Login changes from WLCS 3.2 vs WLCS 3.5

I am upgrading my current prototype using WLCS3.2 to 3.5. I use the
exampleportal demo and plug in a few JSP's from my web application.
In 3.2, after you enter your login information the request object that all
portlets have access to contains 3 parameters: loginAction, username and
password. I use this information in order to log into my application which
allows me to have a single signon.
In 3.5, things have changed and the only parameter that I have access to
through the request object is 'dest' which has the path to
/something/loginSuccess.jsp. How do I now get access to login information
from the portal similar to what was available to me in 3.2?
thank you
shane

Peter,
Thanks for the quick reply. I'll let you know how I make out.
thanks
shane
"Peter Laird" <[email protected]> wrote in message
news:[email protected]...
>
Shane,
Excellent question. Let me point you to some reading:
1. There is a brand new security guide for 3.5 athttp://edocs.bea.com/wlcs/docs35/secguide/index.htm
>
2. Read the Security chapter of the Servlet 2.2 spec, found athttp://java.sun.com/products/servlet/index.html
>
>
Realize that the 3.2 portal's implementation of the security mechanismpredated
the standard J2EE declarative security model. The 3.5 release of portalreimplemented
security to adhere to the standard. So the missing attributes is aside-effect
of this change.
In 3.2, the portal was responsible for doing its own user authentication.Therefore
the username and password was available to the portal code. In 3.5, theservlet
container (WLS) performs the authentication on behalf of the portal. Asyou see
in the Servlet spec, the methods available to a servlet afterauthentication allow
you to get the username via request.getUserPrincipal(). But there is nostandard
way to get the password. So if you require the password to propagate theidentity
to another application, you are out of luck.
All is not lost though. I can think of three avenues for you.
1. Reread section 11.6 of the Servlet 2.2 spec. It declares that thecontainer
must maintain authentication at the container-scope, and not the web-appscope.
Know that the portal is deployed as a webapp. If your secondaryapplication can
be deployed as a J2EE web-app on the same server, authentication can bemaintained
across web-apps.
2. If you cannot deploy your app as a web-app, there is still anotheroption.
WLS supports an "Authentication Filter" which is invoked both immediatelyprior
and immediately after the j_security_check authentication mechanism. Thisallows
you to provide a callback which accepts the HttpRequest. Therefore, youshould
be able to stash the j_password into the Session before WLS clears it outof the
Request. I don't have time to try this today, but if you do please postyour results!
Read here for more info on the AuthFilterhttp://e-docs.bea.com/wls/docs60//javadocs/weblogic/servlet/security/AuthFil
ter.html
>
>
3. If the above options don't work for you, you may wish to implement acustom
WLS security realm which will provide passwords for users upon request.
Post back to the newsgroup with your thoughts/results.
PJL
"Shane Daniels" <[email protected]> wrote:
I am upgrading my current prototype using WLCS3.2 to 3.5. I use the
exampleportal demo and plug in a few JSP's from my web application.
In 3.2, after you enter your login information the request object that
all
portlets have access to contains 3 parameters: loginAction, username
and
password. I use this information in order to log into my application
which
allows me to have a single signon.
In 3.5, things have changed and the only parameter that I have access
to
through the request object is 'dest' which has the path to
/something/loginSuccess.jsp. How do I now get access to login
information
from the portal similar to what was available to me in 3.2?
thank you
shane

Similar Messages

  • 1142 Kept on Downloading Image from WLC CT2504

    Dear All,
    i'm a newbie of cisco wireless product, this my first time use.
    on the WLC i've set DHCP address pool, everything seems fine after ap download image -> reboot -> hit "Enter" to start blar blar blar... however, after a few second the WLC will initial upgrade image again and again. it's like a non-stop process.
    can anyone advise me where to start?  attached is the start up message, as you can see, i captured it after the ap successfully boot up, and WLC initial another cycle of image upgrade.
    btw, my network is flat, WLC & AP all in the same network.
    Thanks & Regards
    Eric
    *Nov  3 06:28:30.788: %CAPWAP-5-CHANGED: CAPWAP changed state to JOIN
    examining image...!
    extracting info (292 bytes)
    Image info:
        Version Suffix: k9w8-.124-23c.JA3
        Image Name: c1140-k9w8-mx.124-23c.JA3
        Version Directory: c1140-k9w8-mx.124-23c.JA3
        Ios Image Size: 4905472
        Total Image Size: 5100032
        Image Feature: WIRELESS LAN|LWAPP
        Image Family: C1140
        Wireless Switch Management Version: 7.0.220.0
    Extracting files...
    c1140-k9w8-mx.124-23c.JA3/ (directory) 0 (bytes)
    c1140-k9w8-mx.124-23c.JA3/html/ (directory) 0 (bytes)
    c1140-k9w8-mx.124-23c.JA3/html/level/ (directory) 0 (bytes)
    c1140-k9w8-mx.124-23
    *Nov  3 06:28:35.788: %CAPWAP-5-SENDJOIN: sending Join Request to 192.168.1.88perform archive download capwap:/c1140 tar file
    *Nov  3 06:28:35.803: %CAPWAP-5-AP_IMG_DWNLD: Required image not found on AP. Downloading image from Controller.
    *Nov  3 06:28:35.809: %CAPWAP-5-CHANGED: CAPWAP changed state to IMAGEc.JA3/html/level/1/ (directory) 0 (bytes)
    extracting c1140-k9w8-mx.124-23c.JA3/html/level/1/forms.js (17486 bytes)!
    extracting c1140-k9w8-mx.124-23c.JA3/html/level/1/sitewide.js (16548 bytes)!
    extracting c1140-k9w8-mx.124-23c.JA3/html/level/1/officeExtendap.css (41795 bytes)!!!
    *Nov  3 06:28:35.809: Loading file /c1140...
    extracting c1140-k9w8-mx.124-23c.JA3/c1140-k9w8-mx.124-23c.JA3 (4721403 bytes)!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!                              !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
    extracting c1140-k9w8-mx.124-23c.JA3/info (292 bytes)
    extracting info.ver (292 bytes)!
    Deleting target version: flash:/c1140-k9w8-mx.124-23c.JA3...done.
    New software image installed in flash:/c1140-k9w8-mx.124-23c.JA3
    Configuring system to use new image...done.
    archive download: takes 107 seconds
    Writing out the event log to nvram...
    *Nov  3 06:30:22.083: %DTLS-3-BAD_RECORD: Erroneous record received from 192.168.1.88: Duplicate (replayed) record
    *Nov  3 06:30:22.987: image upgrade successfully, system is now reloading
    *Nov  3 06:30:23.043: %SYS-5-RELOAD: Reload requested by capwap image download proc. Reload Reason: NEW IMAGE DOWNLOAD.
    *Nov  3 06:30:23.046: %LWAPP-5-CHANGED: CAPWAP changed state to DOWN
    using  eeprom values
    WRDTR,CLKTR: 0x83000800 0x40000000
    RQDC ,RFDC : 0x80000034 0x00000207
    using ÿÿÿÿ ddr static values from serial eeprom
    ddr init done
    Running Normal Memtest...
    Passed.
    IOS Bootloader - Starting system.
    FLASH CHIP:  Numonyx P33
    Checking for Over Erased blocks
    Xmodem file system is available.
    DDR values used from system serial eeprom.
    WRDTR,CLKTR: 0x83000800, 0x40000000
    RQDC, RFDC : 0x80000034, 0x00000207
    PCIE0: link is up.
    PCIE0: VC0 is active
    PCIE1: link is up.
    PCIE1: VC0 is active
    PCIEx: initialization done
    extracting c1140-k9w8-mx.124-23c.JA3/html/level/1/appsui.js (557 bytes)
    extracting c1140-k9w8-mx.124-23c.JA3/html/level/1/config.js (24633 bytes)!!
    extracting c1140-k9w8-mx.124-23c.JA3/html/level/1/ap_home.shtml.gz (1300 bytes)
    extracting c1140-k9w8-mx.124-23c.JA3/html/level/1/back.shtml (506 bytes)
    c1140-k9w8-mx.124-23c.JA3/html/level/1/images/ (directory) 0 (bytes)
    extracting c1140-k9w8-mx.124-23c.JA3/html/level/1/images/cisco-logo-2007.gif (1648 bytes)
    extracting c1140-k9w8-mx.124-23c.JA3/html/level/1/images/background_web41.jpg (732 bytes)
    extracting c1140-k9w8-mx.124-23c.JA3/html/level/1/images/login_homeap.gif (19671 bytes)!!
    extracting c1140-k9w8-mx.124-23c.JA3/html/level/1/images/info.gif (399 bytes)
    c1140-k9w8-mx.124-23c.JA3/html/level/15/ (directory) 0 (bytes)
    extracting c1140-k9w8-mx.124-23c.JA3/html/level/15/officeExtendapBanner.htm (7108 bytes)!
    extracting c1140-k9w8-mx.124-23c.JA3/html/level/15/officeExtendapHelp.htm (5007 bytes)
    extracting c1140-k9w8-mx.124-23c.JA3/html/level/15/officeExtendapEvent.shtml.gz (983 bytes)
    extracting c1140-k9w8-mx.124-23c.JA3/html/level/15/officeExtendapConfig.shtml.gz (2861 bytes)
    extracting c1140-k9w8-mx.124-23c.JA3/html/level/15/officeExtendapMain.shtml.gz (3361 bytes)!
    extracting c1140-k9w8-mx.124-23c.JA3/html/level/15/officeExtendapSummary.htm (712 bytes)
    extracting c1140-k9w8-mx.124-23c.JA3/T2.bin (8080 bytes)
    extracting c1140-k9w8-mx.124-23c.JA3/8001.img (174880 bytes)!!!!!!!!!!!!!!
    extracting c1140-k9w8-mx.124-23c.JA3/T5.bin (23836 bytes)
    extracting c1140-k9w8-mx.124-23c.JA3/info (292 bytes)
    extracting info.ver (292 bytes)!
    Deleting target version: flash:/c1140-k9w8-mx.124-23c.JA3...done.
    New software image installed in flash:/c1140-k9w8-mx.124-23c.JA3
    Configuring system to use new image...done.
    archive download: takes 107 seconds
    PCIE0: link is up.
    PCIE0: VC0 is active
    PCIE1: link is up.
    PCIE1: VC0 is active
    PCIEx: initialization done
    flashfs[0]: 28 files, 8 directories
    flashfs[0]: 0 orphaned files, 0 orphaned directories
    flashfs[0]: Total bytes: 32385024
    flashfs[0]: Bytes used: 7451136
    flashfs[0]: Bytes available: 24933888
    flashfs[0]: flashfs fsck took 21 seconds.
    Reading cookie from system serial eeprom...Done
    Base Ethernet MAC address: 60:73:5c:31:b0:dc
    Ethernet speed is 100 Mb - FULL duplex
    Loading "flash:/c1140-k9w8-mx.124-23c.JA3/c1140-k9w8-mx.124-23c.JA3"...############################################################################################################################################################################################################################################################################################################################################################################################################################################################
    File "flash:/c1140-k9w8-mx.124-23c.JA3/c1140-k9w8-mx.124-23c.JA3" uncompressed and installed, entry point: 0x4000
    executing...
    enet halted
                  Restricted Rights Legend
    Use, duplication, or disclosure by the Government is
    subject to restrictions as set forth in subparagraph
    (c) of the Commercial Computer Software - Restricted
    Rights clause at FAR sec. 52.227-19 and subparagraph
    (c) (1) (ii) of the Rights in Technical Data and Computer
    Software clause at DFARS sec. 252.227-7013.
               cisco Systems, Inc.
               170 West Tasman Drive
               San Jose, California 95134-1706
    Cisco IOS Software, C1140 Software (C1140-K9W8-M), Version 12.4(23c)JA3, RELEASE SOFTWARE (fc1)
    Technical Support: http://www.cisco.com/techsupport
    Copyright (c) 1986-2011 by Cisco Systems, Inc.
    Compiled Tue 18-Oct-11 14:52 by prod_rel_team
    Proceeding with system init
    Proceeding to unmask interrupts
    Initializing flashfs...
    FLASH CHIP:  Numonyx P33
    Checking for Over Erased blocks
    flashfs[1]: 28 files, 8 directories
    flashfs[1]: 0 orphaned files, 0 orphaned directories
    flashfs[1]: Total bytes: 32126976
    flashfs[1]: Bytes used: 7451136
    flashfs[1]: Bytes available: 24675840
    flashfs[1]: flashfs fsck took 5 seconds.
    flashfs[1]: Initialization complete.
    flashfs[2]: 0 files, 1 directories
    flashfs[2]: 0 orphaned files, 0 orphaned directories
    flashfs[2]: Total bytes: 11999232
    flashfs[2]: Bytes used: 1024
    flashfs[2]: Bytes available: 11998208
    flashfs[2]: flashfs fsck took 1 seconds.
    flashfs[2]: Initialization complete....done Initializing flashfs.
    Ethernet speed is 100 Mb - FULL duplex
    Radio0  present 8363 8000 90020000 0 90030000 B
    Radio1  present 8363 8000 98020000 0 98030000 0
    This product contains cryptographic features and is subject to United
    States and local country laws governing import, export, transfer and
    use. Delivery of Cisco cryptographic products does not imply
    third-party authority to import, export, distribute or use encryption.
    Importers, exporters, distributors and users are responsible for
    compliance with U.S. and local country laws. By using this product you
    agree to comply with applicable laws and regulations. If you are unable
    to comply with U.S. and local laws, return this product immediately.
    A summary of U.S. laws governing Cisco cryptographic products may be found at:
    http://www.cisco.com/wwl/export/crypto/tool/stqrg.html
    If you require further assistance please contact us by sending email to
    [email protected].
    cisco AIR-LAP1142N-C-K9    (PowerPC405ex) processor (revision A0) with 98294K/32768K bytes of memory.
    Processor board ID FGL1632S622
    PowerPC405ex CPU at 586Mhz, revision number 0x147E
    Last reset from reload
    LWAPP image version 7.0.220.0
    1 Gigabit Ethernet interface
    2 802.11 Radio(s)
    32K bytes of flash-simulated non-volatile configuration memory.
    Base ethernet MAC Address: 60:73:5C:31:B0:DC
    Part Number                          : 73-12836-05
    PCA Assembly Number                  : 800-33767-05
    PCA Revision Number                  : A0
    PCB Serial Number                    : FOC16301SFC
    Top Assembly Part Number             : 800-33775-04
    Top Assembly Serial Number           : FGL1632S622
    Top Revision Number                  : A0
    Product/Model Number                 : AIR-LAP1142N-C-K9
    % Please define a domain-name first.
    Translating "CISCO-CAPWAP-CONTROLLER"...domain server (255.255.255.255)
    Press RETURN to get started!
    *Mar  1 00:00:07.703: %SOAP_FIPS-2-SELF_TEST_IOS_SUCCESS: IOS crypto FIPS self test passed
    *Mar  1 00:00:07.714: *** CRASH_LOG = YES
    Security Core found.
    Base Ethernet MAC address: 60:73:5C:31:B0:DC
    *Mar  1 00:00:09.283: %SOAP_FIPS-2-SELF_TEST_RAD_SUCCESS: RADIO crypto FIPS self test passed on interface Dot11Radio 0
    *Mar  1 00:00:09.855: %SOAP_FIPS-2-SELF_TEST_RAD_SUCCESS: RADIO crypto FIPS self test passed on interface Dot11Radio 1
    *Mar  1 00:00:09.903: %LWAPP-3-CLIENTEVENTLOG: Read and initialized AP event log (contains, 1024 messages)
    *Mar  1 00:00:09.926:  status of voice_diag_test from WLC is false
    *Mar  1 00:00:10.970: %LINK-3-UPDOWN: Interface GigabitEthernet0, changed state to up
    *Mar  1 00:00:12.046: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0, changed state to up
    *Mar  1 00:00:12.084: %SYS-5-RESTART: System restarted --
    Cisco IOS Software, C1140 Software (C1140-K9W8-M), Version 12.4(23c)JA3, RELEASE SOFTWARE (fc1)
    Technical Support: http://www.cisco.com/techsupport
    Copyright (c) 1986-2011 by Cisco Systems, Inc.
    Compiled Tue 18-Oct-11 14:52 by prod_rel_team
    *Mar  1 00:00:12.085: %SNMP-5-COLDSTART: SNMP agent on host AP6073.5c31.b0dc is undergoing a cold start
    *Mar  1 00:10:23.055: %LINK-5-CHANGED: Interface Dot11Radio1, changed state to reset
    *Mar  1 00:10:23.055: %LINK-5-CHANGED: Interface Dot11Radio0, changed state to reset
    *Mar  1 00:10:24.055: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio1, changed state to down
    *Mar  1 00:10:24.055: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to down
    *Mar  1 00:10:32.053: %CAPWAP-5-CHANGED: CAPWAP changed state to DISCOVERY
    *Mar  1 00:10:33.293: %SSH-5-ENABLED: SSH 2.0 has been enabled
    *Mar  1 00:10:41.916:  status of voice_diag_test from WLC is false
    *Mar  1 00:10:41.973: Logging LWAPP message to 255.255.255.255.

    Dear Leolaohoo, i've performed the command, after reboot it'll join the controller and then the downloading process keep on repeating again. here's the output after i perform the command.
    AP6073.5c31.b0dc#de
    AP6073.5c31.b0dc#del
    AP6073.5c31.b0dc#delete /f /r fl
    AP6073.5c31.b0dc#delete /f /r flash:/c1
    AP6073.5c31.b0dc#delete /f /r flash:/c1140-k
    AP6073.5c31.b0dc#delete /f /r flash:/c1140-k9w8-mx.124-23c.JA3
    AP6073.5c31.b0dc#clear capwap pri
    AP6073.5c31.b0dc#clear capwap private?
    private-config
    AP6073.5c31.b0dc#clear capwap private
    AP6073.5c31.b0dc#clear capwap private-config
    AP6073.5c31.b0dc#reload
    Proceed with reload? [confirm]
    Writing out the event log to nvram...
    *Mar  1 00:12:29.460: %SYS-5-RELOAD: Reload requested by Cisco on console. Reload Reason: Reload Command.
    *Mar  1 00:12:29.463: %LWAPP-5-CHANGED: CAPWAP changed state to DOWN
    using  eeprom values
    WRDTR,CLKTR: 0x83000800 0x40000000
    RQDC ,RFDC : 0x80000034 0x00000207
    using ÿÿÿÿ ddr static values from serial eeprom
    ddr init done
    Running Normal Memtest...
    Passed.
    IOS Bootloader - Starting system.
    FLASH CHIP:  Numonyx P33
    Checking for Over Erased blocks
    Xmodem file system is available.
    DDR values used from system serial eeprom.
    WRDTR,CLKTR: 0x83000800, 0x40000000
    RQDC, RFDC : 0x80000034, 0x00000207
    PCIE0: link is up.
    PCIE0: VC0 is active
    PCIE1: link is up.
    PCIE1: VC0 is active
    PCIEx: initialization done
    flashfs[0]: 6 files, 2 directories
    flashfs[0]: 0 orphaned files, 0 orphaned directories
    flashfs[0]: Total bytes: 32385024
    flashfs[0]: Bytes used: 2365440
    flashfs[0]: Bytes available: 30019584
    flashfs[0]: flashfs fsck took 19 seconds.
    Reading cookie from system serial eeprom...Done
    Base Ethernet MAC address: 60:73:5c:31:b0:dc
    Ethernet speed is 100 Mb - FULL duplex
    Loading "flash:/c1140-k9w8-mx.124-23c.JA3/c1140-k9w8-mx.124-23c.JA3"...flash:/c1140-k9w8-mx.124-23c.JA3/c1140-k9w8-mx.124-23c.JA3: no such file or directory
    Error loading "flash:/c1140-k9w8-mx.124-23c.JA3/c1140-k9w8-mx.124-23c.JA3"
    Interrupt within 5 seconds to abort boot process.
    Loading "flash:/c1140-rcvk9w8-mx/c1140-rcvk9w8-mx"...#######################################################################################################################################################################################################################
    File "flash:/c1140-rcvk9w8-mx/c1140-rcvk9w8-mx" uncompressed and installed, entry point: 0x4000
    executing...
    enet halted
                  Restricted Rights Legend
    Use, duplication, or disclosure by the Government is
    subject to restrictions as set forth in subparagraph
    (c) of the Commercial Computer Software - Restricted
    Rights clause at FAR sec. 52.227-19 and subparagraph
    (c) (1) (ii) of the Rights in Technical Data and Computer
    Software clause at DFARS sec. 252.227-7013.
               cisco Systems, Inc.
               170 West Tasman Drive
               San Jose, California 95134-1706
    Cisco IOS Software, C1140 Software (C1140-RCVK9W8-M), Version 12.4(21a)JA, RELEASE SOFTWARE (fc1)
    Technical Support: http://www.cisco.com/techsupport
    Copyright (c) 1986-2009 by Cisco Systems, Inc.
    Compiled Mon 08-Jun-09 16:28 by prod_rel_team
    Proceeding with system init
    Proceeding to unmask interrupts
    Initializing flashfs...
    flashfs[1]: 6 files, 2 directories
    flashfs[1]: 0 orphaned files, 0 orphaned directories
    flashfs[1]: Total bytes: 32385024
    flashfs[1]: Bytes used: 2365440
    flashfs[1]: Bytes available: 30019584
    flashfs[1]: flashfs fsck took 4 seconds.
    flashfs[1]: Initialization complete....done Initializing flashfs.
    Ethernet speed is 100 Mb - FULL duplex
    This product contains cryptographic features and is subject to United
    States and local country laws governing import, export, transfer and
    use. Delivery of Cisco cryptographic products does not imply
    third-party authority to import, export, distribute or use encryption.
    Importers, exporters, distributors and users are responsible for
    compliance with U.S. and local country laws. By using this product you
    agree to comply with applicable laws and regulations. If you are unable
    to comply with U.S. and local laws, return this product immediately.
    A summary of U.S. laws governing Cisco cryptographic products may be found at:
    http://www.cisco.com/wwl/export/crypto/tool/stqrg.html
    If you require further assistance please contact us by sending email to
    [email protected].
    cisco AIR-LAP1142N-C-K9    (PowerPC405ex) processor (revision A0) with 98294K/32768K bytes of memory.
    Processor board ID FGL1632S622
    PowerPC405ex CPU at 586Mhz, revision number 0x147E
    Last reset from reload
    LWAPP image version 3.0.51.0
    1 Gigabit Ethernet interface
    32K bytes of flash-simulated non-volatile configuration memory.
    Base ethernet MAC Address: 60:73:5C:31:B0:DC
    Part Number                          : 73-12836-05
    PCA Assembly Number                  : 800-33767-05
    PCA Revision Number                  : A0
    PCB Serial Number                    : FOC16301SFC
    Top Assembly Part Number             : 800-33775-04
    Top Assembly Serial Number           : FGL1632S622
    Top Revision Number                  : A0
    Product/Model Number                 : AIR-LAP1142N-C-K9
    % Please define a domain-name first.
    Translating "CISCO-LWAPP-CONTROLLER"...domain server (255.255.255.255)
    Press RETURN to get started!
    *Mar  1 00:00:05.915: *** CRASH_LOG = YES
    Base Ethernet MAC address: 60:73:5C:31:B0:DC
    *Mar  1 00:00:06.121: %LWAPP-3-CLIENTEVENTLOG: Read and initialized AP event log (contains, 1024 messages)
    *Mar  1 00:00:08.167: %LINK-3-UPDOWN: Interface GigabitEthernet0, changed state to up
    *Mar  1 00:00:08.184: %SYS-5-RESTART: System restarted --
    Cisco IOS Software, C1140 Software (C1140-RCVK9W8-M), Version 12.4(21a)JA, RELEASE SOFTWARE (fc1)
    Technical Support: http://www.cisco.com/techsupport
    Copyright (c) 1986-2009 by Cisco Systems, Inc.
    Compiled Mon 08-Jun-09 16:28 by prod_rel_team
    *Mar  1 00:10:23.981: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0, changed state to up
    Translating "CISCO-CAPWAP-CONTROLLER"...domain server (255.255.255.255)
    *Mar  1 00:10:32.016: %CAPWAP-3-ERRORLOG: Could Not resolve CISCO-LWAPP-CONTROLLER
    Translating "CISCO-LWAPP-CONTROLLER"...domain server (255.255.255.255)
    *Mar  1 00:10:41.016: %CAPWAP-3-ERRORLOG: Could Not resolve CISCO-CAPWAP-CONTROLLER
    *Mar  1 00:10:41.017: %CAPWAP-5-CHANGED: CAPWAP changed state to DISCOVERY
    Translating "CISCO-CAPWAP-CONTROLLER"...domain server (255.255.255.255)
    *Mar  1 00:10:50.964: %CAPWAP-3-ERRORLOG: Could Not resolve CISCO-LWAPP-CONTROLLER
    *Mar  1 00:10:54.600: %CDP_PD-2-POWER_LOW: All radios disabled - NEGOTIATED WS-C2960-24PC-L (34bd.c8f6.5681)
    *Mar  1 00:10:59.964: %CAPWAP-3-ERRORLOG: Could Not resolve CISCO-CAPWAP-CONTROLLER
    Translating "CISCO-LWAPP-CONTROLLER"...domain server (255.255.255.255)
    Translating "CISCO-CAPWAP-CONTROLLER"...domain server (255.255.255.255)
    *Mar  1 00:11:18.965: %CAPWAP-3-ERRORLOG: Could Not resolve CISCO-LWAPP-CONTROLLER

  • Remove AP object from WLC

    How to remove AP object from WLC 8500 ?  I had dismantle one AP so it is now no longer associated with WLC, I want to remove AP info from WLC. But unable to find any command for the same.

    Hi Scott,
    Thanks for your answer..  But it's not fulfill my question.  I want to remove some of AP entries which is not currently associated with WLC.
    Below are steps which I understood when new AP joins to controller in my case.
    1) We are configuring AP with static IP and capwap protocol thru console login of AP.
    2) We are connecting AP to WLC thru netwok.
    3) When A joins to controller, It will be visible at Monitor section > Access Point Summary
    4) It will start from AP.macaddress
    5) Now remotely we are applying AP name, HIgh availability and assign to appropriate AP group.
    Now My query is when AP joins to controller, somewhere there should be entry in database that this mac address of AP is joined to controller along with AP configuration. 
    I want to delete some of AP databases which are disassociates from controller due to media failure between AP and WLC/AP no longer available.
    Is there any command to remove AP entries from Controller ? or any other procedure ?
    Devang

  • Access point associated and deassociated from WLC

    HI,
    i have 3 AP AIR-LAP1042N-E-K9 in the same place (Event at down town) but they Sometimes the APs even disassociate from the controller temporarily, and i see the below errors on Prime infrastructure 2.0
    Load threshold violation reported by 802.11b/g/n interface of AP <apname>, connected to controller <controllerIP>
    Interference threshold violation reported by '802.11b/g/n' interface of AP
    Coveraged threshold violation reported by 802.11b/g/n interface of AP <apname>, connected to controller <controllerIP>
    what these problems and how to solve it
    Thanks,
    Ahmed

    After these error done i see that error 802.11b/g/n interface of AP is down :controller.
    please as example up time is 4:00 hours and join time changed every time may be once 12 m:15 sec, may be in another time 1h:15 m:20s
    please feed me back these problem related to number of connected client because i monitor when the client exceed on AP more than 25 the AP deassociated from WLC.  kindly find loggs from AP. wait your feed back.
    *Mar  1 00:00:11.913: %SOAP_FIPS-2-SELF_TEST_IOS_SUCCESS: IOS crypto FIPS self test passed
    *Mar  1 00:00:11.916: *** CRASH_LOG = YES
    Security Core found.
    Base Ethernet MAC address: 6C:20:56:48:E7:59
    *Mar  1 00:00:13.876: %SOAP_FIPS-2-SELF_TEST_RAD_SUCCESS: RADIO crypto FIPS self test passed on interface Dot11Radio 0
    *Mar  1 00:00:14.758: %SOAP_FIPS-2-SELF_TEST_RAD_SUCCESS: RADIO crypto FIPS self test passed on interface Dot11Radio 1
    *Mar  1 00:00:14.761: %LINK-6-UPDOWN: Interface GigabitEthernet0, changed state to up
    *Mar  1 00:00:15.891: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0, changed state to up
    *Mar  1 00:00:18.795: %SYS-5-RESTART: System restarted --
    Cisco IOS Software, C1040 Software (C1140-K9W8-M), Version 15.2(2)JB, RELEASE SOFTWARE (fc1)
    Technical Support: http://www.cisco.com/techsupport
    Copyright (c) 1986-2012 by Cisco Systems, Inc.
    Compiled Tue 11-Dec-12 04:03 by prod_rel_team
    *Mar  1 00:00:18.796: %SNMP-5-COLDSTART: SNMP agent on host 90013-03 is undergoing a cold start
    *Mar  1 00:00:18.868: %LINK-5-CHANGED: Interface Dot11Radio0, changed state to reset
    *Mar  1 00:00:18.868: %LINK-5-CHANGED: Interface Dot11Radio1, changed state to reset
    *Mar  1 00:00:19.865: %LINEPROTO-5-UPDOWN: Line protocol on Interface BVI1, changed state to up
    *Mar  1 00:00:20.214: %SSH-5-ENABLED: SSH 2.0 has been enabledlwapp_crypto_init: MIC Present and Parsed Successfully
    *Mar  1 00:00:46.958: Logging LWAPP message to 255.255.255.255.
    *Mar  1 00:00:50.510: %CDP_PD-4-POWER_OK: Full power - NEGOTIATED inline power source
    *Mar  1 00:00:51.533: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to up
    *Mar  1 00:00:52.335: %DHCP-6-ADDRESS_ASSIGN: Interface BVI1 assigned DHCP address 10.35.49.35, mask 255.255.255.248, hostname 90013-03
    *Mar  1 00:00:52.533: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to up
    *Mar  1 00:00:52.559: %LINK-6-UPDOWN: Interface Dot11Radio1, changed state to up
    *Mar  1 00:00:53.559: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio1, changed state to up
    *Mar  1 00:01:03.221: %CAPWAP-3-ERRORLOG: Did not get log server settings from DHCP.
    *Mar  1 00:01:13.236: %CAPWAP-3-ERRORLOG: Selected MWAR 'RMS-WLC1'(index 0).
    *Mar  1 00:01:13.236: %CAPWAP-3-ERRORLOG: Go join a capwap controller
    *Dec  9 09:54:50.000: %CAPWAP-5-DTLSREQSEND: DTLS connection request sent peer_ip: 10.94.70.2 peer_port: 5246
    *Dec  9 09:54:50.919: %CAPWAP-5-DTLSREQSUCC: DTLS connection created sucessfully peer_ip: 10.94.70.2 peer_port: 5246
    *Dec  9 09:54:50.920: %CAPWAP-5-SENDJOIN: sending Join Request to 10.94.70.2
    *Dec  9 09:54:50.929: %CAPWAP-3-ERRORLOG: Invalid event 10 & state 5 combination.
    *Dec  9 09:54:50.929: %CAPWAP-3-ERRORLOG: CAPWAP SM handler: Failed to process message type 10 state 5.
    *Dec  9 09:54:50.929: %CAPWAP-3-ERRORLOG: Failed to handle capwap control message from controller
    *Dec  9 09:54:50.930: %CAPWAP-3-ERRORLOG: Failed to process encrypted capwap packet from 10.94.70.2
    *Dec  9 09:54:51.300: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to down
    *Dec  9 09:54:51.355: %LINK-5-CHANGED: Interface Dot11Radio0, changed state to reset
    *Dec  9 09:54:51.413: %CAPWAP-5-JOINEDCONTROLLER: AP has joined controller RMS-WLC1
    *Dec  9 09:54:51.464: ac_first_hop_mac - IP:10.35.49.33 Hop IP:10.35.49.33 IDB:BVI1
    *Dec  9 09:54:51.464: Setting AC first hop MAC: e804.62dc.9922
    *Dec  9 09:54:51.464: ac_first_hop_mac - IP:10.35.49.33 Hop IP:10.35.49.33 IDB:BVI1
    *Dec  9 09:54:51.464: Setting AC first hop MAC: e804.62dc.9922
    *Dec  9 09:54:51.465: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to up
    *Dec  9 09:54:51.595: %WIDS-6-ENABLED: IDS Signature is loaded and enabled
    *Dec  9 09:54:52.300: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to down
    *Dec  9 09:54:52.383: %LINK-6-UPDOWN: Interface Dot11Radio1, changed state to down
    *Dec  9 09:54:52.388: %LINK-5-CHANGED: Interface Dot11Radio1, changed state to reset
    *Dec  9 09:54:52.464: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio1, changed state to down
    *Dec  9 09:54:53.377: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to up
    *Dec  9 09:54:53.409: %LINK-6-UPDOWN: Interface Dot11Radio1, changed state to up
    *Dec  9 09:54:53.416: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to down
    *Dec  9 09:54:53.421: %LINK-5-CHANGED: Interface Dot11Radio0, changed state to reset
    *Dec  9 09:54:54.409: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio1, changed state to up
    *Dec  9 09:54:54.416: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to down
    *Dec  9 09:54:54.442: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to up
    *Dec  9 09:54:55.443: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to up
    *Dec  9 10:26:53.849: %WIDS-4-SIG_ALARM: Attack is detected on Sig:Standard Id:5 Channel:11 Source MAC:905f.2e62.e7a9
    *Dec  9 10:32:20.938: %CAPWAP-3-ERRORLOG: Retransmission count for packet exceeded max(CAPWAP_WTP_EVENT_REQUEST
    ., 2)
    *Dec  9 10:32:20.938: %CAPWAP-3-ERRORLOG: GOING BACK TO DISCOVER MODE
    *Dec  9 10:32:20.938: %DTLS-5-SEND_ALERT: Send FATAL : Close notify Alert to 10.94.70.2:5246
    *Dec  9 10:32:20.994: %WIDS-6-DISABLED: IDS Signature is removed and disabled.
    *Dec  9 10:32:20.997: %LWAPP-3-CLIENTERRORLOG: LWAPP LED Init: incorrect led state 255
    *Dec  9 10:32:21.038: %LINK-5-CHANGED: Interface Dot11Radio0, changed state to administratively down
    *Dec  9 10:32:21.039: %LINK-5-CHANGED: Interface Dot11Radio1, changed state to administratively down
    *Dec  9 10:32:21.041: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to up
    *Dec  9 10:32:21.113: %LINK-6-UPDOWN: Interface Dot11Radio1, changed state to up
    *Dec  9 10:32:19.000: %CAPWAP-5-DTLSREQSEND: DTLS connection request sent peer_ip: 10.94.69.2 peer_port: 5246
    *Dec  9 10:32:19.925: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to down
    *Dec  9 10:32:19.927: %CAPWAP-5-DTLSREQSUCC: DTLS connection created sucessfully peer_ip: 10.94.69.2 peer_port: 5246
    *Dec  9 10:32:19.928: %CAPWAP-5-SENDJOIN: sending Join Request to 10.94.69.2
    *Dec  9 10:32:19.939: %CAPWAP-3-ERRORLOG: Invalid event 10 & state 5 combination.
    *Dec  9 10:32:19.939: %CAPWAP-3-ERRORLOG: CAPWAP SM handler: Failed to process message type 10 state 5.
    *Dec  9 10:32:19.939: %CAPWAP-3-ERRORLOG: Failed to handle capwap control message from controller
    *Dec  9 10:32:19.939: %CAPWAP-3-ERRORLOG: Failed to process encrypted capwap packet from 10.94.69.2
    *Dec  9 10:32:20.093: %LINK-6-UPDOWN: Interface Dot11Radio1, changed state to down
    *Dec  9 10:32:20.098: %LINK-5-CHANGED: Interface Dot11Radio1, changed state to reset
    *Dec  9 10:32:20.370: %CAPWAP-5-JOINEDCONTROLLER: AP has joined controller UTO-WLC1
    *Dec  9 10:32:20.424: ac_first_hop_mac - IP:10.35.49.33 Hop IP:10.35.49.33 IDB:BVI1
    *Dec  9 10:32:20.424: Setting AC first hop MAC: e804.62dc.9922

  • DHCP scope increase and changes in wlc

    hi,
    i am using wlc 4402 with a mgt ip 172.26.150.x/24 and ap manager ip 172.26.150.x/24, my all ap get the ip address from dhcp . currently in dhcp server 172.26.150.3 to 254 dhcp scope is configured. at mysite some devices are configured like ipad,iphone or galaxy tab with mac binding in dhcp server. now this pool is almost full. i have a policy configured for these devices for mac binding is done in DHCP. to increase pool what are the changes i need to do in wlc. what are the changes i need to do in dhcp server . is policy made for mac binding in dhcp server will get affected by this ?
    regards
    rajat                  

    Hi Rajat,
    Use a /23 range ip address rather than using 172.26.150.x/24. So at first this change need to be carried out on the L3 device (which will the default gateway of the WLC managment interface). Accordingly the AP managment ip and ap manager ip's subnet mask is going to change from /24 to /23.
    Then ensure that on the dhcp server you expand the scope from /24 to /23. This is will not affect the MAC bindings as long as you are using the same ip range with a different subnet mask.
    Hope that helps
    Regards
    Najaf
    Please rate when applicable or helpful !!!

  • Isync will not login with new mobile me, need to change from .mac

    I have been trying to sync but my old .mac user name and password are not working now with mobile me. Shows that login is valid but I get an error message - There was a problem with the sync operation. .Mac login failed. I assume that I need to change the login address from .mac to a mobile me address. Any ideas out there? Apple has nothing on this problem.

    Patience. MobileMe is a mess.
    When Apple substantially modified .Mac Sync to support extended attributes available with the introduction of Mac OS X 10.5, and simultaneously dropped support for for the most part for Mac OS X 10.3.9, it was three weeks until normal service was restored. And even then, most of the issues individual users had with .Mac sync prior to the transition were still present.
    If you value your data, back it up and wait for an announcement from Apple that it works as expected.

  • APs missing from WLC

    My customer who has one WLC4402,36 AP1130.Some of APs miss from WLC sometimes but I can ping those APs at this time.I can not find any messages from WLC(version 4.2.61).Any suggestions?

    That's all well and good if the controller can be pinged. What is usually the case here is that there is no route to the management interface of the controller or the ap manager interface as well. Check to see if there are IP address conflicts with those two interfaces. Next, make sure that you have not exceeded the total number of APs per physical interface. If you have add a LAG group or a second ap management interface. Verify security certificates are on the APs and that the date and time on the controller is accurate. Lastly, make sure you have no PoE issues or CDP. You're beating a dea horse here guys.

  • I would change the language displayed in the login window from u.s. to german

    I would change the language displayed in the login window from u.s. to german in Lion (Mac OS X 10.7.2).
    I use
    sudo "/System/Library/CoreServises/Language Chooser.app/Contens/MacOS/Language Chooser"
    Then I enter my admin password and choose german. It doesn't work
    Then I use
    sudo languagesetup
    Then I enter my admin password and type 4 for german. It doesn't work
    Still I habe the language u.s. at the login windows.
    In the terminal appears following message:
    System Language set to: German
    2012-01-06 16:18:43.401 languagesetup[311:707] Warning: NSBundle NSBundle </System/Library/CoreServices/Language Chooser.app> (not yet loaded) was released too many times. For compatibility, it will not be deallocated, but this may change in the future. Set a breakpoint on __NSBundleOverreleased() to debug
    What shell I do? Can you help me??

    I found the solution!
    One of the User in my MacBookPro was saved with an old version of FileVault. I deaktivated this old FileVault and aktivate the new FileVault and the language of the login Windows is sudenly german!

  • APs randomly disassociate from WLC ver 4.1.185.0

    I have a WLC 4402 with about 45 1010 APs installetion
    WLC code version 4.1.185.0 and APs randomly disassociate from WLC - it happens usually one-two times a day
    with an errors:
    AP's Interface:1(802.11b) Operation State Up: Base Radio MAC:00:0b:85:xx:xx:xx Cause=Unknown
    AP's Interface:1(802.11b) Operation State Down: Base Radio MAC:00:0b:85:xx:xx:xx Cause=Max Retrasmission
    I've tried the suggested solutions putting a static ARP entry and moving AP's to different VLAN but nothing works unless the AP's physically rebooted.
    I think the problem begin just after upgrading to 4.0.217.0
    please note when AP's disassociates from WLC its still reachable via ping
    Are there any specific requirements for newer versions?
    Please advice

    Layer 2 mode uses a different non-routable method of AP to WLC connection. By moving to layer 3 you enabled IP on the access points. This is why you were able to reassociate. Layer 2 should only be used when all the APs and the controller are on the same network segment. Bear in mind, Layer 3 is your friend. It will allow latency based applications to work much better and more reliable. Layer 2 is really only used to prepare the APs for some specific configurations that require a quick, clean connection to a controller.

  • How to let AP1262 download from WLC and been managed.

    Hi Friends,
    Some days ago, I download standard IOS image for 1262 and installed, now this 1262 AP can start up without WLC. but I don't know how to recovery this AP image, and let's startup / download the image from WLC and has been managed...
    Is that ONLY remove the existence image ? and it's will be auto find WLC ?
    Thanks.

    Okay... here are the steps:
    1. Install an external TFTP tool such as tftpd32 tool from http://tftpd32.jounin.net/
    2. Assign IP address in the range 10.0.0.2 - .254 ( Ex : 10.0.0.2) to the tftp server (your laptop or pc).
    3. Download the IOS to lwapp image onto the tftp's root directory. Use http://www.cisco.com
    The filename that you need to rename will show up when you are consoled into the AP
    4. Rename ap3g1-rcvk9w8-tar.124-23c.JA3.tar to ap3g1-rcvk9w8-tar.default
    5. Make sure you set the IP address on the BVI interface of the AP if not set. Set it in the 10.0.0.x range. Default is 10.0.0.1.
    6. Connect the Ethernet port on AP to your TFTP Server ( Laptop ) DISABLE YOUR FIREWALL
    7. Hold the mode button and power off the AP.
    8. Power back the AP while continually holding the mode button for 20
    seconds.

  • How to change from SLIM to KDM?

    Hello,
    I'm using the MATE desktop, OpenBox as window manager and SLIM for login.
    I'm starting to feel tired of not being able to change between various desktops without closing the main one, I mean, with OpenSUSE Ctrl+Alt+F1 to F6 are terminal ttys (it is so with Arch+SLIM too), Ctrl+Alt+F7 to F12 are graphical ttys, you can change between any of them and log in as any user you want without closing the F7 tty, or closing it, or doing whatever you want. This was petty cool in order to kill some broken task that hanged the screen or in order to do whatever.
    May I don't know how to do it with SLIM, but anytime I do Crtl+Alt+F9, for example, I just got a blank screen with an hyphen blinking. With OpenSUSE I got a graphical login screen.
    More:
    I've got installed OpenBox, MATE and enlightenment. It is suppose me to be able to change between them pressing F1, and in fact SLIM changes where says "session: XXXX" between them at the login screen, but whatever I choose SLIM ALWAYS log me in MATE. I've got to change it manually in ~/.xinitrc and logout and login again every time I want to change between sessions. I cannot do it directly at the login screen.
    Sometimes after login out and login in several times SLIM hangs and I have to reboot.
    I think all these problems comes from slim, and since with OpenSUSE, that use kdm, I had no problem I want to try kdm as login manager, but I haven't seen any guide to do it if you've got a login manager already installed. I've seen it just if it is the first system installatio. And I'm a little scared of breaking my login and spend too much time fixing it.
    How can I change from SLIM to KDM without pain?

    WOW, I had to install kdebase-workspace and it installed as dependency a functional kde system . And... I was able to choose between all the other desktops but MATE, so... kdm and all that it installed with it's already uninstalled
    But with kdm I was able to open an enlightenment session in tty 8 without closing kde in tty 7...
    ewaller wrote:Install kdm.
    Disable the slim service using systemctl
    Enable the kdm service using systemctl
    No need to uninstall slim.  Hang on to it until everything is working
    Thank you ewaller, it worked perfectly
    Scimmia wrote:Well changing to kdm is as simple as using systemctl to disable slim and enable kdm.That won't get you graphical logins on tty8+, though.
    So, how can I do it with slim?
    Raynman wrote:Do you really need a GUI to kill a program?
    No, I don't, it was just an example.
    Sounds like your xinitrc isn't quite right, check the wiki page for slim.
    I'm tired of reviewing my xinitrc in order to make slim let me choose my desktop. I think the F1 to change the session is experimental. I will open other thread in order to get some help or in order to help SLIM to solve this problem.
    And you could try LightDM instead (because KDM probably pulls in some KDE crap). It comes with dm-tool (and a replacement for gdmflexiserver) to start a new session on another tty.
    Sounds good. I'll try to make slim work perfectly and if I don't get it to work as perfectly I want I'll try other login managers.

  • HT1212 Is my screen supposed to change from the screen with the charger and the iTunes circle to my lock screen while it's in recovery mode?

    Is my screen supposed to change from the screen with the charger and the iTunes circle to my lock screen while it's in recovery mode?

    Is Find My Phone turned on, on your phone? If so, eject from iTunes, login to iCloud.com, locate your phone, then erase it.
    Does the same thing...removes the passcode. Then, either restore from backup, or setup as a new device.

  • How to call custom Login Module from JSP

    Hi,
    I am stuck with the following issue:
    1) Exactly as presented in help.sap.com (http://help.sap.com/saphelp_nw04/helpdata/en/3f/1be040e136742ae10000000a155106/content.htm) I created custom login module and deployed it as a library on J2EE server. When I configured it to be used for my applications in the Security provider but I am getting "No user name provided" exception everytime when my applications use this custom login module.
    2) I realized that I would need to call my custom module somewhere within my application (simple JSP) using LoginContext class and then use MyLoginContext.login() spec to initiate login process. But I am not able to pass CallbackHandler parameters from JSP application to my custom login module.
    So I have the following questions:
    1. Can I pass parameters using LoginContext and CallbackHandler from JSP to my custom login module (created as exact copy of HELP.SAP.COM example) or this module cannot be used this way.
    2. How to pass CallbackHandler correctly to my custom login module from JSP. When I am trying to use CallbackHandler, I am getting "Abstract Class cannot be called" error.
    I'd appreciate any little help on this matter.
    Thanks and regards,
    Mike

    You have two alternatives to do this:
    You can declare your JSP as a protected resource with the use of the deployment descriptors of the application (web.xml) and add the custom login module in the authentication stack of the application. This way, you will use container-based authentication, i.e. the Web Container will enforce the authentication and it will call the custom login module before it dispatches to the JSP. I recommend you this approach because it requires less coding and it makes the whole thing a matter of configuration. The configuration can be later on enhanced or changed runtime without the need to re-build and re-deploy the application. If you choose this approach you can go to the documentation of the server for help on how to modify the login module stack of the application.
    You can also use programmatic authentication by using JAAS API. To do this you need to create a custom security policy configuration with login module stack containing the custom login module, and then use the standard JAAS mechanism - new LoginContext(<configuration>, <callback-handler>).login(). This approach requires that you write your own callback handler and handle any LoginException.
    Let us know which approach you prefer and whether you have difficulties implementing it!

  • GNOME 3.2.1 login promt from the lock screen is ugly.

    The lock screen doesn't look nice... have i miss configured something?
    What i mean is that i don't get something like the nice login screen from GDM ... but i get a password promt similar to the old style GDM....
    Any ideas? is that the expected behaviour?
    Thanks!
    Juan.

    It's the expected behaviour, but there is an upstream task to change this: https://live.gnome.org/ThreePointThree/ … ScreenLock

  • New Imac. I get rid off login password from security and account and restart. Now it asks for username and password and it's not acepting anything. Any ideas?

    New Imac. I get rid off login password from security and accounts and restart. Now it asks for username and password and it's not acepting anything. Any ideas?

    First, reset your password as follows.
    Boot into Recovery by holding down the key combination command-R at startup. Release the keys when you see a gray screen with a spinning dial.
    When the OS X Utilities screen appears, select Utilities ▹ Terminal from the menu bar.
    In the Terminal window, type this:
    resetpassword
    That's one word with no spaces. Then press return. A Reset Password window opens.
    Select your boot volume if not already selected.
    Select your username from the menu labeled Select the user account if not already selected.
    Follow the prompts to reset the password. It's safest to choose a password that includes only the characters a-z, A-Z, and 0-9.
    Select  ▹ Restart from the menu bar.
    You should now be able to log in with the new password, but you won't be able to unlock the Keychain. If you've forgotten the Keychain password (which is ordinarily the same as your login password), there's no way to recover it. You’ll need to reset your keychain in the preferences of the Keychain Access application.
    If you're being prompted to authenticate when making changes to files inside your home folder, continue as follows.
    Back up all data now.
    This procedure will unlock all your user files (not system files) and reset their ownership and access-control lists to the default. If you've set special values for those attributes on any of your files, they will be reverted. In that case, either stop here, or be prepared to recreate the settings if necessary. If none of this is meaningful to you, you don't need to worry about it.
    Step 1
    Launch the Terminal application in any of the following ways:
    ☞ Enter the first few letters of its name into a Spotlight search. Select it in the results (it should be at the top.)
    ☞ In the Finder, select Go ▹ Utilities from the menu bar, or press the key combination shift-command-U. The application is in the folder that opens.
    ☞ Open LaunchPad. Click Utilities, then Terminal in the icon grid.
    Drag or copy — do not type — the following line into the Terminal window, then press return:
    sudo chflags -R nouchg,nouappnd ~ $TMPDIR.. ; sudo chown -R $UID:20 ~ $_ ; chmod -R -N ~ $_ 2> /dev/null
    Be sure to select the whole line by triple-clicking anywhere in it. You'll be prompted for your login password, which won't be displayed when you type it. You may get a one-time warning not to screw up. You don't need to post the warning. If you don’t have a login password, you’ll need to set one before you can run the command.
    The command will take a noticeable amount of time to run. Wait for a new line ending in a dollar sign (“$”) to appear, then quit Terminal.
    Step 2
    Boot into Recovery by holding down the key combination command-R at startup. Release the keys when you see a gray screen with a spinning dial.
    When the OS X Utilities screen appears, select Utilities ▹ Terminal from the menu bar. A text window opens.
    In the Terminal window, type this:
    resetpassword
    That's one word with no spaces. Then press return. A Reset Password window opens. You’re not going to reset a password.
    Select your boot volume if not already selected.
    Select your username from the menu labeled Select the user account if not already selected.
    Under Reset Home Directory Permissions and ACLs, click the Reset button.
    Select  ▹ Restart from the menu bar.

Maybe you are looking for