CSS 11506 / install Disclaimer page

We have a CSS 11506.  Our public portal web servers are behind that CSS 11506.  How to configure the CSS so that when people click on some external websites URLs on the public portal,  there will be a disclaimer / exit page shows up first.  

The CSS is only loadbalancing the http traffic to the public portal web servers and does not run an http stack itself. As such the CSS is incapapble of presnting any http content to the client . Any disclamer / exit pages would need to be programmed into the content of the page the public portal server presents to the client. There is not a way to accomplish this on the css.

Similar Messages

  • CSS 11506 page requests not directed properly

    CSS 11506 sitting in front of mainframe and
    two Windows 2003 servers
    content rule3056gif
    add service web1
    add service web2
    vip address 10.10.200.252
    balance aca
    url "/IMAGE_DIRECTORY_NAME/*.gif"
    port 3056
    active
    A small number of page requests, that do not match the above pattern, are passing to the content servers web1 or web2 instead of the mainframe.
    Any ideas appreciated.

    when a connection comes in and matches the rule above, a flow is created to switch all traffic between client and server.
    If inside this same flow a new request comes in for a different content rule, the flow needs to be remapped to the new server.
    This works fine except when the flow stays idle.
    A flow that was idle can't be remapped.
    All new requests will be sent to the current/last server even if the request does not match the rule.
    The solution is to increase the idle timeout.
    You can do this with a 'flow-timeout-multiplier'.
    A large value will reduce a lot the chance to see the problem but it also means the amount of resources being used will increase as each flow will remain longer in memory.
    It's up to you to find the right balance.
    You can do a 'flow stat' from llama mode to see number of free flows and active flows.
    I would say you start with a flow-timeout-multiplier of 100 and reduce or increase it if necessary.
    Regards,
    Gilles.
    - please take a moment of your time to rate this answer.

  • Trying to understand SSL sticky with CSS 11506 / ssl-l4-fallback behavior

    Dear experts
    I have a CSS 11506 (v7.50) which is used to load balance several SSL-based sites. We use the following textbook content rule:
    content mysite-SSL
    vip address 10.0.0.1
    add service s01
    add service s02
    add service s03
    port 443
    protocol tcp
    advanced-balance ssl
    application ssl
    flow-timeout-multiplier 225
    active
    If I read the manual correctly, SSL L3 session IDs are going to be used till a flow is set up. Then the ssl-l4-fallback (it is enabled) directive kicks in and load balancing is done based on the source IP, destination port.
    However, my stats show:
    Sticky Statistics - SFM Slot 1, Subslot 1:
    Total number of new sticky entries is 4937735
    Total number of sticky table hits is 33476045
    Total number of sticky rejects (no entry) is 0
    Total number of sticky collision is 0
    Total number of available sticky entries is 0
    Total number of used sticky entries is 131071
    Total L3 sticky entries are 131
    Total L4 sticky entries are 0
    Total SSL sticky entries are 130940
    Total WAP sticky entries are 0
    Total number of SIPCID sticky entries is 0
    So, why don't I see anything in the L4 sticky entries?
    Also, I would expect that once the ssl-l4-fallback kicks in, a client will be always directed to the same server (since the CSS uses now source IP, dest port for load balancing). However, if I close and start again my browser I hit a different server.
    Your thoughts and suggestions are highly appreciated.
    John.

    Hi Gilles
    Thank you for your response. If I may ask the group for a final further clarification, so as to put this matter to rest. Since there are a lot of frames transmitted in either direction, I would expect the following to be happening and overriding the use of SSLv3 session IDs. Following is the section of the manual that seems to contradict what you say (and I see on the stats). Am I reading the manual wrong?
    "Cisco Content Services Switch
    Content Load-Balancing
    Configuration Guide
    Software Version 8.20
    November 2006
    page 11-14
    Configuring SSL-Layer 4 Fallback
    Insertion of the Layer 4 hash value into the sticky table occurs when more than
    three frames are transmitted in either direction (client-to-server, server-to-client)
    or if SSL version 2 is in use on the network. If either condition occurs, the CSS
    inserts the Layer 4 hash value into the sticky table, overriding the further use of
    the SSL version 3 session ID."

  • Disclaimer page for Muse site

    Can anyone explain how I can create a disclaimer page for my Muse site?

    You may have the disclaimer as your first page, with the accept button hyper linked to your home page and the decline button taking them to a 'goodbye' page, or something like that.

  • Display Videos with Automatic Disclaimer Page

    Hello,
    I created an asset library that would store user uploaded videos in my SharePoint site and on-click instead of just jumping right into the video I wanted to add a disclaimer page with my site's logo and then a button that the user will click that will acknowledge
    that they read the disclaimer message and would like to go to the video.
    Is there any kind of built in functionality to accomplish this or what would be the way to approach this functionality programmatically?
    Thanks in advance for the help!

    Hi,
    As there is no such OOTB feature, we can achieve it via JavaScript programmatically.
    Here is a similar thread with a solution for your reference:
    http://social.technet.microsoft.com/Forums/en-US/527cf685-a349-4b72-a373-eb4c992a2c7e/can-we-implement-disclaimer-notice-popup-when-opening-each-document-in-sharepoint-2010?forum=sharepointdevelopmentprevious
    Thanks
    Patrick Liang
    Forum Support
    Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Subscriber Support, contact
    [email protected]
    Patrick Liang
    TechNet Community Support

  • How to install ONLY Pages 09

    Since there is no methodology by which Numbers 09 can be disabled without uninstalling the whole thing, what would be the procedure to install ONLY pages 09 out of iWork 09? Or, can I uninstall ONLY Numbers 09?
    sparkgapper

    Sparkgapper wrote:
    I answered this question a LONG time ago but for some odd reason there is NOTHING about that post in this thread. Not long after that supposed post, my wife died and I have been "out of touch" for a while and just not beginning to return to some reasonable normality.
    YES! the question of INOPERATIVE formula elements (there are several) between numbers 08 and 09 has been dragged into the ground. The majority of these concern use of the NEW definition of date and time however there are many that give error messages because the formula does not recognize a blank cell as being Zero.
    *Perfectly RIDICULOUS*
    I would be glad to see this thread. I guess that you read it wrongly.
    (1) *_The definition of date_time values didn't change. The application just offer a new type of item : duration._*
    Only the internal way to store the date_time values was changed but this change has no impact at the user level.
    (2) The changes about the treatment of blank cell is logical and as I requested it I feel that it's welcome.
    If you have formulas broken by this change it's easy to edit them.
    Now, if you don't want to run Numbers '09, just use the Finder's Archive menu item.
    You will get a file named Numbers.app.zip
    Then, trash Numbers.app
    Numbers will no longer run and, if a new update surface, it will be time to unpack the archive to revive the app to make the updater happy.
    An alternate scheme is to create a disk image and move Numbers.app in this one.
    Same scheme : as long as you don't deliberately open the disk image, the app will not run. If an update surface, drag the app from the disk image to its normal location.
    Yvan KOENIG (VALLAURIS, France) lundi 7 mars 2011 18:53:00

  • Need help in adding a disclaimer page for guest users

    We are trying to add a disclaimer page for public users to accept and continue for our public WLAN. Need to know how to add this page, and if there is a character liimit?

    Go to Security -> Web Auth -> Web Login Page
    Don't forget to enable Web Auth:
    WLAN -> Guest LAN -> Security -> Layer 3 -> Web Policy
    Is this what you are looking for?

  • Adding a Disclaimer Page in Portal while logging on.

    Hello All,
    I have a requirement where an authenticated user logging for the first time will get to see a disclaimer page. Once the user accepts, he should be directed to the Portal content as usual and if he does not accept then the user will log off from the Portal.
    Second time when he logs in there will be no disclaimer page for those who have accepted it.
    Please can you help me and guide me through the possibilities.
    Thanks
    Avik

    The way i see it is either to have a db table, which is not a viable solution.
    The other way, create a role ABC, do not assign that role to any user with Entry Point NO
    When the user logs in, check for the role, if the role is not available, assign the role, and show him the disclaimer page,
    On accept of the disclaimer, navigate to Home page of the portal
    On Decline, call the logon module to logoff
    Next time if the same user logs in, check for the roles, if it has the role ABC, navigate directly to Home Page.
    I am not sure if there is any standard way to do it.
    Cheers and good luck.
    Regards,
    Nitin

  • TS1702 I have purchased and installed Facebook, pages and numbers apps. However I am now unable to open any of these apps. When I click on the app the GUI just bleeps. Any suggestions please?

    I have purchased and installed Facebook, pages and numbers apps. However I am now unable to open any of these apps. When I click on the app the GUI just bleeps. Any suggestions to resolve this please?

    Restart the iPad by holding down on the sleep button until the red slider appears and then slide to shut off. To power up hold the sleep button until the Apple logo appears and let go of the button.
    Or....
    Reset the iPad by holding down on the sleep and home buttons at the same time for about 10-15 seconds until the Apple Logo appears - ignore the red slider - let go of the buttons.
    Or....
    Try downloading another app - any free app is fine. See if that resets the other apps.

  • Webauth and disclaimer page

    In passthrough mode you use the WLC builtin web disclaimer page. With webauth, there's a built-in webauth page. Is it possible to have both? I want users to webauth and accept a disclaimer. Can this be done by uploading to the WLC a custome webpage?

    not natively in the WLC.  from our persepective once we receive the value that they have passed, either auth or accepted the disclaimer they are good to go.  it may be possible to code a customer page where you could have a disclaimer, and a next button, where the new page is authenticaiton, but I'm not sure it would work on the WLC, as we have limited space.  you should be able to accomplish this with an external webserver though.

  • Disclaimer Page with no Authentication

    Hi All,
    Is it possible to have a disclaimer page pop-up when a guest enters a WLAN, but does not have to put in login credentials?
    I basically want a page with my company logo and disclaimer...then they click on a link to continue to the Internet.
    Thanks,
    Scott

    Yes.... you have to use a custom WebAuth with passthrough enabled instead of login.
    Here is a link... I wil try to find you a better one.
    http://www.cisco.com/en/US/tech/tk722/tk809/technologies_configuration_example09186a008067489f.shtml#webpass

  • Made fresh install man pages installed but does not work

    Hello there...I made an Arch Linux kdemod fresh install on my computer...I installed man-pages, but when I press 
    man name_of_command
    I get this error:
    bash: man: command not found
    Any help?

    Search the forum for this issue, its been brought up many times.

  • Etherchannel to CSS 11506

    i'm looking at doing a etherchannel/channel group to CSS 11506 for greater bandwidth on the front of the CSS.. clinets>chan-group>vip>CSS >servers.
    has anyone else done this?
    reason i ask if this can be done is that the backup (ASR) CSS vir-peer shows as master(backup router) state. i didn't see any commands on css for etherchan, pagp or lacp

    HI,
    etherchannel is not supported on the CSS from my knowledge. Furthermore you should avoide any spanningtree issue on the CSS. If you need more throughput than 1 GIG think about splitting the VIPs so that one CSS is active for the first half of the VIPS and the otherone for the 2nd part. Be aware that the Gateway on both VIP-pars need to be active on the correct box.
    Kind Regards,
    Joerg

  • CSS 11506 - Locked up but cannot find why

    I have had a CSS 11506 lock up with no access or activity. From the syslog logs I cannot see any error messages reporting a failure, just a hole. During the lockup I had no access to the equipment.
    Any suggestions on how to investigate the lock up ?
    Thank you in advance.
    Roger.

    Hi Roger,
    Based on the symptons I guess CSS did not save any core, can you double check.
    I would say that we have no enough evidence to say what caused the outage, actually I would need to see the showtech and look for some evidence but I can tell you for sure that your code needs to be upgraded.
    7.50 train is not getting new releases since new tains are 8.10 and 8.20 and also 7.50.103 is a early release on that train and many defects were addressed on newer codes, some of them related to crash and hung issues.
    Hope it helps!!

  • CSS 11506

    I configured VIP on my CSS 11506. I created a content rule and a service, which will be used by the content rule. Both have been activated. However, when I do "show service summary", the new service created is not coming up, it's showing down. I removed the service and re-created it and still down. My VIP won't work if the service remains down. Please help if you experience this before. Thanks so much !!

    Collin,
    You are the man! I removed th keepalive by typing "keepalive type none" initially it was "keepalive type tcp" and now the service is up and I can get to my VIP. Thanks so much! I appreciated. How should I give you a credit ?

Maybe you are looking for

  • What do i need to completely fix my ipad?

    Guys, Let's be honest: As much as I love Steve Jobs and his company as a whole, why is it so difficult to fix these devices? I mean yes it is a cool piece of technology but it has its flaws that, when dropped or otherwise broken, FAR outweigh the ben

  • Non-domain computer cannot connect to server

    I have a unique issue.  I have a Windows 2008 server running Exchange 2010 (all roles on single server ) I have a Windows 7 Pro client that is not a member of the domain. When setting up Outlook 2010 I enter user's name, email address and password.  

  • WHAT IS IT ABOUT THIS VERSION WHICH IS MAKING A SIMPLE TASK SO IMPOSSIBLE??

    Frankly quicktime 7 vs newest is making all movie work and viewing a nightmare. I have installed and reinstalled QT 4 times and the codecs etc which I have spent a lot of $$ on. Still having problems with FLV and more. IF ANYONE has any idea what to

  • The operation cant be completed blah blah blah

    This is getting very irritating. I was attempting to install an application on my Macbook Air from my roommate's computer's DVD drive. All was fine and the app was installing and then our wireless went out. Now, when I try to install, I get a prompt

  • [Solved] 64b Flash + Vimperator = Sigh

    Flashplugin-prerelease (Square) recently stopped working for me in Vimperator. In Chromium, everything works just fine. Are there any hidden parameters in about:config or anywhere else that could cause this behaviour? Thank you. Edit: Fixed it, I had