PPTP VPDN and Cisco Client errors
Hello there, i have configured a cisco 1841 router as a vpn server for microsoft pptp client access. When connecting outside my local lan it hangs at verifying username and password then gives me error 619 message "remote computer did not respond so port was closed". I am however able to connect on my local lan. I also have Cisco's VPN client configured on the router which works fine and able to receive emails in microsoft outlook but cannot send any emails. The emails just sit in the outbox till i connect to my local lan.Anyone who has experienced a similar problem? I have tried all the configs in the the forum and problem still persists. Any solutions?? Thanks
Try these links:
http://www.cisco.com/en/US/tech/tk827/tk369/technologies_configuration_example09186a00801e51e2.shtml
http://www.cisco.com/en/US/tech/tk827/tk369/tech_configuration_examples_list.html
Similar Messages
-
Mac Lion and Cisco VPN client problems
I just installed Lion 10.7 on my iMac and can no longer use the downloaded Cisco VPN client to connect to Microsoft Remote Desktop and access the PC in my company's office. When I try to launch the VPN client I get Error 51. I used to be able to enter a command in the Terminal as a workaround to use the VPN client when that happened, but that no longer works. I have tried booting into 32-bit mode; doesn't work. I tried to use the Cisco client built into Lion using settings provided by my company. When I try to connect I get the following message: "The negotiation with the VPN server failed. Verify the server address and try reconnecting."
I have searched the web looking for a solution. My company's tech department is stumped; the Apple Geniuses haven't been able to help. Does anyone have any ideas how I can use either the downloaded Cisco VPN client or the client built into Lion?
Sent from Cisco Technical Support iPad AppHere is the link which you can use to configure the inbuilt VPN client in MAC Lion.
http://glazenbakje.wordpress.com/2011/07/28/how-to-create-a-cisco-vpn-connection-in-apple-mac-os-x-lion/
Make sure you configure the attributes correctly.
Secondly the inbuilt VPN client code of Lion is made in collaboration with Cisco so there will not be any issues of compatibility.
Cheers,
Rohan -
Hi!
I wish someone can help me on this, I'm a new guy on cisco firewalls and I'm currently implementing cisco asa 5512x, here are the details:
ISP -> Firewall -> Core switch -> Internal LAN
after installing the cisco asa and terminating the appropriate lan for the outside and inside interfaces, internet seems intermittent and cisco vpn client can connect with internet connection but can't ping internal LAN.
here's my configuration from my firewall.
ASA Version 8.6(1)2
hostname ciscofirewall
enable password 2KFQnbNIdI.2KYOU encrypted
passwd 2KFQnbNIdI.2KYOU encrypted
names
interface GigabitEthernet0/0
nameif outside
security-level 0
ip address 203.x.x.x 255.255.255.0
interface GigabitEthernet0/1
nameif inside
security-level 100
ip address 10.152.11.15 255.255.255.0
interface GigabitEthernet0/2
shutdown
no nameif
no security-level
no ip address
interface GigabitEthernet0/3
shutdown
no nameif
no security-level
no ip address
interface GigabitEthernet0/4
shutdown
no nameif
no security-level
no ip address
interface GigabitEthernet0/5
shutdown
no nameif
no security-level
no ip address
interface Management0/0
nameif management
security-level 100
ip address 192.168.1.1 255.255.255.0
management-only
ftp mode passive
dns domain-lookup outside
dns domain-lookup inside
dns server-group DefaultDNS
name-server 4.2.2.2 -------> public DNS
name-server 8.8.8.8 -------> public
name-server 203.x.x.x ----> Clients DNS
name-server 203.x.x.x -----> Clients DNS
same-security-traffic permit intra-interface
object network net_access
subnet 10.0.0.0 255.0.0.0
object network citrix_server
host 10.152.11.21
object network NETWORK_OBJ_10.10.10.0_28
subnet 10.10.10.0 255.255.255.240
object network NETWORK_OBJ_10.0.0.0_8
subnet 10.0.0.0 255.0.0.0
object network InterconHotel
subnet 10.152.11.0 255.255.255.0
access-list net_surf extended permit ip any any
access-list net_surf extended permit ip object NETWORK_OBJ_10.10.10.0_28 object InterconHotel
access-list outside_access extended permit tcp any object citrix_server eq www
access-list outside_access extended permit ip object NETWORK_OBJ_10.10.10.0_28 any
access-list outsidevpn_splitTunnelAcl standard permit 10.152.11.0 255.255.255.0
access-list LAN_Users remark LAN_clients
access-list LAN_Users standard permit any
access-list vpnpool extended permit ip 10.10.10.0 255.255.255.248 any
pager lines 24
logging enable
logging asdm informational
mtu management 1500
mtu outside 1500
mtu inside 1500
ip local pool vpnpool 10.10.10.1-10.10.10.6 mask 255.255.255.248
icmp unreachable rate-limit 1 burst-size 1
no asdm history enable
arp timeout 14400
nat (inside,outside) source static NETWORK_OBJ_10.10.10.0_28 NETWORK_OBJ_10.10.10.0_28 destination static NETWORK_OBJ_10.10.10.0_28 NETWORK_OBJ_10.10.10.0_28 no-proxy-arp route-lookup
object network net_access
nat (inside,outside) dynamic interface
object network citrix_server
nat (inside,outside) static 203.177.18.234 service tcp www www
object network NETWORK_OBJ_10.10.10.0_28
nat (any,outside) dynamic interface
object network InterconHotel
nat (inside,outside) dynamic interface dns
access-group outside_access in interface outside
access-group net_surf out interface outside
route outside 0.0.0.0 0.0.0.0 203.x.x.x 1
route outside 10.10.10.0 255.255.255.248 10.152.11.15 1
timeout xlate 3:00:00
timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02
timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00
timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00
timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute
timeout tcp-proxy-reassembly 0:01:00
timeout floating-conn 0:00:00
dynamic-access-policy-record DfltAccessPolicy
user-identity default-domain LOCAL
aaa authentication telnet console LOCAL
http server enable
http 192.168.1.0 255.255.255.0 management
http 10.0.0.100 255.255.255.255 inside
http 10.10.10.0 255.255.255.240 outside
http 0.0.0.0 0.0.0.0 outside
no snmp-server location
no snmp-server contact
snmp-server enable traps snmp authentication linkup linkdown coldstart warmstart
crypto ipsec ikev1 transform-set ESP-AES-256-MD5 esp-aes-256 esp-md5-hmac
crypto ipsec ikev1 transform-set ESP-DES-SHA esp-des esp-sha-hmac
crypto ipsec ikev1 transform-set ESP-3DES-SHA esp-3des esp-sha-hmac
crypto ipsec ikev1 transform-set ESP-DES-MD5 esp-des esp-md5-hmac
crypto ipsec ikev1 transform-set ESP-AES-192-MD5 esp-aes-192 esp-md5-hmac
crypto ipsec ikev1 transform-set ESP-3DES-MD5 esp-3des esp-md5-hmac
crypto ipsec ikev1 transform-set ESP-AES-256-SHA esp-aes-256 esp-sha-hmac
crypto ipsec ikev1 transform-set ESP-AES-128-SHA esp-aes esp-sha-hmac
crypto ipsec ikev1 transform-set ESP-AES-192-SHA esp-aes-192 esp-sha-hmac
crypto ipsec ikev1 transform-set ESP-AES-128-MD5 esp-aes esp-md5-hmac
crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set pfs
crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set ikev1 transform-set ESP-AES-128-SHA ESP-AES-128-MD5 ESP-AES-192-SHA ESP-AES-192-MD5 ESP-AES-256-SHA ESP-AES-256-MD5 ESP-3DES-SHA ESP-3DES-MD5 ESP-DES-SHA ESP-DES-MD5
crypto map outside_map 65535 ipsec-isakmp dynamic SYSTEM_DEFAULT_CRYPTO_MAP
crypto map outside_map interface outside
crypto map inside_map 65535 ipsec-isakmp dynamic SYSTEM_DEFAULT_CRYPTO_MAP
crypto map inside_map interface inside
crypto ikev1 enable outside
crypto ikev1 enable inside
crypto ikev1 policy 10
authentication crack
encryption aes-256
hash sha
group 2
lifetime 86400
crypto ikev1 policy 20
authentication rsa-sig
encryption aes-256
hash sha
group 2
lifetime 86400
crypto ikev1 policy 30
authentication pre-share
encryption aes-256
hash sha
group 2
lifetime 86400
crypto ikev1 policy 40
authentication crack
encryption aes-192
hash sha
group 2
lifetime 86400
crypto ikev1 policy 50
authentication rsa-sig
encryption aes-192
hash sha
group 2
lifetime 86400
crypto ikev1 policy 60
authentication pre-share
encryption aes-192
hash sha
group 2
lifetime 86400
crypto ikev1 policy 70
authentication crack
encryption aes
hash sha
group 2
lifetime 86400
crypto ikev1 policy 80
authentication rsa-sig
encryption aes
hash sha
group 2
lifetime 86400
crypto ikev1 policy 90
authentication pre-share
encryption aes
hash sha
group 2
lifetime 86400
crypto ikev1 policy 100
authentication crack
encryption 3des
hash sha
group 2
lifetime 86400
crypto ikev1 policy 110
authentication rsa-sig
encryption 3des
hash sha
group 2
lifetime 86400
crypto ikev1 policy 120
authentication pre-share
encryption 3des
hash sha
group 2
lifetime 86400
crypto ikev1 policy 130
authentication crack
encryption des
hash sha
group 2
lifetime 86400
crypto ikev1 policy 140
authentication rsa-sig
encryption des
hash sha
group 2
lifetime 86400
crypto ikev1 policy 150
authentication pre-share
encryption des
hash sha
group 2
lifetime 86400
client-update enable
telnet 10.152.11.0 255.255.255.0 inside
telnet timeout 5
ssh timeout 5
console timeout 0
dhcpd address 192.168.1.2-192.168.1.254 management
dhcpd enable management
threat-detection basic-threat
threat-detection statistics
threat-detection statistics tcp-intercept rate-interval 30 burst-rate 400 average-rate 200
webvpn
enable outside
anyconnect-essentials
group-policy outsidevpn internal
group-policy outsidevpn attributes
dns-server value 203.x.x.x 203.x.x.x
vpn-tunnel-protocol ikev1 l2tp-ipsec ssl-client
split-tunnel-policy tunnelall
split-tunnel-network-list value outsidevpn_splitTunnelAcl
default-domain value interconti.com
address-pools value vpnpool
username test1 password i1lji/GiOWB67bAs encrypted privilege 5
username test1 attributes
vpn-group-policy outsidevpn
username mnlha password WlzjmENGEEZmT9LA encrypted
username mnlha attributes
vpn-group-policy outsidevpn
username cisco password 3USUcOPFUiMCO4Jk encrypted privilege 15
tunnel-group outsidevpn type remote-access
tunnel-group outsidevpn general-attributes
address-pool (inside) vpnpool
address-pool vpnpool
authentication-server-group (outside) LOCAL
default-group-policy outsidevpn
tunnel-group outsidevpn ipsec-attributes
ikev1 pre-shared-key *****
class-map inspection_default
match default-inspection-traffic
policy-map type inspect dns preset_dns_map
parameters
message-length maximum client auto
message-length maximum 512
policy-map global_policy
class inspection_default
inspect dns preset_dns_map
inspect ftp
inspect h323 h225
inspect h323 ras
inspect rsh
inspect rtsp
inspect esmtp
inspect sqlnet
inspect skinny
inspect sunrpc
inspect xdmcp
inspect sip
inspect netbios
inspect tftp
inspect ip-options
inspect icmp
inspect http
inspect ipsec-pass-thru
class class-default
user-statistics accounting
service-policy global_policy global
prompt hostname context
no call-home reporting anonymous
hpm topN enable
Cryptochecksum:edc30dda08e5800fc35b72dd6e1d88d7
: end
thanks. please help.I think you should change your nat-exemption rule to smth more general, like
nat (inside,outside) source static any any destination static NETWORK_OBJ_10.10.10.0_28 NETWORK_OBJ_10.10.10.0_28 no-proxy-arp route-lookup
'cause your inside networks are not the same as your vpn-pool subnet.
Plus, if you're trying to reach inside subnets, different from 10.152.11.0 255.255.255.0 (ip from wich subnet is assignet to your inside interface, and for wich above nat exception should be enough), you should check if routing is configured from that subnets to your vpn-pool-subnet through the ASA. -
Mavericks VPN dropouts with native VPN client and Cisco IPSec
Since update to Maverics I am experiencing VPN dropouts with native VPN client and Cisco IPSec
I am connecting via a WIFI router to a remote VPN server
The conenction is good for a while but eventually it drops out.
I had Zero issues in mountain lion and only have issues since the update to 10.9
I had similar issues in teh past with an unrelaibel wifi router but i am using a Verizon Fios router and it has worked impecably until mavericks
My thoughts are:
1 -issue with mavericks ( maybe the app sleep funciton affecting eithe VPN or WIFI daemons)
2- Issue with cisco router compaitibility or timing with Cisco IPSEC
3- Issue with WIFI itself on mavericks - some sort of WIFI software bug
Any thousuggestions?Since update to Maverics I am experiencing VPN dropouts with native VPN client and Cisco IPSec
I am connecting via a WIFI router to a remote VPN server
The conenction is good for a while but eventually it drops out.
I had Zero issues in mountain lion and only have issues since the update to 10.9
I had similar issues in teh past with an unrelaibel wifi router but i am using a Verizon Fios router and it has worked impecably until mavericks
My thoughts are:
1 -issue with mavericks ( maybe the app sleep funciton affecting eithe VPN or WIFI daemons)
2- Issue with cisco router compaitibility or timing with Cisco IPSEC
3- Issue with WIFI itself on mavericks - some sort of WIFI software bug
Any thousuggestions? -
2014 .3 is much too buggy and full of error messages. Creating problems as I am on a timeline with my client and I don't have time to fool around with all the problems.
You didn't mention what error(s) you've encountered? A workaround for the most commonly hit problem is here Re: error in Muse : Object UID:U6875 has two (or more) owners: U3633 and U3165
If you have a copy of your .muse file that has not been saved using 2014.3, you can downgrade by uninstalling Muse and then choose Previous Version in the Filters drop down in the Apps panel of the Creative Cloud desktop app. There will be a popup next to Muse where you can select a prior version to install. -
We have an RDS environment configured on server 2012 with approx. 20 users connecting for remote app utilization across 4 different locations that are connected via VPN. Server 2012 has great resources from the virtual host so system resource allocation
shouldn't be an issue. I'm thinking these errors are correlating with the performance problems. Any recommendations on how to effectively end these errors or to boost performance?
RDS Log File
Log Name: Microsoft-Windows-RemoteDesktopServices-RdpCoreTS/Operational
Source: Microsoft-Windows-RemoteDesktopServices-RdpCoreTS
Date: 3/3/2015 7:47:51 PM
Event ID: 97
Task Category: RemoteFX module
Level: Warning
Keywords:
User: NETWORK SERVICE
Computer: REMOTE1.mzltg.local
Description: The RDP protocol component X.224 detected an error (0) in the protocol stream and the client was disconnected.
System Log Error Log Name: System
Source: Schannel
Date: 3/4/2015 10:42:02 AM
Event ID: 36887
Task Category: None
Level: Error
Keywords:
User: SYSTEM
Computer: REMOTE1.mzltg.local
Description: A fatal alert was received from the remote endpoint. The TLS protocol defined fatal alert code is 49.Hi Shane,
Do you have any progress at the moment?
Regarding the TLS error code 49, it indicates a valid certificate was received, but when access control was applied, the sender did not proceed with negotiation.
More information for you:
SSL/TLS Alert Protocol & the Alert Codes
http://blogs.msdn.com/b/kaushal/archive/2012/10/06/ssl-tls-alert-protocol-amp-the-alert-codes.aspx
Best Regards,
Amy
Please remember to mark the replies as answers if they help and un-mark them if they provide no help. If you have feedback for TechNet Subscriber Support, contact [email protected] -
Submit a SAP job and it is erroring out as "instance/client not found"
I am trying to submit a SAP job and it is erroring out as "instance/client not found"
as soon as I enter the instance/client value and click on next I am getting this error
please helpHi,
Then maybe there is a problem with another parameter, and the error is obscured by this error message.
You did specify valid values for all other parameters ?
Maybe you can try the following:
- create a simple job in SAP, you do not have to execute it only save it
- import this job using RSI_IMPORT_CCMS_JOBS and specify the exact job name
- run the imported job (it will have the same name as in SAP) and see if this works
- if this works, try your job again directly from CPS and compare your parameters with those on the imported job (especially which ones are filled or not filled, that sometimes is more important than the exact value chosen)
Regards,
Anton. -
Since upgrading to Lion, I can no longer use VPN because my RSA securid token and CIsco VPN Client won't load. Any suggestioins out there?
.
-
MBA (mid 2013) and Cisco Jabber Video client not recognising any camera
The Cisco Jabber Video client is not recognising the internal Facetime HD camera nor the external USB Logitech Webcam C920.
This was not working from the beginning. Cisco is aware of this issue and promised to deliver a fix in the next release of their software.
After installing the 10.8.5 Update from App Store and the 10.8.5 Supplemental update the Cisco client was able to recognize the external camera.
After that I followed a hint to install the Combo update this should enable Skype to recognise the Facetime HD camera. After installing the Combo update Skype was able to recognize the internal and external camera (by the way the quality of preview video using Facetime HD was brilliant and much better than the internal camera of a MBA from 2012). BUT after that update the Cisco client was no longer recognising a camera.
I run a recovery installation of 10.8.4 - but the result was again a 10.8.5. If I try now to run a recovery install I only get a recovery of version 10.8.5 offered.
I did a SMC reset, a parameter RAM reset, tried to start in saved mode but nothing helped.
Any other ideas how to get a least an external camera working again with Cisco Jabber Video?Similar problem here. I have a Logitech C615 camera/microphone plugged into my MAC mini running OSX 10.9.3. Today, JABBER could not find the camera (although it found the microphone?). I was running 4.5.7 and so downloaded v4.8.6 and reinstalled: no camera. I also downloaded the cloud version: no camera.
I was not running either Vidyo or Polycom RealPresence at the same time as JABBER
But, when I did run these apps, my camera & microphone both work.
Suggestions?
John -
Pptp + vpdn-group from radius
Hi there,
i'm trying to setup cisco router to act like pptp concentrator.On this router, i think to terminate two kind of pptp connections:
- to core
- to colleagues
For this reason, i need to setup two vpdn-groups because , i need different local-ip addres for my CORE devices and other for the vpn clients (colleagues). My configuration is attached bellow
[snipped from running-config]
aaa new-model
aaa authentication ppp default group radius
aaa authorization network default group radius if-authenticated
vpdn enable
vpdn authen-before-forward
vpdn tunnel authorization network default
vpdn-group clients
! Default PPTP VPDN group
accept-dialin
protocol pptp
virtual-template 1
session-limit 50
local name VPN-Router
vpdn-group core
accept-dialin
protocol pptp
virtual-template 2
session-limit 5
local name border
interface Virtual-Template1
description PPTP Clients interface
ip address 192.168.25.100 255.255.255.0
ip mtu 1460
compress lzs
ppp encrypt mppe auto
ppp authentication chap ms-chap ms-chap-v2
interface Virtual-Template2
ip address 10.0.0.1 255.255.255.240
description Core devices
ip mtu 1460
load-interval 30
compress mppc
ppp encrypt mppe auto
ppp authentication ms-chap ms-chap-v2
[/snip]
To differing who is vpn client and which pptp needs to be considered as core link, i'm trying to setup Cisco AVPairs with radius like that:
border#test aaa group radius username password legacy
Attempting authentication test to server-group radius using radius
User was successfully authenticated.
Apr 12 2007 22:17:32.971 EEST: RADIUS: Pick NAS IP for u=0x43FE4A2C tableid=0 cfg_addr=radius.server.tld
Apr 12 2007 22:17:32.971 EEST: RADIUS: ustruct sharecount=1
Apr 12 2007 22:17:32.971 EEST: Radius: radius_port_info() success=0 radius_nas_port=1
Apr 12 2007 22:17:32.971 EEST: RADIUS(00000000): Send Access-Request to radius.server.tld:1812 id 1645/41, len 56
Apr 12 2007 22:17:32.971 EEST: RADIUS: authenticator 76 BC 13 6F 4B FC 5F 42 - 12 D1 E2 2F CE 47 A4 4F
Apr 12 2007 22:17:32.971 EEST: RADIUS: NAS-IP-Address [4] 6 my-router.ip.tld
Apr 12 2007 22:17:32.971 EEST: RADIUS: NAS-Port-Type [61] 6 Async [0]
Apr 12 2007 22:17:32.971 EEST: RADIUS: User-Name [1] 6 "main"
Apr 12 2007 22:17:32.971 EEST: RADIUS: User-Password [2] 18 *
Apr 12 2007 22:17:32.983 EEST: RADIUS: Received from id 1645/41 radius.server.tld:1812, Access-Accept, len 67
Apr 12 2007 22:17:32.983 EEST: RADIUS: authenticator 16 10 FD 06 97 57 32 35 - 16 B0 B8 E7 5A E3 4A BD
Apr 12 2007 22:17:32.983 EEST: RADIUS: Framed-Protocol [7] 6 PPP [1]
Apr 12 2007 22:17:32.983 EEST: RADIUS: Framed-IP-Address [8] 6 10.0.0.13
Apr 12 2007 22:17:32.983 EEST: RADIUS: Framed-IP-Netmask [9] 6 255.255.255.240
Apr 12 2007 22:17:32.983 EEST: RADIUS: Framed-MTU [12] 6 1460
Apr 12 2007 22:17:32.983 EEST: RADIUS: Vendor, Cisco [26] 23
Apr 12 2007 22:17:32.983 EEST: RADIUS: Cisco AVpair [1] 17 "vpdn:vpdn-group=core"
Apr 12 2007 22:17:32.983 EEST: RADIUS: saved authorization data for user 43FE4A2C at 440F71DC
So ... as you can see, there is Cisco AVPair, but my router didn't use it. The router still use the first available vpdn-group (clients) and use the Virtual-template 1 interface for this connection. Does anyone know why? I need to setup my router to read the AVpairs from radius reply message. Is it possible to do that at all?
Here is the radius Accept-Accept message sent to router:
Sending Access-Accept of id 43 to radius.server.tld:1645
Framed-Protocol = PPP
Framed-IP-Address = 10.0.0.13
Framed-IP-Netmask = 255.255.255.240
Framed-MTU = 1460
Cisco-AVPair = "vpdn:vpdn-group=core"
THanks in advance!To use pptp/mppe, the Radius server must be able to return the MPPE_KEY_ATTRIBUTES to pix.
To debug the problem, you can trun on the debug for ppp:
debug ppp uauth
debug ppp error
Try this link:
http://www.cisco.com/warp/public/471/pptp_faq.html -
I have recently purchased a new MacBook Pro, which came with lion installed. I changed it back to snow leopard. I then installed a vpn client. I continually get an error 51 when I try to use it. The description is as follows: 'unable to communicate with the VPN subsystem. Please make sure that you have at least one network interface that is currently active and has an IP address and start this application again.' I have made sure that I have an active address on a network which is not the vpn I am attepting to connect to.
Is there something I have forgotten in setting up my wireless or eithernet connection. Both are active and fuctioning properly. Any HELP would be appreciated.
Thank you.Try opening a terminal window (Applications >> Utilities). At the prompt, enter:
>sudo SystemStarter restart CiscoVPN
This will ask you for the admin password and it will restart the Cisco client service. That should fix it. This seems to be a known issue that will eventually be solved with some updates.
DB -
1200 with G radio and B clients
I have a couple of 1200 AP's with the G radio installed. We have several clients from various brands. Gateway/HP etc that have A/B cards on the client and are unable to connect to the 1200. It sees the SSID etc in the windows wireless configuartion screen but when trying to connect it gives an error.
"Windows is unable to connect to the selected network. The network may no longer be in range. Please refresh the list of available networks and try again."
This only occurs on clients that dont specifically have a card that is "g" compatiable. I have set the data rates to default as well as best range and no luck. Any thoughts or ideas are apprectiated.Hi Corey,
Have you tried disabling the Aironet Extensions?
Q. How do you make your AP work with other IEEE 802.11b devices?
A. In order to enable the AP to communicate with another 802.11b device, turn off Aironet extensions. Check the Non-Aironet 802.11 check box in the Express Setup window. Alternatively, you can click the Use Aironet Extension radio button in the Advanced AP Radio window.
From this doc:
http://www.cisco.com/en/US/products/hw/wireless/ps430/products_qanda_item09186a008009483e.shtml#qa10
Disabling Aironet extensions sometimes improves the ability of non-Cisco client devices to associate to the access point.
Aironet extensions are enabled by default. Beginning in privileged EXEC mode, follow these steps to disable Aironet extensions:
Command Purpose
Step 1
configure terminal
Enter global configuration mode.
Step 2
interface dot11radio { 0 | 1 }
Enter interface configuration mode for the radio interface. The 2.4-GHz radio is radio 0, and the 5-GHz radio is radio 1.
Step 3
no dot11 extension aironet
Disable Aironet extensions.
Step 4
end
Return to privileged EXEC mode.
Step 5
copy running-config startup-config
(Optional) Save your entries in the configuration file.
From this doc:
http://www.cisco.com/en/US/products/hw/wireless/ps430/products_configuration_guide_chapter09186a00801d0179.html#wp1035071
Hope this helps!
Rob
Please remember to rate helpful posts........ -
Epson SX218 doesn't print (client-error-document-format-not-supported)
Hi there,
I'm currently trying to figure out how to get my Epson Stylus SX 218 to work. Unfortunately, cups (or the printer or whatever causes my problems...) obviously just doesn't want me to get this to work.
Here's what I've done so far:
I installed everything as described in the CUPS wiki article (so ghostscript and all the foomatic-stuff is installed, usblp is NOT blacklisted, see why below)
I installed epson-inkjet-printer-workforce-sx218 from AUR
I started cups...
Nothing worked (Printer not recognized, either with or without blacklisted usblp module...)
I searched the forums for a solution
I installed cups-usblp and reinstalled all the cups stuff
Printer got recognized! Yay!
So, now the printer is set up in cups using the avasys driver. But...
It doesn't print!
When I try to print a test page via the cups webinterface it keeps telling me
Unsupported format "application/vnd.cups-banner".
The following packages are installed now:
$ pacman -Qs cups
local/cups-usblp 1.5.0-1
local/libcups 1.5.0-1
$ pacman -Qs foomatic
local/foomatic-db 1:4.0.7_20110707-1
local/foomatic-db-engine 1:4.0.7_20110707-1
local/foomatic-db-nonfree 1:4.0.7_20110707-1
local/foomatic-filters 1:4.0.7_20110707-1
$ pacman -Qs epson
local/epson-inkjet-printer-workforce-320-sx218 1.0.0-6
$ pacman -Qs ghostscript
local/ghostscript 9.04-5
Here's my cups error log:
I [01/Jan/2012:18:59:01 +0100] Listening to [v1.::1]:631 (IPv6)
I [01/Jan/2012:18:59:01 +0100] Listening to 127.0.0.1:631 (IPv4)
I [01/Jan/2012:18:59:01 +0100] Listening to /var/run/cups/cups.sock (Domain)
I [01/Jan/2012:18:59:01 +0100] Remote access is disabled.
D [01/Jan/2012:18:59:01 +0100] Added auto ServerAlias mamapc
I [01/Jan/2012:18:59:01 +0100] Loaded configuration file "/etc/cups/cupsd.conf"
I [01/Jan/2012:18:59:01 +0100] Using default TempDir of /var/spool/cups/tmp...
I [01/Jan/2012:18:59:01 +0100] Configured for up to 100 clients.
I [01/Jan/2012:18:59:01 +0100] Allowing up to 100 client connections per host.
I [01/Jan/2012:18:59:01 +0100] Using policy "default" as the default.
D [01/Jan/2012:18:59:01 +0100] cupsdMarkDirty(---p--)
D [01/Jan/2012:18:59:01 +0100] cupsdSetBusyState: newbusy="Dirty files", busy="Not busy"
I [01/Jan/2012:18:59:01 +0100] Partial reload complete.
I [01/Jan/2012:18:59:01 +0100] Listening to [v1.::1]:631 on fd 6...
I [01/Jan/2012:18:59:01 +0100] Listening to 127.0.0.1:631 on fd 8...
I [01/Jan/2012:18:59:01 +0100] Listening to /var/run/cups/cups.sock:631 on fd 9...
I [01/Jan/2012:18:59:01 +0100] Resuming new connection processing...
D [01/Jan/2012:18:59:01 +0100] cupsdSetBusyState: newbusy="Dirty files", busy="Dirty files"
D [01/Jan/2012:18:59:01 +0100] Discarding unused server-restarted event...
D [01/Jan/2012:18:59:01 +0100] cupsdAcceptClient: 13 from localhost:631 (IPv4)
D [01/Jan/2012:18:59:01 +0100] Report: clients=1
D [01/Jan/2012:18:59:01 +0100] Report: jobs=0
D [01/Jan/2012:18:59:01 +0100] Report: jobs-active=0
D [01/Jan/2012:18:59:01 +0100] Report: printers=0
D [01/Jan/2012:18:59:01 +0100] Report: printers-implicit=0
D [01/Jan/2012:18:59:01 +0100] Report: stringpool-string-count=407
D [01/Jan/2012:18:59:01 +0100] Report: stringpool-alloc-bytes=4648
D [01/Jan/2012:18:59:01 +0100] Report: stringpool-total-bytes=5736
D [01/Jan/2012:18:59:01 +0100] PID 928 (/usr/lib/cups/cgi-bin/admin.cgi) exited with no errors.
D [01/Jan/2012:18:59:01 +0100] cupsdReadClient: 13 GET /images/wait.gif HTTP/1.1
D [01/Jan/2012:18:59:01 +0100] cupsdSetBusyState: newbusy="Active clients and dirty files", busy="Dirty files"
D [01/Jan/2012:18:59:01 +0100] cupsdAuthorize: Authorized as root using Basic
D [01/Jan/2012:18:59:01 +0100] cupsdSetBusyState: newbusy="Dirty files", busy="Active clients and dirty files"
D [01/Jan/2012:18:59:06 +0100] cupsdReadClient: 13 GET /admin/?OP=redirect HTTP/1.1
D [01/Jan/2012:18:59:06 +0100] cupsdSetBusyState: newbusy="Active clients and dirty files", busy="Dirty files"
D [01/Jan/2012:18:59:06 +0100] cupsdAuthorize: Authorized as root using Basic
D [01/Jan/2012:18:59:06 +0100] [CGI] argv[0] = "/usr/lib/cups/cgi-bin/admin.cgi"
D [01/Jan/2012:18:59:06 +0100] [CGI] argv[1] = "OP=redirect"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[0] = "CUPS_CACHEDIR=/var/cache/cups"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[1] = "CUPS_DATADIR=/usr/share/cups"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[2] = "CUPS_DOCROOT=/usr/share/cups/doc"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[3] = "CUPS_FONTPATH=/usr/share/cups/fonts"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[4] = "CUPS_REQUESTROOT=/var/spool/cups"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[5] = "CUPS_SERVERBIN=/usr/lib/cups"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[6] = "CUPS_SERVERROOT=/etc/cups"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[7] = "CUPS_STATEDIR=/var/run/cups"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[8] = "HOME=/var/spool/cups/tmp"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[9] = "PATH=/usr/lib/cups/filter:/usr/bin:/usr/sbin:/bin:/usr/bin"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[10] = "SERVER_ADMIN=root@mamapc"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[11] = "SOFTWARE=CUPS/1.5.0"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[12] = "TMPDIR=/var/spool/cups/tmp"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[13] = "USER=root"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[14] = "CUPS_SERVER=/var/run/cups/cups.sock"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[15] = "CUPS_ENCRYPTION=IfRequested"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[16] = "IPP_PORT=631"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[17] = "AUTH_TYPE=Basic"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[18] = "LANG=de_DE.UTF8"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[19] = "REDIRECT_STATUS=1"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[20] = "GATEWAY_INTERFACE=CGI/1.1"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[21] = "SERVER_NAME=localhost"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[22] = "SERVER_PORT=631"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[23] = "REMOTE_ADDR=127.0.0.1"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[24] = "REMOTE_HOST=localhost"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[25] = "SCRIPT_NAME=/admin/"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[26] = "SCRIPT_FILENAME=/usr/share/cups/doc/admin/"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[27] = "REMOTE_USER=root"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[28] = "SERVER_PROTOCOL=HTTP/1.1"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[29] = "HTTP_COOKIE=org.cups.sid=960956618ce3e170434dd2afacd4fad3"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[30] = "HTTP_USER_AGENT=Opera/9.80 (X11; Linux i686; U; de) Presto/2.10.229 Version/11.60"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[31] = "HTTP_REFERER=http://localhost:631/admin"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[32] = "REQUEST_METHOD=GET"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[33] = "QUERY_STRING=OP=redirect"
D [01/Jan/2012:18:59:06 +0100] [CGI] Started /usr/lib/cups/cgi-bin/admin.cgi (PID 929)
I [01/Jan/2012:18:59:06 +0100] Started "/usr/lib/cups/cgi-bin/admin.cgi" (pid=929)
D [01/Jan/2012:18:59:06 +0100] cupsdSendCommand: 13 file=14
D [01/Jan/2012:18:59:06 +0100] [CGI] admin.cgi started...
D [01/Jan/2012:18:59:06 +0100] cupsdAcceptClient: 16 from localhost (Domain)
D [01/Jan/2012:18:59:06 +0100] [CGI] http=0xb9359360
D [01/Jan/2012:18:59:06 +0100] [CGI] org.cups.sid cookie is "960956618ce3e170434dd2afacd4fad3"
D [01/Jan/2012:18:59:06 +0100] [CGI] redirecting with prefix http://localhost:631!
D [01/Jan/2012:18:59:06 +0100] cupsdReadClient: 16 WAITING Closing on EOF
D [01/Jan/2012:18:59:06 +0100] cupsdCloseClient: 16
D [01/Jan/2012:18:59:06 +0100] cupsdSetBusyState: newbusy="Active clients and dirty files", busy="Active clients and dirty files"
D [01/Jan/2012:18:59:06 +0100] Script header: Location: http://localhost:631/admin
D [01/Jan/2012:18:59:06 +0100] Script header:
D [01/Jan/2012:18:59:06 +0100] cupsdAcceptClient: 16 from localhost:631 (IPv4)
D [01/Jan/2012:18:59:06 +0100] cupsdReadClient: 16 GET /admin HTTP/1.1
D [01/Jan/2012:18:59:06 +0100] cupsdSetBusyState: newbusy="Active clients and dirty files", busy="Active clients and dirty files"
D [01/Jan/2012:18:59:06 +0100] cupsdAuthorize: Authorized as root using Basic
D [01/Jan/2012:18:59:06 +0100] [CGI] argv[0] = "/usr/lib/cups/cgi-bin/admin.cgi"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[0] = "CUPS_CACHEDIR=/var/cache/cups"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[1] = "CUPS_DATADIR=/usr/share/cups"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[2] = "CUPS_DOCROOT=/usr/share/cups/doc"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[3] = "CUPS_FONTPATH=/usr/share/cups/fonts"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[4] = "CUPS_REQUESTROOT=/var/spool/cups"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[5] = "CUPS_SERVERBIN=/usr/lib/cups"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[6] = "CUPS_SERVERROOT=/etc/cups"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[7] = "CUPS_STATEDIR=/var/run/cups"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[8] = "HOME=/var/spool/cups/tmp"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[9] = "PATH=/usr/lib/cups/filter:/usr/bin:/usr/sbin:/bin:/usr/bin"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[10] = "SERVER_ADMIN=root@mamapc"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[11] = "SOFTWARE=CUPS/1.5.0"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[12] = "TMPDIR=/var/spool/cups/tmp"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[13] = "USER=root"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[14] = "CUPS_SERVER=/var/run/cups/cups.sock"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[15] = "CUPS_ENCRYPTION=IfRequested"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[16] = "IPP_PORT=631"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[17] = "AUTH_TYPE=Basic"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[18] = "LANG=de_DE.UTF8"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[19] = "REDIRECT_STATUS=1"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[20] = "GATEWAY_INTERFACE=CGI/1.1"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[21] = "SERVER_NAME=localhost"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[22] = "SERVER_PORT=631"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[23] = "REMOTE_ADDR=127.0.0.1"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[24] = "REMOTE_HOST=localhost"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[25] = "SCRIPT_NAME=/admin"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[26] = "SCRIPT_FILENAME=/usr/share/cups/doc/admin"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[27] = "REMOTE_USER=root"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[28] = "SERVER_PROTOCOL=HTTP/1.1"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[29] = "HTTP_COOKIE=org.cups.sid=960956618ce3e170434dd2afacd4fad3"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[30] = "HTTP_USER_AGENT=Opera/9.80 (X11; Linux i686; U; de) Presto/2.10.229 Version/11.60"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[31] = "HTTP_REFERER=http://localhost:631/admin"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[32] = "REQUEST_METHOD=GET"
D [01/Jan/2012:18:59:06 +0100] [CGI] envp[33] = "QUERY_STRING="
D [01/Jan/2012:18:59:06 +0100] [CGI] Started /usr/lib/cups/cgi-bin/admin.cgi (PID 930)
I [01/Jan/2012:18:59:06 +0100] Started "/usr/lib/cups/cgi-bin/admin.cgi" (pid=930)
D [01/Jan/2012:18:59:06 +0100] cupsdSendCommand: 16 file=17
D [01/Jan/2012:18:59:06 +0100] PID 929 (/usr/lib/cups/cgi-bin/admin.cgi) exited with no errors.
D [01/Jan/2012:18:59:06 +0100] cupsdSetBusyState: newbusy="Active clients and dirty files", busy="Active clients and dirty files"
D [01/Jan/2012:18:59:06 +0100] [CGI] admin.cgi started...
D [01/Jan/2012:18:59:06 +0100] cupsdAcceptClient: 14 from localhost (Domain)
D [01/Jan/2012:18:59:06 +0100] [CGI] http=0xb866c360
D [01/Jan/2012:18:59:06 +0100] [CGI] org.cups.sid cookie is "960956618ce3e170434dd2afacd4fad3"
D [01/Jan/2012:18:59:06 +0100] [CGI] No form data, showing main menu...
D [01/Jan/2012:18:59:06 +0100] [CGI] /usr/share/cups/drivers/pscript5.dll: Datei oder Verzeichnis nicht gefunden
D [01/Jan/2012:18:59:06 +0100] cupsdReadClient: 14 POST / HTTP/1.1
D [01/Jan/2012:18:59:06 +0100] cupsdSetBusyState: newbusy="Active clients and dirty files", busy="Active clients and dirty files"
D [01/Jan/2012:18:59:06 +0100] cupsdAuthorize: No authentication data provided.
D [01/Jan/2012:18:59:06 +0100] cupsdReadClient: 14 1.1 Get-Subscriptions 1
D [01/Jan/2012:18:59:06 +0100] Get-Subscriptions ipp://localhost/
D [01/Jan/2012:18:59:06 +0100] Get-Subscriptions client-error-not-found: No subscriptions found.
D [01/Jan/2012:18:59:06 +0100] Returning IPP client-error-not-found for Get-Subscriptions (ipp://localhost/) from localhost
D [01/Jan/2012:18:59:06 +0100] cupsdSetBusyState: newbusy="Active clients and dirty files", busy="Active clients and dirty files"
D [01/Jan/2012:18:59:06 +0100] Script header: Content-Type: text/html;charset=utf-8
D [01/Jan/2012:18:59:06 +0100] Script header:
D [01/Jan/2012:18:59:06 +0100] cupsdReadClient: 14 WAITING Closing on EOF
D [01/Jan/2012:18:59:06 +0100] cupsdCloseClient: 14
D [01/Jan/2012:18:59:06 +0100] cupsdSetBusyState: newbusy="Active clients and dirty files", busy="Active clients and dirty files"
D [01/Jan/2012:18:59:06 +0100] PID 930 (/usr/lib/cups/cgi-bin/admin.cgi) exited with no errors.
D [01/Jan/2012:18:59:06 +0100] cupsdSetBusyState: newbusy="Dirty files", busy="Active clients and dirty files"
D [01/Jan/2012:18:59:11 +0100] cupsdReadClient: 13 GET / HTTP/1.1
D [01/Jan/2012:18:59:11 +0100] cupsdSetBusyState: newbusy="Active clients and dirty files", busy="Dirty files"
D [01/Jan/2012:18:59:11 +0100] cupsdAuthorize: Authorized as root using Basic
D [01/Jan/2012:18:59:11 +0100] cupsdSetBusyState: newbusy="Dirty files", busy="Active clients and dirty files"
D [01/Jan/2012:18:59:11 +0100] cupsdReadClient: 13 WAITING Closing on EOF
D [01/Jan/2012:18:59:11 +0100] cupsdCloseClient: 13
D [01/Jan/2012:18:59:11 +0100] cupsdSetBusyState: newbusy="Dirty files", busy="Dirty files"
D [01/Jan/2012:18:59:12 +0100] cupsdReadClient: 16 WAITING Closing on EOF
D [01/Jan/2012:18:59:12 +0100] cupsdCloseClient: 16
D [01/Jan/2012:18:59:12 +0100] cupsdSetBusyState: newbusy="Dirty files", busy="Dirty files"
D [01/Jan/2012:18:59:12 +0100] cupsdAcceptClient: 13 from localhost:631 (IPv4)
D [01/Jan/2012:18:59:12 +0100] cupsdReadClient: 13 GET /admin/log/access_log? HTTP/1.1
D [01/Jan/2012:18:59:12 +0100] cupsdSetBusyState: newbusy="Active clients and dirty files", busy="Dirty files"
D [01/Jan/2012:18:59:12 +0100] cupsdAuthorize: Authorized as root using Basic
D [01/Jan/2012:18:59:12 +0100] cupsdSetBusyState: newbusy="Dirty files", busy="Active clients and dirty files"
I [01/Jan/2012:18:59:32 +0100] Generating printcap /etc/printcap...
D [01/Jan/2012:18:59:32 +0100] cupsdSetBusyState: newbusy="Not busy", busy="Dirty files"
D [01/Jan/2012:18:59:35 +0100] cupsdAcceptClient: 14 from localhost (Domain)
D [01/Jan/2012:18:59:35 +0100] cupsdReadClient: 14 POST / HTTP/1.1
D [01/Jan/2012:18:59:35 +0100] cupsdSetBusyState: newbusy="Active clients", busy="Not busy"
D [01/Jan/2012:18:59:35 +0100] cupsdAuthorize: No authentication data provided.
D [01/Jan/2012:18:59:35 +0100] cupsdReadClient: 14 1.1 CUPS-Get-Devices 1
D [01/Jan/2012:18:59:35 +0100] CUPS-Get-Devices
D [01/Jan/2012:18:59:35 +0100] cupsdIsAuthorized: username=""
D [01/Jan/2012:18:59:35 +0100] Returning HTTP Unauthorized for CUPS-Get-Devices (no URI) from localhost
D [01/Jan/2012:18:59:35 +0100] cupsdSendHeader: 14 WWW-Authenticate: Basic realm="CUPS", trc="y"
D [01/Jan/2012:18:59:35 +0100] cupsdReadClient: 14 WAITING Closing on EOF
D [01/Jan/2012:18:59:35 +0100] cupsdCloseClient: 14
D [01/Jan/2012:18:59:35 +0100] cupsdSetBusyState: newbusy="Not busy", busy="Active clients"
D [01/Jan/2012:18:59:35 +0100] cupsdAcceptClient: 14 from localhost (Domain)
D [01/Jan/2012:18:59:35 +0100] cupsdAcceptClient: 16 from localhost (Domain)
D [01/Jan/2012:18:59:35 +0100] cupsdReadClient: 14 WAITING Closing on EOF
D [01/Jan/2012:18:59:35 +0100] cupsdCloseClient: 14
D [01/Jan/2012:18:59:35 +0100] cupsdSetBusyState: newbusy="Not busy", busy="Not busy"
D [01/Jan/2012:18:59:35 +0100] cupsdReadClient: 16 POST / HTTP/1.1
D [01/Jan/2012:18:59:35 +0100] cupsdSetBusyState: newbusy="Active clients", busy="Not busy"
D [01/Jan/2012:18:59:35 +0100] cupsdAuthorize: Authorized as root using PeerCred
D [01/Jan/2012:18:59:35 +0100] cupsdReadClient: 16 1.1 CUPS-Get-Devices 1
D [01/Jan/2012:18:59:35 +0100] CUPS-Get-Devices
D [01/Jan/2012:18:59:35 +0100] cupsdIsAuthorized: username="root"
D [01/Jan/2012:18:59:35 +0100] [CGI] argv[0] = "/usr/lib/cups/daemon/cups-deviced"
D [01/Jan/2012:18:59:35 +0100] [CGI] argv[1] = "1"
D [01/Jan/2012:18:59:35 +0100] [CGI] argv[2] = "0"
D [01/Jan/2012:18:59:35 +0100] [CGI] argv[3] = "2"
D [01/Jan/2012:18:59:35 +0100] [CGI] argv[4] = "2"
D [01/Jan/2012:18:59:35 +0100] [CGI] argv[5] = "requested-attributes=all exclude-schemes='beh','cups-pdf','bluetooth','dnssd','http','https','ipp','lpd','ncp','parallel','scsi','smb','snmp','socket'"
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[0] = "CUPS_CACHEDIR=/var/cache/cups"
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[1] = "CUPS_DATADIR=/usr/share/cups"
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[2] = "CUPS_DOCROOT=/usr/share/cups/doc"
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[3] = "CUPS_FONTPATH=/usr/share/cups/fonts"
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[4] = "CUPS_REQUESTROOT=/var/spool/cups"
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[5] = "CUPS_SERVERBIN=/usr/lib/cups"
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[6] = "CUPS_SERVERROOT=/etc/cups"
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[7] = "CUPS_STATEDIR=/var/run/cups"
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[8] = "HOME=/var/spool/cups/tmp"
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[9] = "PATH=/usr/lib/cups/filter:/usr/bin:/usr/sbin:/bin:/usr/bin"
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[10] = "SERVER_ADMIN=root@mamapc"
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[11] = "SOFTWARE=CUPS/1.5.0"
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[12] = "TMPDIR=/var/spool/cups/tmp"
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[13] = "USER=root"
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[14] = "CUPS_SERVER=/var/run/cups/cups.sock"
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[15] = "CUPS_ENCRYPTION=IfRequested"
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[16] = "IPP_PORT=631"
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[17] = "AUTH_TYPE=PeerCred"
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[18] = "LANG=en_US.UTF8"
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[19] = "REDIRECT_STATUS=1"
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[20] = "GATEWAY_INTERFACE=CGI/1.1"
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[21] = "SERVER_NAME=localhost"
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[22] = "SERVER_PORT=631"
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[23] = "REMOTE_ADDR="
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[24] = "REMOTE_HOST=localhost"
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[25] = "SCRIPT_NAME=/"
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[26] = "SCRIPT_FILENAME=/usr/share/cups/doc/"
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[27] = "REMOTE_USER=root"
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[28] = "SERVER_PROTOCOL=HTTP/1.1"
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[29] = "HTTP_USER_AGENT=CUPS/1.5.0"
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[30] = "REQUEST_METHOD=POST"
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[31] = "CONTENT_LENGTH=244"
D [01/Jan/2012:18:59:35 +0100] [CGI] envp[32] = "CONTENT_TYPE=application/ipp"
D [01/Jan/2012:18:59:35 +0100] [CGI] Started /usr/lib/cups/daemon/cups-deviced (PID 948)
I [01/Jan/2012:18:59:35 +0100] Started "/usr/lib/cups/daemon/cups-deviced" (pid=948)
D [01/Jan/2012:18:59:35 +0100] cupsdSendCommand: 16 file=14
D [01/Jan/2012:18:59:35 +0100] [cups-deviced] Started backend /usr/lib/cups/backend/mdns (PID 949)
D [01/Jan/2012:18:59:35 +0100] [cups-deviced] Started backend /usr/lib/cups/backend/usb (PID 950)
D [01/Jan/2012:18:59:35 +0100] [cups-deviced] Started backend /usr/lib/cups/backend/ipps (PID 951)
D [01/Jan/2012:18:59:35 +0100] [cups-deviced] Started backend /usr/lib/cups/backend/serial (PID 952)
D [01/Jan/2012:18:59:35 +0100] [cups-deviced] PID 949 (mdns) exited with no errors.
D [01/Jan/2012:18:59:35 +0100] [CGI] list_devices
D [01/Jan/2012:18:59:35 +0100] [CGI] usb_find_busses=2
D [01/Jan/2012:18:59:35 +0100] [CGI] usb_find_devices=7
D [01/Jan/2012:18:59:35 +0100] [CGI] libusb couldn't open USB device /dev/bus/usb/002/002: Permission denied.
D [01/Jan/2012:18:59:35 +0100] [CGI] libusb requires write access to USB device nodes.
D [01/Jan/2012:18:59:35 +0100] [cups-deviced] PID 950 (usb) exited with no errors.
D [01/Jan/2012:18:59:35 +0100] [CGI] Flushed attributes...
D [01/Jan/2012:18:59:35 +0100] [cups-deviced] Found device "ipps"...
D [01/Jan/2012:18:59:35 +0100] [cups-deviced] PID 951 (ipps) exited with no errors.
D [01/Jan/2012:18:59:35 +0100] Script header: Content-Type: application/ipp
D [01/Jan/2012:18:59:35 +0100] Script header:
D [01/Jan/2012:18:59:35 +0100] [CGI] Flushed attributes...
D [01/Jan/2012:18:59:35 +0100] [cups-deviced] Found device "serial:/dev/ttyS0?baud=115200"...
D [01/Jan/2012:18:59:35 +0100] [CGI] Flushed attributes...
D [01/Jan/2012:18:59:35 +0100] [cups-deviced] Found device "serial:/dev/ttyS1?baud=115200"...
D [01/Jan/2012:18:59:35 +0100] [cups-deviced] PID 952 (serial) exited with no errors.
D [01/Jan/2012:18:59:35 +0100] PID 948 (/usr/lib/cups/daemon/cups-deviced) exited with no errors.
D [01/Jan/2012:18:59:35 +0100] cupsdSetBusyState: newbusy="Not busy", busy="Active clients"
D [01/Jan/2012:18:59:35 +0100] cupsdReadClient: 16 WAITING Closing on EOF
D [01/Jan/2012:18:59:35 +0100] cupsdCloseClient: 16
D [01/Jan/2012:18:59:35 +0100] cupsdSetBusyState: newbusy="Not busy", busy="Not busy"
D [01/Jan/2012:19:00:23 +0100] Report: clients=1
D [01/Jan/2012:19:00:23 +0100] Report: jobs=0
D [01/Jan/2012:19:00:23 +0100] Report: jobs-active=0
D [01/Jan/2012:19:00:23 +0100] Report: printers=0
D [01/Jan/2012:19:00:23 +0100] Report: printers-implicit=0
D [01/Jan/2012:19:00:23 +0100] Report: stringpool-string-count=407
D [01/Jan/2012:19:00:23 +0100] Report: stringpool-alloc-bytes=4648
D [01/Jan/2012:19:00:23 +0100] Report: stringpool-total-bytes=5736
D [01/Jan/2012:19:01:15 +0100] cupsdReadClient: 13 WAITING Closing on EOF
D [01/Jan/2012:19:01:15 +0100] cupsdCloseClient: 13
D [01/Jan/2012:19:01:15 +0100] cupsdSetBusyState: newbusy="Not busy", busy="Not busy"
D [01/Jan/2012:19:19:03 +0100] Report: clients=0
D [01/Jan/2012:19:19:03 +0100] Report: jobs=0
D [01/Jan/2012:19:19:03 +0100] Report: jobs-active=0
D [01/Jan/2012:19:19:03 +0100] Report: printers=0
D [01/Jan/2012:19:19:03 +0100] Report: printers-implicit=0
D [01/Jan/2012:19:19:03 +0100] Report: stringpool-string-count=407
D [01/Jan/2012:19:19:03 +0100] Report: stringpool-alloc-bytes=4648
D [01/Jan/2012:19:19:03 +0100] Report: stringpool-total-bytes=5736
D [01/Jan/2012:19:22:10 +0100] Report: clients=0
D [01/Jan/2012:19:22:11 +0100] Report: jobs=0
D [01/Jan/2012:19:22:11 +0100] Report: jobs-active=0
D [01/Jan/2012:19:22:11 +0100] Report: printers=0
D [01/Jan/2012:19:22:11 +0100] Report: printers-implicit=0
D [01/Jan/2012:19:22:11 +0100] Report: stringpool-string-count=407
D [01/Jan/2012:19:22:11 +0100] Report: stringpool-alloc-bytes=4648
D [01/Jan/2012:19:22:11 +0100] Report: stringpool-total-bytes=5736
D [01/Jan/2012:19:24:21 +0100] Report: clients=0
D [01/Jan/2012:19:24:21 +0100] Report: jobs=0
D [01/Jan/2012:19:24:21 +0100] Report: jobs-active=0
D [01/Jan/2012:19:24:21 +0100] Report: printers=0
D [01/Jan/2012:19:24:21 +0100] Report: printers-implicit=0
D [01/Jan/2012:19:24:21 +0100] Report: stringpool-string-count=407
D [01/Jan/2012:19:24:21 +0100] Report: stringpool-alloc-bytes=4648
D [01/Jan/2012:19:24:21 +0100] Report: stringpool-total-bytes=5736
D [01/Jan/2012:19:27:26 +0100] Report: clients=0
D [01/Jan/2012:19:27:26 +0100] Report: jobs=0
D [01/Jan/2012:19:27:26 +0100] Report: jobs-active=0
D [01/Jan/2012:19:27:26 +0100] Report: printers=0
D [01/Jan/2012:19:27:26 +0100] Report: printers-implicit=0
D [01/Jan/2012:19:27:26 +0100] Report: stringpool-string-count=407
D [01/Jan/2012:19:27:26 +0100] Report: stringpool-alloc-bytes=4648
D [01/Jan/2012:19:27:26 +0100] Report: stringpool-total-bytes=5736
D [01/Jan/2012:19:37:11 +0100] Report: clients=0
D [01/Jan/2012:19:37:11 +0100] Report: jobs=0
D [01/Jan/2012:19:37:11 +0100] Report: jobs-active=0
D [01/Jan/2012:19:37:11 +0100] Report: printers=0
D [01/Jan/2012:19:37:11 +0100] Report: printers-implicit=0
D [01/Jan/2012:19:37:11 +0100] Report: stringpool-string-count=407
D [01/Jan/2012:19:37:11 +0100] Report: stringpool-alloc-bytes=4648
D [01/Jan/2012:19:37:11 +0100] Report: stringpool-total-bytes=5736
I [01/Jan/2012:19:37:41 +0100] Scheduler shutting down normally.
D [01/Jan/2012:19:37:41 +0100] Discarding unused server-stopped event...
I [01/Jan/2012:19:37:41 +0100] Saving job.cache...
I [01/Jan/2012:19:38:18 +0100] Listening to [v1.::1]:631 (IPv6)
I [01/Jan/2012:19:38:18 +0100] Listening to 127.0.0.1:631 (IPv4)
I [01/Jan/2012:19:38:18 +0100] Listening to /var/run/cups/cups.sock (Domain)
I [01/Jan/2012:19:38:18 +0100] Remote access is disabled.
D [01/Jan/2012:19:38:18 +0100] Added auto ServerAlias mamapc
I [01/Jan/2012:19:38:18 +0100] Loaded configuration file "/etc/cups/cupsd.conf"
D [01/Jan/2012:19:38:18 +0100] Creating missing directory "/var/run/cups"
D [01/Jan/2012:19:38:18 +0100] Repairing ownership of "/var/run/cups"
D [01/Jan/2012:19:38:18 +0100] Repairing access permissions of "/var/run/cups"
D [01/Jan/2012:19:38:18 +0100] Creating missing directory "/var/run/cups/certs"
D [01/Jan/2012:19:38:18 +0100] Repairing ownership of "/var/run/cups/certs"
D [01/Jan/2012:19:38:18 +0100] Repairing access permissions of "/var/run/cups/certs"
I [01/Jan/2012:19:38:18 +0100] Using default TempDir of /var/spool/cups/tmp...
I [01/Jan/2012:19:38:18 +0100] Configured for up to 100 clients.
I [01/Jan/2012:19:38:18 +0100] Allowing up to 100 client connections per host.
I [01/Jan/2012:19:38:18 +0100] Using policy "default" as the default.
I [01/Jan/2012:19:38:18 +0100] Full reload is required.
I [01/Jan/2012:19:38:19 +0100] Loaded MIME database from "/usr/share/cups/mime" and "/etc/cups": 35 types, 42 filters...
I [01/Jan/2012:19:38:19 +0100] Loading job cache file "/var/cache/cups/job.cache"...
I [01/Jan/2012:19:38:19 +0100] Full reload complete.
D [01/Jan/2012:19:38:19 +0100] cupsdCleanFiles(path="/var/spool/cups/tmp", pattern="(null)")
I [01/Jan/2012:19:38:19 +0100] Cleaning out old files in "/var/spool/cups/tmp"...
D [01/Jan/2012:19:38:19 +0100] Removed "/var/spool/cups/tmp/0039f4f0366a5"...
D [01/Jan/2012:19:38:19 +0100] cupsdCleanFiles(path="/var/cache/cups", pattern="*.ipp")
I [01/Jan/2012:19:38:19 +0100] Cleaning out old files in "/var/cache/cups"...
I [01/Jan/2012:19:38:19 +0100] Listening to [v1.::1]:631 on fd 8...
I [01/Jan/2012:19:38:19 +0100] Listening to 127.0.0.1:631 on fd 9...
I [01/Jan/2012:19:38:19 +0100] Listening to /var/run/cups/cups.sock:631 on fd 10...
I [01/Jan/2012:19:38:19 +0100] Resuming new connection processing...
D [01/Jan/2012:19:38:19 +0100] cupsdSetBusyState: newbusy="Not busy", busy="Not busy"
D [01/Jan/2012:19:38:19 +0100] Discarding unused server-started event...
D [01/Jan/2012:19:38:20 +0100] Report: clients=0
D [01/Jan/2012:19:38:20 +0100] Report: jobs=0
D [01/Jan/2012:19:38:20 +0100] Report: jobs-active=0
D [01/Jan/2012:19:38:20 +0100] Report: printers=0
D [01/Jan/2012:19:38:20 +0100] Report: printers-implicit=0
D [01/Jan/2012:19:38:20 +0100] Report: stringpool-string-count=289
D [01/Jan/2012:19:38:20 +0100] Report: stringpool-alloc-bytes=4648
D [01/Jan/2012:19:38:20 +0100] Report: stringpool-total-bytes=4792
I [01/Jan/2012:20:53:48 +0100] Scheduler shutting down normally.
D [01/Jan/2012:20:53:48 +0100] Discarding unused server-stopped event...
I [01/Jan/2012:20:53:48 +0100] Saving job.cache...
I [01/Jan/2012:20:54:26 +0100] Listening to [v1.::1]:631 (IPv6)
I [01/Jan/2012:20:54:26 +0100] Listening to 127.0.0.1:631 (IPv4)
I [01/Jan/2012:20:54:26 +0100] Listening to /var/run/cups/cups.sock (Domain)
I [01/Jan/2012:20:54:26 +0100] Remote access is disabled.
D [01/Jan/2012:20:54:26 +0100] Added auto ServerAlias mamapc
I [01/Jan/2012:20:54:26 +0100] Loaded configuration file "/etc/cups/cupsd.conf"
D [01/Jan/2012:20:54:26 +0100] Creating missing directory "/var/run/cups"
D [01/Jan/2012:20:54:26 +0100] Repairing ownership of "/var/run/cups"
D [01/Jan/2012:20:54:26 +0100] Repairing access permissions of "/var/run/cups"
D [01/Jan/2012:20:54:26 +0100] Creating missing directory "/var/run/cups/certs"
D [01/Jan/2012:20:54:26 +0100] Repairing ownership of "/var/run/cups/certs"
D [01/Jan/2012:20:54:26 +0100] Repairing access permissions of "/var/run/cups/certs"
I [01/Jan/2012:20:54:26 +0100] Using default TempDir of /var/spool/cups/tmp...
I [01/Jan/2012:20:54:26 +0100] Configured for up to 100 clients.
I [01/Jan/2012:20:54:26 +0100] Allowing up to 100 client connections per host.
I [01/Jan/2012:20:54:26 +0100] Using policy "default" as the default.
I [01/Jan/2012:20:54:26 +0100] Full reload is required.
I [01/Jan/2012:20:54:27 +0100] Loaded MIME database from "/usr/share/cups/mime" and "/etc/cups": 35 types, 42 filters...
I [01/Jan/2012:20:54:27 +0100] Loading job cache file "/var/cache/cups/job.cache"...
I [01/Jan/2012:20:54:27 +0100] Full reload complete.
D [01/Jan/2012:20:54:27 +0100] cupsdCleanFiles(path="/var/spool/cups/tmp", pattern="(null)")
I [01/Jan/2012:20:54:27 +0100] Cleaning out old files in "/var/spool/cups/tmp"...
D [01/Jan/2012:20:54:27 +0100] cupsdCleanFiles(path="/var/cache/cups", pattern="*.ipp")
I [01/Jan/2012:20:54:27 +0100] Cleaning out old files in "/var/cache/cups"...
I [01/Jan/2012:20:54:27 +0100] Listening to [v1.::1]:631 on fd 8...
I [01/Jan/2012:20:54:27 +0100] Listening to 127.0.0.1:631 on fd 9...
I [01/Jan/2012:20:54:27 +0100] Listening to /var/run/cups/cups.sock:631 on fd 10...
I [01/Jan/2012:20:54:27 +0100] Resuming new connection processing...
D [01/Jan/2012:20:54:27 +0100] cupsdSetBusyState: newbusy="Not busy", busy="Not busy"
D [01/Jan/2012:20:54:27 +0100] Discarding unused server-started event...
D [01/Jan/2012:20:54:28 +0100] Report: clients=0
D [01/Jan/2012:20:54:28 +0100] Report: jobs=0
D [01/Jan/2012:20:54:28 +0100] Report: jobs-active=0
D [01/Jan/2012:20:54:28 +0100] Report: printers=0
D [01/Jan/2012:20:54:28 +0100] Report: printers-implicit=0
D [01/Jan/2012:20:54:28 +0100] Report: stringpool-string-count=289
D [01/Jan/2012:20:54:28 +0100] Report: stringpool-alloc-bytes=4648
D [01/Jan/2012:20:54:28 +0100] Report: stringpool-total-bytes=4792
I [02/Jan/2012:05:34:23 +0100] Scheduler shutting down normally.
D [02/Jan/2012:05:34:24 +0100] Discarding unused server-stopped event...
I [02/Jan/2012:05:34:24 +0100] Saving job.cache...
I [02/Jan/2012:05:35:05 +0100] Listening to [v1.::1]:631 (IPv6)
I [02/Jan/2012:05:35:05 +0100] Listening to 127.0.0.1:631 (IPv4)
I [02/Jan/2012:05:35:05 +0100] Listening to /var/run/cups/cups.sock (Domain)
I [02/Jan/2012:05:35:05 +0100] Remote access is disabled.
D [02/Jan/2012:05:35:05 +0100] Added auto ServerAlias mamapc
I [02/Jan/2012:05:35:05 +0100] Loaded configuration file "/etc/cups/cupsd.conf"
D [02/Jan/2012:05:35:05 +0100] Creating missing directory "/var/run/cups"
D [02/Jan/2012:05:35:05 +0100] Repairing ownership of "/var/run/cups"
D [02/Jan/2012:05:35:05 +0100] Repairing access permissions of "/var/run/cups"
D [02/Jan/2012:05:35:05 +0100] Creating missing directory "/var/run/cups/certs"
D [02/Jan/2012:05:35:05 +0100] Repairing ownership of "/var/run/cups/certs"
D [02/Jan/2012:05:35:05 +0100] Repairing access permissions of "/var/run/cups/certs"
I [02/Jan/2012:05:35:05 +0100] Using default TempDir of /var/spool/cups/tmp...
I [02/Jan/2012:05:35:05 +0100] Configured for up to 100 clients.
I [02/Jan/2012:05:35:05 +0100] Allowing up to 100 client connections per host.
I [02/Jan/2012:05:35:05 +0100] Using policy "default" as the default.
I [02/Jan/2012:05:35:05 +0100] Full reload is required.
I [02/Jan/2012:05:35:06 +0100] Loaded MIME database from "/usr/share/cups/mime" and "/etc/cups": 35 types, 42 filters...
I [02/Jan/2012:05:35:06 +0100] Loading job cache file "/var/cache/cups/job.cache"...
I [02/Jan/2012:05:35:06 +0100] Full reload complete.
D [02/Jan/2012:05:35:06 +0100] cupsdCleanFiles(path="/var/spool/cups/tmp", pattern="(null)")
I [02/Jan/2012:05:35:06 +0100] Cleaning out old files in "/var/spool/cups/tmp"...
D [02/Jan/2012:05:35:06 +0100] cupsdCleanFiles(path="/var/cache/cups", pattern="*.ipp")
I [02/Jan/2012:05:35:06 +0100] Cleaning out old files in "/var/cache/cups"...
I [02/Jan/2012:05:35:06 +0100] Listening to [v1.::1]:631 on fd 8...
I [02/Jan/2012:05:35:06 +0100] Listening to 127.0.0.1:631 on fd 9...
I [02/Jan/2012:05:35:06 +0100] Listening to /var/run/cups/cups.sock:631 on fd 10...
I [02/Jan/2012:05:35:06 +0100] Resuming new connection processing...
D [02/Jan/2012:05:35:06 +0100] cupsdSetBusyState: newbusy="Not busy", busy="Not busy"
D [02/Jan/2012:05:35:06 +0100] Discarding unused server-started event...
D [02/Jan/2012:05:35:07 +0100] Report: clients=0
D [02/Jan/2012:05:35:07 +0100] Report: jobs=0
D [02/Jan/2012:05:35:07 +0100] Report: jobs-active=0
D [02/Jan/2012:05:35:07 +0100] Report: printers=0
D [02/Jan/2012:05:35:07 +0100] Report: printers-implicit=0
D [02/Jan/2012:05:35:07 +0100] Report: stringpool-string-count=289
D [02/Jan/2012:05:35:07 +0100] Report: stringpool-alloc-bytes=4648
D [02/Jan/2012:05:35:07 +0100] Report: stringpool-total-bytes=4792
I [02/Jan/2012:05:56:24 +0100] Scheduler shutting down normally.
D [02/Jan/2012:05:56:24 +0100] Discarding unused server-stopped event...
I [02/Jan/2012:05:56:24 +0100] Saving job.cache...
I [02/Jan/2012:17:22:51 +0100] Listening to [v1.::1]:631 (IPv6)
I [02/Jan/2012:17:22:51 +0100] Listening to 127.0.0.1:631 (IPv4)
I [02/Jan/2012:17:22:51 +0100] Listening to /var/run/cups/cups.sock (Domain)
I [02/Jan/2012:17:22:51 +0100] Remote access is disabled.
D [02/Jan/2012:17:22:51 +0100] Added auto ServerAlias mamapc
I [02/Jan/2012:17:22:51 +0100] Loaded configuration file "/etc/cups/cupsd.conf"
D [02/Jan/2012:17:22:51 +0100] Creating missing directory "/var/run/cups"
D [02/Jan/2012:17:22:51 +0100] Repairing ownership of "/var/run/cups"
D [02/Jan/2012:17:22:51 +0100] Repairing access permissions of "/var/run/cups"
D [02/Jan/2012:17:22:51 +0100] Creating missing directory "/var/run/cups/certs"
D [02/Jan/2012:17:22:51 +0100] Repairing ownership of "/var/run/cups/certs"
D [02/Jan/2012:17:22:51 +0100] Repairing access permissions of "/var/run/cups/certs"
I [02/Jan/2012:17:22:51 +0100] Using default TempDir of /var/spool/cups/tmp...
I [02/Jan/2012:17:22:51 +0100] Configured for up to 100 clients.
I [02/Jan/2012:17:22:51 +0100] Allowing up to 100 client connections per host.
I [02/Jan/2012:17:22:51 +0100] Using policy "default" as the default.
I [02/Jan/2012:17:22:51 +0100] Full reload is required.
I [02/Jan/2012:17:22:52 +0100] Loaded MIME database from "/usr/share/cups/mime" and "/etc/cups": 35 types, 42 filters...
I [02/Jan/2012:17:22:52 +0100] Loading job cache file "/var/cache/cups/job.cache"...
I [02/Jan/2012:17:22:52 +0100] Full reload complete.
D [02/Jan/2012:17:22:52 +0100] cupsdCleanFiles(path="/var/spool/cups/tmp", pattern="(null)")
I [02/Jan/2012:17:22:52 +0100] Cleaning out old files in "/var/spool/cups/tmp"...
D [02/Jan/2012:17:22:52 +0100] cupsdCleanFiles(path="/var/cache/cups", pattern="*.ipp")
I [02/Jan/2012:17:22:52 +0100] Cleaning out old files in "/var/cache/cups"...
I [02/Jan/2012:17:22:52 +0100] Listening to [v1.::1]:631 on fd 8...
I [02/Jan/2012:17:22:52 +0100] Listening to 127.0.0.1:631 on fd 9...
I [02/Jan/2012:17:22:52 +0100] Listening to /var/run/cups/cups.sock:631 on fd 10...
I [02/Jan/2012:17:22:52 +0100] Resuming new connection processing...
D [02/Jan/2012:17:22:52 +0100] cupsdSetBusyState: newbusy="Not busy", busy="Not busy"
D [02/Jan/2012:17:22:52 +0100] Discarding unused server-started event...
D [02/Jan/2012:17:22:53 +0100] Report: clients=0
D [02/Jan/2012:17:22:53 +0100] Report: jobs=0
D [02/Jan/2012:17:22:53 +0100] Report: jobs-active=0
D [02/Jan/2012:17:22:53 +0100] Report: printers=0
D [02/Jan/2012:17:22:53 +0100] Report: printers-implicit=0
D [02/Jan/2012:17:22:53 +0100] Report: stringpool-string-count=289
D [02/Jan/2012:17:22:53 +0100] Report: stringpool-alloc-bytes=4648
D [02/Jan/2012:17:22:53 +0100] Report: stringpool-total-bytes=4792
I [02/Jan/2012:18:15:27 +0100] Scheduler shutting down normally.
D [02/Jan/2012:18:15:27 +0100] Discarding unused server-stopped event...
I [02/Jan/2012:18:15:27 +0100] Saving job.cache...
E [02/Jan/2012:18:40:40 +0100] cupsdAuthorize: pam_authenticate() returned 7 (Authentication failure)!
E [02/Jan/2012:18:41:03 +0100] Bad request line "%16%03%01" from localhost!
E [02/Jan/2012:18:41:03 +0100] Bad request line "%16%03%01" from localhost!
E [02/Jan/2012:18:41:03 +0100] Bad request line "%16%03%01" from localhost!
E [02/Jan/2012:18:41:03 +0100] Bad request line "%16%03%01" from localhost!
E [02/Jan/2012:18:41:04 +0100] Bad request line "%16%03%01" from localhost!
E [02/Jan/2012:18:44:36 +0100] Returning HTTP Forbidden for CUPS-Delete-Printer (ipp://localhost/printers/Epson-Stylus-SX218) from localhost
E [02/Jan/2012:18:46:25 +0100] Returning IPP client-error-document-format-not-supported for Print-Job (ipp://localhost:631/printers/Epson_Stylus_SX218) from localhost
E [02/Jan/2012:18:54:25 +0100] Bad request line "%16%03%01" from localhost!
E [02/Jan/2012:18:54:25 +0100] Bad request line "%16%03%01" from localhost!
E [02/Jan/2012:18:54:25 +0100] Bad request line "%16%03%01" from localhost!
E [02/Jan/2012:18:54:26 +0100] Bad request line "%16%03%01" from localhost!
E [02/Jan/2012:18:56:58 +0100] Bad request line "%16%03%01" from localhost!
E [02/Jan/2012:18:58:04 +0100] Bad request line "%16%03%01" from localhost!
E [02/Jan/2012:18:58:04 +0100] Bad request line "%16%03%01" from localhost!
W [02/Jan/2012:19:01:48 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Brother/BR5070DN_GPL.ppd.gz!
E [02/Jan/2012:19:01:49 +0100] [cups-driverd] Bad driver information file "/usr/share/cups/model/foomatic-db-ppds/Kyocera/ReadMe.htm"!
W [02/Jan/2012:19:01:53 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/KONICA_MINOLTA/KOC451JX.ppd.gz!
W [02/Jan/2012:19:01:53 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Xerox/xrx6120pu.ppd!
W [02/Jan/2012:19:01:54 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp950c.ppd.gz!
W [02/Jan/2012:19:01:54 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp960s.ppd.gz!
W [02/Jan/2012:19:01:54 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp9100.ppd.gz!
W [02/Jan/2012:19:01:54 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp880c.ppd.gz!
W [02/Jan/2012:19:01:54 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp980c.ppd.gz!
W [02/Jan/2012:19:01:54 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp850c.ppd.gz!
W [02/Jan/2012:19:01:54 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp920c.ppd.gz!
W [02/Jan/2012:19:01:54 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp830c.ppd.gz!
E [02/Jan/2012:19:02:06 +0100] Bad request line "%16%03%01" from localhost!
E [02/Jan/2012:19:02:11 +0100] Bad request line "%16%03%01" from localhost!
E [02/Jan/2012:19:02:11 +0100] Bad request line "%16%03%01" from localhost!
E [02/Jan/2012:19:02:11 +0100] Bad request line "%16%03%01" from localhost!
W [02/Jan/2012:19:02:57 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Brother/BR5070DN_GPL.ppd.gz!
E [02/Jan/2012:19:02:57 +0100] [cups-driverd] Bad driver information file "/usr/share/cups/model/foomatic-db-ppds/Kyocera/ReadMe.htm"!
W [02/Jan/2012:19:02:57 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/KONICA_MINOLTA/KOC451JX.ppd.gz!
W [02/Jan/2012:19:02:57 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Xerox/xrx6120pu.ppd!
W [02/Jan/2012:19:02:57 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp950c.ppd.gz!
W [02/Jan/2012:19:02:57 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp960s.ppd.gz!
W [02/Jan/2012:19:02:57 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp9100.ppd.gz!
W [02/Jan/2012:19:02:57 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp880c.ppd.gz!
W [02/Jan/2012:19:02:57 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp980c.ppd.gz!
W [02/Jan/2012:19:02:57 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp850c.ppd.gz!
W [02/Jan/2012:19:02:57 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp920c.ppd.gz!
W [02/Jan/2012:19:02:57 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp830c.ppd.gz!
W [02/Jan/2012:19:03:42 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Brother/BR5070DN_GPL.ppd.gz!
E [02/Jan/2012:19:03:42 +0100] [cups-driverd] Bad driver information file "/usr/share/cups/model/foomatic-db-ppds/Kyocera/ReadMe.htm"!
W [02/Jan/2012:19:03:42 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/KONICA_MINOLTA/KOC451JX.ppd.gz!
W [02/Jan/2012:19:03:43 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Xerox/xrx6120pu.ppd!
W [02/Jan/2012:19:03:43 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp950c.ppd.gz!
W [02/Jan/2012:19:03:43 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp960s.ppd.gz!
W [02/Jan/2012:19:03:43 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp9100.ppd.gz!
W [02/Jan/2012:19:03:43 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp880c.ppd.gz!
W [02/Jan/2012:19:03:43 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp980c.ppd.gz!
W [02/Jan/2012:19:03:43 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp850c.ppd.gz!
W [02/Jan/2012:19:03:43 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp920c.ppd.gz!
W [02/Jan/2012:19:03:43 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp830c.ppd.gz!
W [02/Jan/2012:19:04:46 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Brother/BR5070DN_GPL.ppd.gz!
E [02/Jan/2012:19:04:46 +0100] [cups-driverd] Bad driver information file "/usr/share/cups/model/foomatic-db-ppds/Kyocera/ReadMe.htm"!
W [02/Jan/2012:19:04:46 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/KONICA_MINOLTA/KOC451JX.ppd.gz!
W [02/Jan/2012:19:04:46 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Xerox/xrx6120pu.ppd!
W [02/Jan/2012:19:04:46 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp950c.ppd.gz!
W [02/Jan/2012:19:04:46 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp960s.ppd.gz!
W [02/Jan/2012:19:04:46 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp9100.ppd.gz!
W [02/Jan/2012:19:04:46 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp880c.ppd.gz!
W [02/Jan/2012:19:04:46 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp980c.ppd.gz!
W [02/Jan/2012:19:04:46 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp850c.ppd.gz!
W [02/Jan/2012:19:04:46 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp920c.ppd.gz!
W [02/Jan/2012:19:04:46 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp830c.ppd.gz!
E [02/Jan/2012:19:05:17 +0100] Bad request line "%16%03%01" from localhost!
W [02/Jan/2012:19:06:12 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Brother/BR5070DN_GPL.ppd.gz!
E [02/Jan/2012:19:06:12 +0100] [cups-driverd] Bad driver information file "/usr/share/cups/model/foomatic-db-ppds/Kyocera/ReadMe.htm"!
W [02/Jan/2012:19:06:12 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/KONICA_MINOLTA/KOC451JX.ppd.gz!
W [02/Jan/2012:19:06:12 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Xerox/xrx6120pu.ppd!
W [02/Jan/2012:19:06:12 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp950c.ppd.gz!
W [02/Jan/2012:19:06:12 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp960s.ppd.gz!
W [02/Jan/2012:19:06:12 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp9100.ppd.gz!
W [02/Jan/2012:19:06:12 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp880c.ppd.gz!
W [02/Jan/2012:19:06:12 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp980c.ppd.gz!
W [02/Jan/2012:19:06:12 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp850c.ppd.gz!
W [02/Jan/2012:19:06:12 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp920c.ppd.gz!
W [02/Jan/2012:19:06:12 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp830c.ppd.gz!
E [02/Jan/2012:19:06:57 +0100] Bad request line "%16%03%01" from localhost!
E [02/Jan/2012:19:06:58 +0100] Bad request line "%16%03%01" from localhost!
E [02/Jan/2012:19:15:57 +0100] Avahi client failed, closing client to allow a clean restart
W [02/Jan/2012:19:18:48 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Brother/BR5070DN_GPL.ppd.gz!
E [02/Jan/2012:19:18:48 +0100] [cups-driverd] Bad driver information file "/usr/share/cups/model/foomatic-db-ppds/Kyocera/ReadMe.htm"!
W [02/Jan/2012:19:18:49 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/KONICA_MINOLTA/KOC451JX.ppd.gz!
W [02/Jan/2012:19:18:49 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Xerox/xrx6120pu.ppd!
W [02/Jan/2012:19:18:49 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp950c.ppd.gz!
W [02/Jan/2012:19:18:49 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp960s.ppd.gz!
W [02/Jan/2012:19:18:49 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp9100.ppd.gz!
W [02/Jan/2012:19:18:49 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp880c.ppd.gz!
W [02/Jan/2012:19:18:49 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp980c.ppd.gz!
W [02/Jan/2012:19:18:49 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp850c.ppd.gz!
W [02/Jan/2012:19:18:49 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp920c.ppd.gz!
W [02/Jan/2012:19:18:49 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp830c.ppd.gz!
W [02/Jan/2012:19:19:55 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Brother/BR5070DN_GPL.ppd.gz!
E [02/Jan/2012:19:19:55 +0100] [cups-driverd] Bad driver information file "/usr/share/cups/model/foomatic-db-ppds/Kyocera/ReadMe.htm"!
W [02/Jan/2012:19:19:55 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/KONICA_MINOLTA/KOC451JX.ppd.gz!
W [02/Jan/2012:19:19:55 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Xerox/xrx6120pu.ppd!
W [02/Jan/2012:19:19:55 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp950c.ppd.gz!
W [02/Jan/2012:19:19:55 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp960s.ppd.gz!
W [02/Jan/2012:19:19:55 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp9100.ppd.gz!
W [02/Jan/2012:19:19:55 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp880c.ppd.gz!
W [02/Jan/2012:19:19:55 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp980c.ppd.gz!
W [02/Jan/2012:19:19:55 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp850c.ppd.gz!
W [02/Jan/2012:19:19:55 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp920c.ppd.gz!
W [02/Jan/2012:19:19:55 +0100] [CGI] Missing NickName and ModelName in /usr/share/cups/model/foomatic-db-ppds/Epson/eplp830c.ppd.gz!
E [02/Jan/2012:19:20:30 +0100] Returning IPP client-error-document-format-not-supported for Print-Job (ipp://localhost:631/printers/Epson_Stylus_SX218) from localhost
E [02/Jan/2012:19:24:03 +0100] Returning IPP client-error-document-format-not-supported for Send-Document (ipp://localhost:631/printers/Epson_Stylus_SX218) from localhost
Please let me know if you should need other outputs, logfiles, etc. I appreciate any idea that could help me to get this damn thing to finally print something.
Thank you very much!Hi Radhakrishnan,
ORARRP doesn't actually do any printing itself. Via COM/Active-X, it calls the appropriate program that corresponds to the type of output, and then this program does the actual printing. For PDF, it calls Acrobat Reader to print the document. Acrobat Reader displays the printer dialog to let you choose which printer to use, and then when you click OK, Acrobat Reader prints the document and sends it to the printer.
I expect that you'll find that when you use Acrobat Reader yourself on this machine it has exactly the same problems with this particular printer configuration. If so, you'll need to contact Adobe for further assistance.
regards,
Stewart -
Hi!
One of our customers is using the SNC Client Encryption solution to ensure encryption using SNC (based on Kerberos Technology) for their SAP GUI Dialog connections. They have lots of SAP backends DEV, QAS, PRD all with the SNC Client Encryption SNC Lib installed. The profile parameter snc/identity/as contains the following value: p:CN=SAP/<ServiceAccount>@<DOMAIN>.
Example: p:CN=SAP/[email protected]
The customer is using one AD Service Account "SNCServiceUser" with one registered SPN "SAP/SNCServiceUser" for all systems (yes, this is not recommended... but the case).
Important: All users use group entries in the SAP Logon (saplogin.ini). Means, for SAP logon the SNC name can not be manually configured on the SAP Front End. With group logons, the application server's SNC name is dynamically requested by the message server each time a SAP GUI connection is started. The SNC Name is greyed out in this case as dynamically obtained from the applications servers profile parameter snc/identity/as.
Now our customer implements SAP NetWeaver Single Sign-On 2.0 within his landscape. Based on the Secure Login Server 2.0 (SP3) he likes to use X.509 based authentication to his AS ABAP backends using SAP GUI SNC while others still use SNC Client Encryption.
Replacing the SNC Library on the AS ABAP
The Secure Login Library 2.0 (SP3) has been installed on one of the ABAP systems and the SNC Client Encryption SNC Library (which is based on SSO 1.0) is no longer used, thus we changed the parameter snc/gssapi_lib to point to the new SNC library. We removed the old PSE.ZIP containing the keytab and created the new SAPSNCSKERB.PSE incl. the keytab and proper credentials. To ensure parallel operation, we kept the snc/identity/as value as is = p:CN=SAP/[email protected].
After restarting the system with initialized Secure Login Library 2.0, still the SNC client encryption works fine for existing users.
The problem
We created on the Secure Login Server an SNC certificate for the AS ABAP which has the following X.509 Distinguised Name Fomat: CN=SAP/[email protected] This is to avoid having to change the snc/identity/as to an "real" X.509 DN which would lead to non-working SNC Client Encryption for all the other users using SAP GUI and logon groups.
As soon as we install the PSE via STRUST on the system the SNC Client Encryption solution stops working with error „Server refuses kerberos key exchange“.
As part of an pilot implementation we have installed Secure Login Client 2.0 (SP3) on some test PCs. The test PC with SLC is able to perform Single Sign-On with SNC based on X.509 (incl. Encryption) to the ABAP system.
Seems the SAP System now only tries to do X.509 based authentication thus key exchange fails. The problem is, we cannot change the snc/identity/as value because of the logon groups. If we were able to do so, we would in any case set the server identity to X.509 DN and in addition create the SAPSNCSKERB.PSE incl. keytab. This should work, as confirmed by SAP see this post.
Any ideas how to solve this and have both solutions in parallel?
Appreciate any help.
Regards,
CarstenHi all,
we was able to fix the issue. It was an issue with the customers cluster configuration and the $SECUDIR variable. This tricky issue leads to non working or sporadic working SNC Client Encryption...
This was how the configuration looks before:
Environment variable $SECUDIR is defined:
"/ABCDEF<SID>/usr/sap/<SID>/DVEBMGSxx/sec“
sapgenpse seclogin -l -v
running seclogin with USER="<SID>adm"
Credentials for username '<SID>adm':
0 (LPS:OFF):
(LPS:OFF): /ABCDEF<SID>/usr/sap/<SID>/DVEBMGSxx/sec/SAPSNCSKERB.pse
1 (LPS:OFF):
(LPS:OFF): /usr/sap/<SID>/DVEBMGSxx/sec/SAPSNCS.pse
After changing the $SECUDIR to "/usr/sap/<SID>/DVEBMGSxx/sec“ and re-creating the credentials, it worked like a charm.
As a result of this we can confirm, this configuration and SNC Client Encryption works with CommonCryptoLib in parallel to the SSO configuration.
And Valerie was right with 2. SLC starting from V. 1.0 SP2 PL3 was able to convert the CN= part of the SNC Name into an SPN, was my mistake. In addition SNC Client Encryption starting from Version 1 SP1 PL1 does this also.. just to make this clear
Thread closed hope this helps someone
Carsten -
Hi, I'm trying to create Site-to-Site VPN between Cisco ASA 5505 and Cisco Router 3945.
I've tried create configuration with and without ASA wizard, but anyway it doesn't work.
Please help me to find where is the issue.
I have two sites and would like to get access from 192.168.83.0 to 192.168.17.0
192.168.17.0 --- S1.S1.S1.S1 (IOS Router) ==================== S2.S2.S2.S2 (ASA 5505) --- 192.168.83.0
Here is my current configuration.
Thanks for your help.
IOS Configuration
version 15.2
crypto isakmp policy 1
encr aes 256
authentication pre-share
group 2
crypto isakmp key cisco address 198.0.183.225
crypto isakmp invalid-spi-recovery
crypto ipsec transform-set AES-SET esp-aes esp-sha-hmac
mode transport
crypto map static-map 1 ipsec-isakmp
set peer S2.S2.S2.S2
set transform-set AES-SET
set pfs group2
match address 100
interface GigabitEthernet0/0
ip address S1.S1.S1.S1 255.255.255.240
ip nat outside
ip virtual-reassembly in
duplex auto
speed auto
crypto map static-map
interface GigabitEthernet0/1
ip address 192.168.17.1 255.255.255.0
ip nat inside
ip virtual-reassembly in
duplex auto
speed auto
access-list 100 permit ip 192.168.17.0 0.0.0.255 192.168.83.0 0.0.0.255
ASA Configuration
ASA Version 8.4(3)
interface Ethernet0/0
switchport access vlan 2
interface Vlan1
nameif inside
security-level 100
ip address 192.168.83.1 255.255.255.0
interface Vlan2
nameif outside
security-level 0
ip address S2.S2.S2.S2 255.255.255.248
ftp mode passive
same-security-traffic permit intra-interface
object network inside-network
subnet 192.168.83.0 255.255.255.0
object network datacenter
host S1.S1.S1.S1
object network datacenter-network
subnet 192.168.17.0 255.255.255.0
object network NETWORK_OBJ_192.168.83.0_24
subnet 192.168.83.0 255.255.255.0
access-list outside_access_in extended permit icmp any any echo-reply
access-list outside_access_in extended deny ip any any log
access-list outside_cryptomap extended permit ip 192.168.83.0 255.255.255.0 object datacenter-network
pager lines 24
logging enable
logging asdm informational
mtu inside 1500
mtu outside 1500
ip local pool vpn_pool 192.168.83.200-192.168.83.254 mask 255.255.255.0
icmp unreachable rate-limit 1 burst-size 1
no asdm history enable
arp timeout 14400
nat (inside,outside) source dynamic inside-network interface
nat (inside,outside) source static inside-network inside-network destination static inside-network inside-network no-proxy-arp route-lookup
nat (inside,outside) source static inside-network inside-network destination static datacenter-network datacenter-network no-proxy-arp route-lookup
nat (inside,outside) source static NETWORK_OBJ_192.168.83.0_24 NETWORK_OBJ_192.168.83.0_24 destination static datacenter-network pdatacenter-network no-proxy-arp route-lookup
access-group outside_access_in in interface outside
route outside 0.0.0.0 0.0.0.0 DEFAULT_GATEWAY 1
crypto ipsec ikev1 transform-set vpn-transform-set esp-3des esp-sha-hmac
crypto ipsec ikev1 transform-set vpn-transform-set mode transport
crypto ipsec ikev1 transform-set L2L_SET esp-aes esp-sha-hmac
crypto ipsec ikev1 transform-set L2L_SET mode transport
crypto dynamic-map dyno 10 set ikev1 transform-set vpn-transform-set
crypto map vpn 1 match address outside_cryptomap
crypto map vpn 1 set pfs
crypto map vpn 1 set peer S1.S1.S1.S1
crypto map vpn 1 set ikev1 transform-set L2L_SET
crypto map vpn 20 ipsec-isakmp dynamic dyno
crypto map vpn interface outside
crypto isakmp nat-traversal 3600
crypto ikev1 enable outside
crypto ikev1 policy 10
authentication pre-share
encryption 3des
hash sha
group 2
lifetime 86400
crypto ikev1 policy 20
authentication pre-share
encryption aes-256
hash sha
group 2
lifetime 86400
group-policy GroupPolicy_S1.S1.S1.S1 internal
group-policy GroupPolicy_S1.S1.S1.S1 attributes
vpn-tunnel-protocol ikev1
group-policy remote_vpn_policy internal
group-policy remote_vpn_policy attributes
vpn-tunnel-protocol ikev1 l2tp-ipsec
username artem password 8xs7XK3To4s5WfTvtKAutA== nt-encrypted
username admin password rqiFSVJFung3fvFZ encrypted privilege 15
tunnel-group DefaultRAGroup general-attributes
address-pool vpn_pool
default-group-policy remote_vpn_policy
tunnel-group DefaultRAGroup ipsec-attributes
ikev1 pre-shared-key *****
tunnel-group DefaultRAGroup ppp-attributes
authentication ms-chap-v2
tunnel-group S1.S1.S1.S1 type ipsec-l2l
tunnel-group S1.S1.S1.S1 general-attributes
default-group-policy GroupPolicy_S1.S1.S1.S1
tunnel-group S1.S1.S1.S1 ipsec-attributes
ikev1 pre-shared-key *****
class-map inspection_default
match default-inspection-traffic
policy-map type inspect dns preset_dns_map
parameters
message-length maximum client auto
message-length maximum 512
policy-map global_policy
class inspection_default
inspect dns preset_dns_map
inspect ftp
inspect h323 h225
inspect h323 ras
inspect rsh
inspect rtsp
inspect esmtp
inspect sqlnet
inspect skinny
inspect sunrpc
inspect xdmcp
inspect sip
inspect netbios
inspect tftp
inspect ip-options
inspect icmp
service-policy global_policy global
prompt hostname context
no call-home reporting anonymous
Cryptochecksum:f55f10c19a0848edd2466d08744556eb
: endThanks for helping me again. I really appreciate.
I don't hve any NAT-exemptions in Cisco IOS Router. Transform-set I will change soon, but I've tried with tunnel mode and it didn't work.
Maybe NAT-exemptions is the issue. Can you advice me which exemptions should be in Cisco IOS Router?
Because on Cisco ASA I guess I have everything.
Here is show crypto session detail
router(config)#do show crypto session detail
Crypto session current status
Code: C - IKE Configuration mode, D - Dead Peer Detection
K - Keepalives, N - NAT-traversal, T - cTCP encapsulation
X - IKE Extended Authentication, F - IKE Fragmentation
Interface: GigabitEthernet0/0
Session status: DOWN
Peer: 198.0.183.225 port 500 fvrf: (none) ivrf: (none)
Desc: (none)
Phase1_id: (none)
IPSEC FLOW: permit ip 192.168.17.0/255.255.255.0 192.168.83.0/255.255.255.0
Active SAs: 0, origin: crypto map
Inbound: #pkts dec'ed 0 drop 0 life (KB/Sec) 0/0
Outbound: #pkts enc'ed 0 drop 0 life (KB/Sec) 0/0
Should I see something in crypto isakmp sa?
pp-border#sh crypto isakmp sa
IPv4 Crypto ISAKMP SA
dst src state conn-id status
IPv6 Crypto ISAKMP SA
Thanks again for your help.
Maybe you are looking for
-
Inactive Transformations and DataSources in Production System.
Hi Experts We are working on BI 7.0 engine within Solution Manager. We had some issues with DataSources initially while transporting BI Objects from Devp to Prod. We logged it into OSS and followed their procedure to redo the transports. In the proce
-
Respected Sir/madem' i m new to java.So i don't know how can i handle this problem.plz guide me my problem is i m using mysql connector to access my database and made the class (MyConnection.class) that establish the connection but i do not want to g
-
I have a emac 700/512 MB RAM/40G HD/Combo Drive. For awhile it would just shut off for no reason. Now when I turn it on, it comes on to the little screen with the gray apple, the little timer startup wheel goes around for 30-40 seconds and then it "s
-
Passing pl/sql variables to javascript function
hi! in a dynamic page, i've got the javascript: <html> function onCall(A,B) <oracle> Select aDate, Name from test; b_rec b_cur%rowtype; htp.p(</body onload="onCall('||b_rec.aDate||','||b_rec.Name||'";'); </oracle> how can i pass in as onCall('12-Jun-
-
Tiny iWeb slideshow in iWeb 08
Hello, I just upgraded to iWeb 08 and realized that the former slideshow function on photo pages (black background with reflection) now shows very small versions of my photos, more like thumbnails than the actual photos, and in any case much smaller