ROUTER RV042 and ProtectLink Service

I'm currently testing ProtectLink on my RV042, and found some  instances blocked that  I would like to know the IP of the workstation that originated such instance.
Is it possible with this particular model ??
Thanks in advance,
E. Fox

Can I bind SSL from the exchange server to WAN1 and SSL from all other internal IPs to WAN2 without much issue, or should I bind all SSL to the same WAN port?

Similar Messages

  • Wireless Router WRT54G and VPN RV042

    Respected member please help if u can! I have a ADSL with dynamic connected with wireless router wrt54g , i recently bought RV042 and want to connect wire coming from wireless with ports. so basically, i want to use RV042VPN using after router, is there a way i can use vpn behind wireless with port router using RV042
    i cannot be able to establish connect in vpn because it not seeking any ip neither WAN/LAN.
    Solved!
    Go to Solution.

    If you are getting a public ip address from the ADSL device then connect RV042 to the AdSL device and then configure the settings for wrt54g connected to RV042.with DHCP disbled and connected from LAN on RV to  lan On WRT.

  • CTI route point and CTI ports not registering - UCCX 10.5 and CUCM 10.5 - PARTIAL SERVICE

    I'm trying to integrate CUCM 10.5 and UCCX 10.5.
    For some reason CTI route point and CTI ports are not registering on the CUCM and the status of the UCCX is "PARTIAL SERVICE".
    On the UCCX Cisco Unified CCX Engine is in status "PARTIAL SERVICE" and the Unified CM Telephony Subsystem shows status "OUT OF SERVICE".
    I tried with completely new installation of UCCX twice and got the same result twice.
    But when I tried integrating UCCX 10 with the same CUCM 10.5 from above everything works fine and all the ports are registering right away.
    In all the cases I have done the same configuration.
    The versions of CUCM is 10.5.2.10000-5.
    The version of UCCX is 10.5.1.10000-24.
    The version of UCCX 10 with which it works fine is 10.0.1.11001-37.
    Does anyone have an idea what might be the problem?

    No I haven't. Unfortunately I don't have a 32bit Excel at the moment to try.
    Can you please tell me this: I'm installing a new BE6000 system that came with this problematic version of UCCX (10.5.1.10000-24). I have been testing during the weekend with 3 versions of UCCX:
    -10.0.1.11001-37
    -10.6.1.10000-39 and
    -10.5.1.10000-24
    I got the best results with version 10.0.
    Can I install that version (10.0) in BE6000 instead of the one that came preinstalled (10.5.1)?
    This is my first BE6000 installation and I'm not sure if this is OK?
    I installed a newer version of CUCM than the one that came preinstalled because I hit bug CSCup60269 but I'm not sure If I can go to a lower version for CCX.

  • Bad experience with Verizon Fios Internet and Customer Service

    I had an extremely bad experience with Verizon Fios Internet service and I will never use Verizon again. 
    In August 2014, I called and installed the Verizon Fios Internet and phone bundle. I asked the customer agent several times if I will be charged anything before the installation of the Internet and phone service. She said, 'No, we will only start charging after the Internet and phone are installed at your apartment'. I went to the store and picked up the router and phone and installed it at home by myself. The router did not work. I called Tech support and they said it will take several days for another available agent to come and look into the issue. I decided to discontinue the service and closed the account that same night.
    At the end of the month, I received a bill of $80 of activation fee for the internet service. Nothing was ever activated, my internet router did not work, and I got charged an activation fee for a service that I did not even start using. From August to December, I called customer service over 10 times and some of them said they will waive it while the others said it's a non-refundable activation fee. One lady said, 'Ma'am, the activation fee starts when you placed the order, the warehouse received it and packed the router in the boxes....' Isn't that ridiculous? If that's the case, please ask all your customer representative to say a clause before new customers open their account: Are you aware that you will be charged a non-refundable activation fee once you open the account regardless of whether or not you use the service or not. 
    So after 3 months (November 2014), I decided to get out of all these troubles and paid off my $80 activation fee. They put the bill in the collection agency and I called them and paid the overdue balance. Then in December 2014, I received a statement saying I have a $3.11 overdue balance. The collection agency told me that they will charge me for the whole activation fee and a $3 transaction fee for the transaction. So now Verizon came back and said I owed them the $3 because I paid the collection agency their transaction fee. 
    I am very disappointed and furious about the whole Verizon operating system. Charging a customer for an activation fee for a service s/he has not consumed or used does not make any business sense. In addition, they do not know how to coordinate with the collection agency on overdue bills. Give the customer a heads-up that they will be charged a transaction fee on top of the overdue balance, and that transaction fee does not count towards clearing the balance. 
    I have completely lost my confidence in Verizon albeit the many good feedback from my friends. 

    Hi crystallau52,
    Sorry you are having difficulty. An agent with access to your account will reach out to you directly by email, private message in the Forums and/or the billing telephone number on your Verizon account for more information or to help you resolve your issue.

  • WS-Security and proxy service: Unable to add security token for identity

    What the reason of "Unable to add security token for identity" fault in this situation (10.3.1):
    I did simple "hello word" proxy service and tried to apply custom policy binding.
    WS-Policy is next:
    <wsp:Policy wsu:Id="WS-Policy-Siebel"
         xmlns:sp="http://docs.oasis-open.org/ws-sx/ws-securitypolicy/200702"
         xmlns:wsp="http://schemas.xmlsoap.org/ws/2004/09/policy"
         xmlns:wsu="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-utility-1.0.xsd">
         <wssp:Identity
              xmlns:wssp="http://www.bea.com/wls90/security/policy">
              <wssp:SupportedTokens>
                   <wssp:SecurityToken
                        TokenType="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-username-token-profile-1.0#UsernameToken">
                        <wssp:UsePassword
                             Type="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-username-token-profile-1.0#PasswordText" />
                   </wssp:SecurityToken>
              </wssp:SupportedTokens>
         </wssp:Identity>
    </wsp:Policy>
    Process WS-Security is setted to "yes".
    While debugging I see that all works fine - I can authenticate with defined credentials and breakpoints in proxy service flow works fine.
    But at the end I get the fault:
    Soap fault:
    <env:Envelope xmlns:env="http://schemas.xmlsoap.org/soap/envelope/">
    <env:Header/>
    <env:Body>
    <env:Fault>
    <faultcode>env:Server</faultcode>
    <faultstring>Unable to add security token for identity</faultstring>
    </env:Fault>
    </env:Body>
    </env:Envelope>
    In console:
    <09.06.2010 17:39:18 MSD> <Error> <OSB Security> <BEA-387023> <An error ocurred during web service security inbound response processing [error-code: F
    ault, message-id: 1721282272521583996--57dc4ccc.1291cc2282d.-7fab, proxy: OSB Project WS-Security/WSSecurityService, operation: NewOperation]
    --- Error message:
    <env:Envelope xmlns:env="http://schemas.xmlsoap.org/soap/envelope/"><env:Header/><env:Body><env:Fault><faultcode>env:Server</faultcode><faultstring>Un
    able to add security token for identity</faultstring></env:Fault></env:Body></env:Envelope>
    weblogic.xml.crypto.wss.WSSecurityException: Unable to add security token for identity
    at weblogic.wsee.security.wss.SecurityPolicyDriver.processIdentity(SecurityPolicyDriver.java:175)
    at weblogic.wsee.security.wss.SecurityPolicyDriver.processOutbound(SecurityPolicyDriver.java:73)
    at weblogic.wsee.security.wss.SecurityPolicyDriver.processOutbound(SecurityPolicyDriver.java:64)
    at weblogic.wsee.security.WssServerHandler.processOutbound(WssServerHandler.java:88)
    at weblogic.wsee.security.WssServerHandler.processResponse(WssServerHandler.java:70)
    Truncated. see log file for complete stacktrace
    Incoming soap message is:
    <soapenv:Envelope      xmlns:soapenv="http://schemas.xmlsoap.org/soap/envelope/">
    <soap:Header      xmlns:soap="http://schemas.xmlsoap.org/soap/envelope/">
    <wsse:Security      soap:mustUnderstand="1" xmlns:wsse="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-secext-1.0.xsd">
    <wsse:UsernameToken      wsu:Id="unt_TNNp0cBwU7HyPKoq" xmlns:wsu="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-utility-1.0.xsd">
    <wsse:Username>testuser</wsse:Username>
    <wsse:Password      Type="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-username-token-profile-1.0#PasswordText">testuser</wsse:Password>
    </wsse:UsernameToken>
    </wsse:Security>
    </soap:Header>
    <soapenv:Body>
    <wss:NewOperation      xmlns:wss="http://www.troika.ru/Enterprise/WSSecurityService/">
    <in>string</in>
    </wss:NewOperation>
    </soapenv:Body>
    </soapenv:Envelope>
    Edited by: Andrey L. on Jun 9, 2010 5:55 PM

    I thought you were getting that exception when accessing the proxy.
    No. Authentification works fine. Proxy body works fine. But at the end of proxy appears the exception.
    Sorry for my english - I tried to show this situation on image: http://imglink.ru/show-image.php?id=9c0e0c1719f00289faf11696c6703bc3
    Are you getting this exception when routing to a business service which is configured for WS-Security ??
    I don't use business service in this test project - only simple proxy service with all logic inside.
    PS transformation in replace action is very simple too:
    (:: pragma bea:global-element-parameter parameter="$newOperation1" element="ns0:NewOperation" location="WSSecurityService.wsdl" ::)
    (:: pragma bea:global-element-return element="ns0:NewOperationResponse" location="WSSecurityService.wsdl" ::)
    declare namespace ns0 = "http://www.troika.ru/Enterprise/WSSecurityService/";
    declare namespace xf = "http://tempuri.org/OSB%20Project%20WS-Security/Hello/";
    declare function xf:Hello($newOperation1 as element(ns0:NewOperation))
    as element(ns0:NewOperationResponse) {
    <ns0:NewOperationResponse>
    <out>Hello, { data($newOperation1/in) }!</out>
    </ns0:NewOperationResponse>
    declare variable $newOperation1 as element(ns0:NewOperation) external;
    xf:Hello($newOperation1)
    Edited by: Andrey L. on Jun 10, 2010 12:21 PM

  • Non-ISP DDNS with Apple DHCP and DNS Services

    I have two questions about Dynamic DNS (DDNS) as it applies to Apple's DNS and DHCP services within my home network. I am not talking about DDNS in the context of making my external-facing router available by a domain name on the Internet using the dynamically-assigned IP from my ISP.
    Starting with Snow Leopard Server, I attempted to use Apple's DNS and DHCP services (I have the firmware-based DHCP service in my router turned off.) The difficulty I immediately faced was that Apple's DHCP implementation didn't update the DNS service as IPs were handed out to DHCP clients. Because of this, it wasn't possible to access hosts by their hostname, since getting a DHCP-assigned dynamic IP at boot-up didn't do anything to automagically register the hostname-to-IP mapping in DNS. Manually registering the hostname in DNS was pointless, becuase over time the client IP address can and did change. I could create static IP assignments based on the MAC address, but doing that for all of the devices on my home network sort of defeated the purpose of using dynamic IPs.
    The only solution I eventually found was to go out and get an open source DHCP server, compile it for my Mac, install it, and configure it. After doing this, everything worked great; every time a new host or other device was booted it got a dynamic IP through DHCP, and then the DHCP server automatically updated Apple's DNS serive with the hostname and assigned IP. I could immediately access every device on my network by hostname. As IP addresses changed over time, the hostname-to-IP mapping in DNS was automatically updated.
    Except, Apple's point upgrades kept breaking my non-Apple DHCP install. Every time I applied software updates to my server I had to go back and re-finagle DHCP to get it to automatically start and run. By the time Lion Server came out, I drank the Kool-Aid and went back to Apple's DHCP implementation. I was disappointed that it still didn't seem able to update DNS with hostnames as it assigned IPs, but I was so tired of mucking about at the command prompt to fix DHCP every time Software Updates broke it, I just lived with the inconvenience of not being able to access devices on my network by hostname.
    I'm sorry to say this, but Windows Server has had this capability since at least server 2003. In fact, until I dumped my Windows Server and switched to Snow Leopard Server, I was running Microsoft's DNS and DHCP services on Server 2003 and they did exactly what I'm describing brilliantly.
    Can anyone offer any advice here? Does Mountain Lion's implementation of DHCP allow for DDNS updates to the DNS service? If not, how are other people handling this? Should I go back to running Windows Server for my DNS and DHCP services? My Netgear WNDR3700 router appears to have the standard, substandard DHCP server in firmware as most home routers, and no facility for DNS at all--much less the ability to update an on-site DNS sever with IP addresess it hands out. In fact, the only appliance I know of that does this is the InfoBlox my employer uses, but that's too expensive for a home solution.
    As a Post Script, I'll add that I've been VERY unhappy that I lost the ability to bind Windows clients to Open Directory under Lion Server. Since I'm starting to see articles that say this capability hasn't been added back to Mountain Lion Server, I'm seriously considering implementing a Windows Server AD master and establishing a "magic triangle" or "golden triangle". If I end up having to do that, I wonder if I might as well just go back to using Microsoft's DNS and DHCP services.

    Hi,
    Whether to move your DHCP to another server depends on the workload of your server. If there are too many clients on the network, you should move your DHCP to another server.
    Did the record which owned by the machine generate before you configure the DnsUpdateProxy group? You can try to regenerate the record and check the result.
    For more detailed information, you can view the link below.
    DNS best practices
    http://technet.microsoft.com/en-us/library/cc778439(v=ws.10).aspx
    Using DNS servers with DHCP
    http://technet.microsoft.com/en-us/library/cc787034(v=ws.10).aspx
    DNS registration changes for Windows Server 2003 based DHCP Servers
    http://technet.microsoft.com/en-us/library/ee441167(v=ws.10).aspx
    Hope this helps.
    Steven Lee
    TechNet Community Support

  • Router WebVPN and client certificate

    Hello!
    In my test lab I can't to make work my webvpn configuration =\
    I have several components: MS AD, MS CS (but without NDES), router 2911 and client computer. Client and router have a certificate from MS CS. In my configuration I use authentication by certificate or aaa (LDAP) and authentication by aaa working good. But authentication by client certificate doesn't work. And my internal https services don't work also -  "Invalid or no certificate", but this strange because I imported CA certificate for this.
    Can you help me make it works?
    My 2911 version:
    Cisco IOS Software, C2900 Software (C2900-UNIVERSALK9-M), Version 15.1(3)T, RELEASE SOFTWARE (fc1)
    My Config:
    aaa authentication login webvpn group ldap local
    ip local pool webvpn 192.168.200.1 192.168.200.254
    bind authenticate root-dn cn=webvpn,ou=staff,dc=domain,dc=com password P@ssw0rd
    webvpn gateway vpn
    ip address <ip address> port 4443
    ssl trustpoint root-ca
    inservice
    webvpn install svc flash0:/webvpn/anyconnect-dart-win-2.5.3055-k9.pkg sequence 1
    webvpn context employee
    ssl authenticate verify all
    login-message "VPN Portal"
    policy group policy1
       url-list "inside"
       functions svc-enabled
       filter tunnel VPN-SPLIT
       svc address-pool "webvpn" netmask 255.255.255.0
       svc default-domain "domain.com"
       svc keep-client-installed
       svc split dns "domain.com"
       svc split include 192.168.0.0 255.255.0.0
       svc dns-server primary 192.168.1.1
       svc dns-server secondary 192.168.1.2
       citrix enabled
    virtual-template 1
    default-group-policy policy1
    aaa authentication list webvpn
    gateway vpn
    authentication certificate
    username-prefill
    ca trustpoint root-ca
    user-profile location flash0:/userprof
    inservice
    crypto pki trustpoint root-ca
    enrollment terminal
    revocation-check none
    rsakeypair root-ca
    I imported certificate from pkcs12 with CA certificate.
    From my debug (this is happend then i try to access to my webvpn portal and I choose my certificate from MS CS for access)
    Jun  5 11:22:39: WV: validated_tp :  cert_username :  matched_ctx :
    Jun  5 11:22:39: WV: failed to get sslvpn appinfo from opssl
    Jun  5 11:22:39: WV: failed to get sslvpn appinfo from opssl
    Jun  5 11:22:39: WV: Error: No certificate validated for the client
    Can anybody explain me why it doesn't work?

    Hi,
    did you find any solution for this? As I am in it seems the same situation now.
    I am testing it with Cisco 2911 - IOS version 151-3.T4 and last anyconnect client for Android (Samsung Galaxy S III mobile)
    Thanx for any advice/help
    Pavel

  • Which is Best... Connect Devices to Airport Extreme OR Modem/Router? And Which is Best for DHCP/NAT?

    I have a modem/router from the ISP and have just purchased an Airport Extreme to use for the WIFI instead of the modem/router.
    I have 3 other devices on the network connected to the modem/router via ethernet: AppleTV, Smart Blueray Player and a NAS drive.
    So I have the modem/router in DHCP/NAT mode, and Airport Extreme in Bridged mode.
    But I wondered if the Airport Extreme should be in DHCP/NAT, the other 3 devices connected to that via Ethernet, and the modem/router in bridged mode.
    Which is better, or are they the same?
    Thanks

    So I have the modem/router in DHCP/NAT mode, and Airport Extreme in Bridged mode.
    This would be the simplest, correct way to configure your network.
    Unless you need some special feature from the AirPort Extreme....that would require that the AirPort Extreme handle DHCP and NAT service.....like the Guest Network feature......then it would probably be best to keep things simple and leave them "as is" on your network.
    Either the modem needs to be in Bridge Mode and the AirPort Extreme handles DHCP and NAT.....or.....the modem/router handles DHCP and NAT and the AirPort Extreme is setup in Bridge Mode.
    it does not really matter which device handles DHCP and NAT as long as your feature requirements are being met on the network.
    Personally, I strongly prefer to use a simple modem....not a modem/router....and another separate router to control the network. But, your ISP may not offer that option.

  • Homesite 5.0-5.5 and Customer Service sucks balls!!!

    It is obvious that Adobe does not look through their own
    Forum Message board crap, as they requested for me to go for
    support. If so, they would have answers to the questions that I
    would need; in which I see ppl having the same problem as I do back
    2006. (So I would like to say your system and Customer service is
    B.S).
    Okay to my problem:
    What I want to do is have Homesite 5.5 installed on my new
    machine from our old machine. One of the problem is that the serial
    number that shows up (when I click on "help" and "about homesite")
    indicates per customer service and sales, that it is for Homesite
    5.0. Even tho in my face it says version 5.5, so basically they are
    saying i'm lying. Yes, it is upgraded from 5.0, but i provide what
    i see and what i see is the serial number that is provided under
    version 5.5.
    Anyways, sorry for giving somewhat the long version of my
    issue. I just want to know if anyone had the same issue and figure
    a way around this.
    Thanks,

    Folks, I'm sorry to hear of your bad experiences both with
    installation and support. I'll make one point of clarification: I
    don't think Adobe ever promises to provide support themselves in
    the forums. Rather, the forums are watched by experienced users
    (some formally, some informally) who try to answer questions when
    they can.
    In this case, since you're having licensing issues, I've not
    piped up myself because I haven't had the problems or helped
    someone resolve them. Perhaps someone else may chime in. Again,
    there are no promises.
    Now, that may tick someone off, especially if they want help
    just getting a product installed. But to that I would say that
    Adobe has always offered free installation support. Perhaps the
    folks you reached in support didn't suggest that, but check out
    http://www.adobe.com/support/programs/customer/gss.html
    There are some caveats about how many times you can use it.
    Perhaps you both have exceeded that, but if not, it seems worth
    going down that route. Perhaps it would also take you different
    people than you reached before. Hope that's helpful.

  • Can anyone help me what is the use of business and proxy service in osb?

    Hi,
    I am new in Osb what is the use of business service and proxy service in osb.
    I know little bit proxy service is used for actual message flow. I saw some project proxy service invoking the (using service callout,routing and publish) service,but the wsdl of the services of the proxy and business service is same.
    Please can anyone explain the flow while executing through soapUI?(that means it will hit 1st business services or proxy service)
    I have this project structure
    business service
    1.reference.biz----> this is the wsdl of ex:reference.wsdl
    2.external.biz----> this is the wsdl of ex:external.wsdl
    proxy service
    1.referece.proxy--->this is the wsdl of ex:reference.wsdl(in this proxy we are routing to reference.biz proxy service both contains same wsdls why?)
    xqueries of request and response.
    Best Regards,
    Raju.
    Edited by: 996674 on Apr 2, 2013 10:53 PM

    Hi Raju,
    Proxy Service - It is the starting point of you OSB application which deal with receiving messages, inducing logic in it like transformation, if-else, replace, java call outs,etc. You can put in your program logic here and then invoke a business service to route it to your Database or to any other queue as per your requirement.
    Business Service - It is generally used for routing purposes, like inserting the input in your Database or sending it to a different queue or BPEL process, etc..
    Cheers,
    Rit

  • Dynamic routing for a Business Service with multiple operations

    I have two business services with multiple operations. Business service A (bsA) has operations OpA1 and OpA2. Business service B (bsB) has operations OpB1 and OpB2.
    Depending on incoming Proxy message and operation, I have to do one of the following
    1. If someValue = A and operation= Op1 then invoke operation opA1 of bsA
    2. If someValue = B and operation= Op1 then invoke operation opB1 of bsB
    3. If someValue = C and operation= Op1 then invoke operation opA1 of bsA AND* operation opB1 of bsB and return aggregate data of both invocations
    1. If someValue = A and operation= Op2 then invoke operation opA2 of bsA
    2. If someValue = B and operation= Op2 then invoke operation opB2 of bsB
    3. If someValue = C and operation= Op2 then invoke operation opA2 of bsA AND* operation opB2 of bsB and return aggregate data of both invocations
    Using a dynamic route node or dynamic routing options, I am able to achieve cases 1, 2, 4, and 5.
    But for cases 3 & 6, I can not use a route node. When I use a Service call out instead, then I am forced to create a Operational branch but that does not seem like the best design since for every new operation added to the business services, I have to add a new branch to the Operational branch and redo all the functionality for that branch.
    Basically, I am looking to achieve the functionality of the Route node ( no need to specify the operation ).
    Any thoughts/ideas on what the best design would be?
    thanks

    For cases 3 & 6, why don't you route to another proxy service where you can simple do two service callouts, merge output data somehow and return them to the first proxy?
    If you look for "special route feature", that could possibly call two services for a single message, I'm afraid you won't succeed.

  • Re-route sales and cost of sales for shipments to vendors.

    We are increasing a process where we will ship raw materials to a vendor, they will use this material in production for a finished good that the vendor will sell back to us.  It is not sub-contracting, since we would sell these raw materials in bulk.  This is also not our normal course of business, so we can not have these shipments mixed in with our regular sales and cost of sales accounts.
    We would like to ship these materials out on a delivery and set up a receivable from our vendor, but do not want to record the billing / pgi transaction in regular sales / cost of sales.  We have a method to re-route the sales, but from the cost of sales side the possibilities I see are only valuation class.
    Does anyone else have a good process for re-routing sales and cost of sales where the process will consistantly re-route cost of sales whenever the sales account is re-reouted?
    Thank you!

    Hi Elex,
    I Appriciate your interest in giving clarity while posting a thread.
    Since you are already using REFX and SD is not implemeted, the best option is go a head with REFX module only.
    Try to create a saparate Contract type as "Real Estate RES. Sales" and create various conditions related to "Sales" based on your business requirement, (Because we dont have any special pricing procedure to adopt in this ).
    As per my understanding you can use the below conditions as an example :
    RE Sale Price
    RE Sales  Installment
    RE Sales Discount
    RE Sales Commission...etc. based on your pricing you can add the conditions.
    All the above charges you can make as one time charges based on your business requirement except Sales installment.
    Even though rental objectis sold but the propery is located in your premises you mught have provideing some services to the sold property as well, so you can add one more condition type as
    RE Common maintenence / Annual maintenence charges( which is recurring ).
    Adopting this process in REFX module will be one best advise for RE SALES.
    Based on your requirmeent you can integrate the REFX with PS ( for new devolopments / constructions / porjects ) & Pm modules for services.
    Since you are already using REFX leasing process its like entention of the existing process.Hope it may helps you.
    Regards,
    Subbarao.Narne

  • Are "Back to My Mac" FTP and SSH services visible to "everyone"?

    With the MobileMe "Back to my Mac" service, I can establish SSH terminal and SFTP connections from my Mac Mini at home to my Mac Pro at my work.  The SSH (Remote Login) and SFTP (File Sharing) services are enabled under System Preferences -->  Sharing.
    Does this make the SFTP and SSH services on my Mac visible/accessible to anyone else?  I like using "Back to my Mac" because it is simple and it uses key exchange for authentication when connecting.  However, I'm concerned that by enabling the SFTP and SSH services under Sharing, I'm also opening these services up to anyone who can see them.  Is this true, and if so, how can I maintain the security of my computers?
    Thanks in advance,
    jjw

    OK, besides putting me to sleep, the BTMM description seems to indicate that it is your MobileMe password that is important when making BTMM connections through a home NAT router.
    BTMM does open a port through the router, but if I understand correctly, it does not listen for ssh, or vnc, or afp protocols, but rather for the BTMM IPsec secure tunnel to be established, and then all the BTMM supported servers travel over the IPsec secure tunnel.  NOTE: the paper was putting me to sleep, so I could have this wrong.
    Kerberos is used for authentication of the IPsec tunnel.
    What I'm thinking is that if your Mac stays behind a home NAT router, or corporate firewall (that allows BTMM to work), then the important password is your MobileMe password.   If the Mac goes out in public, then all your Mac OS X user account (and guest) passwords need to be strong (where longer is better).
    A GRC Shields-UP probe will not check all possible ports.  If BTMM is running and all the standard ports are marked as stealth, then BTMM is using a non-standard port (as in one GRC does not check by default).  That makes it more difficult for someone to find your NAT router and then your Mac.  While this is NOT security, it does add some difficulty to the intruder's attempts at finding you.
    AGAIN, I did not fully understand the BTMM paper, so "Your Mileage May Vary" with respect to my analysis acccuracy.

  • My LMS 3.2 won't detect Switch 29xx , router 39xx and 7200

    Hi ,
    my LMS 3.2 won't detect  my new Switchs 29xx , router 39XX and my 7200 router !!!!
    Thanks

    First thing you would want to do is upgrade to the latest device package for Common Services (MDF).  That can be done under CS > Software Center > Device Update, check CiscoWorks Common Services and Check For Updates.
    You can also use CLI commands (my preference) for this:
    PSUCli.bat -p cmf -d -dst c:\psu_download -all  (will download common services packages to c:\psu_download\cmf)
    PSUCli.bat -p cmf -install -src c:\psu_download\cmf -all  (will install the packages)
    Use the supported device table below to confirm if your devices are or aren't supported:
    www.cisco.com/en/US/docs/net_mgmt/ciscoworks_lan_management_solution/3.2/device_support/table/lms32sdt.html

  • My envy 110 works but the web services and eprint services give "connection error". what to do?

    My family use  Macs and Apple Deskbook and a BT Homehub network. The HP troubleshooting instructions do not always match what is on computer screen. The menu paths that HP gives sometimes do not exist.
    The Envy 110 printer was working fine but it often could not be found by the computers so I followed HP instructions to set a Static IP Address on the Printer. But now the Web Service and ePrint Service give a "connection error".    Any suggestions? I am annoyed that HP don't give a phone number to help.

    When you set that static IP on the printer, make sure of 2 things:
    1. The IP address is outside the DHCP range of the router.
    2. Use an external DNS, like Google DNS: 8.8.8.8 and 8.8.4.4
    Say thanks by clicking "Kudos" "thumbs up" in the post that helped you.
    I am employed by HP

Maybe you are looking for