Email profile uses Device Enrollment Manager user?
Hello,
I have an iOS device that was enrolled via the Apple Device Enrollment Program, using a Device Enrollment Manager account, and I have since deployed an email profile configuration policy to it. After it received the policy now the account
of the Device Enrollment Manager is locked in as the user in the email profile. Is that normal behavior? I thought that enrolling a device using a user who is a member of the Device Enrollment Management group would leave the device open for another
user?
Thanks!
Hello, I was looking through TechNet a little more about this and unless I'm reading this wrong, which is certainly possible, it seems to suggest that you should be able to access company data as the end user using CYOD enrollment or a device enrollment
manager enrollment scenario:
User affiliation – Specifies how devices are enrolled.
Prompt for user affinity – The device can be affiliated with a user during initial setup and could then be permitted to access company data and email as that user. This mode supports a number of scenarios:
Corporate-owned personal device – “Choose Your Own Device” (CYOD) Similar to privately owned or personal devices but the administrator has certain privileges including permission to wipe, reset, administer, and unenroll the device. The
device’s user can install apps and has most other permissions for device use where not blocked by management policy.
Device enrollment manager account – The device is enrolled using a special Intune administrator account. It can be managed as a private account, but only a user who knows the enrollment manager credentials can install apps, wipe, reset,
administer, and unenroll the device. For information about enrolling a device shared by many users through a common account, see
Enroll corporate-owned devices with the Device Enrollment Manager in Microsoft Intune.
No user affinity – The device is user-less. Use this affiliation for devices that perform tasks without accessing local user data. Apps requiring user affiliation are disabled or won’t work.
With this in mind, since accessing corporate data as the user is supported with CYOD and device enrollment manager, I can't imagine that the intention of the device enrollment managers (DEM) group was designed so when a device is enrolled with a DEM
user that only data for that DEM user is available, right? That just wouldn't make sense. Also, if enrolling a device using a DEM user account is only for devices that don't need access to corporate data, then what's the difference between enrolling
a device using a DEM user, or enrolling a device with "No user affinity"? Also, when I've enrolled a device using a DEM account, I was later easily able to install apps with no prompt for DEM credentials, TechNet seems to imply that credentials
are needed for functions like that. Shouldn't something have asked me for permission to install an app?
Similar Messages
-
Device Enrollment Manager and Bulk Enrollment with Apple Configurator
Hello,
Regarding the Device Enrollment Manager and Bulk Enrollment with Apple Configurator features released with Microsoft Intune in november/december 2014:
When will these features be available for the Intune hybrid parity? (Intune + SCCM 2012 R2)
We would really like to utilize the Device Enrollment Manager user account for shared device scenarios and the bulk enrollment feature to deploy multiple IOS devices to classroom iPads but we are "on hold" for now until these features will be released
for the hybrid parity version of Intune.
https://technet.microsoft.com/nb-no/library/dn764961.aspx
https://technet.microsoft.com/nb-no/library/dn764958.aspxThere is no information available about when new features will be released. Probably this will be available in either a future CU, or vNext. Looking at the possible impact of that change, I would guess vNext.
My Blog: http://www.petervanderwoude.nl/
Follow me on twitter: pvanderwoude -
Using smc to manage users in a different container or suffix
I am running Sun directory server 6.2 on Solaris 10. (This was a migration from DS 5.2.) When I initially set up the directory server, the default suffix was "dc=mydomain,dc=com." I later created a new top-level container (suffix) called "o=mydomain.com."
I am attempting to use smc to manage users. As per the following docs:
http://www.sun.com/bigadmin/content/misc/smc20_faq.html
SMC 2.0 Frequently Asked Questions
http://docs.sun.com/app/docs/doc/819-7314/6n994bt7i?a=view
(SolarisTrustedExtensions InstallationandConfiguration)
I did the following:
# /usr/sadm/bin/dtsetup storeCred
Administrator DN:cn=Directory Manager
Password:xxxxxx
Password (confirm):xxxxxx
# /usr/sadm/bin/dtsetup scopes
Getting list of managable scopes...
Scope 1 file:/myserver.mydomain.com/myserver.mydomain.com
Scope 2 ldap:/myserver.mydomain.com/dc=mydomain,dc=com
# svccfg -s wbem setprop options/tcp_listen=true
# svcadm disable wbem
# svcadm enable wbem
I can create a toolbox in smc to manage LDAP users under dc=mydomain,dc=com but no where else. How can I configure my scopes? How can I change the default suffix? Where does dtsetup read its config? The directory server is not configured as an LDAP client.
(This was never an issue with DS 5.2 which had, in my opinion, a more feature rich console when it came to adding users.)
ThanksHi,
in regards of option 3, this is a standard scenario supported by SAP provisioning framework. You would also get additional benefits from IdM but cost will be higher.
in step 2 you could create empty role for each ECC role and assign it to positions. The background program in ECC would read all role assignments and replicate them in ECC. A good naming convention to identify HR and ECC roles would be really helpful in this case.
Cheers -
Howto monitor a DPS wihtout using the proxy manager user by ldapsearch
Hi,
I want to provide some monitoring scripts to our monitoring team, but don't want to give them the Proxy manager user credentials to bind to the cn=monitor tree.
I was wondering if there is some kind of work-around for this.
I tried to create a datasource that references localhost, but that doesn't seem to work ... Or I'm failing to do so.
Anyone get a clue ?
DPS v6.3.1
regards,
VincentAssuming that your middle tier is using a connection pool (the norm), the problem is that there is no relationship between a particular user's logical session and a physical database session. Each page the user hits in the application, for example, is potentially going to use a different connection from the connection pool and thus a different database session. And different users may be using the same database session just before and just after your user.
In general, when you have this sort of architecture, you need to have instrumentation built into the middle tier application in order to get anything useful done, at least to the point that the middle tier can enable and disable tracing when it gets a connection from the pool for a particular logical user session. Otherwise, you could enable tracing for the entire database, which is going to be a significant overhead, and try to comb through dozens of trace files to figure out what sessions were related to your particular user, which is at a minimum likely to be a substantial undertaking.
Justin -
Group Policy question about setting Start menu items using devices and not users
I am using Windows Server 2003 and Windows Server 2008 R2 servers set up for use as Active Directory Servers.
What I am trying to do is lock down thin clients start menu options and I have been able to get this to work down to the user level. However, what I want to do is have it locked down on the machine level.
We have multiple users that use both "Thin Clients" with Windows 7 Embedded and we also have them using other PC's with using the same log in.
So, for example when you create an OU for "Thin Clients", I want thin client devices in there and when people log in to these thin clients then the start menu will be locked down. I want this to be user independent and thus I don't want Users
in the OU, but I want to lock down the start menu.
How can I do this with Group Policy Objects on a domain level?Hi,
you could achieve this using GPO loopback processing. It was designed for the purpose of applying settings from user GPO to a certain group of computers.
http://technet.microsoft.com/en-us/library/cc978513.aspx
MCP/MCSA/MCTS/MCITP -
Using owa_cookie to manage user browser sessions
Hi,
I need to build a check in my HTMLDB application that rejects user from logging in multiple times.
There have been several threads and discussions regarding the concept of "active" user session, and from what I gather, in general there is no way to capture the action of closing the browser by simply hitting the close button in IE. (Please correct me if I'm wrong)
I am wondering if it is possible to use a session cookie to do this? Since a session cookie is automatically removed on closing the browser, can you build an application level process (fired upon authentication) that checks for cookie existence, and rejects login if there is already a cookie (ie. if there is another browser window open)?
I have tried this by having an application level process similar to this:
DECLARE
return_cookie owa_cookie.cookie;
current_session_num PLS_INTEGER;
BEGIN
return_cookie := owa_cookie.get('test');
current_session_num := return_cookie.vals(1);
IF current_session_num = 1 THEN
/* CODE TO REJECT LOGIN */
END IF;
EXCEPTION
WHEN no_data_found THEN
owa_util.mime_header('text/html', FALSE);
owa_cookie.send (name => 'test'
,value => 1
owa_util.http_header_close();
But it doesn't seem to work, it always goes to the exception block no matter how many browser windows I have open.
Any thoughts?
Thanks,
IvanIvan,
Is there a reason you are putting this cookie code in an application level process rather than in the authentication scheme? Scott Spadafore will correct me if I'm wrong, but I fairly certain that that's where you want to put any authentication related logic.
Sergio -
Import a filed value from custom database into User Profile using BCS
Hi,
I have a custom DB in SQL with couple of columns.
I need to import one of the fields (userid) into user profile - custom property.
Please guide me to make it done.
My direction seems wrong..since I am new to user profile-BCS concepts.
I created a custom property in user profile services, while "configure synchronization connections', I clicked on new connection.
Type: Business connectivity services, selected
It needs external content type.
I opened CA through designer, clicked on External Content type, I am able to connect SQLDB and related fields.
But, I am not sure what to be done?? How to make my task completed.
Guide me, somebody, please!!
- GEMThis should create the External Content Type
Open SharePoint Designer
Choose the Site where you want the External Content Type to be created
Under Site Objects -> Click External Content Types
In the Ribbon -> Click External Content Types to create a New one
Provide a name for your ECT
Click ‘Click here to discover external data sources and define operations’
Click Add Connection, under Data Source Type choose SQL Server
Provide the connection properties to your SQL Server
Under Data Source Explorer, Expand the tables folder and choose the table you want to connect to
Right Click the Table Name and create a New Read Item Operation
Under Input Parameters, Select the Primary Key of your table and verify that it is map as the identifier. This is important as this will be the column that will be used to sync BCS data to SharePoint. Click on Finish
Right Click the Table Name again and create a New Read List Operation. Follow the steps on K
OPTIONAL: Once done you can create an external Lists based on the content type to verify if you are able to pull data from your External Source
You can verify if the list is created by going to the site where you have deployed the External List. If you encounter a “Access denied by Business Data Connectivity, you can resolve this by going to Central Administration -> Application Management ->
Manage Service Applications -> Business Data Connectivity Service, choose the External Content Type you have created -> Click Set Object Permissions -> Add the account that your are using and Set ‘Execute & Set Permissions’. Refresh the external
list page.
This will create the connection between the BCS properties and the Custom User Properties which are mapped to BCS.
To create a synchronization connection follow the steps below
Go to Application Management -> Manage Service Application -> User Profile Service -> Configure Synchronization Connections
Click Create new Connection
Provide a connection name for your connection
Under Type, choose Business Data Connectivity
Under Business Data Connectivity Entity, choose the External Content Type created on the BCS Step
Choose the property to identity the 1:1 mapping, this is a unique column that should exist on both the BCS Data and the SharePoint User Profile Properties.
This part will create the Custom User Profile Property to hold the BCS Data
Go to Central Administration
Under Application Management click Manage Service Application
Click User Profile Service Application
Click Manage User Properties then select New Property
Fill the necessary fields
Under Add New Mapping, select the BCS Sync connection you have created above and the field from SQL where you want to map this property
Run Profile Synchronization
Artificial intelligence can never beat natural stupidity. -
Devices enroll but do not appear in the Devices section in Profile Manager
Hi,
I am able to download and install the enrollment file, and when I check the devices enrolled by a user I can see the device attached to that users name, but when I click the link arrow next to the device name or go into the devices page, the device doesn't appear. Anyone have a solution for this? It's preventing me from managing any devices as it appears as if they are not there. I also notice that the Enroll button is still there in "my devices" after successful enrollment.
Thanks,
David.Just in case anyone else get's this issue I managed to fix it by first enrolling the device then entering a place holder for the device in profile manager using that devices serial number. Then it seems to recognise the device
-
Hi There,
I have added an email address to a user in the SP Manage User Profile.
When I go to my app and search/select the user to assign against a task, no email address is shown in the peoplepicker window.
One thing, the users Display Name as "Server\Username" rather than the Display Name of Bob Smith for example.
This is a non Active Directory Environment on SharePoint 2010.
Can anyone help?
Thanks in advance!People picker does not query the User Profile Service when resolving a name. You need a custom claims provider for that. See details here:
http://technet.microsoft.com/en-us/library/gg602078(v=office.14).aspx
There is a timer job (user profile service quick sync) that runs every 15 minutes or maybe 10 minutes, don't remember the interval without looking, against the site collection that will sync from the UPS, but you are stuck with whatever is in site collection
users until then, which will be nothing until the user profile service quick sync job runs. -
Hello!
Staff of E4 Group JSC use Apple devices for call, reading email and calendars. When the user open event in calendar of iPhone or iPad, he does not see attachments (picture №1, picture №2). But it is possible on Blackberry (picture №3). How user of Apple can see these attachments? Recommend please any apps for it.Hello!
Staff of E4 Group JSC use Apple devices for call, reading email and calendars. When the user open event in calendar of iPhone or iPad, he does not see attachments (picture №1, picture №2). But it is possible on Blackberry (picture №3). How user of Apple can see these attachments? Recommend please any apps for it. -
The Ultimate Guide to Resolving Profile and Device Manager Issues
The following article also applies to issues after re-setting the severs' hostname. It also applies to situations where re-setting the Code Signing Certifictateas described by Apple has not resolved the issue.
Hello,
I have been plagued with Profile Manager and Device Manager issues since day one.
I would like to share my experience and to suggest a way how to resolve issues such as device cannot be enrolled or Code Signing Certificate not accepted.
I shall try to be as brief as possible, just giving an overview of the steps that resolved my issues. The individual steps have been described elsewhere in this forum. For users who have purchased commercial SSL certs the following may not apply.
In my view many of these issues are caused by missing or faulty certificates. So let us first touch on the very complex matter of certificates.
Certificates come in many flavours such as CA (Certificate Authority), Code Signing Certificate, S/MIME and Server Identification.
(Mountain?) Lion Server creates a so-called Intermediate CA certificate (IntermediateCA_hostname_1") and Server Identification Certificate ("hostname") when it installs first. This is critical for the operation of many server functionalities, including Open Direcory. These certs together with the private/public keys can be found in your Keychain. Profile and Device Manager may need a Code Signing Certificate.
The most straightforward way to resolve the Profile Manaher issues is in my view to reset the server created certicates.
The bad news is that this procedure involves quite a few steps and at least 2 hours of your precious time because it means creating a fresh Direcory Master.
I hope that I have not forgotten to mention an important step. Readers' comments and addenda are welcome.
I shall outline a sensible strategy:
1. Clone your dysfunctional server to an external harddrive (SuperDuper does a reliable job)
2. Start the server fom the clone and shut down ALL services.
3. It may be sensible to set up a root user access.
4. Back-up all user data such as addess book, calendar and other data that you *may* need to set up your server.
5. Open Workgroup Manager and export all user and workgroup accounts to the drive that you using to re-build your server (it may cause problems if you back-up to an external drive).
6. Just in case you may also want to back-up the Profile Manager database and erase user profiles:
In Terminal (this applies to Lion Server - paths may be diferent in Mountain Lion !)
Backup: sudo pg_dump -U _postgres -c device_management > $HOME/device_management.sql
Erase database:
sudo /usr/share/devicemgr/backend/wipeDB.sh
7. Note your Directory (diradmin) password for later if you want to re-use it.
8. Open Open Server Admin and demote OD Master to Standalone Directory.
9. In Terminal delete the old Certificate Authority
sudo rm -R /var/root/Library/Application\ Support/Certificate\ Authority/
This step is crucial because else re-building you OD Master will fail.
9. Go back to Server Admin and promote the Standalone Directory to OD Master. You may want to use the same hostname.
10. When the OD Master is ready click on Overview and check that the LDAP and Keberos Realm reflect your server's hostname.
11. Go back to Workgroup Manager and re-import users and groups.
NOTE: passwords are not being exported. I do not know how to salvage user passwords. (Maybe passwords can be recovered by re-mporting an OD archive - comments welcome! ).
12. Go to Server App and reset passwords and (not to forget) user homefolder locations, in particular if you want to login from a network account!
If the home directory has not been defined you cannot login from a network account.
13. You may now want to restore Profile Manager user profiles in Terminal. Issue the following commands:
sudo serveradmin stop devicemgr
sudo serveradmin start postgres
sudo psql -U _postgres -d device_management -f $HOME/device_management.sql
sudo serveradmin start devicemgr
14. You can now switch back on your services, including Profile Manager.
In Profile Manager you may have to configure Device Management. This creates a correct Code Signng Certicate.
15. Check the certificate settings in Server App -> Hadware -> Settings-> SSL Certificates.
16. Check that Apple Push Notifications are set.(you easily check if they are working later)
17. You may want to re-boot OS Server from the clone now.
18. After re-boot open Server App and check that your server is running well.
19. Delete all profiles in System Preferences -> Profiles.
19. Login to Profile Manager. You should have all users and profiles back. In my experience devices have to be re-enrolled before profiles can be pushed and/or devices be enrolled. You may just as well delete the displayed devices now.
20. Grab one of your (portable) Macs that you want to enrol and go to (yourhostname)/mydevices and install the server's trust profile. The profile's name should read "Trust Profile for...) and underneath in green font "Verified".
21. Re-enrol that device. At this stage keep your finger's crossed and take a deep breath.
22. If the device has been successfully enrolled you may at last want to test if pushing profiles really works. Login to Profile Manager as admin, select the newly enrolled device. Check that Automatic Push is enabled (-> Profile -> General). Create a harmless management profile such as defining the dock's position on the target machine. (Do not forget to click SAVE at the end - this is easily missed here). If all is well Profile Manager will display an active task (sending) and the dock's position on the target will have changed in a few seconds if you are on a LAN (Note: If sending seems to take forever: check on the server machine and/or on your router that the proper ports are open and that incoming data is not intercepted by Little Snitch or similar software).
Note: if you intend to enrol an Apple iPhone you may first need to install the proper Apple Configuration software.
Now enjoy Profile and Device Manager !
Regards,
TwistanHI
1. In Action profiles, logon to system and recheck correcion are available in action definition as well in condition configuration and the schedule condition is also maintained. but the display is not coming(i.e in the worklist this action is not getting displayed).
You can check the schedule condition for the action and match the status values...or try recreating the action with schedule condition again....for customer specific ....copy the standard aciton with ur zname and make a schedule condition and check the same.
2, In suppport team of incident when i give individual processor it throwing a warning that u r not the processor. but when i give org unit it is working perfectly. Could anyone guide on this.
You need to have the empolyee role for BP ..goto BP and got here dropdown for ur bp and choose role Employee and then enter ur userid
also make sure that u have the message processing role
Hope it clarifies ur doubt and resolve ur prob
Regards
Prakhar -
i am new to icloud. i would like to manage all our household email accounts through icloud. i currently use gmail. is there a way to route all gmail messages through an icloud email so i do not have to change my email address? also how do i create multiple email accounts using the same apple id?
thanks all.
MikeNo, iCloud does not handle 3rd party mail, and Google can already sync to all your devices without any help.
iCloud accounts are individual, there is no 'Family' account. Open an account for each user, each will have an iCloud address. -
Error when trying to Manage 'User Profile Service Application'
Hello,
I'm recently facing an issue two issues
1. User Profile Service Application: when I goto manage user profile service application I get an error windows and when I look into the logs following is the error with given correlation id "ef9fb09c-ae28-1072-b404-c887d61ed915"
08/21/2014 09:07:27.53 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Logging Correlation Data xmnv Medium Name=Request (GET:http://gcdwinamzanl002:8081/_layouts/15/ManageUserProfileServiceApplication.aspx?ApplicationID=9826b245%2D1d65%2D408f%2Db252%2D058b3809225f) ef9fb09c-ae28-1072-b404-c887d61ed915
08/21/2014 09:07:27.75 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
General 6t8h High [Forced due to logging gap, cached @ 08/21/2014 09:07:27.50, Original
Level: Verbose] {0} ef9fb09c-ae28-1072-b404-c887d61ed915
08/21/2014 09:07:27.75 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Database 8acb High [Forced due to logging gap, Original Level: VerboseEx] Reverting to process
identity ef9fb09c-ae28-1072-b404-c887d61ed915
08/21/2014 09:07:27.75 w3wp.exe (0x2BB8) 0x2448 Web Content Management
Publishing Cache f6s5 Medium ObjectCache size is set to 100 megs. ef9fb09c-ae28-1072-b404-c887d61ed915
08/21/2014 09:07:27.75 w3wp.exe (0x2BB8) 0x2448 Web Content Management
Publishing 8zug Medium PublishingHttpModule.Init() calling AppDomainUnloadListener.Register() ef9fb09c-ae28-1072-b404-c887d61ed915
08/21/2014 09:07:27.75 w3wp.exe (0x2BB8) 0x2448 Web Content Management
Publishing 8x0a Medium AppDomainUnloadListener.RegisterSelf() entered lock(this=38386177) ef9fb09c-ae28-1072-b404-c887d61ed915
08/21/2014 09:07:27.75 w3wp.exe (0x2BB8) 0x2448 Web Content Management
Publishing 8x0b Medium AppDomainUnloadListener.RegisterSelf() about to call HostingEnvironment.RegisterObject(this=38386177) ef9fb09c-ae28-1072-b404-c887d61ed915
08/21/2014 09:07:27.82 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Asp Runtime aj1kp High [Forced due to logging gap, Original Level: Verbose] SPRequestModule.PreSendRequestHeaders ef9fb09c-ae28-1072-b404-c887d61ed915
08/21/2014 09:07:27.88 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
General 6t8h High [Forced due to logging gap, cached @ 08/21/2014 09:07:27.83, Original
Level: Verbose] {0} ef9fb09c-ae28-1072-b404-c887d61ed915
08/21/2014 09:07:27.88 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Database 8acb High [Forced due to logging gap, Original Level: VerboseEx] Reverting to process
identity ef9fb09c-ae28-1072-b404-c887d61ed915
08/21/2014 09:07:27.91 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Monitoring b4ly Medium Leaving Monitored Scope (Request (GET:http://gcdwinamzanl002:8081/_layouts/15/ManageUserProfileServiceApplication.aspx?ApplicationID=9826b245%2D1d65%2D408f%2Db252%2D058b3809225f)).
Execution Time=427.452048 ef9fb09c-ae28-1072-b404-c887d61ed915
08/21/2014 09:07:27.98 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Monitoring nasq Medium Entering monitored scope (Request (GET:http://gcdwinamzanl002:8081/_layouts/15/ManageUserProfileServiceApplication.aspx?ApplicationID=9826b245%2D1d65%2D408f%2Db252%2D058b3809225f)).
Parent No
08/21/2014 09:07:27.98 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Logging Correlation Data xmnv Medium Name=Request (GET:http://gcdwinamzanl002:8081/_layouts/15/ManageUserProfileServiceApplication.aspx?ApplicationID=9826b245%2D1d65%2D408f%2Db252%2D058b3809225f) ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:28.35 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
General 6t8h High [Forced due to logging gap, cached @ 08/21/2014 09:07:27.98, Original
Level: Verbose] {0} ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:28.35 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Authentication Authorization agb9s Medium Non-OAuth request. IsAuthenticated=True, UserIdentityName=, ClaimsCount=0 ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:28.39 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Monitoring b4ly High Leaving Monitored Scope (PostAuthenticateRequestHandler). Execution Time=27.712976 ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:28.49 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Monitoring nass High [Forced due to logging gap, cached @ 08/21/2014 09:07:28.39, Original Level: Verbose]
____{0}={1} ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:28.49 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Asp Runtime aj1kr High [Forced due to logging gap, Original Level: Verbose] SPRequestModule.PostAuthorizeRequestHandler ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:28.68 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Monitoring b4ly High Leaving Monitored Scope (PublishingHttpModule: PostAuthorizeRequestHandler). Execution
Time=178.76496 ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:28.85 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Asp Runtime aj1km High [Forced due to logging gap, cached @ 08/21/2014 09:07:28.72, Original Level: Verbose]
SPRequestModule.PostResolveRequestCacheHandler ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:28.85 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Asp Runtime aj1kn High [Forced due to logging gap, Original Level: Verbose] SPRequestModule.AcquireRequestStateHandler ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:28.88 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Logging Correlation Data xmnv Medium Site=/ ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:28.94 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Database ahjqp High [Forced due to logging gap, cached @ 08/21/2014 09:07:28.90, Original
Level: Verbose] SQL connection time: 0.050592 ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:28.94 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Database 8acb High [Forced due to logging gap, Original Level: VerboseEx] Reverting to process
identity ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:29.22 OWSTIMER.EXE (0x0968) 0x3744 SharePoint Foundation Monitoring
aeh57 Medium Sql Ring buffer status eventsPerSec = ,processingTime=0,totalEventsProcessed=0,eventCount=0,droppedCount=0,memoryUsed=0
08/21/2014 09:07:29.53 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Database ahjqp High [Forced due to logging gap, cached @ 08/21/2014 09:07:28.95, Original
Level: Verbose] SQL connection time: 0.027536 ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:29.53 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
General 6t8b High [Forced due to logging gap, Original Level: Verbose] Looking up {0}
site {1} in the farm {2} ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:29.59 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Topology umbj High [Forced due to logging gap, cached @ 08/21/2014 09:07:29.54, Original
Level: Verbose] Deserializing the type named {0} and with id {1}. ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:29.59 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Topology ahg9p High [Forced due to logging gap, Original Level: Verbose] Completed deserializing
the type named {0} and with id {1}. ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:29.65 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Topology ahg9p High [Forced due to logging gap, cached @ 08/21/2014 09:07:29.64, Original
Level: Verbose] Completed deserializing the type named {0} and with id {1}. ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:29.65 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Topology umbj High [Forced due to logging gap, Original Level: Verbose] Deserializing the
type named {0} and with id {1}. ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:29.71 w3wp.exe (0x2BB8) 0x2448
0x6FB700D ahg9p High [Forced due to logging gap, cached @ 08/21/2014 09:07:29.68, Original Level:
Verbose] Completed deserializing the type named {0} and with id {1}. ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:29.71 w3wp.exe (0x2BB8) 0x2448 Access Services
Administration ackn7 High [Forced due to logging gap, Original Level: Verbose] Tried to obtain setting {0} from Conversion Service
Application, but it didn't exist. ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:29.80 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Topology umbj High [Forced due to logging gap, cached @ 08/21/2014 09:07:29.76, Original
Level: Verbose] Deserializing the type named {0} and with id {1}. ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:29.80 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Topology ahg9p High [Forced due to logging gap, Original Level: Verbose] Completed deserializing
the type named {0} and with id {1}. ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:29.86 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Topology ahg9p High [Forced due to logging gap, cached @ 08/21/2014 09:07:29.85, Original
Level: Verbose] Completed deserializing the type named {0} and with id {1}. ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:29.86 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Topology umbj High [Forced due to logging gap, Original Level: Verbose] Deserializing the
type named {0} and with id {1}. ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:29.91 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Topology ahg9p High [Forced due to logging gap, Original Level: Verbose] Completed deserializing
the type named {0} and with id {1}. ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:29.96 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Topology umbj High [Forced due to logging gap, cached @ 08/21/2014 09:07:29.91, Original
Level: Verbose] Deserializing the type named {0} and with id {1}. ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:29.96 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Topology ahg9p High [Forced due to logging gap, Original Level: Verbose] Completed deserializing
the type named {0} and with id {1}. ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:30.06 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Topology umbj High [Forced due to logging gap, cached @ 08/21/2014 09:07:30.01, Original
Level: Verbose] Deserializing the type named {0} and with id {1}. ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:30.06 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Topology ahg9p High [Forced due to logging gap, Original Level: Verbose] Completed deserializing
the type named {0} and with id {1}. ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:30.12 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Topology ahg9p High [Forced due to logging gap, cached @ 08/21/2014 09:07:30.11, Original
Level: Verbose] Completed deserializing the type named {0} and with id {1}. ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:30.12 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Configuration a16e High SPAce PrincipalName found account renamed to NULL SID. Using new name. ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:30.12 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Configuration a16e High SPAce PrincipalName found account renamed to NULL SID. Using new name. ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:30.14 w3wp.exe (0x2BB8) 0x2448 SharePoint Server
General ahjnd Medium Constructed a new async cache named Profile Property Cache ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:30.15 w3wp.exe (0x2BB8) 0x2448 SharePoint Portal Server User
Profiles ajk4d Medium UserProfileProperty_WCFLogging::Begin ProfilePropertyServiceClient.ExecuteOnChannel ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:30.15 w3wp.exe (0x2BB8) 0x2448 SharePoint Portal Server User
Profiles ajk35 Medium MossClientBase_WCFLogging::Begin MossClientBase.ExecuteOnChannel ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:30.18 w3wp.exe (0x2BB8) 0x2448 SharePoint Portal Server User
Profiles ajk36 Medium MossClientBase_WCFLogging:: MossClientBase.ExecuteOnChannel - Executing codeblock on channel ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:31.27 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Claims Authentication aeax6 High [Forced due to logging gap, Original Level: Verbose] SPSecurityContext: The SecurityTokenServiceBehavior is attached to the AsymmetricTrustChannel. ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:31.94 w3wp.exe (0x2BB8) 0x2448 SharePoint Foundation
Topology aeayb Medium SecurityTokenServiceSendRequest: RemoteAddress: 'http://localhost:32843/SecurityTokenServiceApplication/securitytoken.svc/actas'
Channel: 'Microsoft.IdentityModel.Protocols.WSTrust.IWSTrustChannelContract' Action: 'http://docs.oasis-open.org/ws-sx/ws-trust/200512/RST/Issue' MessageId: 'urn:uuid:3c1f10be-67f6-4335-9245-0af94c65f814' ef9fb09c-fe46-1072-b404-c5bccdc9dc59
08/21/2014 09:07:34.09 NodeRunnerContent1-ac7a63c6-80a (0x1A00) 0x32DC Search Search Platform Services
ajhlg Medium NerioCluster : Got valid (Primary) lease until 2014-08-21T09:10:11.0915676Z/0 for net.tcp://gcdwinamzanl002/C62BA9/AdminComponent1/Services/InvokerService
08/21/2014 09:07:34.29 OWSTIMER.EXE (0x0968) 0x3744 SharePoint Foundation Monitoring
aeh57 Medium Sql Ring buffer status eventsPerSec = ,processingTime=0,totalEventsProcessed=0,eventCount=0,droppedCount=0,memoryUsed=0
08/21/2014 09:07:35.72 w3wp.exe (0x0C0C) 0x18F0 SharePoint Foundation
Unified Logging Service b8fx High ULS Init Completed (w3wp.exe, onetnative.dll)
08/21/2014 09:07:35.86 w3wp.exe (0x0C0C) 0x18F0 SharePoint Foundation
Topology 2myf Medium Disabling the configuration filesystem and memory caches.
Abhishek MadanHi Abhishek,
According to your description, my understanding is that the User Profile Synchronization service stuck on ‘Starting’ or ‘Stopping’.
Please check whether you installed SQL 2012 Native Client (Pre-requisites) on SharePoint server. If yes, download and install SQL 2008 R2 Native Client from the below location:
http://download.microsoft.com/download/9/1/3/9138773A-505D-43E2-AC08-9A77E1E0490B/1033/x64/sqlncli.msi
From the SharePoint server ->control panel -> add/Remove programs , please confirm that the SQL 2008 Native Client is listed.
Make sure that the farm account is a member of the Administrators group on the server on which you are trying to start the User Profile Synchronization service, then restart the SharePoint Timer Service.
Set the FIM services to "Local System" before starting the service.
There is a troubleshooting for User Profile Synchronization Service start issues, please have a look at:
http://technet.microsoft.com/en-us/library/gg750257(v=office.14).aspx
Here are some similar posts for you to take a look at:
http://www.codeproject.com/Articles/358855/user-profile-synchronization-service-not-starting
http://www.sharepointdiary.com/2012/09/user-profile-synchronization-service-stuck-at-starting.html#ixzz2aX7Wz4GQ
Best Regards,
Wendy
Forum Support
Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Subscriber Support, contact
[email protected]
Wendy Li
TechNet Community Support -
Customizing View in Manage User Profiles page in CA
Is there a way to add additional fields to the Manage User Profiles section in Central Administration? It is defaulted to Account Name, Preferred Name, and Email. I would like to add one of my custom columns front an center so that when I search for someone
I see that custom field up front.
Thanks,
BrandonIt is possible. Please refer to:
http://technet.microsoft.com/en-us/library/cc262327(v=office.14).aspx#create
Just like any other custom search property you could use for User profiles too:
http://blogs.technet.com/b/meamcs/archive/2010/12/23/using-a-custom-user-profile-property-for-people-search-results-scopes.aspx
If you are using Term sets:
http://www.sharepointsteve.com/2010/10/making-custom-user-profile-properties-searchable-in-sharepoint-2010/ -
W8.1 User Device Enrollment - Setup.exe
Behavior: On W8.1 Enterprise upon logging into 'portal.manage.microsoft' for the first time then proceeding to device enrollment a download link is present for the full Intune client agent (as expected). If the user closes the browser without enrolling then
logs in again only MDM device enrollment tips are displayed. Using a private browser session also only shows MDM enrollment tips.
Question:
- Is this behavior a bug or by design?On Windows 8.1 Enterprise, the expected behavior is to only see the "Learn how to enroll" link when you click the Add Device button.
I cannot reproduce it showing the download link on 8.1 devices.
Please feel free to open a support case if it looks like something isn't working as expected.
Thanks,
Jon L. - MSFT - This posting is provided "AS IS" with no warranties and confers no rights.
Maybe you are looking for
-
I was printing a PDF using Adobe Acorbat Reader X. I printed one doucment just fine. Then when I selected the second document I got an error "The document could not be printed." Then a second error "There were no pages selected to print." I closed Re
-
I bought the N97 mini in Australia, in which the default language is Engliash. Since the N97 is not only a mobile phone, it is also a "net book" to browse internet. It is really frustrated that the handset does not support non-English. Can I install
-
How change video dimensions and aspect?
Im having trouble using FCP to change a video that i have from a 4:3 to 16:9... the video was converted and turned out 4:3... how can i change the video dimensions or bring it back to 16:9?? thanks much appreciated. Ben
-
Passing parameters in URL?
I'd like to be able to build JSP pages that link to each other with parameters passed in the URL. Is there a way to do this? It seems not, but I'd like to know. Thanks, Matt
-
Hi, Please guide for the following query: For a consumer, the Portion is XXXX, and the final bill was created for 10.03.2007- 29.08.2007. The schedule billing date of the first schedule record for the Portion u2018XXXXu2019 was 06.11.2008. When we tr