Pre configured client
Hi Team
There is a business requirement to install pre configured client of SAP (ECC) for US region
So requesting you to guide me where can I get the transport request for pre configured client
Regards
Gopal Gangane
Gopal,
If you are asking this question, then you probably shouldn't be installing this package on your own.
There are basic installation instructions for all SAP software, and there are specific implementation guides for each package. Normally, this task is performed by a Basis expert.
If you wish to try anyway (I don't recommend this), then all the information you need is either on the BP web site, or links exist on this site to direct you to the info you will need. If you are downloading a baseline package, start here http://service.sap.com/~form/sapnet?_SHORTKEY=01100035870000728648& select the one you want. There is an info button, and a download button. Click on the Info button, which will take you to BP docs for the package you have selected. Read ALL, especially the stuff contained in the 'Explore and Evaluate' section.
Better, though, to hand the links and files to your Basis person and allow them to install.
Best Regards,
DB49
Similar Messages
-
HCM EHP5 pre-configured client
Hello,
I need to build ERP EHP5 and load HCM pre-configured client, have been hunting for information with no success, if anyone has done this, can you please share some documentation/links and high level steps ?
Thanks...PatrickGopal,
If you are asking this question, then you probably shouldn't be installing this package on your own.
There are basic installation instructions for all SAP software, and there are specific implementation guides for each package. Normally, this task is performed by a Basis expert.
If you wish to try anyway (I don't recommend this), then all the information you need is either on the BP web site, or links exist on this site to direct you to the info you will need. If you are downloading a baseline package, start here http://service.sap.com/~form/sapnet?_SHORTKEY=01100035870000728648& select the one you want. There is an info button, and a download button. Click on the Info button, which will take you to BP docs for the package you have selected. Read ALL, especially the stuff contained in the 'Explore and Evaluate' section.
Better, though, to hand the links and files to your Basis person and allow them to install.
Best Regards,
DB49 -
How do you copy/install a pre-configure client for Mexico
Is there a pre-configured client for Mexico.
If yes, how do you install pre-configured clients.
Where do you get information on pre-configured clients
Thanks
JoeHello Joe,
actually, there is another possibility that might be interesting for you:
http://service.sap.com/bestpractices
At "Release Planning" -> Availability Matrix
I can see that the country-specific baseline for Mexico is available for ECC 6.0, also, an updated version and a version for the Retail-industry is planned for Q3/Q1, respectively.
The documentation DVD of the best practices explains in detail the business processes, master data etc. that will be activated in the system if you install the SAP Best Practices Baseline Mexico in your system.
Best regards, Barbara -
Hi MI guys,
is it possible to create a pre-configured MI client for deployment?
Question 1:
I want to set the right servers and some other configuration for the standard MI client so that the users don't have to enter something during installation?
Question 2:
What about using a deployment software like enteo Netinstall for installing a basic MI client? My thoughts are, I install and configure a MI client without synchronizing and this will be deployed via Netinstall on the client device (without installation routine of MI client).
Thank you and regards,
FlorianHi Florian,
The short answer to both of those questions is "yes".
In our environment we used "Wise for Windows" utility to install SAP MI client with required parameters (IP address, SAP system ID, etc.), and then compile new .MSI package with pre-setup parameters.
And yes, we are able now to install it automatically now for our clients via Script Logic. It uses MSIEXEC on the background with "/quiet" option enabled and because of pre-configured settings, no input from end user is required during install process.
I think it should work properly with the other deployment tools, as they uses the similar logic.
Hope this answers your question.
Best regards,
Laziz -
Pre-Configured Cisco VPN Client install
Im looking at creating a pre-configured install for the 4.8 client. This normally involves editing cab file contents?? I've been unable to locate a 'how 2' guide for this, does anyone have any ideas, has anyone tried this before, can it be done???
Have located this:
http://www.cisco.com/en/US/customer/products/sw/secursw/ps2308/products_configuration_example09186a008022f999.shtml
but im looking to add security credentials (group and PSK) to the install, can i just swap the configured files within the MSI?? -
With a view to packaging and deploying CS4 in Microsoft enterprise environments (ie GPO restricted desktops, mandatory user profiles, non-administrative user base, at or near minimum spec hardware) I was wondering if anyone was aware of any documentation, official or otherwise, for pre-configuration or omission of individual components within the CS4 suite in order to more specifically tailor their operation to user requirements. Eg, such as the way Adobe provide a transform generator/editor for Acrobat in its standalone form.
The instructions for performing silent installs with or without the more major components (such as Dreamweaver, Photoshop etc) work fine, and the Adobe CS4 Deployment Toolkit (aka AdobeUberInstaller) deals with a number of omissions in the base installer such ELUA and updates suppression. However there are various options within the applications themselves I would like to change the defaults for at install time (eg suppress Adobe Bridge from prompting to run at startup, address Acrobat's refusal to run until another element of the suite has been run first etc), patches I would like to slipstream rather than apply retrospectively (currently Air, Indesign, Photoshop), and some elements (such as foreign language components and 64bit support) I would ideally like to omit from the source package altogether to keep the size down - 6GB+ to 500 clients is quite an ordeal!
Web resources such as application deployment forums have allowed me to address some of the above, but I would be very interested in the feedback/experiences of this community. I appreciate what I'm asking is somewhat vague but any crumbs of wisdom all add up...
Many thanks in advance for any suggestions.
BillThe best is to get the versions in which you have developed/tested. These can be found in MAX under Software, if it is possible provide a link to the NI ftp download URL.
Then export the settings in MAX (for tasks/scales) if you use them and provide a simple app that loads these items into MAX.
For RIO I'm not totally sure but I would create 'Getting started' that outlines what settings (IP/DNS etc.) to get the user started.
Ton
Free Code Capture Tool! Version 2.1.3 with comments, web-upload, back-save and snippets!
Nederlandse LabVIEW user groep www.lvug.nl
My LabVIEW Ideas
LabVIEW, programming like it should be! -
How can I install a Designer 6.0 pre-configured repository ?
Hi:
I am trying to install Oracle Designer 6.0 to my client machine (Windows 2000) and server machine (Windows NT 4.0), what I did was:
[1]install Designer 6.0 client side on my client machine.
[2]install Oracle 8i Enterprise Edition (version 8.1.7) on the server machine.
[3]configured SQL*Net Client and NET8 on both client and server, and it works fine.
[4]install pre-configured repository using Oracle Designer 6.0 CD #2 (pre-configured repository),but it always gives me such info:
" You have not installed a local copy of Oracle8 Enterprise Edition, therefore, Oracle Designer and ODD D7O4 Preconfigured Repository can not be installed. Please re-install this product after the local
database has been installed."
It seems strange, I did install 8i Enterprise Edition (I even installed Oracle8 Enterprise Edition) before repository, I should have
a local database.
How should I do next ?Hi Zhu:
Now that you are trying to install Designer, your problem is easy to solve.
I think you should download Oracle Designer 6i Release 4 for Windows from http://otn.oracle.com/software/products/designer/software_index.htm and then do your install again.
The install and the server side setup maybe time consuming, but I am sure you can do it.
You may install Designer 6i Release 4 in the following steps:
(Before do these, uninstall your Designer 6.0 both from your client machine and Windows 2000 server using Oracle Installer)
Step 0: download Oracle Designer 6i Release 4 from OTN to your local directory, say c:\temp and unzip it to c:\temp\Designer6iR4. I will refer this directory as installation media. Make sure that you have equipped your server machine with at least 256MB memory. In my experience, 386MB is better and 512MB is recommended.
Step 1: make sure that one database was created in your installed Oracle 8i. If not, create a database at this step. The parameters of this database should be adjusted according the needs of Designer 6i. You will be told how to do this later.
Step 2: install Designer 6i R4 from the installation media to server machine. Pay attention at this step that you should "select to install both Designer and Repository." It is recommended that Designer should be installed to another new ORACLE_HOME. Don't install it to your Oracle database home. Say, to the ORACLE_HOME "DESDEV".
Some more words need to be said here, I think, about the ORACLE_HOME for Designer. Later if you install Oracle Developer into the same machine as Designer is installed to, both the Oracle Developer and Oracle Designer should be installed into the same ORACLE_HOME. So the name DESDEV stands for "DESigner and DEVeloper are both installed into the same Oracle home named DESDEV". This will be prompted to you just after the installation of Designer was finished.
Step 3: print out "Oracle Repository/Designer Installation Guideh from "Stat->Programs->Oracle Repository 6i Doc - DESDEV". I will refer this material as gManualh from here till the end of our talk.
Step 4: shutdown your database if it is running and then set the parameters to the correct values (required values) according to gCheck the settings in the Oracle initialization parameter fileh in the Manual, Chapter 2 Server-side installation, migration and upgrade.
Step 5: startup the database and then check the parameters. To do this, you need to login to database as user sys and then issue the command gshow parametersh. If all the parameters are correct you may go step 6. You may leave the database running.
Step 6: make sure that the database is running. If not, startup database here. Before proceed to install Designer 6i Server-side, the database should in running status.
Step 7: do the server-sidefs install of Designer 6i (that is, Repository) according to gChapter 2 Server-side installation, migration and upgradeh in Manual. In that part of manual, 17 steps of installation and setup Designer 6i server-side were mentioned. I am sure you can manage that with ease.
Step 8: install Designer 6i client-side into your client machine according to hChapter 1 Client-side installationh in Manual from the installation media.
By the way, I should tell you how much time it takes to accomplish all of these steps IF things were went smoothly: it took about 6 hours for me to have all these steps done. And my machinefs specifications is:
CPU 633MHz
RAM 512MB
Wish you good luck
null -
Unable to edit the MobileXI3BB.jad file for pre-configuration settings
According the Note:1542478 - How to pre-configure connection settings for BusinessObjects XI 3.1 Mobile clients?
We are trying to edit the MobileXI3BB.jad file to avoid the Config seeting from client side.But wonder we are not able to see the below details in our MobileXI3BB.jad:
BOBJ_MOBILE_AUTH_SERVER: <mobile server>
BOBJ_MOBILE_AUTH_PORT: <Port of VAS Service, for example, 11011>
BOBJ_MOBILE_CMS: <cms address>
BOBJ_MOBILE_AUTH_METHOD: <authentication type>
Can any one help us how to solve this?
Edited by: Srikencha on Jun 3, 2011 8:58 AMHi,
you won't see this code,you need to add this code to the MobileXI3BB.jad file
BOBJ_MOBILE_AUTH_SERVER:<mobile server>
BOBJ_MOBILE_AUTH_PORT:<Port of VAS Service, for example, 11011>
BOBJ_MOBILE_CMS:<cms address, for example CMSCOLPAL:6400>
BOBJ_MOBILE_AUTH_METHOD:<authentication type> where <authentication type> could be any one of these values based on your requirements: secEnterprise, secWinAD, secLDAP, secSAPR3. -
Need urgent help in configuring Client to Site IPSec VPN with Hairpinning on Cisco ASA5510 - 8.2(1).
The following is the Layout:
There are two Leased Lines for Internet access - 1.1.1.1 & 2.2.2.2, the latter being the Standard Default route, the former one is for backup.
I have been able to configure Client to Site IPSec VPN
1) With access from Outside to only the Internal Network (172.16.0.0/24) behind the asa
2) With Split tunnel with simultaneous assess to internal LAN and Outside Internet.
But I have not been able to make tradiotional Hairpinng model work in this scenario.
I followed every possible sugestions made in this regard in many Discussion Topics but still no luck. Can someone please help me out here???
Following is the Running-Conf with Normal Client to Site IPSec VPN configured with No internat Access:
LIMITATION: Can't Boot into any other ios image for some unavoidable reason, must use 8.2(1)
running-conf --- Working normal Client to Site VPN without internet access/split tunnel
ASA Version 8.2(1)
hostname ciscoasa
domain-name cisco.campus.com
enable password xxxxxxxxxxxxxx encrypted
passwd xxxxxxxxxxxxxx encrypted
names
interface GigabitEthernet0/0
nameif internet1-outside
security-level 0
ip address 1.1.1.1 255.255.255.240
interface GigabitEthernet0/1
nameif internet2-outside
security-level 0
ip address 2.2.2.2 255.255.255.224
interface GigabitEthernet0/2
nameif dmz-interface
security-level 0
ip address 10.0.1.1 255.255.255.0
interface GigabitEthernet0/3
nameif campus-lan
security-level 0
ip address 172.16.0.1 255.255.0.0
interface Management0/0
nameif CSC-MGMT
security-level 100
ip address 10.0.0.4 255.255.255.0
boot system disk0:/asa821-k8.bin
boot system disk0:/asa843-k8.bin
ftp mode passive
dns server-group DefaultDNS
domain-name cisco.campus.com
same-security-traffic permit inter-interface
same-security-traffic permit intra-interface
object-group network cmps-lan
object-group network csc-ip
object-group network www-inside
object-group network www-outside
object-group service tcp-80
object-group service udp-53
object-group service https
object-group service pop3
object-group service smtp
object-group service tcp80
object-group service http-s
object-group service pop3-110
object-group service smtp25
object-group service udp53
object-group service ssh
object-group service tcp-port
object-group service udp-port
object-group service ftp
object-group service ftp-data
object-group network csc1-ip
object-group service all-tcp-udp
access-list INTERNET1-IN extended permit ip host 1.2.2.2 host 2.2.2.3
access-list CSC-OUT extended permit ip host 10.0.0.5 any
access-list CAMPUS-LAN extended permit tcp 172.16.0.0 255.255.0.0 any eq www
access-list CAMPUS-LAN extended permit tcp 172.16.0.0 255.255.0.0 any eq https
access-list CAMPUS-LAN extended permit tcp 172.16.0.0 255.255.0.0 any eq ssh
access-list CAMPUS-LAN extended permit tcp 172.16.0.0 255.255.0.0 any eq ftp
access-list CAMPUS-LAN extended permit udp 172.16.0.0 255.255.0.0 any eq domain
access-list CAMPUS-LAN extended permit tcp 172.16.0.0 255.255.0.0 any eq smtp
access-list CAMPUS-LAN extended permit tcp 172.16.0.0 255.255.0.0 any eq pop3
access-list CAMPUS-LAN extended permit ip any any
access-list csc-acl remark scan web and mail traffic
access-list csc-acl extended permit tcp any any eq smtp
access-list csc-acl extended permit tcp any any eq pop3
access-list csc-acl remark scan web and mail traffic
access-list INTERNET2-IN extended permit tcp any host 1.1.1.2 eq 993
access-list INTERNET2-IN extended permit tcp any host 1.1.1.2 eq imap4
access-list INTERNET2-IN extended permit tcp any host 1.1.1.2 eq 465
access-list INTERNET2-IN extended permit tcp any host 1.1.1.2 eq www
access-list INTERNET2-IN extended permit tcp any host 1.1.1.2 eq https
access-list INTERNET2-IN extended permit tcp any host 1.1.1.2 eq smtp
access-list INTERNET2-IN extended permit tcp any host 1.1.1.2 eq pop3
access-list INTERNET2-IN extended permit ip any host 1.1.1.2
access-list nonat extended permit ip 172.16.0.0 255.255.0.0 172.16.0.0 255.255.0.0
access-list DNS-inspect extended permit tcp any any eq domain
access-list DNS-inspect extended permit udp any any eq domain
access-list capin extended permit ip host 172.16.1.234 any
access-list capin extended permit ip host 172.16.1.52 any
access-list capin extended permit ip any host 172.16.1.52
access-list capin extended permit ip host 172.16.0.82 host 172.16.0.61
access-list capin extended permit ip host 172.16.0.61 host 172.16.0.82
access-list capout extended permit ip host 2.2.2.2 any
access-list capout extended permit ip any host 2.2.2.2
access-list campus-lan_nat0_outbound extended permit ip 172.16.0.0 255.255.0.0 192.168.150.0 255.255.255.0
pager lines 24
logging enable
logging buffered debugging
logging asdm informational
mtu internet1-outside 1500
mtu internet2-outside 1500
mtu dmz-interface 1500
mtu campus-lan 1500
mtu CSC-MGMT 1500
ip local pool vpnpool1 192.168.150.2-192.168.150.250 mask 255.255.255.0
ip verify reverse-path interface internet2-outside
ip verify reverse-path interface dmz-interface
ip verify reverse-path interface campus-lan
ip verify reverse-path interface CSC-MGMT
no failover
icmp unreachable rate-limit 1 burst-size 1
asdm image disk0:/asdm-621.bin
no asdm history enable
arp timeout 14400
global (internet1-outside) 1 interface
global (internet2-outside) 1 interface
nat (campus-lan) 0 access-list campus-lan_nat0_outbound
nat (campus-lan) 1 0.0.0.0 0.0.0.0
nat (CSC-MGMT) 1 10.0.0.5 255.255.255.255
static (CSC-MGMT,internet2-outside) 2.2.2.3 10.0.0.5 netmask 255.255.255.255
access-group INTERNET2-IN in interface internet1-outside
access-group INTERNET1-IN in interface internet2-outside
access-group CAMPUS-LAN in interface campus-lan
access-group CSC-OUT in interface CSC-MGMT
route internet2-outside 0.0.0.0 0.0.0.0 2.2.2.5 1
route internet1-outside 0.0.0.0 0.0.0.0 1.1.1.5 2
timeout xlate 3:00:00
timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02
timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00
timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00
timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute
timeout tcp-proxy-reassembly 0:01:00
dynamic-access-policy-record DfltAccessPolicy
aaa authentication ssh console LOCAL
aaa authentication enable console LOCAL
http server enable
http 10.0.0.2 255.255.255.255 CSC-MGMT
http 10.0.0.8 255.255.255.255 CSC-MGMT
http 1.2.2.2 255.255.255.255 internet2-outside
http 1.2.2.2 255.255.255.255 internet1-outside
no snmp-server location
no snmp-server contact
snmp-server enable traps snmp authentication linkup linkdown coldstart
crypto ipsec transform-set ESP-3DES-SHA esp-3des esp-sha-hmac
crypto ipsec transform-set ESP-AES-256-MD5 esp-aes-256 esp-md5-hmac
crypto ipsec transform-set ESP-DES-SHA esp-des esp-sha-hmac
crypto ipsec transform-set ESP-DES-MD5 esp-des esp-md5-hmac
crypto ipsec transform-set ESP-AES-192-MD5 esp-aes-192 esp-md5-hmac
crypto ipsec transform-set ESP-3DES-MD5 esp-3des esp-md5-hmac
crypto ipsec transform-set ESP-AES-256-SHA esp-aes-256 esp-sha-hmac
crypto ipsec transform-set ESP-AES-128-SHA esp-aes esp-sha-hmac
crypto ipsec transform-set ESP-AES-192-SHA esp-aes-192 esp-sha-hmac
crypto ipsec transform-set ESP-AES-128-MD5 esp-aes esp-md5-hmac
crypto ipsec security-association lifetime seconds 28800
crypto ipsec security-association lifetime kilobytes 4608000
crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set pfs group5
crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set transform-set ESP-AES-128-SHA ESP-AES-128-MD5 ESP-AES-192-SHA ESP-AES-192-MD5 ESP-AES-256-SHA ESP-AES-256-MD5 ESP-3DES-SHA ESP-3DES-MD5 ESP-DES-SHA ESP-DES-MD5
crypto map internet2-outside_map 65535 ipsec-isakmp dynamic SYSTEM_DEFAULT_CRYPTO_MAP
crypto map internet2-outside_map interface internet2-outside
crypto ca trustpoint _SmartCallHome_ServerCA
crl configure
crypto ca certificate chain _SmartCallHome_ServerCA
certificate ca xyzxyzxyzyxzxyzxyzxyzxxyzyxzyxzy
a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as
a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as
a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as
a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as
a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as
a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as
a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as
a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as
a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as
a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as
a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as
a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as
a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as
a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as a67a897as
a67a897as a67a897as a67a897as a67a897as a67a897as
quit
crypto isakmp enable internet2-outside
crypto isakmp policy 10
authentication pre-share
encryption aes
hash md5
group 2
lifetime 86400
telnet 10.0.0.2 255.255.255.255 CSC-MGMT
telnet 10.0.0.8 255.255.255.255 CSC-MGMT
telnet timeout 5
ssh 1.2.3.3 255.255.255.240 internet1-outside
ssh 1.2.2.2 255.255.255.255 internet1-outside
ssh 1.2.2.2 255.255.255.255 internet2-outside
ssh timeout 5
console timeout 0
threat-detection basic-threat
threat-detection statistics access-list
no threat-detection statistics tcp-intercept
webvpn
group-policy VPN_TG_1 internal
group-policy VPN_TG_1 attributes
vpn-tunnel-protocol IPSec
username ssochelpdesk password xxxxxxxxxxxxxx encrypted privilege 15
username administrator password xxxxxxxxxxxxxx encrypted privilege 15
username vpnuser1 password xxxxxxxxxxxxxx encrypted privilege 0
username vpnuser1 attributes
vpn-group-policy VPN_TG_1
tunnel-group VPN_TG_1 type remote-access
tunnel-group VPN_TG_1 general-attributes
address-pool vpnpool1
default-group-policy VPN_TG_1
tunnel-group VPN_TG_1 ipsec-attributes
pre-shared-key *
class-map cmap-DNS
match access-list DNS-inspect
class-map csc-class
match access-list csc-acl
policy-map type inspect dns preset_dns_map
parameters
message-length maximum 512
policy-map global_policy
class csc-class
csc fail-open
class cmap-DNS
inspect dns preset_dns_map
service-policy global_policy global
prompt hostname context
Cryptochecksum: y0y0y0y0y0y0y0y0y0y0y0y0y0y
: end
Neither Adding dynamic NAT for 192.168.150.0/24 on outside interface works, nor does the sysopt connection permit-vpn works
Please tell what needs to be done here, to hairpin all the traffic to internet comming from VPN Clients.
That is I need clients conected via VPN tunnel, when connected to internet, should have their IP's NAT'ted against the internet2-outside interface address 2.2.2.2, as it happens for the Campus Clients (172.16.0.0/16)
I'm not much conversant with everything involved in here, therefore please be elaborative in your replies. Please let me know if you need any more information regarding this setup to answer my query.
Thanks & Regards
maxsHi Jouni,
Thanks again for your help, got it working. Actually the problem was ASA needed some time after configuring to work properly ( ?????? ). I configured and tested several times within a short period, during the day and was not working initially, GUI packet tracer was showing some problems (IPSEC Spoof detected) and also there was this left out dns. Its working fine now.
But my problem is not solved fully here.
Does hairpinning model allow access to the campus LAN behind ASA also?. Coz the setup is working now as i needed, and I can access Internet with the NAT'ed ip address (outside-interface). So far so good. But now I cannot access the Campus LAN behind the asa.
Here the packet tracer output for the traffic:
packet-tracer output
asa# packet-tracer input internet2-outside tcp 192.168.150.1 56482 172.16.1.249 22
Phase: 1
Type: ACCESS-LIST
Subtype:
Result: ALLOW
Config:
Implicit Rule
Additional Information:
MAC Access list
Phase: 2
Type: FLOW-LOOKUP
Subtype:
Result: ALLOW
Config:
Additional Information:
Found no matching flow, creating a new flow
Phase: 3
Type: ROUTE-LOOKUP
Subtype: input
Result: ALLOW
Config:
Additional Information:
in 172.16.0.0 255.255.0.0 campus-lan
Phase: 4
Type: ROUTE-LOOKUP
Subtype: input
Result: ALLOW
Config:
Additional Information:
in 192.168.150.1 255.255.255.255 internet2-outside
Phase: 5
Type: ACCESS-LIST
Subtype: log
Result: ALLOW
Config:
access-group internnet1-in in interface internet2-outside
access-list internnet1-in extended permit ip 192.168.150.0 255.255.255.0 any
Additional Information:
Phase: 6
Type: IP-OPTIONS
Subtype:
Result: ALLOW
Config:
Additional Information:
Phase: 7
Type: CP-PUNT
Subtype:
Result: ALLOW
Config:
Additional Information:
Phase: 8
Type: VPN
Subtype: ipsec-tunnel-flow
Result: ALLOW
Config:
Additional Information:
Phase: 9
Type: NAT-EXEMPT
Subtype: rpf-check
Result: ALLOW
Config:
Additional Information:
Phase: 10
Type: NAT
Subtype:
Result: DROP
Config:
nat (internet2-outside) 1 192.168.150.0 255.255.255.0
match ip internet2-outside 192.168.150.0 255.255.255.0 campus-lan any
dynamic translation to pool 1 (No matching global)
translate_hits = 14, untranslate_hits = 0
Additional Information:
Result:
input-interface: internet2-outside
input-status: up
input-line-status: up
output-interface: internet2-outside
output-status: up
output-line-status: up
Action: drop
Drop-reason: (acl-drop) Flow is denied by configured rule
The problem here as you can see is the Rule for dynamic nat that I added to make hairpin work at first place
dynamic nat
asa(config)#nat (internet2-outside) 1 192.168.150.0 255.255.255.0
Is it possible to access both
1)LAN behind ASA
2)INTERNET via HAIRPINNING
simultaneously via a single tunnel-group?
If it can be done, how do I do it. What changes do I need to make here to get simultaneous access to my LAN also?
Thanks & Regards
Abhijit -
[Desktop] Pre-configured installs
Any suggestions on how to create pre-configured installers of the same base app? Here's an example of what I mean:
App: This base app connects to a configurable server domain. You could install and use this app just fine.
App for ClientX - This app should connect to serverX, and I want to pre-configure it to do so. It may also have custom configured branding for ClientX.
App for ClientY - This app should connect to serverY, etc.
So I want to be able to give ClientX an installer (or install link) that installs the App pre-configured to connect to their serverX, and I want to give ClientY an installer that connects to their serverY, but I want both to be the same application, built from the same codebase, with the same appID and certificate, and receive the same updates, etc.
I've considered using compile constants to create different AIR app versions with populated strings, which I think would work though a bit clunky, but would result in different versions of the app, when what I really want is to have the SAME version configured differently.
What I am currently doing is making a config file that can be shared, so the main app is installed then the client opens the config file with the app (file association makes this relatively easy, but still very manual feeling.) I would essentially like to automate this, so the end user only needs to run the installer.
The next step would be automating this process, so that when ClientZ purchases the app it uses ClientZ's information to provide an installer configured for ClientZ without manual human intervention. You know, for when my app inevitably gets famous and makes me rich.
Any suggestions?
Thanks all!
-AaronWell I'm not quite sure this fits your scenario but maybe (assuming your clients install your app from a website)...
You can use the swf (badge) method of installing AIR apps through the browser: http://help.adobe.com/en_US/AIR/1.5/devappsflex/WS5b3ccc516d4fbf351e63e3d118666ade46-7e15. html
This would give you the ability to pass in arguments into the install process. http://help.adobe.com/en_US/AIR/1.5/devappsflex/WS5b3ccc516d4fbf351e63e3d118676a5d46-8000. html#WS5b3ccc516d4fbf351e63e3d118666ade46-7e19
Basically you set your air app to "<allowBrowserInvocation>true</allowBrowserInvocation>" and add a listener for the BrowserInvokeEvent(not InvokeEvent)
Do what you want with the parameters (maybe save to a flash shared object) to remember who it was.
Then for distribution, provide a client only page, that passes flash vars into the badge swf, which passes them to the app for install.
I recently used this method in this way. I'm building a video conference app that can send invitations via a URL (videoapp.com?id=abcdefghijklnop).. On that page I have the badge (swf) that recieves that invitation through flash vars. The badge does the install of the AIR app and passes the invitation once it runs.
Note: I had to modify the default badge.swf to include my additional flash vars.
Other than this, I dont know of any way to add arguments to just a regular passed around .air file. -
Changing the configurations of pre-configured BOM on a Sales Order
Hello experts,
Our client's business is similar to OEC Computers. However, I am not able to map the following business scenario:
They sell servers to customers however, it is unusual that the client buys the pre-configured model as provided by the principal. therefore, as per the specific requirements of customer they change the configuration of the server.
For e.g. the pre-configured model has 2GB of RAM however, the customer wants to replace the the 2GB RAM with a 4GB RAM.
The replacement is important to track as Inventory will have an affect on it.
Please advise the possible solutions.
RegardsHi Adeel,
At the time of Production order you chane the 4GB RAM Instead of 2GB.
Traking of the Replacement item you use some Additional query report to be use.
*Close the thread if issue solved.
Regards
Jambulingam.P -
Failsafe method to create NetInstall image of pre-configured MacOSX
Hi All
I am trying to create NetInstall image of a pre-configured MacOSX install(mid-2011 mac mini) in this case. Here is my workflow:
1. Setup base OSX Mountain lion
2. Do all updates and configure System Preferences and Finder Preferences as desired
3. Install all desired software to be packaged with the system
4. Boot into target mode and then use a second mac mini running Casper Composer to create a .dmg of the OS.
5. Copy the finished .dmg to ML Server
6. Try to use System Image utility to create a NetInstall image that other mac minis can then use as base install
I havent had any success so far creating a valid .nbi folder I can use(and that works) for re-deployment unless I use Casper Admin and Casper Imaging to manage this. The reason I am trying to get away from using them is that the differnece between buying a $70 Casper Composer(or using the free Disk Utility) and buying the full Casper Suite is considerable. Also, my understanding of System Image Utility is that:
1. It should be possible to build a customised image of OSX from base with packages and coonfiguration added but it doesnt seem to work
2. NetInstall is the only viable option for what we want to do as NetBoot presumes you will boot off the image each time you start up(which is not what we want - we want the ability to clone systems and from bare metal if necessary) and NetRestore flatly doesnt seem to work from .dmgs.
Here is what I have found:
a) I can create NetInstall images from a mounted downloaded Apple-provided OSX Installer that work but as soon as I put customisations in them, the customisations fail.
b) By default NetInstall is greyed out when you mount the dmg and use it as a source in System image utility. Suggestions online are to change the Source to use a New variable and then point it back at the same location. NetInstall is then available. If you try to create a .nbi from this, you get an error saying that there isnt enough space on the target drive - the uncompressed dmg is about 7GB max and there is a spare 60-70Gb free on the drive I am trying to create the image on.
c) I have tried manually creating the .nbi folder but the instructions I found at http://support.apple.com/kb/TA21133 for doing this are outdated as they apply to ppc firmware and although I suspect the technique will still work, I cant work out which elements of the i386 folder I need to retain/move. Copying the i386 folder from another working Netinstall folder doesnt help.
d) I found some links suggesting that NetInstall only worked when the OSX versions were identical so I tried to run the System Image Utility on the Mac where the dmg was created. Here I get two errors:
i) If I just run the NetInstall using the default source, it errors saying an unknown error has occurred and get the following in the log:
Workflow Started (2013-08-21 11:39:45 +0100)
OS X 10.8.4 (12E55), System Image Utility 10.8.3 (624)
Starting action: Define Image Source (1.4)
Finished running action: Define Image Source
Starting action: Create Image (1.7.2)
Starting image creation process...
Create NetInstall Image
Failed to validate the install type!!! Error: The source volume is not an OS X 10.8 volume.
An unknown error has occurred.
An unknown error has occurred.
Image creation process finished...
Stopping image creation.
Image creation failed.
ii) If I change the source to the .dmg file and unmount it quickly to avoid any file locks, the installer goes further and seems to almost finish but then gives the following error(just appending the final bits):
+ echo 'Detaching disk image'
Detaching disk image
+ '[' DEBUG == DEBUG ']'
+ /usr/sbin/lsof +fg /tmp/mnt.UJaQAiTy
COMMAND PID USER FD TYPE FILE-FLAG DEVICE SIZE/OFF NODE NAME
mds 36 root 24r DIR R,EVO 1,5 306 2 /private/tmp/mnt.UJaQAiTy
+ '[' '/dev/disk1s2 on /private/tmp/mnt.UJaQAiTy (hfs, local, nodev, nosuid, nobrowse)' '!=' '' ']'
+ /usr/bin/hdiutil detach /tmp/mnt.UJaQAiTy
"disk1" unmounted.
"disk1" ejected.
+ /bin/rmdir /tmp/mnt.UJaQAiTy
+ return 0
+ '[' '' '!=' '' ']'
+ /bin/rm -r '/Users/admin/Documents/NetBoot of Untitled 1.nbi/i386'
+ /bin/rm '/Users/admin/Documents/NetBoot of Untitled 1.nbi/NetInstall.dmg'
+ /bin/rm '/Users/admin/Documents/NetBoot of Untitled 1.nbi/System.dmg'
+ /bin/rmdir '/Users/admin/Documents/NetBoot of Untitled 1.nbi'
+ exit 1
Script is done.
Bridge exited with status 256
Failed to create image from restore source.
An unknown error has occurred.
An unknown error has occurred.
Image creation process finished...
Stopping image creation.
Image creation failed.
Anyone have any idea how I can get around these issues?First, let's define the various image types...
NetInstall:
A network based image which, when booted into, presents the user with a Mac OS installer. Functionality is effectively the same as running the Install Mac OS X application locally on a machine.
NetRestore:
A network based image which, when booted into, uses Apple Software Restore to replace the contents of a volume with a previously imaged volume.
NetBoot:
A network based image which, when booted into, acts just like a locally booted hard drive, except no changes are written to the disk. Each time the client boots into the NetBoot volume, the system is "reset" to the original state.
As defined by your workflow, you are trying to create NetRestore images.
As piperspace has noted, you need to start with the latest OS Install application. Starting with an older OS which has been updated to the latest will not work.
Creating NetRestore images from other disk images doesn't work because you need to have the Recovery Partition available. As both chicster and piperspace have noted, the way to do this is to image the volume directly.
Many preferences are "ByHost", which means that they are keyed to the UUID of the machine they are set on. To make those settings transfer to the new machines, you may need to use the "Apply System Configuration Settings" action and check the "Change ByHost preferences to match..." option. -
hi all,
i am doing pre configuration of abap client proxies by refering this blog
/people/vijaya.kumari2/blog/2006/01/26/how-do-you-activate-abap-proxies
here i am unable to create HTTP connection in the business system.
i got ICM_HTTP_CONNECTION_FAILED error
regards
sandeep.ABAP Proxy:
How to enable the ABAP Proxy between the ECC and SAP XI.
The Errors I have divided into 2 parts
1. If my proxy is looking into the Exchange Profile on SLD.
2. If the Proxy is looking into the SPROXSET table
If my proxy is looking into the Exchange Profile on SLD:
Description: Proxy are the outside in communication between the SAP R/3 and SAP XI, proxy cab be used when my SAP WebAS is 6.20, it is an adapter less communication, because the the Application system has the WebAS 6.20 has an internal engine which will convert the message into XML and then this XML message is sent to XI using the HTTP protocol.
This blog explains how to create the ABAP proxy:
/people/vijaya.kumari2/blog/2006/01/26/how-do-you-activate-abap-proxies
What I am trying to focus is how the connection is getting established and what all happens when you run the SPROXY transaction code on Application System.
We use SPROXY to read the Interfaces from Integration Repository in application system, then we are creating the proxy either client or server.
When we run SPROXY the application system will try to find the the IR to get the interfaces on which the PROXY can be generated.
It gets the information about the IR in Exchange Profile which is present in the SLD of XI.
When SPROXY is run on the application system, the following program will be running.
Report: SPROX_CHECK_IFR_ADDRESS check if the connection to the exchange profile is working and the parameters are set.
Report: SPROX_CHECK_HTTP_COMMUNICATION check if the HTTP communication of the system is running.
Report: SPROX_CHECK_IFR_RESPONSE checks if the connection to the Integreation builder is running correclty
Report: SPROX_CHECK_IFR_CONNECTION checks if the data coming from the Integreation Builder can be correclty interpreted.
If you get any error while running the reports here are the descriptions:
Firstly check the SLDCHECK is working:
Since the applications communicate with the SLD to get their own business system and integration server information the connection to the SLD need to be running from all business systems. Use the transaction SLDCHECK to check whether this is the case. If SLDCHECK is throwing the error then cross check the SLDAPICUST transaction code whether is pointing to the correct SLD.
Report: SPROX_CHECK_IFR_CONNECTION checks if the data coming from the Integreation Builder can be correclty interpreted. You will get the error "Integreation Builder data cannot be understood when you run the report SPROX_CHECK_IFR_CONNECTION.
Make sure the following steps are done to fix this:
Role of the Business system: Application System
Corresponding Integreation server: dest:
<SM59 Http connection created>
Also check the following RFC are working fine.
LCRSAPAPI
SAPSLDAPI
Also in RZ70 TC you should point to the SLD.
This 2 RFC are Registered Programs, if this RFC is working then your Application system can ping to the SLD where the exchange Profile is present.
The Report SPROX_CHECK_HTTP_COMMUNICATION will check whether the application system all the HTTP services activated or not. To activate all HTTP services go to SICF and activate it.
Else you will get error ICM_HTTP_CONNECTION_FAILED.
To check the HTTP service is active or not check SMICM click GOTOService
Create the HTTP connection from SAP R/3 to XI.
SM59-- Create RFC destination of type H when all the HTTP services are active then the connection will work fine.
If the RFC destination of type H is giving error ICM_HTTP_CONNECTION_FAILED and all the HTTP services are active then
Goto the SICF and make sure all the Proxy are disabled.
So once these things are maintained then the ABAP Proxy will work fine.
regards
Nisar -
How Can I pre-configure the proxy settings in Acrobat 8?
We use a proxy server to authenticate users and it's causing a problem for our e-licensing. Is there a place to pre-configure the proxy settings / login and password for the e-licensing to happen quietly so our users don't have to see it?
Have you searched the forum for proxy? I do not have an answer, but this has been discussed before. I am not sure there is an answer in the discussions, but it is worth a try. There is likely a knowledgebase article on the issue also. Good luck.
-
T61p - Please wait while Windows configures Client Security Password - Manager
My T61p system is fully updated, however I continue to get "Please with while windows configures Client Security Password - Manager." and then the computer trys to install
css_manager_vista_tpm.exe
over and over again.
What is the problem here and how can I solve?
How can I contact Lenovo-Thinkpad to assist?
The problem has reoccured even after I did a system restore to an earlier date.
It seems to initiate when I first boot up and then open up "Pictures"
Please help.
ThanksWell, I take everything back. After removing all password entries and re-installing/rebooting, it worked for a while. But now it is doing it all over again. I tried to call techincal support, but they then said I would have to pay for software support and they only support hardware, and to re-install the OS. Great, jeez, I couldn't have tried that myself, and that is so simple and takes no time at all (detecing sarcasm yet?)
I do a lot of work for large corporations that are watching the IBM=>Lenovo takeover very closely to see if they are going to drop Thinkpads altogether and go with another laptop vendor. This type of weak support does not bode well. The person I was on the phone with was rude, hard to understand, and even told me there was no place to escalate the call to.
There is no replacement for customer support. It is sad to see no Lenovo involvement in this forum, and don't make the mistake of thinking this is an isolated problem at this time. It is growing.
Though Thinkpads are great Laptops, Toshiba used to have the market, but their support or should I say lack of it led to their downfall and position of leadership loss.
It will be no different if Lenovo continues to act like a machine churner.
Maybe you are looking for
-
HT2497 How can I connect my MacBook Pro using my personal cellular 'hotspot'?
I am a brandnew user of MacBook Pro (iOS 10.8 Mountain Lion) and am clueless!! I've never used anything but Windows OS's. I am attempting to connect to the internet using my cellular phone's 'hotspot'....no connection. I then tried to connect via
-
CS5 Production Premium causing problems with CS4 Production Premium
I have been using CS5 Production Premium alongside CS4 Production Premium for a while now. After Effects, PhotoShop & Illustrator work alright together (both CS4 & CS5 versions). My job actually necessitates me keeping both versions on my machine.
-
How to use Runtime warnings like log warning , stop at warning ,dump on wa
Hi friends, i am trying to use check boxes in debugging Runtime warnings like log warning , stop at warning ,dump on warning. these are not working . plz suggest me. balaji.
-
Pagemaker installation huge problem... Really need help
Good afternoon I´m here to find an solution to a problem that´s making me mad! I still have to work with adobe pagemaker (I already starter do work with indesign though) cause i have old works of old clients that i have to open with. But a few days
-
I have a Mac install on a HDD and I want to make a clone of it to another HDD. I have read about Carbon Copy Cloner and what not. My question is, if I use Carbon Copy Cloner or if I use the Disc Utility in Mac OS X, will the clone make an EXACT, boot