Icefloor blocking Profile Manger Webpage

Hi All,
We recently switched to icefloor 2 to help manage the PF filewall on mac os x server (10.9.1). Something strange we've noticed is that if the PFfirewall is turned on from icefloor, the profile manger webpage becomes unaccessable, even form the local server itself. The mydevices web enrollment pages are also unreachable, but the main domain can be reached fine and so can the "My settings" webpage front end for changing user passwords. All the profile manager and web page ports appear to be open (80, 443, 2195, 2196, 5223, 1640) but connections time out when you try to access https://mydomain.com/profilemanager
As soon as icefloor turns off the pf firewall, the pages immediately come back and are accessible.
Has anyone else had this issue? Am I missing a port that needs to be open?
Thanks!

Same problem here. All needed ports are open...no access to this pages
Fixed:
Problem seems to be a loopback issue in icefloor:
open icefloor.conf
sudo nano /Library/Icefloor/icefloor.conf
delete or uncomment the following line:
set skip on lo0
jump to the end of icefloor.conf
add the following line:
pass quick on lo0
RELOAD!!! icefloor.conf over icefloorgui -> Debug -> Control PF with pfctl -> Reload PF
RELOAD is very important! Because this is a bug from icefloor you have to repeat this step EVERY TIME you START/STOP icefloor because icefloor.conf gets overwritten everytime you start/stop
I dont know how it behaves with startup-scripts because Im not using this!
If somebody tries this and finds ANY PROBLEMS because of this modification/hack, please reply to this thread...ive done a lot of testing and could not find any problems modifying this line! Thanks in advance!

Similar Messages

  • Iphone profile manger, siri

    is there any profile manger app that switch to silent by time for the iphone 4s, and can siri talk instead of the remider beep

    No.
    Not sure what you mean by "can siri talk instead of the reminder beep". If you mean can you get her to say something instead of the "I'm ready" beep, no.

  • Updating the CRM profile via Webpage.

    Hi All,
    Any help?
    I have a Member profile update page. My client asked me if after updating their member profile it needs to have a Member Update Notification through their email addresses.
    I have tested updating a member profile, it successfully updated the profile but I haven't receive any notifications through my email that I have updated it.
    The action for the member profile update is just  "/MemberProcess.aspx".
    <form id="crm-update" name="catupdatedetailsformform85124" method="post" enctype="multipart/form-data" onSubmit="return checkWholeForm85124(this);" action="/MemberProcess.aspx">
    Is there any way I can achieve this to notify a member once he/she updated the member profile through their email address ?
    Thanks,

    Hello,
    Maybe you could modify the webform confirmation page (&PageID=/Results.htm) to a custom one where you have another form that autosubmits and sends an e-mail out
    (http://forums.adobe.com/docs/DOC-2363, the part covering "Setting up a form to email using Web Forms")
    Kind Regards,
    Alex

  • Profile Manger / Exchange packages

    I'm having a problem where after a device has been assigned to a user and the Exchange payload has been sent to the device i can't get the device to read the variables and change the user infomation.
    I have a device group created named Exchange users which has the one payload to confure the Exchange active sync fo iOS.  When I have an iPad authenticate to Profile manager and a user is associated with the device when I go to delete the profile and assign to a different user the email varibale is still populating to the first user.
    I'm filling in the domain name, and placing %email% for user and email address fields
    An example of the problem is I assigned an iPad to Ted user [email protected] then I delete the device and wipe it and create a new placeholder record.  When I try to assign to a different user the Exchange is still stuck with the [email protected] info.
    Please help if you know the answer is this.

    Yes if you leave them push your profile changes should get autoapplied.  That means you shouldn't need to use the mydevices page but as you change settings they get updated at the device.  If this is not working check your job status section in Profile manager for clues.

  • Profile Manger 2: no option to join OD after wipedb

    In general, there should be the possibility to join an existing OD Master after wiping the Profile Manager 2 db.
    I don't get this option, in the Server Admin app. It wants me to create a new OD database.
    I don't want to reconfigure OD. How can I solve this?

    Step by step, how did you arrive at seeing this agreement?

  • Help, please help.  Apple Configuratior + Profile Manger + VPP + Apple ID = **** on earth...

    Hello there,
    So I have inhereted a rather botched iPad rollout. 
    Here is what I have pieced together so far. 
    VPP codes are all jacked up.  Some got redeemed from a master account, some from "cart specific" accounts.   I am having a bear of a time, just ensuring I can correctly deploy software. 
    Configurator can retrieve codes if I unsupervise, but are not consistently redeploying them, likely because as I inhereted it, I made assumption to it's configuration which were not accurate. 
    Profile manager is pre-staged with all device serial numbers, and auto-enrollment does work correctly (yay progress)
    So, here is what I have questions on. 
    Apple ID's for a cart of 30, do I need 3 seperate apple IDs, due to the limitation of 10 iOS devices per Apple ID? 
    VPP Codes, do I now need to purchase and manage my carts/codes in groups of 10, due to the above mentioned iOS limitations with concurrent devices attached to an Apple ID? 
    future proofing. 
    We are hoping to go airwatch *next year*.  I wanted to do a hybrid profile manager/configurator solution.  Initial deployment all thru configurator, permissions managed split between configurator and profile manager.  Future free apps to be deployed via profile manager, and free apps deployed via configurator. 
    I need to know the logistics, not necessarily a step by step of click here, click there. 
    How many Apple ID's per cart, and how do I realistically manage those apps once I have the accounts provisioned.   I have the basic mechanics of configurator/profile manager down.  I am afraid of missing some important detail, and not being any further off than the last guy was. 
    Thanks in advance! 

    You mean your itunes account?
    Check the settings section of the manual:
    iPhone User Guide (For iOS 5.1 Software)

  • My skype is saying "blocked profile" I can't call ...

    Hi, I have a subscription and I can not call a phone. I need to get it back in the next few hours otherwise you have to refund me, as it\s not what I payed for!
    Regards

    i can't call or recive  video call i download ..you have set up  number 1 is save file num.2 is run and num.3 is the 1st call  i can't go to RUN  OR CALL...

  • New window blocking current webpage in IE7 & above

    Hi,
    I've noticed different behavior in IE6 and IE7 and later versions. We have a webpage that will open a new window (window.showmodaldialog) upon clicking submit.
    In IE6, when I clicked submit and while waiting the webpage A to load, I open another webpage to read. When the webpage A finish loading, a new window will bring to background and did not block the current webpage which I was reading.
    However, in IE7 and later versions, the new window will bring to foreground and block the current webpage which I was reading. I have tried all settings and modifying the registry as per advice online to force the new window to background and not to steal
    the focus but to no avail.
    Is it a bug or it is a new design in IE7 and later versions?
    Please advice. Thanks in advance.

    I have no IE6 to test it, but based on my knowledge, window.showmodaldialog will show a modal dialog which you cannot set focus on your parent window if you don't close the dialog first.
    It seems that you need to create a modalless dialog, please try to use
    showModelessDialog method.
    This method creates a dialog which will not block the current webpage which you are reading.
    We are trying to better understand customer views on social support experience, so your participation in this interview project would be greatly appreciated if you have time. Thanks for helping make community forums a great place.
    Click
    HERE to participate the survey.

  • Profile Manager Parental Controls

    I have been attempting to use the Profile Manger to set Parental Controls for the kids accounts. I created a Kids group and both of my children's accounts belong the Kids group. When I install the profile, it shows as successfully installed, but the Parental Controls are not affected. I have tried both network accounts and local account. If I set options on the Dock everything applies and works as expected, but when I try to set Parental Controls the settings seem to not take affect.

    Because my router is not in a position to block Internet addresses that I have set up the Profile Manager. So far so good, it all works except for the parental control. Local Wi-Fi I have all the iPhone's, iPad's, iPod's and iMac's added in the Profile Manager and logged over the https address. / / Server.local / mydevices. The settings sent successful (set server account) via push notification . But the parental control has no effect on the device. The value "True" under parental control is evident, i have outside of the clients and mobile devices full access to Internet. On the Internet I could not find on the subject.

  • Dns problems setting up profile manager

    i have been experimenting setting up OS X Server (10.8) on a new Mac mini on a network with Time Capsule.   server's host name is "server.me.private" at IP address 192.168.1.100 , Time Machine DHCP server address is 192.168.1.1 .
    Open Directory and Profile Manger are on in Server.app.  (Profile Management: Enabled, Signing config profiles using the Apple Certified Push Certificate, w/ Apple push notifications on in Server settings.)
    I can not, however, get Profile Manager to open and connect in a browser using "server.me.private/profilemanager" from either the mini itself or from another mac on the nework.  i can get a brower to connect to Profile Manager using "192.168.1.100/profilemanager" but after successfully logging in, the browser is redirected to a "server.me.private/..."  address and shows connection failure. 
    i HAVE gotten a browser to connect and function properly by changing the DNS Server in the the Network System Preferences on that specific Mac from "192.168.1.1" to "192.168.1.100".  (DNS in Server.app, for the record is also on in this instance, forwarding server to 192.168.1.1 )  this, howerver, is a pain and also doesn't work trying to connect an iOS device.
    i'm definitely missing something here.  it seems to me that the Time Capsule should remain the DNS Server for the network and forward "server.me.private" to "192.168.1.100".  it is not doing this, and there are no options for setting this with Airport Utility.
    some light on this subject would be greatly appreciated.  Thanks very much!

    thanks very much for your thoughts and reply, Thomas.
    if i were to change the Time Capsule to use the Mini as the primary DNS server, is this where i'd do it in Airport Utility?
    but it won't let me change the DNS Servers fields here.  and if i can change the DNS Serever to my Mini's 192.168.1.100, what address should i keep for the second DNS Server?
    Thanks again!

  • How do I disable the "Delete Proflile" and "Rename Profile" buttons when the profile manager opens at startup?

    I have multiple Firefox profiles for the different people that use my computer, and I would hate for someone to accidentally delete my profile when going online. Is there anyway I can disable that button when Firefox starts, and only have it work when I open the profile manager?
    I was originally just gonna give everyone their own Windows login, but it's easier for me to just do it this way. Help is appreciated.

    If there is already a Firefox instance open that uses a specific profile then you only open a new window in that instance it you click another Firefox shortcut.
    Be aware that if no Firefox instance is open and you click a link in anther program (Windows Explorer or email) and Firefox is the default browser then Firefox will use the profile that is selected in the profile manger as the currently selected profile.

  • I have set up my firefox shortcut to go directly to the profile manager. I have had it that way for years. All the sudden it has stopped working

    Hi,
    I cannot get my firefox shortcuts to go directly to the profile manager anymore. I don't know why. I know I have set the target up correctly in properties but it still will not go to the profile manger. Please help.
    Here is what is in the target location in properties:
    "C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -profilemanger

    Glad all is working again.
    If you have not come across this problem in two years maybe you just do not set Firefox as the Sytem's default browser. If so no need to read any further.
    Just be aware that in some circumstances you will run into problems with the way you appear to have done this. If you try to take an action that opens Firefox indirectly it may fail.
    The action you are trying to avoid, opening another window of the existing Firefox is sometimes essential.
    If you try to use a hyperlink or an HTML file your Windows Vista OS will normally try to use your default browser. That may well be Firefox. If that is the case and Firefox tries to open with -no-remote it will fail if the profile is in use. (Or warn you then automatically close down the already running profile )
    I will quote from another help article
    * http://kb.mozillazine.org/Opening_a_new_instance_of_your_Mozilla_application_with_another_profile <blockquote>'''Important:''' Never use -no-remote to start the "default" profile (the one that is set to open without asking when you launch Firefox). That's because when you launch Firefox, for example, by clicking a link in your mail program, you will get a [http://kb.mozillazine.org/Profile_in_use Firefox is already running but is not responding message] if the default profile is already in use. The solution is to always start the default profile normally and launch all others with -no-remote. Then it will work.</blockquote>

  • Profile Manager & Time Machine Restore

    Has anyone had luck with restoring the Profile Manager database from a Time Machine backup?
    We left for the holidays and everything was just spiffy with it.  When we returned the server was locked hard.  Upon reboot, when you try to go into the Profile Manager admin web page, right after login, you immediately get "A Server Error has Occured [reload]". Start/stop of Profile Manger has no effect, but in Server.app it is running.
    We think maybe the SQL database was corrupted sometime over break and want to restore it.  It's in /Library/Server/Profile Manger/
    Curious,
    -Steve

    I also have the same issue.
    I have a server which manages ipads using profile manager.
    I have restored a Mac Mini with the Server App and Profile Manager from a Time Machine backup. All my settings, devices and device groups are there but when i try and push anything out to an ipad the task just sits there pending and nothing happens. The ipad is is connected to the same network and i can ping the IP of the ipad from network utility on the server.
    Any ideas?
    Thanks

  • How to remove stuck app in profile manager 3

    Greetings. In Profile Manger 3 Under Library apps I have an app that will not allow me to remove it. So, I backed  up my database and then  I did remove it from postgres db under the tables ios_applications*  and I did remove the app from the file location on the sever however it's still showing up in profile manger does anyone know how I can remove this app from the apps list?
    Sincerly,
    Tim

    So, this issue has been sovled. When installing OSX Server 10.9 the device manger database was replaced with a database named.
    devicemgr_v2m0
    I am not sure if this is the same name for all upgrades/new installs or diffrent based on the upgrade path.
    Tim

  • Configuring the default configuration profile for Profile Manager

    Hello folks,
    I would like to edit the default configuration profile served by Profile Manger. As far as I understand the only thing I can configure from the Server.app is the name of the profile. The settings for the different services provided by the server (such Mail, Messages, etc.) are automatically chosen by Server.app. When logging as an administrator on the Profile Manager webapp, I can go to "Groups", choose "Everyone", go to "Settings" to review the different payloads. However, almost none of the settings are editable. You can read "This payload is configured using the Server app" on the top of the various panels.
    So my question is: How do you use Server to tweek those payloads? Can this be done using the serveradmin command line tool?
    Thank you very much for your help.
    Regards

    Bump. This is annoying the crap out of me. Every time I try to design a website using Coda, this color picker bug plagues me. I just wish I could turn off color profiles completely as I will never use them.

Maybe you are looking for

  • Spool to pdf -not coming corectly

    Hi, i'm trying to convert spool to pdf, i've set adobe pdf as default printer, PDf is geting generated but all Values & text to right side are getting truncated/cut. suppose if text is excise duty it is coming as excise du Pl suggest

  • P1102w input tray doesnt seem to work

    I have two laptops that connect to my home network which my HP P1102w is also connected on. The laptops both run Windows 7. If I try to prin t anything now, the paper does not seem to be taken in via the input tray. It sounds like its trying to suck

  • Send e-mail from Oracle 9i (9.2.0.1)

    Hi, Iam using oracle 9iR2(9.2.0.1) on Widows XP Platform. I want to send mail thru oracle 9i(9.2.0.1) database. for that i got a procedure from net. Also they asked to follow three steps. the steps are 1. Execute the script as sys "D:\Oracle\Ora92\ja

  • Reinstalling Acrobat

    I had to uninstall Acrobat to find out if it caused problems with my Outlook, and now I can't reinstall it? Download manager says it's up to date, but it's not even on my computer anymore? How do I get it to install again?

  • Opening PDFs

    Recently I posted the question under How do I make sure that my pdf doc opens in Acrobat X so that I can play with it. At the moment when I open one of my pdf docs ( ones I have just created) it opens in Reader so I am unable to access such things as