Ecm11g sitestudio:insufficient access to contributor mode

hi All,
I am new comer for wcm, I am using ecm11.1.1.4 sitestudio on winxp, I enabled sitestudio,ssxa, sitestudio publisher components, I updated jdev11.1.1.4 with zip file under Oracle_ECM1\ucm\Distribution, I followed the steps in http://download.oracle.com/docs/cd/E17904_01/doc.1111/e13650/ssxa_creatingsites.htm, while when I came to the step of the following:
3.2.12 Adding a Placeholder to the Home Page
15.Click the Switch Placeholder Definition Role value, and select the admin security role from the drop-down list.
In this step, I can't find "Switch Placeholder Definition Role" in my SiteStudioDemo.xml, so I jumped over this step, but when I run the startSiteStudioDemo.jspx, press ctrl+shift+F5, login with weblogic/weblogic1, IE displayed an error message showing insufficient access to create placeholder, the wls startup console showed the following message:
================
intradoc.common.ServiceException: !csUserInsufficientAccess,weblogic
at intradoc.server.ServiceRequestImplementor.buildServiceException(Servi
ceRequestImplementor.java:2115)
at intradoc.server.Service.buildServiceException(Service.java:2260)
at intradoc.server.Service.createServiceExceptionEx(Service.java:2254)
at intradoc.server.ServiceSecurityImplementor.validateSecurityPrivilegeL
evel(ServiceSecurityImplementor.java:813)
at intradoc.server.ServiceSecurityImplementor.globalSecurityCheck(Servic
eSecurityImplementor.java:364)
at intradoc.upload.UploadSecurityImplementor.globalSecurityCheck(UploadS
ecurityImplementor.java:57)
at intradoc.server.Service.globalSecurityCheck(Service.java:2671)
at intradoc.server.ServiceRequestImplementor.doRequest(ServiceRequestImp
lementor.java:678)
at intradoc.server.Service.doRequest(Service.java:1890)
at intradoc.server.ServiceManager.processCommand(ServiceManager.java:435
at intradoc.server.IdcServerThread.processRequest(IdcServerThread.java:2
65)
at intradoc.server.IdcServerThread.run(IdcServerThread.java:160)
==========================
Since I didn't finish step 3.2.12.15 mentioned above, I doubt that was the reason for the issue, the point is why I couldn't see "Switch Placeholder Definition Role" when I edited SiteStudioDemo.xml?
Best regards

Hi Srinath,
Thank you very much for your answer.
To be sure, the issue is the following :
[localhost oracle /u01/app/oracle/product/Middleware/user_projects/domains/webcenter/bin]$ <Jan 27, 2012 6:47:16 AM PST> <Error> <HTTP> <BEA-101020> <[ServletContext@24412361[app:pocIaEnterpriseApplication module:pocIA-Project1-context-root path:/pocIA-Project1-context-root spec-version:2.5]] Servlet failed with Exception
java.lang.IllegalArgumentException: The file weblogic.jsp.wlw.util.filesystem.mds.MDSFile@1da7214 is not a source file
at weblogic.jsp.internal.CPL.addSourceFile(CPL.java:632)
at weblogic.jsp.internal.CPL.addSourceFiles(CPL.java:616)
at weblogic.servlet.jsp.JavelinxJSPStub.compilePage(JavelinxJSPStub.java:140)
at weblogic.servlet.jsp.ResourceProviderJavelinxJspStub.compilePage(ResourceProviderJavelinxJspStub.java:78)
at weblogic.servlet.jsp.JspStub.prepareServlet(JspStub.java:256)
Truncated. see log file for complete stacktrace
>
<Jan 27, 2012 6:47:16 AM PST> <Notice> <Diagnostics> <BEA-320068> <Watch 'UncheckedException' with severity 'Notice' on server 'SSXA_server1' has triggered at Jan 27, 2012 6:47:16 AM PST. Notification details:
WatchRuleType: Log
WatchRule: (SEVERITY = 'Error') AND ((MSGID = 'WL-101020') OR (MSGID = 'WL-101017') OR (MSGID = 'WL-000802') OR (MSGID = 'BEA-101020') OR (MSGID = 'BEA-101017') OR (MSGID = 'BEA-000802'))
WatchData: DATE = Jan 27, 2012 6:47:16 AM PST SERVER = SSXA_server1 MESSAGE = [ServletContext@24412361[app:pocIaEnterpriseApplication module:pocIA-Project1-context-root path:/pocIA-Project1-context-root spec-version:2.5]] Servlet failed with Exception
java.lang.IllegalArgumentException: The file weblogic.jsp.wlw.util.filesystem.mds.MDSFile@1da7214 is not a source file
at weblogic.jsp.internal.CPL.addSourceFile(CPL.java:632)
at weblogic.jsp.internal.CPL.addSourceFiles(CPL.java:616)
at weblogic.servlet.jsp.JavelinxJSPStub.compilePage(JavelinxJSPStub.java:140)
at weblogic.servlet.jsp.ResourceProviderJavelinxJspStub.compilePage(ResourceProviderJavelinxJspStub.java:78)
at weblogic.servlet.jsp.JspStub.prepareServlet(JspStub.java:256)
at weblogic.servlet.jsp.JspStub.prepareServlet(JspStub.java:216)
at weblogic.servlet.internal.ServletStubImpl.execute(ServletStubImpl.java:243)
at weblogic.servlet.jsp.ResourceProviderJspStub.execute(ResourceProviderJspStub.java:59)
at weblogic.servlet.internal.ServletStubImpl.onAddToMapException(ServletStubImpl.java:416)
at weblogic.servlet.internal.ServletStubImpl.execute(ServletStubImpl.java:326)
As JP says, I have followed the official tutorial and some configurations seem to be obsolete because I can't find it in JDeveloper.
Do you know if Oracle will publish an updated tutorial ?
Thank you,
Romain.
Edited by: 910491 on 27 janv. 2012 06:43

Similar Messages

  • IFS-30027: Insufficient access to create a SchemaObject

    I receive the following error when I to parse a XML file. IFS-
    21005 indicates, I need administrator mode. What I want know is
    this misleading and I just need to modify the ACL or does the
    administrator need grant a higher level of access?
    oracle.ifs.common.IfsException: IFS-30002: Unable to create new
    LibraryObject oracle.ifs.common.IfsException: IFS-30027:
    Insufficient access to create a SchemaObject
    oracle.ifs.common.IfsException: IFS-21005: Administrator mode is
    required for this operation
    Thanks,
    Art

    If the XML file you are uploading is specifying the creation of a
    SchemaObject (e.g. a ClassObject, ValueDomain, ClassDomain, or
    ValueDefault), the session must be in admin mode. There is no
    way to circumvent this by changing an ACL.
    regards,
    dave

  • DS6.2 Modify DN gives insufficient access

    Hi,
    When a privileged (which has full ADD/MOD/DEL access on this subtree) user does the following modify DN operation on a subtree, it gives err=50 (insufficient access) error.
    [13/Aug/2008:09:43:30 +0300] conn=5663 op=431 msgId=432 - MODRDN dn="ou=ENTERPRISE IT&SECURITY-TEST&SUPPORT, ou=ICEFG1-ENTERPRISE IT&SECURITY, ou=ICEFG1 DG, ou=ICEFG1 Modified, ou=COMPANY, ou=Groups, o=OracleTestOCChart, dc=entp,dc=tgc" newrdn="ou=ENTERPRISE IT&SECURITY-TEST&SUPPORT" newsuperior="ou=icefg1-it,ou=icefg1 dg,ou=icefg1 modified,ou=COMPANY,ou=groups,o=oracletestocchart,dc=entp,dc=tgc"
    [13/Aug/2008:09:43:30 +0300] conn=5663 op=431 msgId=432 - RESULT err=50 tag=109 nentries=0 etime=0
    But when doing the same operation with "directory manager", it completes the operation with no error.
    [13/Aug/2008:10:42:28 +0300] conn=6270 op=330 msgId=331 - MODRDN dn="ou=ENTERPRI
    SE IT&SECURITY-TEST&SUPPORT, ou=ICEFG1-ENTERPRISE IT&SECURITY, ou=ICEFG1 DG, ou=
    ICEFG1 Modified, ou=COMPANY, ou=Groups, o=OracleTestOCChart, dc=entp,dc=tgc" ne
    wrdn="ou=ENTERPRISE IT&SECURITY-TEST&SUPPORT" newsuperior="ou=icefg1-it,ou=icefg
    1 dg,ou=icefg1 modified,ou=COMPANY,ou=groups,o=oracletestocchart,dc=entp,dc=tgc
    [13/Aug/2008:10:42:28 +0300] conn=6270 op=330 msgId=331 - RESULT err=0 tag=109 n
    entries=0 etime=0
    I have "Allow the modify DN operation on non-leaf entries" is checked on DS.
    Is there a way to allow a fully priviliged user to do this operation without using "directory manager" BIND only?
    Thanks in advance,
    -Bora

    This could mean your parent entry (for example here it might be dc=entp,dc=tgc) does not have an aci granting import and export for your "privileged" user.
    here's an example aci that would allow anyone to move entries around
    aci: (targetattr=*) ( version 3.0; acl "allow modrdn"; allow(all,export,import) userdn = "ldap:///anyone";)
    try this
    ldapmodify
    changetype: modify
    add: aci
    aci: (targetattr=*) ( version 3.0; acl "allow modrdn"; allow(all,export,import) userdn = "ldap:///anyone";)
    and try again the modrdn and see if that solves your issue.
    -=arnaud=-

  • Delegated Administrator Insufficient access

    Hi,
    I'm running iPlanet Messaging Server 5.2 Patch 2 (built Jul 14 2004)
    libimta.so 5.2 Patch 2 (built 19:30:12, Jul 14 2004)
    SunOS mail 5.8 Generic_117350-02 sun4u sparc SUNW,Ultra-Enterprise
    When I try to modify something i get the following ldap error:
    [13/Oct/2005:11:36:19 +0100] conn=3785 op=9 BIND dn="uid=MailAdmin,ou=People,o=xxx.xx,o=root" method=128 version=3
    [13/Oct/2005:11:36:19 +0100] conn=3785 op=9 RESULT err=0 tag=97 nentries=0 etime=0
    [13/Oct/2005:11:36:19 +0100] conn=3785 op=10 MOD dn="uid=rlam,ou=AHP_nonstaff,o=xxx.xx,o=root"
    [13/Oct/2005:11:36:19 +0100] conn=3785 op=10 RESULT err=50 tag=103 nentries=0 etime=0
    [13/Oct/2005:11:36:19 +0100] conn=3785 op=11 BIND dn="" method=128 version=3
    [13/Oct/2005:11:36:19 +0100] conn=3785 op=11 RESULT err=0 tag=97 nentries=0 etime=0
    ldaperror-50 means Insufficient access
    The MailAdmin user is the Service Administrator.
    So, I have this questions:
    1- Which group(s) should the Service Administrator be a member of.
    2 - Is that an ACI problem? if so where can I change it?
    Hope you got enough information to help me,
    Regards

    Again, NDAdmin is the USER that Delegated Admin uses to talk to the Directory. that's the user that has rights to make the changes. NDAdmin is not a user that YOU use to log into iDA. "ServiceAdmin" is the user that normally would be used for that.
    You can locate the password that DA uses, in the resource.properties file in iDA.
    I don't understand your question, so am having a hard time answering it.
    I don't claim to be expert with Directory, or setting ACI. I suggest that before making such changes, you back theDirectory up...

  • "Directory manager" getting  "ldap_modify_s: Insufficient access"

    When I try to modify the userpassword and other attribute for an object using the "Directory manager" ID
    It giving me the error "ldap_modify_s: Insufficient access"
    As per my knowledge "Directory Manager" will have all the permission to modify all the entries in ldap.
    But why its giving me the error "ldap_modify_s: Insufficient access",
    Is there any Acl setting for "directory manager" in ldap?where?
    Thanks

    Hi Mohan,
    Can you elaborate more on the problem you are getting.
    As far as I know the error "ldap_modify_s: Insufficient access" generally will come when the server is on read-only mode.
    Regards

  • How can I set up a guest access point with a Time Capsule and an Airport Extreme? I am using a Telus router with the Time Capsule used as a wireless access point (bridge mode). I don't want the guest access point to have access to my network.

    How can I set up a guest access point with a Time Capsule and an Airport Extreme? I am using a Telus router with the Time Capsule used as a wireless access point (bridge mode). I don't want the guest access point to have access to my network.

    The Guest Network function of the Time Capsule and AirPort Extreme cannot be enabled when the device is in Bridge Mode. Unfortunately, with another router...the Telus...upstream on your network, Bridge Mode is indicated as the correct setting for all other routers on the network.
    If you can replace the Telus gateway with a simple modem (that performs no routing functions), you should be able to configure either the Time Capsule or the AirPort Extreme....whichever is connected to the modem....to provide a Guest Network.

  • Pdf hangup in Stellent UCM contributor mode

    Hey all,
    I am having a problem when I try to make a contributor change to one of my pages. I select the page then select the "Choose External URL..." layout in Manager/Contributor mode to load my pdf. Once I put in the URL and click OK, the contributor page just hangs/sits there. It won't let me click "Apply". I have to refresh the page to get the hangup to go away and repeated attempts to load this pdf (and other pdfs in different pages) all hang up. This happens even though I have the latest IE and Firefox.
    What could be causing this issue?
    Your help will be appreciated.

    The CDF can be edited and saved and does not show any wf icon.
    What do you mean by site id for the CDF? Under the metadata field websites I have set it to myWebsiteName, it is set by pressing browse and then putting a check in the box next to the website you want to assign it to. The criteria for the workflow is Field: "Account" matches value: "Customer". The Account is set to Customer on the CDF metadata field. This does kick off a workflow because I get a notification but I have to reject and approve through ucm not contributor mode.
    I have a second test site that I will try a workflow on but I am pretty sure the green icon is not working on that one either. =\

  • How do i reset admin password. no disc but system automativally logs me in as administrator and can access root user mode

    I recenly got this macbook, MA&00LL/A, max OS X, V:10.4.11, 2GHz IntelCore 2 duo, 2GHz, When I power up it automatically logs me on as administrator but prompts for password when I try to access/change certain features.  I got the macbook from my cousin who has forgot password and has lost disc.  I can access root user mode but as iam unfamiliar with apple I am hesitant to delete anything without making things worse. Is their anyway I can reset this admin password without the disc or simply delete this user and reconfigure system as myself as administrator. step by step instructions would be appreciated at this stage till i familiarize myself more.  Any help would be greatly appreciated.  If it came down to buying a disc, how much roughly do these cost???  thanks again

    If you don't have your install disks you can get the 10.4 gray disks by calling Apple Store Customer Service at 1-800-676-2775 They can send them to you for about $16 per disk plus S & H. Just give them your serial number and they'll know which ones you need.
    To find your serial number go to the Apple in the upper left corner and select About This Mac, then click on More Info, the System Profiler will then come up. The Serial Number (System) is down near the bottom of the Hardware Overview list.
    If you don't have your install disc handy,then follow these steps
    1. Start up in single-user mode (hold Command-S as thecomputer starts up).
    2. Type: mount -uw /
    3. Press Return.
    4. Type this: passwd (user's short name) Replace "(user's shortname)" with the short name of the user account whose password you wish to reset. If you are not sure what the account name is, you can get a list of usernames by typing: ls /Users
    5. Press Return.
    6. Enter a new user password.
    7. Press Return.
    8. Type: reboot
    9. Press Return.

  • Error while configuring SSL in OID 11g - LDAP 50 Insufficient Access rights

    HI,
    I am trying to configure SSL in OID 11g.As per the doc http://download.oracle.com/docs/cd/E12839_01/oid.1111/e10029/ssl.htm#CBHGBGAF ,i tried creating a Self-Signed Wallte using Fusion Middleware control,But i am getting an error LDAP 50: Insufficient access rights".I logged into Fusion Middle Ware control as Weblogic user.Is anybody faced this issue?.Thanks in advance.

    I am not sure how you tried, but I would recommend to do the following...
    1. Add the 'user1' to "OU=Franchisees,ou=People,dc=company,dc=com"
    2. Delete the 'user1' from 'OU=Internal,ou=People,dc=company,dc=com'

  • Using a Report Filter without giving users access to "Design" mode

    I have a report in which I use the filter bar to provide my end users the ability to use a drop down menu to switch between different months worth of data.  However, I have been asked to disable the ability for users to access the Design mode.  I have been unable to come up with the right security settings to allow the report filter while disabling the Design mode.  Does anyone have any suggestions to this problem?
    BO XI 4.0 Patch 9
    Thanks very much for your help

    Hi,
    I'm familiar with your issue - described here BO4 navigate the available object in READING MODE in webi
    and also here: Hide/Disable DESIGN MODE on WebI (BI4)
    I've every reason to believe this is currently not possible. You may want to vote on the existing Enhancement Requests in Ideas Place, or create your own
    Regards,
    H

  • Portal LDAP permission problems: Login causing "Insufficient access"

    Hello,
    We have OID / Portal / 10gAS version 9.0.4.1 in development and production. We are using the 10gAS as a J2EE webapp server and the OID server as an LDAP server. Portal was working, but we had to make modifications to the default ACP's in OID for our DIT to be secure.
    Bottom line:
    Logging in as a user to portal yields:
    " Unexpected error encountered in wwsec_app_priv.process_signon (User-Defined Exception) (WWC-41417)
    An exception was raised when accessing the Oracle Internet Directory: 50: Insufficient access
    Details
    Operation: dbms_ldap_utl.get_group_membership. (WWC-41743)
    Looking back at the ACL trace yields the following:
    BEGIN
    2004/12/10:08:57:25 * ServerWorker:4 * ConnID:31 * OpId:1 * OpName:search
    gslsfbiDumpSubscribedGroups: Op. ID: <1> Subscribed Orclprivilege Groups for the user DN: <orclapplicationcommonname=portal.040405.1647,cn=portal,cn=products,cn=oraclecontext>
    08:57:25 * Op. ID: <1> Group0 for the user DN:<cn=authenticationservices,cn=groups,cn=oraclecontext>
    08:57:25 * Op. ID: <1> Group1 for the user DN:<cn=userproxyprivilege,cn=groups,cn=oraclecontext>
    08:57:25 * Op. ID: <1> Group2 for the user DN:<cn=oracledascreateuser,cn=groups,cn=oraclecontext>
    08:57:25 * Op. ID: <1> Group3 for the user DN:<cn=oracledascreategroup,cn=groups,cn=oraclecontext>
    08:57:25 * Op. ID: <1> Group4 for the user DN:<cn=common group attributes,cn=groups,cn=oraclecontext>
    08:57:25 * Op. ID: <1> Group5 for the user DN:<cn=oracledasconfiguration,cn=groups,cn=oraclecontext,dc=tekelec,dc=com>
    08:57:25 * Op. ID: <1> Group6 for the user DN:<cn=authenticationservices,cn=groups,cn=oraclecontext,dc=tekelec,dc=com>
    08:57:25 * Op. ID: <1> Group7 for the user DN:<cn=userproxyprivilege,cn=groups,cn=oraclecontext,dc=tekelec,dc=com>
    08:57:25 * Op. ID: <1> Group8 for the user DN:<cn=oracledascreateuser,cn=groups,cn=oraclecontext,dc=tekelec,dc=com>
    08:57:25 * Op. ID: <1> Group9 for the user DN:<cn=oracledascreategroup,cn=groups,cn=oraclecontext,dc=tekelec,dc=com>
    08:57:25 * Op. ID: <1> Group10 for the user DN:<cn=common group attributes,cn=groups,cn=oraclecontext,dc=tekelec,dc=com>
    08:57:25 * gslsfbiDumpSubscribedGroups: Op. ID: <1> Subscribed Orclacp Groups for the user DN: <orclapplicationcommonname=portal.040405.1647,cn=portal,cn=products,cn=oraclecontext>
    08:57:25 * gslfacZEvaluate_Filter:Operation id:(1) Entry DN:(uid=saitken,cn=users,dc=tekelec,dc=com)
    08:57:25 * gslfacZEvaluate_Filter: Operation id:(1) User DN: (orclapplicationcommonname=portal.040405.1647,cn=portal,cn=products,cn=oraclecontext)
    08:57:25 * gslfacZEvaluate_Filter:Operation id:(1) Visiting ACP at: (cn=users,dc=tekelec,dc=com)
    08:57:25 * gslfacZEvaluate_Filter:Operation id:(1) Filter Accees denied by ACP: (cn=users,dc=tekelec,dc=com)
    08:57:25 * gslfacZEvaluate_Filter:Operation id:(1) User being Privileged group member, Evaluation continues
    08:57:25 * gslfacZEvaluate_Filter:Operation id:(1) Visiting ACP at: (dc=tekelec,dc=com)
    08:57:25 * gslfacZEvaluate_Filter:Operation id:(1) Visiting ACP at: (dc=com)
    08:57:25 * gslfacZEvaluate_Filter:Operation id:(1) Filter Accees denied by ACP: (dc=com)
    08:57:25 * gslfacZEvaluate_Filter:Operation id:(1) User being Privileged group member, Evaluation continues
    08:57:25 * gslfacZEvaluate_Filter:Operation id:(1) Visiting ACP at: (cn=root)
    08:57:25 * gslfacZEvaluate_Filter:Operation id:(1) Filter Accees denied by ACP: (cn=root)
    08:57:25 * gslfacZEvaluate_Filter:Operation id:(1) User being Privileged group member, Evaluation continues
    08:57:25 * gslfacZEvaluate_Filter: Op id:(1) Filter Access to entry (uid=saitken,cn=Users,dc=tekelec,dc=com) not allowed
    08:57:25 * INFO: gslfrsDSendSearchEntry : Access to filter attributes not allowed
    END
    The interpretation of this is that the service account "(orclapplicationcommonname=portal.040405.1647,cn=portal,cn=products,cn=oraclecontext)" does not have sufficient privileges to "Op id:(1) Filter Access to entry" or, "Browse the entry" with the DN "uid=saitken,cn=Users,dc=tekelec,dc=com". This is the user I am attempting to log in as.
    The current ACP entries against the "users" container that is causing the deny.. "Filter Accees denied by ACP: (cn=users,dc=tekelec,dc=com)" seems to be the problem.
    The real issue is that "entry level" access should be possible by all users in the system. The ACP entries I have on the 'users' entry / container is as follows:
    - orclaci: access to entry by self (browse)
    - orclaci: access to entry filter=(objectclass=tekuser) by * (browse) by group="cn=service accounts,cn=groups,dc=tekelec,dc=com" (browse,delete) by group="cn=it - user admins,cn=groups,dc=tekelec,dc=com" (browse,delete)
    - orclaci: access to entry filter=(objectclass=inetorgperson) by group="cn=oracledascreateuser, cn=groups,cn=OracleContext,dc=tekelec,dc=com" added_object_constraint=(objectclass=orcluser*) (browse,add) by group="cn=oracledasdeleteuser, cn=groups,cn=OracleContext,dc=tekelec,dc=com" (browse,delete) by group="cn=oracledasedituser, cn=groups,cn=OracleContext,dc=tekelec,dc=com" (browse) by group="cn=UserProxyPrivilege, cn=Groups,cn=OracleContext,dc=tekelec,dc=com" (browse, proxy) by dn="orclApplicationCommonName=DASApp, cn=DAS, cn=Products,cn=oraclecontext" (browse,proxy) by self (browse, nodelete, noadd) by group="cn=Common User Attributes, cn=Groups,cn=OracleContext,dc=tekelec,dc=com" (browse)
    All users under the "Users" container are of objectclass 'tekuser'. The last ACP point was massaged from the original install of Portal.
    The real clincher that I don't understand is that the single entry "access to entry filter=(objectclass=tekuser) by * (browse)" should be allowing browse access to my entry to everyone! (Including the service account for portal!)
    So, as I wind around this ball of wax, I deparately seek assistance. I understand the complexities of ACP's and know of a few problems, but nothing that would cause this.
    Does anyone have any insight? Any feedback is greatly appreciated!
    The best thing that I could have right now would be a spec (or requirements) of permission configuration against an LDAP server (or OID) for Portal to perform it's normal tasks. Unfortunately, I have yet to find any docos on ACL requirements of Portal. :(
    -Sean

    Sean: Did you find an answer to your issue. We seem to be experiencing the same issue here - but not much help for the Error - WWC-41743.
    Error Text - Operation: dbms_ldap.modify_s
    Entry DN: cn=AUTHENTICATED_USERS,cn=portal.050125.132734.548814000,cn=groups,dc=us,dc=deloitte,dc=com
    Changes
    uniquemember: Add: cn=invcm1,cn=users,dc=us,dc=deloitte,dc=com.
    Would appreciate any help. You can send mail to [email protected]
    Thank you again!
    Shomic

  • Dp* commands failed w/ SMSLdapObject: insufficient access rights to access

    My dpadmin list/modify fails to execute. The amSMS log is below. What aci I lost? Any help is appreciated.
    Regards
    11/20/2005 03:17:15:659 AM MST: Thread[main,5,main]
    SMSEntry: cache enabled: true
    11/20/2005 03:17:16:023 AM MST: Thread[main,5,main]
    SMSLdapObject: LDAP Initialized successfully
    11/20/2005 03:17:16:349 AM MST: Thread[main,5,main]
    Initialized LDAPEvent listner
    11/20/2005 03:17:16:412 AM MST: Thread[main,5,main]
    CachedSubEntries::getInstance DN: ou=DAI,ou=services,dc=sun,dc=com
    11/20/2005 03:17:16:432 AM MST: Thread[main,5,main]
    CachedSMSEntry::getInstance: ou=DAI,ou=services,dc=sun,dc=com
    11/20/2005 03:17:16:441 AM MST: Thread[main,5,main]
    SMSLdapObject.read() retry: 0
    11/20/2005 03:17:16:451 AM MST: Thread[main,5,main]
    WARNING: SMSLdapObject: insufficient access rights to access DN=ou=DAI,ou=services,dc=sun,dc=com
    11/20/2005 03:17:16:461 AM MST: Thread[main,5,main]
    ERROR: CachedSubEntries: unable to register for notifications:
    Message:The user does not have permission to perform the operation.
    at com.sun.identity.sm.ldap.SMSLdapObject.read(SMSLdapObject.java:231)
    at com.sun.identity.sm.SMSEntry.read(SMSEntry.java:334)
    at com.sun.identity.sm.SMSEntry.read(SMSEntry.java:326)
    at com.sun.identity.sm.SMSEntry.<init>(SMSEntry.java:162)
    at com.sun.identity.sm.CachedSMSEntry.getInstance(CachedSMSEntry.java:307)
    at com.sun.identity.sm.CachedSubEntries.<init>(CachedSubEntries.java:72)
    at com.sun.identity.sm.CachedSubEntries.getInstance(CachedSubEntries.java:204)
    at com.sun.identity.sm.ServiceManager.getVersions(ServiceManager.java:409)
    at com.sun.identity.sm.ServiceManager.serviceDefaultVersion(ServiceManager.java:427)
    at com.sun.identity.sm.ServiceConfigManager.<init>(ServiceConfigManager.java:94)
    at com.iplanet.am.sdk.AMCommonUtils.populateManagedObjects(AMCommonUtils.java:497)
    at com.iplanet.am.sdk.AMCommonUtils.<clinit>(AMCommonUtils.java:113)
    at com.iplanet.am.sdk.AMStoreConnection.<clinit>(AMStoreConnection.java:141)
    at com.sun.portal.desktop.context.DSAMEConnection.<init>(DSAMEConnection.java:89)
    at com.sun.portal.desktop.context.DSAMEAdminDPContext.init(DSAMEAdminDPContext.java:110)

    - what's the complete command ?
    - which user is used ?
    /ulf

  • SMSLdapObject: insufficient access rights to access

    The dpadmin command failed w/ SMSLdapObject: insufficient access rights to access. The amSMS log is below. What aci did I lose? Any help is appreciated.
    Regards
    11/20/2005 03:17:15:659 AM MST: Thread[main,5,main]
    SMSEntry: cache enabled: true
    11/20/2005 03:17:16:023 AM MST: Thread[main,5,main]
    SMSLdapObject: LDAP Initialized successfully
    11/20/2005 03:17:16:349 AM MST: Thread[main,5,main]
    Initialized LDAPEvent listner
    11/20/2005 03:17:16:412 AM MST: Thread[main,5,main]
    CachedSubEntries::getInstance DN: ou=DAI,ou=services,dc=sun,dc=com
    11/20/2005 03:17:16:432 AM MST: Thread[main,5,main]
    CachedSMSEntry::getInstance: ou=DAI,ou=services,dc=sun,dc=com
    11/20/2005 03:17:16:441 AM MST: Thread[main,5,main]
    SMSLdapObject.read() retry: 0
    11/20/2005 03:17:16:451 AM MST: Thread[main,5,main]
    WARNING: SMSLdapObject: insufficient access rights to access DN=ou=DAI,ou=services,dc=sun,dc=com
    11/20/2005 03:17:16:461 AM MST: Thread[main,5,main]
    ERROR: CachedSubEntries: unable to register for notifications:
    Message:The user does not have permission to perform the operation.
    at com.sun.identity.sm.ldap.SMSLdapObject.read(SMSLdapObject.java:231)
    at com.sun.identity.sm.SMSEntry.read(SMSEntry.java:334)
    at com.sun.identity.sm.SMSEntry.read(SMSEntry.java:326)
    at com.sun.identity.sm.SMSEntry.<init>(SMSEntry.java:162)
    at com.sun.identity.sm.CachedSMSEntry.getInstance(CachedSMSEntry.java:307)
    at com.sun.identity.sm.CachedSubEntries.<init>(CachedSubEntries.java:72)
    at com.sun.identity.sm.CachedSubEntries.getInstance(CachedSubEntries.java:204)
    at com.sun.identity.sm.ServiceManager.getVersions(ServiceManager.java:409)
    at com.sun.identity.sm.ServiceManager.serviceDefaultVersion(ServiceManager.java:42 7)
    at com.sun.identity.sm.ServiceConfigManager.<init>(ServiceConfigManager.java :94)
    at com.iplanet.am.sdk.AMCommonUtils.populateManagedObjects(AMCommonUtils.java:497)
    at com.iplanet.am.sdk.AMCommonUtils.<clinit>(AMCommonUtils.java:113)
    at com.iplanet.am.sdk.AMStoreConnection.<clinit>(AMStoreConnection.java:141)
    at com.sun.portal.desktop.context.DSAMEConnection.<init>(DSAMEConnection.jav a:89)
    at com.sun.portal.desktop.context.DSAMEAdminDPContext.init(DSAMEAdminDPContext.jav a:110)

    - what's the complete command ?
    - which user is used ?
    /ulf

  • Orcladmin: "Insufficient access right to perform action" using oidadmin

    After sucessfully installing OID from 8.1.7 CD on Sun Solaris 8
    (SPARC) I can start the monitor and the oidldap. After
    sucessfully connecting with orcladmin using oidadmin I always get
    the same error (either using oidadmin on windows or solaris) when
    accessing "entry management", "schema management" or "audit log
    management":
    Insufficient access right to perform action.
    but the default ACP allows everyone (browse add delete)
    anyone else had the same problem?
    I tried to create the name server with OID with netca which
    obviously does not work either.

    Hi Christian:
    You say that you conencted to OID as "oidadmin". Since OID does
    not have any user account called "oidadmin" you were probably
    conencted as an anonymous user. If you are trying to connect as
    the administrator of OID the correct user account name is
    "orcladmin" with a default password of welcome. Try this and let
    me know if you sitll have troubles.
    Thanks,
    Jay Tomlinson

  • Guest access in bridge mode

    I want to set up a secure wireless network in our small office that will also allow clients to access the internet while in our waiting area. I also want to maintain our current wired network, which is connected to the internet through a Nortel router, connected to a DSL modem. Where would the Airport extreme be installed? - i.e., upstream or downstream from the router? Also, looking over Apple's network documentation, it appears that the Airport Extreme would be in Bridge mode when configured on an existing ethernet network with router, but the documentation is clear on the issue of setting up guest access in this kind of configuration.
    In case you have not guessed, I am not an IT guy, so will be grateful for any helpful suggestions

    Blind Lemon wrote:
    I want to set up a secure wireless network in our small office that will also allow clients to access the internet while in our waiting area. I also want to maintain our current wired network, which is connected to the internet through a Nortel router, connected to a DSL modem. Where would the Airport extreme be installed? - i.e., upstream or downstream from the router? Also, looking over Apple's network documentation, it appears that the Airport Extreme would be in Bridge mode when configured on an existing ethernet network with router, but the documentation is clear on the issue of setting up guest access in this kind of configuration.
    Guest access and bridge mode are incompatible on AirPort base stations. I'd connect an AirPort Extreme to your DSL modem, connect your wired network connections to the Ethernet ports of the AirPort Extreme, and take the Nortel router out of service. Depending on how many wired connections you need, you may also need an Ethernet switch. Besides the WAN port, an AirPort Extreme only has three available Ethernet ports.

Maybe you are looking for