here are some:
http://www.labminutes.com/sec0095_acs_wireless_dot1x_peap_eap_tls_machine_authentication_2
http://networklessons.com/wireless/peap-and-eap-tls-on-server-2008-and-cisco-wlc/
Thanks,
Scott
Help out other by using the rating system and marking answered questions as "Answered" -
ThinkPad + AC -- can't configure 802.1x
Though I was able to configure WXP-Pro AC for a 802.1x profile, AC for Win 7 / 64 ThinkPad W700 does NOT allow me to do so (though I can for 802.11 b/g).
After I have selected WIRELESS SECURITY TYPE of USE 802.1X OR OTHER SECURITY and press the PROPERTIES button, I receive the popup:
ERROR: WIRELESS PROFILE NOT AVAILABLE
FYI, WXP AC does NOT allow for the export of the the 802.1x profile (but does allow 802.11 b/g profiles).
I have uninstalled and reinstalled the AC package marking sure that profiles were also removed. No difference.
I did all of that w/oi the range of the 802.1x access point.
This is extremely frustrating.
/PeteI think I found a bypass: create a non-802.1x profile e.g., 802.11 b/g; then edit that profile to make it into an 802.1x.
/Pete -
Need help configuring Cisco/Linksys wireless router to extend wi-fi signal to living room
My U-verse wireless gateway is in the back of our house. We live in an old 1920's home with solid wood walls. For our macbooks, we get a pretty decent signal, but my wife's iPad 2 get's poor wi-fi speeds. I bought a Cisco/Linksys WRT160N wireless N broadband router. I have a wired connection in my living room (going to a 4 port switch) then connected to my DVR. I tried hooking up the new router but ended up getting no signal on the iPad. In fact, it caused other issues. I ended up disconnecting it and re-booting my gateway. All came back fine. This wireless router replaces a similar unit that went out in after a power failure, so I know this can be done, but I forget exactly how I confiured the old one. I would like it to "extend" my signal to the living room, but I am also willing to create a new network (different SSID). Do I need to turn of DHCP? Are there any web sites that can assist me in configuring the router? I wish I didn't have to deal with this. The signal from the RG is great when you are in the back room (20+ down). But my wife gets about 3 down on her iPad in the living room. Thanks in advance.
Hi ,
I was doing some research on how this can be done. It does not appear there is an option in the Cisco router to set it up as an access point, but there are several options you can do to extend your network.
The first thing you can do is just set it up as a router behind router setup, and you will just have two separate networks. Make sure the DHCP pool does not conflict with the U-verse's gateway of 192.168.1.x.
The second thing you can do is connect the Ethernet cable to one of the LAN ports on your Cisco router instead of using the internet port. This should make it work like a smart switch.
With both setups, you want to probably change the SSID, network key, and wireless security settings to the same thing for wireless roaming abilities. That way, anyone that configures their wireless connection will be connected to both networks. Just make sure the wireless channels are not the same, and I would suggest having them at least 5 apart.
Hope this helps.
-ATTU-verseCare -
ACS 5.3 Configuring 802.1x
Trying to configure 802.1x with ACS 5.3, have some general doubts about how to make it, this is what I got for the moment:
ACS 5.3 = 192.168.240.28
AD = 192.168.251.97
Switch = 192.168.240.171
IOS device config
Already configured and running Device Administration using Tacacs, mising with Radius aaa commands:
aaa group server tacacs+ TACACS_PLUS
server 192.168.240.28
aaa group server radius RADIUS_1x
server 192.168.240.28 auth-port 1812 acct-port 1813
aaa authentication login default group TACACS_PLUS
aaa authentication login no_tacacs enable local
aaa authentication enable default group RADIUS_1x
aaa authentication dot1x default group RADIUS_1x
aaa authorization config-commands
aaa authorization exec no_tacacs local
aaa authorization commands 15 TACACS_PLUS group tacacs+
aaa authorization network default group RADIUS_1x
aaa authorization auth-proxy default group RADIUS_1x
aaa accounting send stop-record authentication failure
aaa accounting update newinfo
aaa accounting dot1x default start-stop group RADIUS_1x
aaa accounting exec default start-stop group TACACS_PLUS
aaa accounting network default start-stop group TACACS_PLUS
aaa accounting connection default start-stop group TACACS_PLUS
aaa accounting system default start-stop group RADIUS_1x
tacacs-server host 192.168.240.28 port 49 key 7 104D0617040717180F05
tacacs-server directed-request
radius-server attribute 8 include-in-access-req
radius-server host 192.168.240.28 auth-port 1812 acct-port 1813
radius-server timeout 20
radius-server key 7 094F410718151201080D
radius-server vsa send authentication
dot1x system-auth-control
errdisable detect cause security-violation shutdown vlan
errdisable recovery cause security-violation
interface GigabitEthernet0/24
switchport mode access
switchport voice vlan 7
dot1x pae authenticator
dot1x port-control auto
dot1x host-mode multi-host
dot1x timeout quiet-period 15
spanning-tree portfast
spanning-tree bpduguard enable
ACS 5.3 Configuration until now
I have a document on how to configure this on ACS 4.2, but I have some problems trying to configure on ACS 5.3.
I'll appreciate a lot any ideas that could help me on this.
Regards,
Juan CarlosOk Carlos, I make it simple, just AD as condition and authorization profile, I tested with compliant client, and still receiving timeout, and Network Access Authorization still in 0, here is the debug:
001250: Jan 19 18:40:58.028 GDL: AAA/BIND(0000002F): Bind i/f
001251: Jan 19 18:40:58.237 GDL: %AUTHMGR-5-START: Starting 'dot1x' for client (f04d.a2a2.a028) on Interface Gi0/24 AuditSessionID C0A8F0AB0000001101B6C743
001252: Jan 19 18:41:00.007 GDL: %LINK-3-UPDOWN: Interface GigabitEthernet0/24, changed state to up
001253: Jan 19 18:41:01.014 GDL: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/24, changed state to up
001254: Jan 19 18:41:08.547 GDL: AAA/AUTHEN/8021X (0000002F): Pick method list 'default'
001255: Jan 19 18:41:08.547 GDL: RADIUS/ENCODE(0000002F):Orig. component type = Dot1X
001256: Jan 19 18:41:08.547 GDL: RADIUS(0000002F): Config NAS IP: 0.0.0.0
001257: Jan 19 18:41:08.547 GDL: RADIUS(0000002F): Config NAS IPv6: ::
001258: Jan 19 18:41:08.555 GDL: RADIUS/ENCODE(0000002F): acct_session_id: 37
001259: Jan 19 18:41:08.555 GDL: RADIUS(0000002F): sending
001260: Jan 19 18:41:08.555 GDL: RADIUS/ENCODE: Best Local IP-Address 192.168.240.171 for Radius-Server 192.168.240.28
001261: Jan 19 18:41:08.555 GDL: RADIUS(0000002F): Send Access-Request to 192.168.240.28:1812 id 1645/27, len 246
001262: Jan 19 18:41:08.555 GDL: RADIUS: authenticator 27 15 50 22 ED AB FC 34 - F1 24 56 87 30 6F 7D F9
001263: Jan 19 18:41:08.555 GDL: RADIUS: User-Name [1] 18 "juancarlos.arias"
001264: Jan 19 18:41:08.555 GDL: RADIUS: Service-Type [6] 6 Framed [2]
001265: Jan 19 18:41:08.555 GDL: RADIUS: Vendor, Cisco [26] 27
001266: Jan 19 18:41:08.555 GDL: RADIUS: Cisco AVpair [1] 21 "service-type=Framed"
001267: Jan 19 18:41:08.555 GDL: RADIUS: Framed-MTU [12] 6 1500
001268: Jan 19 18:41:08.555 GDL: RADIUS: Called-Station-Id [30] 19 "00-1C-0E-08-69-98"
001269: Jan 19 18:41:08.555 GDL: RADIUS: Calling-Station-Id [31] 19 "F0-4D-A2-A2-A0-28"
001270: Jan 19 18:41:08.555 GDL: RADIUS: EAP-Message [79] 23
001271: Jan 19 18:41:08.555 GDL: RADIUS: 02 01 00 15 01 6A 75 61 6E 63 61 72 6C 6F 73 2E 61 72 69 61 73 [ juancarlos.arias]
001272: Jan 19 18:41:08.555 GDL: RADIUS: Message-Authenticato[80] 18
001273: Jan 19 18:41:08.555 GDL: RADIUS: E5 92 90 F9 39 F2 EA A9 E4 B2 C9 02 12 9D EA B0 [ 9]
001274: Jan 19 18:41:08.555 GDL: RADIUS: EAP-Key-Name [102] 2 *
001275: Jan 19 18:41:08.555 GDL: RADIUS: Vendor, Cisco [26] 49
001276: Jan 19 18:41:08.555 GDL: RADIUS: Cisco AVpair [1] 43 "audit-session-id=C0A8F0AB0000001101B6C743"
001277: Jan 19 18:41:08.555 GDL: RADIUS: NAS-Port-Type [61] 6 Ethernet [15]
001278: Jan 19 18:41:08.555 GDL: RADIUS: NAS-Port [5] 6 50024
001279: Jan 19 18:41:08.555 GDL: RADIUS: NAS-Port-Id [87] 21 "GigabitEthernet0/24"
001280: Jan 19 18:41:08.555 GDL: RADIUS: NAS-IP-Address [4] 6 192.168.240.171
001281: Jan 19 18:41:08.555 GDL: RADIUS(0000002F): Sending a IPv4 Radius Packet
001282: Jan 19 18:41:08.555 GDL: RADIUS(0000002F): Started 20 sec timeout
001283: Jan 19 18:41:26.507 GDL: RADIUS(0000002F): Request timed out
001284: Jan 19 18:41:26.507 GDL: RADIUS: Retransmit to (192.168.240.28:1812,1813) for id 1645/27
001285: Jan 19 18:41:26.507 GDL: RADIUS(0000002F): Started 20 sec timeout
Complete Report:
aaa group server tacacs+ TACACS_PLUS
server 192.168.240.28
aaa group server radius RADIUS_1x
server 192.168.240.28 auth-port 1812 acct-port 1813
aaa authentication login default group TACACS_PLUS
aaa authentication login no_tacacs enable local
aaa authentication enable default group RADIUS_1x
aaa authentication dot1x default group RADIUS_1x
aaa authorization config-commands
aaa authorization exec no_tacacs local
aaa authorization commands 15 TACACS_PLUS group tacacs+
aaa authorization network default group RADIUS_1x
aaa authorization auth-proxy default group RADIUS_1x
aaa accounting send stop-record authentication failure
aaa accounting update newinfo
aaa accounting dot1x default start-stop group RADIUS_1x
aaa accounting exec default start-stop group TACACS_PLUS
aaa accounting network default start-stop group TACACS_PLUS
aaa accounting connection default start-stop group TACACS_PLUS
aaa accounting system default start-stop group RADIUS_1x
dot1x system-auth-control
interface GigabitEthernet0/24
switchport mode access
switchport voice vlan 7
authentication port-control auto
authentication violation protect
dot1x pae authenticator
dot1x timeout quiet-period 15
spanning-tree portfast
spanning-tree bpduguard enable
tacacs-server host 192.168.240.28 key 7 104D0617040717180F05
tacacs-server directed-request
radius-server attribute 8 include-in-access-req
radius-server host 192.168.240.28 auth-port 1812 acct-port 1813 key 7 15110402053A2E372B32
radius-server timeout 20
radius-server key 7 0110090A5A1B031C224D
radius-server vsa send authentication
The compliant client should have access to Vlan 60. -
Connecting laptop to WRT350N and wireless security
Hi, I have the following problem. I need to connect a laptop to WRT350N router. Everything works OK if I do NOT use wireless security. If I use PSK (WAP) then at the Preferred Network screen I set the settings to WAP/PSK and enter the shared key. However, this setting is overruled again and again. I can not save it. If I select my network from the networklist, many times the laptop doesn't even ask for the shared key. And if it does then it acts as if I have installed WEP on the router (which isn't the case!). I use Windows XP Home. Does anyone know what the problem is and how to solve it? Many thank, JFX
I have a second laptop connected to the router which works ok with both the non-secured and the WAP/PSK-secured environment. The one that is not working is a Sony Vaio with LAN-express AS 802.111g card for which I have the latest driver installed. For the WRT350N also the latest firmware installed (WRT350N v2 firmware 2.016) JFX
-
Facetime works with wireless security disabled, dropped otherwise
On a D-Link DIR-615 wireless router, configured as an access point.
Security mode: WPA-Personal
WPA mode: WPA2 Only
Cipher type:AES
I tried inserting a 1.3 Mb file, to no avail.
I have an iPad mini with OS 8.1.2
Please let me know if more information is req'd.
To have facetime with my son and grandchildren I have change the security mode to 'none' during the session! Really? If I do not, we have about a one minute session that is dropped.
Any ideas will be explored!
Thanks in advance,
Grandpa PeteThree answers:
1-The router is an access point as it is a 'slave' to the wired router. The wired router assigns the ip addresses and is connected to the Comcast-Arris modem.
2-Security mode options: None, WEP, WPA-Personal, WPA-Enterprise and
the password options are Auto (WPA or WPA2), WPA2 Only, WPA only. I chose the WPA2 only as some other place I'd seen something about a problem with the TKIP cipher. I'm a novice, though. What you're suggesting makes sense and I'll try to go to WPA only.
3-I tried inserting a file showing the wireless router setup page, via a screen shot. I can't even insert a half Mb file, for whatever reason. The error page says to keep it to less than 2 Mb.
-As above, the wireless device must be an access point. It's in the living room, where wireless devices are mostly used. The wired router is in one corner of the house, with the main winxp pc.
-I can't make the wireless router security mode WPA2, so I used WPA for everything and see if it works for the next facetime session. All the other wireless devices are now functional.
-I'm not understanding the third option. Is that for my tower, each wireless device?
(No, winxp is not a joke. I use it as my main pc os and have no need to replace it. I'm posting my problem in this forum because we now have an apple product, the mini iPad, and I'd sure like to use it for the facetime with the wireless security setting on during the session. So far, it's REQUIRED to turn the wireless security off to keep the facetime session longer than about 60 seconds.)
Thank you very much for your time! I really appreciate it. As a novice, routers are still mysterious to me, what with all the settings inside of them.
Grandpa Pete
btw: my question is not solved. Not at all! I still believe I have an unsolved question. I don't know why the green box and checkmarks exist! Did I miss something? -
Hi,
I've some experience on WLAN Networks, but I would like to have your opinion around Wireless Security implemenations.
We have several sites where we have some Cisco Access points running IOS. We are currently doing WEP 128b, with Mac-Authentication against a central ACS Server.
But having fixed WEP, and mac registrations is not very practical.
Do you know about any method to have authentication against Active Directory (passing through the Cisco ACS), and Dynamic WEP Keys ?
Any recommendation is welcome.
Of course with this we would like to bring up our level of security.
Thanks a lot for all,
Best Regards,
JorgeAn ACS server can be used to do authentication based on user logon to AD.
So it would only require a single login if your wireless adapter supports it.
You would just need to enable the wireless vlan to do 802.1x (EAP-FAST) authentication.
This document would answer some of your questions.
http://www.cisco.com/en/US/netsol/ns339/ns395/ns176/ns178/netqa09186a00802030dc.html -
Wireless Security & Authentication methods
Hi,
I've some experience on WLAN Networks, but I would like to have your opinion around Wireless Security implemenations.
We have several sites where we have some Cisco Access points running IOS. We are currently doing WEP 128b, with Mac-Authentication against a central ACS Server.
But having fixed WEP, and mac registrations is not very practical.
Do you know about any method to have authentication against Active Directory (passing through the Cisco ACS), and Dynamic WEP Keys ?
Any recommendation is welcome.
Of course with this we would like to bring up our level of security.
Thanks a lot for all,
Best Regards,
Jorge802.1x/EAP authentication is the most popular authentication method in wireless. The following documents explain how to configure EAP authentication.
http://www.cisco.com/en/US/products/hw/wireless/ps4570/products_configuration_example09186a00801bd035.shtml
http://www.cisco.com/en/US/products/hw/wireless/ps4570/products_configuration_example09186a00801c0912.shtml
http://www.cisco.com/en/US/products/sw/secursw/ps2086/products_configuration_example09186a00805e7a13.shtml -
1552 in P-MP acting as 802.11a Wireless Bridge with single antenna SISO
Can you configure three Cisco 1552EUs to act as a RAP and two MAPs in a bridge only Point to Multipoint configuration.
I'd like to disable two of the 5Ghz antenna ports and use just a single TX/RX port and a single directional antenna for each AP.
Does this simply reduce the system gain because you lose the MRC MIMO advantage / gain of either 1.7 or 4.7db (depending on qty of spatial streams).
Also, are the 1552EU's backward compatible with the Cisco 1310's in the configuration mentioned above.
Thanks for any comments.The transfer speeds sound about right. The "54Mbps" is a signaling rate, not a throughput.
To make 802.11 wireless "reliable" (comparable to a wired network) the data is, in effect, sent twice and staggered such that a glitch usually doesn't get both.
In terms of throughput of your data, a strong signal with good signal quality, using IP, unencrypted should run ~22-26Mbps (some variability for noise/interference, mixed frame sizes, TCP ACK times, application responses, etc).
So, at ~24 Mbps (megabits per second) you're looking at ~4 megabytes per second versus 100Mbps/12.5mBps as a probable max rate.
Given that, a transfer that takes approximately one minute on a wired network under typical conditions ... having it take four-to-five minutes on a typical wireless system is about right.
For power settings, you can adjust the power by monitoring the RSSI values on the receiving system. If I can find the docs on Cisco's main site I'll post 'em up later (gotta run ...), but if the mechanical install is good, then it'll just be a little keyboard work.
Good Luck
Scott -
Error Message when trying to set up wireless security WRT160N
I recieved the following error message when I tried to set up my wireless security;"Exception has been thrown by the target of an invocation" What does this mean and how do I fix it?
If you are using LELA delete it from your computer. It is not needed. Connect viw your wired computer to 192.168.1.1 username blank password admin (or whatever you made it) and configure your router manually.
-
E4200 Wireless Security Question
I have an E4200 router in my home but the signal does not reach a room where I want to use a laptop. I have an older Viewsonic VS10407 that worked well with my old Linksys WRT54GS router. The Viewsonic is capable of WEP, WPA Pre-Shared Key and WPR Radius. I am using WPA2/WPA Mixed Mode on the E4200.
I want to use the Viewsonic on the same network and I also want the security scheme to work properly. How do I get the Viewsonic onto the E4200 network? How should I secure the Viewsonic signal? Should I use the same password?You can configure the E4200 with WPA or WEP .
Open the setup page of your linksys router and configure the wireless security settings .
If you want to use WPA you can use the same password .
If you want to use WEP then the password should be from 0-9 or A-F . -
Exporting wifi configuration including preferred wireless networks.
Hello experts,
I am new bee in Mac world therefore I am asking sample question. I am using Macbook Pro 10.6.4.
If I export Airport network configuration from Network preference then It exports only 802.1x configuration.
My questions are:
1. How to export network configuration including preferred wireless networks list like networksetup -listpreferredwirelessnetworks <device name> command?
2. How to write .networkConnect file which should have preferred wireless networks list?
Regards,
Anand ChoubeyWell , since this issue got seriously on my nervers and took me a day trying things out with no luck, i studied a bit of shell programming and wrote a script to configure my net on boot, copied it with the correct permissions in /etc/rc.d/ , added it in my daemons at rc.conf, and there you go! Net on boot finally : -).
#!/bin/sh
echo "sleeping to ensure network is up"
/bin/sleep 2
until [ "$(ifconfig wlan0 | grep -c "UP")" != "0" ]
do
echo "waiting for wlan0 interface to get UP"
/bin/sleep 2
done
echo "checking if wlan0 is associated "
while [ "$(iwconfig wlan0 | grep -c "Access Point: Not-Associated")" != "0" ]
do
$(iwconfig wlan0 essid Virus_Home)
echo "sleeping for 20 seconds to give hardware some time to associate "
/bin/sleep 20
done
exit 0
However i dont concider my solution elegant , so if anyone can figure out why net doesnt get configured correctly on boot without my script i would love to know as well.
enjoy,
IMG -
Wireless Security - DOES NOT WORK?
My problem: AEBS works fine UNLESS I use any Wireless Security. If I set security to WEP, WPA/WPA2 Personal, or WPA2 Personal then the following occurs:
-- the AEBS DOES NOT appear as a base station in AirPort Utility
-- the Wireless Network DOES appear as an available Wireless Connection in the Menu Bar
-- I CAN connect to the wireless network but no internet connection is available
-- I CANNOT alter settings of AEBS unless I connect through ethernet (or reset AEBS to factory default)
-- if I set Wireless Security to NONE then everything works fine
Here's my setup:
Airport Extreme Base Station:
-- Wireless Mode: Create a Wireless Network
-- Radio Mode: 802.11n (802.11 b/g compatible)
-- Channel: Automatic
-- Connection Sharing: Off (Bridge Mode) [I am connecting through a pre-existing router - only need the AEBS for 802.11n and disk sharing]
-- IPv6: Link-local only
MacBook Pro Core 2 Duo
-- AirPort Extreme Update 2007-001 installed
-- 802.11n enabler installed
Questions:
1. Any ideas on how to fix?
2. If this is a known bug - any idea how long until it is fixed? Am I expected to run without security until then (this is directed to Apple)?
3. Will a fix likely be via firmware update?
As a recent "switcher" so far I am majorly disappointed in this product.
Thanks for any insight.
MacBook Pro Mac OS X (10.4.8)Sorry, I forgot to mention something else to try. Open Keychain Access, /Utilities/Keychain Access/, and delete the keychain for the wireless network. Then open System Preferences>Network and remove the wireless network from the Preferred networks list. Now try connecting again, you should be prompted for the wireless network password. Also, make sure that you are using the correct number of characters in your passwords. WEP doesn't seem to be picky about how many characters you use but WPA/WPA2 passwords must be between 8 and 63 ASCII characters.
Other than what I've mentioned above, sounds like you are setting everything up correctly and seeing as you have two Macs both exhibiting the same behaviour then I would definitely lay the blame squarely on the base station. If you're willing, the only other suggestion I have is to reset the base station to factory defaults, hold the reset button down for at least 5 seconds, and start again. Other than that, I would return it for exchange, if your willing to give another base station another chance.
Just so you know, my base station was set up in a matter of minutes and has worked flawlessly. So, they aren't all that bad. -
WRT54G keeps resetting the SSID name and wireless security
Over the past few weeks, my WRT54G (which I've had for about 18 months) has been resetting itself by changing the SSID name back to the default "linksys" and losing wireless security. I have updated the firmware.
Any ideas of what is going on here?
Thanks.After a firmware upgrade, you must reset the router to factory defaults, then setup the router again from scratch. If you saved a router configuration file, DO NOT use it.
Routers seem to be sensitive to electrical surges and noise. This can cause them to loose their settings. You should keep your router plugged into a high quality surge suppressor with EMI/RFI filtering, such as the Belkin SurgeMaster Gold Series. A surge suppressor alone is not enough because surge suppression does not start until the voltage exceeds 330 volts. Alternatively, most UPS devices have both surge suppression and EMI/RFI filtering.
If this does not prevent your router from "forgetting" its settings, then the router is malfunctioning, and it should be replaced. A router that forgets its settings is not secure.
Maybe you are looking for
-
MacBook Pro doesn't recognize password
My daughter's MacBookPro does not recognize the password when connecting to our home WiFi. Two iphones and 2 MacAirs connect without issues. Hardware is Netgear N150 router and an Apple Airport. Have been using this set up for about 3-4 years and h
-
why are certain albums like ones from Tool or Ozzy era black sabbath not available in the U.S. store
-
List of SQL tables and attributes used in SSRS reports
Hi, I have around 450-500 reports deployed in SSRS reporting server. All these reports are built on SQL from multiple databases, and these databases are having unnecessary tables and attributes. My requirement is to clean the unused tables and attrib
-
Hi all, I have a request having columns C1,C2 C1 is a Date Column C2 is a measure Now i want to apply a filter on C1 saying C1=Todays date(sysdate) Can it be done Thanks
-
Create pfile from spfile when oracle in idle mode
Create pfile from spfile when oracle in idle mode from where it creates pfile?? note:-oracle is in idle stage..