Policy Agent 2.2 on IIS 6 - Windows Server 2003 R2

We are having problems with the Policy Agent 2.2 Hotpatch 4 not protecting Virtual Directories in IIS 6. Access to those are always allowed and nothing is written to the policy agent log when accessing anything in the virtual directories. Web sites are protected in a normal way.
Is the protection of virtual directories even supported?
Is protection of asp-pages supported with the IIS agent?
We have followed the installation document to the letter. And we have quite a long experience from doing the same thing in java environments.

I am no expert but try this out.
Go to access Manager console and under Subjects for an org, go to Agents
Create a new agent called the UrlAccessAgent and give it the password same as your shared secred found in the AMConfig.Properties file.
That should probably fix your problem. These suggestions are going by the steps I took to fix this issue.

Similar Messages

  • Sun One Identity Server Policy Agent 2.0 for IIS 5.0

    Hi,
    I try to use Sun Indentity Server with IIS, so I installed policy agent 2.0 for IIS 5.0. my operating system is Windows 2000 professional. I can see the ISAPI fiiter is loaded, but when I try to test the installation by access a testing page, like http://localhost/test.asp, I can not go anywhere, the sun identity server log in page is not loaded. I checked the debug log file, there are just two warning message:
    2003-02-12 11:11:52.314 Warning 1316:00A548E8 PolicyAgent: Invalid URL for property (com.sun.am.policy.agents.accessDeniedURL) specified
    2003-02-12 11:11:52.798 Warning 1316:00A548E8 PolicyAgent: FqdnHandler::FqdnHandler() No value specified for fqdnMap.
    Could someone help me out here? Any suggestion will be appreciated.
    Thanks,
    Harold Chen

    Well, it's in the Agent's installation guide, section "Read me first", "Setting Fully Qualified Domain Name". :)

  • Not able to install IIS on Windows Server 2012

    I am unable to install IIS on Windows Server 2012. I get the error as shown in the below screenshot. Error code is 0x800f0922. I did RestoreHealth but that has not helped. Any help will be appreciated.

    Hi Yogesh,
    Just last week was installing IIS on W12R2 server and got stuck and found easy way of installing this as follow.
    when you start installing IIS and at the last step as i marked on red square confirmation. there you find
    export configuration settings..go to and export it to C drive and open Powershell by right clicking as open as administrator and run this from Powershell and it will install successfully.
    Please let me know if you are facing any issue, since this way it has to work.
    OR if you it already worked let me know or mark as correct.
    Regards
    Raj Navalgund
    ADS/DNS/DHCP/RIS/GROUP POLICY/PowerShell/VMware/Esxi/Storage.

  • The Comparison of IIS on Windows Server 2012 R2 and Websphere application Server on R6 or AS400

    Customer is looking for the internet application solution, and they would like to know the difference/ comparison of IIS on Windows Server and WAS on Linux.  I know it's hard to answer, but is there any data/document/information so that we could convince
    customer to use IIS instead of WAS on R6/AS400?

    Hi,
    I could not say which one is better.
    The advantage of IIS, you could refer to:
    http://www.microsoft.com/web/platform/server.aspx
    Similar thread has been discussed:
    Windows/.NET/ASP.NET/IIS/SQL Server vs. Linux/WebSphere/Java/Apache/Oracle information
    https://social.msdn.microsoft.com/Forums/en-US/9d3b975d-42cb-48fc-94c4-a0394d9f34e6/windowsnetaspnetiissql-server-vs-linuxwebspherejavaapacheoracle-information?forum=architecturegeneral
    Meanwhile, i think you could ask in IIS forums:
    http://forums.iis.net/
    Regards.
    Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Support, contact [email protected]

  • How to restrict users working on Windows 7 clients from accessing Windows Explorer and other systems in the network through Group Policy with a domain controller running on Windows Server 2008 r2

    Dear All,
    We are having an infrastructure setup of around 500 client computers managed through group policy.
    Recently the domain controllers have been migrated from Windows Server 2003 to Server 2008 R2.
    Since this account requires extremely strict environment, we need to figure the solution for restricting the users from access anything locally.
    It would be great if you can assist me with the following query.
    How to restrict users logged on Windows 7 clients from accessing Windows Explorer and browsing other systems in the network through Group Policy with a domain controller running on Windows Server 2008 r2 ?
    Can we disable Network Tab on the left hand pane ?
    explorer.exe is blocked already, but users are able to enter the Windows Explorer by clicking on the name which is visible on the Start Menu.

    >   * explorer.exe is blocked already, but users are able to enter the
    >     Windows Explorer by clicking on the name which is visible on the
    >     Start Menu.
    You cannot block explorer.exe when you do not replace the shell - the
    desktop you see effectively IS explorer.exe...
    Your requirement sounds like you need a custom shell:
    http://gpsearch.azurewebsites.net/#2812
    Martin
    Mal ein
    GUTES Buch über GPOs lesen?
    NO THEY ARE NOT EVIL, if you know what you are doing:
    Good or bad GPOs?
    And if IT bothers me - coke bottle design refreshment :))

  • Crystal 8 Web Component Server ond Windows Server 2003 and IIS 6

    I am trying to get Crystal 8 Web Component and Page Server to run on Windows 2003 Server with IIS 6. I have done the following:
    Added the .cri and .rpt ISAPI extension mappings
    Have Cache ISAPI extentions selected
    Deselected "verify that file exists"
    Aded the .cri and .rpt MIME types
    Added wcsinsapi.dll as a IIS 6.0 extension
    The above resolved all HTTP 40x.x errors but when trying to access a report from IE I receive the following error:
    Error: Could not connect to the Web Component Server.
    The page server and web component server services are running and I do see the listen ports (6401, 6403) active.
    I know this is old software but it works quite well under a Windows 2000 Server and other web postings indicate that it is possible to run Crystal 8 under WS2003 and IIS 6.
    Does any one know of a white paper/support document that details how to run Crystal 8 under Windows Server 2003 and IIS 6?
    Has any one done this successfully?
    Any tips as to cause of the "Could Not Connect" problem would be greatly appreciated.

    Well as it turns out it looks like it was just this server.
    We tried everything, and I added those user accounts to full
    permission for the Coldfusion folders and we just could not get it
    to work. We tried it on another couple servers running 2003, and it
    installed perfectly right out of the box with no other permissions
    needed. And those servers were all running default configs with no
    other permissions done.
    We still have no idea what was the problem, but at least for
    now it seems to be this server. But I will tell you what, that II6
    stuff seems to be a bit of a pain, we had major problems installing
    new version of PHP with it too. Oh well, good luck to you
    too!

  • Windows 8 and IE10 and 11 not accepting Proxy Settings via Group Policy from windows server 2003

    Hi
    We are still running Windows Server 2003 with a Win7 and Win8 desktop environment. I can control Win7 IE9 settings,
    But Win8 systems are running IE10. We have an internal proxy server.
    Is there any way to force the proxy settings to the Win8/IE10 or 11 systems .
    i have tried with The IE 10 .adm template and applied gpo,but does not have any proxy settings for ie10 and no changes were applies
    please can anyone help me regarding this
    i want to apply GPO from windows server 2003  to windows 8 ie10/11
    Thanks
    KNC

    Hi,   
    I agree with Zanderol24, we can install RSAT on a windows8 client, and then we can use Group Policy Management to manage group policy from the client.
    For more information about RSAT, we can refer to the following link:
    Remote Server Administration Tools (RSAT) for Windows Client and Windows Server (dsforum2wiki)
    http://social.technet.microsoft.com/wiki/contents/articles/2202.remote-server-administration-tools-rsat-for-windows-client-and-windows-server-dsforum2wiki.aspx
    For more detailed information about how to use GPP to configure the proxy setting for ie10 and ie11, we can refer to the following link:
    How to configure Group Policy Preference settings for Internet Explorer 11 in Windows 8.1 or Windows Server 2012 R2
    http://support.microsoft.com/kb/2898604
    When we use GPPs you need to be aware of the F5-F8 keys:
    Red / Green: GP Preferences doesn’t work even though the policy applied and after gpupdate \force
    http://blogs.technet.com/b/grouppolicy/archive/2008/10/13/red-green-gp-preferences-doesn-t-work-even-though-the-policy-applied-and-after-gpupdate-force.aspx
    Besides, aside from using group policy to manage IE, IEAK can also be used to do this.
    For IEAK, the following article can be referred to for more information.
    Internet Explorer Administration Kit (IEAK) Information and Downloads
    http://technet.microsoft.com/en-in/ie/bb219517.aspx
    Best Regards,
    Erin

  • Migration on windows server 2003 to 2012 r2 by using IIS 6.0 what are parameters are changed means supported and non suported parameters and configurations?

    In my project am going to migrate windows server 2003 to 2012 r2 by using IIS 6.0? what are the parameters are changed and what are the parameters are not supported and what are the modules need to change?
    Please give the related answer as soon as posssibule. that is more help for me?
    Thanks,
    vamsikrishna.

    1. This seems to be incomplete description.
    2. You can enable legacy technologies while installing roles and features.
    3. For application pool(s) you should consult respective developer/vendor team(s) for help.
    Regards
    Milos

  • Can't install DPM agent for Windows Server 2003

    Hi,
    We have DPM 2012 backup server.i try to install DPM Agent on Windows server 2003 PC. but installation failed.below error are Occured.
    Install protection agent on (serverName.domain name) failed:
    Error 347: An error occurred when the agent operation attempted to create the DPM Agent Coordinator service on (serverName.domain name).
    Error details: %1 is not a valid Win32 application
    Recommended action: Verify that the Agent Coordinator service on(serverName.domain name) is responding, if it is present. Review the error details, take the appropriate action, and then retry the agent operation.
    HOW CAN SORTED OUT FOLLOWING ISSURE
    Thanks,
    Gayan

    Hi,
    The below blog outlines the needed steps for protecting
    Windows Server 2003 computers using Data Protection Manager 2012 R2.
    http://blogs.technet.com/b/dpm/archive/2014/06/11/details-on-protecting-windows-server-2003-computers-using-data-protection-manager-2012-r2.aspx
    Please remember to click “Mark as Answer” on the post that helps you, and to click “Unmark as Answer” if a marked post does not actually
    answer your question. This can be beneficial to other community members reading the thread. Regards, Dwayne Jackson II. [MSFT] This posting is provided "AS IS" with no warranties, and confers no rights."

  • Question about locking down IIS on an SCCM 2012 distribution point on a Windows Server 2003

    Hello. My environment is SCCM 2012 SP1. I will be setting up several distribution points on Windows Server 2003 machines. This summer I have a project to configure SCCM to use our PKI infrastructure. Unfortunately, this will not be in place before I need
    to set the Windows Server 2003 machines up as distribution points. I am not an IIS expert. When I set the DPs up, I am only 1)Installing IIS, 2)Enabling BITS extensions, and 3)Enabling WebDav. Is there anything I should do to ensure they are as secured as
    possible?

    I would say that installing Windows Server 2003 is not "as secure as possible" due to it's end of support coming soon.
    http://support.microsoft.com/lifecycle/default.aspx?LN=en-us&p1=3198&x=10&y=12
    And I would say that we need more information about your scenario to tell you how it is as secure "as possible". Since that would be shutoff at the bottom of the ocean. But that wouldn't be that useful server.
    Im guessing that you will run these servers for internal
    clients ONLY. And that you have a decent edge protection as well as physical protection. Then I would start by having the lastest secrutiy patches, running antivirus software and having the firewall turned ON. I would make sure that
    only necessary logons would be possible and that the servers wouldn't cache any credentials. Typically a DP NEVER holds sensitive data so no real need to secure them more than that in a normal scenario if you ask me.
    A final notice, this is a baseline
    for a common scenario. You would need to scale and change that
    in order to apply for your scenario.
    Tim Nilimaa | Blog: http://infoworks.tv | Twitter: @timnilimaa

  • Policy Agent 2.1 for IBM WebSphere Application Server 5.0 can't install

    I install Policy Agent 2.1 for IBM WebSphere Application Server 5.0
    But Can't install success
    resone:
    Base Installation completed Successfully
    WebSphere 5.0 Agent ClassPath : C:/Sun/IdentityServer/j2ee_agents/lib/am_sdk.jar;C:/Sun/IdentityServer/j2ee_agents/lib/am_services.jar;C:/Sun/IdentityServer/j2ee_agents/lib/am_sso_provider.jar;C:/Sun/IdentityServer/j2ee_agents/lib/am_logging.jar;C:/Sun/IdentityServer/j2ee_agents/config/F__Program Files_WebSphere_AppServer_config_cells_tmbsp103_nodes_tmbsp103_servers_server1;C:/Sun/IdentityServer/j2ee_agents/locale
    WebSphere 5.0 Agent Boot ClassPath : C:/Sun/IdentityServer/j2ee_agents/lib/jdk_logging.jar
    WebSphere 5.0 Agent JVM options : -Damconfig=AMAgent -Dmax_conn_pool=10 -Dmin_conn_pool=1 -Dcom.iplanet.coreservices.configpath=C:/Sun/IdentityServer/j2ee_agents/config/F__Program Files_WebSphere_AppServer_config_cells_tmbsp103_nodes_tmbsp103_servers_server1/ums -Djava.util.logging.manager=com.sun.identity.log.LogManager -Djava.util.logging.config.file=C:/Sun/IdentityServer/j2ee_agents/config/F__Program Files_WebSphere_AppServer_config_cells_tmbsp103_nodes_tmbsp103_servers_server1/AMAgent.properties -Djava.protocol.handler.pkgs=com.ibm.net.ssl.internal.www.protocol -Dws.ext.dirs=C:/Sun/IdentityServer/j2ee_agents/lib
    The server.policy file was configured successfully.
    Global Security Settings Configured Successfully.
    sas.client.props file Configuration FAILED.
    soap.client.props file Configuration FAILED.
    sas.client.props /soap.client.props two file how to Configuration ??

    From your description, since the agent installs file with a different JRE, I would suspect it has something to do with the availability of JCE provider in the first JRE. By default, WebSphere's JRE is equipped with IBM JCE provider which is what the agent uses to encrypt the necessary
    information. If this provider is not configured correctly it could result in the error that you are seeing. Please check the WebSphere installation and make sure that the JRE used by it has the necessary IBM JCE provider configured. The java.security file for this should contain something like:
    security.provider.1=sun.security.provider.Sun
    security.provider.2=com.ibm.crypto.provider.IBMJCE
    security.provider.3=com.ibm.jsse.IBMJSSEProvider
    security.provider.4=com.ibm.security.cert.IBMCertPath
    security.provider.5=com.ibm.crypto.pkcs11.provider.IBMPKCS11
    Also, make sure that when you are installing the agent you specify the Java Home as prompted by the agent to point to the location where this JRE is installed. Typically this is under WebSphere/AppServer/java directory. HTH, Jerry

  • ALUI + Windows server 2003 + WebLogic server + SSO via WIA

    Hello,
    I'm trying to configurate SSO on ALUI in my environment.
    I've got two servers.
    On server 1 is installed ALUI 6.5 on WebLogic server.
    On server 2 is installed Active Directory.
    Both servers are attached to one domain from active directory and both servers use Windows server 2003 as operation system.
    My way of implementation SSO in this environment is folowing:
    1. I install IIS on server 2.
    2. I deploy WebLogic plug-in for IIS and configurate it to proxy. This is configurated on server 2.
    3. I check that this setup works by trying to connect to the portal via IIS.(true)
    4. I configure Windows Integrated Authentication for the /portal virtual directory.
    5. I install Identity Service for AD (server 2)
    6. I configure Authentication Source and synchronize my Users from AD. After users have been synchronised into the portal, I validated setup by trying to login on the portal as one of AD users.
    7. I change portal Authentication Source type to Synchronization only and select SSO as Authentication partner in portal administration.
    8. I modify Authentication source prefix, enable SSO, and select SSO provider (for WIA SSOVendor=5) in the portalconfig.xml file
    <setting name="DefaultAuthSourcePrefix">
    <value xsi:type="xsd:string">mydomain</value>
    </setting>
    IE on a computer in the mydomain is configured to "Automatic logon with current name and password". Site points to the portal(server 1 ) via the proxy on the server 2 server is in the local intranet zone, but this configuration is on running.
    logs from weblogic plug-in (server 2):
         ================New Request: [portal/server.pt.wlforward] =================
    Wed Nov 19 09:27:24 2008 <484412270832442> SSL is not being used
    Wed Nov 19 09:27:24 2008 <484412270832442> resolveRequest: wlforward: /portal/server.pt
    Wed Nov 19 09:27:24 2008 <484412270832441> Wed Nov 19 09:27:24 2008 <484412270832442> timer thread starting
    URI is /portal/server.pt, len=17
    Wed Nov 19 09:27:24 2008 <484412270832442> Request URI = [portal/server.pt]
    Wed Nov 19 09:27:24 2008 <484412270832442> attempt #0 out of a max of 10
    Wed Nov 19 09:27:24 2008 <484412270832442> Trying a pooled connection for '192.168.130.103/80/80'
    Wed Nov 19 09:27:24 2008 <484412270832442> getPooledConn: No more connections in the pool for Host[192.168.130.103] Port[80] SecurePort[80]
    Wed Nov 19 09:27:24 2008 <484412270832442> general list: trying connect to '192.168.130.103'/80/80 at line 1239 for '/portal/server.pt'
    Wed Nov 19 09:27:24 2008 <484412270832442> INFO: New NON-SSL URL
    Wed Nov 19 09:27:24 2008 <484412270832442> Connect returns -1, and error no set to 10035, msg 'Unknown error'
    Wed Nov 19 09:27:24 2008 <484412270832442> EINPROGRESS in connect() - selecting
    Wed Nov 19 09:27:24 2008 <484412270832442> Local Port of the socket is 8610
    Wed Nov 19 09:27:24 2008 <484412270832442> Remote Host 192.168.130.103 Remote Port 80
    Wed Nov 19 09:27:24 2008 <484412270832442> general list: created a new connection to '192.168.130.103'/80 for '/portal/server.pt', Local port: 8610
    Wed Nov 19 09:27:24 2008 <484412270832442> WLS info in sendRequest: 192.168.130.103:80 recycled? 0
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs from client:[Accept]=[*/*]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs from client:[Accept-Encoding]=[gzip, deflate]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs from client:[Accept-Language]=[cs]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs from client:[Authorization]=[Negotiate TlRMTVNTUAADAAAAAAAAAEgAAAAAAAAASAAAAAAAAABIAAAAAAAAAEgAAAAAAAAASAAAAAAAAABIAAAABcKIogUCzg4AAAAP]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs from client:[Cookie]=[ptLTCN=ptLTCDV; ptrecentfolders=336-; JSESSIONID=MMhLJvThCGWyn9knTvgh9dRXMzH0N70JSm8JjS7tKbjQyNvhkX21!-1901726998; plloginoccured=false; ptLastLoginAuthSource=]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs from client:[Host]=[192.168.130.83]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs from client:[User-Agent]=[Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.2; SV1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.648; .NET CLR 3.5.21022)]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs from client:[UA-CPU]=[x86]
    Wed Nov 19 09:27:24 2008 <484412270832442> URL::sendHeaders(): meth='GET' file='/portal/server.pt' protocol='HTTP/1.1'
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs to WLS:[Accept]=[*/*]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs to WLS:[Accept-Encoding]=[gzip, deflate]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs to WLS:[Accept-Language]=[cs]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs to WLS:[Authorization]=[Negotiate TlRMTVNTUAADAAAAAAAAAEgAAAAAAAAASAAAAAAAAABIAAAAAAAAAEgAAAAAAAAASAAAAAAAAABIAAAABcKIogUCzg4AAAAP]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs to WLS:[Cookie]=[ptLTCN=ptLTCDV; ptrecentfolders=336-; JSESSIONID=MMhLJvThCGWyn9knTvgh9dRXMzH0N70JSm8JjS7tKbjQyNvhkX21!-1901726998; plloginoccured=false; ptLastLoginAuthSource=]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs to WLS:[Host]=[192.168.130.83]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs to WLS:[User-Agent]=[Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.2; SV1; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.648; .NET CLR 3.5.21022)]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs to WLS:[UA-CPU]=[x86]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs to WLS:[Connection]=[Keep-Alive]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs to WLS:[WL-Proxy-Client-IP]=[192.168.130.83]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs to WLS:[Proxy-Client-IP]=[192.168.130.83]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs to WLS:[X-Forwarded-For]=[192.168.130.83]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs to WLS:[WL-Proxy-Client-Keysize]=[]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs to WLS:[WL-Proxy-Client-Secretkeysize]=[]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs to WLS:[X-WebLogic-KeepAliveSecs]=[30]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs to WLS:[X-WebLogic-Force-JVMID]=[unset]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs to WLS:[WL-Proxy-SSL]=[false]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs to WLS:[Proxy-Remote-User]=[VYVOJ\Administrator]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs to WLS:[Proxy-Auth-Type]=[Negotiate]
    Wed Nov 19 09:27:24 2008 <484412270832442> URL::parseHeaders: CompleteStatusLine set to [HTTP/1.1 302 Moved Temporarily]
    Wed Nov 19 09:27:24 2008 <484412270832442> URL::parseHeaders: StatusLine set to [302 Moved Temporarily]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs from WLS:[Cache-Control]=[no-cache="set-cookie"]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs from WLS:[Date]=[Wed, 19 Nov 2008 08:27:24 GMT]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs from WLS:[Transfer-Encoding]=[chunked]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs from WLS:[Location]=[http://192.168.130.83/portal/SSOServlet?]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs from WLS:[X-WebLogic-JVMID]=[1729301638]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs from WLS:[Set-Cookie]=[JSESSIONID=BZGGJjNMHHySbShbTVQ018X2Tpg5Gc3cb6L28yBqnl9vKGynjLlp!1729301638; path=/]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs from WLS:[Set-Cookie]=[plloginoccured=false; path=/]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs from WLS:[X-Powered-By]=[Servlet/2.5 JSP/2.1]
    Wed Nov 19 09:27:24 2008 <484412270832442> parsed all headers OK
    Wed Nov 19 09:27:24 2008 <484412270832442> sendResponse() : uref->getStatus() = '302'
    Wed Nov 19 09:27:24 2008 <484412270832442> Going to send headers to the client. Status :302 Moved Temporarily
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs to client:[Cache-Control]=[no-cache="set-cookie"]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs to client:[Transfer-Encoding]=[chunked]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs to client:[Location]=[http://192.168.130.83/portal/SSOServlet?]
    Wed Nov 19 09:27:24 2008 <484412270832442> for 192.168.130.103/80/80, updating JVMID: 1729301638
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs to client:[Set-Cookie]=[JSESSIONID=BZGGJjNMHHySbShbTVQ018X2Tpg5Gc3cb6L28yBqnl9vKGynjLlp!1729301638; path=/]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs to client:[Set-Cookie]=[plloginoccured=false; path=/]
    Wed Nov 19 09:27:24 2008 <484412270832442> Hdrs to client:[X-Powered-By]=[Servlet/2.5 JSP/2.1]
    Wed Nov 19 09:27:24 2008 <484412270832442> Content Length Unknown
    Wed Nov 19 09:27:24 2008 <484412270832442> canRecycle: conn=1 status=302 isKA=1 clen=-1 isCTE=1
    Wed Nov 19 09:27:24 2008 <484412270832442> closeConn: pooling for '192.168.130.103/80'
    Wed Nov 19 09:27:24 2008 <484412270832442> request [portal/server.pt] processed successfully ..................
    Wed Nov 19 09:27:24 2008 <484412270832443>
    If I do same configuration in environment where ALUI is runnig on IIS(without cofiguration proxy and weblogic plug in) than automatic login to portal is right.
    Have you got any idea how to solve this?

    Here are the steps to enable it (from what I remember)
    1. Log into the portal, update the Auth Source, select the "Synchronization" menu item on the left, change the option to 'Synchronization with Authentication Partner' and a new dropdown will appear, select the only option 'SSO Authentication Source'.
    2. portalconfig.xml - set the SSOVendor attribute to 5 (WIA) it's currently 0 and AllowAutoConnect flag to 1 on all webservers you'd like this to happen on.
    3. IIS Administrator - browse to the portal/sso virtual directory, right click the 'sso' folder and select 'Properties'. In the Directory Security tab click the 'Edit' button in the first section for "Administration and Access". Uncheck the "Allow Anonymous Access" and check the box for "Integrated Windows Authentication" in the second section of the page, on all your webservers
    4. Restart the portal on both servers.
    There is a good deal of info on WIA on the archives from the Plumtree days
    http://forums.oracle.com/forums/search.jspa?threadID=&q=wia&objID=c234&dateRange=all&userID=&numResults=15&rankBy=10001

  • Java2SDk 1.4.2.06 installation problem on Windows Server 2003

    I tried the installation of Java2SDk 1.4.2.06. ,I tried this, but it fails to complete and NO directory folder is created so I cannot continue with the proccess. The OS is Windows Server 2003.
    I have done the following procedures:
    Enabled/Disabled the IIS configuration
    Enabled/Disabled the Windows Firewall
    Enabled/Disabled Antivirus software
    The error in the event log is:
    Event Type: Error
    Event Source: Application Error
    Event Category: (100)
    Event ID: 1000
    Date: 3/6/2007
    Time: 2:23:49 PM
    User: N/A
    Computer: GERSSERVER
    Description:
    Faulting application msiexec.exe, version 3.1.4000.1433, faulting module unknown, version 0.0.0.0, fault address 0x0013b43e.
    For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
    Data:
    0000: 41 70 70 6c 69 63 61 74 Applicat
    0008: 69 6f 6e 20 46 61 69 6c ion Fail
    0010: 75 72 65 20 20 6d 73 69 ure msi
    0018: 65 78 65 63 2e 65 78 65 exec.exe
    0020: 20 33 2e 31 2e 34 30 30 3.1.400
    0028: 30 2e 31 34 33 33 20 69 0.1433 i
    0030: 6e 20 75 6e 6b 6e 6f 77 n unknow
    0038: 6e 20 30 2e 30 2e 30 2e n 0.0.0.
    0040: 30 20 61 74 20 6f 66 66 0 at off
    0048: 73 65 74 20 30 30 31 33 set 0013
    0050: 62 34 33 65 b43e
    Please advice on this problem. Other tech support recommendations were to reinstall the OS.
    I have also tried installing the latest version of Java 2 SDK without success.
    Thanks for your support
    William Hernandez
    UPR-Mayaguez Campus

    Thank you so much for your help!
    I have just tried as you said. Now I see that actually at the beginning of the intallation, there is a NullPointerException. Here is the error information:
    ===============================
    Checking available disk space...
    Checking Java(TM) 2 Runtime Environment...
    Launching Java(TM) 2 Runtime Environment...
    java.lang.NullPointerException
    at sun.java2d.SunGraphics2D.revalidateAll(SunGraphics2D.java:2086)
    at sun.java2d.SunGraphics2D.drawString(SunGraphics2D.java:2536)
    at com.sun.wizards.awt.Header.paint(Header.java:112)
    at sun.awt.RepaintArea.paint(RepaintArea.java:177)
    at sun.awt.windows.WComponentPeer.handleEvent(WComponentPeer.java:260)
    at java.awt.Component.dispatchEventImpl(Component.java:3678)
    at java.awt.Component.dispatchEvent(Component.java:3477)
    at java.awt.EventQueue.dispatchEvent(EventQueue.java:456)
    at java.awt.EventDispatchThread.pumpOneEventForHierarchy(EventDispatchTh
    read.java:201)
    at java.awt.EventDispatchThread.pumpEventsForHierarchy(EventDispatchThre
    ad.java:151)
    at java.awt.EventDispatchThread.pumpEvents(EventDispatchThread.java:145)
    at java.awt.EventDispatchThread.pumpEvents(EventDispatchThread.java:137)
    at java.awt.EventDispatchThread.run(EventDispatchThread.java:100)
    ===============================
    Please help me out of this. Thank you.

  • Windows Server 2003 R2 Enterprise Edition 32 bits Service Pack 2 never finishes searching for updates and use 100% of CPU.

    Hi everyone, I am having issues updating a clean Windows Server 2003 R2 Enterprise Edition 32 bits Service Pack 2, so any help with be appreciated cause I've already tried all my cards for the past 5 days in this particular issue without success.
    All I did so far is installing Windows Server 2003 R2 Enterprise with Service Pack 2, open IE to update, it keeps searching for updates and never stop, after 20mn to 30mn the process svchost.exe start using 100% of my CPU.
    I already tried the following scenarios:
    1-  Install IE8, install the update KB927891 and the Windows Update Agent 3.0 (I already had this one installed). Reboot and run windows update trough IE8 and the problem did not solved.
    2- Install those 2 software "MicrosoftFixit.wu.MATSKB.Run" and "MicrosoftFixit50777", open IE to update, it still hangs and continues eating my CPU. This is the output of "MicrosoftFixit".
    Windows Update error 0x8007000D(2014-01-06-T-06_06_34A) --> Not Fixed
    Cryptographic service components are not registered (This service is actually running successfully) --> Not Fixed
    3- I found the following script that would register some DLL, deleting the "SoftwareDistribution" and forcing windows update to solve the problem and nothing happened either.
    Link to script:
    http://gallery.technet.microsoft.com/scriptcenter/Dos-Command-Line-Batch-to-fb07b159#content
    Here is a link to the content of my WindowUpdate.log file:
    https://skydrive.live.com/redir?resid=883EE9BE85F9632B%21105
    Thank you in advance for helping.

    All I did so far is installing Windows Server 2003 R2 Enterprise with Service Pack 2, open IE to update, it keeps searching for updates and never stop, after 20mn to 30mn the process svchost.exe start using 100% of my CPU.
    Herein is the root cause of your issue. A topic that's been discussed in several blogs, forums, and even in the media since September regards a known issue with attempting to patch IE6 RTM via Windows Update.
    Aside from that particular issue... browsing the Internet with an unpatched instance of IE6, especially from a Windows Server system, is also asking for a world of hurt.
    Might I suggest the following:
    Download the IE8 for Windows Server 2003 installer to a thumb drive.
    Download the latest Cumulative Security Update for IE8 for Windows Server 2003 to a thumb drive.
    Reinstall Windows Server 2003 with Service Pack 2.
    Upgrade to IE8 from the thumb drive installer and apply the
    Cumulative Security Update.
    Now your machine is capable of safely browsing to Windows Update to install the rest of the updates (well, maybe, there's also all those other Security Updates from the past seven years that your machine still has vulnerabilites for -- even those seven
    years of updates are going to take a Very Long Time to scan for, download, and install).
    Why don't you have a WSUS server? -- noting, wryly, that you've posted in the *WSUS* forum.
    Lawrence Garvin, M.S., MCSA, MCITP:EA, MCDBA
    SolarWinds Head Geek
    Microsoft MVP - Software Packaging, Deployment & Servicing (2005-2014)
    My MVP Profile: http://mvp.microsoft.com/en-us/mvp/Lawrence%20R%20Garvin-32101
    http://www.solarwinds.com/gotmicrosoft
    The views expressed on this post are mine and do not necessarily reflect the views of SolarWinds.

  • Integration - Windows Server 2003/2008R2: Creating a login script that attaches programs to a certain user group. Upgrading to Windows 7/8

    We are currently running a windows server 2003 environment with a 2003 server being the DC. We have a couple of 2008 r2 servers that are member servers.
    OK...
    Our users are primarily operating off of windows xp clients/workstations in which they use RDP to connect to the newer member servers that are windows 2008. With their base profile in xp I am using roaming profiles via server 2003. I am looking to begin
    upgrading all of the workstations to all-in-one windows7/8 boxes partially because of cosmetic reasons(#weird) and partially because we will eventually begin using the camera options that are in the all-in-one's.
    Also..I must do this one at a time as we don't have the money to do a complete overhaul of all client workstations..If that was the case, I could just redo the network and make those members servers the DC and backup DC as well as add a virtual server
    in which everyone can access those legacy programs that are still needed...
    As you guys know windows 7/8 boxes will not work with server 2003 and roaming profiles. The reason we don't completely upgrade to 2008 r2 environment is because we are still holding on to a legacy program that requires server 2003 and these programs are
    vital to our operation.
    So..broken down even further...
    A: User is part of a 'LocalAdmins' group that makes them automatically a local admin upon any system within our domain.
    B: User  logs in to windows xp with credentials in which a tailored made per user roaming profile comes up from server 2003
    C: User then logs into one of the two terminal servers via RDP with same credentials and accesses new primary application. To access the legacy applications, they merely minimize their RDP session to get back to the windows xp session.
    Ultimately..
    1. I'd like to begin replacing option B: with windows 7/8 all-in-ones and and have the RDP saved sessions,that talk to the 2008 member servers, as well as, a few vital ie shortcuts automatically come to all users that are apart of that "LocalAdmins
    group period.
    2. Setup 1 server 2003 box that runs that legacy program and allow everyone access via a Virtual Environment..
    3. If they log into a windows xp box, or a windows 7/8 box, I want them to have access to the same icons.
    I guess this is a lot to digest, but my question is, what script could I make that would essentially allow uniformity for both my xp workstations and newly added windows 7/8 boxes? What script could I create that would,I guess reside on server 2003, that
    brings all the neccessary icons to the users that are apart of that "LocalAdmins" group despite having a windows xp, 7, or 8 workstation?

    " I don't see what the issue is because a logon script will still be managed by Group Policy and will have to be applied using GP rules.  In the end you still have to write the script."
    You basically contradicted the smug part of your rant and multiple answers with this statement!!! You just recognized that some sort of script would be necessary if I chose to use it via group policy. 
    But according to you..
    "It is not and has never been done via a script."
    Clearly it has a section per user for a "profile path" and a "logon SCRIPT". Which warrants my creation of this post since I have currentely implemented
    roaming profiles. That is how I am manipulating what users can have on their desktop because of course, we have different users that have different needs. But out of all the users, there are programs that need to be laced and seen upon immediate login.I
    will consult other people as this is only preliminary planning but about half of your statements are completely unwarranted and UNNECESSARY!
    This statement also proves your additional inaccuracies...
    "All of the profile things are handled by Windows and have nothing to do with scripts.  You define all of that in Group Policy."
    That's just silly talk. I told you in my initial break down of my scenario in an entirety that I am using "tailored made per user roaming profiles" to control desktop environments not group policies in this case. But you just made an absolute statement in
    saying "You define all of that in Group policy" which is completely wrong...
    Do me a favor, please don't respond to this post anymore. I'd love to see if any other partner, staff or whatever mind responding. Thank you for your help anyway. I will use what is useful in your post and discard the rest.
    Thanks

Maybe you are looking for

  • I have a problem with FF4, please tell me how to fix it.

    AdapterDeviceID: 29c2 AdapterVendorID: 8086 Add-ons: [email protected]:1.0,[email protected]:1.5.7,{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}:20110323,[email protected]:12.0.0.374,[email protected]:7.3.1,{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22,{CAF

  • Installing Windows 8.1 on Macbook pro retina

    can i install winodws 8.1 on macbook pro retina with superdrive?is it works?

  • Applet witing to file

    I have a quick question. I have a signed applet. In the applet I am trying to write to a file FileOutputStream out = new FileOutputStream(m_File) this throws an error. Even though the applet is signed. I found this information: In Java2 JDK1.2, readi

  • Cant "save as stationery" using Mail in Snow Leopard.

    I would like to create a custom version of one of the existing stationary templates in Mail. After making the modifications I find that "Save as Stationery" is grayed. I was able to accomplish this once, but have no idea what I did to make it work. A

  • Camera led is not working properly after update

    After updating to IOS 6.0.1 led is not working properly. When filming , the led is burning very weak, and when lightsetting is turned to automatic not at all.