Logging CRS configuration changes
Hallo,
in a 10.1 RAC environment,
is there a file which logs CRS configuration changes, like issuing a oifcfg -setif command?
Thx
Yes
Similar Messages
-
Vendor Classification Change Log Activate : Configuration Change
Hi,
I want to know what is the process of activate Change Log for the Vendor Classification. Please suggest.
RgdsYou can see in Xk02 / Xk03 transaction - Environment tab - Field changes..
-
Log configuration changes to syslog on Nexus 7000?
I need to be able to log any configuration changes to syslog on our Nexus switches. On IOS this is easy with the archive commands, but I'm a little stuck trying to do this on our Nexus gear. On the IOS gear I run the commands:
archive
log config
logging enable
logging size 100
hidekeys
notify syslog
How do I do the equivalent on NX-OS?Cisco NX-OS can log configuration change events along with the individual changes when AAA command accounting is enabled.
With command accounting enabled, all CLI commands entered, including configuration commands, are logged to the configured AAA server. Using this information, a forensic trail for configuration change events along with the individual commands entered for those changes can be recorded and reviewed.
Because of this capability, it is strongly advised that AAA command accounting be enabled and configured.
Refer to the “TACACS+ Command Accounting” section of this document for more information.
The Nexus 7000, by default keeps a local accounting log of all the configuration commands entered on the device; you can view this with the 'show accounting log' command.
In NX-OS, we changed the way logging works. We keep a local accounting log of all the
configuration changes ("show accounting log"), but if you want to send those logs to a
server, it must be done with through a TACACS server. Please see the below documentation:
Configuring AAA on Nexus
TACACS command accounting
-Thanks
Vinod
**Encourage Contributors. RATE Them.** -
Can the ACE be configured for logging configuration changes to syslog server ?
Hi,
On all our routers, switches and firewalls we've configured syslog so we get logs when configuration changes occur.
Is this possible on the ACE too ?
regards,
SebastianHi Sebastian,
Yes it is possible but depends upong the logging level you have set. So logging trap 5 should be able to get you the configuration changes or command execution logs.
Nov 1 2013 11:20:33 : %ACE-5-111008: User 'admin' executed the 'logging buffered 6' command.
Nov 1 2013 11:20:48 : %ACE-5-111008: User 'admin' executed the 'no rserver testlog' command.
So you should see these level 5 logs on syslog if logging trap 5 is configured.
Let me know if you have any questions.
Regards,
Kanwal -
Configuration Change log in Production
Hi all
Some configuration changes have been directly made in production at our client. How can we find out what changes are made? Going into SCC4 > Change logs, I could find out who made all the changes. But it does not show what configuration changes are made.
Thanks
VamsiDear Vamsi,
I'm not sure whether in a single report you can fetch all the changes related to configuration for a particular module.
But I'm sure in most of the nodes the configuration change logs gets recorded.Check these links,
Re: How to find when a new Material type is created
Configuration change Log
Regards
Mangalraj.S -
Hi,
I need to find the configuration change log in development system. Do we have any transaction/report/program from which we can track all the configuration changes for a perticular object.
Thanks,
Vijayfor almost all customizing you can find the change history in menu tools within the cuistomizing.
-
Apache Sling Logging Writer Configuration
Hi,
I'm having an issue where my custom log writer configuration is not being picked up and used by CQ5 sometimes. I've created a custom error log writer based on the example provided at http://helpx.adobe.com/cq/kb/HowToRotateRequestAndAccessLog.html which I've installed on an author, replicated it to the publishers, and all seemed ok and working correctly. The settings are:
Log File: ../logs/error.log
Number of Log Files: 5
Log File Threshold: 200MB
After installing this, the error logs rotated at 200MB resulting in error.log.0, error.log.1 etc as expected.
However after rebuilds on the machines, this configuration was overwritten (as expected). So I've installed and replicated the package again, but now the configuration is not taking effect. I'm using the exact same config package as I was previously, but the logs don't seem to be rotating at all now (not even daily). I've deleted the config from the Felix console on all authors and publishers, reinstalled on the authors, replicated to the publishers, then restarted the CQ5 service on all machines, but it's still not working.
So I have a couple of questions about this:
Is there somewhere else in CQ5 that might be overriding these log writer config settings?
Is ../logs/error.log correct for the standard log file location? A note in step 3 of Creating Your Own Loggers and Writers on http://dev.day.com/docs/en/cq/current/deploying/configure_logging.html states:
Log writer paths are relative to the crx-quickstart/launchpad location.
Therefore, a log file specified as logs/thelog.log writes to crx-quickstart/launchpad/logs/thelog.log.
To write to the folder crx-quickstart/logs the path must be prefixed with ../ (as../logs/thelog.log).
So a log file specified as ../logs/thelog.log writes to crx-quickstart/logs/thelog.log.
The configs in the log rotation example also use ../logs. However when looking at the default/standard logging writer config, it uses logs/error.log. Which one is correct?
Any help on what's going on here would be appreciated!!
Thanks,
KHi,
I am answering your last question and this one here only.
1. Log configuration can be override at project via creating config and overriding factory "org.apache.sling.commons.log.LogManager.factory.config-<identifier>" and writer (if required) "org.apache.sling.commons.log.LogManager.factory.writer-<identifier>". So plz check if you have configure log at project level. Now if you are not able to see then plz recheck you log configuration in felix console http://localhost:4502/system/console/slinglog here you can see entire log configuration for CQ system.
2. both will work but the location will change
i. CQ 5.5 - log file located under "crx-quickstart" ../logs/<filename>.log will create under this
ii. CQ 5.4 - logs creates under "crx-quickstart\logs" also under "crx-quickstart\launchpad\logs" so if you select ../logs/ it will go under "crx-quickstart\logs" only but you can change wherever you want to store. Again you can see this configuration info at http://localhost:4502/system/console/slinglog
3. You can also customize you log via creating at project level and assigning the "identifire" (with all other configure parameters) for more information you can refer http://sling.apache.org/site/logging.html apart from earlier share links.
I hope above will help you to proceed. Please let me know for more information.
Thanks,
Pawan -
How to prevent BGP code 6 (Cease) subcode 6 (Other Configuration Change)
Can anyone tell How to prevent BGP code 6 (Cease) subcode 6 (Other Configuration Change) ?
We are facing frequent problem with this error. Please suggest how to stop this....
Note :- We are using BGP VPN between this peers.
Logs :
Date/Time : 2015-04-30 00:49:40+05:30
State : Up
Date/Time : 2015-04-30 00:39:05+05:30
State : Down
Error Code : 6(CEASE)
Error Subcode : 6(Other Configuration Change)
Notification : Send Notification
Date/Time : 2015-04-29 18:22:11+05:30
State : Up
Date/Time : 2015-04-29 18:21:39+05:30
State : Down
Error Code : 6(CEASE)
Error Subcode : 6(Other Configuration Change)
Notification : Send Notificationon the same dates you mean the same request are posted in IT2001? ie both full days?
Please clarify
usually the Time collision checks are followed only via posting using report rptarqpost and not while applying through portal in ESS
This is very strange you indicate
SO you need to check the basic tables first
You may need to check the collision.
Collisions Tables V_T554Y and V_554Y_B reaction indicators.
and V_T508A
able T582A set to time constraint of "Z
In backend Pa30 collision works like this
1) the logical collision, checks if there is an overlap in the validity
interval of the IT´s (begda, endda).
2) the physical collision, checks if there is an overlap in the time
interval of the IT's.
In the logical collision it is checked if there is an overlap in the
validity interval if at least one of the records is a full-day
( that is the case when you enter a Daily Work Schedule (DWS) )
So when one of the records has a DWS it is considered to be a full day
record and the logical collision is taken into consideration.
If instead you enter the only the time interval manually the records
are considered to be partial-day and the physical collision is
performed. In that case only the time interval is important.
So if the clock times are not entered the physical collision can not
take place.
The collision functionality is always based on clock times and dates,
never on the total nr of hours.
Edited by: Siddharth Rajora on Sep 21, 2011 4:57 PM -
Making a configuration change without using admin console
I am using the Platform Edition of App Server 7 so I don't have access to the web-based admin console.
I need to make a configuration change and the only directions I have are for the admin console.
Can anybody give me some pointers on what file to edit to acomplish the procedure below?
8. Log in to the Sun ONE Application Server administration console.
9. Select the application server Instance on which you installed the Identity Server.
10. Click JVM Settings and then JVM Options.
11. In the JVM Option field, enter the following string: -Dhttp.keepAlive=false
12. Click Add and then Save.I think I've found it...
The file is server.xml and it is located at:
/var/opt/SUNWappserver7/domains/domain1/server1/config
There is a section under <java-config> with about 14 lines containing various <jvm-options>
I'll try adding this directive to the end of the <jvm-options> as follows:
<jvm-options>-Dhttp.keepAlive=false</jvm-options> -
Shrink Log file in log shipping and change the database state from Standby to No recovery mode
Hello all,
I have configured sql server 2008 R2 log shipping for some databases and I have two issues:
can I shrink the log file for these databases: If I change the primary database from full to simple and shrink the log file then change it back to full recovery mode the log shipping will fail, I've seen some answers talked about using "No
Truncate" option, but as I know this option will not affect the log file and it will shrink the data file only.
I also can't create maintenance to reconfigure the log shipping every time I want to shrink the log file because the database size is huge and it will take time to restore in the DR site, so the reconfiguration
is not an option :(
how can I change the secondary database state from Standby to No recovery mode? I tried to change it from the wizard and wait until the next restore for the transaction log backup, but the job failed and the error was: "the step failed". I need
to do this to change the mdf and ldf file location for the secondary databases.
can any one help?
Thanks in advance,
Faris ALMasri
Database Administrator1. can I shrink the log file for these databases: If I change the primary database from full to simple and shrink the log file then change it back to full recovery mode the log shipping will fail, I've seen some answers talked about using "No Truncate"
option, but as I know this option will not affect the log file and it will shrink the data file only.
I also can't create maintenance to reconfigure the log shipping every time I want to shrink the log file because the database size is huge
and it will take time to restore in the DR site, so the reconfiguration is not an option :(
2. how can I change the secondary database state from Standby to No recovery mode? I tried to change it from the wizard and wait until the next restore for the transaction log backup, but the job failed and the error was: "the step failed". I need to do
this to change the mdf and ldf file location for the secondary databases.
can any one help?
Thanks in advance,
Faris ALMasri
Database Administrator
1. If you change recovery model of database in logshipping to simple and back to full Logshipping will break and logs wont be resored on Secondary server as log chain will be broken.You can shrink log file of primary database but why would you need that
what is schedule of log backup. Frequent log backup is already taking care of log files why to shrink it and create performance load on system when log file will ultimately grow and since because instant file initilaization is not for Log files it takes time
to grow and thus slows performace.
You said you want to shrink as Database size is huge is it huge or does it have lots of free space. dont worry about data file free space it will eventually be utilized by SQL server when more data comes
2. You are following wrong method changing state to no recovery would not even allow you to run select queries which you can run in Standby mode. Please refer below link to move Secondary data and log files
http://www.mssqltips.com/sqlservertip/2836/steps-to-move-sql-server-log-shipping-secondary-database-files/
Please mark this reply as answer if it solved your issue or vote as helpful if it helped so that other forum members can benefit from it.
My TechNet Wiki Articles -
I am trying to deploy an ADF application to my trial instance of Java cloud, I am getting the following error:
2013-10-15 08:24:18 CDT: Deploy Application started
2013-10-15 08:24:19 CDT: weblogic.management.DeploymentException: [Deployer:149189]An attempt was made to execute the 'deploy' operation on an application named 'xyzAPP' that is not currently available. The application may have been created after non-dynamic configuration changes were activated. If so, the operation can not be performed until server is restarted so that the application will be available.
2013-10-15 08:24:19 CDT: WL action state: failed
2013-10-15 08:24:19 CDT: Action FAILED with WL action state: failed
2013-10-15 08:24:19 CDT: Check the server log of your Java cloud service for more info about the failure.
There are tutorials available for deploying your first ADF app to the cloud, which I followed carefully. Except for one thing, the ADF app was originally developed in Jdeveloper 11.1.2.4 and then migrated to 11.1.1.6. Could that be what is causing the problem? How can I try to troubleshoot this?Hi,
You will have to raise an sr towards the hosting team to perform the restart.
Kind regards,
Flori -
Configuration archive after configuration change
Hello,
I'm assuming this can work with switches, routers, and controllers. I'm running PI 2.1 and am trying to get the configuration archive functionality working. I have both of these options checked under System Settings > Configuration Archive:
:: Archive configuration out-of-box
:: Archive configuration on receiving configuration change events
On the IOS device, these settings were configured for syslog/snmp:
logging buffered 100000
no logging event link-status
logging trap notifications
logging facility local6
logging source-interface Loopback0
logging <Prime IP>
snmp-server community ***** RW 13
snmp-server enable traps config
snmp-server enable traps syslog
snmp-server host <Prime IP> version 2c *****
I do not see any syslog messages in PI under alarms/alerts and the configuration never gets archived. I haven't run tcpdump yet to determine if PI is receiving these traps but I was hoping it was something simple I was overlooking. Thanks for any assistance that can be provided.Thank you for the reply. To answer your question, yes. Community information matches with PI credentials.
I actually did get it to work yesterday. I did original testing on a 1921 router which is still not working, but when I tried configuring the same information on some switches (3750's) it worked. I thought routers would be configured the same - are there hardware limitations to this?
I look in the built-in CLI template 'Configure Logging' in PI and it only has switches and WLCs as available devices to push out to but I don't know what to make of it. -
I am receiving event ID 5189 on Server 2008 R2, IIS 7.5. I experience this error across a number of servers, each of which is running only the default web site, but have 600+ applications running on the default web site. Each application
has its own application pool. My point is, the applicationhost.config is rather large.
I have seen a number of posts on this error message, but my issue itself seems to differ somewhat. I am aware of a similar post: http://social.technet.microsoft.com/Forums/en-US/3128ee93-1319-4cc2-9257-003512caf476/event-id-5189-microsoftwindowswas?forum=exchangesvrgeneral
which points to KB http://technet.microsoft.com/en-us/library/cc734988%28v=ws.10%29.aspx
However, in my case, it doesn't seem that the extreme measures for this resolution are required. The error usually indicates a corrupted applicationhost.config that must be manually fixed, or otherwise the WAS service needs to be restarted, or the
server itself, etc.
In my case, the issue can usually be fixed by an application pool recycle, or at worst a stop/start. I have an application which is sensitive to recycles, and so we do not have periodic recycle events configured for this application, which is the bulk
of the applications on the servers. It seems to me that this issue is usually caused by the application being in use when there is an applicationhost.config change.
For instance, we have one application that we deploy using msdeploy. We found that when we ran an installation for this application via msdeploy, we were receiving this event, and we would subsequently get 500 errors in the application (sometimes the
application pool corresponds to that which is identified in the event log, sometimes it doesn't). It seems like applications that were being hit at the time the applicationhost.config was modified by msdeploy were affected. In an attempt
to correct this, we moved from msdeploy to a batch file containing appcmd commands. This also did not resolve the issue.
I have another application which is installed using PowerShell commandlets. We started to notice that this script also caused the issue to occur on occasion. As I continued to identify different processes that resulted in the same issue, I came
to the conclusion that this is likely due to any change in the applicationhost.config. I assume the issue is that the applicationhost.config is modified during a read operation to the file by the application pool, or WAS service, and that the recycle
event, which corrects the issue, forces a re-read of the applicationhost.config, resolving the bad-read issue.
Has anyone else experienced this, or do you have any recommendations? My current work-around is to not install any applications during peak hours, and performing an IISRESET after installs are completed, to ensure application stability.
Message : The Windows Process Activation Service failed to generate an application pool config file for application pool 'myAppPool'. The error type is '7'. To resolve this issue,
please ensure that the applicationhost.config file is correct and recommit the last configuration changes made. The data field contains the error number.
Id : 5189
Version : 0
Qualifiers : 49152
Level : 2
Task : 0
Opcode : 0
Keywords : 36028797018963968
RecordId : 324108
ProviderName : Microsoft-Windows-WAS
ProviderId : 524b5d04-133c-4a62-8362-64e8edb9ce40
LogName : System
ProcessId : 0
ThreadId : 0
MachineName : MyComputer
TimeCreated : 3/3/2014 9:03:24 PM
ContainerLog : system
MatchedQueryIds : {}
Bookmark : System.Diagnostics.Eventing.Reader.EventBookmark
LevelDisplayName : Error
KeywordsDisplayNames : {Classic}
Properties : {System.Diagnostics.Eventing.Reader.EventProperty, System.Diagnostics.Eventing.Reader.EventProperty, System.Diagnostics.Eventing.Reader.EventProperty}As an update to this issue, after doing some research, it appears the behavior is related to a new feature in IIS7 called Application Pool Isolation (http://technet.microsoft.com/en-us/library/dd163536.aspx).
This new feature prevents cross-application spillage by isolating the configuration for each application pool in IIS. So in reality, an application pool never actually reads the applicationhost.config - that is just a master file, and each time it
is update, it triggers a change to the individual application pool configuration files, located in C:\inetpub\temp\apppools.
We did try setting Advanced Settings > Disable Recycling for Configuration Change to true, but after an IIS reset we were still able to reproduce the issue - worse actually, because in our test program, which continually hits the web
service, and also continually makes apphost.config changes, when the two events collide, the 500.19 issue precipitates; but after an additional change to the apphost.config, it seems that the additional changes will actually correct the issue (seemingly forcing
another recycle, which is also how we resolve the issue manually); after making this setting adjustment, once the 500.19 issue precipitates, additional changes to the apphost.config does not correct the problem, only a manual recycle corrects it. This
is the recycling.disallowRotationOnConfigChange property of the app pool. We also set the setting for recycling.disallowOverlappingRotation to True as well, with the same result.
We ARE able to prevent this issue by setting the C:\inetpub\temp\apppools\myapppool\myapppool.config to read-only, but for obvious reasons, this is not a desired work-around.
It seems like what is happening is that any change to the ApplicationHost.config is resulting in each of the C:\inetpub\temp\apppools temp application pool config files being updated as well, in addition to triggering an application pool recycle. It
seems to me the desired behavior would be that these files are only updated if the applicationhost.config changes are specific to that application pool - but that doesn't seem to be the behavior.
After turning on failed request tracing, I was able to narrow the error down more:
ModuleName
AnonymousAuthenticationModule
Notification
2
HttpStatus
500
HttpReason
Internal Server Error
HttpSubStatus
19
ErrorCode
2147942413
ConfigExceptionInfo
\\?\C:\inetpub\application\application\web.config ( 9) :Failed to decrypt attribute 'password'
Notification
AUTHENTICATE_REQUEST
ErrorCode
The data is invalid. (0x8007000d)
This seems to be pretty static. Trying to look into possible causes of this issue. -
Hello all,
is there any possibility to view all changes that was done on proxy configuration (access,identity,routing rules) in some time? Currently I need to do following:
- see if there was some change applied: grep system_logs for text "commit changes" to see if there was commited changes,
- and then manually looking inside the couple of records inside the "cli_logs" and "gui_logs" from that time, what was done on appliance. CLI logs are fine, i can see exact commands applied in CLI, but rules are mainly created in Web GUI form and inside the gui_logs I can just see the GET/POST requests with adequate URL. But: 1. this is not clear, so many requests and 2. I cannot differentiate what is just request for page and what is the change in configuration.
Please is there any simple way to determine configuration changes in Web appliance?
many thanks
michalHi Michal
Currently "cli_logs" and "gui_logs" are the only logs that records/logs
these changes, unfortunately detailed of the changes made through the GUI
are not record/saved apart from GET/POST request. I believe we do have a
feature request to ³log² ALL the configuration detailed made via CLI or GUI.
Regards,
Zack
On 6/4/12 6:09 AM, "michal.bruncko" -
Hi All,
Is there any way we can detect whether any changes have been made to the configuration?
Ex: We are having no conversion issues until thursday in requisitions. From Monday, we are having some issues. Is there any way i can check whether any configuration changes have been made in the environment may be on friday or monday morning?
ThanksIn SPRO screen, in Goto and go for change log (F7)..
A new screen "Evaluation of change logs" opens..
Play with it and you will find the changes done in SPRO.
Also you can ask your basis guy to give the log for a particular user or transaction.
Reward if helpful..
Regards,
Srib
Maybe you are looking for
-
Spry Panels: How to link to a tab within a tab?
hi, I was wondering if anyone could help me with this. I can set up a link to a main tab on a page of my website by just replacing '/index.html' with '/?tab=x' (with x being a number). Now within those tabs there are another set of tabs that I would
-
Application Server Configuration
Hi, I have installed Oracle 10g R2 Application Server(IAS) on Windows 2003 32bit SP2 Server. The order of installation done on Server 1: Infra, Metadata Repository, OID, IAS I have requirement of separating few applications running on server 1 to ano
-
Why does brasero not burn a DVD?
I have a DVD to burn, but every time I run Brasero I get a message to insert an empty disk or otherwise it will attempt to make an image. With the empty disk inserted seems like brasero does not see the device and disk. With my external DVD writer co
-
CVS Integration with JDeveloper 10.1.2
I have upgraded to JDeveloper 10.1.2 from the previous version and CVS integration appears to be partially broken. All my source files are checked in and I can confirm this with WinCVS which allows me to 'cvs edit' my source for update. In JDeveloper
-
I am having trouble copying from Evernote and pasting to Numbers. Any help? Used to work before iOS5.