Natd question
Hello everyone,
I'm having trouble understanding how to set up the startup options for the natd daemon. Let me explain myself. I recently found out how to enable port forwarding in a quite easy way, that is writing my port_redirect rules into a conf file, killing natd and reloading it with the -f option at the end pointing to that conf file. This way I'm able to achieve Open status (instead of Moderate) in the XBox Live connection tests on my XBox 360, which is connected to the internet through the shared airport connection of my Macbook.
The fact is that natd seems to restart itself with its default settings every now and then, thus "downgrading" me back to a Moderate NAT status, which is not good enough for me. My question is: since the only thing that I add to the natd command (which is /usr/sbin/natd -alias_address 192.168.2.140 -interface en1 -use_sockets -same_ports -unregistered_only -dynamic -clamp_mss -enable_natportmap -natportmap_interface en0) is a -f flag, is there a way to set this custom flag to be loaded with the default settings?
I googled around and found out that Leopard handles its startup items such as daemons and agents differently, and all is handled through the launchd command. I haven't been able, though, to find which is the plist in /System/Library/LaunchDaemons that defines the options for the natd daemon.
Thanks in advance for your help,
Cheers,
Juan
Up...
Similar Messages
-
Natd stopped working after Software Updates: Bogus VLAN injections?
Software Update installed three packages on the iMac today:
Safari 3.1 Update (Universal)
Security Update 2008-002 (Universal)
AirPort Extreme Update 2008-001
This machine (running 10.4.11, fully updated now) is my connection-sharing gateway the internet for my wife's MacBook, a Linux box and a TiVo unit.
Comcast ==(ethernet)== public-IP iMac ==(wireless)== private IP MacBook, Linux, TiVo
I ran my usual firewall + Internet sharing script after the mandatory reboot.
The iMac's broadband connection worked fine for local programs (Safari, ssh) but none of the machines with private IP addresses on the LAN could see the outside world. The machines on the home LAN could see each other fine -- ping, ssh, etc. Time to start testing!
When I pinged an external machine from the Linux machine, the DNS lookup succeeded after a delay, but it seemed that no ICMP responses came back. Actually, packet tracing with Wireshark showed that the responses had come in with an extra four-byte header field I had not seen before: something called "802.1Q Virtual Lan" inserted between the Ethernet II header and the Internet Protocol header. Sample packet dump (slightly edited):
No.: 20
Time: 00:04:56.746703
Source: 64.233.187.99
Destination: 192.168.1.2
Protocol: ICMP
Info: Echo (ping) reply
Frame 20 (102 bytes on wire, 102 bytes captured)
Ethernet II, Src: AppleCom_54:1b:30 (00:17:f2:54:1b:30), Dst: FirstInt_94:75:8f (00:40:ca:94:75:8f)
*802.1Q Virtual LAN*
*001. .... .... .... = Priority: 1*
*...0 .... .... .... = CFI: 0*
*.... 0000 0000 0000 = ID: 0*
*Type: IP (0x0800)*
Internet Protocol, Src: 64.233.187.99 (64.233.187.99), Dst: 192.168.1.2 (192.168.1.2)
Internet Control Message Protocol
Looking further back in the trace, it turned out that the DNS delay had the same oddity. The Linux machine sent out a request to the primary DNS server, got back an immediate response with the extra "802.1Q" field, waited 5 seconds, sent out a DNS request to the secondary server, got an immediate normal response (without "802.1Q"), then immediately used the returned numeric address for the pings. It's as if the Linux machine ignored the packet with the extra, interposed header.
I traced HTTP traffic to google.com and saw a similar pattern:
1. bogus 1st DNS response
2. delay
3. good second DNS response
4. sent HTTP SYN packet
5. got back HTTP SYN/ACK with extra "802.1Q" field
6. multiple retries of steps 4 and 5.
I suspect that one or more of the software updates is inserting this VLAN stuff into NAT-ed packets over Airport. The receiving machines drop the packets because they expect the Ethernet II header to be followed by the IP header, not 802.1Q data.
An old discussion thread ([VOIP VLAN using 802.1q frames causing massive dropped packets|http://discussions.apple.com/thread.jspa?threadID=378673#1833386]) talked about a similar problem.
Here are the NAT-related commands from my firewall script:
natd -u -dynamic -interface en0
/sbin/ipfw add divert natd all from not me to any via en0
sysctl -w net.inet.ip.forwarding=1
Question: is there a known workaround to get the MacOSX network drivers not to insert 802.1Q VLAN headers?
Thanks in advance!
--GCLHello faab:
Welcome to Apple discussions.
I am afraid to indicate that you probably will need to wait until you are back and have the software install DVD.
There is really no way to tell what happened. To fix it, however, you really need the DVDs.
Barry -
Natd[218]: failed to write packet back (Permission denied)
I have the following line appearing in my system log on my xserve running 10.4.6. Could anyone shed some light on what the error might be and if its something that we need to be concerned about.
natd[218]: failed to write packet back (Permission denied)
PowerBook Intel Core Duo 2GB Ram Mac OS X (10.4.6)The following URLs may help you:
http://www.derkeiler.com/Mailing-Lists/FreeBSD-Security/2001-11/6749.html
http://archives.neohapsis.com/archives/freebsd/2000-11/0367.html
http://lists.freebsd.org/pipermail/freebsd-questions/2003-June/009690.html
Mihalis. -
Natd[210]: failed to write packet back (Permission denied)
Hello,
I've updated my server with 10.4.11 (from 10.4.10) and now when i look at the system log from Server Admin i see a lot of :
"natd[210]: failed to write packet back (Permission denied)"
The server is running all the basic network services and it's an OD master.
Could somebody tell me what's going on with my server ?The following URLs may help you:
http://www.derkeiler.com/Mailing-Lists/FreeBSD-Security/2001-11/6749.html
http://archives.neohapsis.com/archives/freebsd/2000-11/0367.html
http://lists.freebsd.org/pipermail/freebsd-questions/2003-June/009690.html
Mihalis. -
this problem is eating my sys log up, all my services seem to be working it would seem that this problem has happened to others i have seen no real
good answers to the question it would seem like a configuration problem here are the services i am running
address book
afp
dhcp
dns
firewall
ical
ichat
nat
open directory
print
push notification
smb
web
software just installed and the system was just setup as a gate way
net config :
Automatic:
Active Location: Yes
Services:
Ethernet 1:
Type: Ethernet
BSD Device Name: en0
Hardware (MAC) Address: 00:17:f2:02:75:22
IPv4:
Addresses: 173.11.2*0.***
Configuration Method: Manual
Router: 173.11.210.210
Subnet Masks: 255.255.255.252
IPv6:
Configuration Method: Automatic
DNS:
Server Addresses: 68.87.**.98, 68.**.69.**
Proxies:
Exceptions List: *.local, 169.254/16
FTP Passive Mode: Yes
SMB:
NetBIOSName: extremenet
WINSAddresses:
Workgroup: WORKGROUP
Ethernet 2:
Type: Ethernet
BSD Device Name: en1
Hardware (MAC) Address: 00:17:f2:02:75:23
IPv4:
Addresses: 192.168.1.1
Configuration Method: Manual
Subnet Masks: 255.255.255.0
IPv6:
Configuration Method: Automatic
DNS:
Server Addresses: 192.168.1.1
Proxies:
Exceptions List: *.local, 169.254/16
FTP Passive Mode: Yes
SMB:
NetBIOSName: extremenet
WINSAddresses:
Workgroup: WORKGROUP
AirPort:
Type: IEEE80211
BSD Device Name: en2
Hardware (MAC) Address: 00:17:f2:96:76:60
IPv4:
Configuration Method: DHCP
IPv6:
Configuration Method: Automatic
Proxies:
Exceptions List: *.local, 169.254/16
FTP Passive Mode: Yes
IEEE80211:
Join Mode: Automatic
PowerEnabled: 0
PreferredNetworks:
SecurityType: WPA2 Personal
SSID_STR: Airport Extreme
Unique Network ID: F3922B59-58B2-4E25-8BFA-8924012125FD
Unique Password ID: A2F3E2B9-DE2F-4B1F-960E-9F740F30F392
SMB:
NetBIOSName: extremenet
WINSAddresses:
Workgroup: WORKGROUP
Bluetooth DUN:
Type: PPP
IPv4:
Configuration Method: PPP
IPv6:
Configuration Method: Automatic
Proxies:
FTP Passive Mode: Yes
PPP:
ACSP Enabled: No
Display Terminal Window: No
Redial Count: 1
Redial Enabled: Yes
Redial Interval: 5
Use Terminal Script: No
Dial on Demand: No
Disconnect on Fast User Switch: Yes
Disconnect on Idle: Yes
Disconnect on Idle Timer: 600
Disconnect on Logout: Yes
Disconnect on Sleep: Yes
Idle Reminder: No
Idle Reminder Time: 1800
IPCP Compression VJ: Yes
LCP Echo Enabled: No
LCP Echo Failure: 4
LCP Echo Interval: 10
Log File: /var/log/ppp.log
Verbose Logging: No
SMB:
NetBIOSName: extremenet
WINSAddresses:
Workgroup: WORKGROUP
FireWire:
Type: FireWire
BSD Device Name: fw0
Hardware (MAC) Address: 00:16:cb:ff:fe:6e:28:18
IPv4:
Configuration Method: DHCP
IPv6:
Configuration Method: Automatic
Proxies:
Exceptions List: *.local, 169.254/16
FTP Passive Mode: Yes
SMB:
NetBIOSName: extremenet
WINSAddresses:
Workgroup: WORKGROUP
syslog:
Jul 4 17:18:49 extremenet natd[38056]: failed to write packet back (No route to host)
Jul 4 17:18:54 extremenet natd[38056]: failed to write packet back (Host is down)
Jul 4 17:19:25: --- last message repeated 5 times ---
Jul 4 17:19:25 extremenet natd[38056]: failed to write packet back (No route to host)
Jul 4 17:19:30 extremenet natd[38056]: failed to write packet back (Host is down)
Jul 4 17:20:01: --- last message repeated 5 times ---
Jul 4 17:20:01 extremenet natd[38056]: failed to write packet back (No route to host)
Jul 4 17:20:06 extremenet natd[38056]: failed to write packet back (Host is down)
Jul 4 17:20:38: --- last message repeated 5 times ---
Jul 4 17:20:49 extremenet natd[38056]: failed to write packet back (No route to host)
Jul 4 17:20:52 extremenet com.apple.wikid.mailinglists[41461]: mail:status = "list-updated"
Jul 4 17:20:54 extremenet natd[38056]: failed to write packet back (Host is down)
Jul 4 17:21:25: --- last message repeated 5 times ---
Jul 4 17:21:25 extremenet natd[38056]: failed to write packet back (No route to host)
Jul 4 17:21:30 extremenet natd[38056]: failed to write packet back (Host is down)
Jul 4 17:22:01: --- last message repeated 5 times ---
Jul 4 17:22:01 extremenet natd[38056]: failed to write packet back (No route to host)
Jul 4 17:22:06 extremenet natd[38056]: failed to write packet back (Host is down)
Jul 4 17:22:37: --- last message repeated 5 times ---
Jul 4 17:22:37 extremenet natd[38056]: failed to write packet back (No route to host)
Jul 4 17:22:42 extremenet natd[38056]: failed to write packet back (Host is down)
Jul 4 17:23:12: --- last message repeated 5 times ---
Jul 4 17:23:13 extremenet natd[38056]: failed to write packet back (No route to host)
Jul 4 17:23:18 extremenet natd[38056]: failed to write packet back (Host is down)
Jul 4 17:23:49: --- last message repeated 5 times ---
Jul 4 17:23:49 extremenet natd[38056]: failed to write packet back (No route to host)
Jul 4 17:23:54 extremenet natd[38056]: failed to write packet back (Host is down)
Jul 4 17:24:25: --- last message repeated 5 times ---
Jul 4 17:24:25 extremenet natd[38056]: failed to write packet back (No route to host)
Jul 4 17:24:30 extremenet natd[38056]: failed to write packet back (Host is down)
Jul 4 17:25:01: --- last message repeated 5 times ---
Jul 4 17:25:01 extremenet natd[38056]: failed to write packet back (No route to host)
Jul 4 17:25:06 extremenet natd[38056]: failed to write packet back (Host is down)
Jul 4 17:25:38: --- last message repeated 5 times ---
Jul 4 17:25:49 extremenet natd[38056]: failed to write packet back (No route to host)
Jul 4 17:25:54 extremenet natd[38056]: failed to write packet back (Host is down)See "error -3259" here.
-
One of our servers had the DHCP service removed a while ago. However the system log keeps reporting "natd[199]: failed to write packet back (No route to host)", I'd assume because DHCP isn't there anymore. Trying to kill natd took the server offline completely.
Does anybody know why natd is still running and whether it needs to? What is the best way to remove/disable it?
Thanks.I'd like to continue this thread....
I have a 10.5.8 Server that has the NAT/DHCP/Firewall hiccup-misconfiguration of the nature....
Here's the log
4/27/10 7:50:28 AM natd[317] failed to write packet back (No route to host)
4/27/10 7:50:28 AM natd[317] failed to write packet back (No route to host)
4/27/10 7:50:30 AM natd[317] failed to write packet back (Host is down)
4/27/10 7:50:30 AM natd[317] failed to write packet back (Host is down)
4/27/10 7:50:34 AM natd[317] failed to write packet back (Host is down)
4/27/10 7:50:34 AM natd[317] failed to write packet back (Host is down)
4/27/10 7:50:42 AM natd[317] failed to write packet back (Host is down)
4/27/10 7:50:42 AM natd[317] failed to write packet back (Host is down)
4/27/10 8:01:22 AM bootpd[4841] can't open /etc/bootptab
4/27/10 8:01:22 AM bootpd[4841] server name myLeopardServer.myDomain.com
4/27/10 8:01:22 AM bootpd[4841] interface en0: ip 10.0.3.100 mask 255.255.255.0
4/27/10 8:01:22 AM bootpd[4841] interface en1: ip 10.0.4.1 mask 255.255.255.0
4/27/10 8:01:22 AM bootpd[4841] DHCP REQUEST [en0]: 1,0:1e:c2:d1:e2:c8
4/27/10 8:01:22 AM bootpd[4841] ACK sent Anybody's iPhone 10.0.3.40 pktsize 318
4/27/10 8:01:22 AM bootpd[4841] ACK sent Anybody's iPhone 10.0.3.40 pktsize 318
4/27/10 8:11:54 AM bootpd[4873] can't open /etc/bootptab
4/27/10 8:11:54 AM bootpd[4873] server name myLeopardServer.myDomain.com
4/27/10 8:11:54 AM bootpd[4873] interface en0: ip 10.0.3.100 mask 255.255.255.0
4/27/10 8:11:54 AM bootpd[4873] interface en1: ip 10.0.4.1 mask 255.255.255.0
4/27/10 8:11:54 AM bootpd[4873] DHCP REQUEST [en0]: 1,0:22:41:75:6a:69 <iPod-touch>
4/27/10 8:11:54 AM bootpd[4873] ACK sent MyCompany's iPod Touch 10.0.3.4 pktsize 318
4/27/10 8:11:54 AM bootpd[4873] DHCP DISCOVER [en0]: 1,0:22:41:75:6a:69 <iPod-touch>
4/27/10 8:11:54 AM bootpd[4873] OFFER sent MyCompany's iPod Touch 10.0.3.4 pktsize 318
4/27/10 8:11:55 AM bootpd[4873] DHCP REQUEST [en0]: 1,0:22:41:75:6a:69 <iPod-touch>
4/27/10 8:11:55 AM bootpd[4873] ACK sent MyCompany's iPod Touch 10.0.3.4 pktsize 318
4/27/10 8:11:55 AM bootpd[4873] ACK sent MyCompany's iPod Touch 10.0.3.4 pktsize 318
4/27/10 8:11:55 AM bootpd[4873] ACK sent MyCompany's iPod Touch 10.0.3.4 pktsize 318
4/27/10 8:13:55 AM mDNSResponder[32] DNS Message too short
4/27/10 8:13:55 AM mDNSResponder[32] DNS Message too short
4/27/10 8:14:23 AM bootpd[4873] DHCP REQUEST [en0]: 1,0:1e:c2:d1:e2:c8
4/27/10 8:14:23 AM bootpd[4873] ACK sent Anybody's iPhone 10.0.3.40 pktsize 318
4/27/10 8:14:23 AM bootpd[4873] ACK sent Anybody's iPhone 10.0.3.40 pktsize 318
4/27/10 8:20:49 AM natd[317] failed to write packet back (No route to host)
4/27/10 8:20:49 AM natd[317] failed to write packet back (No route to host)
4/27/10 8:20:51 AM natd[317] failed to write packet back (Host is down)
4/27/10 8:20:51 AM natd[317] failed to write packet back (Host is down)
This pattern repeats and repeats on a newly rebuild 10.5.8 Server. Could this be caused by a Airport Base Station Gateway/DHCP and Leopard Server DHCP fighting on the same subnet? I know this is a silly question but I've had my AirportBaseStation doing port forwarding and serving as the gateway router with a LeopardServer as the target for most of the forwarded traffic.... This server has two interfaces serving as another NAT Gateway for my private IP space on a different subnet.
Can anyone tell me it that could cause this problem and if so, how can I prove to myself this is the issue? I'd like "proof" because this has been my general setup for this double NATed network for a few years and I think it works.... It has worked pretty well if not perfectly.... I have a fair but not absolute confidence that this works but I can't say that the log entries are not because of DHCP fighting....
I believe there is a problem but the configuration of something..... -
Questions on Print Quote report
Hi,
I'm fairly new to Oracle Quoting and trying to get familiar with it. I have a few questions and would appreciate if anyone answers them
1) We have a requirement to customize the Print Quote report. I searched these forums and found that this report can be defined either as a XML Publisher report or an Oracle Reports report depending on a profile option. Can you please let me know what the name of the profile option is?
2) When I select the 'Print Quote' option from the Actions drop down in the quoting page and click Submit I get the report printed and see the following URL in my browser.
http://<host>:<port>/dev60cgi/rwcgi60?PROJ03_APPS+report=/proj3/app/appltop/aso/11.5.0/reports/US/ASOPQTEL.rdf+DESTYPE=CACHE+P_TCK_ID=23731428+P_EXECUTABLE=N+P_SHOW_CHARGES=N+P_SHOW_CATG_TOT=N+P_SHOW_PRICE_ADJ=Y+P_SESSION_ID=c-RAuP8LOvdnv30grRzKqUQs:S+P_SHOW_HDR_ATTACH=N+P_SHOW_LINE_ATTACH=N+P_SHOW_HDR_SALESUPP=N+P_SHOW_LN_SALESUPP=N+TOLERANCE=0+DESFORMAT=RTF+DESNAME=Quote.rtf
Does it mean that the profile in our case is set to call the rdf since it has reference to ASOPQTEL.rdf in the above url?
3) When you click on submit button do we have something like this in the jsp code: On click call ASOPQTEL.rdf. Is the report called using a concurrent program? I want to know how the report is getting invoked?
4) If we want to customize the jsp pages can you please let me know the steps involved in making the customizations and testing them.
Thanks and Appreciate your patience
-PC1) We have a requirement to customize the Print Quote report. I searched these forums and found that this report can be defined either as a XML Publisher report or an Oracle Reports report depending on a profile option. Can you please let me know what the name of the profile option is?
I think I posted it in one of the threads2) When I select the 'Print Quote' option from the Actions drop down in the quoting page and click Submit I get the report printed and see the following URL in my browser.
http://<host>:<port>/dev60cgi/rwcgi60?PROJ03_APPS+report=/proj3/app/appltop/aso/11.5.0/reports/US/ASOPQTEL.rdf+DESTYPE=CACHE+P_TCK_ID=23731428+P_EXECUTABLE=N+P_SHOW_CHARGES=N+P_SHOW_CATG_TOT=N+P_SHOW_PRICE_ADJ=Y+P_SESSION_ID=c-RAuP8LOvdnv30grRzKqUQs:S+P_SHOW_HDR_ATTACH=N+P_SHOW_LINE_ATTACH=N+P_SHOW_HDR_SALESUPP=N+P_SHOW_LN_SALESUPP=N+TOLERANCE=0+DESFORMAT=RTF+DESNAME=Quote.rtf
Does it mean that the profile in our case is set to call the rdf since it has reference to ASOPQTEL.rdf in the above url?
Yes, your understanding is correct.3) When you click on submit button do we have something like this in the jsp code: On click call ASOPQTEL.rdf. Is the report called using a concurrent program? I want to know how the report is getting invoked?
No, there is no conc program getting called, you can directly call a report in a browser window, Oracle reports server will execute the report and send the HTTP response to the browser.4) If we want to customize the jsp pages can you please let me know the steps involved in making the customizations and testing them.
This is detailed in many threads.Thanks
Tapash -
Satellite P300D-10v - Question about warranty
HI EVERYBODY
I have these overheating problems with my laptop Satellite P300D-10v.
I did everything I could do to fix it without any success..
I get the latest update of the bios from Toshiba. I cleaned my lap with compressed air first and then disassembled it all and cleaned it better.(it was really clean insight though...)
BUT unfortunately the problem still exists...
So i made a research on the internet and I found out that most of Toshiba owners have the same exactly problem with their laptop.
Well i guess this is a Toshiba bug for many years now.
Its a really nice lap, cool sound (the best in laptop ever) BUT......
So I wanted to make a question. As i am still under warranty, can i return this laptop and get my money back or change it with a different one????
If any body knows PLS let me know.
chears
Thanks in advanceHi
I have already found you other threads.
Regarding the warranty question;
If there is something wrong with the hardware then the ASP in your country should be able to help you.
The warranty should cover every reparation or replacement.
But I read that you have disasembled the laptop at your own hand... hmmm if you have disasembled the notebook then your warrany is not valid anymore :(
I think this should be clear for you that you can lose the warrany if you disasemble the laptop!
By the way: you have to speak with the notebook dealer where you have purchased this notebook if you want to return the notebook
The Toshiba ASP can repair and fix the notebook but you will not get money from ASP.
Greets -
Question regarding NULL and forms
Hi all, i have a survey that im working on that will be sent via email.
I'm having an issue though. if i have a multiple choice question, and the user only selects one of the choices, all the unselected choices return as NULL. is there a way i can filter out anytihng that says "NULL" so it only shows the selected options?
thanks.
here is the page that retrieves all the data. thanks
<body>
<p>1) Is this your first visit to xxxxxxx? <b><%=request.getParameter("stepone") %></b>
</p>
<p> </p>
<p>2) How did You Learn About xxxxxxx?</p>
<p><b><%=request.getParameter("steptwoOne") %></b>
<br>
<b><%=request.getParameter("steptwoTwo") %></b>
<br>
<b><%=request.getParameter("steptwoThree") %></b>
<br>
<b><%=request.getParameter("steptwoFour") %></b>
<br>
<b><%=request.getParameter("steptwoOther") %></b>
</p>
<p> </p>
<p>3) What was your main reason for visiting xxxxx?</p>
<p><b><%=request.getParameter("stepthreeOne") %></b>
<br>
<b><%=request.getParameter("stepthreeTwo") %></b>
<br>
<b><%=request.getParameter("stepthreeThree") %></b>
<br>
<b><%=request.getParameter("stepthreeFour") %></b>
<br>
<b><%=request.getParameter("stepthreeOther") %></b>
</p>
<p>4) did you find the information you were looking for on this site?</p>
<p><b><%=request.getParameter("stepfour") %>
<br>
<b><%=request.getParameter("stepfourOther") %></b>
</b></p>
<p>5) Do you plan on using this website in the future?</p>
<p><b><%=request.getParameter("stepfive") %></b></p>
<p>6) What is your gender</p>
<p><b><%=request.getParameter("stepsix") %></b></p>
<p>7) What is your age group</p>
<p><b><%=request.getParameter("stepseven") %></b></p>
8) Would you like to take a moment and tell us how we can improve your experience on xxxxxxxxxx?
<p><b><%=request.getParameter("stepeightFeedback") %></b></p>i was messing around and came up with this. it doesnt remove the null, but if it is null it adds ABC beside it. so i think i might be getting close. i just need to figure out how to replace the null.
code]
<b><%=request.getParameter("steptwoFour") %></b>
<% if (request.getParameter("steptwoFour") == null ) {
%>
<% out.print("abc"); %>
<% }
%> -
How do I remove Overdrive books from the library that were downloaded onto my computer then transferred to my iphone? The problem is that they do not show up in iTunes.
I see this question asked a lot when I google, but they always give answers that assumes you can find the books in iTunes either under the books tab, or the audio books tab or in the music. They do not show up anywhere for me. They do not remove from the app like the ones I downloaded directly onto my iphone.the related archived article does not answer it either. I even asked a guy working at an apple store and he could not help either. Anybody...?
Thanks!there is an app called daisydisk on mac app store which will help you see exactly where the memory is focused and consumed try using that app and see which folders are using more memory
-
Hello, i have a basic question. if i have defined 2 fields in a cube or a dso:
Name Quantity
and from the external flat file i get some characters for my quantity field. would my load fail? for standard dso and for write optimized?
NOTE: quantity field is a keyfigure defined as numeric.
and the load coming in has "VIKPATEL" for Quantity field and not numbers.
thanksHi Vik,
Yes, the load will fail.
May be you coud first load this data into BW (into PSA) and set both fields as characters fields. Then you can create DSO, do transformation from this PSA to the DSO, and put your logic as to what do you want to do with those Quantity that is not number (e.g. convert to 0, or 'Not assgined', etc).
You can use transfer rule, or a clean up ABAP code in the start routine.
Hope this helps. -
Mid 2010 15" i5 Battery Calibration Questions
Hi, I have a mid 2010 15" MacBook Pro 2.4GHz i5.
Question 1: I didn't calibrate my battery when I first got my MacBook Pro (it didn't say in the manual that I had to). I've had it for about a month and am doing a calibration today, is that okay? I hope I haven't damaged my battery? The calibration is only to help the battery meter provide an accurate reading of how much life it has remaining, right?
Question 2: After reading Apple's calibration guide, I decided to set the MacBook Pro to never go to sleep (in Energy Saver System Preference) and leave it on overnight so it would run out of power and go to sleep, then I'd leave it in that state for at least 5 hours before charging it. When I woke up, the light on the front wasn't illuminated. It usually pulsates when in Sleep. Expectedly, it wouldn't wake when pressing buttons on the keyboard. So, what's happened? Is this Safe Sleep? I didn't see any "Your Mac is on reserve battery and will shut down" dialogues or anything similar, as I was asleep! I've left it in this state while I'm at work and will charge it this afternoon. Was my described method okay for calibration or should I have done something different?
Question 3: Does it matter how quickly you drain your battery when doing a calibration? i.e is it okay to drain it quickly (by running HD video, Photo Booth with effects etc) or slowly (by leaving it idle or running light apps)?
Thanks.
Message was edited by: Fresh JFresh J:
A1. You're fine calibrating the battery now. You might have gotten more accurate readings during the first month if you'd done it sooner, but no harm has been done.
A2. Your machine has NOT shut down; it has done exactly what it was supposed to do. When the power became critically low, it first wrote the contents of RAM to the hard drive, then went to sleep. When the battery was completely drained some time later, the MBP went into hibernation and the slepp light stopped pulsing and turned off. In that state the machine was using no power at all, but the contents of your RAM were still saved. Once the AC adapter was connected, a press of the power button would cause those contents to be reloaded, and the machine would pick up again exactly where you left off. It is not necessary to wait for the battery to be fully charged before using the machine on AC power, but do leave the AC adapter connected for at least two hours after the battery is fully charged. Nothing that you say you've done was wrong, and nothing that you say has happened was wrong.
A3. No, it does not matter. -
Jabber/WebEx Connect SSO Questions
I've got a few questions around exactly what needs to be done to get SAML working for our Connect accounts to successfully authenticate from Jabber for Windows, Mac, iPhone, and Android.
We have both a Meeting Center and Connect account under WebEx using Loose Coupled Integration. Just this past week I enabled SAML for our Meeting Center accounts which went off without a hitch with the exception of Meeting Center integration with Jabber, which is now broken with a message about SSO enabled Meeting Sites not being supported (I think this would maybe be fixed if we had Tight Coupled Integration with our two account?).
Anyway, my questions are...
For Windows, I understand all clients will need to be reinstalled with the MSI argument for the SSO_ORG_DOMAIN switch I've read about, is that correct? Are there any other switches needed for the reinstall?
How will this work with the Mac and mobile clients? There's obviously no command line options to specify for the installations here, will they just know to kick over to my IdP for authentication once they see an email address that falls under an org with SSO enabled? If so, why does the Windows client need to be completely reinstalled and not just know to find the IdP from the Cloud Connect service like Meeting Center does with the Productivity Tools?
We're just doing this for our Connect Web IM accounts, not attempting any sort of SSO with the phone accounts/UC integration yet.
Any ideas on getting the Meeting Center integration into Jabber working again?I'd suggest posting your question over on the Jabber Pilot forum, as this forum is specific to Jabber Guest questions:
https://supportforums.cisco.com/community/4551/jabber-pilot-support
-jim -
Every time I try to download an app it tells me I need to update my security questions, but once I click to make the questions the box goes white. So I'm not sure how to fix it
The new questions show on your account on http://appleid.apple.com ? If they do then try logging out and back into your account on your phone (assuming that is where you are trying to purchase from) and see if the new questions then show on it.
-
Hi All
The question is pretty simple. I can successfully connect to my ASA 5505 firewall via cisco vpn client 64 bit , i can ping any ip address on the LAN behind ASA but none of the LAN computers can see or ping the IP Address which is assigned to my vpn client from the ASA VPN Pool.
The LAN behind ASA is 192.168.0.0 and the VPN Pool for the cisco vpn client is 192.168.30.0
I would appreciate some help pls
Here is the config:
ASA Version 7.2(4)
hostname ciscoasa
domain-name default.domain.invalid
enable password J7NxNd4NtVydfOsB encrypted
passwd 2KFQnbNIdI.2KYOU encrypted
names
name 192.168.0.11 EXCHANGE
name x.x.x.x WAN
name 192.168.30.0 VPN_POOL2
interface Vlan1
nameif inside
security-level 100
ip address 192.168.0.1 255.255.255.0
interface Vlan2
nameif outside
security-level 0
ip address WAN 255.255.255.252
interface Ethernet0/0
switchport access vlan 2
<--- More --->
interface Ethernet0/1
interface Ethernet0/2
interface Ethernet0/3
interface Ethernet0/4
interface Ethernet0/5
interface Ethernet0/6
interface Ethernet0/7
boot system disk0:/asa724-k8.bin
ftp mode passive
clock timezone EEST 2
clock summer-time EEDT recurring last Sun Mar 3:00 last Sun Oct 4:00
dns server-group DefaultDNS
domain-name default.domain.invalid
object-group protocol TCPUDP
protocol-object udp
protocol-object tcp
access-list nk-acl extended permit tcp any interface outside eq smtp
access-list nk-acl extended permit tcp any interface outside eq https
access-list customerVPN_splitTunnelAcl standard permit 192.168.0.0 255.255.255.0
access-list inside_nat0_outbound extended permit ip 192.168.0.0 255.255.255.0 VPN_POOL2 255.255.255.0
access-list inside_access_in extended permit ip any any
access-list VPN_NAT extended permit ip VPN_POOL2 255.255.255.0 192.168.0.0 255.255.255.0
pager lines 24
logging enable
logging asdm informational
mtu inside 1500
mtu outside 1500
ip local pool VPN_POOL2 192.168.30.10-192.168.30.90 mask 255.255.255.0
icmp unreachable rate-limit 1 burst-size 1
asdm image disk0:/asdm-524.bin
no asdm history enable
arp timeout 14400
global (inside) 10 interface
global (outside) 1 interface
nat (inside) 0 access-list inside_nat0_outbound
nat (inside) 1 0.0.0.0 0.0.0.0
nat (outside) 10 access-list VPN_NAT outside
static (inside,outside) tcp interface smtp EXCHANGE smtp netmask 255.255.255.255
static (inside,outside) tcp interface https EXCHANGE https netmask 255.255.255.255
access-group inside_access_in in interface inside
access-group nk-acl in interface outside
route outside 0.0.0.0 0.0.0.0 x.x.x.x 1
timeout xlate 3:00:00
timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02
timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00
timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00
timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute
aaa authentication enable console LOCAL
aaa authentication http console LOCAL
aaa authentication serial console LOCAL
aaa authentication ssh console LOCAL
aaa authentication telnet console LOCAL
aaa authorization command LOCAL
http server enable
http 192.168.0.0 255.255.255.0 inside
snmp-server host inside 192.168.0.16 community public
no snmp-server location
no snmp-server contact
snmp-server community public
snmp-server enable traps snmp authentication linkup linkdown coldstart
crypto ipsec transform-set ESP-3DES-SHA esp-3des esp-sha-hmac
crypto dynamic-map outside_dyn_map 20 set pfs group1
crypto dynamic-map outside_dyn_map 20 set transform-set ESP-3DES-SHA
crypto map outside_map 65535 ipsec-isakmp dynamic outside_dyn_map
crypto map outside_map interface outside
crypto isakmp enable outside
crypto isakmp policy 10
authentication pre-share
encryption 3des
hash sha
group 2
lifetime 86400
crypto isakmp nat-traversal 20
telnet 192.168.0.0 255.255.255.0 inside
telnet timeout 5
ssh timeout 5
console timeout 0
dhcp-client client-id interface outside
dhcpd dns 217.27.32.196
dhcpd address 192.168.0.100-192.168.0.200 inside
dhcpd dns 192.168.0.10 interface inside
dhcpd enable inside
group-policy DfltGrpPolicy attributes
banner none
wins-server none
dns-server none
dhcp-network-scope none
vpn-access-hours none
vpn-simultaneous-logins 3
vpn-idle-timeout 30
vpn-session-timeout none
vpn-filter none
vpn-tunnel-protocol IPSec l2tp-ipsec
password-storage disable
ip-comp disable
re-xauth disable
group-lock none
pfs disable
ipsec-udp disable
ipsec-udp-port 10000
split-tunnel-policy tunnelall
split-tunnel-network-list none
default-domain none
split-dns none
intercept-dhcp 255.255.255.255 disable
secure-unit-authentication disable
user-authentication disable
user-authentication-idle-timeout 30
ip-phone-bypass disable
leap-bypass disable
nem disable
backup-servers keep-client-config
msie-proxy server none
msie-proxy method no-modify
msie-proxy except-list none
msie-proxy local-bypass disable
nac disable
nac-sq-period 300
nac-reval-period 36000
nac-default-acl none
address-pools none
smartcard-removal-disconnect enable
client-firewall none
client-access-rule none
webvpn
functions url-entry
html-content-filter none
homepage none
keep-alive-ignore 4
http-comp gzip
filter none
url-list none
customization value DfltCustomization
port-forward none
port-forward-name value Application Access
sso-server none
svc none
svc keep-installer installed
svc keepalive none
svc rekey time none
svc rekey method none
svc dpd-interval client none
svc dpd-interval gateway none
svc compression deflate
group-policy customerVPN internal
group-policy customerVPN attributes
dns-server value 192.168.0.10
vpn-tunnel-protocol IPSec
password-storage enable
split-tunnel-policy tunnelspecified
split-tunnel-network-list value customerVPN_splitTunnelAcl
default-domain value customer.local
username xxx password 8SYsAcRU4s6DpQP1 encrypted privilege 0
username xxx attributes
vpn-group-policy TUNNEL1
username xxx password C6M4Xy7t0VOLU3bS encrypted privilege 0
username xxx attributes
vpn-group-policy PAPAGROUP
username xxx password RU2zcsRqQAwCkglQ encrypted privilege 0
username xxx attributes
vpn-group-policy customerVPN
username xxx password zfP8z5lE6WK/sSjY encrypted privilege 15
tunnel-group customerVPN type ipsec-ra
tunnel-group customerVPN general-attributes
address-pool VPN_POOL2
default-group-policy customerVPN
tunnel-group customerVPN ipsec-attributes
pre-shared-key *
tunnel-group-map default-group DefaultL2LGroup
class-map inspection_default
match default-inspection-traffic
policy-map type inspect dns preset_dns_map
parameters
message-length maximum 512
policy-map global_policy
class inspection_default
inspect dns preset_dns_map
inspect ftp
inspect h323 h225
inspect h323 ras
inspect rsh
inspect rtsp
inspect esmtp
inspect sqlnet
inspect skinny
inspect sunrpc
inspect xdmcp
inspect sip
inspect netbios
inspect tftp
service-policy global_policy global
prompt hostname context
Cryptochecksum:a4dfbb82008f78756fe4c7d029871ec1
: end
ciscoasa#Well lots of new features have been hinted at for ASA 9.2 but I've not seen anything as far as an Engineering Commit or Customer Commit for that feature.
Site-site VPN in multiple context mode was added in 9.0(1) and I have customers have been asking for the remote access features as well.
I will remember to ask about that at Cisco Live next month.
Maybe you are looking for
-
Two devices with same Apple ID
Hi there, Unfortunately we are not a very technical fami;y and by mistake, or lack of knowledge I set up my son's ipnone using my husbands Apple ID. I now realise that I have to create a seperate I.D. for my son but how do I delete or disconnect him
-
I just renewed my ExportPDF subscription, but I can't sign in to Export PDF online (it keeps taking me to the "subscribe" screen) and when I try to convert from within Acrobat, it says the trial period has expired, please subscribe.
-
Libros y Audiolibros en Español--cannot upgrade, and cannot purchase audiobooks.
Two major problems with this App. One, I cannot successfully purchase an audiobook through the app. I can download a free text-only book, but there are no free audiobooks that I've found. When I try to purchase an audiobook, it goes through the Black
-
I have been connecting my iMac to the internet via wifi, but to speed things up I have just patch cabled an ethernet connection to the wifi router. How should I set up the network preferences on the iMac? I have a wifi printer about 2m away and a wif
-
Any Function Moduel Available to validate date
Hi, I am having input field in 10 digit charecter format in BDC. I would like validate the date. Input date will in the mm/dd/yyyy format. Regards Chandra Reddy