Getting through proxy servers
Hello,
Does anyone know if the URLRequest / Loader classes are able
to connect through proxy servers? In other words, does Flash read
the PC's proxy configuration and automatically use it?
Also, I was wondering, if one was to create a Socket and then
connect to a web site...
mySocket.connect("www.mydoman.com", 80);
but the user's PC uses a proxy server to connect to the
Internet, would this
connection succeed or fail?
Thanks for your insight.
Dan
Check the links below out. I think it may help you out some.
http://bugs.adobe.com/jira/browse/FP-519
http://bugs.adobe.com/jira/browse/FP-673
Similar Messages
-
Visits through proxy servers (was: Just plain CREEPY!)
Has anyone else had this happen to them. I have inserted CODE on all my websites to TRACK anyone visiting my websites pages…
Since I joined the Adobe forum ALL the visits that are germane to this forum are 90% through Proxy servers!!!!!!
But that's not even the creepiest part… Why am I getting visited from the following IPs since joining the adobe Forums…..
The US Department of Justice
The US Secretary of State
The US Department of the Army
The Colorado State Secretary office and
and of all places... NASA!
And countless PROXY servers!I have just returned from a meeting in which we discussed your case.
In trying to get to the bottom of the situation, we even considered if the 13th April may have been a factor. We soon realised that this could not be the case because when I first heard of it in the morning of 13th April, half the world would still register 12th April as the date.
Another peculiarity, your first post was time stamped
Apr 13, 2013 7:37 PM
an answer to the post
1. Sudarshan Thiagarajan,
Apr 13, 2013 2:57 PM
The answer was submitted 4.5 hours before you posting the incident(s)
I'm with you bro! We need to stick together and see it through. Never mind the non-believers, we do not need them. Be strong!
I'll be back. -
im facing a problem.in which I am having,one java application that is sitting behind Proxy1 has to access the Webserver which is sitting behind proxy2,for transfering files. from one M/C tht sitting behind Proxy 1 to the webserver sitting behind proxy 2.
using URLConnection i will be able to do this,but as per my requirement i may have to transfer files which may be more than 100 MB,in that case URLConnection is failing because of OutofMemmory Error,
the only way to cater this requirement is socket but i don't know hw i can go through proxy using java sockets......
---------------------------Proxy1------ Proxy2
-------------------------- --|----------------|
Java Application -------| <----->------|----- My WebServer
-----------------------------|-- internet---|
---------------------------- |----------------|
Thnx in advance,Thnx tolmank,
i am using sockets instead of URLConnection,i was able to connect using URLConnection,but when i use sockets i am not able to,i cann't use URLConnection because of out of memmory problem,as i mentioned earlier .
if anybody can me help me out it would have been a great help for me...
thnx in advance......
shafeek -
Directing obiee publisher through proxy servers
Hi All,
we are using obiee10g and implemented SSO through CA Siteminder and both OBIEE and Publisher are deployed on weblogic 11g.If we are working with bi publisher it is going through server and port only not by using the proxy settings.But we are logging in by using SSO.Great work, Christian! Thanks for summing things up for those who didn't go to a live event. I am listening to the webcast now and can hardly wait to actually get some hands-on experience. Again, thanks for your thoughts!
David -
Patch Manager - LPS through proxy, servers can't analyze
Hello,
i try to setup 2 servers :
srv1
one has the right to connect to internet through a proxy (appliance)
it has LPS (not sure it is correclty configured)
> patchsvr setup -l
Patch source URL: file:///local-arbre/export/download/sun/patches/5.9/9_recommanded
Cache Location: /local-arbre/export/download/sun/patches/5.9/9_recommanded
Web proxy host name: proxy.cdcam.com
Web proxy port number: 8080srv2
another one is local and try to analyze with smpatch through srv1
it has the error :
#smpatch analyze
detectors: not found at http://srv1:3816/solarisLogs on srv1 show :
2006-11-23 13:49:00 Thu Nov 23 13:49:00 MET 2006(INFO) => com.sun.patchpro.server.PatchProServerServlet@15a6029 <=Protocol version: 2.1
2006-11-23 13:49:00 Thu Nov 23 13:49:00 MET 2006(INFO) => com.sun.patchpro.server.PatchProServerServlet@10bbf9e <=Protocol version: 2.1
2006-11-23 13:49:00 Thu Nov 23 13:49:00 MET 2006(DEBUG) => com.sun.patchpro.server.PatchProServerServlet@15a6029 <=Requested Detector Name: detectors
2006-11-23 13:49:00 Thu Nov 23 13:49:00 MET 2006(DEBUG) => com.sun.patchpro.server.PatchProServerServlet@10bbf9e <=Requested Database Name: patchdb
2006-11-23 13:49:00 Thu Nov 23 13:49:00 MET 2006(ERROR) => com.sun.patchpro.server.PatchProServerServlet@15a6029 <=Problem detected while servicing "downloadRealizationDetectors" request. /local-arbre/export/download/sun/patches/5.9/9_recommanded/Misc/detectors.jar (No such file or directory)
2006-11-23 13:49:00 Thu Nov 23 13:49:00 MET 2006(ERROR) => com.sun.patchpro.server.PatchProServerServlet@10bbf9e <=Problem detected while servicing "downloadPatchDB" request. /local-arbre/export/download/sun/patches/5.9/9_recommanded/Misc/patchdb.zip (No such file or directory)Any idea of how to correct the problem ?
thankspatchsvr stopShutting down Local Patch Server
root /etc/init.d
patchsvr setup -p https://getupdates1.sun.com/
root /etc/init.d
patchsvr startStarting Local Patch Server
Patch source URL: https://getupdates1.sun.com/
Cache Location: /local-arbre/export/download/sun/patches/5.9/9_recommanded/
Web proxy host name: proxy.cdcam.com
Web proxy port number: 8080
i still have the same errors logs on srv1 when i try to smpatch analyze from srv2
2006-11-23 14:47:22 Thu Nov 23 14:47:22 MET 2006(INFO) => com.sun.patchpro.server.PatchProServerServlet@10bbf9e <=Protocol version: 2.1
2006-11-23 14:47:22 Thu Nov 23 14:47:22 MET 2006(DEBUG) => com.sun.patchpro.server.PatchProServerServlet@10bbf9e <=Requested Database Name: patchdb
2006-11-23 14:47:22 Thu Nov 23 14:47:22 MET 2006(ERROR) => com.sun.patchpro.server.PatchProServerServlet@10bbf9e <=Problem detected while servicing "downloadPatchDB" request. /local-arbre/export/download/sun/patches/5.9/9_recommanded/Misc/patchdb.zip (No such file or directory)
2006-11-23 14:47:22 Thu Nov 23 14:47:22 MET 2006(INFO) => com.sun.patchpro.server.PatchProServerServlet@10bbf9e <=Protocol version: 2.1
2006-11-23 14:47:22 Thu Nov 23 14:47:22 MET 2006(DEBUG) => com.sun.patchpro.server.PatchProServerServlet@10bbf9e <=Requested Detector Name: detectors
2006-11-23 14:47:22 Thu Nov 23 14:47:22 MET 2006(ERROR) => com.sun.patchpro.server.PatchProServerServlet@10bbf9e <=Problem detected while servicing "downloadRealizationDetectors" request. /local-arbre/export/download/sun/patches/5.9/9_recommanded/Misc/detectors.jar (No such file or directory) -
Does Socket support proxy servers?
Hello,
I was wondering, if one was to create a Socket and then
connect to a web site...
mySocket.connect("www.mydoman.com", 80);
but the user's PC uses a proxy server to connect to the
Internet, would this
connection succeed or fail?
Also, I assume that the URLRequest / Loader classes do in
fact get through proxy servers.
Is that correct or not?
Thanks for your insight.
DanHi,
Pls chk this;-->supported platforms for BO products
https://websmp206.sap-ag.de/~form/sapnet?_SHORTKEY=01100035870000712240&_SCENARIO=01100035870000000202&
Regards
CSM Reddy -
At the office I use my MacBook Pro connected to an exchange server. To do so I've had to use Microsoft Entourage and Firefox. I cannot get any of the Mac software (iTunes, Safari, Mail, etc.) to work with the server.
I've read previous discussions in this forum on the subject but none have helped.
How can it be that Firefox can have the simple "auto-detect proxy settings for this network" that works and the 'ahead of the curve,ease of use leader,' Apple does not?
Can anyone help me to get OSX Tiger working for me at work?I'm not sure what you mean by vague but allow me to be more specific.
To make Entourage work I had to configure it to use an Exchange Server, an option built in to the application. I find no such option in Apple Mail.
To make Firefox access the internet I just had to choose "auto-detect proxy servers." Now it will work at the office (through the Exchange server) and at home where I'm connected directly (on a cable modem). Safari has no such option.
I understand that Apple uses System Preferences rather than each application having its own settings. I ahven't been able to get any Apple apps to connect to the internet when I'm at work. I have set up a "Location" for when I'm at work. My MBP can access the company printers, though not from every application - - Preview always works.
I see that there is a place for a PAC file url or to configure a proxy server manually. I don't have this information. The company in all PC and isn't all that concerned with helping me configure my Mac.
If there's any other way someone can recommend I'd appreciate it.
On another note, I question why Apple's set up isn't easier. Entourage and Firefox were very simple, in the case of Firefox it was automatic. -
Adding Pix device public interface through Proxy server into CSM Fails
Hi
I am trying to add a device into CSM. The device is only reachable through proxy server. If i try to add the device, the connectivity test fails" unable to communicate with device". If i debug on the PIX i see no connection attemps. If imake a https connection from the Explorer from the windows server running CSM i get connected. I have set the proxy settings under Server Administration. I can update packages from CCO through the proxy. Is there somewhere else to tell CSM to run through proxy ?Hello,
maybe your problem has to do something with loading SLPDA.NLM. If you
cannot get to open Autoexec.ncf then go back to DOS-Mode, rename this
file in C:\nwserver-directory and start again. i have seenthis behaviour
on servers loading SLPDA with no network-communication and they stop
loading at WPSD.NLM. Try to load SLPD.NLM manually when the server is
up. After that shift the line in Autoexec.ncf where you want to load
Slpda.NLM to the end of the file and boot the server again to see what
happens.
Good luck
Burkhard Wiegand
Netware Admin
Debeka-Versicherungen
D-56068 Koblenz -
Connect to Server HTTPs through Proxy Server Problem
I am trying to connect through a company proxy via port 8080 to a https connection on a server so that it can mount on a desktop. Using 10.4.11 on Mac Pro
The connection works http through the company network and works http and https through my home network. The company require we use secure connections or something they will supply which will be out of date and clunky to use. I am using FullSwitch as a workflow so need the volume to mount.
Basically I do the following:
Go
Connect to Server
type address https://??????????????????/???????
I then get a Proxy Auth where I put my domain, user name and password
A certificate is then returned and I press continue
It then attempts to pass through the proxy tunnel to connect but just keeps going and going......
It should come up at this point with the server login but it doesn't
We are told by the IT team which only supports PCs that it is then that the Mac tries to create 2000+ connections but doesn't just creates lots of network traffic.
In between us and the proxy we sit behind a firewall but are told that there are no rules to stop https etc. I can connect to the site through Safari via https but as I need to upload files I need to be able to mount via https as a volume
Are there any suggestions as to what the issue may be or questions that I can try and ask IT to gather more info?
Many thanksMany thanks for your reply. We can use ftp but can not tunnel sftp through the proxy.
As I use fullswitch for automation I would like to keep the simplicity of mounting the server as files can be uploaded easily. Currently using http no problems but am being forced to use https from IT Security and of course being in a large corporation with only 35 Macs they say they don't support Macs and hey you have to do it our way or else. Driving me mad.
Sorry for going off on one but it is so frustrating as the supplier we are sending to wants the files the way we currently send them as they have their system workflow but my company wants us to use their sftp system that is clunky for in and out going file connections forcing suppliers to go to our sftp servers and not us supplying to them.....................
Right then I currently use Transmit with Type 7 on the proxy type for FTPing files using FTP Protocol not SFTP and have no problems going to the sites we have asked to get specific access to (again takes 2-14 days to get all the firewall rules changed to allow access to new ftp sites we are given, very efficient working practice)
So as you can see I really want to get the https working as it is the best option for workflow if IT security want us to secure.
Many thanks, again sorry for my ranting -
Adobe Reader 9.0 has delay when downloading PDF file through proxy server
There is an issue with the Adobe Reader (and Acrobat) 9.0 PDF Link Helper ActiveX control for Internet Explorer (6 or 7) on Windows computers with respect to proxy servers. Due to this issue, there is a 2 minute delay for any Internet Explorer web browser on the Deere network before any PDF file will open from the Internet within the IE web browser if In-Place activation (Display PDF in Browser) is enabled in Adobe Reader 9. This problem does not affect Adobe Reader 8.
What we are seeing is that when someone on the Deere network clicks on a links to a PDF file in the Internet, the PDF file downloads immediately. But then, after the PDF file is downloaded, the Adobe Reader 9 PDF Link Helper ActiveX control tries to talk directly to the Internet web site. The Adobe Reader 9 PDF Link Helper ActiveX control does not know how to negotiate our proxy server. So after a minute or two, the Adobe Reader 9 PDF Link Helper ActiveX control times out (gives up) and allows the IE browser to display the downloaded PDF file in the IE browser.
We work around this issue by disabling In Place Activation for PDF files in IE (uncheck Display PDF in Browser). But we would like a fix for the PDF Link Helper ActiveX control.
[HKEY_CURRENT_USER\Software\Adobe\Acrobat Reader\9.0\Originals]
"bBrowserIntegration"=dword:00000000
[HKEY_CURRENT_USER\Software\Adobe\Adobe Acrobat\9.0\Originals]
"bBrowserIntegration"=dword:00000000
Here's what our proxy people see when they do a trace of a PDF file download through their proxy server with IE 7 and Adobe Reader 9 with Display PDF in Browser checked.
The browser tells the proxy to download the pdf, it does and sends it to the browser. Before the browser opens it something in Acrobat ( or I.E. ? ) tries to make a connection back to the content server that hosted the pdf. Unfortunately this agent does not ask the proxy to make the request for it, but rather asks local DNS to resolve the Internet server name. This request dies because our internal private network does not know anything about the Internet. Only the DNS used by the proxy can resolve Interent names. After two unsuccessful DNS queries into the private network, the agent tries to resolve the same Internet name with NBNS ( netbios name service) queries again into the private network, with the same results. These requests persists for more than two minutes ( over 200 unresolved queries ). Then for whatever reason the agent gives up and the already downloaded pdf file loads into the browser.
I have a TCP capture file if you want it.Hi,
I have the same problem with some specific PDF files. For more than 90% it hangs when opening the file, but sometimes it works (with the same file).
The workflows where it sometimes worked:
a) Loading the PDF, the reader is started the first time and displays license dialog.
b) The reader was already runing and file is loaded with Drag&Drop or File/Open in the Reader
But most times it does not load.
I could not find out which file is missing or trying to be opened. So I tried with the CP949.TXT.
I found no CP949.TXT in Reader 8 installation, so I took it from the link, pasted into notepad and stored in the respective directory
C:\Program Files (x86)\Adobe\Reader 9.0\Resource\TypeSupport\Unicode\Mappings\win\
Now it seems to work fine, opening PDFs with double click from exporer.
But why did Adobe Reader 8 not have the TypeSupport directory at all?
Even when having found a fix (hack?), I think I did not understand the cause of this problem.
Regards,
TheLastReader -
Re: (forte-users) HTTP request through proxy server
Daniel -
No, it does not. ;)
How do you say to HTTPRequest to go through proxy?
Thanks,
Taras
Daniel Nguyen wrote:
>
Hi,
It works very well. I have experienced this model for a distant Forte client
calling a Forte Server service Object for instance without any environment
and without TCP access (passing through firewall for instance).
It has also worked very well to make an injectot to improve Web Enterprise
and IIS using the SendRequest from HTTPAccess.
Hope this helps,
Daniel Nguyen
Freelance Forte Consultant
http://perso.club-internet.fr/dnguyen/
Taras Katkov a écrit:
HTTP request through proxy server using forte HTTP library?
Any experience?
Thanks,
Taras
For the archives, go to: http://lists.xpedior.com/forte-users and use
the login: forte and the password: archive. To unsubscribe, send in a new
email the word: 'Unsubscribe' to: forte-users-requestlists.xpedior.com--
For the archives, go to: http://lists.xpedior.com/forte-users and use
the login: forte and the password: archive. To unsubscribe, send in a new
email the word: 'Unsubscribe' to: forte-users-requestlists.xpedior.comYou can also use the HTTP-DC project.... You don't
need Web Enterprise for this. From what I can tell,
this is available in L.x on....
There is api documentation in M.2 (with scant
examples.)
There's a special process to put the project in your
repository (it isn't installed in the repository in
the standard install,) the documentation in M.2
(probably in M.0 too, AFAIK) that tells you how to do
this (look for HTTP-DC in the online help.)
I haven't done much with it yet, I've just installed
it. If anybody out there has examples, that'd be
great. I'll try to contribute more the moment I get a
chance to explore it....
Christopher Fury
BellSouth Communications Systems
--- Daniel Nguyen <dnguyenclub-internet.fr> wrote:
Hi,
If you have Web Enterprise, you can user
HttpAccess.SendRequest().
Hope this helps,
Daniel Nguyen
Freelance Forte Consultant
Amin, Kamran a écrit:
Is there any way to make a HTTP request from TOOLto another HTTP Service?
thanks in advance.
For the archives, go to:
http://lists.xpedior.com/forte-users and use
the login: forte and the password: archive. Tounsubscribe, send in a new
email the word: 'Unsubscribe' to:forte-users-requestlists.xpedior.com
For the archives, go to:
http://lists.xpedior.com/forte-users and use
the login: forte and the password: archive. To
unsubscribe, send in a new
email the word: 'Unsubscribe' to:
forte-users-requestlists.xpedior.com
Kick off your party with Yahoo! Invites.
http://invites.yahoo.com/ -
Dont think RMi is HTTP tunneling through proxy firewall
Hi Guys,
Does anyone know how to monitor if RMI is using the option toHTTP tunnel through a proxy ???
Many of clients sit behind firewalls/proxies that enable HTTP only. I thought RMI would, as a default, use HTTP tunneling POST, RESPONSe methods to get through, but it does not.
Would that case be insted of using Naming.lokup("RMIServer"); that i should use
Registry reg = LocateRegistry.getResgistry(serverAddress, serverPort);
reg.lookup("RMIServer");
Any help would be greatly appreciated.RMI doesn't have an option like that. Sockets do, and you get it for any socket including RMI by setting socksProxyHost and socksProxyPort.
The RMI HTTP tunnelling thing happens when there is an HTTP server at the server side. which redirects the request to an RMI server via rmi-cgi.cgi or the RMI servlet. It's automatic, as a fallback, and you can enforce its use via a system property which you can find in the Javadoc Guide to Features/Remote Method Invocation/Useful java.rmi system properties. -
Deal All,
We could not connect BPC through proxy server. Can anybody let me know any specific setting required.
Best Regards
SheshSorin,
Thank you so much for the reply.
I think you are saying that when I connect that when I am connecting directly to BPCWEB it is saying knows you are authenticated to the windows domain. But when it gets it from the proxy server it is now not you anymore the BPCWEB server sees it coming from the proxy server NOT the windows domain.
So instead of DOMAIN/userID connecting it is PROXY/userID connecting. BPC doesn't know you. This cannot be the first time this has been seen.
Do you know a way around this? I am currently using sapwebdispatcher as my reverse proxy here, however I do not mind trying other products.
Would you have any recommendations on what your other clients use as a reverse proxy for BPC.
To simply things, we have DOMAIN users ---> Reverse proxy box ---> BPC Web .NET Server. We want to eliminte the ability for direct access to the BPC web .NET Server
Thanks again... any help would be great as we have been struggling for a few weeks to get this silly access issue resolved.
Edited by: Russell Hull on Feb 20, 2010 7:24 PM -
Proxy servers and the "cannot publish" error - v.1.1.2
Using the latest iWeb (1.1.2), attempts to publish my work to my .Mac account resulted in the infamous "publish error." I then came across this KB article:
http://docs.info.apple.com/article.html?artnum=303927
I turned off my proxy access in the Network settings, and voila, publishing was successful. But now, I'm circumventing my much-needed proxy.
It's been suggested in other threads here that proxies aren't a problem if one's iDisk is accessible through it. This is not the case. With the proxy, iDisk access is fine, it's only iWeb publishing that is a problem.
Any way to keep my proxy and still publish with .Mac?iDisk access and iWeb publishing ARE indeed different activities. They are similar in that they both utilize the WebDAV protocol over Port 80, but they are different in their individual requirements for back and forth communications with the .Mac servers in terms of how soon or in what timeframe they expect to hear confirmation of transfer back from the server.
It is apparent to me that the network timeout threshold for copying something to iDisk is a lot longer than that for publishing through iWeb. In fact, I would say that iWeb has become a lot more stringent with network timeouts ever since it was updated from 1.0 to 1.1.
Anything in between your computer and the .Mac servers contributes to network latency. There are both software and hardware contributions to this latency. Proxy servers, like routers, can be software or hardware based. Software-based latency is most often greater than hardware-based latency.
I would guess that removing any kind of latency "generating" obstacles within your control would likely improve iWeb function and decrease the incidence of publish errors. Some of these obstacles can include background processes, busy LAN activity (like VOIP use or streaming music/video or online gaming), wireless access points, proxy servers, and routers.
On the other hand, I also think that if Apple increased iWeb's network timeout threshold, that most of the publishing errors that people experience could be eliminated. -
ASA - cut through proxy authentication for RDP?
I know how to set this up on a router (dynamic access-list - lock and key)... But, I'm having trouble understanding how to setup OUTSIDE to INSIDE cut through proxy authentication for RDP.
OUTSIDE to INSIDE RDP is currently working.
I have 2 servers I want RDP open for..
[*]OUTSIDE 1.1.1.1 to INSIDE 10.10.70.100
[*]OUTSIDE 1.1.1.2 to INSIDE 10.10.50.200
What's required for OUTSIDE users to authenticate on the ASA before allowing port 3389 opens? I was hoping for is a way to SSH into this ASA, login with a special user, then have the ASA add a dynamic ACE on the OUTSISE interface to open 3389 for a designated time limit. Is this possible?
Here is my current config.
[code]
ASA Version 8.2(5)
hostname ASA5505
names
name 10.10.0.0 LANTraffic
name 10.10.30.0 SALES
name 10.10.40.0 FoodServices
name 10.10.99.0 Management
name 10.10.20.0 Office
name 10.10.80.0 Printshop
name 10.10.60.0 Regional
name 10.10.70.0 Servers
name 10.10.50.0 ShoreTel
name 10.10.100.0 Surveillance
name 10.10.90.0 Wireless
interface Ethernet0/0
description TO INTERNET
switchport access vlan 11
interface Ethernet0/1
description TO INSIDE 3560X
switchport access vlan 10
interface Ethernet0/2
shutdown
interface Ethernet0/3
shutdown
interface Ethernet0/4
shutdown
interface Ethernet0/5
shutdown
interface Ethernet0/6
shutdown
interface Ethernet0/7
shutdown
interface Vlan1
no nameif
security-level 50
no ip address
interface Vlan10
description Cisco 3560x
nameif INSIDE
security-level 100
ip address 10.10.1.1 255.255.255.252
interface Vlan11
description Internet Interface
nameif OUTSIDE
security-level 0
ip address 1.1.1.1 255.255.255.224
ftp mode passive
clock timezone PST -8
clock summer-time PDT recurring
dns domain-lookup OUTSIDE
dns server-group DefaultDNS
name-server 8.8.8.8
name-server 4.2.2.2
domain-name test.local
access-list RDP-INBOUND extended permit tcp any host 1.1.1.1 eq 3389
access-list RDP-INBOUND extended permit tcp any host 1.1.1.2 eq 3389
pager lines 24
logging enable
logging timestamp
logging trap warnings
logging device-id hostname
logging host INSIDE 10.10.70.100
mtu INSIDE 1500
mtu OUTSIDE 1500
ip verify reverse-path interface OUTSIDE
icmp unreachable rate-limit 1 burst-size 1
asdm image disk0:/asdm-645.bin
no asdm history enable
arp timeout 14400
global (OUTSIDE) 1 interface
nat (INSIDE) 1 LANTraffic 255.255.0.0
static (INSIDE,OUTSIDE) tcp interface 3389 10.10.70.100 3389 netmask 255.255.255.255
static (INSIDE,OUTSIDE) tcp 1.1.1.2 3389 10.10.50.200 3389 netmask 255.255.255.255
access-group RDP-INBOUND in interface OUTSIDE
route OUTSIDE 0.0.0.0 0.0.0.0 1.1.1.1 1
route INSIDE LANTraffic 255.255.0.0 10.10.1.2 1
timeout xlate 3:00:00
timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02
timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00
timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00
timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute
timeout tcp-proxy-reassembly 0:01:00
timeout floating-conn 0:00:00
dynamic-access-policy-record DfltAccessPolicy
aaa authentication ssh console LOCAL
aaa authentication http console LOCAL
http server enable
http Management 255.255.255.0 INSIDE
no snmp-server location
no snmp-server contact
snmp-server enable traps snmp authentication linkup linkdown coldstart
crypto ipsec security-association lifetime seconds 28800
crypto ipsec security-association lifetime kilobytes 4608000
telnet timeout 5
ssh 10.10.70.100 255.255.255.255 INSIDE
ssh Management 255.255.255.0 INSIDE
ssh 0.0.0.0 0.0.0.0 OUTSIDE
ssh timeout 5
ssh version 2
console timeout 0
threat-detection basic-threat
threat-detection scanning-threat shun
threat-detection statistics access-list
threat-detection statistics tcp-intercept rate-interval 30 burst-rate 400 average-rate 200
webvpn
username scott password CNjeKgq88PLZXETE encrypted privilege 15
class-map inspection_default
match default-inspection-traffic
policy-map type inspect dns preset_dns_map
parameters
message-length maximum client auto
message-length maximum 512
policy-map global_policy
class inspection_default
inspect dns preset_dns_map
inspect ftp
inspect h323 h225
inspect h323 ras
inspect ip-options
inspect netbios
inspect rsh
inspect rtsp
inspect skinny
inspect esmtp
inspect sqlnet
inspect sunrpc
inspect tftp
inspect sip
inspect xdmcp
service-policy global_policy global
prompt hostname context
no call-home reporting anonymous
call-home
profile CiscoTAC-1
no active
destination address http https://tools.cisco.com/its/service/oddce/services/DDCEService
destination address email [email protected]
destination transport-method http
subscribe-to-alert-group diagnostic
subscribe-to-alert-group environment
subscribe-to-alert-group inventory periodic monthly
subscribe-to-alert-group configuration periodic monthly
subscribe-to-alert-group telemetry periodic daily
Cryptochecksum:1e9d278ce656f22829809f4c46b04a07
: end
[/code]You're running ASA 8.2(5). In 8.4(2) Cisco added support for what they call Identity Firewall rules. That is, you can make access-lists entries specific to users (or object groups containing users).
There's an overview document on this posted here. It's a bit dated but I believe the only change is that Cisco is now preferring use of the more current Context Directory Agent (CDA) - a free VM they provide - vs. the deprecated AD agent (software service that runs on your DC).
Maybe you are looking for
-
Passing Parameter to jspx page in URL
hello all, I want to know if it is possible to send paramters in jspx url . And if it is , then how can we acess those parameters in the backing beans . I am using jdeveloper 10.1.3 My link is http://10.11.5.5:8989/WF_APPS/faces/LoginPage.jspx and i
-
EditText , ComboBox : How to reffer edittext in UDO forms
I had Generated an UDO Form and on the form Load Event. i had created a Combobox(RunTime) and Filled some values from the database; now i want to act with the select event of that combobox. <b>where can i write the code for the Events of this runtime
-
How do I authorize my new Kobo reader?
We just purchased a Kobo Glo ereader and I have the Kob and Adobe Digital Edition 2 loaded on the computer but Adobe will not authorize it.
-
Photo Booth automatically shuts down when I try to take video using Mavericks
Photo booth, Pro Tools, and M-Audio ProFire 610 giving me problems...
-
Is there a way to show all the hidden files and folders in Finder? Thanks in advance.