Meta-policy failure

A client is running a webservice at
https://www.client.com/subdir/wsdl. They have a crossdomain at
https://www.client.com/subdir/crossdomain.xml. My swf runs off of
http://www.mysite.com/. My swf
has always been able to connect to https://www.client.com/subdir/
until flash player 10 enforced a default meta-policy at the server
root level. Now users with flash player 10 cannot use my swf to
connect to my client.
So according to the new rules, my client should setup a new
meta-policy crossdomain at their root:
https://www.client.com/crossdomain.xml. This new crossdomain should
have the contents: <cross-domain-policy><site-control
permitted-cross-domain-policies="all"/></cross-domain-policy>.
This should allow any subdiretory crossdomain to work.
It doesn't work. I tested this setup on two different HTTP
servers, and it works. I read this article in detail:
http://www.adobe.com/devnet/flashplayer/articles/fplayer9_security_03.html
and I can't figure what else to do. Is there something about HTTPS?
Should I just get the client to post a regular crossdomain at the
root, instead of the meta-policy? I need a solution that works, as
it's a pain for the client to make server root changes.
Thanks

can you open a webcase and we can get an agent on it? This
needs more attention than I can give it just now..
The meta-policy file looks fine to me..
however, in the other crossdomain, if your resources are on
https, then you need secure=true .... you show 'false'.
From the article you linked to earlier:
"Since policy files were introduced, Flash Player has
supported a special attribute in the <allow-access-from>
directives of policy files from HTTPS servers: secure="true". When
secure="true" is specified, SWF files from the domain or domains
listed in that <allow-access-from> directive are permitted to
retrieve data only if those SWF files are themselves retrieved over
HTTPS. This helps protect the data from HTTPS servers, and helps
ensure that it does not flow to SWF files whose origin cannot be
strongly authenticated."
Beyond that (and opening a case) I'd strongly recommend
enabling logging and seeing what errors are being thrown:
http://www.adobe.com/devnet/flashplayer/articles/fplayer9_security_05.html
Regards,
Bentley Wolfe
Senior Support Engineer, Flash/Flash Player/Digital Editions
Adobe

Similar Messages

  • Meta Policy

    Going through the book Adobe Flex 3 Training from the source,
    I get the following error.
    Warning: Domain www.flexgrocer.com does not specify a
    meta-policy. Applying default meta-policy 'all'. This configuration
    is deprecated. See
    http://www.adobe.com/go/strict_policy_files
    to fix this problem.
    The referred to doc does not describe what other attribute
    needed in (I think)
    <mx:HTTPService id="prodByCatRPC" url="
    http://www.flexgrocer.com/categorizedProducts.xml"
    resultFormat="e4x"/>
    Does anyone have a solution?

    The main problem with that doc is that it is completely
    unrealistic in its expectations of people caring to know how these
    things work. That doc was written for the 5% of the people that
    actual care/are interested by this stuff. I have yet to see the doc
    that shows for the other 95%: If you want to do this, use this
    policy file. If you want to do this other, here. Otherwise read the
    docs and spend the day it would take to truly understand the new
    requirements to be able to write their own.
    Until this discrepancy is addressed and there is a place to
    cut'n'paste the 2 or 3 most frequent policy files, this will
    continue to be constant question, even after pointing people to the
    doc. I will admit to personally having checked that doc out and
    closing the browser tab and saying, 'I'll look at this later when
    it is more pressing because I am sure they will have put together a
    5 minute check list rather than some whitepaper no one has time to
    read.'
    IMO & YMMV :)

  • Troubleshooting a meta chain failure

    Hi guys,
    Can you please give a step by step way to  start troubleshooting a meta chain error/load failure??
    Thanks

    Tcode SM37 and check your Metachain job log ->Double click the log.
    OR
    Open you Metachain -> go to main menu Goto and select Log View ->select the failure date and double click on the chain where it's failed.
    Also check:
    Process Chain Errors:
    /people/mona.kapur/blog/2008/01/14/process-chain-errors
    Hope it helps..

  • IPrint Policy - Failure on all devices

    I had posted on this issue earlier and had thought that the policy was reporting as failed but actually deploying printers. What I am seeing right now is that the policy fails to do anything. The iPrint server is the appliance server and the client is installed, 5.90, and a manual install of the printer(s) works correctly. Is there a guide that might help with this process? It would be useful to get this working for the end users. The Novell documents really doesn't provide enough detail to be helpful in this case.
    Richard

    Stephan, Sorry about that. What I meant was that the iPrint Server is the new iPrint Appliance server and not native to OES. I wouldn't think it would make a difference for the policy. I wish I would have kept the error codes and posted that information but that is sitting on my desk.
    My policy setup is only listing the iPrint printer. I don't have it deploying or check on drivers or the client. I even turned off the set Default printer check box to see if that made a difference. I am not sure if I am failing due to not filling all the remaining information out or if I have a registry setting or some other option in Windows that is causing conflict or what. Basically all I am wanting is to set up printer deployment for banks of clients so that no matter what the client machine is doing, reimaged, changed groups, etc, I know a set number of printers are loaded.
    Windows 7 Pro (Clients)
    ZCM 11.2.3a MU1 (Currently - started process to move to 11.2.4)
    SLES 11 SP2
    Most of my client systems are getting Power User or User access only. I do have a few that have Admin rights locally. None deploy printers from this policy.
    Thanks for the follow up.
    Richard

  • Software Installation Processing Alerts - Group Policy Failures?

    Hello,
    I am getting several errors reported by SCOM Software Installation Processing alert
    In the local event log I have:
    Warning 9/15/2014 11:09:37 AM GroupPolicy 1112 None
    Warning 9/15/2014 11:09:37 AM Application Management Group Policy 108 None
    Error 9/15/2014 11:09:37 AM Application Management Group Policy 103 None
    Warning 9/15/2014 11:09:37 AM Application Management Group Policy 101 None
    with the details:
    101 - The assignment of application SMS Client Setup Bootstrap from policy MITS Servers Software failed. The error was : %%1274
    103 - The removal of the assignment of application SMS Client Setup Bootstrap from policy MITS Servers Software failed. The error was : %%2
    108 - Failed to apply changes to software installation settings. The installation of software deployed through Group Policy for this user has been delayed until the next logon because the changes must be applied before the user logon. The error was : %%1274
    1112 - The Group Policy Client Side Extension Software Installation was unable to apply one or more settings because the changes must be processed before system startup or user logon. The system will wait for Group Policy processing to finish completely before the next startup or logon for this user, and this may result in slow startup and boot performance.
    - Computer Configuration > Policies > Administrative Templates > System > Group Policy > Policy > Startup policy processing is enabled 
    what does exactly this means?
    Thanks,
    Dom
    System Center Operations Manager 2007 / System Center Configuration Manager 2007 R2 / Forefront Client Security / Forefront Identity Manager

    Hi,
    Yes the packaged is installed.
    Troubleshooting the issue deeper with http://support.microsoft.com/kb/249621/en-us is showing
    Software installation extension has been called for background policy refresh
    09-16 06:34:09:346
    Software installation extension has been called for background policy refresh
    The following policies are to be applied, flags are 11.
    MITS Servers Software (unique identifier {E76FB561-E177-421D-AE43-109EADEAD751})
    System volume path = \\ad.medctr.ucla.edu\sysvol\ad.medctr.ucla.edu\Policies\{E76FB561-E177-421D-AE43-109EADEAD751}\Machine
    Active Directory path = LDAP://CN=Machine,cn={E76FB561-E177-421D-AE43-109EADEAD751},cn=policies,cn=system,DC=ad,DC=medctr,DC=ucla,DC=edu
    Set the Active Directory path to LDAP://CN=Class Store,CN=Machine,cn={E76FB561-E177-421D-AE43-109EADEAD751},cn=policies,cn=system,DC=ad,DC=medctr,DC=ucla,DC=edu;.
    Enumerating applications in the Active Directory for computer MSVROFAS2 with flags 5.
    The following applications were found in policy MITS Servers Software.
    Assigned application SMS Client Setup Bootstrap (flags a0044c70).
    Found 1 applications in policy MITS Servers Software.
    Enumerating the managed applications which are currently applied to this user.
    No managed applications are currently applied to this user.
    Found 0 applications locally that are not included in the set of applications from the Active Directory.
    Application SMS Client Setup Bootstrap from policy MITS Servers Software is set for installation because it is assigned to this computer policy.
    Software installation extension cannot perform removal or install operations during asynchronous policy refresh and will force a synchronous foreground refresh.
    The assignment of application SMS Client Setup Bootstrap from policy MITS Servers Software failed. The error was : %1274
    Removing application SMS Client Setup Bootstrap from the software installation database.
    Calling Windows Installer to remove application advertisement for application SMS Client Setup Bootstrap from script C:\Windows\system32\appmgmt\MACHINE\{ecbf218d-0d04-4b00-a43e-91ba5c41d119}.aas.
    Windows Installer cannot remove application advertisement for application SMS Client Setup Bootstrap from script C:\Windows\system32\appmgmt\MACHINE\{ecbf218d-0d04-4b00-a43e-91ba5c41d119}.aas, error 2.
    The removal of the assignment of application SMS Client Setup Bootstrap from policy MITS Servers Software failed. The error was : %2
    Policy Logging for Software Management is attempting to log application SMS Client Setup Bootstrap from policy MITS Servers Software.
    Failed to apply changes to software installation settings. The installation of software deployed through Group Policy for this user has been delayed until the next logon because the changes must be applied before the user logon. The error was : %1274
    Software installation extension has detected changes that require a synchronous foreground policy refresh.
    Software installation extension returning with final error code 1274.
    And this is happening hourly !!!
    This is the current status...
    Thanks,
    Dom
    System Center Operations Manager 2007 / System Center Configuration Manager 2007 R2 / Forefront Client Security / Forefront Identity Manager

  • Importing XML to Final Cut 7 - Critical Failure

    Hello!
    I've been trying to import an XML file that another editing company gave to us and have been met with failure.  Tried to do it twice and got the same message both times:  "xml translation aborted due to critical error".
    The client used Adobe Premiere Pro, and the XML file in question seems to have the COLOR logo on it.  I assume that they put it through color and then sent us the XML.
    We should have all the media needed; they gave us a duplicate copy of the drive they worked off of.
    I don't really have much experience at all with XML, so any help is appreciated.
    I took a screen capture of the error log; hopefully I can attach this.
    System info:
    Mac Pro 5,1
    16GB RAM
    Final Cut 7
    System 10.6.8

    You're asking a lot of an XML.
    Something to try:
    select all clips and copy them. create a new timeline with the same sequence properties. make sure CTI is at beginning and paste.
    in this new sequence, select a clip that has not had speed changed (100%). right click on it and select copy properties. select all clips and paste properties.
    BE ADVISED THAT THIS WILL CHANGE ALL CLIPS TO THE SAME PROPERTIES AS THE ORIGINAL.
    this may reset all your In & Out points to their proper duration. if so, you can then adjust the timing of the requisite clips as necessary.
    For best results using XML files, there should be NO: effects, dissolves, "black slugs," audio mixing or anything other than a plain vanilla straight cut.
    HTH,

  • SBL and Windows group policy user configuration preference

    We would like to have user connects to VPN via SBL and then login to the AD domain.  Ideally, the group policy user configuration preference, such as drive mapping, should be applied after successful AD login.  However, we are running into issue where the preferences are not being applied.  It appears the AnyConnect VPN tunnel is not completely established after the user login to AD; and hence the GPO preference was not able to apply.  It takes about 1 min.after the user's AD login before the VPN tunnel is completely established.
    Just want to find out if anyone is able to get SBL and AD GPO preference working successfully.

    Originally Posted by twiggy
    Tbreeden - thanks for ur note, yes I am aware of the apply button - but u r right, it's not really noticeable unless u know to look for it
    Rroncme - I am using 32bit. We don't have any vita machines but win7 is supposed to be supported. I've created other policies using win7 and the saved just fine/applied fine too. Thanks for ur thoughts, I appreciate it.
    Any one else haven success w 32 bit win7 -building ie policy?
    Well there is a TID 7005804 about IE policy failures but don't know if the bug applies to your situation...
    Policy failures in Terminal Sessions on Windows Server 2003 and Windows Server 2008
    Thomas

  • Learning Windows server 2012 R2 & 2012 core

    Hi,
    How do i configure a fast and standard solution with 1domain (Windows
    Server 2012 R2) and 1subdomain(Windows Server 2012 Core) implemented with a webserver and security for dns?
    Thx

    Hi
    Maybe this can help,
    Nslookup test:
    cmd => nslookup => set type=mx => host.net.
    Organizational unit:.be
    Active directory users and computers openen => rmb op domeinnaam => new => organtizational unit aanmaken => Protection uitvinken
    Computer Manueel toevoegen aan domein:
    1)DNS veranderen naar 192.168.1.1 van het domein zelf
    2)Add-Computer -domainname host -cred administrator@host -passthru -verbose
    GPO voor chrome installeren:
    1)Group policy management => in OU PC's => new policy aanmaken
    2)rmb policy en klik edit
    3)onder computer => software => new package => pad ingeven waar je msi bestand hebt gezet van chrome => \\S1\netlogon\msi\chrome.msi
    4)client heropstarten en aanmelden met domeingebruiker => powershell => Restart-Computer
    5)mapje waar MSI in zit => security => domain controller (user) toevoegen met volledig beheer
    GPO voor browser block chrome:
    3)block listed urls..
    4)op client gpupdate
    Failed login events:
    1)Group policy instellen op OU Servers: Computer Configuration\Windows Settings\Security Settings\Local Policies\Audit Policy\ ==> Failed logins aanzetten
    2)gpupdate /force
    1)powershell
    2)get-windowsfeature => install-windowsfeature SMTP-Server
    3)Internet information services => S1 => Domain RMB => properties => Acces tab => Relay => Add => Group computers => IP: 192.168.1.1 subnet 255.255.255.0 => Ok => ok
    3b)Eens afmelden en aanmelden met fout wachtwoord zodat er een log geschreven wordt met audit failure in de security log van event viewer
    4)Eventviewer security log => op failed audit log RMB => attach => Geef andere naam => next => next start program => program: powershell.exe =>
    open the propery dialog aanvinken
    5)Run wheter user is logged in or not aanvinken => tabke conditions: start the task only if AC power afvinken! => ok => paswoord administrator ingeven
    6)powershell: get-executionpolicy => resultaat moet remotesigned zijn => view tabke => script pane aanzetten =>
    Script geven: $smtpServer = ìsmtp2.school.beî
    $msg = New-Object Net.Mail.MailMessage
    $smtp = New-Object Net.Mail.SmtpClient($smtpServer)
    $msg.From = ì[email protected]î
    $msg.ReplyTo = [email protected]î
    $msg.To.Add([email protected]î)
    $msg.subject = ìhacking attempt?î
    $msg.body = ìlogin/pwd failure on S1.î
    $smtp.Send($msg)
    7)Script opslaan in mapje op C schijf => powershell cd naar mapje met script => ls commandoTo configure the time source for the forest
    8)Task scheduler openen => naar event viewer tasks => login => rmb properties => actions => powershell.exe edit => add arguments: -command "C:\Script\login.ps1" => ok => password admin ingeven
    9)Testen
    *Op welke manier kan je je MX records controleren met NSLOOKUP
    cmd => nslookup => set type=mx => host.net.
    *Commando powershell om Client toe te voegen aan het domein:
    Add-Computer -domainname host -cred administrator@host -passthru -verbose
    Best practice analyzer:
    1)Server manager => klik op dns en op ADDS => Scroll naar onder tot bij BPA => Task start scan => bekijk resultaten:
    Vraagje: Welke suggesties zou je kunnen oplossen:
    DNS server should have scavenging enabled
    De PDC emulator master moet geconfigureerd worden
    1)To configure a domain controller in the parent domain as a reliable time source
    *W32tm /config /reliable:yes /update
    2)To configure the time source for the forest
    *w32tm /config /computer:s1.host.net /manualpeerlist:ntp.belnet.be /syncfromflags:manual /update
    Tijd moet gelijk zijn van S1 en S2!!
    Corefig opstarten in powershell:
    1)cd C:\corefig
    2)execution policy aanpassen: Set-ExecutionPolicy bypass
    3).\corefig.ps1
    4)naam veranderen in corefig
    Commando om S2 toe te voegen aan het domein in de OU servers:
    1)DNS instellen
    Set-DnsClientServerAddress -InterfaceAlias "Ethernet" -ServerAddresses 192.168.1.1
    2)Toevoegen aan OU servers
    Add-Computer -domainname sdhost -cred administrator@host -OUPath "OU=Servers,OU=OU,DC=Host,DC=net"
    Herstarten
    OPPASSEN HIERMEE ALS S2 ZELF DC MOET WORDEN!
    Voorzie je server van de DNS-rol via windows powershell:
    1)Import-Module Servermanager
    2)Get-WindowsFeature
    2)Add-WindowsFeature "DNS" -restart
    Remoteaccess:
    S1 remote access geven voor administrators bij active directory
    view => advanced features enablen
    => Remote management users => HOST\Administrator toevoegen met full rechten
    => Remote Desktop users => HOST\Administrator toevoegen met full rechten
    Bekijk welke firewall regel op dit moment Remote Management nog blokkeert en laat
    die communicatie toe:
    1)Op S2 in powershell: Configure-SMRemoting.exe -enable
    2)op S1 => Server manager => manage => add servers => S2 ingeven => ok
    3)Active directory installeren op s2 via add roles (via S1)
    4)S2 promoveren to domain controller
    5)credentials van s1 gebruiken => naam subdomain 'premium'
    6)DSRM passwoord: P0wnerken
    7)PREMIUM
    DNS instellen van s2 zelf
    Set-DnsClientServerAddress -InterfaceAlias "Ethernet" -ServerAddresses 192.168.1.2
    C2)DNS server instellen op S2 : 192.168.1.2
    Toevoegen aan domein premium.host.net => inloggen met admin account van s2 domein
    herstarten van C2
    Maak†van†deze†tweede†server†nu†een†domeincontroller†voor†het†nieuwe†domein
    ìpremiumî.†Daar†zijn†twee†werkwijzen†voor.†Zoek†deze†methodes†op†en†noteer†deze
    summier†hieronder:
    - Werken met DCPROMO.exe
    - Werken met GUI vanop S1
    Je†mag†zelf†kiezen†welke†methode†je†toepast.†Noteer†hier†wel†de†commandoís†die†je
    toepast:
    Werken met GUI: new existing domain to current forest => naam PREMIUM
    Netwerkkaarten toevoegen:
    VCLOUD => Niet customizen!!!
    Firewall disablen S2:
    netsh firewall set opmode disable
    Op S1 => chrome => ip in url : https://192.168.1.150:446 => proceed => logingegevens:
    naam: openfiler
    pass: password
    Services => CIFS / NFS => Enable => Start
    manage volumes => 1GB volume => start cyl = 1, end cyl = 128 => ongeveer 1GB
    Add volume group => NFS als naam en 1GB volume toevoegen => Add volume => naar onder scrollen:
    Naam: NFS
    Bestandssysteem: EXT4 kiezen
    *Add new physical volume 10GB: MINSTENS 35 CYLINDERS TUSSENLATEN!!!!
    Start cyl = 164, end cyl = 1469, is ongeveer 10GB
    Volume groups => Nieuwe aanmaken met SMB als naam => Add volume => volume selecteren en toevoegen => naar uw smb volume group gaan
    => SMB volume kiezen => naam: SMB => MAX Geheugen => EXT4 bestandssysteem
    1)Clocksettings zetten via ntp server: ntp.belnet.be (Moet gelijk zijn met domaincontroller waarin je hem toevoegd)
    2)DNS zetten van S2
    Hostname: of
    Primary DNS: 192.168.1.2
    Secondary DNS: 192.168.1.1
    Gateway: 192.168.1.254
    3)Accounts:
    Expert view!
    *Use windows domain controller and authentication aanvinken
    Security Mode: Active directory
    Domain / workgroup: PREMIUM
    Domain controllers: s2.premium.VAhost.net
    ADS realm: PREMIUM.HOST.NET
    Join domain: aanvinken
    Administrator username: Administrator
    Administrator password: Azerty123
    *Naar onder scrollen tot kerberos 5: Aanvinken
    Realm: premium.host.net
    KDC: s2.premium.host.net
    Admin server: s2.premium.VAhost.net
    Share aanmaken:
    1)Shares => klikken op SMB / NFS => Nieuwe subfolder aanmaken: SMBshare / NFSshare
    2)subfolder klikken => maak share => bij rechten naar beneden scrollen => Domain admins: PG & RW, Domain users: RO
    3)Update
    Systeem beveiliging:
    1)system => Network access configuration => Nieuw netwerk toevoegen
    Name: Sharenetwork
    Network/host: 192.168.1.0
    Netmask: 255.255.255.0
    Type: Share
    2)Update
    Protocol aanzetten:
    Shares => subfolder smbshared => Volledig vanonder scrollen => SMB/CIFS protocol op rw zetten
    Connect to share met:
    root
    Azerty123
    Connect Z-schijf met SMB share:
    1)RMB op SMB share
    2)Map network drive
    3)Pad SMB share intypen
    4)connecten met share account of finish 1)Private storage en manueel ip adres ingeven
    Beveiliging backup:
    1)Active directory van S1
    2)OP s1 zelf volledig nieuwe OU: "TEMP Accounts" aanmaken => accidentally delete afzetten!!
    3)2USers aanmaken die lid zijn van de groep ("member of") Guest
    4)Op S1 => C schijf => nieuwe map map aanmaken en delen
    5)Op advanced sharing van gedeelde map => Guest 1 Full control => Everyone alleen read rechten
    6)Testen op client of je op Guest1 tekstbestand kan aanmaken en via Guest2 op die share map niet.
    7)Als het werkt Guest1 verwijderen en bekijk sharing permissions op Guest1 map
    *Wat stel je vast bij verwijderen Guest1 via active directory:
    De guest account wordt vervangen door een ander account met een lange naam
    die full control heeft over de map
    8)Guest1 terug opnieuw aanmaken, wat stel je vast?
    Guest1 heeft geen rechten meer over de map en de aangemaakte account blijft staan
    Recycle BIN:
    1)Open Active directory administrative center
    2)Klik op uw domein links
    3)Rechts => enable Recycle Bin
    4)Verwijder Guest1 op AD
    5)Guest1 komt te staan bij deleted users/objects op Recycle Bin
    6)Mogelijkheid om te restoren
    7)Delete OU Temp accounts => Lukt niet onmiddellijk => Omdat er nog objecten in zitten
    *Zoek op welke technieken je kan toepassen om een backup te nemen van je Active Directory. Bekijk uiteraard ook welke 2 manieren
    er zijn om een backup van je AD terug te plaatsen (Authoritative en non-authoritative):
    -13.1.1 Authoritative Restore
    Dit proces herstelt de AD na bc een wijziging die ongedaan gemaakt moet worden.
    AD wordt hersteld vanaf de backup, de backup overschrijft dan alle andere DC's met eventuele nieuwere informatie.
    -13.1.2 Non-Authoritative Restore
    Terugzetten van gegevens van de backup. Nadien ontvangt de DC updates van andere DC's die gemaakt zijn sinds de backup.
    Backup S1:
    Eerst probleem openfiler oplossen:
    1)openfiler opstarten vanuit vmcloud
    2)cd /etc/samba
    3)vim smb.conf (toevoegen: strict allocate = yes) => eerst i voor insert => opt einde escape => :wq voor opslaan
    4)/etc/init.d/smb restart
    Backup zelf
    1)Install windows backup in server manager => add roles => features
    2)Open windows backup
    3)Action => backup once
    4)Different options => Custom kiezen => System State backuppen
    5)Remote disk kiezen
    6)pad share: \\of\smb.smb.SMBshare
    7)Als backup mislukt, de aangemaakte files door de backup manueel verwijderen en backup terug opnieuw proberen
    !!!Als openfiler ineens verdwijnd van domein, moet je de tijd nakijken van beiden systemen (moeten gelijk zijn met max 5min verschil)
    Restore backup (authoritatief ingesteld)
    http://technet.microsoft.com/ru-ru/library/cc816878(v=ws.10).aspx
    1)Herstart de domeincontroller in Directory Services Restore Mode Remotely
    => run => Msconfig.msc => stapkes staan in url: http://technet.microsoft.com/ru-ru/library/cc794729(v=ws.10).aspx
    2)Restore uw ADDS van je backup a.d.h.v. een non-authoritatieve restore.
    Dit zorgt ervoor dat de domeincontroller terug in de staat komt waarop de objecten die verwijderd zijn
    er terug bijstaan.
    http://technet.microsoft.com/ru-ru/library/cc794755(v=ws.10).aspx
    in cmd:
    =>wbadmin get versions -backuptarget:\\of\smb.smb.SMBshare
    =>wbadmin start systemstaterecovery -version:12/03/2013-12:37 -backuptarget:\\of\smb.smb.SMBshare -quiet
    3)Markeer objecten als authoritatief zodat ze niet worden overschreven bij het restoren door synchronisatiefouten
    tussen de verschillende domeinen.
    http://technet.microsoft.com/ru-ru/library/cc816813(v=ws.10).aspx <== hieraan beginnen
    => open run => ntdsutil
    => activate instance ntds => enter
    => authoritative restore => enter
    => restore subtree "OU=Stagiairs,DC=Host,DC=net" => enter
    => quit => enter
    => Start terug op met de domaincontroller in normale modus dus dsrm opstartmode uitschakelen: Safe boot uitvinken
    Nakijken of beide OU's Stagiairs en Guests er nog staan
    (In dit geval is OU guests wel verwijderd doordat we maar 1 DC hebben dus de informatie
    wordt niet gesynchroniseerd met een 2de DC)
    - Debian Machine toevoegen:
    Netwerkgegevens: NIC0 / Private management network / static - manual / IP = 192.168.1.3
    Als Machine aangemaakt is, nieuwe netwerkkaart toevoegen:
    NIC1 / Private storage network / static - manual / IP = 172.16.0.13
    op Debian machine:
    1)su - => enter => pass: Azerty123 => enter
    2)commando: pico /etc/network/interfaces
    Voeg volgende lijntjes toe aan het bestand
    iface eth0 inet static
    address 192.168.1.3
    netmask 255.255.255.0
    gateway 192.168.1.254
    iface eth1 inet static
    address 172.16.0.13
    netmask 255.255.255.0
    CTRL + O (opslaan) => CTRL + X (afsluiten)
    3)pico /etc/resolv.conf
    veranderd de bestaande lijntjes naar deze:
    domain host.net
    search host.net
    nameserver 192.168.1.1
    4)ifdown / ifup van eth0/eth1
    IPV6 instellen:
    Zelf gekozen ULA subnet:
    fdac:1fff:b0b0 (tot dit gedeelte mag random gegenereerd worden vanaf 'fd')
    Subnet 1: fdac:1fff:b0b0:4bd0:: /64
    Subnet 2: fdac:1fff:b0b0:4bd1:: /64
    /sbin/ip
    Remote settings toewijzen voor domain users aan clients (en eventueel toevoegen aan domein als dit nog niet gebeurt is)
    IPV6 instellen via Netwerkinstellingen (Default gateway openlaten)
            NIC0                    NIC1
    S1: fdac:1fff:b0b0:4bd0::1 /64            fdac:1fff:b0b0:4bd1::11 /64
    dns: ::1                    dns: fdac:1fff:b0b0:4bd1::11
    S2: fdac:1fff:b0b0:4bd0::2 /64            fdac:1fff:b0b0:4bd1::12 /64
    (dns: ::1)                (dns: fdac:1fff:b0b0:4bd1::12)
    Openfiler: fdac:1fff:b0b0:4bd0::150 /64        fdac:1fff:b0b0:4bd1::1 /64    
    S3: fdac:1fff:b0b0:4bd0::3 /64            fdac:1fff:b0b0:4bd1::13 /64
    C1: fdac:1fff:b0b0:4bd0::101 /64
    dns: S1
    C2: fdac:1fff:b0b0:4bd0::102 /64
    dns: S2
    Voor windows server core:
    *powershell
        netsh interface ipv6 add address "Ethernet" fdac:1fff:b0b0:4bd0::2
        netsh interface ipv6 add address "Ethernet 2" fdac:1fff:b0b0:4bd1::12
    Voor linux: (zowel openfiler als debian)
    VOOR DEBIAN 7 (alleen ifup commando gebruiken niet ifdown):
    /sbin/ip -6 addr add fdac:1fff:b0b0:4bd0::3/64 dev eth0 (voor debian)
    /sbin/ip -6 addr add fdac:1fff:b0b0:4bd1::13/64 dev eth1 (voor debian)
    of statisch in /etc/network/interfaces:
    iface eth0 inet6 static
    address fdac:1fff:b0b0:4bd0::3
    netmask 64
    iface eth1 inet6 static
    address fdac:1fff:b0b0:4bd1::13
    netmask 64
    pico /etc/resolv.conf => lijntjes toevoegen
    => domain host.net
    => search host.net
    => nameserver 192.168.1.1
    => nameserver fdac:1fff:b0b0:4bd0::1
    VOOR OPENFILER eth0: vim /etc/sysconfig/network-scripts/ifcfg-eth0
    => IPV6_AUTOCONF=no
    => IPV6INIT=yes
    => Toevoegen: fdac:1fff:b0b0:4bd0::150/64
    VOOR OPENFILER eth1: vim /etc/sysconfig/network-scripts/ifcfg-eth1
    => IPV6_AUTOCONF=no
    => IPV6INIT=yes
    => Toevoegen: fdac:1fff:b0b0:4bd1::1/64
    ~~ /sbin/ip -6 addr add fdac:1fff:b0b0:4bd0::150/64 dev eth0 (voor openfiler)
    ~~ /sbin/ip -6 addr add fdac:1fff:b0b0:4bd1::1/64 dev eth1 (voor openfiler)
    Risico's gedeelde application pool:
        -1 proces per application pool (=>zwaar proces dat veel resources nodig heeft)
            (als dit proces vastloopt alle websites geimpacteerd)
        -gebruikers kunnen in principe aan elkaars bestanden
    1)IIS installeren op S2 via server manager op S1
    2)Role services in setup, volledig vanonder => management service aanvinken (dit staat remote management toe)
    3)Op S1 Web server zoeken en enkel van IIS de management console installeren zodat IIS van S2 beheerbaar is
    4)Powershell op S2:
    Invoke-command -ScriptBlock{Set-ItemProperty -Path HKLM:\SOFTWARE\Microsoft\WebManagement\Server -Name EnableRemoteManagement -Value 1}
    Invoke-command -ScriptBlock {Set-Service -name WMSVC -StartupType Automatic}
    Invoke-command -ScriptBlock {Start-service WMSVC}
    In IIS manager op S1 => Add connection => S2.premium.sdhost.net => account: administrator van S2
    In IIS Manager => Sites => new Website, 2 website aanmaken
        -'klant1.sdhost.net' Physical path => C:\inetpub\wwwroot\Klant1 => hostname = Klant1.host.net
        -'klant2.sdhost.net' Physical path => C:\inetpub\wwwroot\Klant2 => hostname = Klant2.host.net
    In DNS A-record toevoegen:
        -hostname: www
        -IP: 192.168.1.2
    Voor toegang via IPv6 ook een AAAA-record toevoegen:
        -hostname: www
        -IP: fdac:1fff:b0b0:4bd0::2
    Voor elke site ook een een CNAME-record aanmaken:
        -Alias name: klant1, FQDN: www.host.net
        -Alias name: klant2, FQDN: www.host.net
    In deze standaardopstelling schuilen enkele risicoís. Geef twee risicoís die de huidige
    configuratie (gedeelde application pool) met zich mee kan brengen:
    - Als je een website hebt die zwaar CPU belastend is (zoals foto's herschalen) heeft dit ook effect op je andere websites
    - Omdat je websites binnen dezelfde apppool zitten hebben ze eenzelfde identiteit en kun je geen aparte permissies opzetten.
    GROUP MANAGEMENT SERVICE ACCOUNT:
    New-ADServiceAccount IISPool1 -DNSHostName s1.amhost.net -PrincipalsAllowedToRetrieveManagedPassword Administrator -KerberosEncryptionType RC4, AES128, AES256
    Install-ADServiceAccount IISPool1
    Maybe you can do this tutorial to, it is a tuto for learning DFS & DNSSEC..
    Wat betekent de optie “dnssecok”
        -> Deze optie stelt de dnssecOK bit in voor deze query
        -> Dit verteld de server that de client dnssec verstaat en dat deze server hiervan gebruik kan maken met deze client
    Krijg je een bevestiging dat dit een secure antwoord is? (RRSIG)
        -> Neen want de zone is nog niet gesigneerd
    Controleer of de client C1 ingesteld is om secure responses af te dwingen bij zijn DNS
    caching server: get-dnsclientnrptpolicy. Resultaat?
        -> Het resultaat is niks, vermoedelijk omdat er geen instellingen zijn hiervoor
    Probeer opnieuw een request op C1 voor S1 met Resolve­DNSName. Is het signeren
    van de zone voldoende om secure antwoorden te krijgen op de client?
        -> Er komt opnieuw geen RSIG record dus dit is niet voldoende
    Om secure DNS responses op de client voor het domein securezone.lab af te dwingen
    wordt in het domein Host.net een GPO ingesteld. (nieuwe GPO voor hele domein).
    zoek op en stel deze GPO in voor responses van securezone.lab.
        -> default domain policy -> Edit =>    -> Computer Configuration > Policies > Windows Settings > Name Resolution Policy.
        "In the details pane, under Create Rules and To which part of the namespace does this rule apply, choose Suffix from the drop-down list and type sec.contoso.com next to Suffix."
        "On the DNSSEC tab, select the Enable DNSSEC in this rule checkbox and then under Validation select the Require DNS clients to check that name and address data has been validated by the DNS server checkbox."
        "In the bottom right corner, click Create and then verify that a rule for sec.contoso.com was added under Name Resolution Policy Table."
        => GPupdate /force uitvoeren
        => Dan kan de policy bekeken worden
    Je zorgt er uiteraard ook voor dat deze policy toegepast werd op de client (C1) en controleer dit opnieuw met get-dnsclientnrptpolicy.
        => GPupdate /force
        => get-dnsclientnrptpolicy => levert hetzelfde resultaat als op de server
    Opnieuw: Resolve­DnsName s1.securezone.lab ­server S1 ­dnssecok Wat krijg je als antwoord te zien? Wat is de oorzaak?
    (Distribueer) Kopieer de trust achor data van de secure.lab zone op S2 naar S1 en importeer die op de DNS van S1 als trusted anchor. (keyset­securezone.lab)
        http://technet.microsoft.com/en-us/library/hh831411.aspx
    opnieuw: Resolve­DnsName s1.securezone.lab ­server S1 ­dnssecok Krijg je nu een (beveiligd antwoord)?
        ->Ik krijg nu een beveiligd antwoord van de DNS server gesigneerd door securezone.lab met geldigheidstermijn
    p23 Distributed File System
    Installeer op beide server de “file services role”.
        -> Add roles and features
        -> File services
            -> DFS
    Maak een namespace aan (DOCUMENTATION) in je domein hOst.net. Stel de share­permissions zo in dat de groep ‘auteurs’ schrijfrechten heeft. gewone gebruikers
    mogen enkel leesrechten hebben.
        -> DFS manager
        -> Namespaces => Add namespace
    maak een folder aan in de namespace DOCUMENTATION met als naam PDF
        -> Add folder
    maak een tweede target aan voor de PDF folder
        -> Add target to folder
    stel replicatie in tussen de twee folder targets. De inhoud wordt vanaf nu dus gesynct.
        -> Automatisch bij 2de target volg de wizard
    Welke andere stappen zijn nodig om een volledig redundant DFS systeem op te zetten?
        -> De folder moeten via DFS geschared staan
        -> De replicatie moet ingesteld worden
    maak een diagnostisch raport aan over hoe replicatie gebeurt, en corrigeer eventue vastgestelde problemen.
        -> Rechtermuisknop op de replication object
        -> Create diagnostic report
        -> kies de reports
    stel quota’s in. In de map PDF maak je een subfolder CATALOGS aan, maar zorg dat die niet groter dan 10MB kan worden. Stel hiervoor een harde limiet in.
        -> install FSRM bij file services
        -> klik quotas => add quota => kies het bestand
        -> nieuwe quota => 10mb hard aanvinken
        -> save
        http://technet.microsoft.com/en-us/library/cc875787(v=ws.10).aspx
    omdat we willen vermijden dat de volledige bandbreedte ingenomen wordt door DFS,beperken we de replication speed tot 2MBps.
        -> Klik op de replication -> rechterkolom kies vor edit replication group
        -> Stel de 2MBps in

  • [SOLVED]No Sound with ALSA - Intel Corporation 82801G HD Audio

    Hey all,
    I've succesfully installed Arch Linux. My past two attempts have met with failure, all because of my own failure to read and follow directions correctly. This time everything is installed correctly. I am running Kdemod3 on my laptop with Arch and everything works great. I LOVE Pacman and the simplicity of Arch's configuration files. It's super fast and all together simple. My only remaining problem is this:
    My sound with ALSA is not functioning. I followed the installation instructions at the arch wiki and after unmuting all of my channels I still would not get any sound. My sound module is snd_hda_intel and it is detected, loaded and the whole nine yards (as far as I can tell). My user is a member of the 'audio' user group also. I looked at the troubleshooting tips on the bottom of the Wiki but decided not to try them as they do not seem to pertain to my card (snd_hda_intel) but I will try them if anyone would like me to.
    If anyone has any ideas, they'd be greatly appreciated!:D Anything I can provide that you need I will be more than willing to provide.
    Thanks for such a great distribution,
    Dan
    Last edited by JazzDan (2008-06-29 05:06:35)

    Problem resolved. I ran alsaconf, selected my soundcard, and everything was working from there out. Thanks MisfitI38 on the IRC!!!

  • Windows 8--"iTunes64Setup" (11.1.3) will not run/install

    Hi all,
    I received an iPad air for Christmas today, and naturally I plugged it into my laptop (a Sony Vaio, running Windows 8.0) in order to access iTunes (we do not have wi-fi at home).  My laptop, which at the time was running iTunes 11.0.5 (I believe) said that the iPad needed the latest iTunes update (11.1.3--well, technically it said 11.1) to work. 
    Well, that's all fine and dandy, but the Apple Software update program proved disappointing immediately. I checked iTunes off (99.83 MB), but not iCloud, and clicked install one item.  Now, the download always stops during the 67.80 MB mark of the download process (I have tried this multiple times--once or twice it reached an .1 MB mark, and then stopped).  An error message appears: "iTunes" has an invalid signature.  It will not be installed.  |and then| Errors occurred while installing the updates.  If the problem persists, choose Tools > Download only and try installing manually.  ...That doesn't work either.
    So I go to download the 64 bit update from the Apple website itself (I use Google Chrome, by the way--and yes, IE also proved no better), and after a few failed download attempts (they said: Failed--Network error) manage to get the file labelled "iTunes64Setup."  If I click on it directly, it asks me if I want to run it (the publisher is 'unknown' apparently).  When I do, an empty bar flashes on screen (and an icon appears in the taskbar) for the briefest of moments before both disappear.
    The same thing happens when I try to run it as an administrator. 
    My security software is Kaspersky, and I did go check to see if the setup was allowed.  I did try to clean out my Temp folder, but that has met with failure as well (though perhaps I'm doing that solution wrong, I'm not sure). 
    I did at one point uninstall my iTunes completely (and I deleted the related files) in an attempt to do a complete reinstall.  That failed as well. In fact, I couldn't even download iTunes 11.0.5 again (even though it has been working without a problem for months).  I did manage to find an old 10 point something or other version of iTunes that has installed well enough on my laptop; but you know, I'd really like for my gift to not go to waste. 
    Any advice would be appreciated. 

    I am having the same issue with Vista 64 bit: After many failed download attempts ("network error") the Progress Bar briefly appears and that's it.
    Searched for solution that led me to running "Microsoft FixIt", deinstalling iTunes, Apple Software Update, Mobile Dev Support, Bonjour, and Application Support - even manually deleting common files that were left over (tough with Vista). No difference. FYI, I was able to get rid of the Apple folder in Program Files (x86)/Common File, but not in Program Files/Common Files ... but that shouldn't make a difference as I am installing iTunes64Setup.exe, right?
    I even tried iTunes 10.7 and 10.6.3 from Apple's support page ... same differnce.
    Had a lot of security updates on 1/22/14 (all related to Office 2007 (including SP3), though). So I tried to restore past this point, but an "unknown error" occurred and I am stuck where I am ... lovely.
    So now my system is chopped and I seem to not be able to get iTunes even close to my computer ... :-(
    Just Irritatedtech said: Any suggestions are highly welcome ... - Thx.

  • How to update the field 'VBRK-ZUONR' of Billing Document Header(VF03)

    Hi Experts.
    I got a request to update the field 'VBRK-ZUONR' of Billing Document Header(T-code:VF03).
    At first i thought it might be a BADI or User-Exit case and looked up in Standard Program but found nothing.
    Thus i doubted if it was a configuration problem.
    I tryed to configure through transaction code "VTFA" "VTFL" "VTFF" and met another failure.
    Now i'm totally lost and hope for your advice,any information would be appreciated.
    The Billing Document is automatically generated from the posting of Outbound Delivery.
    Regards.
    Panda.

    Hi friends.
    I've found where point is.
    The include program 'RV60AFZC' contains a form named 'USEREXIT_FILL_VBRK_VBRP',
    in which the field 'VBRP-ZUONR' could be set through coding.
    In our system the codes had been changed once,which led to the misalignment that confused me yesterday.
    On the other hand,undoubtedly VTFL is available to configure the value of 'VBRP-ZUONR'.
    For more information plz refer to
    http://help.sap.com/saphelp_46c/helpdata/en/18/f62c7dd435d1118b3f0060b03ca329/content.htm
    Thanks again to all of you.
    Best Regards
    Panda.

  • "Suite Product Activation Needed" (Acrobat Pro 9.5.0)

    Like several people have on this forum, I upgraded to Lion a few weeks ago with no issues, but trying to launch Acrobat Pro today resulted in this:
    I've searched the forii, tried several possible solutions, and all have met with failure so far. I'm running OS X 10.7.3, and the CS5 suite; the version of Acrobat Pro is ostensibly 9.5.0. Is there anything else I can provide that would help turn this around quickly?
    —Ken
    (P.S. Excuse the screen name. It wasn't accepting my usual one, nor a formal name, and that's what I chose in exasperation—which, of course, it took and now won't let me change.)

    OK, got a new solution; This problem plauged me for months and yesterday I finally stumbled on an answer, and it was NOT on Adobe's site - but what took months of Adobe chat techs keeping me busy for hours trying solutions that didn't work, this worked in seconds.
    This is with CS5, Acrobat 9.3.0, which are both part of the CS5 Design Premium suite upgrade I purchased, and this is on OS X 10.8.2, Mid 2010 iMac with 3.2GHz Intel i3.
    I got this solution from this website:
    http://blog.erikphansen.com/adobe-cs4-error-15030-aka-i-hate-adobe-reason-34/
    I made my own list to detail what I did; your mileage may vary:
    First step is to make sure all products are installed, including Acrobat Pro.
    The next step is to download the license repair tool from Adobe at
    http://www.adobe.com/support/contact/licensing.html
    Next, locate the cache.db file from the Library/Application Support/Adobe/Adobe PCD/cache folder, and throw it in the trash.
    Next, locate the Flex net Publisher folder in the /Library/Preferences folder and throw it in the trash.
    Now, mount the dmg file downloaded from Adobe.
    Go to Applications/Utilities and launch the Terminal application.
    Enter the following:
    cd /Volumes/LicenseRecovery\ 11.6.1/LicenseRecovery/
    sudo python LicenseRecover.py
    and hit Enter.
    Enter password when prompted.
    (There are instructions for multiple attempts, but this only took one try for me.)
    At the ?, hit Enter.
    This only took a few seconds and the process completed. Please note, the file warned of a processor error code but the file completed successfully anyway.
    I then opened Acrobat Pro, and was presented with a registration dialog box to enter the serial number. I entered all information requested.
    I then opened Photoshop, and was presented with the dialog box to enter the product serial number. In the course of this I also had to enter the serial from the upgraded product, which I just happened to have gotten out of storage "just in case".  I entered all information requested and Photoshop opened.
    I then opened Dreamweaver, and was presented with a dialog box to enter my Adobe ID, or to create a new account. I entered my current account information and Dreamweaver opened.
    I then opened all other CS5 Design Premium apps and all opened successfully. I have since then updated all apps to current updates.
    I should also mention that I tried to update Acrobat over the web automatically but had a problem that required me to restart to clear the screen of the Safari plug-in dialog box. Investigating the website, it appears that each update to Acrobat Pro 9 required the previous update before it, so I went and downloaded all of them and installed them one by one. It all works now as it should.
    Hope that helps somebody, this whole thing drove me crazy and had me looking for Adobe alternatives!

  • Jar files............could do with some help

    I want to deploy an application I have built along with the JRE it seems creating a JAR file is the way to go. Could somebody confirm this & advise of any other steps that I will need to take along the way. Please take it very SLOWLY and omit nothing.
    I have attempted to create and run a JAR file but have met with failure so far let me explain where i am upto.
    I have an application with several class files all data or code no image or sound files. class that contains the main method is called
    "pStruct". have created a JAR file called "TelDir.jar" succesfully & checked that all required classes are their they are. Next have built the file "mainClass.txt" in notepad have been carefull to get the syntax & case correct & have entered newline before saving file.
    Now i think i am merging the text file into the manifest of the jar file
    with the line:-
    jar cmf mainClass TelDir.jar pStruct.class
    this results in an error message as follows
    java.io.FilenotFoundException:main Class(System cannot find the file specified).
    now I have tried adding .txt to the end of mainClass and the line seems
    to execute happily but if i then try and run my amended jar file with:
    java -jar TelDir.jar
    I get the following response:-
    Exception in thread "main" javac.lang.NoclassDef Found Error:GUIFrame
    and a about 8 other lines of complaint.
    ("GUIFrame" being one of my classes in the jar file)
    when building the jar file i have not stated each class individually but used the wild card. would this cause a problem. I have also made sure ALL files invloved are all in the same subdirectory.
    COULD SOMEBODY PLEASE HELP I AM GETTING A BIT F.R.U.S.T.R.A.T.E.D AFTER MESSING WITH THIS FOR 6 HOURS TODAY!!!!. (calming down now ahhhhhh.)
    Hoping somebody can tell me what i am doing wrong
    Scott

    Have discovered my mistake at the end of the line "jar cmf mainClass.txt TelDir.jar pStruct.class" pStruct is the class containing my main method as stated in the Manifest but it should read all of the classes required to make my application run or * the wildcard.
    Things always seem clearer the following day.
    When you say post the contents of the Manifest file how can i examine its contents or do you mean the contents of the text file.
    Now i have my jar file how do i take this further to enable me to deploy my application along with the JRE onto another machine?
    Regards
    Scott

  • How to display a simple rss feed?

    Hi,
    I've build a simple application that has a httpservice called rss that calls "http://www.nytimes.com/services/xml/rss/nyt/GlobalBusiness.xml" and retrieves the rss feed. Under test operation I can see it returning the feed.
    When the init() function is called the httpservice is called and passed to a datagrid.
    However, when I run it I get the following fault.
    Security error accessing url
    Destination: DefaultHTTP
    In the console I get the following messeage:
    Warning: Domain www.nytimes.com does not specify a meta-policy.  Applying default meta-policy 'master-only'.  This configuration is deprecated.  See http://www.adobe.com/go/strict_policy_files to fix this problem.
    Error: Request for resource at http://www.nytimes.com/services/xml/rss/nyt/GlobalBusiness.xml by requestor from http://localhost:8888/Newsroom-debug/Newsroom.swf/[[DYNAMIC]]/4 is denied due to lack of policy file permissions.
    *** Security Sandbox Violation ***
    Connection to http://www.nytimes.com/services/xml/rss/nyt/GlobalBusiness.xml halted - not permitted from http://localhost:8888/Newsroom-debug/Newsroom.swf
    [Unload SWF] /Newsroom-debug/Newsroom.swf
    I have checked different posts online and in this forum describing crossdomain.xml and settings in the flash player global settings to resolve this issue, but I can for some reason not get it to work.
    I want to be able to take rss feeds from any site and display them in a simple datagrid?
    Any suggestions?
    Below is the application code.
    Br,
    Karsten!
    <?xml version="1.0" encoding="utf-8"?>
    <s:Application xmlns:fx="http://ns.adobe.com/mxml/2009"
                   xmlns:s="library://ns.adobe.com/flex/spark"
                   xmlns:mx="library://ns.adobe.com/flex/mx" minWidth="955" minHeight="600"
              creationComplete="init();" xmlns:rss="services.rss.*">
    <fx:Script>
            <![CDATA[
                import mx.controls.Alert;
                import mx.events.FlexEvent;
                import mx.rpc.events.ResultEvent;
              protected function init():void
                    getDataResult.token = rss.getData();
            ]]>
        </fx:Script>
        <fx:Declarations>
            <s:CallResponder id="getDataResult"/>
            <rss:Rss id="rss" fault="Alert.show(event.fault.faultString + '\n' + event.fault.faultDetail)" showBusyCursor="true"/>
        </fx:Declarations>
        <mx:DataGrid id="rssGrid" width="500" dataProvider="{getDataResult.lastResult.channel.item}" >
            <mx:columns>
                <mx:DataGridColumn headerText="Feed" dataField="headline" />
                <mx:DataGridColumn headerText="description" dataField="description"/>
            </mx:columns>
            </mx:DataGrid>
    </s:Application>

    OK.
    Tried out your suggestion and it works!
    Thanks saisri2k2
    1) I created an http service which calls a php file:
    <mx:HTTPService
                id="rssNewYorkTimes"
                url="php/newyorktimes.php"
                result="rssNewYorkTimes_resultHandler(event)"
                resultFormat="e4x" />
    2) The php file then gets the feed and passes it back to the rssNewYorkTimes_resultHandler:
    <?php
      $feed = 'http://www.nytimes.com/services/xml/rss/nyt/GlobalBusiness.xml';
      $rawfeed = @file_get_contents($feed);
      print $rawfeed; 
    ?>
    3) the resulthandler then processes the feed and puts it in an arraycollection that can be passed to the datagrid:
    protected function rssNewYorkTimes_resultHandler(event:ResultEvent):void
                    var xmlList:XMLList = event.result.channel.item as XMLList;
                    for each(var item:XML in xmlList)
                        rssCollection.addItem({title: item.title, description:item.description, source:item.link});
                    buildRss();
    Thanks also to Chris Black for his post which explains in detail how this trick is done!
    http://www.blackcj.com/blog/2008/10/04/flexfeed-integrate-twitter-rss-feeds-into-flex/

  • Stompclient is not working for Flash Player 9 (Flash Player 9,0,124,0)

    We are facing issue in STOMP client because of newly
    implemented restriction on flash player.(
    http://www.adobe.com/devnet/flashplayer/articles/flash_player9_security_update.html).
    Because of this, Our STOMP client is not able to get messages
    from activemq.
    We have tried to add socket meta files as discussed in others
    article but we were not able to get solutions.
    We have done below stuffs.
    1) Added LoadPolicy code in stompclient for getting
    policyfile from server running on 80 port.
    2) Also set xmlSocket as load policy to get connection from
    stompclient to Activemq.
    1) PolicyFile.xml(loading this also in STOMPClient.swf)
    <?xml version="1.0"?>
    <!DOCTYPE cross-domain-policy SYSTEM
    "/xml/dtds/cross-domain-policy.dtd">
    <!-- Policy file for xmlsocket://socks.example.com -->
    <cross-domain-policy>
    <!-- This is a master-policy file -->
    <site-control
    permitted-cross-domain-policies="master-only"/>
    <!-- Instead of setting to-ports="*",
    administrators can use ranges and commas -->
    <!-- This will allow access to ports 123, 456, 457, and
    458 -->
    <allow-access-from domain="*" to-ports="*" />
    </cross-domain-policy>
    2) Flash players logs(using debug version of Flash player)
    Error: Request for resource at xmlsocket://192.168.1.12:61613
    by requestor from
    http://127.0.0.1/blackwells/bid/stompclient.swf
    is denied due to lack of policy file permissions.
    OK: Root-level SWF loaded:
    http://127.0.0.1/blackwells/bid/stompclient.swf
    OK: Root-level SWF loaded:
    http://127.0.0.1/blackwells/bid/ladyguinn.swf
    OK: Searching for <allow-access-from> in policy files
    to authorize data loading from resource at
    xmlsocket://192.168.1.12:61613 by requestor from
    http://127.0.0.1/blackwells/bid/stompclient.swf
    OK: Policy file accepted:
    http://192.168.1.12/crossdomain.xml
    Warning: Timeout on xmlsocket://192.168.1.12:61613 (at 3
    seconds) while waiting for socket policy file. This should not
    cause any problems, but see
    http://www.adobe.com/go/strict_policy_files
    for an explanation.
    Error: Request for resource at xmlsocket://192.168.1.12:61613
    by requestor from
    http://127.0.0.1/blackwells/bid/stompclient.swf
    is denied due to lack of policy file permissions.
    OK: Root-level SWF loaded:
    http://mail.google.com/a/sigmainfo.net/im/sound.swf
    OK: Root-level SWF loaded:
    http://127.0.0.1/blackwells/bid/stompclient.swf
    OK: Root-level SWF loaded:
    http://127.0.0.1/blackwells/bid/ladyguinn.swf
    OK: Root-level SWF loaded:
    http://mail.google.com/a/sigmainfo.net/im/sound.swf
    OK: Root-level SWF loaded:
    http://127.0.0.1/blackwells/bid/stompclient.swf
    OK: Root-level SWF loaded:
    http://127.0.0.1/blackwells/bid/bill.swf
    OK: Searching for <allow-access-from> in policy files
    to authorize data loading from resource at
    xmlsocket://192.168.1.12:61613 by requestor from
    http://127.0.0.1/blackwells/bid/stompclient.swf
    OK: Policy file accepted:
    http://192.168.1.12/crossdomain.xml
    OK: Root-level SWF loaded:
    http://127.0.0.1/blackwells/bid/stompclient.swf
    OK: Root-level SWF loaded:
    http://127.0.0.1/blackwells/bid/bill.swf
    OK: Searching for <allow-access-from> in policy files
    to authorize data loading from resource at
    xmlsocket://192.168.1.12:61613 by requestor from
    http://127.0.0.1/blackwells/bid/stompclient.swf
    OK: Policy file accepted:
    http://192.168.1.12/crossdomain.xml
    OK: Root-level SWF loaded:
    http://127.0.0.1/blackwells/bid/stompclient.swf
    OK: Root-level SWF loaded:
    http://127.0.0.1/blackwells/bid/bill.swf
    OK: Searching for <allow-access-from> in policy files
    to authorize data loading from resource at
    xmlsocket://192.168.1.12:61613 by requestor from
    http://127.0.0.1/blackwells/bid/stompclient.swf
    OK: Policy file accepted:
    http://192.168.1.12/crossdomain.xml
    Warning: Ignoring <site-control> tag in policy file
    from
    http://192.168.1.12:843/policyfile.xml.
    This tag is only allowed in master policy files.
    Warning: Domain 192.168.1.12 does not specify a meta-policy.
    Applying default meta-policy 'all'. This configuration is
    deprecated. See
    http://www.adobe.com/go/strict_policy_files
    to fix this problem.
    3) Setting below load policy files in stompclient.mxml
    flash.system.Security.loadPolicyFile("
    http://" + server + "/crossdomain.xml");
    //flash.system.Security.loadPolicyFile("
    http://" + server + "/policyfile.xml");
    flash.system.Security.loadPolicyFile("xmlsocket://" + server
    + ":"+port);
    4) we have also changed crossdomain.xml (this is using Schema
    instead of DTD as <site-control > is not there in DTD)
    <?xml version="1.0" encoding="UTF-8"?>
    <cross-domain-policy xmlns:xsi="
    http://www.w3.org/2001/XMLSchema-instance"
    xsi:noNamespaceSchemaLocation="
    http://www.adobe.com/xml/schemas/PolicyFile.xsd">
    <allow-access-from domain="*" />
    <site-control
    permitted-cross-domain-policies="master-only"/>
    </cross-domain-policy>
    I have also did following,
    1) Started activemq on remote machine.
    2) Started jetty on 843 port in the same machine were
    activemq is running.
    3) i put the crossdomain.xml as listed above.
    4) i didnt specified explicity loadPolicyFile().
    Following are the contents of profiling logs:
    OK: Root-level SWF loaded:
    http://192.168.1.12/blackwells/bid/stompclient.swf
    OK: Root-level SWF loaded:
    http://192.168.1.12/blackwells/bid/ladyguinn.swf
    OK: Searching for <allow-access-from> in policy files
    to authorize data loading from resource at
    xmlsocket://192.168.1.47:61613 by requestor from
    http://192.168.1.12/blackwells/bid/stompclient.swf
    Warning: [strict] Ignoring policy file at
    xmlsocket://192.168.1.47:843 due to incorrect syntax. See
    http://www.adobe.com/go/strict_policy_files
    to fix this problem.
    Warning: Timeout on xmlsocket://192.168.1.47:61613 (at 3
    seconds) while waiting for socket policy file. This should not
    cause any problems, but see
    http://www.adobe.com/go/strict_policy_files
    for an explanation.
    Error: Request for resource at xmlsocket://192.168.1.47:61613
    by requestor from
    http://192.168.1.12/blackwells/bid/stompclient.swf
    is denied due to lack of policy file permissions.
    Thanx in advance

    See this cool mp3 xml player with visualization, playlist and
    skins. Fully customisable. Vector.
    http://flashden.net/item/mp3-xml-strongplayerstrong-with-visualization-and-skins-vectorise d/11851

Maybe you are looking for

  • IMovie 6.0.3 does not sync with iPhoto 8.1

    iMovie 6.0.3 will no longer sync with iPhoto 8.1. I get a message "Open iPhoto 2 or later or Aperture 1.5 or later to see photos from your iPhoto or Aperture library in this list." This was working fine just days ago. I am using OS X 10.6.1

  • Using a KVM switch between the Mini and a PC

    I've just bought a Mini to try out the whole Mac experience. I'm having trouble getting a KVM switch to work with the Mac. I have a Tripp Lite B034-002-R KVM switch to share between the Mini and my WinXP PC. The switch changes over to the other compu

  • Mac book pro hanging and slow very slow

    hi all i have a 2010 mbp 17" and it is playing up, start up takes anywhere from 30 - 240mins started activity monitor and nothing really showing up, tried to work on some photos in aperture and it was a nightmare quit several times and took me over t

  • Ironport Cluster Load Balancing

    Anyone knows if it is possible to configure a load balancing of two C100 in a cluster. I configured the second machine in the cluster two weeks ago. when I look in the stats, the second machine does nothing. the first machine is on 3% CPU and whe hav

  • JRockit  R27.3.1 Out Of Memory issue.

    Hi, I am getting the frequent Out Of meory errors (frequency being 2 weeks or so). I got the following mesage in the Weblogic console logs : ===== BEGIN DUMP ============================================================= JRockit dump produced after 13