Server slowdown after spam attack...

One of our users set their password to "1234" on Sunday.  We were dumped on with 3.6 million messages before we discovered it and shut the account down on Tuesday.  We have cleared the postfix queue of all the offending messages, but the server is still having an issue.
When you reboot the machine, everything seems okay for about a couple of minutes, then it starts slowing down to the point where you can't even login to a terminal session.  Email services work during this time, but connections start timing out in a few minutes and your back to a largely unresponsive machine.  The activity viewer doesn't show any one high CPU process.
I'm wondering if there might be some corruption in the cyrus stuff.  Running on a Dual 1.8Ghz G5, 4Gig RAM, pair of 400Gig HD drives.
Not sure where to go from here.  Suggestions?

Well, here is the solution, as unbelievable as it sounds.
I narrowed the problem down to when the SA was set to receive incoming mail.  If I left the mail server up and running, and unchecked the "allow incoming mail", the server was stable.  Only when incoming mail was turned on would things get goofy.
That pretty much narrows it down to the smtpd process in postfix.
I copied the smtpd executable from another working server (same version) and replaced it on the problem server.  Problem solved.  The smtpd must have gotten corrupted during the spam attack.  It was located:
/usr/libexec/postfix
Server has been running smoothly for 12 hours now after 4 days of up and down every 3 minutes.

Similar Messages

  • Apache page serving slowdown after 10.4.6 update

    Not sure which section I should have put this under so thought I'd start here.
    My version of apache as installed with Tiger (which I use as a production server) was working fine with both php and MySQL. After the update, my local site when accessed through Safari via Bonjour is now as slow as a crippled snail! Pages are eventually served several minutes after the request is made. This is a nightmare!
    I really would love to know why this is happening? If anybody can shed any light on what might be causing this I will be very grateful. If I need to post more info please let me know.
    This is what the log says when I stop and then restart Apache:
    [Fri May 5 01:32:04 2006] [notice] caught SIGTERM, shutting down
    Processing config directory: /private/etc/httpd/users/*.conf
    [Fri May 5 01:32:07 2006] [warn] module mod_php4.c is already added, skipping
    [Fri May 5 01:32:07 2006] [notice] Apache/1.3.33 (Darwin) PHP/4.3.6 configured -- resuming normal operations
    [Fri May 5 01:32:07 2006] [notice] Accept mutex: flock (Default: flock)
    When I check the httpd.conf file I can see why I get the module mod_php4 warning. However, I don't think this is causing the slowdown as I haven't changed the conf file in ages and the server has been running just fine up until the update.
    Thanks.
    G4 Dual 867MHz   Mac OS X (10.3.9)   1.5 GB RAM
    G4 Dual 867MHz   Mac OS X (10.3.9)   1.5 GB RAM

    No answer as yet, so if anybody reading this could tell me where I would have been better off posting this I would be very grateful.
    TIA,
    Lol

  • Can't Stop Intense SPAM Attack

    Hello,
    As of the past day or two, I've started encountering so major SPAM attacks to one of our multiple servers. We have a mail server on the domain, but this one isn't it (as its only used for QTSS streaming and some web hosting).
    Basically, I first noticed it when I got two seperate emails from postmasters saying to fix the problem, and then noticed "smtp" showing up on "top" continuously and draining the CPU. So far, I've tried turning the web server off and on, turning the mail server off and on, keeping the mail server on with SMTP with closed relay, and nothing has worked. Eventually, I had to set up a firewall to block port 25 incoming and outgoing which has seemed to solve the problem (but there are continuing entries related to MX records in the system.log every minute).
    I noticed that before this started, there were tons of 404's lookin for formmail.cgi and some php mail client, and then since there's been no odd web traffic at all. I've also checked /tmp and /var/tmp, and nothing out of the ordinary either. Otherwise, this is what i've been seeing in system.log:
    With firewall off:
    Dec 31 03:35:35 xserve2 lmtpunix[15146]: warning: unable to post message for user: colin, mail is not enabled for this user
    With firewall off and making the colin account:
    Dec 31 03:36:21 xserve2 postfix/smtpd[13569]: warning: 218.248.240.72: hostname nda-svr-mta-out-01.bsnl.net.in verification failed: Host not found
    Dec 31 03:36:22 xserve2 postfix/qmgr[13546]: warning: premature end-of-input on private/smtp socket while reading input attribute name
    Dec 31 03:36:22 xserve2 postfix/qmgr[13546]: warning: private/smtp socket: malformed response
    Dec 31 03:36:22 xserve2 postfix/qmgr[13546]: warning: transport smtp failure -- see a previous warning/fatal/panic logfile record for the problem description
    With firewall on:
    Dec 31 14:06:51 xserve2 postfix/smtp[22534]: warning: valid_hostname: empty hostname
    Dec 31 14:06:51 xserve2 postfix/smtp[22534]: warning: malformed domain name in resource data of MX record for altavista.net:
    Dec 31 14:07:03 xserve2 postfix/smtp[22232]: warning: valid_hostname: empty hostname
    Dec 31 14:07:03 xserve2 postfix/smtp[22232]: warning: malformed domain name in resource data of MX record for ayhoo.com:
    If anyone could help, I'd most MOST grateful, as we do use the php mail command on one of our big sites hosted on that server and obviously that whole system is down right now...
    ----- EDIT -----
    It seems as though the smtp is still coming up even with port 25 firewall on.
    The firewall looks like its blocking a TON of packets, but the smtp is still utilizing over 80% of my CPU.

    Hey MrHoffman,
    Again, thanks for all the help with this... its very appreciated over here. It's a major university website as well, so last thing we want is to be blacklisted.
    I had a look through ipfw.log just now and can see the incoming blocking from late last night through today... some sample lines:
    Dec 30 23:38:38 xserve2 ipfw: 65534 Deny TCP 194.106.141.85:20782 204.194.30.246:25 in via en1
    Dec 30 23:38:38 xserve2 ipfw: 65534 Deny TCP 62.41.48.171:42706 204.194.30.246:25 in via en1
    Dec 30 23:38:38 xserve2 ipfw: 65534 Deny TCP 65.54.246.103:7820 204.194.30.246:25 in via en1
    Dec 30 23:38:38 xserve2 ipfw: 65534 Deny TCP 85.31.177.235:55054 204.194.30.246:25 in via en1
    Dec 30 23:38:38 xserve2 ipfw: 65534 Deny TCP 194.109.127.153:3302 204.194.30.246:25 in via en1
    Dec 30 23:38:38 xserve2 ipfw: 65534 Deny TCP 129.15.3.86:34962 204.194.30.246:25 in via en1
    Dec 30 23:38:38 xserve2 ipfw: 65534 Deny TCP 217.174.202.185:15703 204.194.30.246:25 in via en1
    Now in addition to that, last night when incoming 25 was still open and then I locked it, all the ipfw denials were to port 25. Now... today, there are more ports as well during the big spikes of ipfw problems today.. here's a set:
    25, 135 -139, 445, 1026, 6050, 33438, 49423-4
    Needless to say, looking at all of the entires, is that the IPs are all over the map (and definitely not on our 204.194.30.x or 128.2.103.x) so it does indeed look like it's coming from the outside. The good news is that right now, all smtp processes and outgoing problems have stopped completely, and the only thing happening is this once in a while spike of incoming packets like the logs above. It starts out of nowhere, keeps going for around 15-45 min, and then just stops, but at least nothing's coming in. For the time being just in case, i've locked off port 25 outgoing as well, since I did conclude that when this started happening, I discovered that the all the outgoing spam was coming out of postfix, given the millions (yes millions) of emails in que in /var/spool/postfix. But as of now looking at the network stats using cacti and some other methods, we've found that the past few days, our outgoing bandwidth was between 200Kb/s to 2Mb/s sustained during the ordeal, but it's now down to under 20Kb/s patches, mainly from me doing admining.
    As of right now, SMTP incoming is unchecked and authentication required is set in the mail pane in server admin, and the "accept SMTP relays from only..." checkbox is checked with only 127.0.0.1/32 listed, but this doesn't seem to help at all the second I open up incoming port 25... so I would think that the relay is closed, but it just doesn't seem to help... unless I'm missing something?
    With that said, I'd totally be for doing a basic firewall!
    I use one here at home (a netgear FVS114), although I have cable internet here, and wasn't sure if I would be able to just use the same kind of router-esque firewall like that at school and just run the LAN network port into the WAN and connect the LAN ports to our server room switch?
    Meanwhile, I did get computing services involved mid afternoon, and someone's actually there today and the ball seems to be rolling. I have them cc'd on the board post so hopefully they'll gain some insight from all the great help on here so far.
    Thanks again!

  • Exchange 2010 server and anonymous spam

    Force all users to change their passwords.
    Ensure you do not have a open relay internally and externally as well.
    Enable logs in your router to check for traffic on port 25.

    Hi Guys, i've been having this issue for some time now.
    The queue viewer in exchange keeps filling up to 100+ emails which were unable to send
    -The from address is always
    -the source is always local
    ip is always 255.255.255.255
    -subject is "automatic reply:
    I've Checked the server for viruses
    -Disabled Delivery reports(non deliver report spam attack)
    at this point i'm starting to suspect someone on the network may have a rootkit or some spammer may have gotten a hold of a password of a user.
    anyone else have this issue?
    whats the best way to approach this?
    This topic first appeared in the Spiceworks Community

  • Hi blog server is under DDoS attack.

    Hi blog server is under DDoS attack. It is nginx with fastcgi with wordpress. Any idea how to tune nginx to reduce damage?

    James Spong wrote:
    make sure that all users have strong passwords with a combination of caps,
    lowercase number and letters. This is especially important for 'core' addresses, such as root, admin, > info etc
    Wait a minute. You should *never* allow remote (external) login for root. If you really must then
    setup dsa ssh keys and disallow access via password & disable use of PAM in /etc/sshd_config
    and limit root access to local IPs (ie: IP ranges owned by your ISP for example).
    Same is true for admin.
    _Do NOT send or receive email as root !!!_
    As for properly securing ssh, better to login as a non-admin account and then su to your admin account.
    Don't use "admin" for your admin account-name.
    And yes of course use strong passwords, but you want to get away from allowing ssh access via password anyway.
    It's not as perfect as I'd like (couldn't edit it after the fact), but see my post about securing ssh
    http://discussions.apple.com/thread.jspa?messageID=7082312&#7082312

  • Internal Server Error after implemeting a Merged Appl_top

    Hi folks,
    I have been plagued by an issue since a long time. I'm implementing a merged appltop on sun solaris (5.10) on 11.5.10.2
    Basically its a clone of two nodes into a single node. After merging, the services are coming up good. Apache is running well. But when opening the AppsLogin page, it is blowing up saying Internal Server Error.
    When looked into the mod_jserv.log, it shows the below error.
    [07/02/2012 10:28:28:718] (ERROR) ajp12: Servlet Error: OracleJSP: oracle.jsp.provider.JspCompileException: Errors compiling:/d05/ufindev/ufindevcomn1/_pages/_oa__html//_AppsLocalLogin.java<TABLE BORDER=1 WIDTH=100%><TR><TH>Line #</TH><TH>Error</TH></TR><TR><TD WIDTH=7% VALIGN=TOP>259<TD> isRtl(java.lang.String) has protected access in oracle.apps.fnd.sso.SessionMgr if (SessionMgr.isRtl(langCode)) {                                 </TD></TR></TABLE>
    [07/02/2012 10:28:28:718] (ERROR) an error returned handling request via protocol "ajpv12"
    [07/02/2012 10:28:28:718] (INFO) balance: continuing to u64findev.motel6.com:16440
    [07/02/2012 10:28:28:719] (ERROR) balance: 10297 internal servlet error in server u64findev.motel6.com:16440
    [07/02/2012 10:28:28:719] (ERROR) an error returned handling request via protocol "balance"
    Any idea whats going wrong?
    Thanks,
    Lakshman.
    Edited by: 912983 on Feb 7, 2012 1:54 PM

    Have you completed all the steps in (Cloning Oracle Applications Release 11i with Rapid Clone [ID 230672.1] -- Reducing the number of Nodes of a Multi-Node System (merge APPL_TOP)) and (Sharing the Application Tier File System in Oracle Applications Release 11i [ID 233428.1] -- Section 4: Merging existing APPL_TOPs into a single APPL_TOP) with no errors?
    Can you find any errors in the database log file?
    Was AutoConfig completed successfully?
    Please clear the server cache as per (How To Clear Server Cache and Bounce Apache (Web Server)? [ID 295484.1]) and check then.
    Also, please see these docs.
    Insternal server error After Patch9578141 CPU PATCH FOR JULY 2010 [ID 1221603.1]
    Accessing web pages, randomly get Internal Server Error [ID 1374874.1]
    Internal Server Error When Trying To Enter The Processed Date In The Adjust Form [ID 549511.1]
    Thanks,
    Hussein

  • I am trying to link my PC to my Mac and Iphone and I pad. I can't use my Itunes account on my PC - when I try and enter Icloud on my computer i get a server error after I put in my e-mail and password.

    Question - Trying to use Icloud on a PC - I get a server error after I put in my e-mail and password. Why? I can sync up all my devices from Itunes with my MaC, Iphone and IPad but I can't do it with my PC

    I regret that you're having trouble setting up your email, corbad! You're on the right track with your incoming email address. You might also try incoming.verizon.net or incoming.yahoo.verizon.net as possible alternatives, and 995 as the port number. Please let me know how that goes!
    DionM_VZW
    Follow us on Twitter www.twitter.com/vzwsupport

  • IE is not showing on windows server 2008 after updates

    Hi,
    I have installed Window server 2008 R2.
    After installing i found IE 8 on the server, but after 1day it automatically updated some softwares and now IE is not showing on my system.
    i.e IE uninstalled after the updates to the windows server.
    Please can some one help me to get the IE. I tried installing IE8, IE9 after downloading but it is showing "Internet Explorer 8 is not supported on this operating system"
    Regards
    Krishna

    Hi,
    Internet Explorer 8 runs on any of the following operating systems: 
    Windows Vista, 32-bit versions      
    Windows Vista, 64-bit versions      
    Windows Vista with Service Pack 1 (SP 1) or a later version      
    Windows XP, 32-bit versions with Service Pack 2 (SP2) or a later version      
    Windows XP Professional, 64-bit Edition      
    Windows Server 2003, 32-bit versions with Service Pack 2 (SP2) or a later version      
    Windows Server 2003, 64-bit versions with Service Pack 2 (SP2) or a later version      
    Windows Server 2008, 32-bit, or a later version      
    Windows Server 2008, 64-bit, or a later version 
    Please expand the below path to check whether IE is there:
    C:\Program Files\Internet Explorer
    Regards,
    Yan Li
    Regards, Yan Li

  • 500 Internal Server Error after JSP trys to invoke a BPEL Process

    I get the 500 Internal Server Error after hitting the submit button on my displayed JSP screen. Did somebody had already the same error:
    Thanks
    The JSP Source is:
    <%@ page contentType="text/html;charset=windows-1250"%>
    <%@page import="java.util.Hashtable" %>
    <%@page import="com.oracle.bpel.client.Locator" %>
    <%@page import="com.oracle.bpel.client.NormalizedMessage" %>
    <%@page import="com.oracle.bpel.client.dispatch.IDeliveryService" %>
    <html>
    <head>
    <meta http-equiv="Content-Type" content="text/html; charset=windows-1250"/>
    <title>hello</title>
    </head>
    <body><form action="hello.jsp" method="get">
    <input type="text" name="text"/>
    <input type="submit" value="Submit" name="submit"/>
    </form>
    <%
    String text = request.getParameter("text");
    if(text != null)
    String xml="<ns1:HelloWorldProcessProcessRequest xmlns:ns1=\"http://xmlns.oracle.com/HelloWorldProcess\">";
    xml+="<ns1:input>"+text+"</ns1:input></ns1:HelloWorldProcessProcessRequest>";
    Hashtable jndi = new Hashtable();
    jndi.put(javax.naming.Context.PROVIDER_URL, "ormi://localhost/orabpel");
    jndi.put(javax.naming.Context.INITIAL_CONTEXT_FACTORY, "com.evermind.server.rmi.RMIInitialContextFactory");
    jndi.put(javax.naming.Context.SECURITY_PRINCIPAL, "oc4jadmin");
    jndi.put(javax.naming.Context.SECURITY_CREDENTIALS, "welcome1");
    jndi.put("dedicated.connection", "true");
    Locator locator = new Locator("default","bpel",jndi);
    IDeliveryService deliveryService = (IDeliveryService)locator.lookupService (IDeliveryService.SERVICE_NAME );
    // construct the normalized message and send to oracle bpel process manager
    NormalizedMessage nm = new NormalizedMessage( );
    nm.addPart("payload", xml );
    deliveryService.post("HelloWorldProcess", "initiate", nm);
    out.println( "BPELProcess initiated!<br>" );
    %>
    </body>
    </html>
    The application log looks like that:
    at oracle.jsp.runtimev2.JspServlet.internalService(JspServlet.java:591)
    at oracle.jsp.runtimev2.JspServlet.service(JspServlet.java:515)
    at javax.servlet.http.HttpServlet.service(HttpServlet.java:856)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.http.ServletRequestDispatcher.invoke(ServletRequestDispatcher
    .java:711)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.http.ServletRequestDispatcher.forwardInternal(ServletRequestDispatcher
    .java:368)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.http.HttpRequestHandler.doProcessRequest(HttpRequestHandler
    .java:866)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.http.HttpRequestHandler.processRequest(HttpRequestHandler
    .java:448)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.http.HttpRequestHandler.serveOneRequest(HttpRequestHandler
    .java:216)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.http.HttpRequestHandler.run(HttpRequestHandler.java:117)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.http.HttpRequestHandler.run(HttpRequestHandler.java:110)
    at oracle.oc4j.network.ServerSocketReadHandler$SafeRunnable.run(ServerSocketReadHandler.java:260)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].util.ReleasableResourcePooledExecutor$MyWorker.run(ReleasableResourcePooledExecutor
    .java:303)
    at java.lang.Thread.run(Thread.java:595)
    Caused by: java.net.ConnectException: Connection refused: connect
    at java.net.PlainSocketImpl.socketConnect(Native Method)
    at java.net.PlainSocketImpl.doConnect(PlainSocketImpl.java:333)
    at java.net.PlainSocketImpl.connectToAddress(PlainSocketImpl.java:195)
    at java.net.PlainSocketImpl.connect(PlainSocketImpl.java:182)
    at java.net.SocksSocketImpl.connect(SocksSocketImpl.java:366)
    at java.net.Socket.connect(Socket.java:507)
    at java.net.Socket.connect(Socket.java:457)
    at java.net.Socket.<init>(Socket.java:365)
    at java.net.Socket.<init>(Socket.java:207)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.rmi.RMIClientConnection.createSocket(RMIClientConnection
    .java:682)
    at oracle.oc4j.rmi.ClientSocketRmiTransport.createNetworkConnection(ClientSocketRmiTransport.java:58)
    at oracle.oc4j.rmi.ClientRmiTransport.connectToServer(ClientRmiTransport.java:78)
    at oracle.oc4j.rmi.ClientSocketRmiTransport.connectToServer(ClientSocketRmiTransport.java:68)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.rmi.RMIClientConnection.connect(RMIClientConnection.java
    :646)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.rmi.RMIClientConnection.sendLookupRequest(RMIClientConnection
    .java:190)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.rmi.RMIClientConnection.lookup(RMIClientConnection.java:174
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.rmi.RMIClient.lookup(RMIClient.java:283)
    ... 22 more
    at com.oracle.bpel.client.util.ExceptionUtils.handleServerException(ExceptionUtils.java:82)
    at com.oracle.bpel.client.delivery.DeliveryService.getDeliveryBean(DeliveryService.java:254)
    at com.oracle.bpel.client.delivery.DeliveryService.post(DeliveryService.java:174)
    at com.oracle.bpel.client.delivery.DeliveryService.post(DeliveryService.java:149)
    at _hello._jspService(_hello.java:74)
    at com.orionserver[Oracle Containers for J2EE 10g (10.1.3.1.0) ].http.OrionHttpJspPage.service(OrionHttpJspPage.java:59)
    at oracle.jsp.runtimev2.JspPageTable.service(JspPageTable.java:453)
    at oracle.jsp.runtimev2.JspServlet.internalService(JspServlet.java:591)
    at oracle.jsp.runtimev2.JspServlet.service(JspServlet.java:515)
    at javax.servlet.http.HttpServlet.service(HttpServlet.java:856)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.http.ServletRequestDispatcher.invoke(ServletRequestDispatcher
    .java:711)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.http.ServletRequestDispatcher.forwardInternal(ServletRequestDispatcher
    .java:368)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.http.HttpRequestHandler.doProcessRequest(HttpRequestHandler
    .java:866)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.http.HttpRequestHandler.processRequest(HttpRequestHandler
    .java:448)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.http.HttpRequestHandler.serveOneRequest(HttpRequestHandler
    .java:216)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.http.HttpRequestHandler.run(HttpRequestHandler.java:117)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.http.HttpRequestHandler.run(HttpRequestHandler.java:110)
    at oracle.oc4j.network.ServerSocketReadHandler$SafeRunnable.run(ServerSocketReadHandler.java:260)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].util.ReleasableResourcePooledExecutor$MyWorker.run(ReleasableResourcePooledExecutor
    .java:303)
    at java.lang.Thread.run(Thread.java:595)
    Caused by: java.lang.Exception: Failed to create "ejb/collaxa/system/DeliveryBean" bean; exception reported is: "javax.naming.CommunicationException
    : Connection refused: connect [Root exception is java.net.ConnectException: Connection refused: connect]
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.rmi.RMIClient.lookup(RMIClient.java:292)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.rmi.RMIClientContext.lookup(RMIClientContext.java:51)
    at javax.naming.InitialContext.lookup(InitialContext.java:351)
    at com.oracle.bpel.client.util.BeanRegistry.lookupDeliveryBean(BeanRegistry.java:279)
    at com.oracle.bpel.client.delivery.DeliveryService.getDeliveryBean(DeliveryService.java:250)
    at com.oracle.bpel.client.delivery.DeliveryService.post(DeliveryService.java:174)
    at com.oracle.bpel.client.delivery.DeliveryService.post(DeliveryService.java:149)
    at hello.jspService(_hello.java:74)
    at com.orionserver[Oracle Containers for J2EE 10g (10.1.3.1.0) ].http.OrionHttpJspPage.service(OrionHttpJspPage.java:59)
    at oracle.jsp.runtimev2.JspPageTable.service(JspPageTable.java:453)
    at oracle.jsp.runtimev2.JspServlet.internalService(JspServlet.java:591)
    at oracle.jsp.runtimev2.JspServlet.service(JspServlet.java:515)
    at javax.servlet.http.HttpServlet.service(HttpServlet.java:856)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.http.ServletRequestDispatcher.invoke(ServletRequestDispatcher
    .java:711)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.http.ServletRequestDispatcher.forwardInternal(ServletRequestDispatcher
    .java:368)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.http.HttpRequestHandler.doProcessRequest(HttpRequestHandler
    .java:866)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.http.HttpRequestHandler.processRequest(HttpRequestHandler
    .java:448)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.http.HttpRequestHandler.serveOneRequest(HttpRequestHandler
    .java:216)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.http.HttpRequestHandler.run(HttpRequestHandler.java:117)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.http.HttpRequestHandler.run(HttpRequestHandler.java:110)
    at oracle.oc4j.network.ServerSocketReadHandler$SafeRunnable.run(ServerSocketReadHandler.java:260)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].util.ReleasableResourcePooledExecutor$MyWorker.run(ReleasableResourcePooledExecutor
    .java:303)
    at java.lang.Thread.run(Thread.java:595)
    Caused by: java.net.ConnectException: Connection refused: connect
    at java.net.PlainSocketImpl.socketConnect(Native Method)
    at java.net.PlainSocketImpl.doConnect(PlainSocketImpl.java:333)
    at java.net.PlainSocketImpl.connectToAddress(PlainSocketImpl.java:195)
    at java.net.PlainSocketImpl.connect(PlainSocketImpl.java:182)
    at java.net.SocksSocketImpl.connect(SocksSocketImpl.java:366)
    at java.net.Socket.connect(Socket.java:507)
    at java.net.Socket.connect(Socket.java:457)
    at java.net.Socket.<init>(Socket.java:365)
    at java.net.Socket.<init>(Socket.java:207)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.rmi.RMIClientConnection.createSocket(RMIClientConnection
    .java:682)
    at oracle.oc4j.rmi.ClientSocketRmiTransport.createNetworkConnection(ClientSocketRmiTransport.java:58)
    at oracle.oc4j.rmi.ClientRmiTransport.connectToServer(ClientRmiTransport.java:78)
    at oracle.oc4j.rmi.ClientSocketRmiTransport.connectToServer(ClientSocketRmiTransport.java:68)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.rmi.RMIClientConnection.connect(RMIClientConnection.java
    :646)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.rmi.RMIClientConnection.sendLookupRequest(RMIClientConnection
    .java:190)
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.rmi.RMIClientConnection.lookup(RMIClientConnection.java:174
    at com.evermind[Oracle Containers for J2EE 10g (10.1.3.1.0) ].server.rmi.RMIClient.lookup(RMIClient.java:283)

    looks like the connect string is wrong / especially that you use - I think SOA Suite ..
    so the string should be
    java.naming.provider.url=opmn:ormi://<hostname>:<opmnport -> 6003>:home/orabpel
    hth clemens

  • Re: (forte-users) Unstable server ENV after upgrade to Forte30M2.

    I see/suggest a few things:
    1) In your #1, you mention ".... development and test environments which use the
    same Forte 3M installs through links ...". This concerns me. On our UNIX box
    each environment has it's own directory containing it's own install. If your
    environments are some how sharing a node manager, log directory or processes (to
    name a few things) that is a recipe for disaster. They may be competing for
    resources and usually the first one started will win.
    2) I haven't done a lot with compatibility levels, but if an application built
    in dev is to run in test it may be important that node managers and services
    (autocompile, codegen etc.) be at the same level (????).
    3) Check the definition files, to make sure the two environments operate
    independently. If they are both trying to write to the same log file the one
    started up first will work while the second will not as the file will be "busy".
    4) We usually use rpcreate (newer version) to create brand new repositories.
    Than we export/import the source code that we need. Also it is important to
    force compile ALL plans in a workspace at least once after doing the import.
    This will ensure that all of the code is "speaking the same language". The other
    compile, only compiles those pieces of code that changed from the last compile.
    Hope this helps.
    Kelsey PetrychynSaskTel Technical Analyst
    ITM - Technology Solutions - Distributed Computing
    Tel (306) 777 - 4906, Fax (306) 359 - 0857
    Internet:kelsey.petrychynSasktel.sk.ca
    Quality is not job 1. It is the only job!
    "Braja Chattaraj" <forte_brajachotmail.com> on 09/13/2000 03:43:57 PM
    Please respond to chattaraj_braja_NONLILLYlilly.com
    To: forte-userslists.xpedior.com
    cc: (bcc: Kelsey Petrychyn/SaskTel/CA)
    Subject: (forte-users) Unstable server ENV after upgrade to Forte 30M2.
    We are running Forte 3M2 clients and server in our test environment with
    clients on NT and server on Solaris 2.6. Eversince the upgrade from 3L to 3M
    we have been having an unstable environment that does not remain alive for >
    10 mins. These are the details of the Forte installs and server setups :
    1. The server hosts the development and test environments which use the same
    Forte 3M installs through links (same ftcmd, ftexec, nodemgr, etc.). The
    environments are at compatibility levels 0 and 1 respectively.
    2. The two environments have the same definition files (defining the ENV
    variables), though seperate copies and the two environments are hosted on
    different ports on the same server.
    3. While building the new 3M environmnets in DEV and TST, we exported the
    old 3L repositories and imported them into the new 3M repositories and
    deployed the applications.
    While the DEV environment is stable the TST environment is not. This has
    been observed while moving plans between the environments (export and
    import) using fscript commands, deploying the apps after the move using
    fscript, and testing the apps. Sometimes it has come down right after a
    startup. There is no programatic reference to the environment agent in the
    code. So, a programatic shutdown is ruled out.
    Does anybody have a clue or a similar experience ?
    Thanks.
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    BRAJA KISHORE CHATTARAJ
    Consultant, Analysts International.
    Work : Sphinx Pharmaceuticals (A division of Eli Lilly & Co.)
    (919) 314-4134
    Home : 1801, Williamsburg Rd., #41H, Durham, NC 27707.
    (919) 463-7802
    E-mail : forte_brajachotmail.com
    Visit us www.analysts.com
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    http://profiles.msn.com.
    For the archives, go to: http://lists.xpedior.com/forte-users and use
    the login: forte and the password: archive. To unsubscribe, send in a new
    email the word: 'Unsubscribe' to: forte-users-requestlists.xpedior.com

    We found a solution to our issue.Their desktops were in a lockdown environment and the essbase.id file located in the windows directory was locked as well. This file is responsible for assigning ports etc and it couldn't be updated for the 6.5.4p2 upgrade. Once the file was deleted and the user reconnected to Essbase, the essbase.id was reset and they could connect.

  • Cannot start the SQL server service after you install Active Directory

    Good Morning,
    Im the system admin for a small company.  We have a dedicated domain controller but it is the only one.  To get a second domain controller up and running on our domain, I installed the AD role on our file and SQL server.  After the reboot
    we couldnt get SQL up and running.  I found this article
    http://support.microsoft.com/kb/929665
    In the article it reads
    To work around this issue, repair Windows Internal Database. To do this, run the following command line at a command prompt:
    Msiexec /i SSEE_10.msi CALLERID=OCSetup.exe REINSTALL=ALL REINSTALLMODE=omus /qn REBOOT=ReallySupress /l*v <var><Log_File_Path></var>
    My question is what is the Log_File_Path?  Is that where I installed the AD log path?
    My DBA is also looking into this as well.
    Thanks in advance,
    Brian
    Brian Fink, MCSE

    Hi Brain,
    what's version of SQL Server that you have installed and what's your operationg system version info?
    If you are running SQL Server 2008, which is not supported on the Windows Server 2008/2008 R2 domain controll (DC), even on Windows Server 2003 DC, there are limitations. Microsoft does not recommend to install SQL Server instances and DC on the same server,
    for more information, see Install SQL Server on a Domain Controller (http://msdn.microsoft.com/en-us/library/ms143506.aspx#DC_Support).
    There are some threads in the forum talked about installing SQL Server and DC on the same server, here are some for your references:
    http://social.technet.microsoft.com/Forums/en-US/sqlsetupandupgrade/thread/1a2963ff-90d7-4bba-97ce-fa15f70fb6a8/
    http://social.technet.microsoft.com/Forums/en-US/sqlsetupandupgrade/thread/981ef726-d04a-4063-8008-cc7bbad854ab/
    Hope this helps. Please feel free to let me know if you have more questions.
    Best Regards,
    Chunsong Feng [MSFT]
    Please remember to click "Mark as Answer" on the post that helps you, and to click "Unmark as Answer" if a marked post does not actually answer your question. This can be beneficial to other community members reading the thread.

  • Precalculation Server error after 10 broadcasted workbooks

    Hi gurus,
    i have a question concerning broadcasting workbooks. We are using the newest precalculation server with patch 13. The first 10 workbooks are calculated and sent via email. The rest of workbooks calculated are sent as a job  but the RSRD_Log transaction shows an error. It begins with "Unresolved exception occured in the precalculation server" then next message "System.Runtime.InteropServices.comException. The RPC server is unavailable (Exception from HRESULT:xxxxxx) "
    Then some other messages are displayed. Then at the end it says cannot precalculate Workbook. In rsprecadmin  the server is green and ready.
    Is there any restrictionin sending via Email?
    How can i get the server again to continue sending?
    How can i clear the queue, to get the precalculation server ready to continue scheduled workbooks?
    Thanks and kind regadrs,
    Murat

    Hi Edward,
    we are testing the broadcast functionality and we want to go live first week in september. I hope you remember and suggested me the note which came out in CW33 with the precalculation server patch 13 . we are using it but still NVs but there is also the issue with the sizing. Last night we scheduled 16 times the same workbook.All 5 minutes one workbook should be sent out. 2 Precalculation server were set up to deal with them. In the SAP document "How to ...Troubleshoot Information Broadcasting (BEx Workbooks)" in chapter 2 it is mentioned that when ycurrently you can have 10 workbooks in the queue. Therefore we set up 2 precalculation server with 10 workbooks capacity. Then we set in the Broadcast setting the load balancing option without selecting any precalculation server. My intention would be the first 10 workbooks should be broadcasted with one of the precalculation server. After he has reached his capacity the next workbooks would be broadcasted with the second precalculation server. Am i wrong?
    When i check the queue i see the 16 workbooks in "Queue Overview of Proccessed Error-Free Precalculations" but with a duration with 0 seconds. the log says  in RSRD_LOG says as described before the first message is "Unresolved exception occurred on the precalculation server" then "System.Runtime.InteropServices.COMException (0x800 0706BA): The RPC server is unavailable. (Exception" and at the end "Cannot precalculate workbook ZBROADCAST_TEST". I can see that when load balancing the second server is not used.
    But while seraching for precalculation server it says "Precalculation server PRECALC_2 has only                                                 0 free instanzen => not selected" but why. it has never been used why 0 instances free?

  • WS not created in application server control after deployment

    Hi,
    I just tried to deploy fulfillmentESB project(SOADemo Projects) from Jdev to Oracle App server control. But there was no webservice created in Oracle application server control under webservices link....plz help me...
    Actually the steps which i had followed to deploy that fulfillment project are:
    * right-click fulfillmentESB
    * select Register with ESB, Integration connection
    after which the fulfillment webservice can be seen in ESB control as well as application server control. But i could not able to see webservice created in application server control.
    Also i tried deploying the fulfillmentESB using EAR file - no use
    So kindly give me some steps to solve this issue...
    -Indhu

    Here is an example of the two steps required to deploy a Web Service application, using the ant task for the 10.1.3.x release.
    <project name="CalculatePrice" default="all" basedir="." xmlns:o="antlib:oracle">
      <property file="build.properties"/>
      <property name="deployeruri"        value="deployer:oc4j:${oc4j.host}:${oc4j.admin.port}"/>
    <!--
      <property name="deployeruri" value="deployer:oc4j:opmn://${oc4j.host}:${oc4j.opmn.port}/home" />
    -->
      <property name="bindweb.website" value="default-web-site"/>
      <property name="app.name" value="sdots"/>
      <target name="deploy">
        < o :deploy file="${basedir}/dist/${app.name}.ear"
                  deploymentname="${app.name}" deployeruri="${deployeruri}"
                  userid="${oc4j.admin.user}" password="${oc4j.admin.password}"/>
        < o :bindWebApp deploymentname="${app.name}" deployeruri="${deployeruri}"
                      userid="${oc4j.admin.user}" password="${oc4j.admin.password}"
                      webmodule="webservice-web" websitename="${bindweb.website}"
                      contextroot="/sdots"/>
      </target>Not sure if this applies to your specific scenario.
    ps. cross posting on the different OTN forums is generally not a good idea as you get threads out of sync. In this specific case, you are running into an issue with a specific ESB demo, and the ESB-SOA forum is definitly a better palce to get specific help.
    WS not created in application server control after deployment
    ps2. I guess you should got it by now, as I am not the first one to make this comment.
    Webservice not created in oracle application server after deployment
    ps3. We still don't have details about the versions you are using and the specific about THE SOADemo Projects - provide the information someone else would need in the forum that best correspond to your issue; the SOA one in this case ;-)

  • WS not found in application server control after deployment

    Hi,
    I just tried to deploy fulfillmentESB project(SOADemo Projects) from Jdev to Oracle App server control. But there was no webservice created in Oracle application server control under webservices link....plz help me...
    Actually the steps which i had followed to deploy that fulfillment project are:
    * right-click fulfillmentESB
    * select Register with ESB, Integration connection
    after which the fulfillment webservice can be seen in ESB control as well as application server control. But i could not able to see webservice created in application server control.
    Also i tried deploying the fulfillmentESB using EAR file - no use
    So kindly give me some steps to solve this issue...
    -Indhu

    Here is an example of the two steps required to deploy a Web Service application, using the ant task for the 10.1.3.x release.
    <project name="CalculatePrice" default="all" basedir="." xmlns:o="antlib:oracle">
      <property file="build.properties"/>
      <property name="deployeruri"        value="deployer:oc4j:${oc4j.host}:${oc4j.admin.port}"/>
    <!--
      <property name="deployeruri" value="deployer:oc4j:opmn://${oc4j.host}:${oc4j.opmn.port}/home" />
    -->
      <property name="bindweb.website" value="default-web-site"/>
      <property name="app.name" value="sdots"/>
      <target name="deploy">
        < o :deploy file="${basedir}/dist/${app.name}.ear"
                  deploymentname="${app.name}" deployeruri="${deployeruri}"
                  userid="${oc4j.admin.user}" password="${oc4j.admin.password}"/>
        < o :bindWebApp deploymentname="${app.name}" deployeruri="${deployeruri}"
                      userid="${oc4j.admin.user}" password="${oc4j.admin.password}"
                      webmodule="webservice-web" websitename="${bindweb.website}"
                      contextroot="/sdots"/>
      </target>Not sure if this applies to your specific scenario.
    ps. cross posting on the different OTN forums is generally not a good idea as you get threads out of sync. In this specific case, you are running into an issue with a specific ESB demo, and the ESB-SOA forum is definitly a better palce to get specific help.
    WS not created in application server control after deployment
    ps2. I guess you should got it by now, as I am not the first one to make this comment.
    Webservice not created in oracle application server after deployment
    ps3. We still don't have details about the versions you are using and the specific about THE SOADemo Projects - provide the information someone else would need in the forum that best correspond to your issue; the SOA one in this case ;-)

  • Cannot Access EAC/ECP on exchange server 2013 after installation

    Hi,
    I can not Cannot Access EAC/ECP on exchange server 2013 after installation . Error 404.4  code 0x80070002
    Help!
    Thanks,

    Hi  Florin
    Did you try accessing EAC by using below link 
    https://<Exchange_2013_CAS_FQDN>/ecp?ExchClientVer=15
    Please access EAC via Internal URL: https://<CASServerName>/ecp
    Finally ensure that you have logged in as administrator as well as this might be problem as well
    Remember to mark as helpful if you find my contribution useful or as an answer if it does answer your question.That will encourage me - and others - to take time out to help you Check out my latest blog posts on http://exchangequery.com

Maybe you are looking for

  • Error -36 when trying to delete from external HD

    Hi there, As obviously many people before me, I've just experienced the Error Code -36 problem. I'm using an external WD 2tb USB hard drive, formatted to NTFS. It has always worked perfectly using Paragon NTFS (got 10.0.2 installed atm). Today I trie

  • Drawing "wires" in Illustrator CS4?

    I have tried using Photoshop to tidy-up a scanned wiring diagram saved as a TIFF. The diagram consists of many (almost) vertical and horizontal lines (the wires) which I want to straighten and color. Some wires are two colors, so the lines need to be

  • Captivate 5 files keep getting corrupted

    Our entire office all got Windows 7 (64 bit) and a lot of coworkers' Captivate 5 files are getting the same error message: the file is unable to open, the file is damage, hard disk not having space, etc. Are we doing something wrong? If so, how we do

  • How to implement ACT AS function

    Hi experts, Can anyone of you help me in implementing ACT AS function in OBIEE 10g... Thanks manu

  • Where are my notes?? Now all I have is "stickies"??? (after install of lion)

    After installing Lion I now have "stickies" instead of all my "notes" Where did they go??????????