Except sadmin other users not able to see siebel BI publisher reports
Hi,
we have integrated siebel with BI publisher, except sadmin other users not able to see BI publisher reports, it is throwing error "No file has been attached to this record, please attach a file. SBL-SVC-00155".
when login with sadmin report is generating. we have created user sadmin on BI publisher. if we change that user sadmin on BI publisher to some other name, then sadmin not able to generate reports. is there any specific on user creation on BIP should match with siebel?
Thanks,
Joe
i suggest then dropping user and re-creating and then re-assigning permission (just keep his webcat files) - it'll be faster than looking into individual permissions
another possible option - did you check his browser? sometimes the screen resolution can be too low and they don't see it on the same screen - need to scroll.
is it possible he's not using the same Dashboard page as others? just check the "Report Links" to make sure
i'm not sure what else could be a cause of this
Similar Messages
-
Users not able to see all the default reports in FDM under analysis
All,
Users in FDM are not able to see all the default reports which will be available under Analysis. I have checked the MenuNavigation and MenuNavigationItems under object maintainence in FDM which have "ALL" as the provisioning level. I am not sure where the issue is as the users still not able to see the reports. Please advise if there is something that can be done in workbench.
RegardsYou can set security on Report folders in workbench. You would go to the report tab in workbench, and right click on a Folder (Cannot do it on the individual report, it has to be on the folder), and you can assign security levels to the report folder. There are some in here that default to the admin level but you can override it.
Regards
JTF -
Report exection problem for one user - not able to see the data.
Hello Friends ,
Need some help . I have got the one ticket from bussniess side about the report execution .
Unfortunately , I am also not having authorisation of that report due to sensible data.
Problem - User is executing the report but some how he is not ABLE TO see the data for one company code Hierachy .
I executed the same report through RSSMQ via his user id , and I got the below message.
All value were selected . Hierachy Authorisation cannot be used.
A displayed hierachy requier a hierachy authorisation .
But when i checked his authorisation , I am able to see that he should have authorisation to all the hireachy .
could you please let me know , how can I check more ?
Regards,after accessing the report , u go to su53 tcode and check the authorization and u can see what is problem in authorization for the that user and u can send the details to secuity team to rectify the issue ,
-
Service Desk end user not able to see messages
Hi
Im configuring service desk.Iam facing following issues.
1. In solution manager service desk user could not able to see his submitted messages.He could able to submit his message and they are appearing in crm_dno_monitor. Is there any way he can see his submitted messages and message status.
2. I have assigned following roles to user, but he couldnot able to send message and getting 513 error. If i assign sap_all to him, he is able to submit message. Just i wanted to know how can i avoid sap_all to him.
ZSAP_SOL_SERVTRANS_CREATE
ZSAP_SUPPDESK_CREATE
ZSAP_SV_FDB_NOTIF_BC_CREATE
Your help is highly appreciated
Thanks
Regards
MahiHi Mahi,
Please check about Workcenter:
1160651: Work Centers: How to Customize (Solution Manager)
http://help.sap.com/saphelp_smehp1/helpdata/en/6a/4b4713fc2e45ad921a20b0831d07a5/content.htm
Make sure the user has the following roles:
SAP_SUPPDESK_CREATE
SAP_SUPPCF_CREATE
SAP_SMWORK_BASIC
SAP_SMWORK_INCIDENT_MAN
Message processor:
SAP_SMWORK_BASIC
SAP_SUPPDESK_CREATE
SAP_SUPPDESK_PROCESS
SAP_SUPPDESK_DISPLAY
SAP_SMWORK_INCIDENT_MAN
Concerning this please pay attention of the note:
834534 - SAP Solution Manager roles in Release 7.0
Error message 513 is probably caused by incorrect or incomplete
customizing. Please review attached note 864195 for more details.
Please also ensure note 1356510 has been applied in your system,
you may find more explanation in note 1522809.
Please check the authorizations for your key users. The key user
shouldn't have the following value on authorization object CRM_TXT_ID:
TEXTID SU15
ACTVT 02
FM AI_SDK_KEY_USER_CHECK can be used to check a user is a key user or
not. The key user should have limited authorizations on authorization
object CRM_TXT_ID.
Please check security guide for the message processor roles and
other roles. You can download the security guide from below link which
will be available to download after half an hour or so or you can also
find security guide from below link:
http://service.sap.com/instguides -> SAP Components -> SAP Solution
Manager
Thanks
Regards,
Vikram Jain -
Users not able to see remote users on the node network
Users that belong to one node are not able to see users in another calendar
server node. Both calendar servers are pointing to the same directory server.
Some errors that occur in the log files:
DEXOTEK ERRCODE Ox13608 -> SchedBaseOpen: Section name too long
DEXOTEK ERRCODE Ox13608 -> OpenConnection: SchedBaseOpenOnHost
And when uninode -cws nodeID is run, it does not report being able to see all
the users and resources on the remote nodes.
uninode: connected to hostname.net.xxx.com, node 10000
directory of items: 10 (USERS = 10/RESOURCES = 0)
CONNECTION EX AV Q-SIZE IN-PROCESS IMPORT-DIR
(10000)->xxxxxx.xxx.com(10001) 2 2 0 0 370 (U=370/R=0)
Here is the nodes.ini file:
+ H=xxxxxxx.xxx.com/N=10000
+ H=xxxx.xxx.com/N=10001
all=2
There is a reported bug, that 16 chars is max on domain names for the nodes.ini
file, which means that you need to change that file and use:
a) an alias that can be resolved on the network with either DNS or local
host files
b) use the IP address.
As documented in the release notes, here is the procedure on how to modify the
hostname when it is too long. Or how to modify the hostname for any reason.
Fix for long host names problem
If the fully qualified domain name for your network exceeds 16 characters, it
will be necessary to shorten the host name of all the servers in the Calendar
Server network . These instructions must be carefully followed to avoid causing
problems with the network. Ensure that the procedure is applied to ALL nodes in
the Calendar network.
1) The following procedure should be carried out on each server in the
Calendar network:
a) Bring the Calendar services down.
% unistop -y
b) Run the unidbfix command in export mode.
% unidbfix -export -n node-id
This will create a remotenode.ini file for each node on the server. The file is
located in the node's perm directory.
Example:
If you have two nodes on the server ROCK, node 1(in N1) and node (in N2), the
files are:
/users/unison/db/nodes/N1/perm/remotenode.ini
/users/unison/db/nodes/N2/perm/remotenode.ini
The remotenode.ini file will look something like this:
[1]
RN_NUMCONNECT = 2
RN_SURNAME = "unison"
RN_GIVENNAME = "unison"
RN_ORGUNIT1 = "uni2"
RN_ORGUNIT2 = "openmail"
RN_ORGANIZATION = "ABC Corp"
RN_ACCESSMETHOD = 2
RN_SERVICENAME = "unieng"
RN_HOSTNAME = "rock"
[2]
RN_NUMCONNECT = 2
RN_SURNAME = "unison"
RN_GIVENNAME = "unison"
RN_ORGUNIT1 = "uni4"
RN_ORGUNIT2 = "openmail"
RN_ORGANIZATION = "ABC Corp"
RN_ACCESSMETHOD = 2
RN_SERVICENAME = "unieng"
RN_HOSTNAME = "rock"
2) Once you have run unidbfix in export mode on all the servers, proceed as
follows:
a) Compare the remotenode.ini files and verify that the entries are the
same. In each file, you will note that an entry for the local node is not
included.
b) Edit one of the files (on any of the servers). This file will be
referred to as the master file. Add the appropriate entries for the
local node (copy the section from one of the other files). Modify the
RN_HOSTNAME in each of the sections of the master file to shorten the
name.
c) Copy the master file in the perm directories of each node on all the
servers.
3) Once the master file is in the perm directory of all the nodes, proceed as
follows on each server:
a) Run the unidbfix command in the -import mode.
% unidbfix -import -n node-id
b) Edit the nodes.ini file on the hub server and make the same changes to
the host names. You do not need to apply the changes.
c) Edit the [UTL] section of the /users/unison/misc/unison.ini file and
change the host name.
d) Start up the services.
% unistart
4) After all the changes have been made, run the uninode -cws all and
uninode -snc all commands and verify that the results are accurate.See this:
http://docs.info.apple.com/article.html?path=Mac/10.6/en/8203.html
You should then see your pcs listed in Finder's sidebar under the shared section.
Regards -
Remote access VPN Users not able to see local lan or internet
We are setting up a ASA5510. Right now our users can login to the vpn but can't access the internal Lan or internet.
Below is the config. Any help or insight would be greatly appreciated. Thanks
Cryptochecksum: dd11079f e4fe7597 4a8657ba 1e7b287f
: Saved
: Written by enable_15 at 11:04:57.005 UTC Wed Apr 22 2015
ASA Version 9.0(3)
hostname CP-ASA-TOR1
enable password m.EmhnDT1BILmiAY encrypted
names
ip local pool CPRAVPN 10.10.60.1-10.10.60.40 mask 255.255.255.0
interface Ethernet0/0
nameif Outside
security-level 0
ip address 63.250.109.211 255.255.255.248
interface Ethernet0/1
nameif Inside
security-level 100
ip address 10.10.10.254 255.255.255.0
interface Ethernet0/2
shutdown
no nameif
no security-level
no ip address
interface Ethernet0/3
shutdown
no nameif
no security-level
no ip address
interface Management0/0
management-only
nameif management
security-level 100
ip address 192.168.1.1 255.255.255.0
ftp mode passive
object network net-local
subnet 10.10.10.0 255.255.255.0
object network net-remote
subnet 10.10.1.0 255.255.255.0
object network NETWORK_OBJ_10.10.10.0_24
subnet 10.10.10.0 255.255.255.0
object network NETWORK_OBJ_10.10.60.0_26
subnet 10.10.60.0 255.255.255.192
access-list Outside_1_cryptomap extended permit ip 10.10.10.0 255.255.255.0 object net-remote
access-list CPRemoteVPN_splitTunnelAcl standard permit 10.10.10.0 255.255.255.0
pager lines 24
logging enable
logging asdm informational
mtu Outside 1500
mtu Inside 1500
mtu management 1500
no failover
icmp unreachable rate-limit 1 burst-size 1
asdm image disk0:/asdm-731-101.bin
no asdm history enable
arp timeout 14400
no arp permit-nonconnected
nat (Inside,Outside) source static net-local net-local destination static net-remote net-remote
nat (Inside,Outside) source static NETWORK_OBJ_10.10.10.0_24 NETWORK_OBJ_10.10.10.0_24 destination static NETWORK_OBJ_10.10.60.0_26 NETWORK_OBJ_10.10.60.0_26 no-proxy-arp route-lookup
nat (Inside,Outside) after-auto source dynamic any interface
route Outside 0.0.0.0 0.0.0.0 63.250.109.209 1
timeout xlate 3:00:00
timeout pat-xlate 0:00:30
timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02
timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00
timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00
timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute
timeout tcp-proxy-reassembly 0:01:00
timeout floating-conn 0:00:00
dynamic-access-policy-record DfltAccessPolicy
user-identity default-domain LOCAL
http server enable
http 192.168.1.0 255.255.255.0 management
http 10.10.10.0 255.255.255.0 Inside
no snmp-server location
no snmp-server contact
snmp-server enable traps snmp authentication linkup linkdown coldstart warmstart
crypto ipsec ikev1 transform-set ESP-3DES-SHA esp-3des esp-sha-hmac
crypto ipsec ikev1 transform-set ESP-3DES-MD5 esp-3des esp-md5-hmac
crypto ipsec ikev1 transform-set ESP-DES-MD5 esp-des esp-md5-hmac
crypto ipsec ikev1 transform-set ESP-AES-128-SHA esp-aes esp-sha-hmac
crypto ipsec ikev1 transform-set ESP-AES-192-SHA esp-aes-192 esp-sha-hmac
crypto ipsec ikev1 transform-set ESP-AES-128-MD5 esp-aes esp-md5-hmac
crypto ipsec ikev1 transform-set ESP-AES-192-MD5 esp-aes-192 esp-md5-hmac
crypto ipsec ikev1 transform-set ESP-AES-256-SHA esp-aes-256 esp-sha-hmac
crypto ipsec ikev1 transform-set ESP-AES-256-MD5 esp-aes-256 esp-md5-hmac
crypto ipsec ikev1 transform-set ESP-DES-SHA esp-des esp-sha-hmac
crypto ipsec ikev1 transform-set ESP-AES-128-SHA-TRANS esp-aes esp-sha-hmac
crypto ipsec ikev1 transform-set ESP-AES-128-SHA-TRANS mode transport
crypto ipsec ikev1 transform-set ESP-AES-128-MD5-TRANS esp-aes esp-md5-hmac
crypto ipsec ikev1 transform-set ESP-AES-128-MD5-TRANS mode transport
crypto ipsec ikev1 transform-set ESP-AES-192-SHA-TRANS esp-aes-192 esp-sha-hmac
crypto ipsec ikev1 transform-set ESP-AES-192-SHA-TRANS mode transport
crypto ipsec ikev1 transform-set ESP-AES-192-MD5-TRANS esp-aes-192 esp-md5-hmac
crypto ipsec ikev1 transform-set ESP-AES-192-MD5-TRANS mode transport
crypto ipsec ikev1 transform-set ESP-AES-256-SHA-TRANS esp-aes-256 esp-sha-hmac
crypto ipsec ikev1 transform-set ESP-AES-256-SHA-TRANS mode transport
crypto ipsec ikev1 transform-set ESP-AES-256-MD5-TRANS esp-aes-256 esp-md5-hmac
crypto ipsec ikev1 transform-set ESP-AES-256-MD5-TRANS mode transport
crypto ipsec ikev1 transform-set ESP-3DES-SHA-TRANS esp-3des esp-sha-hmac
crypto ipsec ikev1 transform-set ESP-3DES-SHA-TRANS mode transport
crypto ipsec ikev1 transform-set ESP-3DES-MD5-TRANS esp-3des esp-md5-hmac
crypto ipsec ikev1 transform-set ESP-3DES-MD5-TRANS mode transport
crypto ipsec ikev1 transform-set ESP-DES-SHA-TRANS esp-des esp-sha-hmac
crypto ipsec ikev1 transform-set ESP-DES-SHA-TRANS mode transport
crypto ipsec ikev1 transform-set ESP-DES-MD5-TRANS esp-des esp-md5-hmac
crypto ipsec ikev1 transform-set ESP-DES-MD5-TRANS mode transport
crypto ipsec ikev2 ipsec-proposal DES
protocol esp encryption des
protocol esp integrity sha-1 md5
crypto ipsec ikev2 ipsec-proposal 3DES
protocol esp encryption 3des
protocol esp integrity sha-1 md5
crypto ipsec ikev2 ipsec-proposal AES
protocol esp encryption aes
protocol esp integrity sha-1 md5
crypto ipsec ikev2 ipsec-proposal AES192
protocol esp encryption aes-192
protocol esp integrity sha-1 md5
crypto ipsec ikev2 ipsec-proposal AES256
protocol esp encryption aes-256
protocol esp integrity sha-1 md5
crypto ipsec security-association pmtu-aging infinite
crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set pfs group1
crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set ikev1 transform-set ESP-AES-128-SHA ESP-AES-128-MD5 ESP-AES-192-SHA ESP-AES-192-MD5 ESP-AES-256-SHA ESP-AES-256-MD5 ESP-3DES-SHA ESP-3DES-MD5 ESP-DES-SHA ESP-DES-MD5
crypto map Outside_map 1 match address Outside_1_cryptomap
crypto map Outside_map 1 set pfs group1
crypto map Outside_map 1 set peer 209.171.34.91
crypto map Outside_map 1 set ikev1 transform-set ESP-3DES-SHA
crypto map Outside_map 1 set ikev2 ipsec-proposal AES256 AES192 AES 3DES DES
crypto map Outside_map 65535 ipsec-isakmp dynamic SYSTEM_DEFAULT_CRYPTO_MAP
crypto map Outside_map interface Outside
crypto ca trustpool policy
crypto ikev2 policy 1
encryption aes-256
integrity sha
group 5 2
prf sha
lifetime seconds 86400
crypto ikev2 policy 10
encryption aes-192
integrity sha
group 5 2
prf sha
lifetime seconds 86400
crypto ikev2 policy 20
encryption aes
integrity sha
group 5 2
prf sha
lifetime seconds 86400
crypto ikev2 policy 30
encryption 3des
integrity sha
group 5 2
prf sha
lifetime seconds 86400
crypto ikev2 policy 40
encryption des
integrity sha
group 5 2
prf sha
lifetime seconds 86400
crypto ikev1 enable Outside
crypto ikev1 policy 10
authentication pre-share
encryption 3des
hash sha
group 2
lifetime 86400
telnet timeout 5
ssh timeout 5
console timeout 0
dhcpd address 192.168.1.2-192.168.1.254 management
dhcpd enable management
threat-detection basic-threat
threat-detection statistics access-list
no threat-detection statistics tcp-intercept
group-policy CPRemoteVPN internal
group-policy CPRemoteVPN attributes
dns-server value 10.10.10.12
vpn-tunnel-protocol ikev1 ikev2 l2tp-ipsec
split-tunnel-network-list value CPRemoteVPN_splitTunnelAcl
default-domain value carepath.local
split-dns value carepath.ca
split-tunnel-all-dns enable
msie-proxy method no-proxy
address-pools value CPRAVPN
username roys password jjiV7E.dmZNdBlFQ encrypted privilege 0
username roys attributes
vpn-group-policy CPRemoteVPN
tunnel-group 209.171.34.91 type ipsec-l2l
tunnel-group 209.171.34.91 ipsec-attributes
ikev1 pre-shared-key *****************
tunnel-group CPRemoteVPN type remote-access
tunnel-group CPRemoteVPN general-attributes
address-pool CPRAVPN
default-group-policy CPRemoteVPN
tunnel-group CPRemoteVPN ipsec-attributes
ikev1 pre-shared-key **********
class-map inspection_default
match default-inspection-traffic
policy-map type inspect dns preset_dns_map
parameters
message-length maximum client auto
message-length maximum 512
policy-map global_policy
class inspection_default
inspect dns preset_dns_map
inspect ftp
inspect h323 h225
inspect h323 ras
inspect rsh
inspect rtsp
inspect esmtp
inspect sqlnet
inspect skinny
inspect sunrpc
inspect xdmcp
inspect sip
inspect netbios
inspect tftp
inspect ip-options
service-policy global_policy global
prompt hostname context
no call-home reporting anonymous
Cryptochecksum:dd11079fe4fe75974a8657ba1e7b287f
: endSorry for the delay but I was able to put that command in this morning. But still no Joy.
Here is the updated config. Perhaps I didn't put it in right.
domain-name carepath.ca
enable password m.EmhnDT1BILmiAY encrypted
names
ip local pool CPRAVPN 10.10.60.1-10.10.60.40 mask 255.255.255.0
interface Ethernet0/0
nameif Outside
security-level 0
ip address 63.250.109.211 255.255.255.248
interface Ethernet0/1
nameif Inside
security-level 100
ip address 10.10.10.254 255.255.255.0
interface Ethernet0/2
shutdown
no nameif
no security-level
no ip address
interface Ethernet0/3
shutdown
no nameif
no security-level
no ip address
interface Management0/0
management-only
nameif management
security-level 100
ip address 192.168.1.1 255.255.255.0
ftp mode passive
dns server-group DefaultDNS
domain-name carepath.ca
object network net-local
subnet 10.10.10.0 255.255.255.0
object network net-remote
subnet 10.10.1.0 255.255.255.0
object network NETWORK_OBJ_10.10.10.0_24
subnet 10.10.10.0 255.255.255.0
object network NETWORK_OBJ_10.10.60.0_26
subnet 10.10.60.0 255.255.255.192
access-list Outside_1_cryptomap extended permit ip 10.10.10.0 255.255.255.0 object net-remote
access-list CPRemoteVPN_splitTunnelAcl standard permit 10.10.10.0 255.255.255.0
pager lines 24
logging enable
logging asdm informational
mtu Outside 1500
mtu Inside 1500
mtu management 1500
no failover
icmp unreachable rate-limit 1 burst-size 1
asdm image disk0:/asdm-731-101.bin
no asdm history enable
arp timeout 14400
no arp permit-nonconnected
nat (Inside,Outside) source static net-local net-local destination static net-remote net-remote
nat (Inside,Outside) source static NETWORK_OBJ_10.10.10.0_24 NETWORK_OBJ_10.10.10.0_24 destination static NETWORK_OBJ_10.10.60.0_26 NETWORK_OBJ_10.10.60.0_26 no-proxy-arp route-lookup
nat (Inside,Outside) after-auto source dynamic any interface
route Outside 0.0.0.0 0.0.0.0 63.250.109.209 1
timeout xlate 3:00:00
timeout pat-xlate 0:00:30
timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02
timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00
timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00
timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute
timeout tcp-proxy-reassembly 0:01:00
timeout floating-conn 0:00:00
dynamic-access-policy-record DfltAccessPolicy
user-identity default-domain LOCAL
http server enable
http 192.168.1.0 255.255.255.0 management
http 10.10.10.0 255.255.255.0 Inside
no snmp-server location
no snmp-server contact
snmp-server enable traps snmp authentication linkup linkdown coldstart warmstart
crypto ipsec ikev1 transform-set ESP-3DES-SHA esp-3des esp-sha-hmac
crypto ipsec ikev1 transform-set ESP-3DES-MD5 esp-3des esp-md5-hmac
crypto ipsec ikev1 transform-set ESP-DES-MD5 esp-des esp-md5-hmac
crypto ipsec ikev1 transform-set ESP-AES-128-SHA esp-aes esp-sha-hmac
crypto ipsec ikev1 transform-set ESP-AES-192-SHA esp-aes-192 esp-sha-hmac
crypto ipsec ikev1 transform-set ESP-AES-128-MD5 esp-aes esp-md5-hmac
crypto ipsec ikev1 transform-set ESP-AES-192-MD5 esp-aes-192 esp-md5-hmac
crypto ipsec ikev1 transform-set ESP-AES-256-SHA esp-aes-256 esp-sha-hmac
crypto ipsec ikev1 transform-set ESP-AES-256-MD5 esp-aes-256 esp-md5-hmac
crypto ipsec ikev1 transform-set ESP-DES-SHA esp-des esp-sha-hmac
crypto ipsec ikev1 transform-set ESP-AES-128-SHA-TRANS esp-aes esp-sha-hmac
crypto ipsec ikev1 transform-set ESP-AES-128-SHA-TRANS mode transport
crypto ipsec ikev1 transform-set ESP-AES-128-MD5-TRANS esp-aes esp-md5-hmac
crypto ipsec ikev1 transform-set ESP-AES-128-MD5-TRANS mode transport
crypto ipsec ikev1 transform-set ESP-AES-192-SHA-TRANS esp-aes-192 esp-sha-hmac
crypto ipsec ikev1 transform-set ESP-AES-192-SHA-TRANS mode transport
crypto ipsec ikev1 transform-set ESP-AES-192-MD5-TRANS esp-aes-192 esp-md5-hmac
crypto ipsec ikev1 transform-set ESP-AES-192-MD5-TRANS mode transport
crypto ipsec ikev1 transform-set ESP-AES-256-SHA-TRANS esp-aes-256 esp-sha-hmac
crypto ipsec ikev1 transform-set ESP-AES-256-SHA-TRANS mode transport
crypto ipsec ikev1 transform-set ESP-AES-256-MD5-TRANS esp-aes-256 esp-md5-hmac
crypto ipsec ikev1 transform-set ESP-AES-256-MD5-TRANS mode transport
crypto ipsec ikev1 transform-set ESP-3DES-SHA-TRANS esp-3des esp-sha-hmac
crypto ipsec ikev1 transform-set ESP-3DES-SHA-TRANS mode transport
crypto ipsec ikev1 transform-set ESP-3DES-MD5-TRANS esp-3des esp-md5-hmac
crypto ipsec ikev1 transform-set ESP-3DES-MD5-TRANS mode transport
crypto ipsec ikev1 transform-set ESP-DES-SHA-TRANS esp-des esp-sha-hmac
crypto ipsec ikev1 transform-set ESP-DES-SHA-TRANS mode transport
crypto ipsec ikev1 transform-set ESP-DES-MD5-TRANS esp-des esp-md5-hmac
crypto ipsec ikev1 transform-set ESP-DES-MD5-TRANS mode transport
crypto ipsec ikev2 ipsec-proposal AES256
protocol esp encryption aes-256
protocol esp integrity sha-1 md5
crypto ipsec ikev2 ipsec-proposal AES192
protocol esp encryption aes-192
protocol esp integrity sha-1 md5
crypto ipsec ikev2 ipsec-proposal AES
protocol esp encryption aes
protocol esp integrity sha-1 md5
crypto ipsec ikev2 ipsec-proposal 3DES
protocol esp encryption 3des
protocol esp integrity sha-1 md5
crypto ipsec ikev2 ipsec-proposal DES
protocol esp encryption des
protocol esp integrity sha-1 md5
crypto ipsec security-association pmtu-aging infinite
crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set pfs group1
crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set ikev1 transform-set ESP-AES-128-SHA ESP-AES-128-MD5 ESP-AES-192-SHA ESP-AES-192-MD5 ESP-AES-256-SHA ESP-AES-256-MD5 ESP-3DES-SHA ESP-3DES-MD5 ESP-DES-SHA ESP-DES-MD5
crypto map Outside_map 1 match address Outside_1_cryptomap
crypto map Outside_map 1 set pfs group1
crypto map Outside_map 1 set peer 209.171.34.91
crypto map Outside_map 1 set ikev1 transform-set ESP-3DES-SHA
crypto map Outside_map 1 set ikev2 ipsec-proposal AES256 AES192 AES 3DES DES
crypto map Outside_map 65535 ipsec-isakmp dynamic SYSTEM_DEFAULT_CRYPTO_MAP
crypto map Outside_map interface Outside
crypto ca trustpool policy
crypto ikev2 policy 1
encryption aes-256
integrity sha
group 5 2
prf sha
lifetime seconds 86400
crypto ikev2 policy 10
encryption aes-192
integrity sha
group 5 2
prf sha
lifetime seconds 86400
crypto ikev2 policy 20
encryption aes
integrity sha
group 5 2
prf sha
lifetime seconds 86400
crypto ikev2 policy 30
encryption 3des
integrity sha
group 5 2
prf sha
lifetime seconds 86400
crypto ikev2 policy 40
encryption des
integrity sha
group 5 2
prf sha
lifetime seconds 86400
crypto ikev2 enable Outside
crypto ikev1 enable Outside
crypto ikev1 policy 10
authentication pre-share
encryption 3des
hash sha
group 2
lifetime 86400
telnet 10.10.10.0 255.255.255.255 Inside
telnet timeout 5
ssh 10.10.10.0 255.255.255.0 Inside
ssh timeout 5
console timeout 0
management-access Inside
dhcpd address 192.168.1.2-192.168.1.254 management
dhcpd enable management
threat-detection basic-threat
threat-detection statistics access-list
no threat-detection statistics tcp-intercept
group-policy CPRemoteVPN internal
group-policy CPRemoteVPN attributes
dns-server value 10.10.10.12
vpn-tunnel-protocol ikev1 ikev2 l2tp-ipsec
split-tunnel-policy tunnelspecified
split-tunnel-network-list value CPRemoteVPN_splitTunnelAcl
default-domain value carepath.local
split-dns value carepath.ca
split-tunnel-all-dns enable
msie-proxy method no-proxy
address-pools value CPRAVPN
username sroy password RiaBzZ+N4R7r5Fp/8RT+wg== nt-encrypted privilege 15
username roys password jjiV7E.dmZNdBlFQ encrypted privilege 0
username roys attributes
vpn-group-policy CPRemoteVPN
tunnel-group 209.171.34.91 type ipsec-l2l
tunnel-group 209.171.34.91 ipsec-attributes
ikev1 pre-shared-key *****
tunnel-group CPRemoteVPN type remote-access
tunnel-group CPRemoteVPN general-attributes
address-pool CPRAVPN
default-group-policy CPRemoteVPN
tunnel-group CPRemoteVPN ipsec-attributes
ikev1 pre-shared-key *****
class-map inspection_default
match default-inspection-traffic
policy-map type inspect dns preset_dns_map
parameters
message-length maximum client auto
message-length maximum 512
policy-map global_policy
class inspection_default
inspect dns preset_dns_map
inspect ftp
inspect h323 h225
inspect h323 ras
inspect rsh
inspect rtsp
inspect esmtp
inspect sqlnet
inspect skinny
inspect sunrpc
inspect xdmcp
inspect sip
inspect netbios
inspect tftp
inspect ip-options
service-policy global_policy global
prompt hostname context
no call-home reporting anonymous
Cryptochecksum:bbc0f005f1a075a4f9cba737eaffb6f2 -
I could not able to see bi pulisher reports in dashboar
hi gurus(bi publisher)
since one month i have been facing problem with bi publisher reports
We have created flex chats using bi publisher and we have placed all the chats in dashboard,
when we were maintaining users and groups in RPD Administrator and all user were able to see the flex chats,
for that we have created XMLP_ADMIN group in RPD and we assign the uses to that group,Now we are using external tables for user and groups and
in the table i have created XMLP_ADMIN group in admin and i have assign user to that group
now the problem is ,administrator is able to see the flex chat reports but all other user r not able to see the bi publisher reprots
i was getting an error like access is denied please contact to bi publisher Administrator,such error i am getting
i did all the changes in security configuration ,i set security model as bi_server and i have given everything
even though users can not able to see the chats
is there any one using bi-publisher reports in dashboard with external table authentication? please
help me out form this problem
ThanksHi
take a look at the post
http://bipconsulting.blogspot.com/2010/03/how-to-migrate-bi-publisher-reports-to.html
Hope this helps
Regards
Roy -
User not able to run a report.
Report Server has encountered a SharePoint error. (rsSharePointError) Cannot open database "dbname" requested by the login. The login failed. Login failed for user . For more information about this error navigate to the report server on the local
server machine, or enable remote errorsHi Kunal, here are a few links that might point you in the right direction:
http://social.msdn.microsoft.com/Forums/sharepoint/en-US/cca6cb99-c86d-4ba6-b6b9-81ec88771aa8/users-not-able-to-see-the-published-reports?forum=sqlreportingservices
http://social.msdn.microsoft.com/Forums/sharepoint/en-US/c6c1414c-c338-4222-a5ca-a554d3ad912c/problem-getting-some-users-to-be-able-to-run-reports-probably-security-of-some-sort?forum=sqlreportingservices
http://gj80blogtech.blogspot.com/2010/07/ssrs-error-report-server-has.html
http://support.microsoft.com/default.aspx?scid=kb;EN-US;2597014
cameron rautmann -
Not able to see other users change list in IR/ID
Hi All,
I need to perform the CTS+ transports in PI 7.1 and when ever i am going to change list tab apart from my user id i am not able to see any other user id to transfer the objects to my id
Is some setting is missing or some role we need to assign.
Appreciate your reponse on this.
Thanks
AnkurHi Anku,
Have a look on this doc [Limit Authorization PI Content objects.pdf|http://www.sdn.sap.com/irj/scn/events?rid=/library/uuid/a005629b-c063-2910-0fb8-f57dc68abaca], and/or contact your basis team who manages the user roles...
The same in [e-learning|http://www.sdn.sap.com/irj/scn/go/portal/prtroot/docs/library/uuid/40457bb0-c663-2910-85ad-f5f42edb715a].
just in case of... for ESR authorization, you have this one [How To Setup Profile Based Authorization In ESR Using PI 7.1 EHP1|http://www.sdn.sap.com/irj/scn/go/portal/prtroot/docs/library/uuid/50a3efb4-57a1-2d10-a6b9-fed6d21799f8?QuickLink=index&overridelayout=true]
Else... a stupid question:
in "change list" tab, have you click on the "filter" button to be able to select "User = All" ?
and then to do your transfer...
Regards.
Mickael
Edited by: Mickael Huchet on Feb 14, 2012 9:24 AM -
Apple TV and iTunes not able to see each other
I think I have found a bug in either iTunes or Apple TV. My network configuration is a bit complicated so I will describe it first.
Cable modem into my house hitting a Linksys WRT330N router at a central box in my laundry room. From there my house is hard wired to different rooms of the house. One goes to my office where I have a Apple Extreme N airport, connected to my PowerMac and my iTunes library. Again out of the central point in the laundry room again hard wired I have a wire going to my living room, where I have another Apple Extreme N airport, this is where my Apple TV is hard wired too. I have all the latest firmware and software installed on all my devices. Also both Airport Extreme's are setup using bridge mode and letting the Linksys serve the IP addresses for my network.
Now to the problem. I can not explain when or why but my Apple TV and iTunes are not able to see each other after about 48 hours. I have tried all kinds of troubleshooting steps including changing my connection from being hard wired to wireless connecting directly to the Airport Extreme my iTunes computer is connected too. I know my network connection is good as I can see trailers and pull up video's from uTube.
The only way to get them to see each other again is to do a factory reset of my Apple TV. After I do this they can both see each other again. But again after about 48 hours they lose the ability to see each other. I have taken these steps twice now to fix the problem
I just finished reseting my Apple TV and am going to watch it to see when it stops working the next time.
All of these problems started the other day when I introduced a new Apple Extreme N router in my my network. The airport Extreme seem to be working fine with my PS3 and XBox 360 that is also connected to it. So I don't think it's the router that is causing the problem.
If I had to guess I would say something in the Apple TV is locking up. Although I have tried power cycling the Apple TV which does not fix the problem. I'm going through 3 routers to get between the Apple TV and the iTunes library somehow it appears the Apple TV is losing it way.
I welcome any help as I don't want to have to keep factory resetting my Apple TV to keep it working.Fascinating just reading about your setup. I have a WRT350N and have noticed that it will drop its speed, sometimes down to 1Mbps. It seems to do so at about the same time every day, but usually comes back to speed in about 5 minutes. In my experience, the Apple TV will disconnect if the speed falls this low. Try monitoring the Linksys with Netstumbler, Vistumbler, or just in the Windows Network utility.
Check the "lease obtained" and "lease expired" times for your router to see if that is when the network fails. I've just finished reading an angry thread over at the Linksys forum about the WRT330N where someone mentioned that the router wasn't renewing its lease.
"I cannot set it run off automatic DHCP from the WRT330N, the router will not assign it an IP every time the lease expires, causing me to have to manually set an IP on the Print server. That's annoying. Having the router drop IP's to individual machines after 12-48 hours...very annoying."
http://forums.linksys.com/linksys/board/message?board.id=Wireless_Routers&thread .id=67412
If that is the problem, then I would consider setting up a Static IP address for your Apple TV. You can do that through the user interface -> Settings -> Network -> Configure ... (Quite intuitive as you only have change IP address and the subsequent details remain the same.)
My router assigns IP Addresses in the ranges of 192.168.1.100 ->149. The idea here is to choose an address outside of that range but is not greater than 192.168.1.253 (and should not end in the number 1). You shouldn't have to change the linksys router as long as 50 clients are assigned in that range. You'll have to figure that out by accessing your router webpage at browser address 192.168.1.1 -> the default password is "admin" (without the quotes).
Good luck. -
Hi Gurus,
I am facing an issue with web catalog migration.
Currently we are on 10.1.3.3 version and upgrading to 10.1.3.4.2.
As part of migration i have taken the RPD, NQSConfig, Web catalog, instanceconfig.xml files as backup. i followed manual way while taking the web catalog backup i.e zipped(tar) the prod catalog and moved it to some folder.
After 10.1.3.4.2 installation i have moved this zip file to the /OracleBIData/web/catalog and unzipped it. restarted all the servers. when we logged in presentation services we are not able to see the reports which we saved in "My Folder" when it comes to the reports which we saved in "Shared Folder" i am able to see all the reports and dashboards.
to debug this further i opened the web catalog by using web catalog manager and found out that all the reports and .atr files are there under that user ( USER folder, corresponding user folder ), and instead of my presentation server recognizing this folder its creatin new folder for the same user.
Because of this issue our release plans are getting postponed, please advise me.
what could be the problem and if i have done some thing wrong while taking the backup pls let me know the best way of backing up the web catalog.
Thanks,
Seshutry this:
Archive all folders from 10.1.3.3 using catalog manager.
Update instance config on 10.1.3.4.2 so that it'll create a new webcat, open it and unarchive above folders.
If helps pls mark -
Sysadmin/All users are not able to see responsibilities after login in EBSR12
I have followed the all notes from forums/metalinks. but no use.
Hi Hussein,
I came know the issue bcoz of profile change.
on part of iSupport setup on web node, followed metalink DMZ configuration in R12.
After I have changed below profile value, I am not able to see the responsibilities after login as sysadmin on webnode i.e new node B. but I can see responsibilities on node A.
Update Node Trust Level
To change the value of the Node Trust Level profile option value to External for a particular node, perform the following steps:
1. Login to Oracle E-Bsonapness Suite as sysadmin user sonapng the internal URL
2. Select the System Administrator Responsibility
3. Select Profile / System
4. From the 'Find system profile option Values' window, select the server and get the valie MINE8 into it.
5. Query for %NODE%TRUST%. You will see a profile option named 'Node Trust Level'. The value for this profile option at the site level will be Normal. Leave this setting unchanged.
6. Set the value of this profile option to External at the server level. The site level value should remain set to Normal
I need to follow metalink note for configuration DMZ in EBS R12. but I cant see the responsibilities of sysadmin.
fyi...I have cloned web external node by running adcfgclone.pl on node B by enabling web entry and web services only, remaining services are disabled. but as per metalink note, we should enable the Root Services also on node B. is it causing the issue after edit the profile on part of DMZ config in R12.
please let me know how to fix this issue?
I have deadline to finish it.... -
OBIEE 11g - Not able to see existing reports which are created by specific owner but I could able to see Admin role user reports.
Appreciated if you could able to help as soon as possible as I don' have back up for these disappeared reports.
Pleas let me know if any additional information needed.Hi
Thank you for the reply.
Here one thing I would need to mention that those are created by me on last week, but when I check those today, I could not able to see or even admin also not able to see those. For sure no migration and updations happend over the week end, really not able to debug whats the issue around. Unfortunately I haven't taken back up as well.
Please could you help and let me know whats the root cause and how I could able to restore.
Best regards,
Kumar -
After logging in SSO user is not able to see responsiblities
Our EBS is integrated with SSO. On PRD we have once user whose account was locked while logging into SSO. We unlock his account, after that user is able to login but is not able to see responsiblities list. We did on EBs application tier relink using
FND_TOP/patch/115/sql/fndssouu.sql with userid parameter.
with this user was able to see responsiblities Yesterday.
Today morning again the same user is complaining that he is able to login SSO but can not see responsiblities list.
Please help. This is happening on PRD just for one user.Our EBS is integrated with SSO. On PRD we have once user whose account was locked while logging into SSO. We unlock his account, after that user is able to login but is not able to see responsiblities list. We did on EBs application tier relink using
FND_TOP/patch/115/sql/fndssouu.sql with userid parameter.
with this user was able to see responsiblities Yesterday.
Today morning again the same user is complaining that he is able to login SSO but can not see responsiblities list.Please see old threads for similar disucssion.
https://forums.oracle.com/forums/search.jspa?threadID=&q=Missing+AND+Responsibilities&objID=c3&dateRange=all&userID=&numResults=15&rankBy=10001
Please help. This is happening on PRD just for one user.Please log a SR.
Thanks,
Hussein -
Why users are not able to see certain printers even though they are in the Airgroup server table
Q: Why users are not able to see only certain printers even though they are in the Airgroup server table ?
A: In certain scenarios we may notice printers come up under the server /cache entries on the controller.
However when an airgroup user does search for printer, they may not see all the printers, certain printers may be not visible .
This is because the service IDs sent by the user in the MDNS query are not broadcast by these printers
In the below capture the Ipad sends query for service id "_universal_sub_ipp_tcplocal" and "_universal_sub_ipps_tcplocal" and hence the controller will
respond with the printers that broadcasts these service ids.
Non–Visible printer :
_printer._tcp.local PTR IN 7200 10.125.30.223 5820.05 Wed Mar 18 13:24:26 2015
_pdl-datastream._tcp.local PTR IN 7200 10.125.30.223 6112.25 Wed Mar 18 13:24:26 2015
_ipp._tcp.local PTR IN 7200 10.125.30.223 5888.15 Wed Mar 18 13:24:26 2015
_http._tcp.local PTR IN 7200 10.125.30.223 6293.88 Wed Mar 18 13:24:26 2015
NPIED487E.local A IN 240 10.125.30.223 194.43 Wed Mar 18 13:24:26 2015
hp LaserJet 4250 [ED487E]._printer._tcp.local SRV/NBSTAT IN 240 10.125.30.223 209.87 Wed Mar 18 13:24:26 2015
hp LaserJet 4250 [ED487E]._printer._tcp.local TXT IN 240 10.125.30.223 205.14 Wed Mar 18 13:24:26 2015
hp LaserJet 4250 [ED487E]._printer._tcp.local TXT IN 240 10.125.30.223 197.18 Wed Mar 18 13:24:26 2015
hp LaserJet 4250 [ED487E]._printer._tcp.local TXT IN 240 10.125.30.223 196.42 Wed Mar 18 13:24:26 2015
hp LaserJet 4250 [ED487E]._printer._tcp.local TXT IN 240 10.125.30.223 208.15 Wed Mar 18 13:24:26 2015
hp LaserJet 4250 [ED487E]._pdl-datastream._tcp.local SRV/NBSTAT IN 240 10.125.30.223 207.35 Wed Mar 18 13:24:26 2015
hp LaserJet 4250 [ED487E]._pdl-datastream._tcp.local TXT IN 240 10.125.30.223 200.64 Wed Mar 18 13:24:26 2015
hp LaserJet 4250 [ED487E]._ipp._tcp.local SRV/NBSTAT IN 240 10.125.30.223 209.44 Wed Mar 18 13:24:26 2015
Visible-printer :
_printer._tcp.local PTR IN 4500 10.125.26.29 3745.82 Wed Mar 18 13:24:51 2015
_universal._sub._ipp._tcp.local PTR IN 4500 10.125.26.29 3694.14 Wed Mar 18 13:24:51 2015
_ipp._tcp.local PTR IN 4500 10.125.26.29 3628.81 Wed Mar 18 13:24:51 2015
_pdl-datastream._tcp.local PTR IN 4500 10.125.26.29 3616.14 Wed Mar 18 13:24:51 2015
_http._tcp.local PTR IN 4500 10.125.26.29 3793.56 Wed Mar 18 13:24:51 2015
XRX9C934E25C52D.local A IN 120 10.125.26.29 355.03 Wed Mar 18 13:24:51 2015
Xerox WorkCentre 3615 (25:C5:2D)._printer._tcp.local SRV/NBSTAT IN 120 10.125.26.29 130.45 Wed Mar 18 13:24:51 2015
Xerox WorkCentre 3615 (25:C5:2D)._printer._tcp.local TXT IN 4500 10.125.26.29 3670.33 Wed Mar 18 13:24:51 2015
Xerox WorkCentre 3615 (25:C5:2D)._ipp._tcp.local SRV/NBSTAT IN 120 10.125.26.29 389.55 Wed Mar 18 13:24:51 2015
Xerox WorkCentre 3615 (25:C5:2D)._ipp._tcp.local TXT IN 4500 10.125.26.29 3640.60 Wed Mar 18 13:24:51 2015
Xerox WorkCentre 3615 (25:C5:2D)._pdl-datastream._tcp.local SRV/NBSTAT IN 120 10.125.26.29 210.97 Wed Mar 18 13:24:51 2015
In order to learn other printers we may need to use specific app provided by printer vendor on the client or configure the printers to send these service IDs.The net 451 issues made it not work after a while but it affected the entire RWW site not just remote access:
http://blogs.technet.com/b/sbs/archive/2014/01/13/troubleshooting-an-unexpected-error-occurred-message-when-using-remote-web-access-to-connect-to-computers.aspx
Careful if you try and uninstall it, you'll need to put back net 4.0 and reconfigure some stuff.
Did it ever work?
Make sure the users have installed the certificate they need and turn on compatibility mode in IE (also make sure IE isn't locked down and disabling activeX).:
https://technet.microsoft.com/en-us/library/dd701173%28v=ws.10%29.aspx?f=255&MSPPError=-2147217396
-- Al
Maybe you are looking for
-
Backing up Terabytes to HDs?
I have a dual G5 with four external 2TB FireWire HDs. I thought I'll have an easy shortcut by buying 1.5 TB Seagate Freeagent HDs to back up to instead of dealing with dozens of LTO2 Ultrium tapes and age-old SCSI as I did until now. What a walk in t
-
Boot Camp and External monitor
I bought a Dell U2410 monitor and connecting it with my 13 inch MacBook by HDMI connector. I don't know how to make the external display work with my computer in BootCamp or in Windows mode. But I don't know how to start the external monitor when I a
-
SRM-SUS: "Create Invoice" button not available in "Confirmation"
A confirmation is created from SUS(702) and posted to ECC (607). Service Entry sheet is released in ECC. Supplier unable to see the "Create Invoice" button in the confirmation. Please advise what could be missing here? Is there any status update to C
-
Reporting on Attachment Object
We have a requirement where we would like to establish a link from CRM-OD reports to certain Service Reports that have been stored on the Google doc server.We initially setup an action link on an Activity Report report to achieve this. But when the r
-
External Fire Drive - All files cannot be opened
Hi, I have a Prolific PL3507 Combo External Firewire Drive. All data on the device cannot be opened by its application or any application - Photoshop, Illustrator - iTunes - iPhoto - Pages etc etc. A get info shows the file as being whatever the file