Looking for successful auth debug between cisco 1113 acs 4.2 and Active Directory

Hello,
Does anyone have a successful authentication debug using cisco 1113 acs 4.2 and Active Directory?  I'm not having success in setting this up and would like to see what a successful authentication debug looks.  Below is my current situation:
Oct  6 13:52:23: TPLUS: Queuing AAA Authentication request 444 for processing
Oct  6 13:52:23: TPLUS: processing authentication start request id 444
Oct  6 13:52:23: TPLUS: Authentication start packet created for 444()
Oct  6 13:52:23: TPLUS: Using server 110.34.5.143
Oct  6 13:52:23: TPLUS(000001BC)/0/NB_WAIT/46130160: Started 5 sec timeout
Oct  6 13:52:23: TPLUS(000001BC)/0/NB_WAIT: socket event 2
Oct  6 13:52:23: T+: Version 192 (0xC0), type 1, seq 1, encryption 1
Oct  6 13:52:23: T+: session_id 763084134 (0x2D7BBD66), dlen 26 (0x1A)
Oct  6 13:52:23: T+: type:AUTHEN/START, priv_lvl:15 action:LOGIN ascii
Oct  6 13:52:23: T+: svc:LOGIN user_len:0 port_len:6 (0x6) raddr_len:12 (0xC) data_len:0
Oct  6 13:52:23: T+: user: 
Oct  6 13:52:23: T+: port:  tty515
Oct  6 13:52:23: T+: rem_addr:  10.10.10.10
Oct  6 13:52:23: T+: data: 
Oct  6 13:52:23: T+: End Packet
Oct  6 13:52:23: TPLUS(000001BC)/0/NB_WAIT: wrote entire 38 bytes request
Oct  6 13:52:23: TPLUS(000001BC)/0/READ: socket event 1
Oct  6 13:52:23: TPLUS(000001BC)/0/READ: Would block while reading
Oct  6 13:52:23: TPLUS(000001BC)/0/READ: socket event 1
Oct  6 13:52:23: TPLUS(000001BC)/0/READ: read entire 12 header bytes (expect 16bytes data)
Oct  6 13:52:23: TPLUS(000001BC)/0/READ: socket event 1
Oct  6 13:52:23: TPLUS(000001BC)/0/READ: read entire 28 bytes response
Oct  6 13:52:23: T+: Version 192 (0xC0), type 1, seq 2, encryption 1
Oct  6 13:52:23: T+: session_id 763084134 (0x2D7BBD66), dlen 16 (0x10)
Oct  6 13:52:23: T+: AUTHEN/REPLY status:4 flags:0x0 msg_len:10, data_len:0
Oct  6 13:52:23: T+: msg:  Username:
Oct  6 13:52:23: T+: data: 
Oct  6 13:52:23: T+: End Packet
Oct  6 13:52:23: TPLUS(000001BC)/0/46130160: Processing the reply packet
Oct  6 13:52:23: TPLUS: Received authen response status GET_USER (7)
Oct  6 13:52:30: TPLUS: Queuing AAA Authentication request 444 for processing
Oct  6 13:52:30: TPLUS: processing authentication continue request id 444
Oct  6 13:52:30: TPLUS: Authentication continue packet generated for 444
Oct  6 13:52:30: TPLUS(000001BC)/0/WRITE/46130160: Started 5 sec timeout
Oct  6 13:52:30: T+: Version 192 (0xC0), type 1, seq 3, encryption 1
Oct  6 13:52:30: T+: session_id 763084134 (0x2D7BBD66), dlen 15 (0xF)
Oct  6 13:52:30: T+: AUTHEN/CONT msg_len:10 (0xA), data_len:0 (0x0) flags:0x0
Oct  6 13:52:30: T+: User msg: <elided>
Oct  6 13:52:30: T+: User data: 
Oct  6 13:52:30: T+: End Packet
Oct  6 13:52:30: TPLUS(000001BC)/0/WRITE: wrote entire 27 bytes request
Oct  6 13:52:30: TPLUS(000001BC)/0/READ: socket event 1
Oct  6 13:52:30: TPLUS(000001BC)/0/READ: read entire 12 header bytes (expect 16bytes data)
Oct  6 13:52:30: TPLUS(000001BC)/0/READ: socket event 1
Oct  6 13:52:30: TPLUS(000001BC)/0/READ: read entire 28 bytes response
Oct  6 13:52:30: T+: Version 192 (0xC0), type 1, seq 4, encryption 1
Oct  6 13:52:30: T+: session_id 763084134 (0x2D7BBD66), dlen 16 (0x10)
Oct  6 13:52:30: T+: AUTHEN/REPLY status:5 flags:0x1 msg_len:10, data_len:0
Oct  6 13:52:30: T+: msg:  Password:
Oct  6 13:52:30: T+: data: 
Oct  6 13:52:30: T+: End Packet
Oct  6 13:52:30: TPLUS(000001BC)/0/46130160: Processing the reply packet
Oct  6 13:52:30: TPLUS: Received authen response status GET_PASSWORD (8)
Oct  6 13:52:37: TPLUS: Queuing AAA Authentication request 444 for processing
Oct  6 13:52:37: TPLUS: processing authentication continue request id 444
Oct  6 13:52:37: TPLUS: Authentication continue packet generated for 444
Oct  6 13:52:37: TPLUS(000001BC)/0/WRITE/46130160: Started 5 sec timeout
Oct  6 13:52:37: T+: Version 192 (0xC0), type 1, seq 5, encryption 1
Oct  6 13:52:37: T+: session_id 763084134 (0x2D7BBD66), dlen 16 (0x10)
Oct  6 13:52:37: T+: AUTHEN/CONT msg_len:11 (0xB), data_len:0 (0x0) flags:0x0
Oct  6 13:52:37: T+: User msg: <elided>
Oct  6 13:52:37: T+: User data: 
Oct  6 13:52:37: T+: End Packet
Oct  6 13:52:37: TPLUS(000001BC)/0/WRITE: wrote entire 28 bytes request
Oct  6 13:52:37: TPLUS(000001BC)/0/READ: socket event 1
Oct  6 13:52:37: TPLUS(000001BC)/0/READ: read entire 12 header bytes (expect 33bytes data)
Oct  6 13:52:37: TPLUS(000001BC)/0/READ: socket event 1
Oct  6 13:52:37: TPLUS(000001BC)/0/READ: read entire 45 bytes response
Oct  6 13:52:37: T+: Version 192 (0xC0), type 1, seq 6, encryption 1
Oct  6 13:52:37: T+: session_id 763084134 (0x2D7BBD66), dlen 33 (0x21)
Oct  6 13:52:37: T+: AUTHEN/REPLY status:7 flags:0x0 msg_len:27, data_len:0
Oct  6 13:52:37: T+: msg:  Error during authentication
Oct  6 13:52:37: T+: data: 
Oct  6 13:52:37: T+: End Packet
Oct  6 13:52:37: TPLUS(000001BC)/0/46130160: Processing the reply packet
Oct  6 13:52:37: TPLUS: Received Authen status error
Oct  6 13:52:37: TPLUS(000001BC)/0/REQ_WAIT/46130160: timed out
Oct  6 13:52:37: TPLUS(000001BC)/0/REQ_WAIT/46130160: No sock_ctx found while handling request timeout
Oct  6 13:52:37: TPLUS: Choosing next server 101.34.5.143
Oct  6 13:52:37: TPLUS(000001BC)/1/NB_WAIT/46130160: Started 5 sec timeout
Oct  6 13:52:37: TPLUS(000001BC)/46130160: releasing old socket 0
Oct  6 13:52:37: TPLUS(000001BC)/1/46130160: Processing the reply packet
Oct  6 13:52:49: TPLUS: Queuing AAA Authentication request 444 for processing
Oct  6 13:52:49: TPLUS: processing authentication start request id 444
Oct  6 13:52:49: TPLUS: Authentication start packet created for 444()
Oct  6 13:52:49: TPLUS: Using server 172.24.5.143
Oct  6 13:52:49: TPLUS(000001BC)/0/NB_WAIT/46130160: Started 5 sec timeout
Oct  6 13:52:49: TPLUS(000001BC)/0/NB_WAIT: socket event 2
Oct  6 13:52:49: T+: Version 192 (0xC0), type 1, seq 1, encryption 1
Oct  6 13:52:49: T+: session_id 1523308383 (0x5ACBD75F), dlen 26 (0x1A)
Oct  6 13:52:49: T+: type:AUTHEN/START, priv_lvl:15 action:LOGIN ascii
Oct  6 13:52:49: T+: svc:LOGIN user_len:0 port_len:6 (0x6) raddr_len:12 (0xC) data_len:0
Oct  6 13:52:49: T+: user: 
Oct  6 13:52:49: T+: port:  tty515
Oct  6 13:52:49: T+: rem_addr:  10.10.10.10
Oct  6 13:52:49: T+: data: 
Oct  6 13:52:49: T+: End Packet
Oct  6 13:52:49: TPLUS(000001BC)/0/NB_WAIT: wrote entire 38 bytes request
Oct  6 13:52:49: TPLUS(000001BC)/0/READ: socket event 1
Oct  6 13:52:49: TPLUS(000001BC)/0/READ: Would block while reading
Oct  6 13:52:49: TPLUS(000001BC)/0/READ: socket event 1
Oct  6 13:52:49: TPLUS(000001BC)/0/READ: read entire 12 header bytes (expect 43bytes data)
Oct  6 13:52:49: TPLUS(000001BC)/0/READ: socket event 1
Oct  6 13:52:49: TPLUS(000001BC)/0/READ: read entire 55 bytes response
Oct  6 13:52:49: T+: Version 192 (0xC0), type 1, seq 2, encryption 1
Oct  6 13:52:49: T+: session_id 1523308383 (0x5ACBD75F), dlen 43 (0x2B)
Oct  6 13:52:49: T+: AUTHEN/REPLY status:4 flags:0x0 msg_len:37, data_len:0
Oct  6 13:52:49: T+: msg:   0x0A User Access Verification 0x0A  0x0A Username:
Oct  6 13:52:49: T+: data: 
Oct  6 13:52:49: T+: End Packet
Oct  6 13:52:49: TPLUS(000001BC)/0/46130160: Processing the reply packet
Oct  6 13:52:49: TPLUS: Received authen response status GET_USER (7)
The 1113 acs failed reports shows:
External DB is not operational
thanks,
james

Hi James,
We get External DB is not operational. Could you confirm if under External Databases > Unknown User           Policy, and verify you have the AD/ Windows database at the top?
this error means the external server might not correctly configured on ACS external database section.
Another point is to make sure we have remote agent installed on supported windows server.
http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_server_for_solution_engine/4.2/installation/guide/remote_agent/rawi.html#wp289013
Also provide the Auth logs from the server running remote agent, e.g.:-
AUTH 10/25/2007 15:21:31 I 0376 1276 External DB [NTAuthenDLL.dll]:
Attempting Windows authentication for user v-michal
AUTH 10/25/2007 15:21:31 E 0376 1276 External DB [NTAuthenDLL.dll]: Windows
authentication FAILED (error 1783L)
thanks,
Vinay

Similar Messages

  • Reimage cisco 1113 ACS - NIC driver

    HI,
    I tried to re-image a cisco 1113 ACS appliance into windows 2003 and was successful. I suppose to use this for my staging/LAB.My only problem is the NIC cards shows unknown since no appropraite driver was found. Googled for a few days but ends up nothing. Does anybody knows the exact driver? Appreciate anybody's reply.
    Thanks.

    Just for everybody's info.
    I manage to download the NIC driver. It is a Generic Broadcom NetXtreme Gigabit Ethernet.
    Now it is working fine.

  • Integration problem between Cisco Seure ACS 4.2 with LDAP

    Hi expert,
    I have a problem with the integration between Cisco Secure ACS 4.2 with SUN Java System Directory (LDAP). During the integration, I noticed that user failed to authenticate against LDAP via Cisco Secure ACS. The error message is "Authentication Type is not supported by external DB". In this case the "external DB" refer to LDAP. Anyone of you having an experience on integration on both product before? Can any of you give me some pointers about this. Attached are both screen capture on my ACS server.
    Thanks very much,
    Daniel

    Hi,
    Thanks for the compatibility chart. Oh dear ..., it seems that the LDAP does not supports PEAP (EAP-MS CHAPv2) at all. Am not sure if the latest LDAP (particularly for SUN Java System Directory) able to support this authentication protocol.
    Just to clarify with you all just in case if you wonder what I'm trying to do; our company wants to implement 802.1x over the network. So, every staff on the network must authenticated before able to access the network resources. Our Linksys switches supports this standard including Cisco switches of course. Our RADIUS server is Cisco Secure ACS 4.2 but all those users information including username and passwords are stored in our directory server (LDAP) which is SUN Java System Directory.
    Since most of our staff machines are running on XP and Vista, the only available authentication method (beside certificate based) is PEAP (EAP-MSCHAPv2). Based on the compatibility chart, the generic LDAP does not supports this authentication protocol as what we noted the "authentication type not supported by external database" error message in the ACS logs.
    From what I learned that the latest LDAP (version 3.0?) able to support this authentication protocol, but yet to be confirmed on my further research.
    So... Anyone can advice me on this matter? Thanks very much !

  • I work in a High School and I am looking for a new library system that runs on the mac and is not windows based, can anyone recommend anything?

    I work in a High School and I am looking for a new library system that runs on the mac and is not windows based, can anyone recommend anything?

    That's a very broad question and difficult to answer without knowing more about you requirements.
    Try starting on this page Category review: library management software for the Mac |Part I  and part II  to get a starting point.
    regards

  • HI everyone. Im looking for some help. Im getting the Itunes error 50 and No network connection error. I have a perfect connection. My iphone will download and my ipad but nothing from my computer. any help would be great.

    HI everyone. Im looking for some help. Im getting the Itunes error 50 and No network connection error. I have a perfect connection. My iphod will not  download and my ipad  any help would be great.

    A lot of people are experiencing it, which suggests that Apple is having issues. If that is the case all people can do is wait it out.

  • ### How to make integration between UCCX and Active Directory##

    Hello,
    I want to know what is the right procedure to perform a right integration between the UCCX and the Active Directory?
    Waiting Yours Reply,,,,
    Thanks a lot......

    What version?
    Assuming a current version (5.0 and higher): there is NO direct integration between CCX and Active Directory. The CCX server must not be joined to a domain.
    CCX uses UC Manager End Users for synchronized usernames and passwords. If UC Manager is synchronized with an LDAP source, such as Active Directory, then this will carry forward to CCX. CCX would pass authentication requests to CCX through AXL. UCM would perform the LDAP authentication and inform CCX of the success/failure.

  • Difference between Windows NT domain registry and Active Directory registry

    What are the difference(s) ?

    Frank, thanks for your response :)
    I want WebSphere Application Server to take advantage of a directory service. There are multiple options available for a directory service. 
    In my configuration the requirement is to make WebSphere Application server to use Microsoft's Active Directory. 
    While I was going through (WebSphere) documentation, I see following note.
    " With Windows NT domain registry support for Windows 2000 and 2003 domain
    controllers, WebSphere Application Server only supports Global groups that are the Security type. It is recommended that you use the Active Directory registry support rather than a Windows NT domain registry if you use Windows 2000 and 2003 domain controllers
    because the Active Directory supports all group scopes and types. The Active Directory also supports a nested group that is not support by Windows NT domain registry. The Active Directory is a centralized control registry."
    You can find the above note in this link (somewhere after 7th line)
    http://www-01.ibm.com/support/knowledgecenter/SSAW57_7.0.0/com.ibm.websphere.nd.multiplatform.doc/info/ae/ae/csec_localos.html?cp=SSAW57_7.0.0%2F3-11-5-1-0-0
    Does it mean that they are recommending to use Active Directory over Windows NT (which is an older approach) with windows server 2000 or windows server 2003 because Active directory is
    advanced ?
    I was under the impression that, Active Directory was started with Microsoft Windows Server 2003 and Windows NT registry was used till Windows 2000 server.
    After going through above links, 
    Windows NT registry in an old method. However, it is compatible with Windows Server 2000 and Windows server 2003 but it is recommended to use Active directory with Windows Serve 2003 as it is more advanced. And the same is recommended in WebSphere documentation
    (I am aware that support for Windows Server 2000 is over and only extended support is available for Windows Server 2003 however this is to clear doubt). Is my understanding correct ? And does windows server 2000 also support both i.e we can use either Windows
    NT registry or Active directory and similarly, Either of them (Windows NT or Active Directory) could be used with Windows Server 2003 ?
    And if I got it correct, Is Windows NT and Active Directory, both directory service offering from Microsoft? While NT being an old method and Active Directory being a new/advanced approach ?

  • Differences between Cisco Jabber 9.2.6 and Cisco Jabber 9.7.1 for windows 7 PC?

    It could cover the features or technical aspects of Cisco Jabber

    Currently our users are using Cisco Jabber 9.2.6, while we are planning to move to 9.7.1...
    Looking for a simplified way to explain the difference to the users.

  • Looking for a good book or Cisco page

    Hi, I'm looking for info on how to deploy redundant LNS's for VPDN access. Does anyone know of any Cisco Press book, or Cisco page on their website that is really good for info about this?
    I've searched on the Cisco site and haven't found much.
    Thanks!
    LisaG

    Hi Lisa,
    See if this link helps you
    http://www.cisco.yar.ru/literature/Access_VPDN_Solutions_Guide.pdf
    HTH
    Ankur
    *Pls rate all helpfull post

  • Site-to-Site VPN between Cisco ASA 5505 (8.4) and Cisco Router (IOS 15.2)

    Hi, I'm trying to create Site-to-Site VPN between Cisco ASA 5505 and Cisco Router 3945.
    I've tried create configuration with and without ASA wizard, but anyway it doesn't work.
    Please help me to find where is the issue.
    I have two sites and would like to get access from 192.168.83.0 to 192.168.17.0
    192.168.17.0 --- S1.S1.S1.S1 (IOS Router) ==================== S2.S2.S2.S2 (ASA 5505) --- 192.168.83.0
    Here is my current configuration.
    Thanks for your help.
    IOS Configuration
    version 15.2
    crypto isakmp policy 1
    encr aes 256
    authentication pre-share
    group 2
    crypto isakmp key cisco address 198.0.183.225
    crypto isakmp invalid-spi-recovery
    crypto ipsec transform-set AES-SET esp-aes esp-sha-hmac
    mode transport
    crypto map static-map 1 ipsec-isakmp
    set peer S2.S2.S2.S2
    set transform-set AES-SET
    set pfs group2
    match address 100
    interface GigabitEthernet0/0
    ip address S1.S1.S1.S1 255.255.255.240
    ip nat outside
    ip virtual-reassembly in
    duplex auto
    speed auto
    crypto map static-map
    interface GigabitEthernet0/1
    ip address 192.168.17.1 255.255.255.0
    ip nat inside
    ip virtual-reassembly in
    duplex auto
    speed auto
    access-list 100 permit ip 192.168.17.0 0.0.0.255 192.168.83.0 0.0.0.255
    ASA Configuration
    ASA Version 8.4(3)
    interface Ethernet0/0
    switchport access vlan 2
    interface Vlan1
    nameif inside
    security-level 100
    ip address 192.168.83.1 255.255.255.0
    interface Vlan2
    nameif outside
    security-level 0
    ip address S2.S2.S2.S2 255.255.255.248
    ftp mode passive
    same-security-traffic permit intra-interface
    object network inside-network
    subnet 192.168.83.0 255.255.255.0
    object network datacenter
    host S1.S1.S1.S1
    object network datacenter-network
    subnet 192.168.17.0 255.255.255.0
    object network NETWORK_OBJ_192.168.83.0_24
    subnet 192.168.83.0 255.255.255.0
    access-list outside_access_in extended permit icmp any any echo-reply
    access-list outside_access_in extended deny ip any any log
    access-list outside_cryptomap extended permit ip 192.168.83.0 255.255.255.0 object datacenter-network
    pager lines 24
    logging enable
    logging asdm informational
    mtu inside 1500
    mtu outside 1500
    ip local pool vpn_pool 192.168.83.200-192.168.83.254 mask 255.255.255.0
    icmp unreachable rate-limit 1 burst-size 1
    no asdm history enable
    arp timeout 14400
    nat (inside,outside) source dynamic inside-network interface
    nat (inside,outside) source static inside-network inside-network destination static inside-network inside-network no-proxy-arp route-lookup
    nat (inside,outside) source static inside-network inside-network destination static datacenter-network datacenter-network no-proxy-arp route-lookup
    nat (inside,outside) source static NETWORK_OBJ_192.168.83.0_24 NETWORK_OBJ_192.168.83.0_24 destination static datacenter-network pdatacenter-network no-proxy-arp route-lookup
    access-group outside_access_in in interface outside
    route outside 0.0.0.0 0.0.0.0 DEFAULT_GATEWAY 1
    crypto ipsec ikev1 transform-set vpn-transform-set esp-3des esp-sha-hmac
    crypto ipsec ikev1 transform-set vpn-transform-set mode transport
    crypto ipsec ikev1 transform-set L2L_SET esp-aes esp-sha-hmac
    crypto ipsec ikev1 transform-set L2L_SET mode transport
    crypto dynamic-map dyno 10 set ikev1 transform-set vpn-transform-set
    crypto map vpn 1 match address outside_cryptomap
    crypto map vpn 1 set pfs
    crypto map vpn 1 set peer S1.S1.S1.S1
    crypto map vpn 1 set ikev1 transform-set L2L_SET
    crypto map vpn 20 ipsec-isakmp dynamic dyno
    crypto map vpn interface outside
    crypto isakmp nat-traversal 3600
    crypto ikev1 enable outside
    crypto ikev1 policy 10
    authentication pre-share
    encryption 3des
    hash sha
    group 2
    lifetime 86400
    crypto ikev1 policy 20
    authentication pre-share
    encryption aes-256
    hash sha
    group 2
    lifetime 86400
    group-policy GroupPolicy_S1.S1.S1.S1 internal
    group-policy GroupPolicy_S1.S1.S1.S1 attributes
    vpn-tunnel-protocol ikev1
    group-policy remote_vpn_policy internal
    group-policy remote_vpn_policy attributes
    vpn-tunnel-protocol ikev1 l2tp-ipsec
    username artem password 8xs7XK3To4s5WfTvtKAutA== nt-encrypted
    username admin password rqiFSVJFung3fvFZ encrypted privilege 15
    tunnel-group DefaultRAGroup general-attributes
    address-pool vpn_pool
    default-group-policy remote_vpn_policy
    tunnel-group DefaultRAGroup ipsec-attributes
    ikev1 pre-shared-key *****
    tunnel-group DefaultRAGroup ppp-attributes
    authentication ms-chap-v2
    tunnel-group S1.S1.S1.S1 type ipsec-l2l
    tunnel-group S1.S1.S1.S1 general-attributes
    default-group-policy GroupPolicy_S1.S1.S1.S1
    tunnel-group S1.S1.S1.S1 ipsec-attributes
    ikev1 pre-shared-key *****
    class-map inspection_default
    match default-inspection-traffic
    policy-map type inspect dns preset_dns_map
    parameters
      message-length maximum client auto
      message-length maximum 512
    policy-map global_policy
    class inspection_default
      inspect dns preset_dns_map
      inspect ftp
      inspect h323 h225
      inspect h323 ras
      inspect rsh
      inspect rtsp
      inspect esmtp
      inspect sqlnet
      inspect skinny
      inspect sunrpc
      inspect xdmcp
      inspect sip
      inspect netbios
      inspect tftp
      inspect ip-options
      inspect icmp
    service-policy global_policy global
    prompt hostname context
    no call-home reporting anonymous
    Cryptochecksum:f55f10c19a0848edd2466d08744556eb
    : end

    Thanks for helping me again. I really appreciate.
    I don't hve any NAT-exemptions in Cisco IOS Router. Transform-set I will change soon, but I've tried with tunnel mode and it didn't work.
    Maybe NAT-exemptions is the issue. Can you advice me which exemptions should be in Cisco IOS Router?
    Because on Cisco ASA I guess I have everything.
    Here is show crypto session detail
    router(config)#do show crypto session detail
    Crypto session current status
    Code: C - IKE Configuration mode, D - Dead Peer Detection
    K - Keepalives, N - NAT-traversal, T - cTCP encapsulation
    X - IKE Extended Authentication, F - IKE Fragmentation
    Interface: GigabitEthernet0/0
    Session status: DOWN
    Peer: 198.0.183.225 port 500 fvrf: (none) ivrf: (none)
          Desc: (none)
          Phase1_id: (none)
      IPSEC FLOW: permit ip 192.168.17.0/255.255.255.0 192.168.83.0/255.255.255.0
            Active SAs: 0, origin: crypto map
            Inbound:  #pkts dec'ed 0 drop 0 life (KB/Sec) 0/0
            Outbound: #pkts enc'ed 0 drop 0 life (KB/Sec) 0/0
    Should I see something in crypto isakmp sa?
    pp-border#sh crypto isakmp sa
    IPv4 Crypto ISAKMP SA
    dst             src             state          conn-id status
    IPv6 Crypto ISAKMP SA
    Thanks again for your help.

  • Looking for the best access to .mac mail from cell phone and PDA devices

    Currently using Verizon, looking for best cell phone and/or PDA to easily access .mac mail (considering buying the LG VX 9800, does anyone use this phone w/success accessing their .mac email accounts?) Thanks.

    Dear RBP,
    Try posting your question in this forum area.
    The one you're now in is for user feedback on the forums themselves and not for specific product issues. If you post in the ,Mac forum I linked, I'm sure you'll get a quick response.
    Don't worry--we're all learning the new forum navigation.
    A

  • My server keeps telling me that I have an update for 10.10.1 and that I should look for it in the app store. I do that and am not finding anything that makes the update notification go away. I have installed an update the app store says I need.

    I updated to Yosemite on my Mac mini/server. Then my server wouldn't work. I updated and bought the software needed when updating to Yosemite. The server seems to be working. Subsequently I've started getting a notification on the server icon that an update is needed. When i look for details I'm instructed to go to the app store. I've done that. In the updates category no update is found by the app store system. I then went to the purchases category and was informed I needed to install the server software I'd purchased. While I'd installed before, I did it again. I still have the 1 in a red circle covering part of the server icon. I have restarted the mac mini. I can't figure out what step I'm missing. The continued presence of the red circle suggests that the software still isn't installed. Looked into restarting the server in help but don't find clear instructions that make sense. Suggestions from someone who has a mac mini server and has worked with this topic would be greatly appreciated. General comments from anyone who has not looked at this kind of problem before might turn out to be unenlightening for this neophyte.

    I tried turning the computer off and then back on. The alerts don't show the notice to update as resolved. Hopefully this is not a problem or an indicator or another problem. Should I ignore or reload 10.10.1 from the app store to trigger a resolved check in a green circle?
    Interesting that I had to buy server software after my free Yosemite download. I would have hoped that the two pieces of software would have gone together without any complication. It is not positive to end up buying a problem. Ah well, time to move on.

  • Looking for a good usb hub that will allow my mouse and external hard to work together

    I'm looking for some ideas for a good usb hub that will allow me to use a wireless mouse and an external hard drive at the same time, without shorting out the mouse.  The one i currently have, when I plug in just the mouse, it's fine, but as soon as i put the external hard drive into the hub port, the mouse no longer works and i have to reinstall the drivers for the mouse.

    Hubs and computers vary in their power needs, but it seems that your setup is lacking in the power department. This isn't a big deal with desktop computers, but since you use a MBP, you're going to do best with a powered USB hub.
    If you're looking for a USB hub with power supply, Belkin is generally reliable (and above average in price). But the D-Link is compact, reliable, and has a good price. Aim for a USB 3.0 hub if possible, though 2.0 will work fine with just about anything. Insist on a refund if the hub doesn't work in your system. Make sure it's compact, since you'll be carrrying it around.

  • When downloading Adobe Reader, the Firefox instructions say to look for an "edit option" box. It does not appear and I am stuck.

    I am trying to download Adobe Reader for the new Firefox and it says to look for the "edit options" box. I can not find one and am stuck
    == This happened ==
    Just once or twice
    == I tried to download Adobe Reader

    The instructions on the Adobe site for Firefox are out-of-date and only apply to older versions of Firefox. You have the most current version of Adobe Reader (ver. 9.3.2) shown in your plug-ins. For future reference, use the instructions below for updating or installing Adobe Reader. You can see your version in Tools > Add-ons > Plugins, look for "Adobe PDF Plug-In".
    <u>'''Install/Update Adobe Reader for Firefox'''</u>: your ver. 9.3.2; current ver. 9.3.2
    Check your version here: http://www.mozilla.com/en-US/plugincheck/
    See: http://support.mozilla.com/en-US/kb/Using+the+Adobe+Reader+plugin+with+Firefox#Installing_and_updating_Adobe_Reader
    ''<u>You may be able to update from the Adobe Reader installed on your system</u>'' instead of going to the Adobe site and downloading. Start > Program Files, find and click Adobe Reader to open, click Help, click Check for Updates.
    ''<u>If you go to the Adobe site to download the current Adobe Reader:</u>''
    -'''<u>use Firefox to download</u>''' and <u>'''SAVE to your hard drive'''</u> (save to Desktop for easy access)
    -See the images at the bottom left of this post to see the steps to take on the Adobe site
    -exit Firefox (File > Exit)
    -check to see that Firefox is completely closed (''Ctrl+Alt+Del, choose Task Manager, click Processes tab, if "firefox.exe" is on the list, right-click "firefox.exe" and choose End process, close the Task Manager window'')
    -double-click on the Adobe Reader installer you just downloaded to install/update Adobe Reader
    *<u>'''NOTE: On Vista and Windows 7'''</u> you may need to run the plugin installer as Administrator by starting the installer via the right-click context menu if you do not get an UAC prompt to ask for permission to continue (i.e nothing seems to happen). See this: http://vistasupport.mvps.org/run_as_administrator.htm
    *'''<u>NOTE for IE:</u>''' Firefox and most other browsers use a Plugin. IE uses an ActiveX version. To install/update the IE ActiveX version, same instructions as above, except use IE to download the ActiveX installer.
    *Also see: http://kb.mozillazine.org/Adobe_Reader ~~red:'''''AND'''''~~ [[How do I edit options to add Adobe to the list of allowed sites]]
    Firefox_<u>'''''Other Issues'''''</u>: ~~red:You have installed plug-ins with known security issues. You should update them immediately.~~
    <u>'''Update Java'''</u>: your ver. 1.6.0.17; current ver. 1.6.0.20 (<u>important security update 04-15-2010</u>)
    (Firefox 3.6 and above requires Java 1.6.0.10 and above; see: http://support.mozilla.com/en-US/kb/Java-related+issues#Java_does_not_work_in_Firefox_3_6 )
    ''(Windows users: Do the manual update; very easy.)''
    Check your version here: http://www.mozilla.com/en-US/plugincheck/
    See: '''[http://support.mozilla.com/en-US/kb/Using+the+Java+plugin+with+Firefox#Updates Updating Java]'''
    Do the update with Firefox closed.
    <u>'''Install/Update Adobe Flash Player for _</u>: your ver. 10.0 r42; current ver. 10.1 r53 ('''important security update 2010-06-10''')
    Check your version here: http://www.mozilla.com/en-US/plugincheck/
    See: '''[http://support.mozilla.com/en-US/kb/Managing+the+Flash+plugin#Updating_Flash Updating Flash]'''
    -'''<u>use Firefox to download</u>''' and <u>'''SAVE to your hard drive'''</u> (save to Desktop for easy access)
    -exit Firefox (File > Exit)
    -check to see that Firefox is completely closed (''Ctrl+Alt+Del, choose Task Manager, click Processes tab, if "firefox.exe" is on the list, right-click "firefox.exe" and choose End process, close the Task Manager window'')
    -double-click on the Adobe Flash installer you just downloaded to install/update Adobe Flash
    -when the Flash installation is complete, start Firefox, and test the Flash installation here: http://kb.adobe.com/selfservice/viewContent.do?externalId=tn_15507&sliceId=1
    *<u>'''NOTE: On Vista and Windows 7'''</u> you may need to run the plugin installer as Administrator by starting the installer via the right-click context menu if you do not get an UAC prompt to ask for permission to continue (i.e nothing seems to happen). See this: http://vistasupport.mvps.org/run_as_administrator.htm
    *'''<u>NOTE for IE:</u>''' Firefox and most other browsers use a Plugin. IE uses an ActiveX version of Flash. To install/update the IE ActiveX Adobe Flash Player, same instructions as above, except use IE to download the ActiveX Flash installer.
    *Also see: http://kb.mozillazine.org/Flash ~~red:'''''AND__''~~ [[How do I edit options to add Adobe to the list of allowed sites]]

  • Is there a fix for the incompatibility issue between iphone 5c running ios 7 and sentra bluetooth?

    So i can pair my iphone 5c running ios 7 successfully with my 2012 sentra, bluetooth, however when placing and receiving calls, I hear a clicking, constant and unnverving.  My wife's LG Cosmos works without a hitch. I can use it to make calls, etc through my nav system (may have to switch until there is a fix to iphone 5c).  The nissan website indicates that compatible iphones go up to iphone 5.  Anyone know of a fix for ios 7, iphone 5c?  or any other workaround.
    Thanks.

    I ended up getting a new phone, straight through Apple.  I called their technical support and went through all he basics again and they decided to replace it.  Was a pretty quick process - after defaulting and resetting the whole phone (about 2 hours),  I called them back to inform that there was no change, so they set up the order.
    I had to give my CC# so they could hold a charge on it (in case I didn't send my old phone bach, which they sent me a pre-posted package to send it in anyway).  Had a brand new iPhone 4S in my hands in 4 days, which was pretty decent.  I had uploaded everything previously to iCloud, so setting up the new phone was a snap.
    Only thing I really didn't like was they charged me almost 30 bucks for shipping or processing, or something.  Not so sure that should have been my responsibility after spending so much on a brand new product, only to have to have it warrantied after, like, a month.

Maybe you are looking for

  • More storage on iCloud

    The only things I have backing up on iCloud are pictures, calendar, and contacts. I deleted all of my pictures from photostream on my iPhone and I moved all of my pictures from iCloud into another folder on my PC but it's still saying my iCloud does

  • Tables: Changing size of text globally

    Hello all, I am working in Indesign CS2 and I've come across a table that a previous co-worker had created and I need to change the text size in most of the rows in the table. Is there an easy way to do this instead of selecting each cell individuall

  • How to find my recovery key

    Im trying to sync my desktop with a new laptop. Have followed instructions and entered 12 digits where requested having signed up for an account in advance. After adding the 12 digits neither of them shows any sign of syncing. the next page asks for

  • 2012 Domain Prep fails in root domain

    Hi We are tryiing to introduce 2012 DCs into our root domain. The schema has updated fine but the domain prep fails, both on the 2012 server we are trying to promote and whilst running it direct from the infrastructure server itself. Replication is g

  • Kündigung

    Was soll ich noch tun, um ein Photoshop CC - Abo loszuwerden ?