Preventing Eportal HTTP Plugin sessions going to Central INstance.

Dear all,
We are running with BW 3.5 with 4 applications including Central Instance, an eportal 6.0, I have most of my BW reports & iviews(querry,workbooks etc) defined in BW that opens thru portal & BEX.I have for that reason defined group in Eportal which corresponds to the same group name in BW (trx:SMLG) however this group is linkned only with BW application servers as our requirement is that we need login requests & HTTP sessions coming thru any external system to go only in application & not CI, this is happening perforctly but when checked with portal for some BW reports it sometimes goes to other applications but sometimes comes in BW CI as well.
How to prevent them as the group created in not given CI entry.Also this case is happening only for internet users coming tru firewall (they all are coming thru a single terminal as seen in sm04) internal users are going thru applications only.
Please let me know
Regards
SM

Hi
Can you make sure you are using super admin user with full access.
Also check any firewall setting restrctions. Make sure no other users / other sessions opened.
try to re-start the process and make sure all the services running.
Below tag gives you some help.
http://wiki.sdn.sap.com/wiki/display/JSTSG/%28JSTSG%29%28Web%29Problems-P94
Regards
Nagaraju

Similar Messages

  • Too many http plugin sessions seen in SM04

    Hi,
    There are too many http plugin sessions created in SM04 in production system for a custom transaction.
    The client claims that such multiple sessions are there only for this particular transaction so there is some problem in abap code of this z-transaction.
    Could you please help, what abap syntax or logic might lead to creation of such multiple http plugin sessions for the transaction.
    The only known reason is that incomplete log off by user (closing the browser w/o loggin off etc) which created sombie sessions - but this is not applicable here because there are about 30 sessions created and user certainly does not log off so many times. Other activity by user is browser refresh etc but that canot be applied to only this particular transaction.
    any help is appreciated.
    thank you
    B

    B
    Did you find solution to your issue?
    We are having a same problem but SAP asked us to recreate it. It is completely random and happens very rarely. If I would know how to recreate it I would probably solve it myself
    Regards
    Michael

  • BGP4 Session Goes Down receiving FULL Routers from providers

    BGP4 Session Goes Down receiving FULL Routers from providers
    CONF
    router bgp 22999
    no synchronization
    bgp log-neighbor-changes
    bgp maxas-limit 254
    network 196.12.173.0
    aggregate-address 196.12.173.0 255.255.255.0 summary-only
    neighbor 64.247.171.17 remote-as 11992
    neighbor 64.247.171.17 version 4
    neighbor 64.247.171.17 soft-reconfiguration inbound
    neighbor 64.247.171.17 distribute-list ramallo_in in
    neighbor 64.247.171.17 distribute-list ramallo_out out
    neighbor 196.12.168.202 remote-as 11367
    neighbor 196.12.168.202 ebgp-multihop 2
    neighbor 196.12.168.202 version 4
    neighbor 196.12.168.202 next-hop-self
    neighbor 196.12.168.202 soft-reconfiguration inbound
    neighbor 196.12.168.202 distribute-list ramallo_out out
    SHOW VERSION
    Router# show ver
    Cisco IOS Software, C2900 Software (C2900-UNIVERSALK9-M), Version 15.0(1)M3, REL
    EASE SOFTWARE (fc2)
    Technical Support: http://www.cisco.com/techsupport
    Copyright (c) 1986-2010 by Cisco Systems, Inc.
    Compiled Sun 18-Jul-10 03:32 by prod_rel_team
    ROM: System Bootstrap, Version 15.0(1r)M9, RELEASE SOFTWARE (fc1)
    Router uptime is 1 week, 10 hours, 11 minutes
    System returned to ROM by power-on
    System image file is "flash0:c2900-universalk9-mz.SPA.150-1.M3.bin"
    Last reload type: Normal Reload
    This product contains cryptographic features and is subject to United
    States and local country laws governing import, export, transfer and
    use. Delivery of Cisco cryptographic products does not imply
    third-party authority to import, export, distribute or use encryption.
    Importers, exporters, distributors and users are responsible for
    compliance with U.S. and local country laws. By using this product you
    agree to comply with applicable laws and regulations. If you are unable
    to comply with U.S. and local laws, return this product immediately.
    A summary of U.S. laws governing Cisco cryptographic products may be found at:
    http://www.cisco.com/wwl/export/crypto/tool/stqrg.html
    If you require further assistance please contact us by sending email to
    [email protected].
    Cisco CISCO2911/K9 (revision 1.0) with 483328K/40960K bytes of memory.
    Processor board ID FTX1445A1W4
    3 Gigabit Ethernet interfaces
    2 Serial interfaces
    DRAM configuration is 64 bits wide with parity enabled.
    255K bytes of non-volatile configuration memory.
    250880K bytes of ATA System CompactFlash 0 (Read/Write)
    SHOW LOG
    *Sep 21 21:58:09.107: %BGP-3-NOTIFICATION: sent to neighbor 196.12.168.202 3/1 (
    update malformed) 0 bytes
    *Sep 21 21:58:09.107: %BGP-4-MSGDUMP: unsupported or mal-formatted message recei
    ved from 196.12.168.202:
    FFFF FFFF FFFF FFFF FFFF FFFF FFFF FFFF 00BB 0200 0000 2440 0101 0040 0216 0205
    0000 2C67 0000 392E 0000 329C 0000 4BE5 0000 6D21 4003 04C4 0CA8 CA18 BE61 8B18
    BE61 9818 BE61 9118 BE61 8F18 BE61 8318 BE61 9F18 BE61 9718 BE61 9618 BE61 9918
    BE61 9E18 BE61 9C18 BE61 9B18 BE61 9D18 BE61 8C18 BE61 8118 BE61 9318 BE61 8E18
    BE61 9418 BE61 9518 BE61 9A18 BE61 8218 BE61 8D18 BE61 9218 BE61 8918 BE61 8618
    BE61 8518 BE61 8818 BE61 8A18 BE61 8718 BE61 8418 BE61 8018 BE61 90
    *Sep 21 21:58:09.107: %BGP-4-BGP_OUT_OF_MEMORY: BGP resetting because of memory
    exhaustion.
    *Sep 21 21:58:19.895: %BGP-5-ADJCHANGE: neighbor 64.247.171.17 Down No memory
    *Sep 21 21:58:19.895: %BGP_SESSION-5-ADJCHANGE: neighbor 64.247.171.17 IPv4 Unic
    ast topology base removed from session  No memory
    *Sep 21 21:58:19.895: %BGP_SESSION-5-ADJCHANGE: neighbor 196.12.168.202 IPv4 Uni
    cast topology base removed from session  BGP Notification sent
    *Sep 21 21:58:28.707: %BGP-5-ADJCHANGE: neighbor 64.247.171.17 Up
    *Sep 21 21:58:31.267: %BGP-5-ADJCHANGE: neighbor 196.12.168.202 Up
    *Sep 21 21:58:35.607: %SYS-5-CONFIG_I: Configured from console by vty0 (196.12.1
    73.25)
    *Sep 21 22:02:35.387: %SYS-2-MALLOCFAIL: Memory allocation of 65536 bytes failed
    from 0x2342E9A8, alignment 0
    Pool: Processor  Free: 125144  Cause: Memory fragmentation
    Alternate Pool: None  Free: 0  Cause: No Alternate pool
    -Process= "BGP Router", ipl= 0, pid= 239,  -Traceback= 0x2340604Cz 0x23423490z
    0x21AF2D38z 0x21AA5C80z 0x21AA5FB0z 0x21B63554z 0x21B63E58z 0x21AC7844z 0x21AC7D
    04z 0x21AC83A8z
    *Sep 21 22:02:35.387: %BGP-5-ADJCHANGE: neighbor 196.12.168.202 Down BGP Notific
    ation sent
    *Sep 21 22:02:35.387: %BGP-3-NOTIFICATION: sent to neighbor 196.12.168.202 3/1 (
    update malformed) 0 bytes
    *Sep 21 22:02:35.387: %BGP-4-MSGDUMP: unsupported or mal-formatted message recei
    ved from 196.12.168.202:
    FFFF FFFF FFFF FFFF FFFF FFFF FFFF FFFF 0061 0200 0000 3240 0101 0040 0216 0205
    0000 2C67 0000 392E 0000 329C 0000 6D52 0000 1B89 4003 04C4 0CA8 CA40 0600 C007
    0800 001B 89C8 3BC4 C618 C83D 1018 C83D 1A18 C83B 3C18 C829 D618 BA00 D417 BA00
    D0
    *Sep 21 22:02:35.387: %BGP-4-BGP_OUT_OF_MEMORY: BGP resetting because of memory
    exhaustion.
    *Sep 21 22:02:46.379: %BGP-5-ADJCHANGE: neighbor 64.247.171.17 Down No memory
    *Sep 21 22:02:46.379: %BGP_SESSION-5-ADJCHANGE: neighbor 64.247.171.17 IPv4 Unic
    ast topology base removed from session  No memory
    *Sep 21 22:02:46.379: %BGP_SESSION-5-ADJCHANGE: neighbor 196.12.168.202 IPv4 Uni
    cast topology base removed from session  BGP Notification sent
    *Sep 21 22:03:00.319: %BGP-5-ADJCHANGE: neighbor 196.12.168.202 Up
    *Sep 21 22:03:01.347: %BGP-5-ADJCHANGE: neighbor 64.247.171.17 Up
    Router#
    Any ideas?

    I have  CISCO ASR 1002-X with 4 GB Memory. i have the same problem
    BGP Session goes down.
    here is the log
    *Feb 25 06:03:06.571: %BGP-4-BGP_OUT_OF_MEMORY: BGP resetting because of memory exhaustion.
    *Feb 25 06:03:07.968: %COMMON_FIB-4-DISABLING: IPv4 CEF is being disabled due to a fatal error.
    *Feb 25 06:03:10.107: %BGP-5-ADJCHANGE: neighbor X.X.X.X Down No memory
    *Feb 25 06:03:10.107: %BGP_SESSION-5-ADJCHANGE: neighbor X.X.X.X IPv4 Unicast topology base removed from session  No memory
    *Feb 25 06:03:10.107: %BGP-5-ADJCHANGE: neighbor X.X.X.X Down No memory
    *Feb 25 06:03:10.107: %BGP_SESSION-5-ADJCHANGE: neighbor X.X.X.X IPv4 Unicast topology base removed from session  No memory
    *Feb 25 06:03:10.107: %BGP-5-ADJCHANGE: neighbor X.X.X.X Down No memory
    *Feb 25 06:03:10.107: %BGP_SESSION-5-ADJCHANGE: neighbor X.X.X.X IPv4 Unicast topology base removed from session  No memory
    *Feb 25 06:04:22.732: %FIB-2-FIBDOWN: CEF has been disabled due to a low memory condition. It can be re-enabled by configuring "ip cef [distributed]"

  • Setting up the Apache HTTP Plugin for several BEA Servers

    Hey together,
    i would like to setup the apache http plugin for several bea-servers.
    I am running apache 1.x on my hp-ux system. There are 2 bea-server-domains on this box and both should be proxied by the plugin simultaneously.
    As far as i know it isn't possible to run 2 or more instances of the apache webserver. I heard of virtualhosts, maybe i should try this one out.
    Somebody knows how to deal with this problem or does any1 know if virtualhosts could cope with my needs?
    Thanks in advance

    Ok here i am again and i'm stuck. Here my wishes again:
    there are 2 weblogic-instances (domains) running on a machine xxx, instance A listening on port 8041, instance B listening on port 8051. I want to configure apache virtualhosts in combination with weblogic plugins, so that request with /ld will be sent to instance A while requests with /ldd will be sent to instance B. Both are no clusters. Therefore i tried it with the following configuration (httpd.conf):
    <VirtualHost xxx:8080>
         DocumentRoot "/opt/hpws/apache/htdocs"
         ServerName xxx:8080
         <IfModule mod_weblogic.c>
         WebLogicHost xxx
         WebLogicPort 8041
         #MatchExpression *
         #PathPrepend=/test2
         </IfModule>
         <Location /ld>
         SetHandler weblogic-handler
         PathTrim /ld
         </Location>
    </VirtualHost>
    # VirtualHost2 = xxx:8090
    <VirtualHost xxx:8090>
         DocumentRoot "/opt/hpws/apache/htdocs"
         ServerName xxx:8090
         <IfModule mod_weblogic.c>
         WebLogicHost xxx
         WebLogicPort 8051
         #MatchExpression *
         #PathPrepend=/test2
         </IfModule>
         <Location /ldd>
         SetHandler weblogic-handler
         PathTrim /ldd
         </Location>
    Doesnt really work. Can some1 help please?
    Thanks

  • Average HTTP response time going up week by week as said by SAP

    Hello All,
    I was looking into our SRM earlywatch report,SRM is on windows SQL server 2005 with Windows 2003 server
    In the performance indicators,there is an interseting trend though nothing is in yellow or red
    The values of following parameters : average response time in HTTP task, the maximum no of HTTP steps per hour and the average DB request time in HTTP task  are going up
    I understand that as the no of HTTP steps are increasing,the response time is becoming more which is quite obvious.
    But how to balance this load out so that the average response time comes down?
    what steps should be taken so that I can get this response time to come down though the load on the server is going up
    Rohit

    Hi Rohit,
    Is you system in High Avalibity setup? If yes, then try to load the balance on Node A and Node B. If this is already done or if your system is not in high availability then plan and install a Additional application server (Dialog instance) for load sharing.
    Regards,
    Sharath

  • Analysis Trace -- HTTP Plugin for Internet Explorer 8

    Hello,
    We have configured E2E Root Cause Analysis, and we are trying to use "Trace Analysis".
    We have download HTTP Plugin that is attach in Note 1041556, but in this note we have found that this plugin is for IE 6 and IE 7, and in our customer we have IE 8.
    Do you know if we can use this HTTP Plugin with this version of IE? Is there any specific plugin?
    Many thanks in advance,
    Esther

    As I was searching for an answer on this question here, I got a reply back from my message to SAP on this topic(I'm not the original poster of this question).
    SAP support told me that they do not support IE8 with the SAPClient plugin for the present moment and could not tell me when a future version was planned with support for IE8.
    I wanted to share this with everyone here, as I know it will be common question in the future.
    Take care,
    Stephen

  • What is RFC for "Content-Type: application/HTTP-Kerberos-session-enc"

    Does anybody know how to process HTTP request with content type "Content-Type: application/HTTP-Kerberos-session-enc" ?
    I cannot decode HTTP request:
    -- Encrypted Boundary
         Content-Type: application/HTTP-Kerberos-session-encrypted
         OriginalContent: type=application/soap+xml;charset=UTF-16;Length=1624
    -- Encrypted Boundary
         Content-Type: application/octet-stream
    <octet-stream>-- Encrypted Boundary
    Where <octet-stream> starts with four bytes [47, 0, 0, 0]
    other bytes from <octet-stream> I am trying to decode "context.unwrap()" method ("context" was created on previous request):
                                            GSSHeader gssHeader = new GSSHeader(new ByteArrayInputStream(content));
                                            log.debug("Incoming warped content length: " + content.length);
                                            log.debug("Incoming GSS header OID: " + gssHeader.getOid());
                                            log.debug("Incoming GSS header length: " + gssHeader.getLength());
                                            log.debug("Incoming GSS header MechTokenLength: " + gssHeader.getMechTokenLength());
                                       byte[] newBytes = context.unwrap(content, 0, content.length, msgProp);
    "content" - byte array which was created from <octet-stream> without first four bytes (without [47, 0, 0, 0]).
    "gssHeader" is created correctly because in debug log I see:
    Incoming warped content length: 1671
    Incoming GSS header OID: 1.2.840.113554.1.2.2
    Incoming GSS header length: 15
    Incoming GSS header MechTokenLength: 1656
    but on "unwrap" operation I've got exception:
    GSSException: Defective token detected (Mechanism level: Invalid padding on Wrap Token)
         at sun.security.jgss.krb5.CipherHelper.arcFourDecrypt(CipherHelper.java:1226)
         at sun.security.jgss.krb5.CipherHelper.decryptData(CipherHelper.java:532)
         at sun.security.jgss.krb5.WrapToken.getDataFromBuffer(WrapToken.java:230)
         at sun.security.jgss.krb5.WrapToken.getData(WrapToken.java:195)
         at sun.security.jgss.krb5.WrapToken.getData(WrapToken.java:168)
         at sun.security.jgss.krb5.Krb5Context.unwrap(Krb5Context.java:941)
         at sun.security.jgss.GSSContextImpl.unwrap(GSSContextImpl.java:384)
         at com.myproject.ws_management.WSServer$MyHandler.handle(WSServer.java:361)
         at com.sun.net.httpserver.Filter$Chain.doFilter(Filter.java:65)
         at sun.net.httpserver.AuthFilter.doFilter(AuthFilter.java:65)
         at com.sun.net.httpserver.Filter$Chain.doFilter(Filter.java:68)
         at sun.net.httpserver.ServerImpl$Exchange$LinkHandler.handle(ServerImpl.java:552)
         at com.sun.net.httpserver.Filter$Chain.doFilter(Filter.java:65)
         at sun.net.httpserver.ServerImpl$Exchange.run(ServerImpl.java:524)
         at sun.net.httpserver.ServerImpl$DefaultExecutor.execute(ServerImpl.java:119)
         at sun.net.httpserver.ServerImpl$Dispatcher.handle(ServerImpl.java:349)
         at sun.net.httpserver.ServerImpl$Dispatcher.run(ServerImpl.java:321)
         at java.lang.Thread.run(Thread.java:619)
    KeyTab instance already exists

    It looks like [47, 0, 0, 0] (hex [2F, 0, 0, 0]) is cipher suite, but on http://www.iana.org/assignments/tls-parameters
    I fount that it is:
    0x00,0x2F TLS_RSA_WITH_AES_128_CBC_SHA [RFC3268]
    So... what does this bytes can mean ?

  • Info on Photo upload-HTTP Plugin not active

    Hi Guys,
    Can anyone explain me why the error "HTTP Plugin is inactive" appears while uploading a photo for a pernr in the transaction OAAD?
    Regards,
    Nithya.

    Sikindar,
    Its activated already..

  • HTTP/RFC session has been deleted following timeout

    Hi,
          In our SRM system I see this message.
    HTTP/RFC session has been deleted following timeout
    help me please

    Hi,
    Firstly welcome to SDN...!!!!!
    There is no need to worry about this, as this is not an error. You can see the status of this message in SM21 as green color, it is normal. whenever a connection is made to the system from browser, it will create a connection of type http/rfc. If the user or program which connected to the sysem , does not explicitly close the connection, or leave it idle then the system will delete it automatically after the session time out.
    Please see the note 1240156 for details or parameters.
    Regards,
    Sharath
    Edited by: sharath Babu on Jul 29, 2010 10:07 AM

  • HTTP/RFC Session was deleted after timeout

    Hi all,
    several of my colleagues are working in CRM Web UI.
    Sometimes they just got logged of from the system.
    The only hint I can see in sm21 is "HTTP/RFC Session was deleted after timeout" (translated from german) with no additional info.
    Has someone faced similar issues?
    regards
    Davor

    Hi Rishi,
    thank you for the answer. Sorry, I forgot to mention, that I already checked ICM parameters. The timeout is set to 2700 seconds and proc-timeout is set to -1.
    Here is some confusing info I found in sm21 (also translated from german):
    Usualy there is no timeout for RFC-Server... An explicit timeout for a RFC-Session can be set with the function module TH_SET_AUTO_LOGOUT. If for a defined time no funcion-calls arrive, the RFC-Server will be deleted. If the client calls the server after deletion, the client will be rejected with an error-code.
    Hope, this helps. I have no clue!

  • Does anyone know how to prevent the YouTube volume from going up automatically?  I keep my volume down and it increases automatically when I play a video.

    Does anyone know how to prevent the YouTube volume from going up automatically?  I keep my volume down and it increases automatically when I play a video.

    Have you tried Windows Update in the Control Panel?
    Many times it will find the newest supported drivers for Hardware.
    Just be sure to install everything not just the Important ones.
    Let us know if this helps.

  • IE HTTP Plugin - no response after click on "Start Transaction"

    Hello,
    I try to record some portal performance traces with the E2E Trace Tool and IE HTTP Plugin. I'm able to start the plugin (using latest version) but when I click on "Start Transaction" the IE or the plugin window is no longer responding to further input. The process is also busy with 100 %.
    Looks like a classic app crash.
    Has someony successfully used the IE Plugin for E2E trace and a solution for my problem?
    Best regards,
    Frank

    Hi Frank,
    I am also facing same issue. Did you got solution for this issue? I tried HTTP plugin with SP18 from my laptop but even that is also not working.
    Do we need to start this plug in from remote terminals (like Jump server so there wont be firewall in-between SAP server and remote desktop). Please let me know about this.
    Thanks

  • Getting MSN/hotmail WITHOUT http plugin?

    I have been using the http plugin (Daniel Parnell, 1.49 version) for quite a few months now for my MSN email accounts. Everything was working fine until I started using my .mac sync function to backup up my mail stuff (accounts, rules, etc.) and then I started getting a lot of crashes in Mail and had to start my accounts again from scratch. I kept reloading all my accounts (mac, msn, gmail) and it would still crash. Finally, I loaded all but the MSN accounts (http plugin) and have done a couple syncs and haven't had any trouble since.
    My question is has anyone had this same problem and is there an alternative way to get your MSN accounts on Mail?
    I'm in the process of transerring those MSN accounts over to gmail but until then I'd like to get them on my Mail program.
    Any help would be appreciated.
    Thanks
    G4 Powerbook   Mac OS X (10.4.8)  

    I haven't heard of anything else that allows MSN/Hotmail accounts to work with Mail..
    It is likely that another alternative would rely on the same technology/design. You might post a bug report with the project admins on
    http://sourceforge.net/support/getsupport.php?group_id=74709
    though the resolution of the issue may take some time.

  • Going from centralized system to distributed system

    Hello,
    We would like to go from a centralized system and to a distributed system, having the database and the central instance on different servers. Could you please tell me if there is a procedure to do this or do we have to reinstall ?
    Best regards,
    Arijana

    normaly it is easier to move the DB to another host.
    Moving the CI you will need a new License Key, you will have to reconfigure all SAP Clients (SAP GUI) using the new hostname.
    On the other hand before splitting the CI and database you should add additional Application servers (dialog instances).
    Normaly you will not be able to utilize all resources of the database host, with just one application server installed on a separate machine. (valid for equal hardware configurations of both machines).
    Peter

  • Should user sessions be routed to Central Instance JVM in cluster?

    Our production portal is clustered and we have eight JVMs.  Is it a problem if we route user requests to the central instance JVM in the portal or should this instance be left to provide services to the other JVMs in the cluster?

    Hi Timothy,
        It is Ok to route traffic to the JVM on the central instance. Probably the main reason not to route traffic there is the possibility of a request taking down the central instance requiring (hopefully) a failover.  (worst case portal down)  My personal preference is if you have enough capacity on the other servers, don't route request to the central instance especially if you don't have a failover scenario for the central instance.  
    What you may want to consider is not routing to the central instance but if you loose one of the other server nodes, have the load balance use the central instance for the failover till the node is restarted.   
    Hope this helps,
    John

Maybe you are looking for