Not authenticated from external ldap in a cluster

I am having trouble getting authenticated from an Iplanet LDAP, when the weblogic is configured in a Cluster.
-I can authenticate with Embedded LDAP domain wide
-I can authenticate on the external LDAP if I send the request to Admin server
Here is my cluster configuration (all with Weblogic 7.0 SP4)
*Admin Server Port: 9209
*Cluster server 1 : 7209
*Cluster server 2 : 8209
*Proxy server     : 9090 (configured with HttpClusteredServlet)
http://myserver.com:9090/j_security_check fails
http://myserver.com:9209/j_security_check works
Please let me know what is wrong?

"Bob" <[email protected]> wrote in message
news:3f9fd466$[email protected]..
I am having trouble getting authenticated from an Iplanet LDAP, when theweblogic is configured in a Cluster.
-I can authenticate with Embedded LDAP domain wide
-I can authenticate on the external LDAP if I send the request to Adminserver
Here is my cluster configuration (all with Weblogic 7.0 SP4)
*Admin Server Port: 9209
*Cluster server 1 : 7209
*Cluster server 2 : 8209
*Proxy server     : 9090 (configured with HttpClusteredServlet)
http://myserver.com:9090/j_security_check fails
http://myserver.com:9209/j_security_check works
Please let me know what is wrong?Are you sure that the ldap authentication is actually occuring? I would
define the
DebugSecurityAtn="true" attribute on the ServerDebug mbean for the cluster
server members and then look at the log and the ldap_trace.log files to see
what is happening with LDAP.

Similar Messages

  • Some attachment buttons not working from external networks

    Hi guys,
    We have an eSourcing system that we access internally from server.internal.com . We also make this eSourcing system available to external vendors through www.external.com .
    The external access is done using a Citrix AGEE system (reverse proxy, etc.). As part of this, the AGEE has the ability to change the hostname in the URL so the real server is hidden from external vendors. For example, when eSourcing generates a webpage, the AGEE searches through and replaces all http://server.internal.com references to http://www.external.com , and vice-versa for incoming calls.
    This works for about 95% of the content, but there are a fer places where the links are not re-written correctly. One example is the File Attachment buttons when replying to a question. However, other file attachment buttons work correctly.
    1. Does anyone else have a similar situation, using a Citrix or other product for external vendors?
    2. Does anyone have a similar problem where certain links/buttons are not working from external networks?
    3. Does anyone have any suggestions as to how to fix this problem?
    4. Are there any settings that are specific to external access that may need to be set?
    Thanks guys for any help/insight.
    Michael.

    SAP has re-written some of their code to help rectify the problem. We have also been working with Citrix to provide additional fixes. If anyone else has these problems, apply the latest patch of eSourcing and contact Citrix support to get the AGEE changes needed to make it work.
    Michael

  • Exchange 2013 autodiscover not working from Externally

    Hi 
    i have exchange 2010 sp3(2Mb, 2hub/cas). I installed exchange 2013 servers(2MB, 2CAS). For coexistence i generated new certifcate with new cas from third party. I installed that certificate in that cas and assigned all services. i changed all my virtual
    directories service url. I didnt import the new certificate to exchange 2010 cas server and i didnt change url to legacy link.But still iam able to check exchange 2010 user mailbox owa, activesync and autodiscover without any certificate error. 
    If i try to browse owa, its going to 2013 server, if user is exchange 2010 user and its redirecting to exchange 2010 owa with same link.
    But i dont know how above things is working without importing to new certificate...
    Main problem is i am not able to configure exchange 2013 users outlookanywhere, Autodiscover from externally...
    So in tmg i pointed the outlook anywhere ip address new cas server, now both exchange 2010 and exchange 2013 users while OA from external, its keep on asking password... Not accepting it...
    Please help me to fix this issue..

    Hi ,
    On TMG please have the outlook anywhere rule like below and check the status.
    Step
    1 :
    On the TMG rule - >authentication delegation ---> select the option "no delegation users can authenticate directly"
    Step
    2 :
    on the users tab in the TMG rule - just add "all users" group on that rule.
    By having the above settings we have avoided the issues in your environment.
    Note : Based on the above setting's , Each and everyone in exchange will have a access to the outlook anywhere from external world , because there would not be having any restriction on the TMG rules.
    Please have a look in to the below link , it will give you some ideas which is related to TMG
    http://blogs.technet.com/b/exchange/archive/2012/11/21/publishing-exchange-server-2013-using-tmg.aspx
    Thanks & Regards S.Nithyanandham

  • Fetching properties from external LDAP

    Hi,
    I have configured ActiveDirectoryAunthenticator to link to my external LDAP
    provider. I am trying to fetch some properties/attributes related to the
    profile such as company and other contact details.
    I have not configured UUP as Im using weblogic's default user store.
    Now, when I access "com.bea.p13n.controls.profile.UserProfileControl", to
    fetch the properties I get null values.
    Is there some other configuration required ?
    Please let me know the solution or the approach.
    Thanks in advance ,
    Regards,
    Arun

    Hi Arun
    Migration of data is possible
    Export the data from external server and import into your domain server
    Here is the steps
    To export and import security data:
    1.     Expand the Security-->Realms nodes.
    2.     Click the name of the realm you are configuring (for example, TestRealm).
    3.     Click the Migration-->Export tab.
    4.     Specify the directory and filename in which to export the security data in
    the Export Directory on Server attribute.
    Note: You can specify a directory and file location on another server.
    5.     Click Export.
    6.     Expand the Realms node.
    7.     Click the name of the security realm in which the security data is to be imported.
    8.     Click the Migration-->Import tab.
    9.     Specify the directory location and file name of the file that contains the
    exported security data in the Import Directory on Server attribute.
    10.     Click Import.
    To verify the security data was imported correctly:
    1.     Expand the Security-->Realms nodes.
    2.     Click the name of the realm into which the security data was imported.
    3.     Click Users.
    4.     Users from the security realm from which you exported the security data should
    appear in the Users table.
    Cheers
    Surya
    "Arun A.G." <[email protected]> wrote:
    Hi,
    I have configured ActiveDirectoryAunthenticator to link to my external
    LDAP
    provider. I am trying to fetch some properties/attributes related to
    the
    profile such as company and other contact details.
    I have not configured UUP as Im using weblogic's default user store.
    Now, when I access "com.bea.p13n.controls.profile.UserProfileControl",
    to
    fetch the properties I get null values.
    Is there some other configuration required ?
    Please let me know the solution or the approach.
    Thanks in advance ,
    Regards,
    Arun

  • Accounts in UCM 11g from external LDAP provider

    Hi,
    We are developing an application using UCM 11g. For authentication and authorization we are using external LDAP. Following are the steps followed to configure the UCM 11g for external LDAP.
    1) Created User and Groups directory in LDAP
    2) Created user and group in LDAP.
    3) Assigned users to the groups.
    3) Created accounts in group directory .Account name start with @ and ends with (RW)
    4) Created a new provider in WLS.
    5) Created a new JpsProvider in UCM.
    Now, roles(groups in LDAP) and user are coming properly form LDAP. but the accounts are populating in UCM.
    Can anybody tell me the solution for this problem
    Thanks in advance..
    Regards,
    Nitin

    In theory there is no limit, but as with most of the products and features inside the Content Server it comes down to design and size impacting performance.
    So there is no simple answer.
    The more complex answer is you need to try to keep things as simple as possible while still completing your goals.
    For instance the Folders component in 11g is limited (hard coded) to 1000 files per folder maximum due to performance degradation if you put more in your folders. Many people just try to put more in and before the hard coded limit in 11g people did and their folders browsing became almost unusable due to slow browsing of the folder structure and files in side.
    Similarly with Security we can impact performance with too many security groups, badly designed Roles to access security groups or badly designed Account structures. Notice I only said "too many" on Security groups but not "too many" on Accounts. You should try never to go above 25 security groups (this is not a hard coded limit just a best practice) and the "badly designed" part of roles and accounts can lead to bad performance and even broken security.
    It comes down to DB performance, DB limitations and code limits.
    First off be aware that there is a limit on how long a query in the DB can be. Commands and SQL in the DB are not endlessly long, there is a maximum number of characters. Keep that in mind as we go along into the next parts.
    Second be aware that if you make a badly built query it will take a long long time.
    Third be aware that when you are building security models in UCM these security structures go DIRECTLY to DB queries and remember the above 2 points.
    So every search in UCM is a query when you take it back to the DB level, and every search requires a behind the scenes security check to make sure you can read the documents you are searching for. So any query built in the search interface gets an additional set of parameters automatically when executed (security).
    So now we need to also think about your Metadata and not just the Security on that limited length DB back end. Do your users have 99 metadata fields (I hope not) and if they do do they use most of them while searching? How long will that query be before you add the security query?
    Back to the security parts with accounts.
    If you have your users having only a few roles providing only access to a small number of security groups and those same users only having a few accounts then searches will get a short security access query added since the number of additional checks for security are small. If the roles and group accesses and account accesses are very large (to the extreme limit) again this will be easy to make a short query due to the small number of excluded security roles and accounts.
    BUT and this is a biggie. IF the users are given a number of roles and accounts that is middle of the road for number of total accesses then the query is as long as it can be and if the metadata is complex and large too then you may be running into the limit of Query string in the DB and your query may get truncated which results in a broken security model maybe.
    That is not even talking about the efficiency of the query and how long it takes.....
    Sorry for the book like reply to your simple question, but it really is not a simple question. :)

  • Itunes will not load from external hard drive

    My Itunes will not load from my external harddrive.  worked fine a few days ago.

    I do not have any exclamation points - missing songs do not show at all.  I had to click 'locate files' when I opened iTunes after reorganizing, since there was nothing there anymore

  • Pictures not saving from external websites.

    Since I updated my iPhone 4s software, ios6. My pictures are not saving from Facebook or alternitive websites. I have tryed to hold on the picture and press save picture and it is not saving to my camera roll, or any albums. I've rebooted twice. It was working prior to the update. Any solutions please?

    Yes you can!  Go to Settings --> Privacy --> Photos and toggle on the apps that have asked for access. 

  • Why is my GUID partitioned HD not booting from external firewire

    Hello everyone,
    I have a new 2TB WD EARS drive which I have Snow Leopard installed on. It was cloned from my 1TB WD drive which was running Snow Leopard perfectly beforehand. I have the 2TB HDD installed in a firewire400/800/USB/eSata enclosure and I cannot boot up from the HDD. It is GUID Partitioned as you can see from the Info below:
        Name :     WDC WD20 EARS-19MVWB0 Media
        Type :     Disk
        Partition Map Scheme :     GUID Partition Table
        Disk Identifier :     disk1
        Media Name :     WDC WD20 EARS-19MVWB0 Media
        Media Type :     Generic
        Connection Bus :     USB
        USB Serial Number :     000001D919A8
        Writable :     Yes
        Ejectable :     Yes
        Mac OS 9 Drivers Installed :     No
        Location :     External
        Total Capacity :     1.8 TB (2,000,398,934,016 Bytes)
        S.M.A.R.T. Status :     Not Supported
        Disk Number :     1
        Partition Number :     0
    Name :     CREAZNMIND
        Type :     Volume
        Disk Identifier :     disk1s2
        Mount Point :     /Volumes/CREAZNMIND
        File System :     Mac OS Extended
        Connection Bus :     USB
        Writable :     Yes
        Universal Unique Identifier :     22415261-328A-3D43-80BC-241D1051E78C
        Capacity :     1.8 TB (2,000,054,956,032 Bytes)
        Free Space :     1.3 TB (1,393,188,286,464 Bytes)
        Used :     565.2 GB (606,866,669,568 Bytes)
        Number of Files :     851,286
        Number of Folders :     186,288
        Owners Enabled :     No
        Can Turn Owners Off :     Yes
        Can Be Formatted :     Yes
        Bootable :     Yes
        Supports Journaling :     Yes
        Journaled :     No
        Disk Number :     1
        Partition Number :     2
    I am unable to boot in both firewire 400/800 and USB. What is confusing is that if another drive with a partition format for windows is installed the drive is recognized without a problem and mounts. I can see the HDD in Disk Utility but only the Disk itself is selectable but the partition is greyed out. The drive also cannot be checked or repaired in Disk Utility when connected with the firewire enclosure. I have tried this on two seperate apple computers, one even being an older PPC. Another thing that confuses me is that if I attached the HD to the computer using only a SATA/USB adapter cable, I can boot off the drive just fine. And when connected to a PPC the drive mounts seemlessly. I went into the shop where I purchased my enclosure and after some testing they said that it was because of the GPT Protection which is just GUI Partition Table. They said this is a somewhat common problem with Firewire enclosures and even LaCie reported this problem. Has anyone ever heard of this? Is there a problem between GUID and Firewire interfaces? If Intel Macs can only use GUID partitioning how can I get around this problem? I've looked around and it seems it's possible to install SL onto an APM drive by cloning from an Intel system, but why won't it just work the way it's supposed to? Any insights would be helpful....
    Thanks in advance!

    Journaled isn't a requirement for SL to boot. All I can suggest for the OP is to erase and repartition the HD; then, try again.

  • Restore Disc Will Not Boot From External DVD Drive

    I am using an original MacBook Pro that I decided could use a good restore, and started to clean house. The optical drive is broken, so I am using an external USB drive. I inserted the restore disc that came with the computer (It has OS X 10.4.6 on it), erased my HD, and proceeded to install Tiger. However, setup froze while installing Photobooth, and I was forced to shut down the computer.
    I'm trying to get my Macbook Pro to boot from the restore disc that came with it so I can try setup again, but it won't work. If I hold C during the boot, I get a flashing folder with a question mark over it. If I hold option, I get a cursor, but just a blank, gray screen. In both instances, the external DVD drive is active and reading the disc, but I'm not getting any results on the screen. I've also reset PRAM.
    If I can just get my computer to boot from the disc, I should be able to get back on track. Thanks.

    When I press option during boot, nothing happens. Just a gray screen and cursor, like I described above. I haven't been able to test the external drive yet on another mac to see if it is bootable because I can't find the other computer's boot disc at the moment, but I'll try later with something else.
    I have been able to access the drive through Target Disk mode successfully though. Is there something in particular I should do with the files? The folders are:
    Applications
    cores
    dev
    etc
    Library
    OSInstall.mpkg.998YblbM
    System
    tmp
    Users
    var
    Volumes

  • MBP slow to boot and WILL NOT boot from external drive

    I have two problems. First my friends MacBook Pro which is less than a month old is taking long to load. So I did a clean install without installing anything other than what came. Still slow to boot. Sometimes I see a light blue screen for a while before getting into the desktop. She complains of the beachball far too often. She says my MacBook is faster than her Pro, which is not right.
    So I came down with my external LaCie drive, which I cloned from my iMac 24". I wasn't able to boot from the external (firewire) drive using her MacBook Pro. I thought my LaCie drive was bad or soemthing, but when I got home, I hooked it up to my MacBook and booted from the external drive just fine. I use SuperDuper to make a bootable clone.
    So as it stands now, her computer is slow to boot into the OS, and it won't let me boot from my external drive. Does anyone have any idea what this could be? I did a clean install, used cocktail, etc. If it persists, I'll tell her to take it in.
    Thanks,
    Bryan

    Robert,
    I have no idea what you mean by Apple is not responsive to the issue. If you want help, please start a new topic thread so someone can help you identify the problem without the distraction of other people's problems around yours. Blaming people does not solve problems.
    This is the link to post a new topic on this board:
    http://discussions.apple.com/forum.jspa?forumID=1149&start=0
    This is a user to user board. If you need help from Apple, call AppleCare directly here:
    http://www.apple.com/contact/phone_contacts.html

  • Mac Mini Will not boot from external drive or install disk

    Hi,
    I just bought a new 2.0 ghz mac mini 1 gb ram. 120gb hdd.
    I have a separate external HDD attached and wanted to boot from this. It works with my MBP and IMAC.
    When i plug it into the Mac Mini and start up with Option key. It recognizes it.
    I then click on it. It automatically reboots.... then grey screen comes on. It goes black after about 10 seconds. then boots into original operating system.
    I also tried to use the MAC install Disk, thinking it might be a corruption in the shipped software. It does the same thing.
    I have MAC Install DVD on an external drive too. Same issue.
    I partitioned the HDD and installed a copy of the Mac install disk onto that with disk utility... Same thing grey screen, then black then back to original operating system.
    Not sure what is going on?
    thanks
    Chris

    Hi,
    Thanks.
    It is running 10.5.8.
    I am trying to boot up an external drive with 10.5.8 on it. It works on my Macbook Pro which is running 10.5.8, runs on my IMAC running SL. But doesnt work on the mac mini?
    It had been running SL, however there are a number of programs I have like Windows Live Sync which are not yet compatable with SL so i downgraded to 10.5.6 which came with the Mac Mini then loaded all updates.
    It seems to just go into an auto reboot as soon as i click on it.
    i thought it might be the firmware? Is it possible to downgrade them and then re-install?
    I have reset the PRAM.
    Any help would be appreciated.
    Thanks

  • How to open files (NOT copy) from external hard drive

    Hello there,
    I have a Western Digital My Passport external harddrive. I bought the hard drive so I could take stuff like my music off my laptop harddrive, free up space and make it run smoother.
    Problem is, every time I select a music file on the ex harddrive to play in itunes, the file is copied to the laptop harddrive! Completely defeats the purpose.
    Does anyone know how to stop my laptop from copying music files and just get it to play files from the external hard drive? I have looked and looked but to no avail - this is my first Mac and it is the one issue that really bugs me.
    Any help will be much appreciated!
    N.B. it doesn't seem to do this with other file types (documents etc.) just music files/files supported by itunes.

    How are you selecting the music files? I have my entire music library on an external drive. If you go to preferences in iTunes, their is an option to select where your music library resides. I think it is under advance but I'm not sure since I don't have access to my mac.
    Glor

  • Domain user not authenticated from Windows 7 PC

    Hi,
    This is the background of the problem.
    Windows 2003 Servers running AD. 2 Servers, Primary and Backup.
    2008 R2 servers are joined as members of 2003 AD. Mail server and File server
    Clients - Win XP, Win 7.
    Share folders on Fileservers were accessible from both type of clients.
    Since windows update happend last week (12/03/2015),Win 7 users are being rejected by the 2008 servers
    Win XP users do not face this issue
    Please help, it's driving me nuts :)
    Thanks
    Thepul

    Look at some of the issues that have been arising from KB3002657; uninstalling it seems to solve the problems for most people.  Authentication errors from Windows 7 and 8.1, but XP works normally.
    The update has been re-released as of 03/16 for Server 2003 only.  Some information:
    http://www.infoworld.com/article/2897814/operating-systems/server-2003-admins-beware-microsoft-re-issues-botched-netlogon-patch-kb-3002657.html
    https://social.technet.microsoft.com/Forums/en-US/0a520543-29d4-4466-9967-e39d819d11f1/users-cannot-log-into-remote-desktop-after-3112015-update
    https://www.pickysysadmin.ca/2015/03/11/kb3002657-breaks-everything/
    http://www.infoworld.com/article/2895900/microsoft-netlogon-patch-kb-3002657-woes-continue-kb-3032359-cisco-anyconnect-fix-confirmed.html

  • ITunes Music Folder will not play from external hardrive after setting the correct path

    I've decided to try and create some more space for my music collection and decided to keep my entire iTunes library on a portable external hardrive. I researched how to do so online and was successful at first. I set the correct path from the advanced menu so that iTunes would recognize and save music to the folder on my HD. It worked fine last night, but today when I try and access it I get the, "could not be used because the original file could not be found. Would you like to locate it?" error message when I try and play a song anywhere in iTunes. I then tried to import the library from my external hardrive and then everything was duplicated. I some how reversed the duplication by using time machine and then redownloading iTunes, which is a riduculous story in itself, but thankfully, I am back at square one.
    I have over 24,000 songs with a majority of them rated as well as playlists I do not want to lose. I don't understand why it will not play the songs. Can anyone help me?

    If you are going to have the library on an ext HD the transfer the entire iTunes folder. This way you capture all the files - not just the music.
    Launch iTunes with the 'option' key down and follow the dialog - tell iTunes to open the iTunes library file on the ext HD and things should be ok.
    MJ

  • PSCS5 will not open from external boot disk

    Because OS 10.8.2 was the worst update in Apple history, for the first time ever I decided to  do the 10.8.3 update on an external boot disk before sacrificing my internal disk. I used Super Duper to make a bootable clone of my internal , booted from the external and then did the combo update. It seemed to be  ok although they didn't fix the scroll bars in Safari as I had hoped. The first app I tried was Photoshop CS 5.1. It tried to open but I got a window that said "could not inialize scratch disk because disk could not be found". After I clicked OK on that, another window said  "could not open because disk could not be found" .  I have never tried to open Photoshop any version from a bootable backup before and I don't know what this means. The scratch disk for Photoshop is set to be my internal drive Macintosh HD.  Why would it not find it?  If I were booting from my internal and had set the scratch to the external it would find it. Why would the app be looking for itself on another disk?
    After recloning my internal which is still 10.8.2, I have not yet booted from the external to see if the problem was somehow caused by 10.8.3, but I wouldn't be surprised if it was. People have reported the usual weird behavior of an upgrade already on forums, but not this paricular problem
    I am runninga 2011 mini with dual i7 and 8 GB of RAM.

    Just to be clear, resetting the Photoshop prefs is troubleshooting 101. I'll admit that since Photoshop CS and OS X, the need for resetting the prefs has gone way down (although I had a lot of problems when Photoshop first included GPU).
    However, if you EVER have a hang/force quit or an actual crash, you should seriously consider resetting the prefs because, well, in a hang or crash, that's when pref can get corrupted...afterwhich Photoshop can misbehave and cause problems.
    But in this case, resetting the prefs was a fix for the issue where the exact directory path for a scratch disk no longer existed and thus kept PS from even launching...
    Although the OP hasn't given an update, I'm 99.9999% sure his Photoshop is back to launching correctly...and that the issue was fixed by trashing the prefs.

Maybe you are looking for

  • How to create a jar file which is in the remote system?

    Hi, I have a set of files that resides in a remote system,which have to be "jar"red. I have a firewall in between. I want to create a jar file out of the files situated in the remote system.How do i go about this process.?

  • I use BT Yahoo! but when I try and navigate to email from the home page it keeps jumping between 'connected and waiting for login' and never loads up.

    My internet service provider is BT in the UK. The home page is www.btinternet.com. After I've logged on, the home page displays fine - I can see the summary of my emails in one of the windows on the home page. The problem comes when I click on the ma

  • System copy problems

    Hello, I am doing a systemcopy with backup / restore from System X69 to Q69 on a different server. Therefore I did an online backup to file, copied it to target server a try to restore the database. I have executed the command brdb6brt -bm RETRIEVE -

  • Can i use the Iphone 4S as a modem for a Samsung Laptop?

    I've tried to link the samsung with the IPHONE 4S via bluetooth.  This appeared to be successful.  However I failed to get internet access on the laptop via the iphone's 3G data network. Is there a way to do this.  Reason being is the laptop user nee

  • Tex not sharp in DVD Sp

    Laetely I've been noticing the text I use (ie: buttons) is not sharp is there a fix for this? Was also wondering if the pre-built text in the pallete would be sharper than adding my own. G4 DP 1 GIG G4 laptop 1.25, MBP 2.0 1 GIG   Mac OS X (10.4.6)