IFolder3 user accounts randomly being disabled

Hi,
This started during the night, this morning all the users accounts excepting
2 or 3 were "disabled".
I have re enabled them but throughout the day they are randomly disabled
again.
Once enabled, they could be fine for an hour or two before again going
disabled.
I restarted the server as well this morning but it made no difference.
Any help appreciated here please as I am unable to keep monitoring and re
enabling accounts all day.
Running iFolder 3.8.4.0 (upgraded about 6 days ago)
LDAP server is fine and available so I doubt it is an LDAP issue.
Thanks - Mark

Thanks Hans,
No the watchdog is not running.
I see the following in the System log ....
DEBUG Simias.IdentitySyncronisationService - disabling member: venterM
(This was the entry just prior to my own account being disabled, but similar
entries for the rest of the users)
Any ideas?
Mark
"Hans" <[email protected]> wrote in message
news:[email protected]...
> Hey Mark,
>
> Do you have the Watchdog service ON? We have an open issue with Novell
> right now regarding our MAC users using AFP. They get kicked off and
> cannot log back in until I restart AFP. Had to have a cron job restarting
> AFP every morning. They finally figured out watchdog was bombing the
> users on AFP as my users on Windows were untouched. We had to turn off
> the Watchdog service until they provide new code.
>
>
> -Hans
>
>
>>>> On 7/14/2011 at 3:34 PM, in message
>>>> <[email protected]>, Mark
>>>> Venter<venterm_@_asurequality.com> wrote:
>
> Well. It seems that all the "removed" accounts have been assigned over to
> one user as "orphaned" between 10pm last night and 7am this morning.
> What the heck is happening here ?
>
> At this stage to get them back I need to search through each account, find
> out who the owner was, add him in to the orphaned account and then make
> him
> owner again...
> Takes at least 5 minutes do do just one account.......
>
> Any ideas how or why or what is going on here?
>
> Mark
>
>
>
> "Mark Venter" <venterm_@_asurequality.com> wrote in message
> news:[email protected]...
>> Oh S**T. Thsi is bad.
>>
>> This morning when I checked two thirds of our users have been removed -
>> unprovisioned.
>> I have just re enabled my account and need to re sync everything back up
>> again.
>>
>> This is not good and I will have to open an incidence with Novell as this
>> will cause havoc today especially with our high end users, the managers &
>> board members.
>>
>> Mark
>>
>>
>>
>> "GG Hegde" <[email protected]> wrote in message
>> news:[email protected]...
>> Could you check the simias.log on the server and attach the part that is
>> relevant to the disabled time. We may have some clue there.
>>
>>>>> Mark Venter<venterm_@_asurequality.com> 7/14/2011 6:46 AM >>>
>> Hi,
>>
>> This started during the night, this morning all the users accounts
>> excepting
>> 2 or 3 were "disabled".
>> I have re enabled them but throughout the day they are randomly disabled
>> again.
>> Once enabled, they could be fine for an hour or two before again going
>> disabled.
>>
>> I restarted the server as well this morning but it made no difference.
>>
>> Any help appreciated here please as I am unable to keep monitoring and re
>> enabling accounts all day.
>>
>> Running iFolder 3.8.4.0 (upgraded about 6 days ago)
>>
>> LDAP server is fine and available so I doubt it is an LDAP issue.
>>
>> Thanks - Mark
>>
>>
>> --------------------------------------------------------------------------------
>>
>>
>> Could you check the simias.log on the server and attach the part that is
>> relevant to the disabled time. We may have some clue there.
>>
>>>>> Mark Venter<venterm_@_asurequality.com> 7/14/2011 6:46 AM >>>
>> Hi,
>>
>> This started during the night, this morning all the users accounts
>> excepting
>> 2 or 3 were "disabled".
>> I have re enabled them but throughout the day they are randomly disabled
>> again.
>> Once enabled, they could be fine for an hour or two before again going
>> disabled.
>>
>> I restarted the server as well this morning but it made no difference.
>>
>> Any help appreciated here please as I am unable to keep monitoring and re
>> enabling accounts all day.
>>
>> Running iFolder 3.8.4.0 (upgraded about 6 days ago)
>>
>> LDAP server is fine and available so I doubt it is an LDAP issue.
>>
>> Thanks - Mark
>>
>>
>>
>>
>>
>>
>>
> Hey Mark,
>
> Do you have the Watchdog service ON? We have an open issue with Novell
> right now regarding our MAC users using AFP. They get kicked off and
> cannot log back in until I restart AFP. Had to have a cron job restarting
> AFP every morning. They finally figured out watchdog was bombing the
> users on AFP as my users on Windows were untouched. We had to turn off
> the Watchdog service until they provide new code.
>
>
> -Hans
>
>
>>>> On 7/14/2011 at 3:34 PM, in message
>>>> <[email protected]>, Mark
>>>> Venter<venterm_@_asurequality.com> wrote:
>
> Well. It seems that all the "removed" accounts have been assigned
> over to
> one user as "orphaned" between 10pm last night and 7am this morning.
> What the heck is happening here ?
>
> At this stage to get them back I need to search through each account,
> find
> out who the owner was, add him in to the orphaned account and then
> make him
> owner again...
> Takes at least 5 minutes do do just one account.......
>
> Any ideas how or why or what is going on here?
>
> Mark
>
>
>
> "Mark Venter" <venterm_@_asurequality.com> wrote in message
> news:[email protected]...
> > Oh S**T. Thsi is bad.
> >
> > This morning when I checked two thirds of our users have been
> removed -
> > unprovisioned.
> > I have just re enabled my account and need to re sync everything
> back up
> > again.
> >
> > This is not good and I will have to open an incidence with Novell
> as this
> > will cause havoc today especially with our high end users, the
> managers &
> > board members.
> >
> > Mark
> >
> >
> >
> > "GG Hegde" <[email protected]> wrote in message
> > news:[email protected]...
> > Could you check the simias.log on the server and attach the part
> that is
> > relevant to the disabled time. We may have some clue there.
> >
> >>>> Mark Venter<venterm_@_asurequality.com> 7/14/2011 6:46 AM >>>
> > Hi,
> >
> > This started during the night, this morning all the users accounts
> > excepting
> > 2 or 3 were "disabled".
> > I have re enabled them but throughout the day they are randomly
> disabled
> > again.
> > Once enabled, they could be fine for an hour or two before again
> going
> > disabled.
> >
> > I restarted the server as well this morning but it made no
> difference.
> >
> > Any help appreciated here please as I am unable to keep monitoring
> and re
> > enabling accounts all day.
> >
> > Running iFolder 3.8.4.0 (upgraded about 6 days ago)
> >
> > LDAP server is fine and available so I doubt it is an LDAP issue.
> >
> > Thanks - Mark
> >
> >
> > --------------------------------------------------------------------------------
> >
> >
> > Could you check the simias.log on the server and attach the part
> that is
> > relevant to the disabled time. We may have some clue there.
> >
> >>>> Mark Venter<venterm_@_asurequality.com> 7/14/2011 6:46 AM >>>
> > Hi,
> >
> > This started during the night, this morning all the users accounts
> > excepting
> > 2 or 3 were "disabled".
> > I have re enabled them but throughout the day they are randomly
> disabled
> > again.
> > Once enabled, they could be fine for an hour or two before again
> going
> > disabled.
> >
> > I restarted the server as well this morning but it made no
> difference.
> >
> > Any help appreciated here please as I am unable to keep monitoring
> and re
> > enabling accounts all day.
> >
> > Running iFolder 3.8.4.0 (upgraded about 6 days ago)
> >
> > LDAP server is fine and available so I doubt it is an LDAP issue.
> >
> > Thanks - Mark
> >
> >
> >
> >
> >
> >
> >
>
>
>
>
>
>

Similar Messages

  • Account Information Not Recognized: The user account has been disabled.(FW

    Hi Expert ,
    I'm working with SAP Business Objects 4.0 SP2 patch 5 and SAP Enterpriseportal. I want to use Single Sign On with trusted authentication in enterprise portal. EP administrator has created an infoview in order to be able to connect the portal and BO.
    I have configured trusted authentication in BO but when I try to use the infoview from the portal the following error appear:
    "Account Information Not Recognized: The user account has been disabled.(FWB 00012) "
    the user used in the sap portal is also defined and active in sap BO.
    In order to activate SSO in BO I executed the following steps:
    1. Log onto the CMC.
    2. Went to the Authentication management area.
    3. Select the Enterprise option. The "Enterprise" dialog box opens.
    4. Scroll down until I see "Trusted Authentication".
    4.a. Click Trusted Authentication is enabled.
    4.b. Click New Shared Secret.
    4.c. Click Download Shared Secret.
    5. Selected Update to commit the shared secret.
    6. Saved the trustedprincipal.conf file in the boe server in the path:
    'D:\Program Files (x86)\SAP BusinessObjects\SAP BusinessObjects
    Enterprise XI 4.0\win32_x86'
    7. Modified the file 'D:\Program Files (x86)\SAP
    BusinessObjects\Tomcat6\webapps\BOE\WEB-INF\config\default\global.properties'
    sso.enabled=true
    sso.sap.primary=false
    trusted.auth.shared.secret=
    trusted.auth.user.param=
    trusted.auth.user.retrieval=REMOTE_USER
    8.Restart Tomcat
    Please could anyone help me to resolve the issue?
    Thanks in advance for collaboration.
    regards
    gio'

    Hi Giovanni,
    The configuration you have wonu2019t work. You have two different web application servers: Netweaver and Tomcat. Your user credentials are only established in one of them: Netweaver. When you configure trusted authentication in Tomcat you have to authenticate the user in this Web Application server. The REMOTE_USER canu2019t pass from one server to another.
    You can confirm this capturing your request using Fiddler in your browser.
    If you want to configure the integration BI4 into SAP Enterprise portal, you can follow this guide:
    http://wiki.sdn.sap.com/wiki/display/BOBJ/BI4IntegrationintotheSAPEntreprisePortal+7.0.x
    Regards,
    Julian

  • Hi I can't update my apps because my user account was temp.disabled

    Hi I can't update my apps because my user account was temp.disabled

    You cannot until you sort it out.
    Ask for assistance:
    Contact Apple Support
    https://getsupport.apple.com/GetproductgroupList.action

  • My itunes account keeps being disabled

    I get this alert repeatedly whenever I try to buy a song.
    As requested I sign out, reset my password, sign in, select a song to buy... and my account has been disabled.  I can't even tell you how many times this has happened.
    Any help would be gratefully accepted.
    Thanks in advance.

    Go here:
    http://www.apple.com/support/itunes/contact/
    and follow the instructions to report the issue to the iTunes Store.
    Regards.

  • E52 52.003 email account randomly being deleted on...

    Hi, I've a strange issue. I set up a gmail email (either via Nokia wizard or manually) and it works fine and then when I go into Messaging Gmail's account is gone and replaced with New Mailbox. It has risen from the ashes by itself before so maybe it will again but why on earth would it disappear only go the first place when it worked before. This OS is buggy as hell now matter what version. Another loyal Nokia user (15+ years) heads for Android...
    Solved!
    Go to Solution.

    @jkforde: It could be the message store resetting to the phone memory.
    I had this issue once, where I set the memory card as my message store (in messaging settings). When you connect the phone to the PC in 'mass storage' mode, it disables all apps and media running on the phone from the memory card (this is what I don't like). This includes the message store on the memory card. Then, after you've disconnected the phone from the PC, the message store reverts to the phone memory (which is a pain). You have to re-configure it to use the memory card. If you created your Gmail account when your message store was set to 'phone memory' it will disappear when you change your message store to 'memory card' and vice versa. Moreover your SMS messages will also disappear. However these are not deleted and can be retrieved by changing the message store.
    I know this is annoying, but now I don't use my device in 'mass storage' mode any more. Android seems very inviting, but it's getting more scarier and more like iPhone everyday. Moreover, Nokia's been making phones since before these new guys were probably born... so there must be something to it.
    Regards,
    ViHARm

  • Why my account is being disabled?

    when I try to buy, update, my itunes application, A message pops up that my apple ID is disabled. I have contacted the support in vain. they refused to give any information. Why would that happen ? I am having an account in the us but I am living currently in Morocco. So, based on the fact that there is no Support for Morocco, I couldn't change the country. Still, no one on Apple could tell me the reasons behind this disactivation. Would anyone help me please ? I really appreciate it. Thank you

    This also happened to me.
    When you reset and you create a new password, your iPhone still has the old password in memory. Whenever you make a purchase or download from itunes, it uses the old password to login that is saved in the Settings. It will ask you to enter your password, which would be your new password. Since it will compare the old password in the device, it will set an alarm and it will disable the account which affects the rest of your linked account.
    To remove the saved old iTunes password from memory, *go to Settings > Store and Sign Out.* This will remove your old password. You can then try downloading something in iTunes or AppStore in your iPhone with the new password. It will sync the password that is stored in your iPhone.
    JRF

  • My Icloud account keep being disabled for security reasons and I don't understand why or how to prevent it

    It happens at least once per month that my account is disabled for security reason and I don't even have to change the password, I just have to go on iforgot web aite and enable it but it is very annoying since my iPhone stop synchronizing and doing backups

    tinnt701 wrote:
    ... it said "This Apple ID has been disabled for security reasons",
    See here  http://support.apple.com/kb/TS2446
    If necessary...
    Use this Link  >  Apple  Support  iTunes Store  Contact

  • User Accounts Disabled For No Apparent Reason

    We're having something where Entourage users are apparently handing off the incorrect user name and password when logging in to read email and thereby disabling their Apple user account on our mail/webmail OSX server.
    I don't know how to stop the accounts from being disabled, nor do I know when the user has been automatically disabled by the server. We only know when the customer contacts us (which can't be by email).
    This has already cost us some accounts and business.
    Users who are not Windows or who are not using Entourage are having no problem. Since the problem also happens with Mac Entourage users, it may have more to do with Entourage than Windows.
    Anyone know how to set the authentification of OSX Server or Entourage to be more tolerant? We do not have disable login after xx failed attempts selected.

    Are you sure it's isolated to Entourage? Is there any other process/program running? Weather Bug did it for me. It had cached my password then I changed my windows password then my account was disable every time I logged in. Maybe they have an incorrect password stored in their keychain that another program is using.

  • Disabling User account

    Hi all,
    We have an attribute *"nsaccountlock"* in LDAP.
    We have a requirement that if "*nsaccountlock*" is set to "*true*" then the user account must be disabled or locked in SIM as well.
    If anyone has any pointers regarding the same, please post how this can be achieved.
    Any pointers may be helpful.
    Thanks

    To do this you need to use activesync so that the changes on LDAP are detected in SIM. We are using that process today however version 6.1 seems to have an issue when nsaccountlock is not present in LDAP.
    Here are some notes from version 7 document:
    Set the nsAccountLock attribute
    To use the nsAccountLock attribute to disable and enable accounts, configure the LDAP resource as follows:
    On the Resource Parameters page, set the LDAP Activation Method field to nsaccountlock.
    Set the LDAP Activation Parameter field to IDMAttribute=true. (IDMAttribute will be specified on the schema in the next step.) For example, accountLockAttr=true.
    On the Account Attributes page, add the value specified in the LDAP Activation Parameter field as an Identity System User attribute. Set the Resource User attribute to nsaccountlock. The attribute must be of type string.
    Set the nsAccountLock LDAP attribute on the resource to true.
    Identity Manager sets nsaccountlock to true when disabling an account. It also assumes that pre-existing LDAP users that have nsaccountlock set to true are disabled. If the nsaccountlock has any value other than true (including null), the system concludes the user is enabled.

  • Sudden user account disabled

    I have a small home network using 10.5 server with a three clients. My user account was suddenly disabled, while I was logged in to a client, on 10.6. Could this be sign that I have been hacked? Which logs would be the ones to check and I will gladly post here. Has anyone else had this experience? Thanks.

    usually the waveset.disabled will be null when the account is enabled and waveset.disabled will be true when it is disabled

  • I want to get rid of my guest user account. It will not let me delete it from the user

    I did not have the guest user account available and then after I changed some of my setting for my mail, I noticed that when I logged back in the guest user icon was present.  I do not want to have this guest user account on my log in screen.  I tried to delete it from my system preferences but all it does is disable the guest user but the icon still appears. I need some help!

    http://osxdaily.com/2011/10/13/disable-guest-user-account-mac-os-x-10-7-2-login- screen/
    Thanks to Brad Caldwell for the questions and screenshot via Twitter, you can follow us there too.
    How to disable that “Guest User” from appearing at the OS X 10.7.2 login screen
    Open System Preferences
    Click on “Security & Privacy”
    Click the lock in the lower corner and type in your administrative password to unlock the control panel
    Check the box next to “Disable restarting to Safari when screen is locked”
    This prevents the Guest User account from being visible at the login screen both during reboot and at the login screen. Again, it’s highly recommended to keep this enabled for security purposes, but if your Mac is locked down with a security cable or you don’t have any use for Find My Mac, you could disable this and not feel too bad about it.

  • Administrator account has been disabled

    I've taken over support of Crystal Server 4.0 in my organization and was notified by a user that all scheduled jobs were failing with this error:
    login error. [CrystalEnterprise.DiskUnmanaged]: [Logon failure: the specified account password has expired.]
    I attempted to log into Central Management Console using the 'Administrator' account and password and receive the following:
    Account Information Not Recognized: The user account has been disabled. (FWB 00012)

    Hi David,
    Please follow the below steps:
    In Your Case only the Folder Name is changed other wise everything is same.
    Symptom:
    The password for the administrator password is lost and there is no other account with administrator rights to log in the CMC and reset the password for this user
    Resolution:
    The steps required to perform are detailed in the Installation guide attached in the references section. However, there is one mistake in the order of the steps.
    Page 71: Chapter 5.9.1 To reset the SAP BusinessObjects Business Intelligence platform administrator account password
    1. Locate the CMS process: launch the Process Explorer utility, and locate CMS.exe.
    2. Copy the CMS command to the clipboard. In Process Explorer, copy the "Command line" field.
    3. Use the Central Configuration Manager (CCM) to stop the SIA. To launch the CCM, go to Programs > SAP BusinessObjects Enterprise
    XI 4.0 > SAP BusinessObjects Enterprise > Central Configuration Manager. Once you have confirmed that the SIA has stopped,
    proceed to the next step.
    4. Paste the CMS command to a command-line. Do not press Enter. Open a "Command Prompt" window and paste in the contents from step3.
    5. Append the -serverconsole switch to the command and press Enter. For example, note that the following command has -serverconsole
    appended:
    "C:\Program Files (x86)\SAP BusinessObjects\SAP BusinessObjects Enterprise XI 4.0\win64_x64\cms.exe" -loggingPath "C:/Program Files (x86)/SAP BusinessObjects/SAP BusinessObjects Enterprise XI 4.0/logging/" -port 6400 -restart -dbinfo "C:/Program Files (x86)/SAP BusinessObjects/SAP BusinessObjects Enterprise XI 4.0/win64_x64/_boe_ACME.dbinfo" -noauditor -autoboot -fg -name ACME.cms - pidfile "C:/Program Files (x86)/SAP BusinessObjects/SAP BusinessObjects Enterprise XI 4.0/serverpids/ACME_ACME.CentralManagementServer.pid" -serverconsole
    The SIA is launched in serverconsole mode. You will be prompted when the SIA is ready to accept commands.
    6. Go to the following folder: <BOE_INSTALL_DIR>\SAP BusinessObjects\SAP BusinessObjects Enterprise XI 4.0\dfo The dfo folder
    contains a subfolder with a randomly generated name starting with dfo_.
    7. Copy the file named BusinessObjects_Administrator_dfo.xml from inside the dfo_ folder to the following folder:
    <BOE_INSTALL_DIR>\SAP BusinessObjects Enterprise XI 4.0\packages
    8. Enter the following query: select si_id from ci_systemobjects where si_name='Administrator' Four objects are returned. Record the
    SI_ID for each object.
    Tip: One of the entries should have the SI_ID set to 12.
    9. Delete the objects by typing the following command for each object: delete <ID_NUMBER>
    10. Verify that the objects have been deleted by re-entering the command from step 8: select si_id from ci_systemobjects where
    si_name='Administrator'
    No objects should be returned.
    11. Enter the following query: select si_id from ci_systemobjects where si_name='BusinessObjects_Administrator_dfo.xml' One object should be returned. Record the object's SI_ID number.
    12. Delete the object by entering the following command: delete <SI_ID>
    13. Type quit to exit.
    14. Use the CCM to start the SIA.
    15. Launch the CCM, go to Programs > SAP BusinessObjects Enterprise XI 4.0 > SAP BusinessObjects Enterprise > Central Configuration Manager.
    You can now log on to the administrator account without having to provide password (leave the "Password" field blank).
    Hope this will help you as well.
    Thanks,
    Daya

  • Accounts on server disabled after PC updates

    Got a problem where after the PC's on a network do a windows update they cannot log back onto network as the user accounts are all disabled on the server. PC's  runnning XP,Windows 7, and Windows8. Server 2012. Can anyone help please?

    Hi rbooysen,
    I agree with Tim. It seems to be not a normal result. Would you please let us know whether you have referred
    to Tim’s suggestion and check
    relevant settings? Any update, please feel free to let us know.
    In addition, would you please let us confirm whether has changed any setting after updating? Meanwhile, please
    let us know the complete message that you may get, when can’t log back on the network. Please open Event Viewer and check if you can find some related messages.
    By the way, can you remember which update has been installed, then this issue occurred?
    Hope this helps.
    Best regards,
    Justin Gu

  • Sending mail from user accounts

    I have recently switched from dial-up to broadband communications. My eMac has three user areas - my ‘system manager’ area plus two others.
    The problem is that the two sub-area users can no longer send e-mail messages. The error message is “mail.btinternet.com:<user name>@btinternet.com cannot be contacted on port 25” .
    I can only send mail via mailout.btinternet.com from the main account.
    All areas receive mail OK.
    Dial-up ISP is macunlimited.net
    Broadband ISP is btinternet.com
    I have read the relevant Help section and believe I have set up the two mail accounts in each sub-account correctly.
    Software on this Mac are OS: 10.4.3 and Mail 2.0.5

    Chris,
    This is very helpful, but I would never have understood that different User Accounts were being used on your Mac from the previous terminology.
    Let me approach when you are connected with btinternet acting as your ISP, first. It is normal, and not unusual, for the authentication of the SMTP to depend upon the primary email address they assign you -- this is probably your address, and with it you can probably change all the other addresses -- correct?
    Thus because you are using different User Accounts, when you wife or son is attempting to send, they do not have the benefit of your Username authenticating the SMTP (as would be the case if all three addresses are in use within one User Account and Mail at the same time). The following suggestion being successful will depend upon the exact method and policies of authentication used btinternet, but have your wife and/or your son to authenticate the OUTGOING server using the same entry for Username as you enter in Mail Preferences for your account.
    The same could be true for your dial-up ISP -- when you are unable to send with the SMTP for macunlimited.net, are you in fact connected via dial-up? If you are connected by dial-up and your account with macunlimited.net is the master or primary account, then I do not yet know why you cannot send.
    I hope this makes sense, and is not overly complicated.
    Ernie

  • User Login Randomly Disables

    we are currently running Mac OS X Server 10.3.8 with Server Admin and Workgroup Manager. we have a mixed environment of macintosh and windows clients connecting to this server. the windows users are using samba to connect to the server. our users (both Mac and Win) are experiencing their accounts randomly disabling every few days (3-4 days).
    we are confident it is not password related.
    any help would be appreciated.
    anthony
    Xserve G5   Mac OS X (10.3.8)   3GB RAM

    You are correct in assuming it is in a domain. We do not have that policy in place to delete users after X days. These are not roaming profiles. The profiles are being stored on the local machine on first login. The current set up is the user logs in,
    and it only will map their user drive. We do not have any other login hooks or anything like that. It is very random, but I have seen this happen on no less than 3 separate occasions, with around 10 machines getting hit, with our most recent one happening
    yesterday to 5 separate machines in 2 different buildings. I have also heard that if this happens, it will hose every user on that machine. I am just as stumped on this. I have never seen an issue like this until I came to this district a few months ago.

Maybe you are looking for