Login changes from WLCS 3.2 vs WLCS 3.5
I am upgrading my current prototype using WLCS3.2 to 3.5. I use the
exampleportal demo and plug in a few JSP's from my web application.
In 3.2, after you enter your login information the request object that all
portlets have access to contains 3 parameters: loginAction, username and
password. I use this information in order to log into my application which
allows me to have a single signon.
In 3.5, things have changed and the only parameter that I have access to
through the request object is 'dest' which has the path to
/something/loginSuccess.jsp. How do I now get access to login information
from the portal similar to what was available to me in 3.2?
thank you
shane
Peter,
Thanks for the quick reply. I'll let you know how I make out.
thanks
shane
"Peter Laird" <[email protected]> wrote in message
news:[email protected]...
>
Shane,
Excellent question. Let me point you to some reading:
1. There is a brand new security guide for 3.5 athttp://edocs.bea.com/wlcs/docs35/secguide/index.htm
>
2. Read the Security chapter of the Servlet 2.2 spec, found athttp://java.sun.com/products/servlet/index.html
>
>
Realize that the 3.2 portal's implementation of the security mechanismpredated
the standard J2EE declarative security model. The 3.5 release of portalreimplemented
security to adhere to the standard. So the missing attributes is aside-effect
of this change.
In 3.2, the portal was responsible for doing its own user authentication.Therefore
the username and password was available to the portal code. In 3.5, theservlet
container (WLS) performs the authentication on behalf of the portal. Asyou see
in the Servlet spec, the methods available to a servlet afterauthentication allow
you to get the username via request.getUserPrincipal(). But there is nostandard
way to get the password. So if you require the password to propagate theidentity
to another application, you are out of luck.
All is not lost though. I can think of three avenues for you.
1. Reread section 11.6 of the Servlet 2.2 spec. It declares that thecontainer
must maintain authentication at the container-scope, and not the web-appscope.
Know that the portal is deployed as a webapp. If your secondaryapplication can
be deployed as a J2EE web-app on the same server, authentication can bemaintained
across web-apps.
2. If you cannot deploy your app as a web-app, there is still anotheroption.
WLS supports an "Authentication Filter" which is invoked both immediatelyprior
and immediately after the j_security_check authentication mechanism. Thisallows
you to provide a callback which accepts the HttpRequest. Therefore, youshould
be able to stash the j_password into the Session before WLS clears it outof the
Request. I don't have time to try this today, but if you do please postyour results!
Read here for more info on the AuthFilterhttp://e-docs.bea.com/wls/docs60//javadocs/weblogic/servlet/security/AuthFil
ter.html
>
>
3. If the above options don't work for you, you may wish to implement acustom
WLS security realm which will provide passwords for users upon request.
Post back to the newsgroup with your thoughts/results.
PJL
"Shane Daniels" <[email protected]> wrote:
I am upgrading my current prototype using WLCS3.2 to 3.5. I use the
exampleportal demo and plug in a few JSP's from my web application.
In 3.2, after you enter your login information the request object that
all
portlets have access to contains 3 parameters: loginAction, username
and
password. I use this information in order to log into my application
which
allows me to have a single signon.
In 3.5, things have changed and the only parameter that I have access
to
through the request object is 'dest' which has the path to
/something/loginSuccess.jsp. How do I now get access to login
information
from the portal similar to what was available to me in 3.2?
thank you
shane
Similar Messages
-
1142 Kept on Downloading Image from WLC CT2504
Dear All,
i'm a newbie of cisco wireless product, this my first time use.
on the WLC i've set DHCP address pool, everything seems fine after ap download image -> reboot -> hit "Enter" to start blar blar blar... however, after a few second the WLC will initial upgrade image again and again. it's like a non-stop process.
can anyone advise me where to start? attached is the start up message, as you can see, i captured it after the ap successfully boot up, and WLC initial another cycle of image upgrade.
btw, my network is flat, WLC & AP all in the same network.
Thanks & Regards
Eric
*Nov 3 06:28:30.788: %CAPWAP-5-CHANGED: CAPWAP changed state to JOIN
examining image...!
extracting info (292 bytes)
Image info:
Version Suffix: k9w8-.124-23c.JA3
Image Name: c1140-k9w8-mx.124-23c.JA3
Version Directory: c1140-k9w8-mx.124-23c.JA3
Ios Image Size: 4905472
Total Image Size: 5100032
Image Feature: WIRELESS LAN|LWAPP
Image Family: C1140
Wireless Switch Management Version: 7.0.220.0
Extracting files...
c1140-k9w8-mx.124-23c.JA3/ (directory) 0 (bytes)
c1140-k9w8-mx.124-23c.JA3/html/ (directory) 0 (bytes)
c1140-k9w8-mx.124-23c.JA3/html/level/ (directory) 0 (bytes)
c1140-k9w8-mx.124-23
*Nov 3 06:28:35.788: %CAPWAP-5-SENDJOIN: sending Join Request to 192.168.1.88perform archive download capwap:/c1140 tar file
*Nov 3 06:28:35.803: %CAPWAP-5-AP_IMG_DWNLD: Required image not found on AP. Downloading image from Controller.
*Nov 3 06:28:35.809: %CAPWAP-5-CHANGED: CAPWAP changed state to IMAGEc.JA3/html/level/1/ (directory) 0 (bytes)
extracting c1140-k9w8-mx.124-23c.JA3/html/level/1/forms.js (17486 bytes)!
extracting c1140-k9w8-mx.124-23c.JA3/html/level/1/sitewide.js (16548 bytes)!
extracting c1140-k9w8-mx.124-23c.JA3/html/level/1/officeExtendap.css (41795 bytes)!!!
*Nov 3 06:28:35.809: Loading file /c1140...
extracting c1140-k9w8-mx.124-23c.JA3/c1140-k9w8-mx.124-23c.JA3 (4721403 bytes)!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
extracting c1140-k9w8-mx.124-23c.JA3/info (292 bytes)
extracting info.ver (292 bytes)!
Deleting target version: flash:/c1140-k9w8-mx.124-23c.JA3...done.
New software image installed in flash:/c1140-k9w8-mx.124-23c.JA3
Configuring system to use new image...done.
archive download: takes 107 seconds
Writing out the event log to nvram...
*Nov 3 06:30:22.083: %DTLS-3-BAD_RECORD: Erroneous record received from 192.168.1.88: Duplicate (replayed) record
*Nov 3 06:30:22.987: image upgrade successfully, system is now reloading
*Nov 3 06:30:23.043: %SYS-5-RELOAD: Reload requested by capwap image download proc. Reload Reason: NEW IMAGE DOWNLOAD.
*Nov 3 06:30:23.046: %LWAPP-5-CHANGED: CAPWAP changed state to DOWN
using eeprom values
WRDTR,CLKTR: 0x83000800 0x40000000
RQDC ,RFDC : 0x80000034 0x00000207
using ÿÿÿÿ ddr static values from serial eeprom
ddr init done
Running Normal Memtest...
Passed.
IOS Bootloader - Starting system.
FLASH CHIP: Numonyx P33
Checking for Over Erased blocks
Xmodem file system is available.
DDR values used from system serial eeprom.
WRDTR,CLKTR: 0x83000800, 0x40000000
RQDC, RFDC : 0x80000034, 0x00000207
PCIE0: link is up.
PCIE0: VC0 is active
PCIE1: link is up.
PCIE1: VC0 is active
PCIEx: initialization done
extracting c1140-k9w8-mx.124-23c.JA3/html/level/1/appsui.js (557 bytes)
extracting c1140-k9w8-mx.124-23c.JA3/html/level/1/config.js (24633 bytes)!!
extracting c1140-k9w8-mx.124-23c.JA3/html/level/1/ap_home.shtml.gz (1300 bytes)
extracting c1140-k9w8-mx.124-23c.JA3/html/level/1/back.shtml (506 bytes)
c1140-k9w8-mx.124-23c.JA3/html/level/1/images/ (directory) 0 (bytes)
extracting c1140-k9w8-mx.124-23c.JA3/html/level/1/images/cisco-logo-2007.gif (1648 bytes)
extracting c1140-k9w8-mx.124-23c.JA3/html/level/1/images/background_web41.jpg (732 bytes)
extracting c1140-k9w8-mx.124-23c.JA3/html/level/1/images/login_homeap.gif (19671 bytes)!!
extracting c1140-k9w8-mx.124-23c.JA3/html/level/1/images/info.gif (399 bytes)
c1140-k9w8-mx.124-23c.JA3/html/level/15/ (directory) 0 (bytes)
extracting c1140-k9w8-mx.124-23c.JA3/html/level/15/officeExtendapBanner.htm (7108 bytes)!
extracting c1140-k9w8-mx.124-23c.JA3/html/level/15/officeExtendapHelp.htm (5007 bytes)
extracting c1140-k9w8-mx.124-23c.JA3/html/level/15/officeExtendapEvent.shtml.gz (983 bytes)
extracting c1140-k9w8-mx.124-23c.JA3/html/level/15/officeExtendapConfig.shtml.gz (2861 bytes)
extracting c1140-k9w8-mx.124-23c.JA3/html/level/15/officeExtendapMain.shtml.gz (3361 bytes)!
extracting c1140-k9w8-mx.124-23c.JA3/html/level/15/officeExtendapSummary.htm (712 bytes)
extracting c1140-k9w8-mx.124-23c.JA3/T2.bin (8080 bytes)
extracting c1140-k9w8-mx.124-23c.JA3/8001.img (174880 bytes)!!!!!!!!!!!!!!
extracting c1140-k9w8-mx.124-23c.JA3/T5.bin (23836 bytes)
extracting c1140-k9w8-mx.124-23c.JA3/info (292 bytes)
extracting info.ver (292 bytes)!
Deleting target version: flash:/c1140-k9w8-mx.124-23c.JA3...done.
New software image installed in flash:/c1140-k9w8-mx.124-23c.JA3
Configuring system to use new image...done.
archive download: takes 107 seconds
PCIE0: link is up.
PCIE0: VC0 is active
PCIE1: link is up.
PCIE1: VC0 is active
PCIEx: initialization done
flashfs[0]: 28 files, 8 directories
flashfs[0]: 0 orphaned files, 0 orphaned directories
flashfs[0]: Total bytes: 32385024
flashfs[0]: Bytes used: 7451136
flashfs[0]: Bytes available: 24933888
flashfs[0]: flashfs fsck took 21 seconds.
Reading cookie from system serial eeprom...Done
Base Ethernet MAC address: 60:73:5c:31:b0:dc
Ethernet speed is 100 Mb - FULL duplex
Loading "flash:/c1140-k9w8-mx.124-23c.JA3/c1140-k9w8-mx.124-23c.JA3"...############################################################################################################################################################################################################################################################################################################################################################################################################################################################
File "flash:/c1140-k9w8-mx.124-23c.JA3/c1140-k9w8-mx.124-23c.JA3" uncompressed and installed, entry point: 0x4000
executing...
enet halted
Restricted Rights Legend
Use, duplication, or disclosure by the Government is
subject to restrictions as set forth in subparagraph
(c) of the Commercial Computer Software - Restricted
Rights clause at FAR sec. 52.227-19 and subparagraph
(c) (1) (ii) of the Rights in Technical Data and Computer
Software clause at DFARS sec. 252.227-7013.
cisco Systems, Inc.
170 West Tasman Drive
San Jose, California 95134-1706
Cisco IOS Software, C1140 Software (C1140-K9W8-M), Version 12.4(23c)JA3, RELEASE SOFTWARE (fc1)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2011 by Cisco Systems, Inc.
Compiled Tue 18-Oct-11 14:52 by prod_rel_team
Proceeding with system init
Proceeding to unmask interrupts
Initializing flashfs...
FLASH CHIP: Numonyx P33
Checking for Over Erased blocks
flashfs[1]: 28 files, 8 directories
flashfs[1]: 0 orphaned files, 0 orphaned directories
flashfs[1]: Total bytes: 32126976
flashfs[1]: Bytes used: 7451136
flashfs[1]: Bytes available: 24675840
flashfs[1]: flashfs fsck took 5 seconds.
flashfs[1]: Initialization complete.
flashfs[2]: 0 files, 1 directories
flashfs[2]: 0 orphaned files, 0 orphaned directories
flashfs[2]: Total bytes: 11999232
flashfs[2]: Bytes used: 1024
flashfs[2]: Bytes available: 11998208
flashfs[2]: flashfs fsck took 1 seconds.
flashfs[2]: Initialization complete....done Initializing flashfs.
Ethernet speed is 100 Mb - FULL duplex
Radio0 present 8363 8000 90020000 0 90030000 B
Radio1 present 8363 8000 98020000 0 98030000 0
This product contains cryptographic features and is subject to United
States and local country laws governing import, export, transfer and
use. Delivery of Cisco cryptographic products does not imply
third-party authority to import, export, distribute or use encryption.
Importers, exporters, distributors and users are responsible for
compliance with U.S. and local country laws. By using this product you
agree to comply with applicable laws and regulations. If you are unable
to comply with U.S. and local laws, return this product immediately.
A summary of U.S. laws governing Cisco cryptographic products may be found at:
http://www.cisco.com/wwl/export/crypto/tool/stqrg.html
If you require further assistance please contact us by sending email to
[email protected].
cisco AIR-LAP1142N-C-K9 (PowerPC405ex) processor (revision A0) with 98294K/32768K bytes of memory.
Processor board ID FGL1632S622
PowerPC405ex CPU at 586Mhz, revision number 0x147E
Last reset from reload
LWAPP image version 7.0.220.0
1 Gigabit Ethernet interface
2 802.11 Radio(s)
32K bytes of flash-simulated non-volatile configuration memory.
Base ethernet MAC Address: 60:73:5C:31:B0:DC
Part Number : 73-12836-05
PCA Assembly Number : 800-33767-05
PCA Revision Number : A0
PCB Serial Number : FOC16301SFC
Top Assembly Part Number : 800-33775-04
Top Assembly Serial Number : FGL1632S622
Top Revision Number : A0
Product/Model Number : AIR-LAP1142N-C-K9
% Please define a domain-name first.
Translating "CISCO-CAPWAP-CONTROLLER"...domain server (255.255.255.255)
Press RETURN to get started!
*Mar 1 00:00:07.703: %SOAP_FIPS-2-SELF_TEST_IOS_SUCCESS: IOS crypto FIPS self test passed
*Mar 1 00:00:07.714: *** CRASH_LOG = YES
Security Core found.
Base Ethernet MAC address: 60:73:5C:31:B0:DC
*Mar 1 00:00:09.283: %SOAP_FIPS-2-SELF_TEST_RAD_SUCCESS: RADIO crypto FIPS self test passed on interface Dot11Radio 0
*Mar 1 00:00:09.855: %SOAP_FIPS-2-SELF_TEST_RAD_SUCCESS: RADIO crypto FIPS self test passed on interface Dot11Radio 1
*Mar 1 00:00:09.903: %LWAPP-3-CLIENTEVENTLOG: Read and initialized AP event log (contains, 1024 messages)
*Mar 1 00:00:09.926: status of voice_diag_test from WLC is false
*Mar 1 00:00:10.970: %LINK-3-UPDOWN: Interface GigabitEthernet0, changed state to up
*Mar 1 00:00:12.046: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0, changed state to up
*Mar 1 00:00:12.084: %SYS-5-RESTART: System restarted --
Cisco IOS Software, C1140 Software (C1140-K9W8-M), Version 12.4(23c)JA3, RELEASE SOFTWARE (fc1)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2011 by Cisco Systems, Inc.
Compiled Tue 18-Oct-11 14:52 by prod_rel_team
*Mar 1 00:00:12.085: %SNMP-5-COLDSTART: SNMP agent on host AP6073.5c31.b0dc is undergoing a cold start
*Mar 1 00:10:23.055: %LINK-5-CHANGED: Interface Dot11Radio1, changed state to reset
*Mar 1 00:10:23.055: %LINK-5-CHANGED: Interface Dot11Radio0, changed state to reset
*Mar 1 00:10:24.055: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio1, changed state to down
*Mar 1 00:10:24.055: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to down
*Mar 1 00:10:32.053: %CAPWAP-5-CHANGED: CAPWAP changed state to DISCOVERY
*Mar 1 00:10:33.293: %SSH-5-ENABLED: SSH 2.0 has been enabled
*Mar 1 00:10:41.916: status of voice_diag_test from WLC is false
*Mar 1 00:10:41.973: Logging LWAPP message to 255.255.255.255.Dear Leolaohoo, i've performed the command, after reboot it'll join the controller and then the downloading process keep on repeating again. here's the output after i perform the command.
AP6073.5c31.b0dc#de
AP6073.5c31.b0dc#del
AP6073.5c31.b0dc#delete /f /r fl
AP6073.5c31.b0dc#delete /f /r flash:/c1
AP6073.5c31.b0dc#delete /f /r flash:/c1140-k
AP6073.5c31.b0dc#delete /f /r flash:/c1140-k9w8-mx.124-23c.JA3
AP6073.5c31.b0dc#clear capwap pri
AP6073.5c31.b0dc#clear capwap private?
private-config
AP6073.5c31.b0dc#clear capwap private
AP6073.5c31.b0dc#clear capwap private-config
AP6073.5c31.b0dc#reload
Proceed with reload? [confirm]
Writing out the event log to nvram...
*Mar 1 00:12:29.460: %SYS-5-RELOAD: Reload requested by Cisco on console. Reload Reason: Reload Command.
*Mar 1 00:12:29.463: %LWAPP-5-CHANGED: CAPWAP changed state to DOWN
using eeprom values
WRDTR,CLKTR: 0x83000800 0x40000000
RQDC ,RFDC : 0x80000034 0x00000207
using ÿÿÿÿ ddr static values from serial eeprom
ddr init done
Running Normal Memtest...
Passed.
IOS Bootloader - Starting system.
FLASH CHIP: Numonyx P33
Checking for Over Erased blocks
Xmodem file system is available.
DDR values used from system serial eeprom.
WRDTR,CLKTR: 0x83000800, 0x40000000
RQDC, RFDC : 0x80000034, 0x00000207
PCIE0: link is up.
PCIE0: VC0 is active
PCIE1: link is up.
PCIE1: VC0 is active
PCIEx: initialization done
flashfs[0]: 6 files, 2 directories
flashfs[0]: 0 orphaned files, 0 orphaned directories
flashfs[0]: Total bytes: 32385024
flashfs[0]: Bytes used: 2365440
flashfs[0]: Bytes available: 30019584
flashfs[0]: flashfs fsck took 19 seconds.
Reading cookie from system serial eeprom...Done
Base Ethernet MAC address: 60:73:5c:31:b0:dc
Ethernet speed is 100 Mb - FULL duplex
Loading "flash:/c1140-k9w8-mx.124-23c.JA3/c1140-k9w8-mx.124-23c.JA3"...flash:/c1140-k9w8-mx.124-23c.JA3/c1140-k9w8-mx.124-23c.JA3: no such file or directory
Error loading "flash:/c1140-k9w8-mx.124-23c.JA3/c1140-k9w8-mx.124-23c.JA3"
Interrupt within 5 seconds to abort boot process.
Loading "flash:/c1140-rcvk9w8-mx/c1140-rcvk9w8-mx"...#######################################################################################################################################################################################################################
File "flash:/c1140-rcvk9w8-mx/c1140-rcvk9w8-mx" uncompressed and installed, entry point: 0x4000
executing...
enet halted
Restricted Rights Legend
Use, duplication, or disclosure by the Government is
subject to restrictions as set forth in subparagraph
(c) of the Commercial Computer Software - Restricted
Rights clause at FAR sec. 52.227-19 and subparagraph
(c) (1) (ii) of the Rights in Technical Data and Computer
Software clause at DFARS sec. 252.227-7013.
cisco Systems, Inc.
170 West Tasman Drive
San Jose, California 95134-1706
Cisco IOS Software, C1140 Software (C1140-RCVK9W8-M), Version 12.4(21a)JA, RELEASE SOFTWARE (fc1)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2009 by Cisco Systems, Inc.
Compiled Mon 08-Jun-09 16:28 by prod_rel_team
Proceeding with system init
Proceeding to unmask interrupts
Initializing flashfs...
flashfs[1]: 6 files, 2 directories
flashfs[1]: 0 orphaned files, 0 orphaned directories
flashfs[1]: Total bytes: 32385024
flashfs[1]: Bytes used: 2365440
flashfs[1]: Bytes available: 30019584
flashfs[1]: flashfs fsck took 4 seconds.
flashfs[1]: Initialization complete....done Initializing flashfs.
Ethernet speed is 100 Mb - FULL duplex
This product contains cryptographic features and is subject to United
States and local country laws governing import, export, transfer and
use. Delivery of Cisco cryptographic products does not imply
third-party authority to import, export, distribute or use encryption.
Importers, exporters, distributors and users are responsible for
compliance with U.S. and local country laws. By using this product you
agree to comply with applicable laws and regulations. If you are unable
to comply with U.S. and local laws, return this product immediately.
A summary of U.S. laws governing Cisco cryptographic products may be found at:
http://www.cisco.com/wwl/export/crypto/tool/stqrg.html
If you require further assistance please contact us by sending email to
[email protected].
cisco AIR-LAP1142N-C-K9 (PowerPC405ex) processor (revision A0) with 98294K/32768K bytes of memory.
Processor board ID FGL1632S622
PowerPC405ex CPU at 586Mhz, revision number 0x147E
Last reset from reload
LWAPP image version 3.0.51.0
1 Gigabit Ethernet interface
32K bytes of flash-simulated non-volatile configuration memory.
Base ethernet MAC Address: 60:73:5C:31:B0:DC
Part Number : 73-12836-05
PCA Assembly Number : 800-33767-05
PCA Revision Number : A0
PCB Serial Number : FOC16301SFC
Top Assembly Part Number : 800-33775-04
Top Assembly Serial Number : FGL1632S622
Top Revision Number : A0
Product/Model Number : AIR-LAP1142N-C-K9
% Please define a domain-name first.
Translating "CISCO-LWAPP-CONTROLLER"...domain server (255.255.255.255)
Press RETURN to get started!
*Mar 1 00:00:05.915: *** CRASH_LOG = YES
Base Ethernet MAC address: 60:73:5C:31:B0:DC
*Mar 1 00:00:06.121: %LWAPP-3-CLIENTEVENTLOG: Read and initialized AP event log (contains, 1024 messages)
*Mar 1 00:00:08.167: %LINK-3-UPDOWN: Interface GigabitEthernet0, changed state to up
*Mar 1 00:00:08.184: %SYS-5-RESTART: System restarted --
Cisco IOS Software, C1140 Software (C1140-RCVK9W8-M), Version 12.4(21a)JA, RELEASE SOFTWARE (fc1)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2009 by Cisco Systems, Inc.
Compiled Mon 08-Jun-09 16:28 by prod_rel_team
*Mar 1 00:10:23.981: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0, changed state to up
Translating "CISCO-CAPWAP-CONTROLLER"...domain server (255.255.255.255)
*Mar 1 00:10:32.016: %CAPWAP-3-ERRORLOG: Could Not resolve CISCO-LWAPP-CONTROLLER
Translating "CISCO-LWAPP-CONTROLLER"...domain server (255.255.255.255)
*Mar 1 00:10:41.016: %CAPWAP-3-ERRORLOG: Could Not resolve CISCO-CAPWAP-CONTROLLER
*Mar 1 00:10:41.017: %CAPWAP-5-CHANGED: CAPWAP changed state to DISCOVERY
Translating "CISCO-CAPWAP-CONTROLLER"...domain server (255.255.255.255)
*Mar 1 00:10:50.964: %CAPWAP-3-ERRORLOG: Could Not resolve CISCO-LWAPP-CONTROLLER
*Mar 1 00:10:54.600: %CDP_PD-2-POWER_LOW: All radios disabled - NEGOTIATED WS-C2960-24PC-L (34bd.c8f6.5681)
*Mar 1 00:10:59.964: %CAPWAP-3-ERRORLOG: Could Not resolve CISCO-CAPWAP-CONTROLLER
Translating "CISCO-LWAPP-CONTROLLER"...domain server (255.255.255.255)
Translating "CISCO-CAPWAP-CONTROLLER"...domain server (255.255.255.255)
*Mar 1 00:11:18.965: %CAPWAP-3-ERRORLOG: Could Not resolve CISCO-LWAPP-CONTROLLER -
How to remove AP object from WLC 8500 ? I had dismantle one AP so it is now no longer associated with WLC, I want to remove AP info from WLC. But unable to find any command for the same.
Hi Scott,
Thanks for your answer.. But it's not fulfill my question. I want to remove some of AP entries which is not currently associated with WLC.
Below are steps which I understood when new AP joins to controller in my case.
1) We are configuring AP with static IP and capwap protocol thru console login of AP.
2) We are connecting AP to WLC thru netwok.
3) When A joins to controller, It will be visible at Monitor section > Access Point Summary
4) It will start from AP.macaddress
5) Now remotely we are applying AP name, HIgh availability and assign to appropriate AP group.
Now My query is when AP joins to controller, somewhere there should be entry in database that this mac address of AP is joined to controller along with AP configuration.
I want to delete some of AP databases which are disassociates from controller due to media failure between AP and WLC/AP no longer available.
Is there any command to remove AP entries from Controller ? or any other procedure ?
Devang -
Access point associated and deassociated from WLC
HI,
i have 3 AP AIR-LAP1042N-E-K9 in the same place (Event at down town) but they Sometimes the APs even disassociate from the controller temporarily, and i see the below errors on Prime infrastructure 2.0
Load threshold violation reported by 802.11b/g/n interface of AP <apname>, connected to controller <controllerIP>
Interference threshold violation reported by '802.11b/g/n' interface of AP
Coveraged threshold violation reported by 802.11b/g/n interface of AP <apname>, connected to controller <controllerIP>
what these problems and how to solve it
Thanks,
AhmedAfter these error done i see that error 802.11b/g/n interface of AP is down :controller.
please as example up time is 4:00 hours and join time changed every time may be once 12 m:15 sec, may be in another time 1h:15 m:20s
please feed me back these problem related to number of connected client because i monitor when the client exceed on AP more than 25 the AP deassociated from WLC. kindly find loggs from AP. wait your feed back.
*Mar 1 00:00:11.913: %SOAP_FIPS-2-SELF_TEST_IOS_SUCCESS: IOS crypto FIPS self test passed
*Mar 1 00:00:11.916: *** CRASH_LOG = YES
Security Core found.
Base Ethernet MAC address: 6C:20:56:48:E7:59
*Mar 1 00:00:13.876: %SOAP_FIPS-2-SELF_TEST_RAD_SUCCESS: RADIO crypto FIPS self test passed on interface Dot11Radio 0
*Mar 1 00:00:14.758: %SOAP_FIPS-2-SELF_TEST_RAD_SUCCESS: RADIO crypto FIPS self test passed on interface Dot11Radio 1
*Mar 1 00:00:14.761: %LINK-6-UPDOWN: Interface GigabitEthernet0, changed state to up
*Mar 1 00:00:15.891: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0, changed state to up
*Mar 1 00:00:18.795: %SYS-5-RESTART: System restarted --
Cisco IOS Software, C1040 Software (C1140-K9W8-M), Version 15.2(2)JB, RELEASE SOFTWARE (fc1)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2012 by Cisco Systems, Inc.
Compiled Tue 11-Dec-12 04:03 by prod_rel_team
*Mar 1 00:00:18.796: %SNMP-5-COLDSTART: SNMP agent on host 90013-03 is undergoing a cold start
*Mar 1 00:00:18.868: %LINK-5-CHANGED: Interface Dot11Radio0, changed state to reset
*Mar 1 00:00:18.868: %LINK-5-CHANGED: Interface Dot11Radio1, changed state to reset
*Mar 1 00:00:19.865: %LINEPROTO-5-UPDOWN: Line protocol on Interface BVI1, changed state to up
*Mar 1 00:00:20.214: %SSH-5-ENABLED: SSH 2.0 has been enabledlwapp_crypto_init: MIC Present and Parsed Successfully
*Mar 1 00:00:46.958: Logging LWAPP message to 255.255.255.255.
*Mar 1 00:00:50.510: %CDP_PD-4-POWER_OK: Full power - NEGOTIATED inline power source
*Mar 1 00:00:51.533: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to up
*Mar 1 00:00:52.335: %DHCP-6-ADDRESS_ASSIGN: Interface BVI1 assigned DHCP address 10.35.49.35, mask 255.255.255.248, hostname 90013-03
*Mar 1 00:00:52.533: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to up
*Mar 1 00:00:52.559: %LINK-6-UPDOWN: Interface Dot11Radio1, changed state to up
*Mar 1 00:00:53.559: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio1, changed state to up
*Mar 1 00:01:03.221: %CAPWAP-3-ERRORLOG: Did not get log server settings from DHCP.
*Mar 1 00:01:13.236: %CAPWAP-3-ERRORLOG: Selected MWAR 'RMS-WLC1'(index 0).
*Mar 1 00:01:13.236: %CAPWAP-3-ERRORLOG: Go join a capwap controller
*Dec 9 09:54:50.000: %CAPWAP-5-DTLSREQSEND: DTLS connection request sent peer_ip: 10.94.70.2 peer_port: 5246
*Dec 9 09:54:50.919: %CAPWAP-5-DTLSREQSUCC: DTLS connection created sucessfully peer_ip: 10.94.70.2 peer_port: 5246
*Dec 9 09:54:50.920: %CAPWAP-5-SENDJOIN: sending Join Request to 10.94.70.2
*Dec 9 09:54:50.929: %CAPWAP-3-ERRORLOG: Invalid event 10 & state 5 combination.
*Dec 9 09:54:50.929: %CAPWAP-3-ERRORLOG: CAPWAP SM handler: Failed to process message type 10 state 5.
*Dec 9 09:54:50.929: %CAPWAP-3-ERRORLOG: Failed to handle capwap control message from controller
*Dec 9 09:54:50.930: %CAPWAP-3-ERRORLOG: Failed to process encrypted capwap packet from 10.94.70.2
*Dec 9 09:54:51.300: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to down
*Dec 9 09:54:51.355: %LINK-5-CHANGED: Interface Dot11Radio0, changed state to reset
*Dec 9 09:54:51.413: %CAPWAP-5-JOINEDCONTROLLER: AP has joined controller RMS-WLC1
*Dec 9 09:54:51.464: ac_first_hop_mac - IP:10.35.49.33 Hop IP:10.35.49.33 IDB:BVI1
*Dec 9 09:54:51.464: Setting AC first hop MAC: e804.62dc.9922
*Dec 9 09:54:51.464: ac_first_hop_mac - IP:10.35.49.33 Hop IP:10.35.49.33 IDB:BVI1
*Dec 9 09:54:51.464: Setting AC first hop MAC: e804.62dc.9922
*Dec 9 09:54:51.465: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to up
*Dec 9 09:54:51.595: %WIDS-6-ENABLED: IDS Signature is loaded and enabled
*Dec 9 09:54:52.300: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to down
*Dec 9 09:54:52.383: %LINK-6-UPDOWN: Interface Dot11Radio1, changed state to down
*Dec 9 09:54:52.388: %LINK-5-CHANGED: Interface Dot11Radio1, changed state to reset
*Dec 9 09:54:52.464: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio1, changed state to down
*Dec 9 09:54:53.377: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to up
*Dec 9 09:54:53.409: %LINK-6-UPDOWN: Interface Dot11Radio1, changed state to up
*Dec 9 09:54:53.416: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to down
*Dec 9 09:54:53.421: %LINK-5-CHANGED: Interface Dot11Radio0, changed state to reset
*Dec 9 09:54:54.409: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio1, changed state to up
*Dec 9 09:54:54.416: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to down
*Dec 9 09:54:54.442: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to up
*Dec 9 09:54:55.443: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to up
*Dec 9 10:26:53.849: %WIDS-4-SIG_ALARM: Attack is detected on Sig:Standard Id:5 Channel:11 Source MAC:905f.2e62.e7a9
*Dec 9 10:32:20.938: %CAPWAP-3-ERRORLOG: Retransmission count for packet exceeded max(CAPWAP_WTP_EVENT_REQUEST
., 2)
*Dec 9 10:32:20.938: %CAPWAP-3-ERRORLOG: GOING BACK TO DISCOVER MODE
*Dec 9 10:32:20.938: %DTLS-5-SEND_ALERT: Send FATAL : Close notify Alert to 10.94.70.2:5246
*Dec 9 10:32:20.994: %WIDS-6-DISABLED: IDS Signature is removed and disabled.
*Dec 9 10:32:20.997: %LWAPP-3-CLIENTERRORLOG: LWAPP LED Init: incorrect led state 255
*Dec 9 10:32:21.038: %LINK-5-CHANGED: Interface Dot11Radio0, changed state to administratively down
*Dec 9 10:32:21.039: %LINK-5-CHANGED: Interface Dot11Radio1, changed state to administratively down
*Dec 9 10:32:21.041: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to up
*Dec 9 10:32:21.113: %LINK-6-UPDOWN: Interface Dot11Radio1, changed state to up
*Dec 9 10:32:19.000: %CAPWAP-5-DTLSREQSEND: DTLS connection request sent peer_ip: 10.94.69.2 peer_port: 5246
*Dec 9 10:32:19.925: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to down
*Dec 9 10:32:19.927: %CAPWAP-5-DTLSREQSUCC: DTLS connection created sucessfully peer_ip: 10.94.69.2 peer_port: 5246
*Dec 9 10:32:19.928: %CAPWAP-5-SENDJOIN: sending Join Request to 10.94.69.2
*Dec 9 10:32:19.939: %CAPWAP-3-ERRORLOG: Invalid event 10 & state 5 combination.
*Dec 9 10:32:19.939: %CAPWAP-3-ERRORLOG: CAPWAP SM handler: Failed to process message type 10 state 5.
*Dec 9 10:32:19.939: %CAPWAP-3-ERRORLOG: Failed to handle capwap control message from controller
*Dec 9 10:32:19.939: %CAPWAP-3-ERRORLOG: Failed to process encrypted capwap packet from 10.94.69.2
*Dec 9 10:32:20.093: %LINK-6-UPDOWN: Interface Dot11Radio1, changed state to down
*Dec 9 10:32:20.098: %LINK-5-CHANGED: Interface Dot11Radio1, changed state to reset
*Dec 9 10:32:20.370: %CAPWAP-5-JOINEDCONTROLLER: AP has joined controller UTO-WLC1
*Dec 9 10:32:20.424: ac_first_hop_mac - IP:10.35.49.33 Hop IP:10.35.49.33 IDB:BVI1
*Dec 9 10:32:20.424: Setting AC first hop MAC: e804.62dc.9922 -
DHCP scope increase and changes in wlc
hi,
i am using wlc 4402 with a mgt ip 172.26.150.x/24 and ap manager ip 172.26.150.x/24, my all ap get the ip address from dhcp . currently in dhcp server 172.26.150.3 to 254 dhcp scope is configured. at mysite some devices are configured like ipad,iphone or galaxy tab with mac binding in dhcp server. now this pool is almost full. i have a policy configured for these devices for mac binding is done in DHCP. to increase pool what are the changes i need to do in wlc. what are the changes i need to do in dhcp server . is policy made for mac binding in dhcp server will get affected by this ?
regards
rajatHi Rajat,
Use a /23 range ip address rather than using 172.26.150.x/24. So at first this change need to be carried out on the L3 device (which will the default gateway of the WLC managment interface). Accordingly the AP managment ip and ap manager ip's subnet mask is going to change from /24 to /23.
Then ensure that on the dhcp server you expand the scope from /24 to /23. This is will not affect the MAC bindings as long as you are using the same ip range with a different subnet mask.
Hope that helps
Regards
Najaf
Please rate when applicable or helpful !!! -
Isync will not login with new mobile me, need to change from .mac
I have been trying to sync but my old .mac user name and password are not working now with mobile me. Shows that login is valid but I get an error message - There was a problem with the sync operation. .Mac login failed. I assume that I need to change the login address from .mac to a mobile me address. Any ideas out there? Apple has nothing on this problem.
Patience. MobileMe is a mess.
When Apple substantially modified .Mac Sync to support extended attributes available with the introduction of Mac OS X 10.5, and simultaneously dropped support for for the most part for Mac OS X 10.3.9, it was three weeks until normal service was restored. And even then, most of the issues individual users had with .Mac sync prior to the transition were still present.
If you value your data, back it up and wait for an announcement from Apple that it works as expected. -
My customer who has one WLC4402,36 AP1130.Some of APs miss from WLC sometimes but I can ping those APs at this time.I can not find any messages from WLC(version 4.2.61).Any suggestions?
That's all well and good if the controller can be pinged. What is usually the case here is that there is no route to the management interface of the controller or the ap manager interface as well. Check to see if there are IP address conflicts with those two interfaces. Next, make sure that you have not exceeded the total number of APs per physical interface. If you have add a LAG group or a second ap management interface. Verify security certificates are on the APs and that the date and time on the controller is accurate. Lastly, make sure you have no PoE issues or CDP. You're beating a dea horse here guys.
-
I would change the language displayed in the login window from u.s. to german
I would change the language displayed in the login window from u.s. to german in Lion (Mac OS X 10.7.2).
I use
sudo "/System/Library/CoreServises/Language Chooser.app/Contens/MacOS/Language Chooser"
Then I enter my admin password and choose german. It doesn't work
Then I use
sudo languagesetup
Then I enter my admin password and type 4 for german. It doesn't work
Still I habe the language u.s. at the login windows.
In the terminal appears following message:
System Language set to: German
2012-01-06 16:18:43.401 languagesetup[311:707] Warning: NSBundle NSBundle </System/Library/CoreServices/Language Chooser.app> (not yet loaded) was released too many times. For compatibility, it will not be deallocated, but this may change in the future. Set a breakpoint on __NSBundleOverreleased() to debug
What shell I do? Can you help me??I found the solution!
One of the User in my MacBookPro was saved with an old version of FileVault. I deaktivated this old FileVault and aktivate the new FileVault and the language of the login Windows is sudenly german! -
APs randomly disassociate from WLC ver 4.1.185.0
I have a WLC 4402 with about 45 1010 APs installetion
WLC code version 4.1.185.0 and APs randomly disassociate from WLC - it happens usually one-two times a day
with an errors:
AP's Interface:1(802.11b) Operation State Up: Base Radio MAC:00:0b:85:xx:xx:xx Cause=Unknown
AP's Interface:1(802.11b) Operation State Down: Base Radio MAC:00:0b:85:xx:xx:xx Cause=Max Retrasmission
I've tried the suggested solutions putting a static ARP entry and moving AP's to different VLAN but nothing works unless the AP's physically rebooted.
I think the problem begin just after upgrading to 4.0.217.0
please note when AP's disassociates from WLC its still reachable via ping
Are there any specific requirements for newer versions?
Please adviceLayer 2 mode uses a different non-routable method of AP to WLC connection. By moving to layer 3 you enabled IP on the access points. This is why you were able to reassociate. Layer 2 should only be used when all the APs and the controller are on the same network segment. Bear in mind, Layer 3 is your friend. It will allow latency based applications to work much better and more reliable. Layer 2 is really only used to prepare the APs for some specific configurations that require a quick, clean connection to a controller.
-
How to let AP1262 download from WLC and been managed.
Hi Friends,
Some days ago, I download standard IOS image for 1262 and installed, now this 1262 AP can start up without WLC. but I don't know how to recovery this AP image, and let's startup / download the image from WLC and has been managed...
Is that ONLY remove the existence image ? and it's will be auto find WLC ?
Thanks.Okay... here are the steps:
1. Install an external TFTP tool such as tftpd32 tool from http://tftpd32.jounin.net/
2. Assign IP address in the range 10.0.0.2 - .254 ( Ex : 10.0.0.2) to the tftp server (your laptop or pc).
3. Download the IOS to lwapp image onto the tftp's root directory. Use http://www.cisco.com
The filename that you need to rename will show up when you are consoled into the AP
4. Rename ap3g1-rcvk9w8-tar.124-23c.JA3.tar to ap3g1-rcvk9w8-tar.default
5. Make sure you set the IP address on the BVI interface of the AP if not set. Set it in the 10.0.0.x range. Default is 10.0.0.1.
6. Connect the Ethernet port on AP to your TFTP Server ( Laptop ) DISABLE YOUR FIREWALL
7. Hold the mode button and power off the AP.
8. Power back the AP while continually holding the mode button for 20
seconds. -
How to change from SLIM to KDM?
Hello,
I'm using the MATE desktop, OpenBox as window manager and SLIM for login.
I'm starting to feel tired of not being able to change between various desktops without closing the main one, I mean, with OpenSUSE Ctrl+Alt+F1 to F6 are terminal ttys (it is so with Arch+SLIM too), Ctrl+Alt+F7 to F12 are graphical ttys, you can change between any of them and log in as any user you want without closing the F7 tty, or closing it, or doing whatever you want. This was petty cool in order to kill some broken task that hanged the screen or in order to do whatever.
May I don't know how to do it with SLIM, but anytime I do Crtl+Alt+F9, for example, I just got a blank screen with an hyphen blinking. With OpenSUSE I got a graphical login screen.
More:
I've got installed OpenBox, MATE and enlightenment. It is suppose me to be able to change between them pressing F1, and in fact SLIM changes where says "session: XXXX" between them at the login screen, but whatever I choose SLIM ALWAYS log me in MATE. I've got to change it manually in ~/.xinitrc and logout and login again every time I want to change between sessions. I cannot do it directly at the login screen.
Sometimes after login out and login in several times SLIM hangs and I have to reboot.
I think all these problems comes from slim, and since with OpenSUSE, that use kdm, I had no problem I want to try kdm as login manager, but I haven't seen any guide to do it if you've got a login manager already installed. I've seen it just if it is the first system installatio. And I'm a little scared of breaking my login and spend too much time fixing it.
How can I change from SLIM to KDM without pain?WOW, I had to install kdebase-workspace and it installed as dependency a functional kde system . And... I was able to choose between all the other desktops but MATE, so... kdm and all that it installed with it's already uninstalled
But with kdm I was able to open an enlightenment session in tty 8 without closing kde in tty 7...
ewaller wrote:Install kdm.
Disable the slim service using systemctl
Enable the kdm service using systemctl
No need to uninstall slim. Hang on to it until everything is working
Thank you ewaller, it worked perfectly
Scimmia wrote:Well changing to kdm is as simple as using systemctl to disable slim and enable kdm.That won't get you graphical logins on tty8+, though.
So, how can I do it with slim?
Raynman wrote:Do you really need a GUI to kill a program?
No, I don't, it was just an example.
Sounds like your xinitrc isn't quite right, check the wiki page for slim.
I'm tired of reviewing my xinitrc in order to make slim let me choose my desktop. I think the F1 to change the session is experimental. I will open other thread in order to get some help or in order to help SLIM to solve this problem.
And you could try LightDM instead (because KDM probably pulls in some KDE crap). It comes with dm-tool (and a replacement for gdmflexiserver) to start a new session on another tty.
Sounds good. I'll try to make slim work perfectly and if I don't get it to work as perfectly I want I'll try other login managers. -
Is my screen supposed to change from the screen with the charger and the iTunes circle to my lock screen while it's in recovery mode?
Is Find My Phone turned on, on your phone? If so, eject from iTunes, login to iCloud.com, locate your phone, then erase it.
Does the same thing...removes the passcode. Then, either restore from backup, or setup as a new device. -
How to call custom Login Module from JSP
Hi,
I am stuck with the following issue:
1) Exactly as presented in help.sap.com (http://help.sap.com/saphelp_nw04/helpdata/en/3f/1be040e136742ae10000000a155106/content.htm) I created custom login module and deployed it as a library on J2EE server. When I configured it to be used for my applications in the Security provider but I am getting "No user name provided" exception everytime when my applications use this custom login module.
2) I realized that I would need to call my custom module somewhere within my application (simple JSP) using LoginContext class and then use MyLoginContext.login() spec to initiate login process. But I am not able to pass CallbackHandler parameters from JSP application to my custom login module.
So I have the following questions:
1. Can I pass parameters using LoginContext and CallbackHandler from JSP to my custom login module (created as exact copy of HELP.SAP.COM example) or this module cannot be used this way.
2. How to pass CallbackHandler correctly to my custom login module from JSP. When I am trying to use CallbackHandler, I am getting "Abstract Class cannot be called" error.
I'd appreciate any little help on this matter.
Thanks and regards,
MikeYou have two alternatives to do this:
You can declare your JSP as a protected resource with the use of the deployment descriptors of the application (web.xml) and add the custom login module in the authentication stack of the application. This way, you will use container-based authentication, i.e. the Web Container will enforce the authentication and it will call the custom login module before it dispatches to the JSP. I recommend you this approach because it requires less coding and it makes the whole thing a matter of configuration. The configuration can be later on enhanced or changed runtime without the need to re-build and re-deploy the application. If you choose this approach you can go to the documentation of the server for help on how to modify the login module stack of the application.
You can also use programmatic authentication by using JAAS API. To do this you need to create a custom security policy configuration with login module stack containing the custom login module, and then use the standard JAAS mechanism - new LoginContext(<configuration>, <callback-handler>).login(). This approach requires that you write your own callback handler and handle any LoginException.
Let us know which approach you prefer and whether you have difficulties implementing it! -
GNOME 3.2.1 login promt from the lock screen is ugly.
The lock screen doesn't look nice... have i miss configured something?
What i mean is that i don't get something like the nice login screen from GDM ... but i get a password promt similar to the old style GDM....
Any ideas? is that the expected behaviour?
Thanks!
Juan.It's the expected behaviour, but there is an upstream task to change this: https://live.gnome.org/ThreePointThree/ … ScreenLock
-
New Imac. I get rid off login password from security and accounts and restart. Now it asks for username and password and it's not acepting anything. Any ideas?
First, reset your password as follows.
Boot into Recovery by holding down the key combination command-R at startup. Release the keys when you see a gray screen with a spinning dial.
When the OS X Utilities screen appears, select Utilities ▹ Terminal from the menu bar.
In the Terminal window, type this:
resetpassword
That's one word with no spaces. Then press return. A Reset Password window opens.
Select your boot volume if not already selected.
Select your username from the menu labeled Select the user account if not already selected.
Follow the prompts to reset the password. It's safest to choose a password that includes only the characters a-z, A-Z, and 0-9.
Select ▹ Restart from the menu bar.
You should now be able to log in with the new password, but you won't be able to unlock the Keychain. If you've forgotten the Keychain password (which is ordinarily the same as your login password), there's no way to recover it. You’ll need to reset your keychain in the preferences of the Keychain Access application.
If you're being prompted to authenticate when making changes to files inside your home folder, continue as follows.
Back up all data now.
This procedure will unlock all your user files (not system files) and reset their ownership and access-control lists to the default. If you've set special values for those attributes on any of your files, they will be reverted. In that case, either stop here, or be prepared to recreate the settings if necessary. If none of this is meaningful to you, you don't need to worry about it.
Step 1
Launch the Terminal application in any of the following ways:
☞ Enter the first few letters of its name into a Spotlight search. Select it in the results (it should be at the top.)
☞ In the Finder, select Go ▹ Utilities from the menu bar, or press the key combination shift-command-U. The application is in the folder that opens.
☞ Open LaunchPad. Click Utilities, then Terminal in the icon grid.
Drag or copy — do not type — the following line into the Terminal window, then press return:
sudo chflags -R nouchg,nouappnd ~ $TMPDIR.. ; sudo chown -R $UID:20 ~ $_ ; chmod -R -N ~ $_ 2> /dev/null
Be sure to select the whole line by triple-clicking anywhere in it. You'll be prompted for your login password, which won't be displayed when you type it. You may get a one-time warning not to screw up. You don't need to post the warning. If you don’t have a login password, you’ll need to set one before you can run the command.
The command will take a noticeable amount of time to run. Wait for a new line ending in a dollar sign (“$”) to appear, then quit Terminal.
Step 2
Boot into Recovery by holding down the key combination command-R at startup. Release the keys when you see a gray screen with a spinning dial.
When the OS X Utilities screen appears, select Utilities ▹ Terminal from the menu bar. A text window opens.
In the Terminal window, type this:
resetpassword
That's one word with no spaces. Then press return. A Reset Password window opens. You’re not going to reset a password.
Select your boot volume if not already selected.
Select your username from the menu labeled Select the user account if not already selected.
Under Reset Home Directory Permissions and ACLs, click the Reset button.
Select ▹ Restart from the menu bar.
Maybe you are looking for
-
Where is the location bar item list stored?
Upon typing URLs in the location bar a drop down item list will appear. Is there somewhere in firefox where this list of items is stored? If so, is that in a format I can go through and see each item? Thank you
-
Reporting Agent and Download Scheduler
Hello All, I have an issue with the Reporting Agent and Download scheduler. I am on BW 3.5. I am not familiar with the setup myself (I inherited it), and I would like some basic information. Essentially it was working fine until we added som
-
How to redirect the tomcat to my project folder!
instead of putting all the files inside of the <tomcat>/webapps/<myfolder> I try to move the <myfolder> to another directory. say, /home/<myname>/<myfolder> so that, i can work in my home directory by /<hostname>:<port>/<myfolder> what procedures i s
-
Is there any app that support to send or recieve files from another non-iphone?
is there any app that support to send or recieve files from another non-iphone?
-
Disk Utility assigns incorrect identifier to external drive
Hi, I am running 10.7.5, I backup my notebook to a 500GB drive using Time Machine, after a recent backup my 2TB drive is labled as the 500GB BACKUP drive in disk utility and not mounted under finder. I tried everything. I am unable to unmount the d