DS 6.0 Proxy Configuration

I am having some problems configuring the DSEE 6.0 Proxy Server. It seems like it should be fairly straightforward and maybe I am missing something obvious.
I create the Proxy Server instance, then created a data source to my Directory Instance, through the DSCC. After I create the Data Source under Operational Staus it says 'Could not Retrieve Status'
The following is in the logs:
No data source available for ADD,BIND,COMPARE,DELETE,MODIFY,SEARCH, in data source pool cn=dscc admin data source pool,cn=datasource pools,cn=config .You may want to check whether the configuration of this pool contains at least one data source enabled and with non-zero weights.
I have the data source enabled and also have created a pool and checked the weights and of course verified that the instance of the Directory is up and running. Which btw is running on the same machine.
Anybody had any luck with setting up the Proxy Server or encountered a similiar problem?

Here a link available in the Oracle forum:
DPS DSCC doesn't show operational status
-Sylvain

Similar Messages

  • ADFS 3.0 - Web Application Proxy configuration Issue

    Hi All,
    We are in the process of implementing ADFS 3.0 published to the internet for o365 Federation purposes.
    The setup consists of the following
    - 2 x windows 2012 R2 running ADFS 3.0 ( only one server presently installed and configured though)
    - 2 x Windows 2012 R2 Running Web Application Proxy (  only one server presently installed and configured though ).
    There is an F5 Big-IP load-balancer for both internal and external interfaces and it has been configured after a lot of issues with the SNI part on the F5.
    So, in short the setup is now a single server hosting ADFS 3.0 using SQL and a single WAP server, however the traffic to these servers are still going through the LB.
    Now the issue is that i cannot complete the installation/configuration of the Web Application Proxy server. There is  a firewall in between our DMZ and the internal network. I can reach the internal services via the following url and telnet on port 443
    to the federation service as well. (ports for 443 and 80) are opened to internal network on the load balancer ip . I can reach https://fs.domain.com/adfs/ls/idpinitiatedsignon.aspx and federationmetadata/2007-06/federationmetadata.xml location as well
    from the Web APplication proxy server without any issues or certificate prompts at all.
    When i do the configuration for WAP, i use the same account which was used as a service account for the ADFS service internally. If i use a local admin account, it errors out with another message stating the connection was closed.
    The certificate on the internal server along with its private key was exported and has been imported on the WAP server . This is not internal CA, instead we are using DIGICERT SSL with SAN Names for enterprise registration and work folders. Hence the CA Chain
    issue is ruled out and also this is not a wild card certificate.
    When the wizard starts configuring, it does establish the trust with the federation service which is shown up in the event viewer with  EventID 391 within 15 seconds i get another event id 422 which states that it cannot retrieve the proxy configuration
    and eventid 276 on the Federation server which states the authentication failure. this continues until the servers stops to try configuring the wizard. 
    I have read all the available threads on the 3.0 WAP installation /configuraiton problem and tried all the steps possible but i am still stuck with this issue.
    There is one more part that i noticed on the ADFS server, that the self signed services for the token-encrypting and token decrypting are self-signed certificates. Also, in the certificates it was showing up as not trusted. and i installed them to the TRUSTED
    ROOT CERTIFICATION STORE after wich i cannot see any private key showing up when viewing the certificate which means i cannot get the MANAGE PRIVATE keys option when right clicking on the cert to assign read permissions for the ADFS service account.
    Should i assign the same SSL sertificate (SAN based for enterpriseregistration & Workfolders) to the token-encrypting and token-decrypting services in ADFS console or should i leave them as self signed ? I did read that self-signed is not recommended for
    production environment ? If not the same certificate what are the requirements for the certificate ?
    I am not sure what I am missing in the configuration that is causing this issue. The WAP servers are not part of the domain and have also ensured the time synchronization between the domain machine as well.
    The service name is fs.domain.com on both the internal and external DNS ( we have domain.com as a zone in DNS internally as well ). I am able to Authenticate inside and from the WAP server when accessing the link.
    Could it be a Load Balancer Configuration ? [i will try eliminating this from the configuration]
    Let me know if there are any options that i can try to resolve this and get the configuration working.
    Cheers,

    Does the load balancer pass the certificate session through to the ADFS server or are you offloading SSL. SSL offload does not work with WAP/ADFS integration (at least at the time of writing it does not).
    Can you try through the load balancer with SSL pass through turned off please.
    Also as ADFS 3.0 (Server 2012 R2) uses Server Name Indication (SNI) then any health checks that run on the load balancer must support this, so if they do not then you need to use TCP 443 checks for a listening port, as doing a standard HTTPS check will fail,
    and if the load balancer fails its checks whilst you are configuring ADFS that might be a reason why it has gone offline for you (error 442 is to do with failure to swap client certificates between WAP and ADFS).
    Finally, check the June update to Server 2012 R2 (http://support.microsoft.com/kb/2964735) as that has fixed some certificate issues with multiple servers for WAP and ADFS when you don't have the
    2012 R2 AD schema in place.
    Brian Reid
    Exchange MVP and Exchange and  Office 365 Certified Master
    www.c7solutions.com
    Brian Reid C7 Solutions Ltd (www.c7solutions.com)

  • ABAP Proxy Configuration in PI 7.3

    Hi ,
    Can you please help me in configuring ABAP Proxy in PI 7.3. Please help me with detailed description.
    Thanks In Advance.
    Thanks & Regards
    Sreeram

    check [this|http://venkata-pagolu.blogspot.com/2011/08/proxy-configuration-for-pi-73-java-only.html].

  • Automatic Proxy Configuration URL doesn't work on some computers, but Manual proxy can work

    It seems that the Automatic Proxy Configuration URL doesn't work, I use the command netstat -a, can't see the connection to proxy server, but manual proxy is ok, and I tested on some others computers, most of these computers can work normally with Automatic Proxy Configuration URL.
    For the computer can't work normally with Automatic Proxy Configuration URL, I did below actions
    1.Clear the cache
    2.update the version of firefox
    3.reinstall the firefox
    4.use the safemode to run firefox
    but unfortunately, still doesn't work.
    Can some dear friends give me a big favor for this? Thanks a million in advance!

    I have the same problem, just showed up recently - very fricking annoying!!

  • My internet connection keeps reverting back to using a manual proxy server configuration pointing at 127.0.0.1 Port 55414. I've tried the help regarding the user.js and prefs.js files but still it continues to revert to the manual proxy configuration!

    I know how to change my network settings to fix my internet connection, I just select "Auto-detect network settings for this network" under Tools, Options, Network, Settings. However every time I close down Firefox it reverts to the manual proxy configuration pointing to 127.0.0.1 Port 55414.
    I've tried all the suggestions under saving your preferences but this hasn't worked so I'm at a loss as to what to do next. If I can't sort this I'll have to revert back to Internet Explorer as this doesn't have this problem!

    I know how to change my network settings to fix my internet connection, I just select "Auto-detect network settings for this network" under Tools, Options, Network, Settings. However every time I close down Firefox it reverts to the manual proxy configuration pointing to 127.0.0.1 Port 55414.
    I've tried all the suggestions under saving your preferences but this hasn't worked so I'm at a loss as to what to do next. If I can't sort this I'll have to revert back to Internet Explorer as this doesn't have this problem!

  • Java plug-in 1.4.1 proxy configuration issue causes JTextField TAB problems

    I have an applet that has multiple JTextFields in it. I recently updated my Java plug-in to version 1.4.1, and now using TAB to navigate among text fields does not always work when I first bring up a browser and load the applet.
    I've found, however, that if I open the Java Console and hit "p" (reload proxy configuration), and then reload my applet (hit Refresh/Reload on my browser), the Tab key works as expected. I did not have this issue with releases prior to 1.4.1.
    Any clue on how I can ensure proper proxy configuration upon initial instantiation of the browser? I've seen the problem in both IE 6.0 and Netscape 7.0.
    Note that the reloading of the proxy configuration only appears to be necessary once per browser session.

    The navigation isn't working. I click in the first text field to give the initial field focus. I then hit TAB and nothing happens. I have a key listener set up for the ENTER key, and this is also supposed to navigate to the next field via:
    ((JTextField)evt.getSource()).transferFocus();
    To see if there was a problem with my build environment or threads in my application, I came up with the following dummy applet:
    import java.awt.BorderLayout;
    import javax.swing.BoxLayout;
    import javax.swing.JApplet;
    import javax.swing.JPanel;
    import javax.swing.JTextField;
    public class TestApplet extends JApplet {
    public void init() {
    super.init();
    public void start() {
    JPanel myPanel = new JPanel();
    myPanel.setLayout(new BoxLayout(myPanel, BoxLayout.Y_AXIS));
    JTextField textField1 = new JTextField("Text Field 1");
    myPanel.add(textField1);
    JTextField textField2 = new JTextField("Text Field 2");
    myPanel.add(textField2);
    JTextField textField3 = new JTextField("Text Field 3");
    myPanel.add(textField3);
    getContentPane().add(BorderLayout.CENTER, myPanel);
    public void stop() {
    super.stop();
    I then compiled this applet using the following:
    javac TestApplet.java
    I then put together the following HTML file:
    <HTML>
    <HEAD>
    <TITLE>Test Applet</TITLE>
    </HEAD>
    <BODY MARGINWIDTH="0" MARGINHEIGHT="0" BGCOLOR="white">
    <APPLET
    CODE=TestApplet.class
    WIDTH=635
    HEIGHT=500
    ALIGN=left
    VSPACE=10
    HSPACE=10
    >
    </APPLET>
    </BODY>
    </HTML>
    The results are the same. I am not able to navigate using the TAB key until I bring up the Java console and then close it again. I would think that if this was a bug in 1.4.1_01, I would have seen it all over the forums. Any help would be greatly appreciated.

  • Bypass automatic proxy configuration for some websites?

    Here's my problem, perhaps someone can help:
    I occassionally need to use my university's proxy server to access library materials, etc., through my off-campus connection. So I entered the .pac file (a url) in the Automatic Proxy Configuration box of System Preferences > Network. All well and good.
    The problem is, when I want to get more weather details from the weather widget for example, visiting a site like Accuweather.com throws up the login page for my proxy server. Having to enter my university id and password whenever I want to check the weather is guaranteed to drive me bananas.
    So is there any way to keep sites like Accuweather.com from demanding I log into my proxy server when there's no reason to, while still keeping my auto proxy configuration in place for when I really need to use it? Anything I can do in Safari about this?
    The other option seems to be to reserve one browser, configured with my university proxy, just for doing library research, etc., and another as a general surfing browser. I'd be happy to make Safari do general duty, and configure Camino to use the proxy server, but I can't seem to make this division work, since both use whatever's listed in Network Prefs. I can't tell one to use the proxy and the other not to, they're both controlled by this global pref.
    I think I might be able to specify the proxy locally in Firefox, and leave Safari w/o the proxy...But I much prefer the look and feel of Camino...
    Any ideas on how to get around this with Safari, or a combo of Safari and Camino?
    Thanks in advance for any tips.
    iBook G4 800Mhz 12"   Mac OS X (10.4.4)   Safari 2.0.3, Camino 1.0

    Okay, I found the "Bypass proxy settings for these Hosts & Domains" box right under my nose, in Network Prefs. It's explained in this kbase document,
    http://docs.info.apple.com/article.html?artnum=301534
    Getting closer...
    However, using the accuweather.com example, I tried entering the domain name and it still calls up the login in Safari. I even tried looking up the site's IP address and entering that in different forms:
    wwwa.accuweather.com
    207.242.93.24
    207.242.93.*
    Still no luck, it calls up the proxy server...

  • Forward parameters in reverse proxy configuration

    Hi,
    Looking at the detailed configuration in a reverse proxy rule in SJSWS, I have derived the following conclusions:
    1) Where the SJSWS listener has SSL-enabled, reverse proxy works on a HTTPS in, HTTP out basis.
    2) Details in the incoming request's SSL header, such as User DN, will be stripped out and remapped into the outgoing request as a custom header, e.g. "Proxy-user-dn".
    Can anybody tell me if I have gotten anything wrong above?
    We are currently switching over from an Apache/mod_proxy/mod_ssl --> Apache/mod_jk --> Apache Tomcat server setup to a hybrid model where SJSWS is the web server reverse proxying to Tomcat (old apps) and SJSAS (new apps).
    My question:
    All our apps use the User DN string as the user ID. Previously, we developed a custom module in Apache to read the DN at the Apache level and then rewrite it into the Basic Auth user name header in the outgoing request. The Tomcat webapp will then authenticate the user based on the Basic Auth user name property. Is it possible for me to remap it into something similar here in the SJSWS reverse proxy configuration?
    Thanks!
    Wong

    I am not a reverse proxy expert, but this Object-type SAF should forward userdn
    http://docs.sun.com/app/docs/doc/820-1062/6ncoqnq3b?l=en&a=view&q=forward-user-dn
    You can look for more such SAFs in this document.

  • Automatic Proxy Configuration keeps getting disabled for Manual Proxy Configuration

    When ever I launch Firefox 3.6.13, the connection settings get reset to Manual Proxy Configuration. I switch the connection settings to automatic proxy configuration and all works fine. Upon closing and re-launching Firefox the Connection Setting is set back to manual proxy configuration.

    See http://kb.mozillazine.org/Preferences_not_saved

  • Proxy configuration in AIR Application

    Flex/AIR Applications use Default Browser's Connection
    setting(Proxy configuration) to connect to Server/Remote Systems.
    This mechanism is ok.. in case of Browser based applications.
    But, in case of Desktop based AIR application, my application may
    need to connect to some Non-Standard ports(not 80,443).. For that I
    need to use a different proxy setting than that of my browser.
    But, I didn't find any mechanism to set the proxy
    configuration in my application.
    Can anyone please suggest me the workaround for this??

    Hi  Sendhil,
    Plz check:
    http://www.sdn.sap.com/irj/scn/go/portal/prtroot/docs/library/uuid/e0ac1a33-debf-2c10-45bf-fb19f6e15649?overridelayout=t…
    How do you activate ABAP Proxies?
    Regards
    GB

  • Reverse Proxy Configuration - Apache as an SSL reverse-proxy

    Hi,
    We have EP 6.0 SP 14 installed with SSL configured.
    We are in need to open the application to internet.
    For the same we have set up a reverse proxy server (Apache as SSL
    Reverse Proxy).
    Our requirement is to open the application to the internet with
    web address https://abc.domain.com.
    The issue is we are able to access the application from internet only when
    https://abc.domain.com/irj/potal is typed.
    (ie.) Mapping is working fine for
    https://abc.domain.com/irj/portal to
    our EP Portal address https://abc2.domain.com:50001/irj/portal
    And not working for mapping https://abc.domain.com to our EP Portal
    address https://abc2.domain.com:50001/irj/portal
    We have been working on to resolve this issue for days together but have been really unsuccessful
    Kindly help us in resolving the same asap.
    Note : The references we used are:
    1. SAP's document:
    "Apache Reverse Proxy Configuration for J2ee 6.20 and 6.40 Web Applications"
    2. Weblogs:
    The Reverse Proxy Series -- Part 1: Introduction
    The Reverse Proxy Series -- Part 3: Apache as a reverse-proxy
    The Reverse Proxy Series -- Part 3.1: Apache as an SSL reverse-proxy
    Regards,
    venkat.

    Thanks much for the feedback. We're using the default settings on the HTTP rule we have set up for the portal on the ISA server. We'll be looking into the details of what the default rule settings are, however we did find a note in the Microsoft Knowledge base detailing with the ISA server screening high bits in URL strings for Outlook Web Access (OWA). This generates a similar error message. Here is the link to the detailed note on the Microsoft web site:
    http://support.microsoft.com/?scid=kb;en-us;837865
    Also,we are going to be applying the SP1 upgrade to the ISA server (released in March) to see if this might be some type of issue that may have been identified and corrected by the service pack. We'll see what happens with that.
    One area where we can recreate the problem at will is when we set up the system landscape configuration. We can navigate to a system configuration object, however when we attempt to right click to edit the object we get the error. There are other circumstances where we get errors but that is one that occurs for sure. Anyone have any idea as to what might be special about that type of transaction??
    Thanks again.
    Rich

  • Severe proxy configuration bug preventing mail access

    Hello,
    the proxy configuration options for LAN / WIFI networks have a major bug: if a proxy server is set manually, it prevents e-mail accounts from working while being connected to that proxy-enabled network!
    Interestingly, if the proxy is configured by using a PAC file, e-mails work successfully again, in addition to all proxied protocols like http, https and ftp.
    Furthermore, it is not even possible to connect to mail server within the local network when manual proxy settings are active - the device does not even try to connect to anything, if trying to set up an account, it gives a confusing error message saying that not all settings of the mail account were correct.
    As soon as the proxy settings are removed OR obtained by using PAC, everything works again!
    Please fix this in one of the next releases as it impedes usage on networks with proxy enforcement! Maybe just add a selector to which protocols the proxy settings should be applied!? As I know several typical network settings, proxy is mainly used for thhp/https/ftp, not any mail protocol (for which e.g. a SOCKS proxy would be needed, which is quite different to "regular" proxies and should be treated separately in the config.)
    There are several topics on the support forums that might be related to this, but have not yet taken care of: http://supportforums.blackberry.com/t5/BlackBerry-Z10/IMAP-Issue-with-WLAN-and-PROXY-OS-10-1/m-p/2380235/highlight/true#M24019 http://supportforums.blackberry.com/t5/BlackBerry-10-OS-Device-Software/Mail-IMAP-SMTP-traffic-is-blocked-when-proxy-is-set-though-proxy/m-p/3111038/highlight/true#M16311 http://supportforums.blackberry.com/t5/BlackBerry-PlayBook/E-mail-behind-Proxy/m-p/1817891/highlight/true#M41527 maybe: http://supportforums.blackberry.com/t5/BlackBerry-Q10/IMAP-Not-work/m-p/2647853/highlight/true#M12323 maybe: http://supportforums.blackberry.com/t5/BlackBerry-Enterprise-Service-12/BES12-mail-not-sync-when-proxy-profile-is-added-to-user/m-p/3105347/highlight/true#M1613  

    Okay, this behaviour (although strange compared to "usual" proxy setting choices, e.g. in desktop operating systems or browsers) might be an explanation for the effects currently seen. This would be a good chance to extend the proxy options to a more "regular" or complete set: 1.) Add a possibility to choose which protocols are to be proxied (so e.g. IMAP could be excluded, in my opinion a proxy supporting this is even less common than rare). 2.) Add a "no proxy for these hosts" list.    

  • ECC dev to new PI sandbox to be point in ABAP proxy configuration

    Hi All ,
    We are testing ABAP proxy configuration between ECC Dev and PI new system (sand box) .
    FYI : Currently ABAP proxy configuration running fine between ECC DEV and PI DEV system .
    Now we have to testing ABAP proxy configuration between ECC Dev and PI new system (sand box) .
    Pls advise what needs to be done.
    thanks

    Dear All,
    Any relation between SLD and Abap proxy configuration ?
    FYI:
    1,ECC SLD is running fine with PI DEV sysytem (PI7.1).
    2,in ECC SAPSLDAPI RFC destination program id is pointing to PI DEV system .
    3,In Ecc LCRSAPRFC RFC destination program id is pointing to PI DEV system .
    4, PI DEV system is PI7.1
    5, PI Sandbox is PI 7.4 SP06 (note : currently we are testing all the interface , PI scenario in new sand box - it is newly upgraded PI system . )
    6.In ECC SXMB_adm -> Role of Business System -> Application system
    Corresponding Integ. Server -> dest://RFCDESTINATION (H connection type RFC created in ECC SM59.
    Below is my question.
    1, Latest PI version required H og  G type connection ?
    2, SLD (sldapicust,lcrsaprfc,sldapicust,rz70)related information needs to point to PI new upgraded dsystem for ABAP proxy testing in new sand box?
    pls advise.

  • MII proxy configuration not working

    Hello, there!
    We have an application that runs as an HTTP proxy. It should intercept messages sent from MII to another system (running on the same machine) via Web Services.
    I have configured MII ProxyHost and ProxyPort for MII, but it seems to be ignoring it. Even when I enter an invalid proxy configuration, MII manages to send the messages correctly, when it should raise a Connection Refused type of error.
    I have already tried to restart MII application.
    Does anybody have an idea on what could be happening?
    Thanks in advance!

    Hi Eduardo,
    Check the NetWeaver  Logs and post here the error mesages if any.
    White spaces are needed between public Id and system Id, check [Here|http://mobiforge.com/testing/story/fixit-valid-markup]
    There are many threads are available regarding this topic,please go through them. Some of them I've mentioned below,will help you someway to fix your issues.
    Re: Problem on MII Message Service
    Re: 407 - Proxy Authentication Required
    WebService - No Data Retruned...
    Troubleshooting webservice call / xMII-NetWeaver processing / Data Source
    Error Invoking Web Service Action: null
    -Suresh

  • What would be the command to uncheck Automatic Proxy Configuration?

    Looking for a script to uncheck the Automatic Proxy Configuration field so I don't have to touch every mac individually.
    I tried networksetup -setsocksfirewallproxystate Ethernet off which ran successfully but doesn't appear to have done anything.

    Figured it out networksetup -setautoproxystate Ethernet off

  • Hi could any one tell me if the proxy configuration is a must for file to

    hi could any one tell me if the proxy configuration is a must for file to  mail scenario

    Not needed at all.
    Proxy are used when integrating with a SAP system and in the case of a file to mail scenario all you need is a sendr file adapter and receivr mail adapter and a mail server in the same netwrok as you XI server.
    Regards
    Bhavesh

Maybe you are looking for

  • An intricate question rather than an idea: PDF structure LIVE EDITOR

    I am wondering whether Dom's outline here(1) is really impossible: For PoDoFoBrowser, I think it would be fine if you would have the preview side by side with the pages content stream. And if you type some PDF code into the content stream, like "0 0

  • Will this work with garageband?

    Hi, will this device work with garageband? http://www.behringer.com/PODCASTUDIO-FIREWIRE/index.cfm?lang=ENG It has 4 inputs, so will there be four tracks in garageband or how does that work? Regards Johannes Message was edited by: Johannes Damsgaard-

  • RAM Slot Combinations for iMac 11,3

    I have the 11,3 iMac from 2010 (27" i5). I have the default RAM, with 2GB in two slots for a total of 4GB. I have 2 more slots remaining. Can I by 2x4GB from OWC and install those in the empty slots? So I have 4 + 8 GB RAM? P.S: I'm interested in spe

  • Payment term combine with tolerance

    Dear all, I have a scenario. Is it possible if the user want to manage the payment term & combine with tolerance group? By example: If the vendor has 10 open items, which the total is an X amount. We just pay for the vendor if one of the open items i

  • Lost all Contact

    I only wanted to update my music to my iPod Touch! I decided to update Contacts too since my Address Book has some new additions. I went to iTunes > Info > Sync Contacts / Advanced (Replace info on this iPod - Contacts.  (both checked) For some reaso