Connecting two distant servers via a common WAN Internet connection.

Hi all,
I have two servers located in two different countries. For example Server A (Windows 2003 with Active directory) is located in Singapore. Another Server B (also Windows 2003 Server with Active Directory) is located in Kuala Lumpur. Both computers are connected to Internet via local ISP (WAN connection with dynamic IP) to respective countries.  There is few local users at each places which are connected to local servers at both places with LAN.
I would like to connect these two servers togather via WAN (Internet- may be tunnelling, VPN, I don't know much what are other technologies) My objective is to connect both Server A and Server B so that I can keep track of active directory information, user management and authentication. Please let me know how can I achieve that? What are needed and what configuration and addition device, server needed. Please give me simple, detailed cost effective methods.
Thanks.

First you want to get static IP's and then you can setup an IPSEC tunnel or site to site VPN.  Then you will want to creat a trust between the 2 domains if they are in different forests.  Then you can add your user account to a universal group (forest functional level must be at Server 2003 level) for enterprise management.
James Goodwin - Senior Technical Instructor & Network Infrastructure Expert
MCT, MCP+ I, MCTS:Server 2008, MCTS: SCCM, MCTS:Vista
MCSA:S, MCSE:S, MCITP:SA, MCITP:EA , MCITP:ES, CCNA,
CCSI(# 32018),C|EH, C|HFI, C|EI, HDSA, A+, Network+, i-Net+, Server+, Security+
My Blog:http://thattrainerguy.blogspot.com/

Similar Messages

  • Unable to join two fact tables via one common dimension in RPD(Repository)

    I have created two fact tables F1 & F2 and one dimension D.
    F1 is joined to D and F2 is also joined to D in Physical layer as well as in BMM layer.
    I created one report in OBI Answers using these three tables.It Showed me the following error.
    **Error Details**
    **Error Codes: OPR4ONWY:U9IM8TAC:OI2DL65P**
    **State: HY000. Code: 10058. [NQODBC] [SQL_STATE: HY000] [nQSError: 10058] A general error has occurred. [nQSError: 15018] Incorrectly defined logical table source (for fact table dfghdfh) does not contain mapping for [Dashboard_Fact.Period_Sgt_Key]. (HY000)**
    **SQL Issued: SELECT dfghdfh.Period_Sgt_Key saw_0, "Period Dim".Period_Sgt_Key saw_1, Dashboard_Fact.Period_Sgt_Key saw_2 FROM service_delivery ORDER BY saw_0, saw_1, saw_2**
    How to cope up with the issue or can anyone tell me the alternate workaround for this?

    That is what i have tried.
    I have made a logical table TEST and dragged two fact tables f1 & f2 in source.
    Now when i drag different columns from different fact tables(that are in TEST logical table) in report, it gives an error and not making any joins that you are mentioning.
    ERROR MESSAGE:--
    State: HY000. Code: 10058. [NQODBC] [SQL_STATE: HY000] [nQSError: 10058] A general error has occurred. [nQSError: 15018] Incorrectly defined logical table source (for fact table Test) does not contain mapping for [Test.SurveyName_Id, Test.SurveyHead_Id, Test.Respondent_Id, Test.SDBusiness_Area_Id, Test.Period_Sgt_Key, Test.OBS_Id, Test.VOCBusiness_Area_Id, Test.Question_Sgt_Key]. (HY000)
    The columns mentioned in the error message are all from test logical table..some are from F1 & some from F2.

  • Users can no longer connect to servers via their IP addresses.

    1) Up until March users could connect to two file servers (10.4 and 10.6) by IP address.
    2) Now, only computers that are not managed by Casper can connect.  All the Windows machines and a couple of Macs (not managed) can connect to these Servers.  One of the Macs is filtered by iBoss, but mine bypasses the filter.  We can both connect.
    3) On the day this happened, I updated the iBoss firmware and sent out the script below which should not be related.  The commonality seems to have something to do with computers managed by Casper (JAMF).
    4) Any suggestions?  Thanks for your help.
    sudo /System/Library/CoreServices/RemoteManagement/ARDAgent.app/Contents/Resources/k ickstart -configure -allowAccessFor -specifiedUsers 
    sudo /System/Library/CoreServices/RemoteManagement/ARDAgent.app/Contents/Resources/k ickstart -configure -users ladmin -access -on -privs -all

    Check your firewall logs find out if it's at your end that's blocking access
    Log into one of the blocked machines with your login that's not blocked to find out if it's a user level or machine block
    Read the iboss firmware release notes
    See if there is any changes that effect your current setup
    Check firewall rules make sure the effected machines, vlans etc have access to the servers
    See if Casper still access the effected machines

  • Why connect two dhcp servers with different IP addresses?

    
    so for an assignment at college we had to configure a router connected to two switches which both had a server connected to them.
    the computers were connected via dhcp to either server however each side had a different IP. we have now been asked to justify as to why two servers were used with different IP which I cannot quite produce a business orientated answer.
    I can understand connecting two dchp servers on same IP to increase fault tolerance but I do not understand using two separate IP addresses.

    Hi,
    Does “using two separate IP addresses“ mean 2 subnets which are connected by router?
    If you have separately configured 2 DHCP servers on the 2 subnets, and want 1 of the 2 DHCP servers to provide fault tolerance for the other. You need to use an RFC 1542–compliant router, or DHCP relay agent, in order to forward DHCP broadcast traffic.
    If there is any misunderstanding about your question, please correct. 
    Best Regards,           
    Eve Wang                                                                             
    Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Support, contact [email protected]

  • One Internet Connection, Two different LANS & Two DHCP Servers, How to share internet without conflict?

    I have two LANs and one internet connection.  Each LAN has its own DHCP server.  I want to be able to have internet access on BOTH LANs but don't
    want to have a DHCP conflict between them.
    The main LAN is a Time Warner Cable modem and a Cisco router running DHCP going to a 48 port switch that has all the workstations connected.  
    The second is a stand alone Windows 2012 WDS server which is ONLY use to image computers via WDS. The server is running DHCP as well and is connected to another 48 port switch where I connect systems that need to be imaged.
     I want to be able to provide internet access on LAN with the Windows 2012 WDS server so after I image the computers I can download drivers direct from the internet.   The Windows WDS server has two NIC cards but I am only using one.   Is
    it possible to configure this so the internet from the main LAN is shared to the WDS server and its clients without causing problems with the two DHCP servers?   Here is a basic network diagram.   Thanks!

    Hi Adam,
    To share the internet on secondary VLAN, please follow the steps below:
    Connect the secondary switch to Cisco router
    Configure the devices on secondary VLAN to use Cisco router as its' gateway
    Configure NAT for secondary VLAN on Cisco router
    Due to different manufacturer has different ways to configure, for detailed configuration information, please consult the manufacturer of the switch and router.
    Best Regards.
    Steven Lee Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Support, contact [email protected]

  • Connecting 2 WLS 7 servers via the Messaging Bridge

    Hi,
              I am trying to use the messaging bridge to post messages received on a
              source JMS queue running in one WLS instance to a destination queue running
              on another target WLS instance. I have followed the instructions in the
              admin guide and performed the following:
              - defined in the source WLS instance 2 JMS bridge destinations - one for the
              source queue and one for the target queue
              - defined the bridge between the 2 destination, using the jms-xa-adp.rar
              - deployed the jmx-xa-adp.rar adapter to the source WLS instance
              - enabled the XA connection factory (had to define a new connection factory
              to do this)
              - made sure that both WLS instances have the system user configured with the
              same password
              When the source WLS instance starts up, the following is logged to the
              console:
              weblogic.jms.common.JMSException: Connection not found
              at
              weblogic.jms.dispatcher.InvocableManager.invocableFind(InvocableManager.java
              :134)
              at
              weblogic.jms.dispatcher.Request.wrappedFiniteStateMachine(Request.java:592)
              at
              weblogic.jms.dispatcher.DispatcherImpl.dispatchSync(DispatcherImpl.java:275)
              at
              weblogic.jms.client.JMSConnection.createSession(JMSConnection.java:368)
              at
              weblogic.jms.client.JMSXAConnection.createXAQueueSession(JMSXAConnection.jav
              a:75)
              at
              weblogic.jms.adapter.JMSBaseConnection.startInternal(JMSBaseConnection.java:
              257)
              at
              weblogic.jms.adapter.JMSBaseConnection.start(JMSBaseConnection.java:215)
              at
              weblogic.jms.adapter.JMSManagedConnectionFactory.createManagedConnection(JMS
              ManagedConnectionFactory.java:1
              at
              weblogic.connector.common.internal.ConnectionPool.makeResources(ConnectionPo
              ol.java:1002)
              at
              weblogic.connector.common.internal.ConnectionPool.getConnection(ConnectionPo
              ol.java:1777)
              at
              weblogic.connector.common.internal.ConnectionPoolManager.getConnection(Conne
              ctionPoolManager.java:190)
              at
              weblogic.connector.common.internal.ConnectionManagerImpl.allocateConnection(
              ConnectionManagerImpl.java:25)
              at
              weblogic.jms.adapter.JMSBaseConnectionFactory.getTargetConnection(JMSBaseCon
              nectionFactory.java:126)
              at
              weblogic.jms.bridge.internal.MessagingBridge.getConnections(MessagingBridge.
              java:753)
              at
              weblogic.jms.bridge.internal.MessagingBridge.execute(MessagingBridge.java:91
              9)
              at weblogic.kernel.ExecuteThread.execute(ExecuteThread.java:213)
              and any messages sent to the source queue just sit there.
              What might I be missing? Am I correct that the configuration of the bridge
              and destinations takes place at the source WLS instance (as this is posting
              the messages to the target WLS) - the documentation seems to me a bit
              ambiguous in this regard.
              Thanks,
              Stanley.
              

    I am afraid that you'll have to enable security interoperability for
              the bridge to work across two domains. Making the password for
              system user is not enough. You have to disable generated credential
              for both domains. For details, please look at the following link:
              http://edocs.bea.com/wls/docs70/adminguide/msgbridge.html#1078380
              Please also note that this requirement has been removed in 8.1 release and
              7.0SP3.
              Thanks
              Dongbo
              Stanley Beamish wrote:
              > "Dongbo Xiao" <[email protected]> wrote in message
              > news:[email protected]...
              > > I suspect that the two WebLogic servers have the same name.
              > > There are some naming restrictions in the WLS configuration.
              > > Please take a look at the following link.
              > > http://e-docs.bea.com/wls/docs70/adminguide/msgbridge.html#1076982
              > >
              > > Dongbo
              >
              > OK, I've changed the name of one of the servers and I can get further. But
              > now I get the following exception on the server that hosts the bridge,
              > relating to permissions. Both servers use the same system password.
              >
              > Thanks,
              > SB
              >
              > java.lang.SecurityException: Invalid Subject: principals=[system,
              > Administrators, Operators, Monitors, Deployers]
              > at
              > weblogic.security.service.SecurityServiceManager.seal(SecurityServiceManager
              > .java:993)
              > at
              > weblogic.security.service.RoleManager.getRoles(RoleManager.java:277)
              > at
              > weblogic.security.service.AuthorizationManager.isAccessAllowed(Authorization
              > Manager.java:589)
              > at weblogic.jms.JMSService.checkPermission(JMSService.java:1064)
              > at weblogic.jms.JMSService.checkRecvPermission(JMSService.java:1076)
              > at
              > weblogic.jms.frontend.FESession.consumerCreate(FESession.java:944)
              > at weblogic.jms.frontend.FESession.invoke(FESession.java:2252)
              > at
              > weblogic.jms.dispatcher.Request.wrappedFiniteStateMachine(Request.java:602)
              > at
              > weblogic.jms.dispatcher.DispatcherImpl.dispatchSync(DispatcherImpl.java:275)
              > at
              > weblogic.jms.client.JMSSession.consumerCreate(JMSSession.java:1592)
              > at
              > weblogic.jms.client.JMSSession.createConsumer(JMSSession.java:1452)
              > at
              > weblogic.jms.client.JMSSession.createReceiver(JMSSession.java:1302)
              > at
              > weblogic.jms.adapter.JMSBaseConnection.setMessageListenerInternal(JMSBaseCon
              > nection.java:931)
              > at
              > weblogic.jms.adapter.JMSBaseConnection.setMessageListener(JMSBaseConnection.
              > java:885)
              > at
              > weblogic.jms.adapter.JMSConnectionHandle.setMessageListener(JMSConnectionHan
              > dle.java:121)
              > at java.lang.reflect.Method.invoke(Native Method)
              > at
              > weblogic.connector.common.internal.ConnectionWrapper.invoke(ConnectionWrappe
              > r.java:101)
              > at $Proxy103.setMessageListener(Unknown Source)
              > at
              > weblogic.jms.bridge.internal.MessagingBridge.beginForwarding(MessagingBridge
              > .java:862)
              > at
              > weblogic.jms.bridge.internal.MessagingBridge.execute(MessagingBridge.java:94
              > 2)
              > at weblogic.kernel.ExecuteThread.execute(ExecuteThread.java:213)
              > at weblogic.kernel.ExecuteThread.run(ExecuteThread.java:189)
              >
              > >
              > > Stanley Beamish wrote:
              > >
              > > > Hi,
              > > >
              > > > I am trying to use the messaging bridge to post messages received on a
              > > > source JMS queue running in one WLS instance to a destination queue
              > running
              > > > on another target WLS instance. I have followed the instructions in the
              > > > admin guide and performed the following:
              > > >
              > > > - defined in the source WLS instance 2 JMS bridge destinations - one for
              > the
              > > > source queue and one for the target queue
              > > > - defined the bridge between the 2 destination, using the jms-xa-adp.rar
              > > > - deployed the jmx-xa-adp.rar adapter to the source WLS instance
              > > > - enabled the XA connection factory (had to define a new connection
              > factory
              > > > to do this)
              > > > - made sure that both WLS instances have the system user configured with
              > the
              > > > same password
              > > >
              > > > When the source WLS instance starts up, the following is logged to the
              > > > console:
              > > >
              > > > weblogic.jms.common.JMSException: Connection not found
              > > > at
              > > >
              > weblogic.jms.dispatcher.InvocableManager.invocableFind(InvocableManager.java
              > > > :134)
              > > > at
              > > >
              > weblogic.jms.dispatcher.Request.wrappedFiniteStateMachine(Request.java:592)
              > > > at
              > > >
              > weblogic.jms.dispatcher.DispatcherImpl.dispatchSync(DispatcherImpl.java:275)
              > > > at
              > > > weblogic.jms.client.JMSConnection.createSession(JMSConnection.java:368)
              > > > at
              > > >
              > weblogic.jms.client.JMSXAConnection.createXAQueueSession(JMSXAConnection.jav
              > > > a:75)
              > > > at
              > > >
              > weblogic.jms.adapter.JMSBaseConnection.startInternal(JMSBaseConnection.java:
              > > > 257)
              > > > at
              > > > weblogic.jms.adapter.JMSBaseConnection.start(JMSBaseConnection.java:215)
              > > > at
              > > >
              > weblogic.jms.adapter.JMSManagedConnectionFactory.createManagedConnection(JMS
              > > > ManagedConnectionFactory.java:1
              > > > )
              > > > at
              > > >
              > weblogic.connector.common.internal.ConnectionPool.makeResources(ConnectionPo
              > > > ol.java:1002)
              > > > at
              > > >
              > weblogic.connector.common.internal.ConnectionPool.getConnection(ConnectionPo
              > > > ol.java:1777)
              > > > at
              > > >
              > weblogic.connector.common.internal.ConnectionPoolManager.getConnection(Conne
              > > > ctionPoolManager.java:190)
              > > > at
              > > >
              > weblogic.connector.common.internal.ConnectionManagerImpl.allocateConnection(
              > > > ConnectionManagerImpl.java:25)
              > > > at
              > > >
              > weblogic.jms.adapter.JMSBaseConnectionFactory.getTargetConnection(JMSBaseCon
              > > > nectionFactory.java:126)
              > > > at
              > > >
              > weblogic.jms.bridge.internal.MessagingBridge.getConnections(MessagingBridge.
              > > > java:753)
              > > > at
              > > >
              > weblogic.jms.bridge.internal.MessagingBridge.execute(MessagingBridge.java:91
              > > > 9)
              > > > at weblogic.kernel.ExecuteThread.execute(ExecuteThread.java:213)
              > > >
              > > > and any messages sent to the source queue just sit there.
              > > >
              > > > What might I be missing? Am I correct that the configuration of the
              > bridge
              > > > and destinations takes place at the source WLS instance (as this is
              > posting
              > > > the messages to the target WLS) - the documentation seems to me a bit
              > > > ambiguous in this regard.
              > > >
              > > > Thanks,
              > > > Stanley.
              > >
              [att1.html]
              

  • Connecting two EA6500 routers via wireless bridge

    Hi, I want to know how can we bridge two EA6500 routers via wireless. I do not want to use the lan cable. Please help.
    Thanks,
    anandp

    This setup is not possible. You can only cascade the routers via wired connection. The access points on these routers are mainly transmitters, they're not receivers so you can't associate them wirelessly. You can, however, get a wireless bridge to do the job. Check out the Dual Band N Entertainment Bridge WET610N and Wireless N Universal Media Connector WES610N.

  • Zwei iPod touch via bluetooth verbinden/Connecting two iPod touch via Bluetooth

    Hallo,
    ich möchte, um das Spiel Shrek Kart im Mehrspieler-Modus zu spielen, zwei iPod touch mit bluetooth verbinden. Leider finden sich die Geräte gegenseitig nicht.
    Wer kann mir helfen?
    Danke!
    Hi,
    I would like to play the Shrek Kart Game in the multiplaye modus. Therefore I have to connect my two iPod touch via bluetooth. Unfortunately they don`t find one another.
    Who can help?
    THANKS!

    Ipod Touch Via Bluetooth wrote:
    so the only was is to use the cable to connnect it from my notebook to Ipod touch??
    depends. for syncing and software updates: yes.
    for putting e.g. MS Office files or .pdf files on it: check out e.g. _*Flash Drive*_ or _*Documents To Go*_. both require a wi-fi connection, though.
    what about if I download any bluetooth program from the App Store ( For Example: iBlueNova ).
    searching the app store for iBlueNova did not bring up anything for me. instead, search for +bluetooth fileshare+. maybe that app is for you ...
    JGG

  • Connecting two Central Servers??

    Mohan,
    More info may be beneficial.
    If you are trying to share service objects across two environments, you will
    need to create
    a reference partition. If the two different Central Servers are truly on two
    different machines,
    you can connect their environments.
    If it's a matter of having your app on one server and the database on another,
    you can
    use SQLNET and connect using TNS NAMES.
    The forte manuals can tell you how to create a reference partition, connect
    environment,
    etc.
    Hope this helps somewhat.
    Peggy Adrian
    Eli Lilly and Company
    [email protected]
    ---------------------- Forwarded by Peggy Lynn Adrian/AM/LLY on 01/12/98 01:09
    PM ---------------------------
    MOHAN CHICKMAGALUR <[email protected]> on 01/12/98 01:13:40 AM
    Please respond to MOHAN CHICKMAGALUR <[email protected]>
    To: [email protected]
    cc: [email protected]
    Subject: Connecting two Central Servers??
    Dear Friends,
    Wish U all avery happy new year. In our office we have 2 groups
    working on two different Forte Central Server, say FCS-A & FCS-B. FCS-A
    has the Oracle Database. We now want the clients connected to FCS-B to
    access the Oracle Database. How do I connect these two???
    Thanks in Advance for the help
    mohan
    Get Your Private, Free Email at http://www.hotmail.com

    I have heard about connecting 2 environments. I have never tried it
    myself. Here is how you do it.
    As long as your second environment has an environment visible service
    object and your first environment does not have such an SO with the same
    name, you can specify in the FORTE_NS_ADDRESS environment variable of
    the first environment, the address for both the environments. This is
    what I have seen in some examples
    FORTE_NS_ADDRESS=env1:5000;env2:5000;env3:5000 and so on.
    The control will query each environment for the SO.
    Hope this helps. Remember, I have not tried it, so I cannot authenticate
    it.
    Venkat J Kodumudi
    Price Waterhouse LLP
    Internet: [email protected]
    Internet2: [email protected]
    -----Original Message-----
    From: [email protected] [SMTP:[email protected]]
    Sent: Monday, January 12, 1998 7:32 PM
    To: Venkat Kodumudi
    Subject: Connecting two Central Servers??
    To: [email protected] @ Internet
    cc: [email protected] @ Internet
    From: [email protected] @ Internet
    Date: 01/11/98 10:13:40 PM PST
    Subject: Connecting two Central Servers??
    Dear Friends,
    Wish U all avery happy new year. In our office we have 2
    groups
    working on two different Forte Central Server, say FCS-A & FCS-B.
    FCS-A
    has the Oracle Database. We now want the clients connected to FCS-B to
    access the Oracle Database. How do I connect these two???
    Thanks in Advance for the help
    mohan
    Get Your Private, Free Email at http://www.hotmail.com

  • Connecting Two webapplication servers to one backend

    Hi Gurus,
    We are using MAM 3.0 version on SAP Netweaver 7.0. Can we connect one more Webapplication server  parallely with exising server to the samebackend. Two webapplication servers in parallely with one backend. Is this possible? could you please give us some documents so that it would be very helpful for us.
    Thanks in advance.
    Regards
    Satish

    Hi Domas,
    As pointed our by Holger, this is supported for inbound flows where your use case is to read (pull) some information from SAP into SharePoint. But use cases like reporting and workflow which publishes some items in SharePoint you cannot have the same ECC system.
    But if you intention is only for DEV landscape setup and want to save a VM image and still want to support reporting & WF scenarios, then you could also create a new client which is the copy of your existing clients in the same ECC system.
    Since logical port configurations are client specific you could practically connect same ECC system (but 2 diff clients) to 2 gateway systems.
    Thanks,
    Girimurugan

  • Connecting Two Airport Express Via Ethernet

    I have a unique situation in which I would like to connect two airport express via ethernet. Here is the situation: I can connect the first AX directly to the internet and set up a WDS for the second AX. Unfortunately, the second AX signal does not reach where I need it to go. I can run an ethernet cable between the two. Is this setting valid for a WDS? Or does the WDS have to be wireless? If I can set up the WDS using an ethernet, will the relay AX broadcast the internet wirelessly then?
    Are there any specific settings I should know about?
    Any help would be great.
    Thanks in advance,
    Debbie

    I currently have an old snow basestation at this location. Can I plug an ethernet cable into it and connect it to the AX?
    Yes that will work.
    My understanding was that the older basestation could not do this?
    I think you have it confused with extending a network wirelessly. That is not possible with the snow AirPort base station (ABS).

  • Connecting two iChat servers

    I am hoping someone can help with an issue I am having getting two iChat servers to talk. We have two locations that are currently using our iChat server in location A. I am attempting to setup a new iChat server in location B. The idea is to have these two servers talking so that if we lose connection between locations the folks at location B can still chat amongst themselves.
    Both servers are Xserves, both configured identical. I do have the new iChat server working (location B), I can connect with a client and see My Buddies, but My Buddies are greyed out and I am unable to chat with them. All of My Buddies are online on the iChat server at Location A. I have uncommented the "s2s" section in the Jabber.xml file, but still cannot get the two servers to talk. Anyone been down this road before and know what I am missing? I know we are not blocking the ports between locations. Unfortunately, I cannot find any documentation that is not basically an overview, I am not sure how iChat "discovers" other servers. Any help is very much appreciated.
    Derek
    G5 Xserve   Mac OS X (10.4.8)  

    iChat server is a re-branded version of Jabberd14.
    XMPP servers use DNS to discover each other. SRV records are preferred, but they will fallback to A records if SRV are not available.
    I'm not familiar with Jabberd14 so following the link Defcom(UK) gave or asking in the Collaboration Services forum (http://discussions.apple.com/forum.jspa?forumID=700) would be advisable if you have any more questions.
    Hope that helps.

  • How to set two radius servers one is window NPS another is cisco radius server

    how to set two radius servers one is window NPS another is cisco radius server
    when i try the following command, once window priority is first , i type cisco radius user name, it authenticated fail
    i can not use both at the same time
    radius-server host 192.168.1.3  is window NPS
    radius-server host 192.168.1.1 is cisco radius
    http://blog.skufel.net/2012/06/how-to-integrating-cisco-devices-access-with-microsoft-npsradius/
    conf t
    no aaa authentication login default line
    no aaa authentication login local group radius
    no aaa authorization exec default group radius if-authenticated
    no aaa authorization network default group radius
    no aaa accounting connection default start-stop group radius
    aaa new-model
    aaa group server radius IAS
     server 192.168.1.1 auth-port 1812 acct-port 1813
     server 192.168.1.3 auth-port 1812 acct-port 1813
    aaa authentication login userAuthentication local group IAS
    aaa authorization exec userAuthorization local group IAS if-authenticated
    aaa authorization network userAuthorization local group IAS
    aaa accounting exec default start-stop group IAS
    aaa accounting system default start-stop group IAS
    aaa session-id common
    radius-server host 192.168.1.1 auth-port 1812 acct-port 1813
    radius-server host 192.168.1.2 auth-port 1812 acct-port 1813
    radius-server host 192.168.1.3 auth-port 1645 acct-port 1646
    radius-server host 192.168.1.3 auth-port 1812 acct-port 1813
    privilege exec level 1 show config
    ip radius source-interface Gi0/1
    line vty 0 4
     authorization exec userAuthorization
     login authentication userAuthentication
     transport input telnet
    line vty 5 15
     authorization exec userAuthorization
     login authentication userAuthentication
     transport input telnet
    end
    conf t
    aaa group server radius IAS
     server 192.168.1.3 auth-port 1812 acct-port 1813
     server 192.168.1.1 auth-port 1812 acct-port 1813
    end

    The first AAA server listed in your config will always be used unless/until it becomes unavailable. At that point the NAD would move down to the next AAA server defined on the list and use that one until it becomes unavailable and then move to third one, and so on. 
    If you want to use two AAA servers at the same time then you will need to put a load balancer in front of them. Then the virtual IP (vip) will be listed in the NADs vs the individual AAA servers' IPs. 
    I hope this helps!
    Thank you for rating helpful posts!

  • Two licence servers in one environment

    Hi,
    Is it possible to install two licence servers in one environment and point some of the users to one licence server and others to another. Is there where i can change on the local PC to point to a licence server.
    My assumption is that it is stored centrally as i tried to change it on one user PC and all were changed to the same server. Is my assumption correct or how can this be achieved.
    Thank you in advance and your help is appreciated.
    Regard,
    Fanna

    Hi,
    The SAP Business One workstations read the name of the license service to which they connect from the SLIC table in the SBO-Common database. All Company databases sharing an SBO-Common database use the same license file. In addition, several SBO-Common databases can direct to the same license service.
    For more information please refer to:
    [License Guide 2007A|https://service.sap.com/~sapidb/011000358700000359212007E.pdf]
    hope it helps,
    Regards,
    Ladislav
    SAP Business One Forum Team

  • Policy based NAT to share 1 public between to two internal servers

    Hello all,
    I would like to implement a solution that allows me to share a single public IP amongst two internal servers. One service uses a range of tcp ports.
    I believe the below will address what I need however - can I use the ‘object-group’ command or do I need to specify each tcp port separately?
    This?
    object-group service A_Bunch_O_Ports tcp
    description Telemesis comms to-From Internet
    port-object eq https
    port-object eq www
    port-object eq 8060
    port-object eq 8070
    access-list policyNAT-share extended permit tcp host 172.20.40.100 object-group A_Bunch_O_Ports host 1.2.3.4 object-group A_Bunch_O_Ports
    access-list policyNAT-share extended permit tcp host 172.20.40.200 eq 25 host 1.2.3.4 eq 25
    nat (inside) 3 access-list policyNAT-share
    global (outside) 3 1.2.3.4 netmask 255.255.255.255
    Or this?
    access-list policyNAT-share extended permit tcp host 172.20.40.100 eq 443 host 1.2.3.4 eq 443
    access-list policyNAT-share extended permit tcp host 172.20.40.100 eq 80 host 1.2.3.4 eq 80
    access-list policyNAT-share extended permit tcp host 172.20.40.100 eq 8060 host 1.2.3.4 eq 8060
    access-list policyNAT-share extended permit tcp host 172.20.40.100 eq 8070 host 1.2.3.4 eq 8070
    access-list policyNAT-share extended permit tcp host 172.20.40.200 eq 25 host 1.2.3.4 eq 25
    nat (inside) 3 access-list policyNAT-share
    global (outside) 3 1.2.3.4 netmask 255.255.255.255

    Do you need both inbound and outbound connection for the server, or only outbound connection?
    If you only need outbound connection, then you don't even need to specify the port on the access-list. You can just configure the following:
    nat (inside) 3 172.20.40.100 255.255.255.255
    nat (inside) 3 172.20.40.200 255.255.255.255
    global (outside) 3 1.2.3.4 netmask 255.255.255.255
    However if you need both inbound and outbound connection for the server, then you should configure the following:
    static (inside,outside) tcp 1.2.3.4 443 172.20.40.100 443 netmask 255.255.255.255
    static (inside,outside) tcp 1.2.3.4 80 172.20.40.100 80 netmask 255.255.255.255
    static (inside,outside) tcp 1.2.3.4 8060 172.20.40.100 8060 netmask 255.255.255.255
    static (inside,outside) tcp 1.2.3.4 8070 172.20.40.100 8070 netmask 255.255.255.255
    static (inside,outside) tcp 1.2.3.4 25 172.20.40.200 25 netmask 255.255.255.255

Maybe you are looking for

  • Compliance Calibrator 4.0: replace whole ruleset on one system with another

    Hi All, We have two R/3 environments (one's at 4.7 the other is 4.6c).  Both are running CC 4.0.  What's the best way to replace the whole SOD ruleset on the 4.6c system with the one from our 4.7 system.  When I say whole ruleset I mean all the risk,

  • ABAP proxy client sending to XI

    We have created an outbound interface in XI and generated the proxy in ABAP using SPROXY.  When we test the call of the proxy,  we get the following error in SXMB_MONI.. HTTP response contains status code 401 with the description Unauthorized Any adv

  • I purchased my Adobe Creative Suite 3 Design Premium in 08 and have upgraded to Mac.

    I purchased my Adobe Creative Suite 3 Design Premium in 08 and have upgraded to Mac. It appears I am not able to use my old software as I have the Microsoft addition. What should I do now as I desperately need the program in my current situation?

  • Setting up new IDOC message type.

    Hi All, I have created a new process code (ZMBGMCR) and linked message type MBGMCR to the process code and configured the process code to use function BAPI_IDOC_INPUT1. The reason I have created a new process code is because the standard message MBGM

  • Enable Browser Back Button in AS3.0 with Flash

    Hi All, Is there any way in actionscript 3.0 to enable Browser Back Button in flash website. Thanks Shane