QNAP NAS connection from OS X

On a QNAP TS-219P II NAS with 3.7.3 software I have Microsoft networking services available for Windows users and one Mac OS X 10.6.8 user.
The Mac user sees in the Finder two Share names: the server_name, and server_name(SAMBA). He can connect to his share folder on the NAS with either. However NAS connection log shows repeated attempts every three minutes by his Mac to login as 'guest' to the SAMBA share. I have guest access disabled for all shares.  I know that it is his Mac as the LAN IP address is the one being used by the Macbook.  (see excerpt from log below).  I have the NAS Bonjour broadcast on only for the SAMBA service.
I want to eliminate the log being flooded with guest login attempts every three minutes (which the log says are successful) to the SAMBA share "Login OK".
I notice that the username for the unwanted 'guest' logins come in three minute intervals. And if on the Mac I actually attempt in the Finder to login as guest, in the NAS log it shows "GUEST" (ie in capital letters) whereas all the flooding logins are from lower case letter 'guest'.
So I haven't made much progress in figuring out what on the Mac is attempting every three minutes to make multiple login attempts as 'guest', nor in determining what I can do on the NAS to prevent these attempts.
Any ideas?  There must be something that can be specified in Mac OS 10.6 or on the NAS OS to deal with this.

This might be the solution.  I am trying it now.
https://discussions.apple.com/message/13245065#13245065

Similar Messages

  • Losing connection with QNAP NAS

    Hi,
    I bought a wrt320n about 2 weeks ago and haven't been able to get my QNAP nas working properly.
    There are 2 device connected on the lan ports.
    My home pc and a QNAP NAS. The NAS takes up 2 lan ports cause it has port trunking enabled.
    Whenever I reset my wrt320n router I able to connect to my NAS and use all the functions.
    After 5min the connection to the qnap amdin doesn't work anymore and I'm unable to find it using the QNAP finder tool.
    Shared folders on the QNAP are still working...for 30 more min or so. 
    After 30min the qnap device is totally unreachable. It does have a IP adres etc.
    Even the network magic tool says iot's connected, but I can't reach it.
    I have had a chat session with Linkys support and they say it won't work having my NAS connected to the router?????
    So I called support and tell them about the chat session. Phone support said it had something to do with an indexer service?? I'm running windows 7 and everything has been indexed before I started using the linksys router. But phone support told me to keep my computer and the nas powered on for a couple days and the connection would be fixed. Gues what? No connection still.
    Anyone have an idea how I can have that connection to my nas working?
    I have setup  Single Port Forwarding etc, but nothing seems to help. Except resetting my router everytime I want to do something :-)

    Afraid, the Cisco NSS3xx Series Online Help and Cisco Small Business NSS322, NSS324, and NSS326 Smart Storage Administration Guide is incomplete. Some of the NAS Port trunking modes require additional Switc support and configuration.
    Doubt there are many routers out there coming with a fully cocnfigureabe Ethernet switch.
    Refer to the table below about the port trunking options available on the NAS.
    Field
    Description
    Switch Required
    Balance-rr (Round-Robin)
    Round-Robin mode is good for general purpose load balancing between two Ethernet interfaces. This mode transmits packets in sequential order from the first available slave through the last. Balance-rr provides load balancing and fault tolerance.
    Supports static trunking. Make sure static trunking is enabled on the switch.
    Active Backup
    Active Backup uses only one Ethernet interface. It switches to the second Ethernet interface if the first Ethernet interface does not work properly. Only one interface in the bond is active. The bond's MAC address is only visible externally on one port (network adapter) to avoid confusing the switch. Active Backup mode provides fault tolerance.
    General switches
    Balance XOR
    Balance XOR balances traffic by splitting up outgoing packets between the Ethernet interfaces, using the same one for each specific destination when possible. It transmits based on the selected transmit hash policy. The default policy is a simple slave count operating on Layer 2 where the source MAC address is coupled with destination MAC address. Alternate transmit policies maybe selected via the xmit_hash_policy option. Balance XOR mode provides load balancing and fault tolerance.
    Supports static trunking. Make sure static trunking is enabled on the switch.
    Broadcast
    Broadcast sends traffic on both network interfaces. This mode provides fault tolerance.
    Supports static trunking. Make sure static trunking is enabled on the switch.
    IEEE 802.3ad (Dynamic Link Aggregation)
    Dynamic Link Aggregation uses a complex algorithm to aggregate adapters by speed and duplex settings. It utilizes all slaves in the active aggregator according to the 802.3ad specification. Dynamic Link Aggregation mode provides load balancing and fault tolerance but requires a switch that supports IEEE 802.3ad with LACP mode properly configured.
    Supports 802.3ad LACP
    Balance-tlb (Adaptive Transmit Load Balancing)
    Balance-tlb uses channel bonding that does not require any special switch. The outgoing traffic is distributed according to the current load on each Ethernet interface (computed relative to the speed). Incoming traffic is received by the current Ethernet interface. If the receiving Ethernet interface fails, the other slave takes over the MAC address of the failed receiving slave. Balance-tlb mode provides load balancing and fault tolerance.
    General switches
    Balance-alb (Adaptive Load Balancing)
    Balance-alb is similar to balance-tlb but also attempts to redistribute incoming (receive load balancing) for IPV4 traffic. This setup does not require any special switch support or configuration. The receive load balancing is achieved by ARP negotiation sent by the local system on their way out and overwrites the source hardware address with the unique hardware address of one of the Ethernet interfaces in the bond such that different peers use different hardware address for the server. This mode provides load balancing and fault tolerance.
    General switches
    Source: Cisco NSS 3xx Series OEM User Manual
    Regards,
    -Kurt.

  • Port Forwarding from TimeCapsule to QNAP NAS

    Hi there,
    I just read the posing under
    https://discussions.apple.com/message/12003510?messageID=12003510
    but it does not solve my problem.  I have opened all the ports on my time capsule that are required fro my QNAP NAS, but everytime I enter the WAN IP of my internet router (ATT DSL modem) I only get to the modem admin page.  I have entered the IP address of my NAS as the PRIVATE IP ADDRESS in the time capsule settings and also have followed all other steps.  not sure what I am doing wrong.  would be great if someone could point e in the right direction.
    thanks

    Hi Arvind,
    We can do redirection oURL from HTTP to HTTPS by adding some parameter in instance profile.
    But, in earlier reply you said you are going to block port 80, in such case you can't do redirection from HTTP to HTTPS from port 80 to 443
    for e.g
    user is giving URL :- http://www.test.com and you want to redirect it to https as :- https://www.test.com
    Above example can only work when port 80 is open.
    if you are using http port as 8080 in this case redirection can work as below
    user is giving URL as :- http://www.test.com:8080 , it will get redirect to http://www.test.com
    so redirection of HTTP without port in URL will redirect to https in scenario where port 80 is open.
    any query pls reply.
    Thanks
    Anil

  • Syncing iPod Classic with iTunes on MacBook Air and QNAP NAS

    Not sure what section this would sit under, but as it is primarily about getting my iTunes to work, I’ll post it here, for now:
    For various reasons, I’m going to be switching most of my home computer usage from my PC to my Macbook Air (2010).
    I have used Supersync to move my iTunes library to a QNAP T210 NAS (where my library file resides) and set up iTunes on the MBA to point to it.  I am using AFP to connect to the NAS.
    The router is an Airport Extreme base station with the NAS directly connected via Ethernet and the MBA connected via wifi.
    In my new setup, when I click on a song to play, there is a very – barely perceptible – slight lag compared to the old PC setup which used a directly connected USB hard drive. So no real performance issues on the MBA.
    The issue arises, however, when I try to sync my iPod Classic 160G (reformatted for Mac, as I thought it would possibly be moreefficient?).  I’m just going through the first sync of  ~31k songs (no video orother content.)  I left it running between midnight and 0800, and it only managed about 3,000 tunes.  My old PC setup usually synced about three times as much in the same period.
    Is there anything I can do to improve the performance of my setup?
    Would running my NAS connection over NFS be quicker? 
    How about a powered USB hub to the MBA?
    How about connecting the MBA to the Airport extreme via Ethernet (from a USB hub) instead of using the wifi?
    Any suggestions (besides running iTunes on a local drive) greatly welcomed.
    Thanks,
    James

    I tried this, i selected "manage my music and videos manually" and clicked "apply". when i try and put songs onto my ipod off another computer, i get the warning message telling me if i sync it with this library, it will delete everything off my ipod and replace it with what is in the library on that computer.

  • USB Disk via USB Hub or Ethernet NAS Connection More Reliable?

    This is a rather techical question that calls for an opinion.
    I want to centralize backups for my daughter, wife and myself.  I'm going to add the latest model Airport Extreme Base Station as both an internet access point (from my cable modem) and as a wireless router to hard drive storage.  I know there are cheaper (and probably faster) wireless routers; however, I've used various models of airport base stations over the years with my cable modem and they have all worked flawlessly and never need rebooting.
    My two choices:  1) Connect a 4-port, powered USB hub to the usb connection on the Airport Extreme and use a pair of 3GB hard drives--one for primary backup and the second for the backup of the backup.  2) Use a QNAP TS110 or TS112 NAS device and connect it to the Base Station via gigabit ethernet.  Then, an external USB drive would be connected to the QNAP NAS device.  I've encountered QNAP NAS products in my work life and have been incredibly impressed with them--reliable, very low power requirements, reasonably easy setup via Web browser.
    Choice 1 will be about $125 less expensive than Choice 2.  I'll have to use the Linux Ext3 or 4 partition map for both drives under Choice 2 but the external USB volume can be formatted in Mac HFS+.  Choice 2 will be theoretically faster because of the gigabit ethernet connection (probably irrelevant because of the slow wireless n throughput) but the QNAP device can be set to do automated backups to the USB drive that would be connected to it.  That's nice. 
    My question:  Based on what I've read over the years about connecting USB disks to an Airport Extreme base station, I have the opinion that an ethernet connection to an NAS device may be more reliable (ie, the client computers don't drop the connection to the hard drive as often).  Maybe I'm wrong about that.  I would like an opinion.
    Also, I know how slow the real throughput will be as a result of clients connecting via wireless n.  In real life, with decent quality connections, I'll be looking at 10MB to 12MB per second max.  The first backups will take days; however, subsequent incremental backups will be much faster.  I don't plan to use Time Machine, but rather to use Carbon Copy Cloner to make backups to read/write sparse disk image bundles (CCC won't do regular backups to networked drives).  I tried Time Machine a while back but would rather have access to actual files as as a complete disk image that would be bootable when written back to a drive.  Call me old-fashioned, but that's me.  I also have two other bootable backups on 2.5" external drives--one that stays with me and another is always at my work place.  Also, I'm not interested in a Time Capsule because I don't think their reliability is all that great (bad design with too much heat buildup).
    Thanks for any insights you can offer.

    I meant to say 3TB drives, not 3GB.

  • Invalid security certificate error when connecting from office for iPad

    Hi,
    I have Alfresco Community running on my NAS including the SharePoint protocol support and can access it from any desktop Microsoft Office application but when I try to "Add a Place" in any of the Microsoft Office for iPad apps I get the following
    error message: "Cannot Connect to Site - The site doesn't have a valid security certificate." followed by "Cannot connect to Server - The server may be unavailable. Check your internet connection and try again".
    I have the following configuration
    - Qnap NAS with QTS 4.1.3
    - JRE 8.6.0
    - Tomcat 7.0.50
    - Alfresco 5.0.c with Share and SPP installed
    - Tomcat, Alfresco and Share configured for SSL on 8443 using a self-signed certificate
    - SPP configured for SSL on 7070
    - iPad Air 2, iOS 8.2 and latest office apps
    - CA and server certificate installed on the desktop computers and the iPad
    Share and SPP can be reached on the respective ports and I get the websites as expected. And as mentioned desktop MS office applications can access Alfresco via SPP. But I cannot get it to work with the iPad office apps.
    Can anybody help with this, please? I know I am not running SharePoint but I assume the problem with the iPad office app is the same?
    Thanks
    Peter

    1. I can't say if it is sequential or not, I have never seen a message like that myself when doing add-on update checks - but I have seen other messages, like the update server not using a secure HTTPS address after that became a requirement for updates. <br />
    Plus, I have never used anything from Conduit - ''the founder of that company has a shady past with different internet companies puling all dorts of "stuff", IMO. And all Conduit add-ons were removed and banned from the official add-ons website a few years ago because of their "antics" and major user uproar at the time - just recently have we seen a few return''.
    2. Right-click individual addons and use ''Visit Homepage''' to see if that feature is being used as intended and where it takes you. Or use '''Find Update''' and see if that triggers that message, to discover which extensions are fro Conduit.
    3. IMO, you are better off updating each extension one at a time with '''Find Update''', as I mentioned above.

  • Time Machine problem with Qnap NAS

    I use Time Machine on my QNAP NAS TS 119. I backup from an iMac (connected to the network by ethernet) and a laptop (MacBook Pro) connected wirelessly. It was working fine until I upgraded the OS to Mountain Lion on both computers. Time Machine on the iMac works fine but it stopped working on the laptop. Qnap has a setting for Time Machine. It creates a mount TMBackup to which you can connect with user name TimeMachine and a password zou can set (this is done under the settings of the Qnap, accessing it with safari). In the Time Machine preferences, when I select the disk "TMBackup on Qnap(TimeMachine)"  it asks me the name and password for the server Qnap-2.local. I don't understand why it asks for Qnap-2. My TS 119 NAS is named simply Qnap. I choose "registered user" and give the username TimeMachine (default, as setup) and the password I have setup. It accepts them, but when Time Machine attempts to start backing up, it gives me the error message ' "Time Machine couldn't complete the backup to "Qnap-2". The backup disk is not available '. I don't understand where this Qnap-2 comes from. On the iMac I have no problem, it makes backups on Qnap. Please help!

    Thank you very much!
    That solved my problem.
    I have seen a lot of posts with the MD0_DATA folder, and I had no such folder.
    As my QNAP is 4 disk NAS, I tried your command "rm -r /share/HDA_DATA/.timemachine" in the four first folders in the /share folder: HDA_DATA, HDB_DATA, HDC_DATA and HDD_DATA.
    In the third one, it was OK.
    And after that, Time Machine could mount again the TMBacup volume and acces it.
    Now I'm doing again the Backup!!

  • How do I make a NAS connected to a MacBook Pro visible on the network?

    I have a NAS connected to my MBP via ethernet, how do I make this drive visible to other Macs on my home network?

    A NAS, Network Attached Storage, is Not connected to any one computer. It is connected only to the LAN, Local Area Network, by an Ethernet cable and or wirelessly (Better by Ethernet cable and only a few NAS system work over WiFi and they are SLOW).
    If you are attaching a USB, Firewire or Thunderbolt external drive to your Mac that is not a NAS system. It is a drive connected to your system and for it to show to the rest of your LAN it must be shared from the computer it is connected to.

  • My folders on my QNAP NAS turned to be exec files when listed on my mac mini - not being accessible. When I restart the QNAP or my MAC I can see tham as a normal folder until my MacMini goes asleep and after awaking it I have again exe files.

    I have a QNAP NAS which is connected to my Mac Mini.
    When turning on I see my folders as folders, although one folder (might be too big) is not present.
    After my computer turns off in energy saving mode and after starting it again, some of the folders turned to "exec" (black tile with green letters). They are not accessible anymore.
    On my Windows machine and via the QNAP filesystem they are stil accessible.
    The folders I talk about are full of Camera RAW files and XML-files (belonging to the camera raw files) as well as jpg and tiff files.
    Who can help me....

    Thanks for the obvious question. I mean it. The very same thought came to me this morning and, sure enough, I had booted into another drive--my old one that, of course, had the old desktop, etc.
    It didn't dawn on me that this was the case since I hadn't set it as a boot drive but I guess in the course of all the restarts I did, it got switched.
    I'm back to normal again.

  • How to set up DHCP and NAT for QNAP NAS MyCloud service?

    I have an Apple AirPort Extreme Base Station (AEBS) attached to my DSL model (no router in the modem).  My QNAP NAS is attached via ethernet to the QNAP NAS.  My iMac (running AirPort Utility 6.x) is connected to the AEBS via wifi.
    I've found several folks who've tried this (and apparently succeeded) but I'm a networking novice and am having trouble making this work.  What I did was to go into the AirPort utility and in the networking section configure "DHCP and NAT" and then called out the static IP and MAC address of the QNAP NAS (as well as the ports I'd like to remain open).  However, when I did this and applied the changes, my iMac (connected to the AEBS via wifi) could no longer see the AEBS, which then required me to reset the AEBS, re-configure it back to the previous known good conifiguration and start over.  After about 5 cycles of this I gave up.
    So, what am I doing wrong here?  Do I need to go in and configure every device that is going to access the AEBS as static and call out each device's IP and MAC address? (hopefully not, that'd be a major PITA).
    Help.  Anyone?

    When I run diagnostics with the QNAP, here is the reply I get (IPs redacted):
    ------ NAT PMP Diagnostics ------
    initnatpmp() returned 0 (SUCCESS)
    using gateway : xx.x.x.x
    sendpublicaddressrequest returned 2 (SUCCESS)
    readnatpmpresponseorretry returned 0 (OK)
    Public IP address : 192.168.xxx.xxx
    epoch = 2621
    closenatpmp() returned 0 (SUCCESS)
    ------ UPnP Diagnostics ------
    upnpc : miniupnpc library test client. (c) 2006-2011 Thomas Bernard
    Go to http://miniupnp.free.fr/ or http://miniupnp.tuxfamily.org/
    for more information.
    List of UPNP devices found on the network :
    desc: http://xx.x.x.x:60606/8CC1212D0C6D/Server0/ddd
    st: upnp:rootdevice
    desc: http://xx.x.x.x:9000/TMSDeviceDescription.xml
    st: upnp:rootdevice
    desc: http://xx.x.x.xx:55000/nrc/ddd.xml
    st: upnp:rootdevice
    desc: http://xx.x.x.xx:55000/dmr/ddd.xml
    st: upnp:rootdevice
    desc: http://xx.x.x.xx:49152/4/description.xml
    st: upnp:rootdevice
    desc: http://xx.x.x.xx:49152/2/description.xml
    st: upnp:rootdevice
    desc: http://xx.x.x.xx:49152/0/description.xml
    st: upnp:rootdevice
    desc: http://xx.x.x.xxx:8200/rootDesc.xml
    st: upnp:rootdevice
    desc: http://xx.x.x.xxx:49152/gatedesc.xml
    st: upnp:rootdevice
    desc: http://xx.x.x.xxx:49153/gatedesc.xml
    st: upnp:rootdevice
    desc: http://xx.x.x.xxx:49155/gatedesc.xml
    st: upnp:rootdevice
    desc: http://xx.x.x.xxx:9000/TMSDeviceDescription.xml
    st: upnp:rootdevice
    UPnP device found. Is it an IGD ? : http://xx.x.x.x:60606/
    Trying to continue anyway
    Local LAN ip address : xx.x.x.xxx
    GetConnectionTypeInfo failed.
    Status : , uptime=3217870016s, LastConnectionError :
      Time started : Wed Mar 13 17:04:03 1912
    MaxBitRateDown : 7 bps   MaxBitRateUp 0 bps
    GetExternalIPAddress() returned -3
    GetExternalIPAddress failed.
    GetGenericPortMappingEntry() returned -3 ((null))

  • Cannot create Vault on external QNAP NAS

    I just purchased a QNAP NAS and am attempting to create a Vault on it but all I get is the spinning wheel of death. Is there an easy way to solve this issue? And how can I move the Aperture photos off of my computer and onto the Vault?

    guess best bet is to have Aperture Vault on something like a Time Capsule, connected via Firewire
    For what its worth I have my vaults on a HD connected to an Airport Extreme connected both with ethernet and wirelessly (my iMac goes over the ethernet the MB goes wirelessly. Never had any problems with either.
    The only  drawback is that the first vault created on a library on the MB takes a long time to be created but after the vault is created updates go fast enough provided you update regularly enough so that you don't have a huge amount of data to move.

  • HTTPs connection from SAP WebAS

    Hello,
    I have to establish a connection from SAP WebAS to an iSaSiLk server via HTTPS.
    The iSaSiLk authentication is based on client certificates.
    I've created a SSL client PSE, generated the Certificate Request, imported the certificate response and the chain of certificates associated  with no errors. When testing the connection we're getting the following error message:
    SAP icm log:
    [Thr 1087400256] ->> SapSSLSessionInit(&sssl_hdl=0x2aaaba679980, role=1 (CLIENT), auth_type=3 (USE_CLIENT_CERT))
    [Thr 1087400256] <<- SapSSLSessionInit()==SAP_O_K
    [Thr 1087400256]      in: args = "role=1 (CLIENT), auth_type=3 (USE_CLIENT_CERT)"
    [Thr 1087400256]     out: sssl_hdl = 0x1a3310c0
    [Thr 1087400256] ->> SapSSLSetNiHdl(sssl_hdl=0x1a3310c0, ni_hdl=22)
    [Thr 1087400256] NiIBlockMode: set blockmode for hdl 22 TRUE
    [Thr 1087400256] <<- SapSSLSetNiHdl(sssl_hdl=0x1a3310c0, ni_hdl=22)==SAP_O_K
    [Thr 1087400256] ->> SapSSLSetSessionCredential(sssl_hdl=0x1a3310c0, &cred_name=0x1a49e4e0)
    [Thr 1087400256]   SapISSLComposeFilename(): Filename = "/usr/sap/XID/DVEBMGS00/sec/SAPSSLSPHTID.pse"
    [Thr 1087400256] <<- SapSSLSetSessionCredential(sssl_hdl=0x1a3310c0)==SAP_O_K
    [Thr 1087400256]      in: cred_name = "/usr/sap/XID/DVEBMGS00/sec/SAPSSLSPHTID.pse"
    [Thr 1087400256] ->> SapSSLSetTargetHostname(sssl_hdl=0x1a3310c0, &hostname=0x1a4a09e0)
    [Thr 1087400256] <<- SapSSLSetTargetHostname(sssl_hdl=0x1a3310c0)==SAP_O_K
    [Thr 1087400256]      in: hostname = "<remoteServer_to_be_accessed>"
    [Thr 1087400256] ->> SapSSLSessionStart(sssl_hdl=0x1a3310c0)
    [Thr 1087400256]   SapISSLUseSessionCache(): Creating NEW session (0 cached)
    [Thr 1087400256] Tue Jan 13 10:10:22 2009
    *[Thr 1087400256] *** ERROR during SecudeSSL_SessionStart() from SSL_connect()==SSL_ERROR_SSL*
    [Thr 1087400256]    session uses PSE file "/usr/sap/XID/DVEBMGS00/sec/SAPSSLSPHTID.pse"
    [Thr 1087400256] SecudeSSL_SessionStart: SSL_connect() failed
      secude_error 536871693 (0x2000030d) = "none of the PSEs registered with hSsl can suffice the negotiated SSL cipher suite"
    [Thr 1087400256] >>            Begin of Secude-SSL Errorstack            >>
    [Thr 1087400256] ERROR in ssl3_get_certificate_request: (536871693/0x2000030d) none of the PSEs registered with hSsl can suffice
    [Thr 1087400256] <<            End of Secude-SSL Errorstack
    [Thr 1087400256]   SSL_get_state() returned 0x00002150 "SSLv3 read server certificate request A"
    [Thr 1087400256]   No certificate request received from Server
    [Thr 1087400256] <<- ERROR: SapSSLSessionStart(sssl_hdl=0x1a3310c0)==SSSLERR_SSL_CONNECT
    [Thr 1087400256] ->> SapSSLErrorName(rc=-57)
    [Thr 1087400256] <<- SapSSLErrorName()==SSSLERR_SSL_CONNECT
    [Thr 1087400256] *** ERROR => IcmConnInitClientSSL: SapSSLSessionStart failed (-57): SSSLERR_SSL_CONNECT [icxxconn_mt
    On the iSaSiLk server we're getting:
    ssl_debug(2): Starting handshake (iSaSiLk 3.06)...
    ssl_debug(2): Received v3 client_hello handshake message.
    ssl_debug(2): Client requested SSL version 3.0, selecting version 3.0.
    ssl_debug(2): Creating new session 11:5F:04:C9:0D:32:15:B9...
    ssl_debug(2): CipherSuites supported by the client:
    ssl_debug(2): SSL_RSA_WITH_RC4_128_SHA
    ssl_debug(2): SSL_RSA_WITH_RC4_128_MD5
    ssl_debug(2): SSL_RSA_WITH_3DES_EDE_CBC_SHA
    ssl_debug(2): SSL_RSA_WITH_DES_CBC_SHA
    ssl_debug(2): SSL_RSA_EXPORT_WITH_DES40_CBC_SHA
    ssl_debug(2): SSL_RSA_EXPORT_WITH_RC2_CBC_40_MD5
    ssl_debug(2): SSL_RSA_EXPORT_WITH_RC4_40_MD5
    ssl_debug(2): CompressionMethods supported by the client:
    ssl_debug(2): NULL
    ssl_debug(2): Sending server_hello handshake message.
    ssl_debug(2): Selecting CipherSuite: SSL_RSA_WITH_RC4_128_SHA
    ssl_debug(2): Selecting CompressionMethod: NULL
    ssl_debug(2): Sending certificate handshake message with server certificate...
    ssl_debug(2): Sending certificate_request handshake message...
    ssl_debug(2): Sending server_hello_done handshake message...
    ssl_debug(2): IOException while handshaking: Connection closed by remote host.
    ssl_debug(2): Sending alert: Alert Fatal: handshake failure
    ssl_debug(2): Shutting down SSL layer...
    ssl_debug(2): Closing transport...
    From the iSaSiLk everything seems to be OK, but on the SAP WebAS the error "none of the PSEs registered with hSsl can suffice the negotiated SSL cipher suite" is really unclear, since the cipher chosen by the iSaSiLk is one of the ciphers sent by SAP WebAS...
    Can anyone give me any suggestion?

    Hello Olivier,
    Thanks for your answer.
    I've implemented note 800240 which facilitates the PSE analysis by implementing the report ZSSF_TEST_PSE. With this report I'm able to check all the PSE content, which are:
    Filename            SAPSSLSPHTID.pse
    PIN                 <no>
    Signature           X
    Encryption          X
    Profile Parameter
    DIR_INSTANCE                   /usr/sap/XID/DVEBMGS00                       /usr/sap/XID/D00
    sec/dsakeylengthdefault                                                     1024
    sec/libsapsecu                 /usr/sap/XID/SYS/exe/run/libsapcrypto.so
    sec/rsakeylengthdefault                                                     1024
    ssf/name                       SAPSECULIB
    ssf/ssf_md_alg                                                              SHA1
    ssf/ssf_symencr_alg                                                         DES-CBC
    ssf/ssfapi_lib                 /usr/sap/XID/SYS/exe/run/libsapcrypto.so
    ssf2/name
    ssf2/ssf_md_alg                                                             SHA1
    ssf2/ssf_symencr_alg                                                        DES-CBC
    ssf2/ssfapi_lib
    ssf3/name
    ssf3/ssf_md_alg                                                             SHA1
    ssf3/ssf_symencr_alg                                                        DES-CBC
    ssf3/ssfapi_lib
    Environment variables
    USER                xidadm
    SECUDIR             /usr/sap/XID/DVEBMGS00/sec
    PSE
    Validity            18.12.2008 19:47:04   18.12.2009 19:47:04
    Algorithm           RSA (OID 1.2.840.113549.1.1.1)
    Test signature
    Signature OK
    Verification OK
    Test encryption
    Encryption OK
    Decryption OK
    As you can see, the cipher algorithm used is RSA. Any suggestion... ?
    An iSaSiLk server "is a Java programming language implementation of the SSLv2 (client-side), SSLv3, TLS 1.0 and TLS 1.1 protocols. It supports all defined cipher suites (except for Fortezza), including all AES and PSK cipher suites. iSaSiLk implements all standard TLS extensions, comes with an easy to use API and operates on top of the IAIK-JCE Javau2122 Cryptography Extension. iSaSiLk is highly configurable and will work with any alternative JCE implementation supported by a proper provider for supplying the required cryptographic algorithms".
    Once again thanks for your answer.

  • Cannot send email via ActiveSync when user connect from Internet (Exchange 2010 SP3 RU5)

    Hi All. 
    This is the first time I encounter this kind of issue, whenever user connect from the internet they cannot send email from their Phone or Windows Mail App, but they can retrieve email 
    But when they connect from Internal Network they can send email. I already test ActiveSync from internet using www.testexchangeconnectivity.com and it pass all tests. 
    I also check the Firewall and all the necessary ports already opened (we even open all ports) , the default TTL on the firewall 3600 second. 
    From what I read ActiveSync use some kind of HTTP POST or in MS terminology "PING" command, but still have no idea what kind of configuration that should be made to the Firewall so it can pass this "PING" command. Because from what I
    see in Android Logcat the problem always related to this PING command 
    10-07 08:12:38.714 I/Exchange(31971): Interrupt with reason 1
    10-07 08:12:38.714 I/Exchange(31971): Ping task ending with status: -1
    10-07 08:12:38.904 D/Exchange(31971): created outputstream
    10-07 08:12:39.204 W/Exchange(31971): IOException sending mail
    10-07 08:12:39.204 E/Exchange(31971): Generic error for operation SendMail: status 200, result -100
    10-07 08:12:39.204 W/Exchange(31971): Aborting outbox sync for error -99
    10-07 08:12:39.274 I/Exchange(31971): Ping task starting for 3
    10-07 08:12:39.304 D/SyncManager(644): failed sync operation [email protected] u0 (com.android.exchange), com.android.email.provider, USER, latestRunTime 71219435, EXPEDITED, reason: 10040, SyncResult: stats [ numIoExceptions: 1]
    10-07 08:12:39.304 D/SyncManager(644): not retrying sync operation because SYNC_EXTRAS_DO_NOT_RETRY was specified [email protected]  u0 (com.android.exchange), com.android.email.provider, USER, latestRunTime 71220078, EXPEDITED, reason: 10040

    Hi ronaldosy,
    How about the work flow of Outlook or OWA on PC internally/externally?
    If only phone has this issue, I suggest ask ActiveSync Forum for help so that you can get more professional suggestions. For your convenience:
    http://social.technet.microsoft.com/Forums/exchange/en-US/home?forum=exchangesvrmobility
    Best Regards,
    Allen Wang

  • Hi Apple Team, my iphone can't share files with my macbook pro. But other devices can share bluetooth files with my mac book pro. Please, kindly open up bluetooth to accept all connections from all devices. Now it becoming difficult for me to share.

    Hi Apple Team, my iphone can't share bluetooth files with my macbook pro. But other devices can share bluetooth files with my mac book pro. Please, kindly open up bluetooth to accept all connections from all devices. Now it difficult for me to share bluetooth files from my mac bookpro to my iphone, unless i attached it through email.
    We need it to be acceptable to all devices.
    Thank you!

    You can tell Apple directly at the link below.
    http://www.apple.com/feedback/iphone.html

  • Weblogic realm authentication failure getting connection from pool

    We are getting this error when we try to get a connection from the
    pool for a Tx Data Source. We are successfully getting connections
    from a (non-Tx) Data Source.
    java.lang.SecurityException: Authentication for user Fitness_demo
    denied in realm weblogic
    at weblogic.security.acl.Realm.authenticate(Realm.java:212)
    at weblogic.security.acl.Realm.getAuthenticatedName(Realm.java:233)
    at weblogic.security.acl.internal.Security.authenticate(Security.java:125)
    at weblogic.security.acl.Security.doAsPrivileged(Security.java:481)
    at weblogic.jdbc.common.internal.RmiDataSource.getConnection(RmiDataSource.java:127)
    We have added the DB user as a user in the realm, which usually does
    the trick; but in this case it does not. We are using Merant's
    JSQLConnect type 2 driver for SQL Server, and we are running on
    Solaris. The scenario works fine using Oracle Thin driver on Windows.
    Do we need ACL entries or something? We do not have any ACL entries
    now.
    Thanks,
    -wes

    We are getting this error when we try to get a connection from the
    pool for a Tx Data Source. We are successfully getting connections
    from a (non-Tx) Data Source.
    java.lang.SecurityException: Authentication for user Fitness_demo
    denied in realm weblogic
    at weblogic.security.acl.Realm.authenticate(Realm.java:212)
    at weblogic.security.acl.Realm.getAuthenticatedName(Realm.java:233)
    at weblogic.security.acl.internal.Security.authenticate(Security.java:125)
    at weblogic.security.acl.Security.doAsPrivileged(Security.java:481)
    at weblogic.jdbc.common.internal.RmiDataSource.getConnection(RmiDataSource.java:127)
    We have added the DB user as a user in the realm, which usually does
    the trick; but in this case it does not. We are using Merant's
    JSQLConnect type 2 driver for SQL Server, and we are running on
    Solaris. The scenario works fine using Oracle Thin driver on Windows.
    Do we need ACL entries or something? We do not have any ACL entries
    now.
    Thanks,
    -wes

Maybe you are looking for

  • How to set a default firefox homepage on client workstations on a network with a server running windows 2003 server?

    I am running a small client server network with about 27 client machines and windows server 2003 is the server OS. I want the default webpage on firefox to display our department homepage when users log on. I have set IE7 already in the groups policy

  • Looking for comprehensive program to create pdf file from gif image

    Hello, I'm looking for a program that can transform gif image file into pdf file. It is very importent to keep the same quality of the output document as the original image. I've seen Bridge CS5 in action and was very much disapointed, because the or

  • Agent determination failed description

    Hi, here's my doubt: When creating a PO or a SC, if the initiator (requestor) is the same person as the appover of that SC or PO, the workflow fails, because he is one of the excluded agents. When this happens I get this message: 'Strategy Z_SC_TOT_V

  • Open .odt files in Mountain Lion

    I have gott some problems opening files in Open Office since I dowloaded and installed ML. Double klicking a document made in Oo opens the doc in the Text application. And there is no way to change this. Not even i the info box... What to do? Håkan

  • Photoshop Elements 9 changing page size/photo layout

    Hello.  I am using the trial version before purchasing. I like to print out photo album pages with about 9 photos per page in the 8.5x11 portrait format.  However, all the "photo book" templates are in landscape and have only up to 3 photos per page.