Pin radius vicinity issues

Hi,
This problem below got caught up on another thread with a different problem, thought best to start a new thread for it.
My particular problem here comes from user manipulation via Manage Your Places of the radius of pins. It is slow, it is jerky and it is buggy and what it did some weeks back was jump on one particular pin and expand it to cover the entire world which basically overwrote every other location I had set. Why it would overwrite these without the user changing the settings for said pictures themselves is absolute stupidity, but I digress.
Rebuilding libraries etc. is not going to retract the radius of that circle I am assuming and restore all of the original locations I had. Anyway, I took a deep breath and decided to approach places a little differently and have a lot less specific places. Before I might have had 15 photo locations for a town, now the pics will come under just the town name.
So I have been going through renaming one of the fifteen pins (just from this one town as an example) as the town name, expanding it to cover the area the 15 covered then I delete off the other 14 as places. Time consuming and laborious but I see an eventual sensible outcome from it and in theory quicker to rename all my lost places.
The problem is that the radius issue keeps happening, half a dozen times in the past 3 or 4 days alone and this meant that roughly 2500 pics I had relabelled were once again overwritten with the location of the pin with the expanded radius. And I'm back to square one.
So is there any workaround for this particular Places problem?
Thanks,
C.

@Craig,
I am not sure to what extent less specific places "solves" the problem, which seems to be the radius that a pin receives when placed on the map for the first time.  It seems to be a value determined by Google, is not displayed in the teeny-weeny Assign a Place... dialog, and cannot be modified until it has or has not overlapped other custom places.  So, while the probability of overlap might be somewhat reduced by less specific places, the inconvenience it causes is increased.  I have noticed that Google defines a region named "Aletschgletscher" or "Jungfrau Aletsch" (working from memory here), which has a rather large radius due to the very irregular shape of the glacier, and that pins defined for towns in the Obergoms region, e.g., Blitzingen, Niederwald, Oberwald, Ulrichen, etc., often assumed the very large radius of the Aletsch Glacier.  Besides, I'm wondering why on earth I should have to modify my use of this feature to accommodate Apple's stupid implementation of it.  Nobody in Apple should even consider making the argument that this is how it should work.  The legions of problems it causes is well documented in these forums, although, as we all know, Apple "isn't monitoring" them and hence, presumably, is quite unaware of them.  And iPhoto 09 implemented Places completely differently -- the interface didn't have the eye-candy and "just magical" appeal of the present one, but it didn't cause the problems we're experiencing with Places in iPhoto 11.
My "solution" to the pin radius problem is:
Enter a character string in "Assign a Place..." and see what iPhoto suggests.
If you are tempted to select a suggestion that is a custom place of yours, do so only if you don't intend to modify its location or name.  Doing so will have the same effect as modifying it in Manage My Places!
If you select a place suggested by Google, try to locate it sufficiently far away from other custom places (iPhoto no help here), and give it a name that you can easily recognize and distinguish from Google's suggestions in the future (cf. warning above).
Go directly to Manage My Places, find the new place, judge which existing places it overlaps, and note them down somewhere for the next step.  Then reduce its radius and adjust its location.
Go into the Places view and select the new place.  In all probability there will be photos at that place that don't belong there.  Assign them to the correct place from the list you made in the step above.
Weep and gnash teeth as necessary.  Regularly chant:  "On a Mac it just works!"  Keep stiff upper lip and imagine how much clumsier this must be in Windows.
Regards,
Richard

Similar Messages

  • Radius server issue

    Hello all,
    I have configured a radius server on my sbs2008 server.  I am able to test it from the ASA successfully, however when I try to login with the Anyconnect client I get a login failed.  When I check the logs I see that the VPN is trying to authenitcate against the Local database and not my RADIUS server evern though I have authentication-server-group set.  I have also restarted the asa thinking that was the issue.  
    Here is my config:
    webvpn
    port 444
    enable outside
    svc image disk0:/anyconnect-win-3.1.03103-k9.pkg 1
    svc enable
    group-policy DfltGrpPolicy attributes
    vpn-tunnel-protocol IPSec l2tp-ipsec
    group-policy OAC internal
    group-policy OAC attributes
    wins-server value 192.168.2.2
    dns-server value 192.168.2.2
    vpn-tunnel-protocol svc webvpn
    group-lock value OAC
    split-tunnel-policy tunnelspecified
    split-tunnel-network-list value OAC
    default-domain value OAC.LOCAL
    tunnel-group OAC type remote-access
    tunnel-group OAC general-attributes
    address-pool vpnpool
    authentication-server-group OAC
    default-group-policy OAC
    Thank you for any help,
    Leon

    Leon,
    Looks like your connection is falling on DefaultWebvpn tunnel group. You need to define group list so as to choose
    OAC as tunnel group for connection. Here is what needs to be configured:
    webvpn
    tunnel-group-list enable
    tunnel-group OAC webvpn-attributes
    group-alias OAC enable
    Users will connect to correct OAC tunnel group to get authentocated from radius server.
    Regards,
    Varinder
    P.S. Please mark this post as 'Answered' if you find the above information helpful so that it brings goodness to other community users

  • WLC 5508 Radius accounting issue

    I have a WLAN configured with 802.1x PEAP pointing to an external RADIUS server.  It works fine for the most part, but I'm having problem closing accounting sessions in RADIUS.  I've found this is related to the client table in the WLC.  The user session does not end in RADIUS unless the WLC officially removes the client from the db, which takes 5-6 minutes from what I can see (probably due to the default idle timeout of 300 seconds). 
    For example:
    1.  I connect my tablet to the test WLAN.  It associates and authenticates successfully and the WLC sends the accounting info to my RADIUS server, opening up a user session.  If I turn off the wifi in the tablet, the client entry stays in the WLC client table until it times out.  The WLC removes my tablet from the client table after 5-6 minutes, and then the session closes in the accounting table.  I can force the session to close much earlier by manually removing the client from the WLC.
    2.  Same as #1, but this time instead of turning of the wifi in the tablet, I choose to connect to a different WLAN in the WLC.  The user session in the accounting DB never closes.  If I reconnect back to the original test WLAN with 802.1x, it opens up yet another user session in RADIUS accounting.  Now I have a "dead" user session in accounting that is going to be open forever unless I delete it from SQL.
    Is this an issue with the end user client not sending the disassociation frame properly, or a config problem with the WLC?  How can I make it so that every time a client drops from an AP or moves to a different WLAN, the WLC would immediately send accounting updates to my RADIUS server and close the user session properly?
    Thanks,
    Wil

    Well like you said, the WLC will keep the client in the DB until the idle timer expires. This is normal and I don't think you will be able to change this unless you set the idle timer to a lower value.
    Sent from Cisco Technical Support iPhone App

  • Radius Attribute Issue

    Hi,
    I'm having some issues on implementing radius accounting. Below are my configurations
    aaa group server radius ClearBox
    server 192.168.111.8 auth-port 1812 acct-port 1813
    accounting accept ClearBox
    aaa accounting exec default start-stop group ClearBox
    aaa accounting network default start-stop group ClearBox
    aaa accounting connection h323 start-stop group ClearBox
    aaa accounting resource default start-stop group ClearBox
    aaa session-id common
    gw-accounting aaa
    radius-server attribute list ClearBox
    attribute 1,4-6,25-26,28-31,40-41,44,46,49,61
    radius-server host 192.168.111.8 auth-port 1812 acct-port 1813
    radius-server key 7 12481603171B5B55
    radius-server vsa send accounting
    I am using ClearBox as my radius server. It seems that the ff attributes (h323-connect-time,h323-disconnect-time,h323-disconnect-cause,) was not recorded on the ClearBox. See attached file for the screenshot. May be you can help me on this issue.

    Try to enable the following debugs:
    debug isdn q931
    debug ppp negotiation
    debug aaa authen
    debug aaa accounting
    debug radius

  • SSL VPN on C2821 Radius auth issues

    I've been looking through the discussions and I can't seem to nail this one down. I'm implimenting SSL VPN on a 2821 to do SMTP only. I need it to auth off the radius server and it is only asking for local router login P/Ws. It will not auth against Radius. I've created a seperate aaa auth group to no avail and tried a few different tweaks. I'm throwing science at the wall and seeing what sticks at this point.
    I've made a new group server for Radius to test it, not working. I've tried variations in domain, not working. Can't use SDM, nor want to.
    This is what the config looks like
    Building configuration...
    Current configuration : 24735 bytes
    ! Last configuration change at 08:19:39 Arizona Tue Aug 28 2012 by dci
    version 15.1
    service timestamps debug datetime msec
    service timestamps log datetime msec
    no service password-encryption
    hostname N****
    aaa new-model
    aaa group server radius IAS_AUTH
    server-private 10.12.1.7 auth-port 1645 acct-port 1646 key $*****
    aaa group server radius Global ***made for testing. Redundant
    server-private 10.12.1.7 auth-port 1645 acct-port 1646 key $*****
    aaa authentication login default local
    aaa authentication login sdm_vpn_xauth_ml_1 group IAS_AUTH
    aaa authentication login sdm_vpn_xauth_ml_2 local
    aaa authentication login SSL_Global group Global ** created for SSL VPN redundant, but did for testing
    aaa authorization network sdm_vpn_group_ml_1 local
    aaa authorization network sdm_vpn_group_ml_2 local
    aaa session-id common
    clock timezone Arizona -7
    dot11 syslog
    ip source-route
    ip cef
    password encryption aes
    crypto pki trustpoint TP-self-signed-2464190257
    enrollment selfsigned
    subject-name cn=IOS-Self-Signed-Certificate-2464190257
    revocation-check none
    rsakeypair TP-self-signed-2464190257
    crypto pki certificate chain TP-self-signed-2464190257
    certificate self-signed 01
    REMOVED
    interface GigabitEthernet0/0
    INTERFACES REMOVED
    ip local pool SDM_POOL_2 10.12.252.1 10.12.252.254
    ip forward-protocol nd
    ip http server
    ip http authentication local
    ip http secure-server
    ip http timeout-policy idle 600 life 86400 requests 10000
    ip flow-cache timeout inactive 10
    ip flow-cache timeout active 5
    ip flow-export source GigabitEthernet0/0
    ip flow-export version 5 peer-as
    ip flow-export destination 10.12.1.17 2048
    ROUTES REMOVED
    ACLS REMOVED SSL IS ALLOWED
    route-map STAT_NAT permit 10
    match ip address 109
    route-map DYN_NAT permit 10
    match ip address 108
    snmp-server community $DCI$ RO
    control-plane
    banner login ^C
    line con 0
    password 7 01100F175804
    login authentication local
    line aux 0
    line vty 0 4
    privilege level 15
    transport input telnet ssh
    line vty 5 15
    privilege level 15
    transport input telnet ssh
    scheduler allocate 20000 1000
    webvpn gateway gateway_1
    ip address **outside ip*** port 443
    http-redirect port 80
    ssl trustpoint TP-self-signed-2464190257
    no inservice
    webvpn context webvpn
    secondary-color white
    title-color #CCCC66
    text-color black
    ssl authenticate verify all
    port-forward "portforward_list_1"
       local-port 3000 remote-server "10.12.1.23" remote-port 25 description "Email"
    policy group policy_1
       port-forward "portforward_list_1"
    default-group-policy policy_1
    aaa authentication list SSL_Global
    aaa authentication domain @n****
    gateway gateway_1 domain N****
    max-users 10
    no inservice
    end
    Can't change "no inservice" to "inservice" and I can't figure out why. Any help with this?

    OK, upgraded IOS to most current stable version and I'm now able to do inservice on the context and gateway. I'm trying to go through the SDM route, but Java crashes with ValidatorException errors. I'm going to try updating the SDM since it's the original version to the 2008 version since all the little "fixes" for this do not work. Any ideas on that?    

  • P50-BST2N01 Radius Screen Issue

    A few days ago I noticed a few horizontal lines scroll accross the screen when I'd open it, but as soon as I removed my hand or started working, they'd go away.  Today, I removed Norton AV and loaded Trend and also noticed a couple of windows updates, that I installed.  I rebooted the computer and all seemed ok.  In fact I worked off and on over the next few hours with no issues.  Then about 2hrs ago I opened the screen and it began flickering wide lines of bright colors (almost rainbow colors) then I moved the computer and the bright colors went away and white horizontal lines (resembled a snowy TV screen almost) appeared.  I've since noticed that if I hold it in various positions, including with my hand supporting the screen causes it to switch from snowy lines to colored lines, etc.
    I've called tech support and found them not very helpful.  They did create a case number and told me to send pics to an email, which I did.  I'm told 48hrs to review then they'll get back to me if they determine I didn't cause the issue by dropping or applying too much pressure to the screen.  To be honest, this upsets me, because 1st how can they determine that by pictures and 2nd, It's never been dropped and absolutely no marks on this thing anywhere and if I can't open or close and carry it around, what's the purpose of being a laptop with a hinged lid?
    I've also noticed a few times, the screen seems to blank out totally.  I'm currently in process of system restore to earlier today just to rule out the AV change as well as the win updates. As of right now the computer just booted down from the restore and it doens't appear to be coming back online.  I've hit the power button several times now and the keyboard lights up, but no screen!
    Any suggestions or ideas?  I was told by the sales rep I could return within about 30days if not satisfied and I'm right in that window, but of course I can't talk with them or a manager....
    Attachments:
    2015-01-26 19.52.04.jpg ‏1459 KB
    2015-01-26 19.54.47.jpg ‏2435 KB

    Finally allowed me to restart and issue still present even at the pre-boot screen for bitlocker to unlock the HD.  FWI, I upgraded to 8.1 Propack several weeks ago.

  • WCS Radius Authentication issue with 2008 R2 NPS

    OK, so I have my MPS working. I am  authenticating all sorts of Cisco devices and I can even authenticate  the admin login from the WCS server.  UNLESS I add more than 27 of the  custom settings in the Cisco-AV-Pair that the WCS uses to define the  logged in user rights.  Anything after the 27th setting the login times  out and the WCS denies access. I go back to 27 and it logs in fine.   There are 73 settings for the default admin user.
    Anyone have any ideas why this is happening or better yet, how to get around it?
    I  have been searching through the MS technet to see if there is a  limitation built in to the NPS, but I have yet to find anything.
    Thanks,
    Rod

    I have not gotten any other feedback and I have not been ablet to identify anything on technet about it.  It will happen with any role that requires more than 27 of the Cisco-AV-Pair settings.  It is working fine for stuff like the Lobby administrator logins, that require less than 5 access rules to be passed from the NPS, but that just goes to show that it is working as long as I do ot hit the 27 "line-item" limit.

  • Border radius & flash video player issue

    Border radius & flash issue - PFA screenshot
    http://72.29.76.194/~designs/firefox-flash-border-radius/border-radius-flash-firefox.png
    When I overlay a div with a border radius over a flash object, the corners are being cut as much as the size of border box.
    Firefox 23.0.1

    [https://support.mozilla.org/en-US/questions/971344 Screenshot of the issue]

  • Radius or LDAP (not Oracle LDAP) authentication for GridControl

    I'm running GC 10.2.0.3.0 on Oracle Linux, and I'd like to be able to open up GridControl to other users without setting up accounts/passwords for them. Accounts I can handle, passwords, I don't want to handle.
    I see that if I create a new GC user via enterprise manager, a new database accout is also created in the EMREP database. I've configured our EMREP database to use radius authentication and it works when I connect via sqlplus to the EMREP database. The user is set to authenticate "externally" and os_authent_prefix is set to ''.
    However, after I set up external authentication for a given user, they are no longer able to login to enterprise manager using their radius authenticated password. So something about EM is not capable of radius authentication with the local EMREP database?
    Questions for all:
    Is it possible to authenticate users of enterprise manager GridControl against an external password store? I have at my disposal: radius (works great for several of our databases), ActiveDirectory (without oracle schema extensions), LDAP (active directory), proxying the EM server with another Apache server.
    I do not have a license for OID and the "free use" license for OID does not allow for user management. We cannot we purchase OID for this purpose.
    Our GC environment is Linux so Windows OS authentication against AD isn't going to work and we need to support Firefox/IE/Other browsers on various OS's.
    I've seen hints that "external authentication" is possible with "generic" sources, but nothing concrete. Anyone doing this?

    <QUOTE>All I want now is the capability to perform my own method of LDAP BIND to AD to be used as a security plugin to the database authentication piece</QUOTE>
    Amen.
    Right now, I've got an SR open on the radius authentication issue in GC. It took me a two weeks to convince the Oracle tech that I wasn't talking about getting Oracle to use OS authentication where OS users were authenticated by radius.
    I've put about 40 actual work hours in on this issue, going so far as to deconstruct the EM install .jar files and trying to replace the JDBC drivers.
    At this point I believe that it would be relatively easy for Oracle to add Radius authentication support to Grid control in their next big release (11g).
    Doing so would involve replacing the 10g JDBC thin drivers with 11g JDBC thin drivers. The 10g thin jdbc drivers support advanced security encryption and checksums, but not the radius authentication. The 11g thin drivers DO implement the radius option as well as a full complement of encryption checksum types not supported in 10g. From there it should be a simple matter of the EM java login procedure/bean/servlet/jsp being able to set the thin driver to use the radius code in the jdbc layer.
    The other option, which I haven't yet given up on would be to hack the EM code so that instead of using 10g thin drivers it uses 10g OCI jdbc (thick) drivers. The thick drivers support the radius authentication and encryption/checksum features natively, and the settings are controled by the sqlnet.ora file. I've got java code using those just fine. If only I could hack EM to use them.
    In short, if I had access to the source, I could probably code this up in a week. Very frustrating.
    I thought about trying the OID route, but as I said in my original post, we don't have a license. Even if I got it working, and it sounds like it doesn't really work, I can't justify spending $x00,000 for 10-15 dbas not to have to use dedicated accounts and passwords.
    Normal user login to our 9i and 10g databases we have working with radius (backed by Active Directory). All we do is "create user xxxxxx identified externally;" and the user is good to go.
    In short, I think EM GridControl is awesome. I manage 36 databases with it and I've solved problems in minutes that used to take hours or days. When I show it to some of our oracle "power users" they all want it, but they're all radius authenticated.
    I'll keep the thread updated if I see results from our SR.

  • Incompatibility issue - WLC 5508 and ACS 5.4

    Hi,
    This is my scenario:
    Cisco WLC 5508 firmware 7.4.110.20 and ACS 5.4, two WLAN eap/tls, many client  can't connect to WLAN and on ACS i receive the following error:
    Authentication failed : 11051 RADIUS packet contains invalid state attribute
    workaround:
    1 -Check the network device or AAA Client for hardware problems.
    2-known RADIUS compatibility issues.
    3-Check the network that connects the device to ACS for hardware problems
    there are some incompatibility issue between WLC and ACS ? the compatibility matrix document for wireless imposes the 7.5 firmware for WLC.
    What do you think is possibile ?

    Are there any other errors shown in the details of the failed authentication?
    We may need to look at service logs in debug mode, opening a TAC case would be the best way to go about this.
    Javier Henderson
    Cisco Systems

  • Unknown Radius client (frustrated!!to say the least)

    I am having unknown radius user issues i have a nw65 sp2 server and
    installed the nmas radius from BM3.8,i followed TID 10078616 (how to
    install and configure radius on nmas) when i use NTRADping it times out
    the errors on the radius screen are Access Request Dropped and Unknown
    RADIUS client,
    I know there are a number of threads on this and the only thing i haven't
    done is patch my NMAS?didn't really see anything pertaining to this issue
    on the download site and the TID that mentioned patching NMAS from an
    earlier post had been removed from the knowledgebase.
    here is the debug log with the errors....
    Cacher: Console initiated rebuild of cache
    [2005-01-21 00:13:23 AM] (->)Cacher: NWDSReadObjectInfo
    (DenDAS.RADIUS.Security.TMG), succeeded, time:69
    [2005-01-21 00:13:23 AM] Cacher: Rebuilding cache, mod time different,
    [2005-01-21 00:13:23 AM] (->)NDSReadData:NWDSRead
    (DenDAS.RADIUS.Security.TMG,RADIUS:DAS Version) succeeded, time:96
    [2005-01-21 00:13:23 AM] (->)NDSReadData:NWDSRead
    (DenDAS.RADIUS.Security.TMG,RADIUS:Password Policy) failed, no such
    attribute (-603), time:8
    [2005-01-21 00:13:23 AM] (->)NDSReadData:NWDSRead
    (DenDAS.RADIUS.Security.TMG,RADIUS:Common Name Resolution) succeeded,
    time:5
    [2005-01-21 00:13:23 AM] (->)NDSReadData:NWDSRead
    (DenDAS.RADIUS.Security.TMG,RADIUS:Concurrent Limit) failed, no such
    attribute (-603), time:4
    [2005-01-21 00:13:23 AM] (->)NDSReadData:NWDSRead
    (DenDAS.RADIUS.Security.TMG,RADIUS:Interim Accting Timeout) failed, no
    such attribute (-603), time:4
    [2005-01-21 00:13:23 AM] (->)NDSReadData:NWDSRead
    (DenDAS.RADIUS.Security.TMG,RADIUS:Aged Interval) failed, no such
    attribute (-603), time:4
    [2005-01-21 00:13:23 AM] (->)NDSReadData:NWDSRead
    (DenDAS.RADIUS.Security.TMG,RADIUS:Maximum History Record) failed, no
    such attribute (-603), time:4
    [2005-01-21 00:13:23 AM] CACHE: Use Netware Password
    for "DenDAS.RADIUS.Security.TMG": Enabled
    [2005-01-21 00:13:23 AM] CACHE: CN Login
    for "DenDAS.RADIUS.Security.TMG": Enabled
    [2005-01-21 00:13:23 AM] CACHE: Concurrent Limit
    for "DenDAS.RADIUS.Security.TMG": 0x80000000
    [2005-01-21 00:13:23 AM] CACHE: Interim Timeout
    for "DenDAS.RADIUS.Security.TMG": 10 minutes
    [2005-01-21 00:13:23 AM] CACHE: Interval For Aging
    for "DenDAS.RADIUS.Security.TMG": 7 days
    [2005-01-21 00:13:23 AM] CACHE: Max History Record
    for "DenDAS.RADIUS.Security.TMG": 30
    [2005-01-21 00:13:23 AM]
    Context Lookup List set to:
    [2005-01-21 00:13:23 AM] 1) Denver.TMG
    [2005-01-21 00:13:23 AM] 2) IT.Denver.TMG
    [2005-01-21 00:13:23 AM] 3) TMG
    [2005-01-21 00:13:23 AM] Number of contexts = 3
    [2005-01-21 00:13:23 AM] tag extracted: 10.1.32.10, size: 11, tagLength:
    22
    [2005-01-21 00:13:23 AM] (->)NDSSetUpClientTable
    (DenDAS.RADIUS.Security.TMG) failed, -1460 (0xfffffa4c)
    [2005-01-21 00:13:23 AM] Cache: Error from NDSSetUpClientTable: failed, -
    1460 (0xfffffa4c)
    [2005-01-21 00:13:23 AM] Cache: Successfully set up client table
    [2005-01-21 00:13:23 AM] (->)NDSSetUpContextList
    (DenDAS.RADIUS.Security.TMG), ProxyContext is empty
    [2005-01-21 00:13:23 AM] Cache: Successfully set up context list
    [2005-01-21 00:13:23 AM] (->)NDSSetUpDomainList
    (DenDAS.RADIUS.Security.TMG), Domain list is empty.
    [2005-01-21 00:13:23 AM] Cache: Successfully set up domain list
    [2005-01-21 00:13:23 AM] Cache: Successfully set up search domain list
    [2005-01-21 00:13:23 AM] Cache: Successfully build context list
    [2005-01-21 00:13:23 AM] CACHE: Cache reloaded at [2005-01-21 00:13:23
    AM], current reload count is 3
    [2005-01-21 00:13:23 AM] Cacher: RefreshCache(), succeeded
    [2005-01-21 00:13:23 AM] CACHE: Cache loaded at [2005-01-21 00:12:47
    AM] has been discarded , current reload count is 3
    [2005-01-21 00:13:37 AM] 13) [(ip) 10.1.32.10:1679], Received 46 Bytes
    (Access-Request (1))
    [2005-01-21 00:13:37 AM] [(total=13) (p=12) (d=0) (r=0) (acc=0)
    (rej=0)]
    [2005-01-21 00:13:37 AM] <3> Done GetNextMessage [(ip) 10.1.32.10:1679]:
    time:7890707
    [2005-01-21 00:13:37 AM] -------- START : (Access-Request (1)) [(ip)
    10.1.32.10:1679]: time:365263663---
    [2005-01-21 00:13:37 AM] CACHE: CacheDomainListExist
    (DenDAS.RADIUS.Security.TMG), using cache
    [2005-01-21 00:13:37 AM] AuthRequestHandler(), Calling RequestHandler.
    [2005-01-21 00:13:37 AM] CACHE: CacheReadSecretForNASAddress
    (DenDAS.RADIUS.Security.TMG), using cache
    [2005-01-21 00:13:37 AM] HandleLocalRequest(),
    CacheReadSecretForNASAddress failed, no such RADIUS client (-822), Packet
    Dropped
    [2005-01-21 00:13:37 AM] Deleting
    file "sys:etc\radius\log\20050114.log", failed
    [2005-01-21 00:13:37 AM] -------- END : (Access-Request (1)) [(ip)
    10.1.32.10:1679]: time:365263976---
    [2005-01-21 00:13:41 AM] 14) [(ip) 10.1.32.10:1679], Received 46 Bytes
    (Access-Request (1))
    [2005-01-21 00:13:41 AM] [(total=14) (p=13) (d=0) (r=0) (acc=0)
    (rej=0)]
    [2005-01-21 00:13:41 AM] <5> Done GetNextMessage [(ip) 10.1.32.10:1679]:
    time:7890449
    [2005-01-21 00:13:41 AM] -------- START : (Access-Request (1)) [(ip)
    10.1.32.10:1679]: time:365298757---
    [2005-01-21 00:13:41 AM] CACHE: CacheDomainListExist
    (DenDAS.RADIUS.Security.TMG), using cache
    [2005-01-21 00:13:41 AM] AuthRequestHandler(), Calling RequestHandler.
    [2005-01-21 00:13:41 AM] CACHE: CacheReadSecretForNASAddress
    (DenDAS.RADIUS.Security.TMG), using cache
    [2005-01-21 00:13:41 AM] HandleLocalRequest(),
    CacheReadSecretForNASAddress failed, no such RADIUS client (-822), Packet
    Dropped
    [2005-01-21 00:13:41 AM] -------- END : (Access-Request (1)) [(ip)
    10.1.32.10:1679]: time:365298770---
    [2005-01-21 00:13:45 AM] 15) [(ip) 10.1.32.10:1679], Received 46 Bytes
    (Access-Request (1))
    [2005-01-21 00:13:45 AM] [(total=15) (p=14) (d=0) (r=0) (acc=0)
    (rej=0)]
    [2005-01-21 00:13:45 AM] <6> Done GetNextMessage [(ip) 10.1.32.10:1679]:
    time:7261379
    [2005-01-21 00:13:45 AM] -------- START : (Access-Request (1)) [(ip)
    10.1.32.10:1679]: time:365335091---
    [2005-01-21 00:13:45 AM] CACHE: CacheDomainListExist
    (DenDAS.RADIUS.Security.TMG), using cache
    [2005-01-21 00:13:45 AM] AuthRequestHandler(), Calling RequestHandler.
    [2005-01-21 00:13:45 AM] CACHE: CacheReadSecretForNASAddress
    (DenDAS.RADIUS.Security.TMG), using cache
    [2005-01-21 00:13:45 AM] HandleLocalRequest(),
    CacheReadSecretForNASAddress failed, no such RADIUS client (-822), Packet
    Dropped
    [2005-01-21 00:13:45 AM] -------- END : (Access-Request (1)) [(ip)
    10.1.32.10:1679]: time:365335260---
    [2005-01-21 00:14:35 AM] (->)Cacher: NWDSReadObjectInfo
    (DenDAS.RADIUS.Security.TMG), succeeded, time:110
    [2005-01-21 00:15:46 AM] (->)Cacher: NWDSReadObjectInfo
    (DenDAS.RADIUS.Security.TMG), succeeded, time:40
    [2005-01-21 00:16:58 AM] (->)Cacher: NWDSReadObjectInfo
    (DenDAS.RADIUS.Security.TMG), succeeded, time:401
    any direction would be greatly appreciated.
    Thanks

    Just thought i woukld give an update on this, it appeared that on my
    NW6.0 server (which holds the Certificate of Authority) when i service
    packed it awhile back it didn't install all the files and so my nici
    version was 2.0.2, so i reran the support pack update and everything
    appears to work in conjunction with Radius running on my 6.5 server.
    Thanks for the suggestions though
    > Patching NMAS will not help. Here's the problem:
    >
    > [2005-01-21 00:13:23 AM] (->)NDSSetUpClientTable
    > (DenDAS.RADIUS.Security.TMG) failed, -1460 (0xfffffa4c)
    > [2005-01-21 00:13:23 AM] Cache: Error from NDSSetUpClientTable:
    failed, -
    > 1460 (0xfffffa4c)
    >
    > The -1460 error indicates that NICI could not find a copy of your tree
    key.
    > RADIUS needs the tree key to decrypt the shared secrets for your
    clients.
    > You can use SDIDIAG (available from the support site) to diagnose and
    > correct tree key problems.
    >
    > >>> <[email protected]> 1/20/2005 3:40:25 PM >>>
    > I am having unknown radius user issues i have a nw65 sp2 server and
    > installed the nmas radius from BM3.8,i followed TID 10078616 (how to
    > install and configure radius on nmas) when i use NTRADping it times out
    > the errors on the radius screen are Access Request Dropped and Unknown
    > RADIUS client,
    > I know there are a number of threads on this and the only thing i
    haven't
    > done is patch my NMAS?didn't really see anything pertaining to this
    issue
    > on the download site and the TID that mentioned patching NMAS from an
    > earlier post had been removed from the knowledgebase.
    > here is the debug log with the errors....
    >
    > Cacher: Console initiated rebuild of cache
    > [2005-01-21 00:13:23 AM] (->)Cacher: NWDSReadObjectInfo
    > (DenDAS.RADIUS.Security.TMG), succeeded, time:69
    > [2005-01-21 00:13:23 AM] Cacher: Rebuilding cache, mod time different,
    > [2005-01-21 00:13:23 AM] (->)NDSReadData:NWDSRead
    > (DenDAS.RADIUS.Security.TMG,RADIUS:DAS Version) succeeded, time:96
    > [2005-01-21 00:13:23 AM] (->)NDSReadData:NWDSRead
    > (DenDAS.RADIUS.Security.TMG,RADIUS:Password Policy) failed, no such
    > attribute (-603), time:8
    > [2005-01-21 00:13:23 AM] (->)NDSReadData:NWDSRead
    > (DenDAS.RADIUS.Security.TMG,RADIUS:Common Name Resolution) succeeded,
    > time:5
    > [2005-01-21 00:13:23 AM] (->)NDSReadData:NWDSRead
    > (DenDAS.RADIUS.Security.TMG,RADIUS:Concurrent Limit) failed, no such
    > attribute (-603), time:4
    > [2005-01-21 00:13:23 AM] (->)NDSReadData:NWDSRead
    > (DenDAS.RADIUS.Security.TMG,RADIUS:Interim Accting Timeout) failed, no
    > such attribute (-603), time:4
    > [2005-01-21 00:13:23 AM] (->)NDSReadData:NWDSRead
    > (DenDAS.RADIUS.Security.TMG,RADIUS:Aged Interval) failed, no such
    > attribute (-603), time:4
    > [2005-01-21 00:13:23 AM] (->)NDSReadData:NWDSRead
    > (DenDAS.RADIUS.Security.TMG,RADIUS:Maximum History Record) failed, no
    > such attribute (-603), time:4
    > [2005-01-21 00:13:23 AM] CACHE: Use Netware Password
    > for "DenDAS.RADIUS.Security.TMG": Enabled
    > [2005-01-21 00:13:23 AM] CACHE: CN Login
    > for "DenDAS.RADIUS.Security.TMG": Enabled
    > [2005-01-21 00:13:23 AM] CACHE: Concurrent Limit
    > for "DenDAS.RADIUS.Security.TMG": 0x80000000
    > [2005-01-21 00:13:23 AM] CACHE: Interim Timeout
    > for "DenDAS.RADIUS.Security.TMG": 10 minutes
    > [2005-01-21 00:13:23 AM] CACHE: Interval For Aging
    > for "DenDAS.RADIUS.Security.TMG": 7 days
    > [2005-01-21 00:13:23 AM] CACHE: Max History Record
    > for "DenDAS.RADIUS.Security.TMG": 30
    > [2005-01-21 00:13:23 AM]
    > Context Lookup List set to:
    > [2005-01-21 00:13:23 AM] 1) Denver.TMG
    > [2005-01-21 00:13:23 AM] 2) IT.Denver.TMG
    > [2005-01-21 00:13:23 AM] 3) TMG
    > [2005-01-21 00:13:23 AM] Number of contexts = 3
    > [2005-01-21 00:13:23 AM] tag extracted: 10.1.32.10, size: 11,
    tagLength:
    > 22
    > [2005-01-21 00:13:23 AM] (->)NDSSetUpClientTable
    > (DenDAS.RADIUS.Security.TMG) failed, -1460 (0xfffffa4c)
    > [2005-01-21 00:13:23 AM] Cache: Error from NDSSetUpClientTable:
    failed, -
    > 1460 (0xfffffa4c)
    > [2005-01-21 00:13:23 AM] Cache: Successfully set up client table
    > [2005-01-21 00:13:23 AM] (->)NDSSetUpContextList
    > (DenDAS.RADIUS.Security.TMG), ProxyContext is empty
    > [2005-01-21 00:13:23 AM] Cache: Successfully set up context list
    > [2005-01-21 00:13:23 AM] (->)NDSSetUpDomainList
    > (DenDAS.RADIUS.Security.TMG), Domain list is empty.
    > [2005-01-21 00:13:23 AM] Cache: Successfully set up domain list
    > [2005-01-21 00:13:23 AM] Cache: Successfully set up search domain list
    > [2005-01-21 00:13:23 AM] Cache: Successfully build context list
    > [2005-01-21 00:13:23 AM] CACHE: Cache reloaded at [2005-01-21
    00:13:23
    > AM], current reload count is 3
    > [2005-01-21 00:13:23 AM] Cacher: RefreshCache(), succeeded
    > [2005-01-21 00:13:23 AM] CACHE: Cache loaded at [2005-01-21 00:12:47
    > AM] has been discarded , current reload count is 3
    > [2005-01-21 00:13:37 AM] 13) [(ip) 10.1.32.10:1679], Received 46 Bytes
    > (Access-Request (1))
    > [2005-01-21 00:13:37 AM] [(total=13) (p=12) (d=0) (r=0) (acc=0)
    > (rej=0)]
    > [2005-01-21 00:13:37 AM] <3> Done GetNextMessage [(ip)
    10.1.32.10:1679]:
    > time:7890707
    > [2005-01-21 00:13:37 AM] -------- START : (Access-Request (1)) [(ip)
    > 10.1.32.10:1679]: time:365263663---
    > [2005-01-21 00:13:37 AM] CACHE: CacheDomainListExist
    > (DenDAS.RADIUS.Security.TMG), using cache
    > [2005-01-21 00:13:37 AM] AuthRequestHandler(), Calling RequestHandler.
    > [2005-01-21 00:13:37 AM] CACHE: CacheReadSecretForNASAddress
    > (DenDAS.RADIUS.Security.TMG), using cache
    > [2005-01-21 00:13:37 AM] HandleLocalRequest(),
    > CacheReadSecretForNASAddress failed, no such RADIUS client (-822),
    Packet
    > Dropped
    > [2005-01-21 00:13:37 AM] Deleting
    > file "sys:etc\radius\log\20050114.log", failed
    > [2005-01-21 00:13:37 AM] -------- END : (Access-Request (1)) [(ip)
    > 10.1.32.10:1679]: time:365263976---
    > [2005-01-21 00:13:41 AM] 14) [(ip) 10.1.32.10:1679], Received 46 Bytes
    > (Access-Request (1))
    > [2005-01-21 00:13:41 AM] [(total=14) (p=13) (d=0) (r=0) (acc=0)
    > (rej=0)]
    > [2005-01-21 00:13:41 AM] <5> Done GetNextMessage [(ip)
    10.1.32.10:1679]:
    > time:7890449
    > [2005-01-21 00:13:41 AM] -------- START : (Access-Request (1)) [(ip)
    > 10.1.32.10:1679]: time:365298757---
    > [2005-01-21 00:13:41 AM] CACHE: CacheDomainListExist
    > (DenDAS.RADIUS.Security.TMG), using cache
    > [2005-01-21 00:13:41 AM] AuthRequestHandler(), Calling RequestHandler.
    > [2005-01-21 00:13:41 AM] CACHE: CacheReadSecretForNASAddress
    > (DenDAS.RADIUS.Security.TMG), using cache
    > [2005-01-21 00:13:41 AM] HandleLocalRequest(),
    > CacheReadSecretForNASAddress failed, no such RADIUS client (-822),
    Packet
    > Dropped
    > [2005-01-21 00:13:41 AM] -------- END : (Access-Request (1)) [(ip)
    > 10.1.32.10:1679]: time:365298770---
    > [2005-01-21 00:13:45 AM] 15) [(ip) 10.1.32.10:1679], Received 46 Bytes
    > (Access-Request (1))
    > [2005-01-21 00:13:45 AM] [(total=15) (p=14) (d=0) (r=0) (acc=0)
    > (rej=0)]
    > [2005-01-21 00:13:45 AM] <6> Done GetNextMessage [(ip)
    10.1.32.10:1679]:
    > time:7261379
    > [2005-01-21 00:13:45 AM] -------- START : (Access-Request (1)) [(ip)
    > 10.1.32.10:1679]: time:365335091---
    > [2005-01-21 00:13:45 AM] CACHE: CacheDomainListExist
    > (DenDAS.RADIUS.Security.TMG), using cache
    > [2005-01-21 00:13:45 AM] AuthRequestHandler(), Calling RequestHandler.
    > [2005-01-21 00:13:45 AM] CACHE: CacheReadSecretForNASAddress
    > (DenDAS.RADIUS.Security.TMG), using cache
    > [2005-01-21 00:13:45 AM] HandleLocalRequest(),
    > CacheReadSecretForNASAddress failed, no such RADIUS client (-822),
    Packet
    > Dropped
    > [2005-01-21 00:13:45 AM] -------- END : (Access-Request (1)) [(ip)
    > 10.1.32.10:1679]: time:365335260---
    > [2005-01-21 00:14:35 AM] (->)Cacher: NWDSReadObjectInfo
    > (DenDAS.RADIUS.Security.TMG), succeeded, time:110
    > [2005-01-21 00:15:46 AM] (->)Cacher: NWDSReadObjectInfo
    > (DenDAS.RADIUS.Security.TMG), succeeded, time:40
    > [2005-01-21 00:16:58 AM] (->)Cacher: NWDSReadObjectInfo
    > (DenDAS.RADIUS.Security.TMG), succeeded, time:401
    >
    > any direction would be greatly appreciated.
    > Thanks
    >
    >
    >

  • MacBook Pro 2011 - 15" Core i7 - SSD - Heating, Screen Flickering Issues

    Hello,
    I recently brought MacBook Pro 2011 15" Anti-glare High Resolution with Core i7 2.2 G Hz, SSD, 8GB of RAM. I installed Microsoft Office and Angry Birds at this time. I'm facing multiple issues with my first Mac. Is anyone facing these kinds of issues in new MacBook Pro 15" models?
    Issue 1: Heating: Fan running on high speed even though room temp is below 60F. No major applications are running at that time expect Office 2011 and web surfing (NOT watching any video) and listening iTunes.
    Issue 2: When I log-off from computer, the screen flickers and goes to lower resolution. Also the windows colors changed to different colors. After log-in, I went to System Preferences > Displays. The highest resolution is already selected (1680 x 1050) When I try to change to lower, it changes but still displays different window colors and changing suddenly.
    Troubleshooting Steps:
    1.) Shutdown and Disconnected Power Cable (at that time battery is at 65%)
    2.) Reconnected Power Cable and Power On the system
    3.) Display shows correctly.
    Unable to Resolve:
    1.) Still fan is running on higher speed at low temp (below 60F with no major application running)
    2.) Sometimes Display is not showing properly. It shows different color shades.
    I scheduled support call with Apple Support and let's see what Apple can do...

    I brought my first MacBook Pro 2011 on Day 1, so I can't return it since it won't come under 14 day return policy. I'm taking my Mac to Apple Store to fix all these issues. AppleInsider is also confirmed Disaplay Flicker issue on some of the models that they tested.
    *Apple Support KB:*
    On High Fan Speed Issue: http://support.apple.com/kb/HT4543
    On Display Flicker Issue (not at exactly pin-point this issue): http://support.apple.com/kb/HT1573
    On Gray Progress Bar Issue: http://support.apple.com/kb/TS3148
    *Other Tech Forums:*
    On back-light keyboard: http://forums.macrumors.com/showthread.php?t=1112874

  • TACACS auth and RADIUS accounting with ACS

    I am having RADIUS accounting issues with an ASA 5520 that uses TACACS for authentication. Both are hosted on the same ACS server. I can send RADIUS info to my Microsoft IAS box but get Syslog ID 113022 errors when trying to send to the ACS RADIUS. A packet capture shows the RADIUS accounting request getting to the ACS box (Windows Server 2003 R2) but syslog shows failedauth. Any ideas?

    Thank you for the response. I did verify the syslog explanation you gave below and the AAA server is online as TACACS message are getting to it. My configuration for the ASA for RADIUS is as follows
    Server Group - RADIUS
    Protocol - RADIUS
    Accounting Mode - Simultaneous
    Reactivation Mode - Timed
    Max Failed attempts - 3
    Two servers in the Server Group
    ACS - Not working
    Microsoft IAS - Working
    I have tried removing the IAS server and changing the accounting mode to single and still getting auth failures.
    ACS is configured as follows
    Network Configuration
    AAA Clients - ASA authenticate using TACACS+
    AAA Servers - None listed. When I tried to add the ACS machine the error said the server already existed (In another Network Device Group)

  • Canon rebel XS batttery Issues

    I dont use camera that often. That being said I havent used my camera much. may be I have taken 2K pics at most in th epast 1 year. But I started having issues with the battery that came with Canon very soon after owning the camera. I thought may be battery is becoming weak so I ordered a new one. Now new one worked fine for some timee and now that also loses charge even after taking like 20 pics. I will see green light or full battery indicator on the camera screen and next thing I see is that it has red light. 
    Battery charger - When I put the batttery for charging the red light stays on for 20 secs and than goes away. Should I see the light indicator on charger at all times or ust at the begining. And ofcourse even after putting it to charge, it wont charge. 
    I am going crazy. Please help if anyone had similar issues. I am not able to pin point the issue. Thanks so much. 

    I think it's got to do with the charger and not the batteries, based on what you described.  It's a case of the battery charger lying to you that a battery has been fully charged when it's not.  This happened to me with my Canon 50D charger.  I'd stick a battery in then it would charge it for about 5 mins then the light goes green but in fact the battery is near empty.  I would remove replace a couple times before it would properly charge.  It happens a lot more often with after market batteries but it would do the same for genuine Canon batteries too.  It gets to a point that I make sure the battery is being charged for at least an hour otherwise remove replace until it does.  I haven't tried cleaning the contacts with an eraser but that's a good idea...

  • CA via radius on 1131

    I am trying to install an AP1131-AG, I want my wireless clients to connect to it using certificate authentication via a RADIUS server. I am running an Enterprise CA (Windows 2003 Enterprise), with the SCEP add-on. I am not using the internal RADIUS server, I have IAS (Microsoft RADIUS) already configured on my network. When I try to enroll the access point it crashes.
    crypto pki trustpoint ca01
    enrollment mode ra
    enrollment url http://ca01:80/certsrv/mscep/mscep.dll
    revocation-check crl
    source interface BVI1
    When I enter
    crypto ca enroll ca01 I getwhats attached in the crash file.

    This looks like a IAS radius server issue. Can you try using the internal radius server and check if this works. This way we will be able to check if the problem is with the IAS.

Maybe you are looking for