RevokeRoleGrant fails for missing ADMIN CONFIGURATION role

hi all
I am using the API and authenticating as xelsysadm. I am able to read all of the roles associated to a user
but cannot revoke any.
I get the following error message.
oracle.iam.identity.exception.ValidationFailedException: IAM-3056134:Role SYSTEM CONFIGURATION ADMINISTRATORS is NOT granted to user System Operator.:SYSTEM CON
FIGURATION ADMINISTRATORS:System Operator
I added SYSTEM CONFIGURATION ADMINISTRATORS role to xelsysadm and ran the role api and it shows up.
I added the OPERATORS role to a new user and when I try to remove the OPERATORS role from that new user is when I get the error.
Thanx
Fred
Edited by: Foresterf on Jul 22, 2011 1:33 PM

hi sunny,
I do not see a user called "System Operator". Do I need to add any roles to xelsysadm for this to work?
here is the code usrKey=21 roleid=2 is the only entry in the roleKeySet.
try
roleOp.revokeRoleGrant(usrKey, roleKeySet);
catch(ValidationFailedException vfe)
logger.error("ValidationFailedException",vfe);
throw new AIHelperException(vfe);
catch (AccessDeniedException ex)
logger.error("AccessDeniedException",ex);
throw new AIHelperException(ex);
catch(RoleGrantRevokeException ex)
logger.error("RoleGrantRevokeException",ex);
throw new AIHelperException(ex);
here is the logging of my code.
DEBUG,22 Jul 2011 22:13:06,201,[AI.AIOIMCLIENT][96],getting User
DEBUG,22 Jul 2011 22:13:06,625,[AI.AIOIMCLIENT][98],21
{Status=Active, [email protected], usr_key=21, User Login=MELFORESTER, Last Name=Forester, Xellerate Type=End-User, First Name=Melvin}
DirectReports:
DEBUG,22 Jul 2011 22:13:06,633,[AI.AIOIMCLIENT][99],getting User Roles
DEBUG,22 Jul 2011 22:13:06,732,[AI.AIOIMCLIENT][103],Role id = 2
{Role Display Name=OPERATORS, Role Unique Name=OPERATORS, ugp_create=Fri Apr 22 07:03:07 EDT 2011, Role Owner Key=1, Role Description=Operator role, Role Name=O
PERATORS, ugp_update=Fri Apr 22 07:03:07 EDT 2011, Role Namespace=Default, Role Key=2, LDAP GUID=null, ugp_updateby=1, Role Category Key=2, ugp_data_level=1, Ro
le Email=null, LDAP DN=null}
DEBUG,22 Jul 2011 22:13:06,751,[AI.AIOIMCLIENT][103],Role id = 3
{Role Display Name=ALL USERS, Role Unique Name=ALL USERS, ugp_create=Fri Apr 22 07:03:07 EDT 2011, Role Owner Key=1, Role Description=Default role for all users
, Role Name=ALL USERS, ugp_update=Fri Apr 22 07:03:07 EDT 2011, Role Namespace=Default, Role Key=3, LDAP GUID=null, ugp_updateby=1, Role Category Key=2, ugp_dat
a_level=1, Role Email=null, LDAP DN=null}
DEBUG,22 Jul 2011 22:13:06,760,[AI.AIOIMCLIENT][110],Revoking OPERATORS Role
DEBUG,22 Jul 2011 22:13:06,845,[AI.OIMHELPER][139],Adding role to revoke list 2
DEBUG,22 Jul 2011 22:13:06,920,[AI.OIMHELPER][151],Revoking roles from user id 21 entityid 21
ERROR,22 Jul 2011 22:13:08,222,[AI.OIMHELPER][158],ValidationFailedException
oracle.iam.identity.exception.ValidationFailedException: IAM-3056134:Role SYSTEM CONFIGURATION ADMINISTRATORS is NOT granted to user System Operator.:SYSTEM CON
FIGURATION ADMINISTRATORS:System Operator
at weblogic.rjvm.ResponseImpl.unmarshalReturn(ResponseImpl.java:234)
at weblogic.rmi.cluster.ClusterableRemoteRef.invoke(ClusterableRemoteRef.java:348)
at weblogic.rmi.cluster.ClusterableRemoteRef.invoke(ClusterableRemoteRef.java:259)
at oracle.iam.identity.rolemgmt.api.RoleManager_ogut7n_RoleManagerRemoteImpl_1033_WLStub.revokeRoleGrantx(Unknown Source)
at sun.reflect.NativeMethodAccessorImpl.invoke0(Native Method)
at sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:39)
at sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:25)
at java.lang.reflect.Method.invoke(Method.java:597)
at weblogic.ejb.container.internal.RemoteBusinessIntfProxy.invoke(RemoteBusinessIntfProxy.java:85)
at $Proxy2.revokeRoleGrantx(Unknown Source)
at oracle.iam.identity.rolemgmt.api.RoleManagerDelegate.revokeRoleGrant(Unknown Source)
Thanx
Fred

Similar Messages

  • Essbase Error 1051440 - Authentication fails for user admin

    We are facing a very unique problem...
    The application is up & running.. even I can login into the application, can perform member addition, editing & mamage database from planning.... but I get this error while retreiving from excel addin or running scripts.
    What I analysed is that this problem is Actually coming when a particular set of members are called anywhere either in scripts or during retreival thru Addin.
    Recently we had added one dimension in one of the database of our application. After that that this problem started.
    There were fewer Xref functions used to pull data from other cubes.... The problem is cominng with only those set of members where this Xref function has been used.
    Even I had changed the formulas & incorporated member of new dimension in the formulas to point to target members....
    Can you guys ever had faced such kind of issue....
    Please help in resolving....
    Complete Error is: msg fromremote site[date n time] Local////Error(1051440) Essbase user[admin] Authentication fails against shared services serverwith Error[30:1005:Authentication failed for user admin. Enter valid credentials.]]

    Hi,
    are you sure that user "admin" has all necessary rights to run your scripts? I have to ask because we sometimes had problems with our admin user... There is an "native essbase server admin" and the admin user in shared services.
    We dont had any idea how this could happen but sometimes our admin user changed to the mentioned "native essbase server admin" - you can see it if you are connected as "admin (internal)".
    If you are logged in as "admin (internal)" you have to "externalize" this user.
    Hope this helps and my bad english is not so much confusing... :-)
    Kind regards
    André

  • OBIEE administartion Login is failing for Non Admin Group User.

    Hi,
    I have created one user for testing and assigned given access to some groups other than Administrators. When i am trying to login in Administration tool getting error message as "Logon Failed". I am able to access the Presentation using the same login and also able to create answers.
    When i assign the administrators group to same user the login happened successfully.
    I am just wondering, in order to access the Administration tool, the user should be part of administrators group or i am missing some steps.
    Thanks

    As the name suggests Administration tool is for administrators.So if you trust a user to access the Admin tool then you supply the user with the Admin Password.

  • CBS: Creation of build location fails for Standalone Development Configuration

    Hi experts,
    We have an issue during setup of a Standalone development configuration in NWDI with CM Services. During saving the following error occurs:
    "Unable to save development configuration: Unable to create build location "SPO" on build tool "http://qpmr-nw01.sap:50000" using user "NWDI_CMSADM" [DICONF_CREATEBUILDLOCATION]: CBS Server Error: Internal server error( internal code: INTERNAL_SERVER_ERROR)"
    The trace logs contains additionally the following errors:
    "FAILURE to unset the owner-buildspace property on workspaces for buildspace: SPO caused due to an exception. Invalid cookie domain .sap. This may cause problems during future creation of buildspaces for the workspaces associated with this buildspace. Manual unset may be required."
    "Unable to create build location "SPO" on build tool "http://qpmr-nw01.sap:50000" using user "NWDI_CMSADM" [DICONF_CREATEBUILDLOCATION]: CBS Server Error: Internal server error( internal code: INTERNAL_SERVER_ERROR)
    [EXCEPTION]
    com.sap.di.cts.config.service.core.exception.DIConfCreateBuildlocationException: Unable to create build location "SPO" on build tool "http://qpmr-nw01.sap:50000" using user "NWDI_CMSADM" [DICONF_CREATEBUILDLOCATION]: CBS Server Error: Internal server error( internal code: INTERNAL_SERVER_ERROR) "
    Does this have something to do with our domain name which ends with .sap?
    Thanks and Best Regards
    Harald

    Hi,
    yes, that is what I was afraid of.
    Let's try something else.
    Surely the problem seems to be related to the domain that is using the string "sap".
    Or at least this is what I can also see in the error message :Invalid cookie domain .sap.
    Can you please try with IP ? Go to CMS Track Data, and specify the CBS and DTR URLs via IP.
    Does this help?
    Cheers,
    Ervin

  • Windows 7: Flash Player automatic update fails due missing admin privilege. UAC issue?

    The Windows 7 account I am using has admin privilege.
    The automatic update displays an error message pop-up. In English it would be something like: "The installation encountered errors: You need administrator privlige to install Adobe Flash Player. Please log on as an administrator and try again."
    At Windows 7 I am using the standard UAC security level settings and I am not willing to lower them. I am also not willing to install a Player update manually for three browsers every other week.
    Any solution?
    Thanks

    Your page http://helpx.adobe.com/flash-player/kb/installation-problems-flash-player-windows.html mirrors my Flash Player as
    at Chrome: 11.2.202.229
    at Firefox: 10.3.183.11
    at IE: 10.3.183.11
    So I manually update once more for Firefox and once more for IE and hope it will update automatically from then on.
    Thanks
    p_p_s
    B.t.w., your email notificatioan says To post a reply, either reply to this email or ... but upon mail reply mail.sgaur.hosted.jivesoftware.com... is... sorry to have to inform you that your message could not be delivered

  • The directory service is missing mandatory configuration information, and is unable to determine the ownership of floating single-master operation roles.

    We are in the process of removing a child domain from the forest and are down to two DCs. These are both Server 2008r2 sp1 servers, one physical and virtual (PDC). When I try to remove a DC (not the PDC emulator) I get the following error:
    The operation failed because:
    Active Directory Domain Services could not transfer the remaining data in directory partition DC=DomainDnsZones,DC=mydomain,DC=local to
    Active Directory Domain Controller \\V-Svr03.mydomain.local.
    The directory service is missing mandatory configuration information, and is unable to determine the ownership of floating single-master operation roles."
    I have checked replication with repadmin /showrepl and all connections were successful. The dcdiag /test:kccEvent test on all servers passed.
    Most DCdiag tests are successful. The only failure is on NCSecDesc when running dcdiag /test:NCSecDesc
       Testing server: Default-First-Site\DC1-DEV-OFC
          Starting test: NCSecDesc
             Error NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS doesn't have
                Replicating Directory Changes In Filtered Set
             access rights for the naming context:
             DC=ForestDnsZones,DC=hookemup,DC=local
             ......................... DC1-DEV-OFC failed test NCSecDesc
    In researching this I find "If you do not plan to add an RODC to the forest, you can disregard this error."
    We have not successfully run ADprep /rodcPrep nor do we plan on having any Read-Only DCs, so I think we can ignor this error. We did try running ADprep /rodcPrep but got an LDAP error which I can duplicate if this is important.
    Schema and Naming FSMOs are on a DC higher in the forest. RID, PDC, and Infrastructure FSMOs for the child domain are on the Virtual server (PDC).
    Any guidance on where to go from here would be greatly appreciated as I have no more hair on my head to pull.

    Ok... I ran repadmin /showreps /v again and it shows no errors
    C:\>repadmin /showreps /v
    Default-First-Site\DC1-DEV-OFC
    DSA Options: IS_GC
    Site Options: (none)
    DSA object GUID: b294c59f-8b46-4133-89c5-0f30bfd49607
    DSA invocationID: 1054285d-cffe-42b4-8074-e2d44adbb151
    ==== INBOUND NEIGHBORS ======================================
    CN=Configuration,DC=mydomain,DC=local
        Default-First-Site\HESTIA via RPC
            DSA object GUID: b464fde9-29d7-4490-9582-fe9270050d50
            Address: b464fde9-29d7-4490-9582-fe9270050d50._msdcs.mydomain.local
            DSA invocationID: afea3845-9fa8-40a6-a477-84348a206348
            SYNC_ON_STARTUP DO_SCHEDULED_SYNCS WRITEABLE
            USNs: 16381490/OU, 16381490/PU
            Last attempt @ 2012-10-29 13:52:39 was successful.
        Default-First-Site\V-SVR03 via RPC
            DSA object GUID: 53018cc4-b8c9-48ce-9a54-1b987e7b08c8
            Address: 53018cc4-b8c9-48ce-9a54-1b987e7b08c8._msdcs.mydomain.local
            DSA invocationID: 45de2c10-ec8b-443d-a645-db4e0a352a23
            SYNC_ON_STARTUP DO_SCHEDULED_SYNCS WRITEABLE
            USNs: 114817/OU, 114817/PU
            Last attempt @ 2012-10-29 13:52:39 was successful.
        Default-First-Site\V-SVR01 via RPC
            DSA object GUID: e2f794eb-9658-4bad-b695-3d8c08f46371
            Address: e2f794eb-9658-4bad-b695-3d8c08f46371._msdcs.mydomain.local
            DSA invocationID: 07bb0fe9-bca9-46d1-92ce-308d36da478d
            SYNC_ON_STARTUP DO_SCHEDULED_SYNCS WRITEABLE
            USNs: 66047/OU, 66047/PU
            Last attempt @ 2012-10-29 13:52:39 was successful.
        Default-First-Site\ATHENA via RPC
            DSA object GUID: cb00a5b0-6dea-473c-bb42-19356dd9ed36
            Address: cb00a5b0-6dea-473c-bb42-19356dd9ed36._msdcs.mydomain.local
            DSA invocationID: 57313a9c-46a2-4b94-87cc-b3f91d54faed
            SYNC_ON_STARTUP DO_SCHEDULED_SYNCS WRITEABLE
            USNs: 8098197/OU, 8098197/PU
            Last attempt @ 2012-10-29 13:52:39 was successful.
    CN=Schema,CN=Configuration,DC=mydomain,DC=local
        Default-First-Site\ATHENA via RPC
            DSA object GUID: cb00a5b0-6dea-473c-bb42-19356dd9ed36
            Address: cb00a5b0-6dea-473c-bb42-19356dd9ed36._msdcs.mydomain.local
            DSA invocationID: 57313a9c-46a2-4b94-87cc-b3f91d54faed
            SYNC_ON_STARTUP DO_SCHEDULED_SYNCS WRITEABLE
            USNs: 8097482/OU, 8097482/PU
            Last attempt @ 2012-10-29 13:52:39 was successful.
        Default-First-Site\V-SVR01 via RPC
            DSA object GUID: e2f794eb-9658-4bad-b695-3d8c08f46371
            Address: e2f794eb-9658-4bad-b695-3d8c08f46371._msdcs.mydomain.local
            DSA invocationID: 07bb0fe9-bca9-46d1-92ce-308d36da478d
            SYNC_ON_STARTUP DO_SCHEDULED_SYNCS WRITEABLE
            USNs: 65239/OU, 65239/PU
            Last attempt @ 2012-10-29 13:52:39 was successful.
        Default-First-Site\V-SVR03 via RPC
            DSA object GUID: 53018cc4-b8c9-48ce-9a54-1b987e7b08c8
            Address: 53018cc4-b8c9-48ce-9a54-1b987e7b08c8._msdcs.mydomain.local
            DSA invocationID: 45de2c10-ec8b-443d-a645-db4e0a352a23
            SYNC_ON_STARTUP DO_SCHEDULED_SYNCS WRITEABLE
            USNs: 114149/OU, 114149/PU
            Last attempt @ 2012-10-29 13:52:39 was successful.
        Default-First-Site\HESTIA via RPC
            DSA object GUID: b464fde9-29d7-4490-9582-fe9270050d50
            Address: b464fde9-29d7-4490-9582-fe9270050d50._msdcs.mydomain.local
            DSA invocationID: afea3845-9fa8-40a6-a477-84348a206348
            SYNC_ON_STARTUP DO_SCHEDULED_SYNCS WRITEABLE
            USNs: 16381373/OU, 16381373/PU
            Last attempt @ 2012-10-29 13:52:39 was successful.
    DC=ForestDnsZones,DC=mydomain,DC=local
        Default-First-Site\V-SVR01 via RPC
            DSA object GUID: e2f794eb-9658-4bad-b695-3d8c08f46371
            Address: e2f794eb-9658-4bad-b695-3d8c08f46371._msdcs.mydomain.local
            DSA invocationID: 07bb0fe9-bca9-46d1-92ce-308d36da478d
            SYNC_ON_STARTUP DO_SCHEDULED_SYNCS WRITEABLE
            USNs: 66295/OU, 66295/PU
            Last attempt @ 2012-10-29 13:57:48 was successful.
        Default-First-Site\ATHENA via RPC
            DSA object GUID: cb00a5b0-6dea-473c-bb42-19356dd9ed36
            Address: cb00a5b0-6dea-473c-bb42-19356dd9ed36._msdcs.mydomain.local
            DSA invocationID: 57313a9c-46a2-4b94-87cc-b3f91d54faed
            SYNC_ON_STARTUP DO_SCHEDULED_SYNCS WRITEABLE
            USNs: 8098367/OU, 8098367/PU
            Last attempt @ 2012-10-29 13:58:13 was successful.
        Default-First-Site\V-SVR03 via RPC
            DSA object GUID: 53018cc4-b8c9-48ce-9a54-1b987e7b08c8
            Address: 53018cc4-b8c9-48ce-9a54-1b987e7b08c8._msdcs.mydomain.local
            DSA invocationID: 45de2c10-ec8b-443d-a645-db4e0a352a23
            SYNC_ON_STARTUP DO_SCHEDULED_SYNCS WRITEABLE
            USNs: 115032/OU, 115032/PU
            Last attempt @ 2012-10-29 13:58:25 was successful.
        Default-First-Site\HESTIA via RPC
            DSA object GUID: b464fde9-29d7-4490-9582-fe9270050d50
            Address: b464fde9-29d7-4490-9582-fe9270050d50._msdcs.mydomain.local
            DSA invocationID: afea3845-9fa8-40a6-a477-84348a206348
            SYNC_ON_STARTUP DO_SCHEDULED_SYNCS WRITEABLE
            USNs: 16381653/OU, 16381653/PU
            Last attempt @ 2012-10-29 13:58:34 was successful.
    DC=mySUBdomain,DC=local
        Default-First-Site\V-SVR03 via RPC
            DSA object GUID: 53018cc4-b8c9-48ce-9a54-1b987e7b08c8
            Address: 53018cc4-b8c9-48ce-9a54-1b987e7b08c8._msdcs.mydomain.local
            DSA invocationID: 45de2c10-ec8b-443d-a645-db4e0a352a23
            SYNC_ON_STARTUP DO_SCHEDULED_SYNCS WRITEABLE
            USNs: 114871/OU, 114871/PU
            Last attempt @ 2012-10-29 13:54:02 was successful.
    DC=DomainDnsZones,DC=mySUBdomain,DC=local
        Default-First-Site\V-SVR03 via RPC
            DSA object GUID: 53018cc4-b8c9-48ce-9a54-1b987e7b08c8
            Address: 53018cc4-b8c9-48ce-9a54-1b987e7b08c8._msdcs.mydomain.local
            DSA invocationID: 45de2c10-ec8b-443d-a645-db4e0a352a23
            SYNC_ON_STARTUP DO_SCHEDULED_SYNCS WRITEABLE
            USNs: 114017/OU, 114017/PU
            Last attempt @ 2012-10-29 13:52:39 was successful.
    DC=mydomain,DC=local
        Default-First-Site\V-SVR03 via RPC
            DSA object GUID: 53018cc4-b8c9-48ce-9a54-1b987e7b08c8
            Address: 53018cc4-b8c9-48ce-9a54-1b987e7b08c8._msdcs.mydomain.local
            DSA invocationID: 45de2c10-ec8b-443d-a645-db4e0a352a23
            SYNC_ON_STARTUP DO_SCHEDULED_SYNCS
            USNs: 114017/OU, 114017/PU
            Last attempt @ 2012-10-29 13:52:39 was successful.
        Default-First-Site\HESTIA via RPC
            DSA object GUID: b464fde9-29d7-4490-9582-fe9270050d50
            Address: b464fde9-29d7-4490-9582-fe9270050d50._msdcs.mydomain.local
            DSA invocationID: afea3845-9fa8-40a6-a477-84348a206348
            SYNC_ON_STARTUP DO_SCHEDULED_SYNCS
            USNs: 16381614/OU, 16381614/PU
            Last attempt @ 2012-10-29 13:56:52 was successful.
        Default-First-Site\V-SVR01 via RPC
            DSA object GUID: e2f794eb-9658-4bad-b695-3d8c08f46371
            Address: e2f794eb-9658-4bad-b695-3d8c08f46371._msdcs.mydomain.local
            DSA invocationID: 07bb0fe9-bca9-46d1-92ce-308d36da478d
            SYNC_ON_STARTUP DO_SCHEDULED_SYNCS
            USNs: 66325/OU, 66325/PU
            Last attempt @ 2012-10-29 13:58:34 was successful.
        Default-First-Site\ATHENA via RPC
            DSA object GUID: cb00a5b0-6dea-473c-bb42-19356dd9ed36
            Address: cb00a5b0-6dea-473c-bb42-19356dd9ed36._msdcs.mydomain.local
            DSA invocationID: 57313a9c-46a2-4b94-87cc-b3f91d54faed
            SYNC_ON_STARTUP DO_SCHEDULED_SYNCS
            USNs: 8098385/OU, 8098385/PU
            Last attempt @ 2012-10-29 13:58:38 was successful.

  • The report server has encountered a configuration error. Logon failed for the unattended execution account. (rsServerConfigurationError) Log on failed. Ensure the user name and password are correct. (rsLogonFailed) The user name or password is incorrect

    I am able to run the report fine in BIDS in the preview window, and it deployes fine.  When it goes to view the report in the browser, I get the following error.  There is no domain, I am using a standalone computer with SQL Server and SSRS on
    this one machine.
    Can anyone point to where I might configure the permission it is looking for?  thanks!  Steven
    The report server has encountered a configuration error. Logon failed for the unattended execution account. (rsServerConfigurationError)
    Log on failed. Ensure the user name and password are correct. (rsLogonFailed)
    The user name or password is incorrect
    Steven DeSalvo

    Hi StevenDE2012,
    Based on the error message "The report server has encountered a configuration error. Logon failed for the unattended execution account. (rsServerConfigurationError)", it seems that the Unattended Execution Account settings in Reporting Services
    Configuration is not correct.
    Reporting Services provides a special account that is used for unattended report processing and for sending connection requests across the network. Unattended report processing refers to any report execution process that is triggered by an event rather than
    a user request. The report server uses the unattended report processing account to log on to the computer that hosts the external data source. This account is necessary because the credentials of the Report Server service account are never used to connect
    to other computers. To configure the account, please refer to the following steps:
    Start the Reporting Services Configuration tool and connect to the report server instance you want to configure.
    On the Execution Account page, select Specify an execution account.
    Type the account and password, retype the password, and then click Apply.
    In addition, please verify you have access to the Report Server database by following steps:
    Go to SQL Server Reporting Services Configuration Manager, make sure the configuration is correct.
    Go to Database, Verify that you can connect to the database.
    Make sure you are granted public and RSExecRole roles.
    Reference:
    Configure the Unattended Execution Account
    Configure a Report Server Database Connection
    If the problem is unresolved, i would appreciate it if you could give us detailed error log, it will help us move more quickly toward a solution.
    Thanks,
    Wendy Fu

  • Majority of reports missing for non admin users

    I have followed the instructions here (SCCM 2012–Reporting in console for non-admins (Reporting User Role) v2) to allow non admin users the ability to view
    reports in the console. So far, so good. However, when viewing the reports with the non admin user, only about 100 of the 400+ reports appear.
    Am I missing something here?

    The custom reporting one in the link I provided, and also modified versions of the following:
    OS Deployment manager (removed rights to All driver related items (drivers and driver packages), Boot image packages (except read access), Operating system installation packages).
    Application Administrator (removed Application>Approve; Distribition Point>Set Security Scope; Distribution Point Group>Set Security Scope; Global Condition>Set Security Scope)
    The reports missing we care about primarily are Software ones (companies and products and files).

  • SAP LSO - Change Course in portal for Course admin role

    Hi Experts,
    I am implementing the SAP Leqarning solutions for a cleint.
    For the rescheduling process, in the portal , for the Course administrator role, I try to change the course dates and save then changes.
    A message "Course changed successfully" appears. Now when i check for the same course id in the backend R/3 , the old dates are still reflecting.
    R there any configurations to be done in the R/3 or portal for the same??
    Please help.
    Thanks!!
    Regards,
    Vijetha

    Anil,
    Check if the logged in portal user (course admin) has the necessary authorizations to change the course.
    Check for LSO_PV1A tcode authorization.
    Regards,
    Vijetha

  • The report server has encountered a configuration error. Logon failed for the unattended execution account. (rsServerConfigurationError) Log on failed. Ensure the user name and password are correct. (rsLogonFailed) Logon failure: unknown user name or bad

    The report server has encountered a configuration error. Logon failed for the unattended execution account. (rsServerConfigurationError)
    Log on failed. Ensure the user name and password are correct. (rsLogonFailed)
    Logon failure: unknown user name or bad password 
    am using Windows integrated security,version of my sql server 2008R2
    I have go throgh the different articuls, they have given different answers,
    So any one give me the  exact soluction for this problem,
    Using service account then i will get the soluction or what?
    pls help me out it is urgent based.
    Regards
    Thanks!

    Hi Ychinnari,
    I have tested on my local environment and can reproduce the issue, as
    Vaishu00547 mentioned that the issue can be caused by the Execution Account you have configured in the Reporting Services Configuration Manager is not correct, Please update the Username and Password and restart the reporting services.
    Please also find more details information about when to use the execution account, if possible,please also not specify this account:
    This account is used under special circumstances when other sources of credentials are not available:
    When the report server connects to a data source that does not require credentials. Examples of data sources that might not require credentials include XML documents and some client-side database applications.
    When the report server connects to another server to retrieve external image files or other resources that are referenced in a report.
    Execution Account (SSRS Native Mode)
    If you still have any problem, please feel free to ask.
    Regards
    Vicky Liu
    Vicky Liu
    TechNet Community Support

  • Background job fails for BDC profile creation and role assignment

    Hi Experts,
    I have created a BDC Function module for Tcode 'PFCG' for profile creation and role assignment, and called this FM in my zprogram. the problem is that when i run this program in foreground it executes succesfully, but if i schedule it in background it fails throwing error in job log 'Role 'Z...' does not contain any active authorizations'. But i have created one more program to create authorization objects which runs before this zprogram.I have also checked the authorization object in 'RSECADMIN', it reflects active. I dont understand whats happening exactly when it runs background.
    Below is the process of job
       1. ZMIS_AUTH_OBJECT_CREATE
           Variant : auth-create
       2. ZMIS_AUTH_ASSIGN_TO_ROLE
           Variant : auth-assign
    The problem is in second program, runs in foreground but fails in background.
    Code which i have written in my second program
    ***BDC for Profile creation and assignment to Roles
        CALL FUNCTION 'ZROLE'
          EXPORTING
           ctu                     = 'X'
           mode                    = p_mode
           UPDATE                  = 'L'
    *   GROUP                   =
    *   USER                    =
    *   KEEP                    =
    *   HOLDDATE                =
           nodata                  = '/'
            agr_name_neu_001        = wa_role-role_name
            text_002                = wa_role-desc
            text_003                = wa_role-desc
            text_004                = wa_role-desc
           value_01_005            = 'T-ML330881'
            h_fval_low_01_006       = wa_role-auth
            profn_007               = lv_profile
            ptext_008               = lv_text1
    * IMPORTING
    *   SUBRC                   =
         TABLES
           messtab                 = temp_message.
    ***Generation of Profile created
    CALL FUNCTION 'PRGN_AUTO_GENERATE_PROFILE_NEW'
         EXPORTING
           activity_group                      = wa_role-role_name
    *     PROFILE_NAME                        =
    *     PROFILE_TEXT                        =
          no_dialog                           = ' '
          rebuild_auth_data                   = ''
          org_levels_with_star                = ' '
          fill_empty_fields_with_star         = 'X'
          template                            = ' '
          check_profgen_tables                = 'X'
          generate_profile                    = 'X'
          authority_check_pfcg                = 'X'
       EXCEPTIONS
         activity_group_does_not_exist       = 1
         activity_group_enqueued             = 2
         profile_name_exists                 = 3
         profile_not_in_namespace            = 4
         no_auth_for_prof_creation           = 5
         no_auth_for_role_change             = 6
         no_auth_for_auth_maint              = 7
         no_auth_for_gen                     = 8
         no_auths                            = 9
         open_auths                          = 10
         too_many_auths                      = 11
         profgen_tables_not_updated          = 12
         error_when_generating_profile       = 13
         OTHERS                              = 14  .
    Experts please help me out its very urgent. your help is appreciated and rewarded. Thanking you in advance.
    Regards,
    Chetan

    Hi Praveen,
    Yeah definately, my requirement is that I have to access of some BI reports to certain users, so contract data will be downlaoded from ECC on application server, need to read that file from application server and for the each contract i ahould create a authorization object, role creation and assigning of role to the user and profile generation and activation.
    To achieve this i have written two programs
    1) ZMIS_AUTH_OBJECT_CREATE- This program will create the Authorization Object using BDC and Role creation Using the BAPI
    "" Creation of Authorization Object
    CALL FUNCTION 'ZAUTHOBJ'
            EXPORTING
             ctu                    = 'X'
             mode                   = p_mode
             UPDATE                 = 'L'
    *   GROUP                  =
    *   USER                   =
    *   KEEP                   =
    *   HOLDDATE               =
             nodata                 = '/'
             g_authname_001         = 'ZDUMMY_MIS'
              g_targetauth_002       = wa_tab-auth
              g_authtxt_003          = wa_tab-short_desc
              g_authtxtmd_004        = wa_tab-med_desc
             marked_04_005          = 'X'
              g_authtxt_006          = wa_tab-short_desc
              g_authtxtmd_007        = wa_tab-med_desc
             tctiobjnm_04_008       = 'ZBUS_UNIT'
              g_authtxt_009          = wa_tab-short_desc
              g_authtxtmd_010        = wa_tab-med_desc
             marked_05_011          = ''
             opt_01_012             = 'EQ'
              low_01_013             = wa_tab-bu
              g_authtxt_014          = wa_tab-short_desc
              g_authtxtmd_015        = wa_tab-med_desc
             marked_04_016          = 'X'
              g_authtxt_017          = wa_tab-short_desc
              g_authtxtmd_018        = wa_tab-med_desc
             tctiobjnm_04_019       = 'ZCONTRCT'
              g_authtxt_020          = wa_tab-short_desc
              g_authtxtmd_021        = wa_tab-med_desc
             marked_05_022          = ''
             opt_01_023             = 'EQ'
              low_01_024             = lv_contract
              g_authtxt_025          = wa_tab-short_desc
              g_authtxtmd_026        = wa_tab-med_desc
              g_authtxt_027          = wa_tab-short_desc
              g_authtxtmd_028        = wa_tab-med_desc
              g_authname_029         = wa_tab-auth
    * IMPORTING
    *   SUBRC                  =
           TABLES
             messtab                = temp_message.
    "" Creation of role
    LOOP AT it_role INTO wa_role.
          CLEAR wa_text.
          wa_text-text = wa_role-desc.
          wa_text-langu = 'E'.
          APPEND wa_text TO it_text.
          wa_jobrole-agr_name = wa_role-role_name.
          wa_parentrole-agr_name = 'ZM_CT_DUMMY_MIS'.
          wa_method-usmethod = 'CHANGE'.
          CALL FUNCTION 'ZBAPI_JOBROLE_CLONE'
            EXPORTING
              jobrole          = wa_jobrole
             parent           = wa_parentrole
             method           = wa_method
           TABLES
    *   RETURN           =
             shorttext     = it_text
    *   LONGTEXT         =
    *   MENU_NODES       =
    *   MENU_TEXTS       =.
        ENDLOOP.
    2) ZMIS_AUTH_ASSIGN_TO_ROLE - This program will generate the profile created assign it to the role.
      ""*BDC for Profile creation and assignment to Roles
        CALL FUNCTION 'ZROLE'
          EXPORTING
           ctu                     = 'X'
           mode                    = p_mode
           UPDATE                  = 'L'
    *   GROUP                   =
    *   USER                    =
    *   KEEP                    =
    *   HOLDDATE                =
           nodata                  = '/'
            agr_name_neu_001        = wa_role-role_name
            text_002                = wa_role-desc
            text_003                = wa_role-desc
            text_004                = wa_role-desc
           value_01_005            = 'T-ML330881'
            h_fval_low_01_006       = wa_role-auth
            profn_007               = lv_profile
            ptext_008               = lv_text1
    * IMPORTING
    *   SUBRC                   =
         TABLES
           messtab                 = temp_message .
       COMMIT WORK AND WAIT.
    ""*Generation of Profile created
      LOOP AT it_role INTO wa_role.
        CALL FUNCTION 'PRGN_AUTO_GENERATE_PROFILE_NEW'
         EXPORTING
           activity_group                      = wa_role-role_name
    *     PROFILE_NAME                        =
    *     PROFILE_TEXT                        =
          no_dialog                           = ' '
          rebuild_auth_data                   = ''
          org_levels_with_star                = ' '
          fill_empty_fields_with_star         = 'X'
          template                            = ' '
          check_profgen_tables                = 'X'
          generate_profile                    = 'X'
          authority_check_pfcg                = 'X'
       EXCEPTIONS
         activity_group_does_not_exist       = 1
         activity_group_enqueued             = 2
         profile_name_exists                 = 3
         profile_not_in_namespace            = 4
         no_auth_for_prof_creation           = 5
         no_auth_for_role_change             = 6
         no_auth_for_auth_maint              = 7
         no_auth_for_gen                     = 8
         no_auths                            = 9
         open_auths                          = 10
         too_many_auths                      = 11
         profgen_tables_not_updated          = 12
         error_when_generating_profile       = 13
         OTHERS                              = 14
        IF sy-subrc <> 0.
          MESSAGE ID sy-msgid TYPE sy-msgty NUMBER sy-msgno
                  WITH sy-msgv1 sy-msgv2 sy-msgv3 sy-msgv4.
        ENDIF.
      ENDLOOP.
    For creating authorization objects, role & profile i have created one dummy auth, dummy role & dummy profile respectively.
    i have created dummy objects to copy the roles from dummy object and assign the same to new Auth obj, role & profile.
    Let me know what needs to be done. because these both the programs run perfectly in foreground, but fails in background.
    Regards,
    Chetan

  • Configuring EDI Feature failing for BTS2k9

    Any pointers to fixing this solution will be greatly appreciated.
    OS:Win2k8R2
    BTS2k9
    Thanks
    [10:37:00 AM Error Configuration Framework]Feature: [BizTalk EDI/AS2 Runtime] Failed to configure with error message [<Exception Message="Failed to configure BizTalk EDI functionalities." Source="Microsoft.BizTalk.Configuration.EDIAS2.EdiHelper"
    HelpID="StrFailedToConfigEDI"><Exception Message="Failed to add a resource to a BizTalk application using BtsTask.exe." Source="Microsoft.BizTalk.Configuration.EDIAS2.Utility" HelpID="StrFailedBtsTaskAddResource"><Exception
    Message="Failed to execute process: C:\Program Files (x86)\Microsoft BizTalk Server 2009\btstask.exe." Source="Microsoft.BizTalk.Configuration.EDIAS2.Utility" HelpID="StrFailedToExecuteProcess"><Exception Message="Microsoft
    (R) BizTalk Application Deployment Utility Version 3.8.368.0&#xD;&#xA;Copyright (c) 2006 Microsoft Corporation. All rights reserved.&#xD;&#xA;&#xD;&#xA;Information: Adding resource (-Type='System.BizTalk:BizTalkAssembly' -Luid='Microsoft.BizTalk.Edi.BatchingOrchestration,
    Version=3.0.1.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35') to application 'BizTalk EDI Application'...&#xD;&#xA;Serialized BizTalk assembly 'Microsoft.BizTalk.Edi.BatchingOrchestration, Version=3.0.1.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35'
    from 'C:\Program Files (x86)\Microsoft BizTalk Server 2009\Microsoft.BizTalk.Edi.BatchingOrchestration.dll'.&#xD;&#xA;Information: Validating resources (count=1)...&#xD;&#xA;* Validating resource (-Type='System.BizTalk:BizTalkAssembly' -Luid='Microsoft.BizTalk.Edi.BatchingOrchestration,
    Version=3.0.1.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35')...&#xD;&#xA;Information: Performing change requests...&#xD;&#xA;Information: Calling BeginTypeChangeRequest for all selected resource types...&#xD;&#xA;PerformingBeginChangeRequest&#xD;&#xA;Updating
    resource (-Type='System.BizTalk:BizTalkAssembly' -Luid='Microsoft.BizTalk.Edi.BatchingOrchestration, Version=3.0.1.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35') in store.&#xD;&#xA;Information: * Performing change request on type 'System.BizTalk:BizTalkAssembly'
    (count=1)...&#xD;&#xA;Information: Assembly 'Microsoft.BizTalk.Edi.BatchingOrchestration, Version=3.0.1.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35' is not used by any other assemblies. Skipping pre-update operations.&#xD;&#xA;Information:
    Updating assembly 'Microsoft.BizTalk.Edi.BatchingOrchestration, Version=3.0.1.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35'...&#xD;&#xA;Information: Reading binding information for assembly 'Microsoft.BizTalk.Edi.BatchingOrchestration, Version=3.0.1.0,
    Culture=neutral, PublicKeyToken=31bf3856ad364e35'.&#xD;&#xA;Information: Successfully selected binding information.&#xD;&#xA;Information: Saved binding information to XML file 'C:\Users\administrator.EDITPS\AppData\Roaming\Microsoft\BizTalk
    Server\Deployment\BindingFiles\~Microsoft.BizTalk.Edi.BatchingOrchestration_3.0.1.0_neutral_31bf3856ad364e35.BindingInfo.xml'.&#xD;&#xA;Information: Updating binding information.&#xD;&#xA;ConnectionString='Data Source=10.150.93.220\node2;Initial
    Catalog=BizTalkMgmtDb;Integrated Security=True;Enlist=True;Application Name=Microsoft.BizTalk.ApplicationDeployment.Engine'&#xD;&#xA;Information: Updating send ports, send port groups, and receive ports...&#xD;&#xA;Information: Updating parties
    and enlistments...&#xD;&#xA;Information: Updating orchestration bindings...&#xD;&#xA;Information: Successfully updated binding information.&#xD;&#xA;Information: Deploy server='10.150.93.220\node2' database='BizTalkMgmtDb' assembly='C:\Users\administrator.EDITPS\AppData\Local\Temp\2\BT\PID1704\BizTalkAssembly\177a8c897a18d9a802d64909374b950a\Microsoft.BizTalk.Edi.BatchingOrchestration.dll'&#xD;&#xA;Warning:
    Assembly 'Microsoft.BizTalk.Edi.BatchingOrchestration, Version=3.0.1.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35' depends on the following assemblies that must be installed in the Global Assembly Cache for runtime to succeed:&#xD;&#xA;Assembly
    'Microsoft.BizTalk.Edi.BaseArtifacts, Version=3.0.1.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35'&#xD;&#xA;Assembly 'Microsoft.BizTalk.GlobalPropertySchemas, Version=3.0.1.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35'&#xD;&#xA;Error:
    Assembly 'Microsoft.BizTalk.Edi.BatchingOrchestration, Version=3.0.1.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35' references the following assemblies that must be deployed before deploying this assembly:&#xD;&#xA;Assembly 'Microsoft.BizTalk.GlobalPropertySchemas,
    Version=3.0.1.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35'&#xD;&#xA;Error: Deploy operation failed.&#xD;&#xA;''&#xD;&#xA;Assembly 'Microsoft.BizTalk.Edi.BatchingOrchestration, Version=3.0.1.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35'
    references the following assemblies that must be deployed before deploying this assembly:&#xD;&#xA;Assembly 'Microsoft.BizTalk.GlobalPropertySchemas, Version=3.0.1.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35'&#xD;&#xA;Error:  
     at Microsoft.BizTalk.Deployment.BizTalkAssembly.PrivateDeploy(String server, String database, String assemblyPathname, String applicationName)&#xD;&#xA;   at Microsoft.BizTalk.Deployment.BizTalkAssembly.Deploy(Boolean redeploy, String server,
    String database, String assemblyPathname, String group, String applicationName, ApplicationLog log)&#xD;&#xA;Error: Deploy operation failed.&#xD;&#xA;''&#xD;&#xA;Assembly 'Microsoft.BizTalk.Edi.BatchingOrchestration, Version=3.0.1.0,
    Culture=neutral, PublicKeyToken=31bf3856ad364e35' references the following assemblies that must be deployed before deploying this assembly:&#xD;&#xA;Assembly 'Microsoft.BizTalk.GlobalPropertySchemas, Version=3.0.1.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35'&#xD;&#xA;&#xD;&#xA;Information:
    PerformingEndChangeRequestsWithRollBack&#xD;&#xA;* Performing EndTypeChangeRequest for resource type 'System.BizTalk:BizTalkAssembly'.&#xD;&#xA;Error: Failed to add resource(s).&#xD;&#xA;Change requests failed for some resources.&#xD;&#xA;BizTalkAssemblyResourceManager
    failed to complete end type change request.&#xD;&#xA;Deploy operation failed.&#xD;&#xA;''&#xD;&#xA;Assembly 'Microsoft.BizTalk.Edi.BatchingOrchestration, Version=3.0.1.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35' references
    the following assemblies that must be deployed before deploying this assembly:&#xD;&#xA;Assembly 'Microsoft.BizTalk.GlobalPropertySchemas, Version=3.0.1.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35'&#xD;&#xA;&#xD;&#xA;&#xD;&#xA;Command
    failed with 1 errors, 0 warnings.&#xD;&#xA;&#xD;&#xA;" Source="Microsoft.BizTalk.Configuration.EDIAS2.Utility" HelpID="StrFailedToExecuteProcess" 
    SV

    Hi SV,
    You have already posted this issue 3 years back and the suggestion made their still holds good.
    Trouble Installing EDI/AS2 Runtime
    Also refer the thread where the user has faced same issue:
    BizTalk 2009 Configuration failing in EDI/AS2 runtime configuration
    As suggested, could be that somehow the Microsoft.BizTalk.GlobalPropertySchemas
    is not recognized by BizTalk when it configured EDI, though the dll still resides in the GAC folder.
    Go to BizTalk Administration console and try to manually add the assembly in the resources of "BizTalk Application 1"  application. Then try to configure EDI and hopefully this time you will be able to configure it without any problem.
    Rachit
    Please mark as answer or vote as helpful if my reply does

  • User-Specific Configuration for different named search role

    We need different user specific layout settings for each user. i have duplicated catalog user role for each user and maintained specific named search for that particular user in constraint. but when we want to configure specific layout for individual user. its not showing that catalog user in the catalog config UI for the layout configuration. please advice. if it shows that specific user then we would configure each specific user layout with individual look and feel ( like shopping lists, search fields, images, etc., ). thanks for your inputs.

    Answered

  • Datasources Missing when Installing Technical Content for BI Admin Cockpit

    Hi,
    I have installed the Technical Content for BI Admin Cockpit in our QA systems, for BI7, using SPRO, and it seems that there are some missing datasources, transfer rules, etc.,
    The one's that are missing are:
    => 0TCTPRCSVAR_TEXT
    => 0TCTPRCSVAR_ATTR
    => 0TCTBWOBJCT_TEXT
    => 0TCTBWOBJCT_ATTR
    Does anyone know if this is a known issue, that these are not available?
    Please let me know if they're required, and if there's a fix to get them back.
    Thanks,
    John

    Hi John,
    In my system the symptom is the same. So I just installed them myself in RSA1->BI Content.
    I don't think it's a big problem because the queries on the MultiProviders can run without these master data. For example, you may find the text of query is missing but you can see query's technical name.
    I remember when I activate 0TCTBWOBJCT_TEXT and 0TCTPRCSVAR_TEXT, these datasources are in BI 7 version but there's no transformation. So I create myself.
    Please let us know if you have other questions.
    Regards,
    Frank

  • Failed to load the configuration file for the workflow

    Hi experts, yesterday I created and publish custom workflow using SPD from client pc using site administrator account but today its shows error message. I tried creating new test workflows, edit and publish to think it will push a fresh SPD settings
    in working condition and it works pretty right.
    But the thing I noticed after closing SPD Im not able to re-open workflows and it gives the same error message Failed to load the configuration file for the workflow. This issue only happen today since day one  I used SPD and all the time
    Im using the same pc.
    Any ideas will be appreciated.
    Cheers, R2C3 ----------------------------------- starting sharepoint :)

    HI
    Maybe you have permission problem or there is invalid xoml murkup.
    To verify this from SharePoint Designer use the following steps.
    In Office SharePoint Designer, in the folder list, select the plus sign next to Workflows library to expand it
    1.Next select the plus sign of the workflow in question to expand it
    2.Double-click the configuration file (Workflow_name.xoml.wfconfig.xml) to open it
    3.Right-click on the page, and then select Verify well-formed XML
    4.Correct any errors and save the file
    5.Reopen the workflow to test
    Also double check that you are using SPD with the same credentials you created workflow
    Hope this will help.
    Regards,
    Marcin

Maybe you are looking for

  • Horizontal scroll in webdynpro java table

    Hello, I have a webdynpro java application in which i have a table with 15 columns. I have set the scrollableColCount property of the table to 5. Now on click of some link(LinkToAction), i want to scroll horizontally to column 8. Can i do this from t

  • PDF colour Aqua (RGB R0 G156 B156) not showing on SAFARI browser (IOS)

    i have an application that points to a PDF stored in a location and opens them up in web browser. when opening in safari, the PDF colours are getting reset. Aqua (RGB R0 G156 B156) is not showing up correctly. is this a known issue, is there a seprat

  • Why does imac G5 eject leopard install disk

    Why does imac G5 eject leopard install disk?  I'm trying to help my father get online to read the newspaper using an iMac G5 1.8 GHz 17".  I've installed a new hard drive and reinstalled software and rus software updates until I've reached 10.4.11 an

  • Rigging a pop-up and a check box to choose between 8 snapshots?

    I'm having a problem working out how to create the hierarchical rigs to choose between 8 snapshots. I have two sets of four snapshots: A, B, C, D and a, b, c, d I'd like to have a pop-up menu with four options: A, B, C, D I'd like a check box that is

  • Synchronous message monitoring

    Hi guys,    I want to know how to monitor successfuly processed synchronous messages as they are not shown in sxmb_moni. regards, keith.