Global addressbook access with OC

Hi,
We are having problems to view global addressbook with OC. After installing OC any search on global address book result in error.
Directory server Acces logs says:
[28/Feb/2007:13:25:21 +0100] conn=368 op=46 msgId=47 - SRCH base="ou=people,o=brujula.es,o=jes" scope=2 filter="(&(mail=*)(cn=*))" attrs="uid mail cn title company telephoneNumber physicalDeliveryOfficeName objectClass"
[28/Feb/2007:13:25:21 +0100] conn=368 op=46 msgId=47 - RESULT err=50 tag=101 nentries=0 etime=0
The anonymous access ACI is ok, I test it with LDAP-editor on the same machine.
OC version:
sjab32.dll     7.1.233.0          sjms32.dll     7.1.233.0
sjui32.dll     7.1.233.0          sjtp32.dll     7.1.233.0
Directory server version:
5.2 Patch 4
Thanks.

Solved.
Finaly it was an ACI problem.
After increasing the debug level of LDAP error messages. I saw this:
[28/Feb/2007:17:03:11 +0100] - INFORMATION - NSACLPlugin - conn=-1 op=-1 msgId=-1 - acl_summary(main): access_not_allowed(read) on entry/attr(oid=2.16.840.1.113730.3.4.9,cn=features,cn=config, dummy#attr) to (anonymous) (not proxied) (reason: no acis matched the subject )
I have aded an ACI to "oid=2.16.840.1.113730.3.4.9,cn=features,cn=config" alowing anonymous access and all works fine.
Thanks.

Similar Messages

  • Need help in getting access with phone Addressbook

    Hi,
    I am developing a application that desires to get access with the existing phone address book.
    Q1) I found that JSR 75 will help.I think i am in right way.
    plz help me by giving an example??
    Q2) Does All MIDP2.0 enabled phones supports JSR 75??
    How to find the JSR supported mobiles??
    Q3) Is it Possible with JSR 75 to get access with existing Address book??
    Plz help me.
    Satish Babu Maragani

    Hello,
    1) JSR 75 can provide access to the native address book. Additionally, some device manufacturers provide proprietary APIs that also allow access to the address book. For example, Motorola Iden devices and the v600 series both have phonebook access APIs. But JSR 75 is the standard.
    Here is an example of listing the native address books and contacts for a device that supports JSR 75:
    String[] names = PIM.getInstance().listPIMLists(PIM.CONTACT_LIST);
    for ( int i = 0; i < names.length; i++)
    System.out.println("Address book name: " + names);
    ContactList list = (ContactList) PIM.getInstance().openPIMList(PIM.CONTACT_LIST, PIM.READ_ONLY, names[i]);
    Contact contact;
    for (Enumeration e = list.items(); e.hasMoreElements();)
    contact = (Contact) e.nextElement();
    db.put(contactName(contact), contact);
    System.out.println("Contact name = " + contactName(contact));
    count++;
    list.close();
    2) Sorry. Not all 2.0 devices support JSR 75 or phonebook access for that matter. Go to the developer site of the device manufacturer and read the device specifications. They will tell you which J2ME APIs are supported.
    3) Yes. On some devices you can access all the address book information including contacts stored on the SIM card. You will need authorization or a signed midlet in most cases.
    Thanks,
    Rashid Mayes
    www.astrientlabs.com

  • Global Object Access Auditing test question

    Hello!
    There's a test question (N4) I'd like to have clearified:
    http://exam.test4actual.com/70-411.pdf
    Yes, D and F will enable auditing with no extra replication traffic, but enabling Global Object Acces Auditing will lead to auditing not only SYSVOL shares but to any others as well (http://blogs.technet.com/b/askds/archive/2011/03/10/global-object-access-auditing-is-magic.aspx)
    - is this replication traffic worth it???
    Thank you in advance,
    Michael

    Hi,
    For this question, the correct answer is DF, but we do not need to use Global Object Acces Auditing policy to audit SYSVOL shares.
    About the replication traffic, please refer to:
    http://technet.microsoft.com/en-us/library/bb742457.aspx
    Meanwhile, any changes made to SYSVOL are automatically replicated to the other domain controllers in the domain. If the files stored in SYSVOL change frequently, the replication increases the input and output for the volume where SYSVOL is located. For
    example, editing a GPO can potentially force a GPO-level replication. If the volume is also host to other system files, such as the directory database or the pagefile, then the increased input and output for the volume can impact the performance of the server.
    More detail information:
    Introduction to Administering SYSVOL
    http://technet.microsoft.com/en-us/library/cc778037(v=WS.10).aspx
    Regards.

  • Global (Syndicated) Portal with EP60 - problem

    hi,
    We are trying to implement Global Portal Scenario with syndicated content  between two EP6 Systems. We established trust between them, pointed them to common data source. We followed the document in "ASAP How to - Guide..." for doing this one.
    The problem is with creating the Remote iViews. We are not able to do that. There is one Note mentioned in that No-<b>852071</b>. That note doesn't exist in Service Market Place. WHY?
    Again, it looks like there is a connection problem between systems.
    What are we missing out? if any more details required regarding the situation, pl. reply to the thread. We are looking forward to solve this issue.
    Thanks
    Ak.
    PS: Points will be appropriately awarded
    Message was edited by:
            Arunkumar Ravi

    This is the trace i got
    <i>
    #1.5#001372736B74006C0000000A000013DC00042518CDFE2EEE#1166688371726#com.sap.portal.applicationFramework.tools.wizardframework#sap.com/irj
    #com.sap.portal.applicationFramework.tools.wizardframework
    #FPNUser#57##B3L1A189.cts.com_J2E_9948550#FPNUser#4920bc7090c911dbaacb001372736b74#SAPEngine_Application_Thread[impl:3]_13##0#0#Fatal#1#/System/Server#Java###wizard session No: 27: No content to display##
    #1.5#001372736B7400540000004F000013DC00042518CEA4297A#1166688382588#com.sap.security.portal.service.usermapping#sap.com/irj#com.sap.security.portal.service.usermapping.[cf=com.sapportals.portal.prt.service.usermapping.UserMappingService][md=getMappingData()][cl=null]
    #FPNUser#57##B3L1A189.cts.com_J2E_9948550#FPNUser#4920bc7090c911dbaacb001372736b74#SAPEngine_Application_Thread[impl:3]_31##0#0#Error##Plain###<b>UserMappingService: Lookup for system's unique Id failed</b>.
    <b>Context: UME principal to be mapped = "User, FPN", principal's type: user, mapped user in target system = "(null)" system alias = "Default_System_Alias"</b>Exception: (none)#
    #1.5#001372736B74005400000052000013DC00042518CEA53165#1166688382666#com.sap.portal.portal#sap.com/irj#com.sap.portal.portal#FPNUser#57##B3L1A189.cts.com_J2E_9948550#FPNUser#4920bc7090c911dbaacb001372736b74#SAPEngine_Application_Thread[impl:3]_31##0#0#Warning#1#/System/Server#Java###Call failed
    [EXCEPTION]
    #1#SOAP Fault Exception [Actor [B3L1A192] com.sapportals.portal.prt.service.soap.exception.SoapFaultHandler] : <b>The User Authentification is not correct to access to the Portal Service AutoGenProducer or the service was not found</b>.
    <type>java.lang.IllegalAccessError</type>
    </i>
    Awaiting your replies...
    Regards
    Ak.

  • Over the years my children have set up 2 i tunes accounts on my computer is there a way to put them together as one account that everyone can access with their synced i pods, phones etc

    Over the years my children have set up 2 i tunes accounts on my computer (windows vista) can i amalgamate both into one account with one password / account details that all my family can access with their i pods, i phones, i touch etc

    How to use multiple iDevices with one computer

  • I no longer have access with the e-mail on my account. Can I change just the email on it to my current?

    I no longer have access with the e-mail on my account. Can I change just the email on it to my current? I know it is dumb but I just got a new iPhone and can't add it.

    You should be able to login here and change the email address on your account : http://appleid.apple.com

  • ISE Admin Access with AD Credentials fails after upgrade 1.2.1 to 1.3.0

    Hello,
    After upgrading ISE VM from 1.2.1 to 1.3.0.876, I can't connect on ISE with AD Credentials (Invalid Username or Password). It worked find before upgrading to 1.3.
    On another ISE VM in 1.3.0.876 version (w/o upgrade) with this kind of configuration, it's OK.
    I have double check the Post-upgrade tasks (particularly rejoining Active Directory). Everything worked find after this upgrade except the admin access with AD credentials.
    I don't use user certificate-based authentication for admin access. So I didn't execute application start ise safe CLI.
    My 802.1x wireless users passed authentication with AD credentials. So the ISE had correctly join my AD.
    I didn't find anything related to this admin access with AD credentials failure in the output of show logging application ise and show logging.
    I don't find anything related to this in bug search on Cisco tools.
    I tried to :
    - update the SID of my Admin AD Group, the result is still the same.
    - delete my admin access with AD credentials configuration then make this configuration again, but still the same error.
    Any ideas on this ? Could I find elements in another log ?
    Regards.

    Dear Markus,
    After logging as user "prdadm"
    su - prdadm
    bssltests% bash-3.00$ ls -a
    .                            .dbenv_bssltests.sh-old      .sapenv_bssltests.sh         startdb.log
    ..                           .dbenv_bssltests.sh-old10    .sapenv_bssltests.sh-new     startsap_.log
    .bash_history                .dbsrc_bssltests.csh         .sapenv_bssltests.sh-old10   startsap_DVEBMGS00.log
    .cshrc                       .dbsrc_bssltests.sh          .sapsrc_bssltests.csh        startsap_DVEBMGS01.log
    .dbenv_bssltests.csh         .login                       .sapsrc_bssltests.sh         stopdb.log
    .dbenv_bssltests.csh-new     .profile                     dev_sapstart                 stopsap_.log
    .dbenv_bssltests.csh-old     .sapenv_bssltests.csh        local.cshrc                  stopsap_DVEBMGS00.log
    .dbenv_bssltests.csh-old10   .sapenv_bssltests.csh-new    local.login                  stopsap_DVEBMGS01.log
    .dbenv_bssltests.sh          .sapenv_bssltests.csh-old    local.profile                trans.log
    .dbenv_bssltests.sh-new      .sapenv_bssltests.csh-old10  sqlnet.log
    bash-3.00$
    bash-3.00$
    I have changed envt settings in .dbenv_bssltests.csh & .dbenv_bssltests.sh
    .sapenv_bssltests.sh & .sapenv_bssltests.csh  [4 files]
    Regards,
    Ankita

  • Anonymous access with named users

    Hi!
    I am trying to set up anonymous access with named users on EP6 SP9. I am using Database only as UME Data storage. I have applied the note #728106, since most of the content is html-pages on the KM.
    I defined the UME settings ume.login.guest_user.uniqueids=anon01,anon02
    ume.login.anonymous_user.mode=1
    Restarted the server and attached user account into roles (which contain only anonymous content).
    I then accessed the page /irj/portal/anonymous (or the longer version /irj/servlet/prt/portal/prtroot/com.sap.portal.navigation.portallauncher.anonymous) and everything was fine. However I wasn't able to get the portal working with /irj/portal/anonymous?j_user=anon02. I always received Portal runtime error. From the logs I saw that the portal tried to access as user anon01.
    When I changed the UME settings into
    ume.login.guest_user.uniqueids=anon02,anon01
    I was able to get the anon02 user account working, but not /irj/portal/anonymous?j_user=anon01. From the logs I saw that the portal tried to access as user anon02.
    Both user account are using the same rule, portal desktop and framework page. I can see the correct (and different) TLN for each user only in the content are I see this error.
    Any ideas?
    Thanks,
    Petri

    I need to switch between two named anonymous users.
    It works fine using http://<server>:<port>/irj/portal?j_user=<first_Guest_user>&j_password=<pwd_of_first_Guest_user>&login_submit=true
    Then to switch to the other user I must do a log-off or close the browser and input the other url http://<server>:<port>/irj/portal?j_user=<second_Guest_user>&j_password=<pwd_of_second_Guest_user>&login_submit=true
    I developed a servlet to switch the users using IAuthentication (method forceLogoffUser) and then redirect to the respective url. But when I call forceLogoffUser method I get a login screen and the script stop executing. Passing 'returnURL' parameter  did not work.
    Parameters:
    req - HttpServletRequest
    resp - HttpServletResponse
    returnURL - url to use to logon again.
    Is there a way to switch automaticaly between the two named anonymous users?

  • How can the symbol and non-English diacritical marking, etc accessed with combinations of letters and functional keys prior to Snow Leopard be achieved in Snow Leopard?

    How can the symbol and non-English diacritical marking/punctuation pallet, available in pre-Snow Leopard OSes with various combinations of letter or number keys and functional keys, be accessed in Snow Leopard?  Those pre-Snow Leopard versions worked on the fly as one was making text in any pedestrian application and its native font (Mail, Text Edit, for example).  One didn't need to dig around in font libraries, change font preferences, etc.

    > One didn't need to dig around in font libraries, change font
    > preferences, etc.
    It hasn't worked like that since the Early Chalcolithic (ie, System 7 or thereabouts).
    You've already got plenty of answers. Briefly (and grossly oversimplified),
    - Mac OS X conforms to a standard known as Unicode; in its current incarnation, it defines over 100k characters.
    - A keypress is translated into a character according to the current keyboard layout.
    - The graphic representation of a character (ie, glyph), is provided by the current font.
    - If a font lacks a glyph for the requested character, either another font will be automatically chosen (Mac OS X text engine), or some form of feedback (empty box, question mark, etc) will be used.
    - To inspect the actual key codes, use a utility such as Key Codes.
    - To inspect the current keyboard layout, invoke Keyboard Viewer.
    - To inspect the full complement of glyphs of a font, invoke Character Viewer (also accessed with the Special Characters command).
    (Remember that both these utilities are resizable and zoomable -- you can enlarge them to a comfortable viewing size, then zoom out to see more of the screen for your original task.)
    - For a more detailed look, use a utility such as UnicodeChecker.
    - The default keyboard layout depends on your Mac OS X localisation.
    (Keep in mind that there's no need to stick with the default layout; choose whichever one makes sense to you, given your language, habits, and proclivities. Mac OS X comes bundled with quite a few, including some obviously designed for the huddled masses of refugees from the Dark Side, who, in their wretched ignorance, have the unmitigated gall of labelling our native ways "really uncomfortable". Oh well, this, too, shall pass.
    If none of the supplied keyboard layouts fits your needs -- if, for instance, you write your emails in Etruscan -- go out on the 'net, you'll find quite a few. Or write your own with Ukulele, it's not really all that difficult.)
    - Use Keyboard Viewer to familiarise yourself with the current layout and to enter the odd character; but, to be proficient, you should learn your layout to the point that KV is no longer needed.
    - Use Character Viewer to enter the odd character not available in the current keyboard layout.
    Neither Keyboard Viewer nor Character Viewer are effective tools for more extensive needs, eg, for writing and editing bilingual or multilingual texts. In such a case, you should enable the respective keyboard layouts and switch between them with a keyboard shortcut.
    A few interesting layouts bundled with Mac OS X have already been mentioned. Let me add three.
    - Dvorak: several layouts based on the Dvorak keyboard. It is claimed that the latter is more productive and lessens RSI risk.
    - US Extended: based on QWERTY, it offers a more extensive set of diacritics (eg, caron, breve) via dead keys.
    - Unicode Hex Input: also based QWERTY, it allows input by Unicode codepoint (in hexadecimal), so it's the most extensive layout of all; eg, to enter the character "Parenthesized Number Twelve" (U+247F), hold down Option, type "247f", release Option.

  • Global Address Cleansing with suggestion

    Iu2019m using Global Address Cleansing with suggestion list enabled.  The problem Iu2019m having is for that Canadian addresses are not populating the address related fields (i.e. primary name, number, etcu2026) until the selection process is complete.  This differs from the US engines that populate the fields with each reply.  Is there a way to replicate how the US engine handles suggestion replies within the Global Address Cleansing transform?
    We are using Data Services v 3.2 (12.2.1.2)
    Thanks for your help in advance

    HI,
    I am also facing the same issue with Canada address.
    Did you resolved your issue?
    Thanks,
    Ravi

  • Apple tv 2 - root password has been changed to non default.   I need to access apple tv 2.   how do i get access with a forgotten password

    apple tv 2 - root password has been changed to non default.   I need to access apple tv 2.   how do i get access with a forgotten password

    Welcome to the Apple Community.
    It depends on which password you are referring to, but generally speaking you can always restore the Apple TV.

  • What can I change to gain access to my work vpn.  I can access with my MacBook Air and other routers.  Can use my ipad and this time capsule to successfully access the VPN.

    What can I change to gain access to my work vpn.  I can access with my MacBook Air and other routers.  Can use my ipad and this time capsule to successfully access the VPN.

    You need to give us a lot more info.
    I presume the MBA and the TC are the combo that doesn't work, although you don't clearly state that.
    If the ipad and TC work.. are you sure the ipad is connected via the TC and not 3G network?
    If it is then the TC itself is fine and the issue might be setup on the MBA.. although if the MBA works with other routers.. that rather confuses the matter.
    You need to actually tell us how the TC is setup in the network. What kind of broadband modem you have and what kind of vpn you are using.

  • Sharing Xbox Live access with Mac

    I've been trying to get my son's MacBook Pro to share its Internet access with his Xbox 360 over Ethernet but have been having a very hard time of it. I've searched around online and have found various tutorials that approach it different ways. I've followed each one step by step and have failed every time.  Usually I get an error on the Xbox telling me that it can't find the Xbox Live servers.
    The MacBook Pro gets on the Internet a 2WIRE router/modem.
    Any help would be greatly appreciated. Thanks.

    Hi gshamlian,
    Sorry for the late reply but the ASA 5500 series is considered a Cisco Classic product and this forum is for Cisco Small Business Products.
    I did some research and found a post in the Cisco NetPro Forums that may be of help.  Please click here for more info.
    Best regards,
    Cindy Toy
    Cisco Small Business Support
    Community Manager

  • Having trouble with Tiscali/TalkTalk site when accessed with 'FireFox', can't 'reply' to emails or report 'spam', other functions seem ok

    Having trouble with Tiscali/TalkTalk site when accessed with 'FireFox',
    can't 'reply' to emails or report 'spam', other functions seem ok
    == This happened ==
    Every time Firefox opened
    == On/Off few months now all time

    Try deleting cookies and cache:
    1. Tools| Clear recent history
    2. Time range to clear: Everything
    3. If it isn't already selected, select '''Cookies''' and '''Cache'''
    4. '''Clear now'''
    <u>Check cookie exceptions</u>
    1. Tools | Options | Privacy Panel
    2. Set '''Firefox will: Use custom settings for history''' Insure Accept cookies for sites and accept third-party cookies is selected
    3. Click '''Exceptions'''. If the misbehaving site is in that list, select it and click '''Remove site'''
    Also see [[Updating Firefox]]

  • How can I transfer old Palm Pilot (Z22) info (calendar/to do lists/memos/contacts is synced to a Windows XP) to a program I can access with an iPod?

    How can I transfer old Palm Pilot (Z22) info (calendar/to do lists/memos/contacts is synced to a Windows XP) to a program I can access with an iPod? Thanks.

    Maybe by the link provided here:
    Palm Desktop and iPhone

Maybe you are looking for