MBAM 2.5 - Websites on Port 81 - SPN Question / Kerberos Issues?

Because I'm installing the websites on a server that also has a ConfigMgr DP and MP, I'm picking a custom port during installation (port 81).  I pre-created the SPN with http/my.server.name:81 but I'm still having issues.
The installer still complains about not being able to create the SPN itself since I'm not installing as a domain administrator.  However, the warnings and log messages all say it is trying to create an SPN without the port number (http:/my.server.name).
Unfortunately, the MBAM clients are not able to check in and show errors with Event ID 2 and 4 the MBAM logs:
An error occurred while applying MBAM policies.
Volume ID:\\?\Volume{7c3de574-d716-11e3-810f-f8b156dde320}\
Error code:
0x803d0005
Details:
Access was denied by the remote endpoint.
And
An error occurred while sending encryption status data.
Error code:
0x803d0005
Details:
Access was denied by the remote endpoint.
I also get a Security-Kerberos error eventID 4 in the System Log:
The Kerberos client received a KRB_AP_ERR_MODIFIED error from the server mbam-apppooluser. The target name used was HTTP/my.server.name. This indicates that the target server failed to decrypt the ticket provided by the client. This can occur when the target server principal name (SPN) is registered on an account other than the account the target service is using. Please ensure that the target SPN is registered on, and only registered on, the account used by the server. This error can also happen when the target service is using a different password for the target service account than what the Kerberos Key Distribution Center (KDC) has for the target service account. Please ensure that the service on the server and the KDC are both updated to use the current password. If the server name is not fully qualified, and the target domain (my.domain) is different from the client domain (my.domain), check if there are identically named server accounts in these two domains, or use the fully-qualified name to identify the server.
The group policies point at my.server.name:81 so I'm wondering why Kerberos is coming back with an error for http/my.server.name.
Was I not supposed to include the port number in the SPN?  Has anyone actually tried MBAM 2.5 on an alternative port?
Thanks for the help,
Nash
Nash Pherson, Senior Systems Consultant
Now Micro -
My Blog Posts
If you've found a bug or want the product worked differently,
share your feedback.
<-- If this post was helpful, please click "Vote as Helpful".

The user is a member of both those groups.  Entering the user credentials does not get into the website anymore.
I've actually moved to a clean server and installed on port 80 to take this SPN issue off the table, and not deal with the websites not working anymore.  The clean server's web sites are accessible after signing in.
Unfortunately, although the test clients no longer show a Kerberos error in the System event logs,
the MBAM client event logs still have the 0x803d0005 error.  I don't see any errors on the MBAM Server operational logs.
The IIS logs show the request to /MBAMRecoveryAndHardwareService/CoreService.svc having a status of 200, but the request to /MBAMComplianceStatusService/StatusReportingService.svc is showing status 401.
Thoughts?
Nash Pherson, Senior Systems Consultant
Now Micro -
My Blog Posts
If you've found a bug or want the product worked differently,
share your feedback.
<-- If this post was helpful, please click "Vote as Helpful".

Similar Messages

  • Problem: Socket connection is not creating in machine, through utility program (MFC Dll), on ListDisplay service port - 3334 (on separate machine), while we are able to telnet on same ListDisplay service port - 3334 from same issue machine on same time

    Problem: Socket
    connection is not creating in machine, through utility program (MFC Dll), on ListDisplay service port - 3334 (on separate machine), while we are able to telnet on same ListDisplay service port - 3334 from same issue machine on same time
    Environment: -
    OS:
    Windows XP SP2/7
    Code:
    VC 6.0
    Dll: MFC
    Problem Description: -
    We have written a utility program which create socket (Using windows standard method [MFC]), and then make connection with another service (List Display) running
    on port 3334 in different machine and retrieve the required list data. This program was working fine in almost all the machines.
    But, we have received a severe intermittent issue on two machines. Client is facing issue in displaying the list data from port 3334.
    Attempt: -
    First we tried to debug code, and we come to know that socket is not creating in utility program. So we tried to telnet on ListDisplay service port 3334 and we were surprised that we were able to telnet, then we opened some more
    telnet window on same port 3334 around (6 to 8) window, and each cmd connected properly. But we were not able to create socket from utility program.
    Problem is severe because issue is intermittent.
    We have tried all the way, but we are not able to figure it out, that what can be the exact problem and what are the conditions, when utility program will not
    connect with ListDisplay service on port 3334.
    Kindly assist to resolve this issue. For any help, we would be really thankful.

    Hi,
    According to your description, it seems that you have created an utility program which is making connection with another service port 3334, however, two clients are facing issue in display the data list from port 3334.
    Port: 3334/TCP
    3334/TCP - Known port assignments (1 record found)
    Service
    Details
    Source
    directv-web
    Direct TV Webcasting
    IANA
    Since the port 3334 is used by directv-web service, I'd like to suggest check this service it is working well on the problematic clients.
    1. The client can be resolved in DNS well? Please run "nslookup" in the prompt command.
    2. Is there any 3rd party application interrupting? Do test in clean boot.
    2. Strongly suggest you run process monitor tool to analysis it.
    I am looking forward to your reply if you have any updated on your side.
    Please remember to click “Mark as Answer” on the post that helps you, and to click “Unmark as Answer” if a marked post does not actually answer your question. This can be beneficial to other community members reading the thread.

  • I didn't deactivate Adobe CS 3 Premium before I reinstalled it on the same computer,  so when I tried to activate it says the maximum has been reached for licenses. I read on your website the instructions for correcting this issue, but still do not have t

    I didn't deactivate Adobe CS 3 Premium before I re-installed it on the same computer,
    so when I tried to activate, it says the maximum number has been reached for licenses.
    I read on your website the instructions for correcting this issue, but still do not have the deactivation option. So that I can reactivate it.
    Could you please help?

    COntact support by web chat or phone and have them reset activations.
    Mylenium

  • T61 External Monitor Port Failure Question

    I have a Lenovo T61 8897-cto (purchased 4/2008) with what I believe is a failing backlight.  In dim environments I can still see the screen.  I've  been temporarily using an external monitor, but the external monitor just went blank and I can't get it back, (the external monitor works fine with another laptop which I'm using now).  My question is, does this new fault point to a system board failure?   I suppose it could be a connector but I don't move the system often and not recently.  The only other things that comes to mind is that the battery is dying and only has 50% of its capacity left, (but I always run it with the AC cable plugged in).
    I'm just wonder if it is worth putting any money into this laptop or to parts it out.  I've already ordered a replacement W510 which I should get in under 2 weeks. I was thinking about using the T61 as a backup or dedicated to Ubuntu, but I can buy a used one for under $600 so I don't want to dump $400 into to have it repaired.
    Any suggestions/prior experience with failing LCD displays and external video port?

    1400x1050 is the highest screen resolution, so I guess that is SXGA+ No, I've never spilled anything on the laptop. I'm running Windows Vista Pro latest Service Pack. I rebooted the system this morning and the external display was detected and used during the boot process. It started to work again under Windows. I'm starting to think that it was some sort of power saving mode that failed to re-initialize. The main laptop screen is still dim, but readable in a dark room. It does have a bit of a tint to it, which I've read is an indicator of a failing backlight. I've checked the warranty on the Lenovo website and they've indicated that it has expired.

  • After answering the three security questions on itunes connect the submit button is still grayed out. It looks like it could be an error on the website. Has anyone encountered this issue?

    After answering the three security questions to update an app on itunes connect the submit button is grayed out. It looks like an error on the website. Has anyone ran into this problem before? Any help would be greatly appreciated.

    Hi evanVIT, 
    Welcome to the Apple Support Communities!
    I understand that issues like the one you are experiencing can be very frustrating. For this situation however, for update errors in the range of 3000-3020, I would recommend the troubleshooting steps located in the attached article. Please use the steps and information as a reference. 
    Error 3194, Error 17, or "This device isn't eligible for the requested build"
    Cheers, 
    Joe

  • A music file on my iWeb website shows as a question mark and won't play.  Anyone know how I can fix this?

    When I view the website using Firefox, it shows and plays beautifully.  But, when I view it on Safari, there is a tiny question mark where the audio control should be, and no music plays.  I'd really appreciate some help with this one.
    Many thanks,
    Joe Perrone Jr.
    Author
    www.joeperronejr.com (in case you want to see the site)  It's the Home Page

    I just opened your site with Safari and on the Home page the music play straight away and then there is the player at the bottom right of the page which I can see with no problem at all.
    Perhpas you need to empty your brower cache for it to display correctly - it seems to be working correctly for others here who have viewed it in Safari.
    Check your preferences and perhaps clear your cookies and then empty your browser cache.

  • Using 2011 iMac as external display for new Retina macbook / port sharing question

    I'd like to see if there is a way to use the firewire port on the back my 2011 iMac 27" when it's connected to my 2014 15" Retina Macbook.
    The two work fine right now - the iMac is the main display for the macbook, but I wanted to know if there is a way to utilize the extra ports - namely the firewire port on the iMac through the Macbook. I've created aggregate devices before - would this be the way to go?
    Thanks!

    Hello gstern1994,
    Yes you can. Form the article below you should be able to do that, just make sure that you plug in those devices when you have already set up the Target Display Mode on the iMac. 
    Target Display Mode: Frequently Asked Questions (FAQ)
    http://support.apple.com/en-us/ht3924
    Regards,
    -Norm G.  

  • Port-channel question on 9148

    hey I have a question about  port-channel.
    we have a port-channel 10 which contains 4 interfaces as below.
    my question is how the port-channel associated with the servers?  I mean the output "sh flogi database" as below........
    do we need to add port-channel as a zone member ? I think the answer is no since I don;t see the port-channel as a zone member....
    =================================================================
    tormds01# sh interface port-channel  10
    port-channel 10 is up
        Hardware is Fibre Channel
        Port WWN is 24:0a:54:7f:ee:a0:d5:48
        Admin port mode is auto, trunk mode is on
        snmp link state traps are enabled
        Port mode is F
        Port vsan is 510
        Speed is 32 Gbps
        5 minutes input rate 124316072 bits/sec, 15539509 bytes/sec, 9919 frames/sec
        5 minutes output rate 2205921104 bits/sec, 275740138 bytes/sec, 141424 frames/sec
          43540499847 frames input, 70772376296224 bytes
            0 discards, 0 errors
            0 CRC,  0 unknown class
            0 too long, 0 too short
          237450525827 frames output, 442040501099476 bytes
            0 discards, 0 errors
          0 input OLS, 0 LRR, 0 NOS, 0 loop inits
          0 output OLS, 0 LRR, 0 NOS, 0 loop inits
        Member[1] : fc1/1
        Member[2] : fc1/5
        Member[3] : fc1/9
        Member[4] : fc1/13
        Interface last changed at Tue Apr  8 22:16:49 2014
    tormds01# sh flogi database
    INTERFACE        VSAN    FCID           PORT NAME               NODE NAME      
    fc1/3            510   0x860000  50:06:01:64:3d:e0:24:d0 50:06:01:60:bd:e0:24:d0
                               [torvnx01_spa0]
    fc1/7            510   0x860100  50:06:01:6c:3d:e0:24:d0 50:06:01:60:bd:e0:24:d0
                               [torvnx01_spb0]
    fc1/11           510   0x860200  50:06:01:60:3d:e0:24:d0 50:06:01:60:bd:e0:24:d0
                               [torvnx01_spa2]
    fc1/15           510   0x860300  50:06:01:68:3d:e0:24:d0 50:06:01:60:bd:e0:24:d0
                               [torvnx01_spb2]
    port-channel 10  510   0x860400  24:0a:54:7f:ee:92:3e:80 21:fe:54:7f:ee:92:3e:81
    port-channel 10  510   0x860401  20:01:04:25:b5:3a:00:8f 20:01:00:25:b5:30:00:8f
                               [mcvhes0101hba0]
    port-channel 10  510   0x860402  20:01:04:25:b5:3a:00:9f 20:01:00:25:b5:30:00:9f
                               [mcvhes0102hba0]
    port-channel 10  510   0x860404  20:01:04:25:b5:3a:00:6f 20:01:00:25:b5:30:00:6f
                               [mcvhes0103hba0]
    port-channel 10  510   0x860408  20:01:04:25:b5:3a:00:7f 20:01:00:25:b5:30:00:7f
                               [mcvhes0104hba0]
    port-channel 10  510   0x86040f  20:01:04:25:b5:3a:00:4f 20:01:00:25:b5:30:00:4f
                               [mcvhes0105hba0]
    port-channel 10  510   0x860410  20:01:04:25:b5:3a:00:5f 20:01:00:25:b5:30:00:5f
                               [mcvhes0106hba0]
    port-channel 10  510   0x860417  20:01:04:25:b5:3a:00:2f 20:01:00:25:b5:30:00:2f
                               [mcvhes0107hba0]
    port-channel 10  510   0x860418  20:01:04:25:b5:3a:00:0f 20:01:00:25:b5:30:00:0f
                               [mcvhes0109hba0]
    port-channel 10  510   0x86041b  20:01:04:25:b5:3a:00:bf 20:01:00:25:b5:30:01:bf
                               [mcvhes0110hba0]
    port-channel 10  510   0x86041d  20:01:04:25:b5:3a:00:1f 20:01:00:25:b5:30:00:1f
                               [mcvhes0111hba0]
    port-channel 10  510   0x86041e  20:01:04:25:b5:3a:00:3f 20:01:00:25:b5:30:00:3f
                               [mcvhes0108hba0]
    port-channel 10  510   0x86041f  20:01:04:25:b5:3a:00:ff 20:01:00:25:b5:30:01:ff
                               [mcvhes0112hba0]
    port-channel 10  510   0x860423  20:01:04:25:b5:3a:00:df 20:01:00:25:b5:30:01:df
                               [mcvhes0113hba0]
    port-channel 10  510   0x860425  20:01:04:25:b5:3a:00:ef 20:01:00:25:b5:30:01:ef
                               [mcvhes0114hba0]
    port-channel 10  510   0x860426  20:01:04:25:b5:3a:00:cf 20:01:00:25:b5:30:01:cf
                               [mcvhes0115hba0]
    port-channel 10  510   0x860427  20:01:04:25:b5:3a:00:8e 20:01:00:25:b5:30:01:8f
                               [MCDBWS0200hba0]
    port-channel 10  510   0x860429  20:01:04:25:b5:3a:00:9e 20:01:00:25:b5:30:01:9f
                               [MCDBWS0201hba0]
    port-channel 10  510   0x86042a  20:01:04:25:b5:3a:00:7e 20:01:00:25:b5:30:01:7f
                               [mcvhes0118hba0]
    port-channel 10  510   0x86042b  20:01:04:25:b5:3a:00:af 20:01:00:25:b5:30:01:af
                               [mcvhes0116hba0]
    port-channel 10  510   0x86042c  20:01:04:25:b5:3a:00:6e 20:01:00:25:b5:30:01:6f
                               [mcvhes0117hba0]
    port-channel 10  510   0x86042d  20:01:04:25:b5:3a:00:4e 20:01:00:25:b5:30:01:4f
                               [mcvhes0119hba0]
    port-channel 10  510   0x86042e  20:01:04:25:b5:3a:00:5e 20:01:00:25:b5:30:01:5f
                               [mcvhes0120hba0]
    port-channel 10  510   0x860431  20:01:04:25:b5:3a:00:2e 20:01:00:25:b5:30:01:2f
                               [awotorprodsql01hba0]
    port-channel 10  510   0x860432  20:01:04:25:b5:3a:00:3e 20:01:00:25:b5:30:01:3f
                               [awotorprodsql02hba0]
    port-channel 10  510   0x860435  20:01:04:25:b5:3a:00:fe 20:01:00:25:b5:30:00:ef
                               [dbcactv01n3hba0]
    port-channel 10  510   0x860436  20:01:04:25:b5:3a:00:de 20:01:00:25:b5:30:00:bf
                               [dbcactv01n4hba0]
    port-channel 10  510   0x860439  20:01:04:25:b5:3a:00:ce 20:01:00:25:b5:30:00:8e
                               [mcvhes0123hba0]
    port-channel 10  510   0x86043a  20:01:04:25:b5:3a:00:be 20:01:00:25:b5:30:00:af
                               [mcvhes0122hba0]
    port-channel 10  510   0x86043c  20:01:04:25:b5:3a:00:ae 20:01:00:25:b5:30:00:9e
                               [mcvhes0124hba0]
    port-channel 10  510   0x860443  20:01:04:25:b5:3a:00:8d 20:01:00:25:b5:30:00:6e
                               [mcvhes0125hba0]
    port-channel 10  510   0x860445  20:01:04:25:b5:3a:00:ee 20:01:00:25:b5:30:00:cf
                               [mcvhes0121hba0]
    port-channel 10  510   0x860446  20:01:04:25:b5:3a:00:9d 20:01:00:25:b5:30:00:7e
                               [mcvhes0126hba0]
    port-channel 10  510   0x860447  20:01:04:25:b5:3a:00:6d 20:01:00:25:b5:30:00:4e
                               [mcvhes0127hba0]
    port-channel 10  510   0x860449  20:01:04:25:b5:3a:00:7d 20:01:00:25:b5:30:00:5e
                               [mcvhes0128hba0]

    I think what you do is F-Port trunking channeling !
    port-channel as a zone member ? I assume you will do pwwn based zoning; in which case the answer is NO !

  • Why are some websites displayed with added question marks inside black diamonds

    Numbers are displayed with question marks inside black triangles before and following, possibly as column separators.
    == This happened ==
    Every time Firefox opened
    == I attempted to access financial websites

    Can you post a link?
    You can try a few different encoding settings: "View > Character Encoding" like Western ISO-8859-1 or another Western encoding or UTF-8
    You can also try to switch on Auto-Detect: "View > Character Encoding > AutoDetect > Universal"
    A diamond with a '?' usually indicates that a character is missing in the font that is used on a website or the wrong encoding is used.
    You get the '?' on websites that use an 8 bit encoding like ISO-8859-1 or a Windows encoding like Windows-1252.
    This issue can happen if content was copied from one 8 bit or Unicode encoding to another encoding.

  • Non SSL website on port 443

    Hi, I have a non-SSL website running on port 443. When I access this website using Chrome or IE it works just fine, but Firefox can't seem to accept what I have done. All browsers on the same machine and using the same web proxy.
    I access the website as http://xyz:443.
    Just a bit of background info as to why I need this. Where I work I can only access ports 443 and 80 via the web proxy. I have two distinct websites running on a couple of devices at home behind a very config-wise limited router which has ports 80 and 443 redirected to these hosts. There is no way for me to setup two port forward rules on port 80 to two different devices. I cannot setup SSL on either of the websites.
    Regardless of options that could exist to overcome my particular issue, I would like to check if you guys know how to make Firefox work with a website running on port 443 whilst not having a certificate assigned to it.
    Firefox 32.0.3
    Error message:
    The connection was reset
    The connection to the server was reset while the page was loading.
    The site could be temporarily unavailable or too busy. Try again in a few moments.
    If you are unable to load any pages, check your computer's network connection.
    If your computer or network is protected by a firewall or proxy, make sure that Firefox is permitted to access the Web.

    What type of ssl are you running? [https://blog.mozilla.org/security/2014/10/14/the-poodle-attack-and-the-end-of-ssl-3-0/]
    You can somehow remove the Strict-Transport-Security header or if there is a feature that forced encryption but by default https uses 443 for encryption. I do not know if this is possible.

  • Port mapping question - I need clarification

    I have posted a question about port mapping previously but - although I thought I understood - it is still not working for me. I was hoping there was a kind soul out there who could humor me and explain port mapping with AEBS 802.11n as if there where talking to a 5 year old.
    Thanks for the help and it's ok to laugh.

    {quote:}This address MUST be outside of the range of IP addresses that your 802.11n AirPort Extreme Base Station's (AEBS) DHCP service is providing.{quote}
    This actually is incorrect.
    The statement that the mapped internal address must be static is correct; otherwise the AEBS will not, if the Mac is assigned a different dynamic (DHCP) IP address by the AEBS some time in the future, be able to forward packets to the Mac. However it is very straightforward to have the Mac computer be assigned an address dynamically by the AEBS and to have the AEBS always assign the same IP address to the same Mac computer. Thereby giving the Mac a static address inside the DHCP range.
    In the AirPort utility go to Internet | DHCP | DHCP Reservations. Click "+" then enter the MAC (what Apple calls Ethernet ID if you are using wired or AirPort ID if wireless) hardware address of the Mac computer, give it an IP address, save it. Then that Mac computer will always receive that (static) IP address from the AEBS.
    Why do this? Well by continuing to use DHCP (while having though a static IP address) you keep all the other benefits of DHCP such as automatically having the gateway address, the DNS server addresses given to the Mac. Otherwise you have to enter all this information manually on the computer if you put it outside the DHCP address range. This is very desirable, especially for most home users, as their DNS server entries are provided by their ASP and picked up by the AEBS. If the ASP changes DNS addresses the manually configured Mac machine will not know.
    So in summary - for port forwarding it is NOT necessary for the Mac machine to be outside the DHCP range, in fact _it is desirable to keep it in the DHCP range_ *as long as* the Mac utilises DHCP reservation on the AEBS.
    I have tested this and it works fine.

  • Websites loaded only with question marks.

    Some websites are loaded only with question marks after I updated to Firefox 4.0.1. I have attached a screenshot in the link below.
    [http://img64.imageshack.us/img64/2462/wmarks.png http://img64.imageshack.us/img64/2462/wmarks.png]

    Update Skype to the latest version. The one you have installed at the moment is incompatible with Firefox. See https://www.mozilla.com/en-US/blocklist/
    In addition, go to Add-ons | Extensions and disable "BitDefender Antiphishing Toolbar". Test your sites where you get the question marks to see if it rectifies the problem. If it doesn't, you can re-enable it again.
    Do the same with the Conduit Engine.
    Install Java 1.6.0_25 via http://www.java.com/en/ and then remove all previous versions. Older versions are a security risk. Uninstall via Add/Remove Programs.
    Install VLC 1.1.9 via http://www.videolan.org
    The version you have on your system exposes your machine to attack. Actually, version 1.1.9 is also insecure, but not as bad as the one you have installed. See [http://www.h-online.com/open/news/item/VLC-Media-Player-1-1-9-closes-security-holes-1226673.html VLC Media Player 1.1.9 closes security holes] ''and'' [http://www.h-online.com/open/news/item/A-new-security-flaw-hits-VLC-1225820.html A new security flaw hits VLC]
    You'll just have to keep an eye on the videolan.org site for when they release a new patch.
    If the problem persists, try running Firefox in [[Safe Mode]]. If it functions properly in that configuration, then one of your add-ons is the culprit.

  • Port monitoring question

    Hello,
    I'm new to the forum and to Network programming in particular.
    My question concerns port monitoring. I have a server transmitting UDP packets to a specific port. I need to have a thread that monitors that port and sees that there is traffic going out. Yet, it does not have any connection to the server (different processes), but it knows the IP and port number (actually the IP is the same).
    How do I make it happen? Do I need to use a DatagramSocket and read inputs? Could someone advise with a simple code sample?
    Thanks

    Hi,
    Why you dont simply create a DatagramSocket object. And using the receive message you can monitor datagrampackets, and if there is message or not available, simply use the getLength() method from this object.
    You can do it in two ways.
    One would be creating two threads, one to do the job, and the other one to monitor if there is or not message available. As you should know, the receives method, will block if there is no message available. As u dont want your program to freeze, put this job, in one thread.
    The other one, would also be using a timertask, which will monitor the waiting process. If then for x time, it doenst receive, you finish your program.
    There are really many many possibilities, u just need the DatagramSocket object, the DataGrampacket and a thread!
    If i misunderstood something, you can give me new directions

  • Port knocking question

    Hi, Arch Community,
    I have kind of a dumb question regarding port knocking.  I'm doing some preliminary testing based on the documentation here:
    https://wiki.archlinux.org/index.php/Port_Knocking
    I've created a couple of rules and a logging chain:
    #PORTKNOCK chain
    :PORTKNOCK - [0:0]
    -A PORTKNOCK -m limit --limit 5/m --limit-burst 10 -j LOG --log-prefix "IPTABLES Portknock: "
    -A PORTKNOCK -j DROP
    # This will add the ip to the list SSH0 if the port knocked is 8881
    -A INPUT -m state --state NEW -m tcp -p tcp --dport 8881 -m recent --name SSH0 --set -j PORTKNOCK
    I know this is getting hit because it is logging:
    Feb  7 15:46:44 hypervisor kernel: [2316624.562712] IPTABLES Portknock: IN=eth0 OUT= MAC=78:2b:cb:a7:97:dd:08:00:27:72:61:bb:08:00 SRC=10.135.217.176 DST=10.135.217.178 LEN=64 TOS=0x10 PREC=0x00 TTL=64 ID=31917 DF PROTO=TCP SPT=38253 DPT=8881 WINDOW=16384 RES=0x00 SYN URGP=0
    My question is that based on my reading, I should be able to inspect the contents of the names set SSH0 by taking a look at /proc/net/ipt_recent/SSH0 or something of this sort (http://www.ducea.com/2006/06/28/using-i … e-attacks/).
    I don't see this path of my proc filesystem.  Could anybody tell me where to look to discern this set information?
    Thank-you so much for taking the time to answer my question.
    Dan Sullivan

    Thank-you, kind person.  This is exactly what I was looking for.
    Dan Sullivan

  • VISA Read and Bytes at Port Timing Question

    Hi,
    I have a question that doesn't seem to be documented in the VISA Read function help. My application normally queries a serial instrument, waits, and then reads the port (with Bytes at Port property node wired to the byte count input of the VISA Read). However, I also need to be able to handle strings received from the instrument asynchronously without my vi requesting any data. So in the False Case in my vi (the True Case is where I write a command to the instrument) I have a Bytes at Port property wired to the VISA Read function's byte count input without using a VISA Write. This works fine if the \r\n terminated string is sent in one packet. However, sometimes there is a slight delay (only a few milliseconds) between characters. When that happens, the VISA Read returns, but I don't get the entire intended string. (Of course I know I have to keep reading in a loop until I get the \n and then assemble the received characters (sub strings) into my complete string for processing.)
    This is my question: What is the time delay between characters at which the VISA Read terminates? This is not specified. I assume it could be as little as just slightly more than 1 stop bit at the baud rate being used. Does anyone know? NI employees?
    When a string of more than one character (byte) is sent, as soon as the stop bit time has expired, the next start bit is normally sent immediately. Is it possible that if the next start bit doesn't come by, say, the mid-bit position time at the baud rate being used, the VISA Read returns immediately? Or does it wait at least 1 character time (at the baud rate)? This should be documented. Furthermore, for future versions it might be useful to add an input to the VISA Read to specify in milliseconds how long to wait AFTER the 'byte count' number of bytes have been received before returning the string (or character).
    Thanks for your help.
    Ed

    I looked up the PC16550D data sheet (http://www.national.com/ds/PC/PC16550D.pdf). On p. 19 it says:
    When RCVR FIFO and receiver interrupts are enabled, RCVR FIFO timeout interrupts will occur as follows:
    A. A FIFO timeout interrupt will occur, if the following conditions exist:
        - at least one character is in the FIFO
        - the most recent serial character received was longer than 4 continuous character times ago (if 2 stop bits are  programmed the second one is included in this time delay).
        - the most recent CPU read of the FIFO was longer than 4 continuous character times ago.
    The maximum time between a received character and a timeout interrupt will be 160 ms at 300 baud with a 12-bit receive character (i.e., 1 Start, 8 Data, 1 Parity and 2 Stop Bits).
    B. Character times are calculated by using the RCLK input for a clock signal (this makes the delay proportional to the baudrate).
    C. When a timeout interrupt has occurred it is cleared and the timer reset when the CPU reads one character from the RCVR FIFO.
    D. When a timeout interrupt has not occurred the timeout timer is reset after a new character is received or after the CPU reads the RCVR FIFO.
    So, this UART uses 4 character times to determine that no more characters are coming in. And the delay is baud-rate dependent. This makes sense because I see that at, say, 115200 baud I receive more "partial strings" than I do at 9600 baud (where the sending device has more time to send the next character)!
    Kudos for making me investigate this further! Thanks for listening. Hope this may help others in the future.

Maybe you are looking for

  • Camileo S20 - Is it possible to turn off the screen?

    Is it possible to turn off the screen when using Time Lapse or Motion Detection modes so as to save power?

  • Error in Uploading BOM

    Dear Gurus'                       While uploading  BOM i came across an erros which says unit of measure EA doesn't specify decimal places in EA. what this error is and how i need to sort it out? i'm uploading alternative BOM 3. Thanks & regard Praka

  • Auto Right-Size Columns in Finder!

    So if I had a nickel for all the times I have to grab the stupid little double pipe (||) at the bottom of every single column veiw just to see the full file names, or double clicking it, or command clicking it, or right clicking and choosing RightSiz

  • Page coon be displayed with more data

    Hi, I am having an issue with BSP , when I display 30 or 40 records using <htmlb:tableView  > it works fine But when I try to display more records lets say 1K its showing Page cannot be displayed Could you please help Thanks,

  • Setting Query Data Source Arguments Property for Block with TYPE Procedure

    Hi, I have a block whose type is 'Procedure', this returns a PL/SQL table. I pass an IN OUT variable declared in the Package header and all works well. What I need to know is how, if I have ANOTHER argument, how do I set it programatically prior to E