Schema entry for Remote Management Policy
Does anybody know the schema entry for Remote Management Policy in a user
object? Specifically the entry that says "Use These Settings and Ignore
Remote Management Policy"?
Thanks!
Mike
On Wed, 20 Apr 2005 18:57:10 GMT, [email protected] wrote:
> Does anybody know the schema entry for Remote Management Policy in a user
> object? Specifically the entry that says "Use These Settings and Ignore
> Remote Management Policy"?
console one could tell you..
Marcus Breiden
Please change -- to - to mail me.
The content of this mail is my private and personal opinion.
http://www.edu-magic.net
Similar Messages
-
ZCM 11 Remote Management Policy Failed after Patch 2
Upgraded to Cumulative Agent Patch 2 on ZCM 11 and now my remote management policy fails. It keeps stating that it "Could not find a results file for remote management policy...."
Is anyone else having this issue?Dpogue,
This is being worked on, it's not related to the agent update as far as
we know - TID 7006354 has some details.
Shaun Pond -
Hi,
I have read a problem where the VPN between an ISP and ourselves started dropping sessions. I have rebuilt the crypto map and tried to dig deeper into my config and some basic troubleshooting while I await the ISP to respond.
Any ideas?
Thanks Steve
https://supportforums.cisco.com/thread/255085
http://www.cisco.com/en/US/products/ps6120/products_tech_note09186a00807e0aca.shtml#solution10
5 Jun 13 15:46:25 713904 IP = 209.183.xxx.xxx, Received encrypted packet with no matching SA, dropping
4 Jun 13 15:46:25 113019 Group = 209.183.xxx.xxx, Username = 209.183.xxx.xxx, IP = 209.183.xxx.xxx, Session disconnected. Session Type: IKE, Duration: 0h:00m:00s, Bytes xmt: 0, Bytes rcv: 0, Reason: crypto map policy not found
3 Jun 13 15:46:25 713902 Group = 209.183.xxx.xxx, IP = 209.183.xxx.xxx, Removing peer from correlator table failed, no match!
3 Jun 13 15:46:25 713902 Group = 209.183.xxx.xxx, IP = 209.183.xxx.xxx, QM FSM error (P2 struct &0xda90f540, mess id 0x76c09eb7)!
3 Jun 13 15:46:25 713061 Group = 209.183.xxx.xxx, IP = 209.183.xxx.xxx, Rejecting IPSec tunnel: no matching crypto map entry for remote proxy 172.16.0.0/255.255.240.0/0/0 local proxy 0.0.0.0/0.0.0.0/0/0 on interface outside
5 Jun 13 15:46:25 713119 Group = 209.183.xxx.xxx, IP = 209.183.xxx.xxx, PHASE 1 COMPLETED
6 Jun 13 15:46:25 113009 AAA retrieved default group policy (DfltGrpPolicy) for user = 209.183.xxx.xxx
6 Jun 13 15:46:25 713172 Group = 209.183.xxx.xxx, IP = 209.183.xxx.xxx, Automatic NAT Detection Status: Remote end is NOT behind a NAT device This end is NOT behind a NAT deviceAre you trying to send traffic destined towards the internet from 172.16.0.0/20 via this ASA as well? why? are you inspecting those traffic before being sent out to the internet?
If so, this end also needs to be configured with "any" as well --> crypto ACL needs to mirror image.
access-list outside_1_cryptomap extended permit ip any 172.16.0.0 255.255.240.0
Then you also need NAT on the outside interface, otherwise, traffic from 172.16.0.0/20 is not PATed to a public IP, and won't be able to reach the internet:
nat (outside) 1 172.16.0.0 255.255.240.0 -
How to use VNC-Client or sim. for remote management
Hi folks,
how can i use a VNC-Client to do a remote session with a ZCM10 RM-enabled
client ?
Any ideas ?
Regards
Thorstenthanks !!1
>>> Michael Fleming<[email protected]> schrieb am
Dienstag, 11. Januar 2011 um 14:06 in Nachricht
<[email protected]>:
> After you have set a Remote Management Policy (with VNC password) and
> assigned to the device, then run %appdata%\novell\ZENworks\Remote
> Management\bin\nzrViewer.exe. Put in device IP/DNS ~50. Done. -
Hi we're having an issue ever since our Windows Server 2008 ZCM server was updated from 11.1 to 11.2.
It looks like the remote management policy that we typically use no longer is effective.
The original policy was setup in a way that you did not have to require users consent to remote the machine. Now it does. When I do a properties on the agent in the remote management policy section, it shows up as recognizing only the default.
Any ideas?sflegnc,
It appears that in the past few days you have not received a response to your
posting. That concerns us, and has triggered this automated reply.
Has your problem been resolved? If not, you might try one of the following options:
- Visit http://support.novell.com and search the knowledgebase and/or check all
the other self support options and support programs available.
- You could also try posting your message again. Make sure it is posted in the
correct newsgroup. (http://forums.novell.com)
Be sure to read the forum FAQ about what to expect in the way of responses:
http://forums.novell.com/faq.php
If this is a reply to a duplicate posting, please ignore and accept our apologies
and rest assured we will issue a stern reprimand to our posting bot.
Good luck!
Your Novell Product Support Forums Team
http://forums.novell.com/ -
Rejecting IPSec tunnel: no matching crypto map entry for remote proxy
Hi!
I have already search for this but didn't get an exact answer I'm looking for so I try asking it again (if there is the same question).
I'm in process of migrating some VPN tunnels with from a Cisco router to an ASA, everything will keep the same but just the peering IP address. However, some of the tunnel was being torn down since it request for a proxy doesn't match the one configured on our side. And the remote peer said there is no such issue on the previous platform, but now they need to reset the tunnel from time to time.
Apr 18 2013 07:29:10 asa002 : %ASA-3-713061: Group = 192.168.1.226, IP = 192.168.1.226, Rejecting IPSec tunnel: no matching crypto map entry for remote proxy 192.168.1.226/255.255.255.255/0/0 local proxy 10.10.9.81/255.255.255.255/0/0 on interface outside
Apr 18 2013 07:29:10 asa002 : %ASA-3-713902: Group = 192.168.1.226, IP = 192.168.1.226, QM FSM error (P2 struct &0x745e9150, mess id 0x8d7ad777)!
Apr 18 2013 07:29:10 asa002 : %ASA-3-713902: Group = 192.168.1.226, IP = 192.168.1.226, Removing peer from correlator table failed, no match!
The remote peer said they did not change the proxy id on their side so it is possibly the old platform will just not setting up the SA without torn down the tunnel while the ASA on the new platform will torn down if there is any mismatch.
Anyway I have requested the remote side to remove those unmatched entried to avoid the tunnel being torn down, but if there any configuration that is related to this issue? i.e. Just bring up the SA with matched addresses and ignore others, instead of torn down the tunnel.
Thanks!!
//CodyAre you trying to send traffic destined towards the internet from 172.16.0.0/20 via this ASA as well? why? are you inspecting those traffic before being sent out to the internet?
If so, this end also needs to be configured with "any" as well --> crypto ACL needs to mirror image.
access-list outside_1_cryptomap extended permit ip any 172.16.0.0 255.255.240.0
Then you also need NAT on the outside interface, otherwise, traffic from 172.16.0.0/20 is not PATed to a public IP, and won't be able to reach the internet:
nat (outside) 1 172.16.0.0 255.255.240.0 -
Create entry for remote system necessary?
Hello,
is it necessary to start in CEN transaction RZ21 u2192 Technical infrastructure u2192 Configure Central System u2192 Create entry for remote system.
What is the result of this transaction and why is a <sid>adm user needed?
ThanksHello,
I take you mean you have a JMS queue created in an Oracle database (A) and you want to propagate messages to a JMS queue create in an Oracle database (B)?
If that is the case you use normal AQ propagation. You can follow <Note:102771.1> as an example changing the ADT as appropriate, etc.
MGW is only to be used for Oracle to 3rd-party propagation.
Thanks
Peter -
Hello,
I'm facing a problem here, l'd be grateful if someone could help me.
I'm trying to install Remote Manager in an environment that has Windows Server 2003 64-bits as the OS and Intel Xeon as a processor. The objective is to make Oracle Identity Manager to connect to Microsoft Exchange 2007.
In Oracle Documentation I found the following instruction:
"f Microsoft Exchange 2007 is running on 64-bit Microsoft Windows Server, then you must install the 64-bit version of JDK 1.4.2_15 or JDK 1.5 before you install the Remote Manager."
Here is the link for the documentation: http://download.oracle.com/docs/cd/E11223_01/doc.910/e11198/deploy.htm#BGBDIEAE
The problem is that both versions of JDK don't offer support for Xeon processors and just JDK 1.6 can be installed on architecture x64. (Windows)
Here is the link for Sun Website wich shows the supported architectures for JDK 1.5: http://java.sun.com/j2se/1.5.0/system-configurations.html
And for JDK 1.4.2_15: http://java.sun.com/j2se/1.4.2/system-configurations.html
Does anyone had this problem ever? Hope I can find some help in here.
Regards,
RichardThe remote manager is has not been certified with JDK 1.6.
This basically leaves you with two choices:
1. Install JDK 1.6 and see if the remote manager runs. If so you have to make the decision of either running an uncertified configuration or try to force Oracle to certify this JDK.
2. Wait until Oracle certifies JDK 1.6
I would recommend trying to install JDK 1.6 and run a full set of tests. Then make the decision on if you want to go to production or not.
Best regards
/Martin -
Effective Rights for Remote Management
How are an Administrator's Remote Management rights determined with regard to devices and users?
If an Administrator has Remote Control rights to a device, should they be able to remote control that device no matter what user is logged into it?
Conversely, if an Administrator has Remote Control rights to a user, should they be able to remote control that user no matter what device the user is logged into?
Thanks.Michelsr,
it's the most restrictive combination that's effective - allowing
things like:
1) you have a device policy that says "allow", but the CEO logins in
and his policy is set to "deny", then you cannot remote control him
2) you have machines that contain sensitive information, so they have a
policy that says "deny", and a user logs in that has a policy that says
"allow", you cannot access that session.
Shaun Pond -
Favicon.ico for Remote Manager ?
Hi,
any idea where to place the favicon for The NRM (Remote manager ?)
No clue where the document root for nrm is ...
I don't like these tons of error messages:
Jul 27 14:36:57 XXXX httpstkd[3526]: DATE=20090727123657 GMT HOST=XXXXX PROG=HTTPSTK LVL=Usage SRC.IP="XX.XX.XXX.XXX" SRC.PORT=XXXX PROT="HTTP" MSG="error code 302" STAT="GET" CMD="/favicon.ico" DUR=0
Thanks and Regards
eschaeferOn 27/07/2009 13:46, eschaefer wrote:
> any idea where to place the favicon for The NRM (Remote manager ?)
> No clue where the document root for nrm is ...
> I don't like these tons of error messages:
>
> Jul 27 14:36:57 XXXX httpstkd[3526]: DATE=20090727123657 GMT HOST=XXXXX
> PROG=HTTPSTK LVL=Usage SRC.IP="XX.XX.XXX.XXX" SRC.PORT=XXXX PROT="HTTP"
> MSG="error code 302" STAT="GET" CMD="/favicon.ico" DUR=0
I assume that currently the favicon being displayed is a green sphere in
a circle ... ?
If so you do not actually want to replace it because it's indicating the
status of the server - if you try and display
https://<server>:8009/favicon.ico you are redirected to
https://<server>:8009/sys/login/status_<condition>.gif where <condition>
should be normal but could be critical, warning, etc. These
status_<condition>.gif files correspond to those in /opt/novell/nrm (and
no you can't add a favicon.ico to that directory for it to be used
instead!). It's not Apache handling NRM so you can't configure it in
the same way.
HTH.
Simon
Novell Knowledge Partner (NKP)
Do you work with Novell technologies at a university, college or school?
If so, your campus could benefit from joining the Novell Technology
Transfer Partners (TTP) group. See www.novell.com/ttp for more details. -
Firewall ports needed for remote management?
Hey guys,
Does anyone know the ports needed so that I can remotely connect to other Win7 computer through compmgmt.msc, regedit, msinfo32, remote rsop.msc, etc? I think those are just rpc connections, but not sure. Is it tcp 135?
Thanks,
Dan
Dan HeimHi Dan,
Based on my research, remote desktop connections are via RDP instead of RPC, so the ports for Remote Desktop to work, 3389 and 443 are used mostly.
More information for you:
Overview of Remote Desktop Gateway
http://technet.microsoft.com/en-us/library/cc731150.aspx
What ports are used by a RDS deployment?
http://social.technet.microsoft.com/wiki/contents/articles/16164.what-ports-are-used-by-a-rds-deployment.aspx
Getting Remote Desktop to
work thru most firewalls
http://blog.jordanterrell.com/post/Getting-Remote-Desktop-to-work-thru-most-firewalls.aspx
Please Note: Since the web site is not hosted by Microsoft, the link may change without notice. Microsoft does not guarantee the accuracy of this information.
How RPC Works
http://technet.microsoft.com/en-us/library/cc738291(v=WS.10).aspx
Best Regards,
Amy Wang -
How to remove entries for Enterprise Manager farm ?
I installed the Oracle 10g application server middle tier
(Forms and Report Services) on one server and made a mistake in the instance name. I deinstalled it and installed it again with the correct instance name.
Note that my infrastructure (Identity mgmt + metadata)
is on a different server.
When I start the http://localhost:1810 , the EM shows
me both the bad entry and good entry instances.
How do I get rid of the bad entry so that it does
not show up in the EM web page ?
I tried looking thru oidadmin and removing the
bad entries from Entry Management and restarting all
processes but still no luck.
Any ideas appreciated
Sam KhopkarFirst of all, make a copy of your existing targets.xml
Then modify your targets.xml
Did you do a key word search of the bad name? There should be multiple places you will need to remove. such as:
<Target TYPE="oracle_apache" NAME="bad.host_HTTP Server" DISPLAY_NAME="HTTP_Server" VERSION="2.0">
</Target>
<Target TYPE="oracle_webcache" NAME="bad.host_Web Cache" DISPLAY_NAME="Web Cache">
</Target>
<Target TYPE="oc4j" NAME="bad.host_home" DISPLAY_NAME="home" VERSION="1.3">
</Target>
<Target TYPE="oracle_bc4j" NAME="bad.host_BC4J" DISPLAY_NAME="BC4J" VERSION="9.0.4">
</Target>
<Target TYPE="oracle_ias" NAME="bad.host" VERSION="1.0">
</Target>
<Target TYPE="oc4j" NAME="bad.host_OC4J_BI_Forms" DISPLAY_NAME="OC4J_BI_Forms">
</Target>
<Target TYPE="oracle_repserv" NAME="bad.host_Reports_Server:xxxx
</Target>
and other similar cases.
Then do "emctl reload" for reloading the interface. -
Important /standard Schemas & PCRs for Time Management
Dear Gurus,
I just completed my course and would like to explore more about Time Management.
I would be glad if any one of you could share the important and most used schemas/ PCR's of TIME MANAGEMENT in real time..
Looking forward to hear from you soon to put myself in to SAP soon
SathyaHi sathya,
For Time Mgt mainly you have to focus on Schemas TM00, TM04
and check the differences of those two,
go to PE02 & read document and concentrate on the below Pcrs.
TO20 Calculate overtime with quota 2007 01
TO10 Evaluate overtime approval in I0050
TO15 Evaluate overtime approval in daily WS
TO16 Determine overtime without approval
TW15 Overtime after x hours/day
Regards,
Sri
Edited by: Srini vas on Jul 14, 2009 3:33 PM -
Since updating to 10.8.1 (I'm currently on 10.8.2), my Mac Mini no longer wakes for network access.
That is, when I attempt to connect remotely to the computer (i.e., mac mini is at home, I am at work), the computer never wakes up.
I have an Airport Extreme 2011, I believe; I updated it to the latest firmware a week or two ago. (Now that I think about it, maybe it was after this firmware update that the Bonjour sleep prox stopped working?)
Ideas?
My system:
Mac Mini (2011) with 8gb RAM
[added 2nd hard drive -- SSD]
Mountain Lion 10.8.2
Connected via ethernet cable to an Airport Exreme (2011)Since upgrading to 10.8.2 I have had this issue.
I have 'Wake for Network Access' enabled but I am unable to wake my Mac Pro from my AppleTV2 using Home Sharing.
If I reset the PRAM, WOL works the first time the Mac goes to sleep but after that it wont work.
The Mac Pro still periodically wakes up (as in the fans and HDDs spin up, no GUI) to keep the network address alive but nothing can actually wake it, (except once on the first sleep after PRAM reset).
This was not an issue prior to 10.8.2.
I have also noticed since upgrading to 10.8.2 that after waking the Mac, it takes approximately 10-15 seconds for the network to re-connect. This is via a wired ethernet connection.
This also was not an issue prior to 10.8.2.
I really hope this is fixed with 10.8.3. -
What is best practice for remotely managing bank of switches over POTS
I need to be able to have a back door into several catalyst switches and ASA.
What is the best practice for accessing them remotely. ?Just place a modem into any console port. Ideally you use a terminal server, but is not always really needed.
Maybe you are looking for
-
Looking for a working app lock for BB Torch.
My kids love to use my phone. I want an app that has the option of locking sms, pictures or other media. The app I bought, totally didn't work. I thought it worked fine, asks for passwords, then when I got a text message I clicked on the new text mes
-
Persistant volume consistancy check problem
Recently installed new 750 gig hdd and partitioned it into 3 volumes- Snow Leopard/Aperture Library/Lion. Each system has the latest updates but problem predates updates and continues to occur. Using Drivepulse the Lion volume (which was a clean re-i
-
Exchange Rate Difference in PO with cost center assignment
Hi All, In case of exchange rate difference in a PO with a cost center assignment the system Do not post the difference in the exchange rate difference account (maintained under transaction type - KDM - in T-code OBYC). However if the PO is a normal
-
Unable to open Page Setup in CR11 in Design view
Hello, I am using crystal reports professional v11.0.0.1994. I am unable to open the Page setup from the File menu in this report. The Page setup function works for my other reports, just not this one. I do not want to have to recreate this report as
-
Crystal Reprot -Could not create shared cache
HI ALL, When i try to login into crystal reprot 9 I am getting bellow error. Could not create shared cache(0,0) when viewing a report in Crystal Reports. Could please provide me information