Stacking Problem in pam.conf on Solaris 10 ?
Hi all,
I have pam.conf with enteries for
# Default definition for Password management
# Used when service name is not explicitly mentioned for password management
*other password required pam_dhkeys.so.1*
*other password requisite pam_authtok_get.so.1*
*other password requisite pam_authtok_check.so.1*
*other password required pam_authtok_store.so.1*
As per my understanding the
(I) SPI pam_authtok_get.so.1 is used to get the user credentials from password DB.
(II) SPI pam_authtok_check.so.1* is used to check if the new password supplied is satisfying the password policy on the OS ( by reading values from /etc/default/passwd )
(III) SPI pam_authtok_store.so.1* is used to store the newly entered password to password db.
Please correct me if I am wrong anywhere.
Now I have a requirement thar an application has to be wriiten which will just check that the entered password satisfies the password policies of the OS or not, but it should not update the password DB(should not store the password)
I make the following enteries in my pam.conf
osPasswdCheck password required pam_dhkeys.so.1
osPasswdCheck password requisite pam_authtok_get.so.1
osPasswdCheck password requisite pam_authtok_check.so.1
I removed the entry for pam_authtok_store.so.1 as I dont want to store the but when I run my application it always give error 20 authentication manipulation error.
please refer (/usr/include/security/pam_appl.h)
I have done all the formalities w.r.t writing a PAM Conversation funtion and the application is returning success when I add the pam_authtok_store.so.1 into the SPI
Please anyone can help me out.Is there is anyother way with which I can use my application just to check password (w.r.t. OS policy) .
I will be really thankful if anybody can provide me with working PAM Modules stack for achieving it.
Thanks in advcance.
Regards,
Rahul.
but I dont want to store it.
Why not just keep the "pam_authtok_store.so.1" line in your pam.conf file and set it to a level of "requisite" or lower? I haven't tried it myself yet, but I've found that in the past when editing this file, completely removing a line rather than giving the PAM stack what it would expect to see with that line being there in some way can also cause problems.
Similar Messages
-
UW-Imap and pam.conf problem
Hello
I have a problem with uw-imap and pam.conf.
On this site: http://www.washington.edu/imap/documentation/BUILD.html, by step 3 i have a problem.
In Solaris 10, the directory /etc/pam.d/ do not exisist. It haves only the file pam.conf.
But, i don't know, what i must read in this file.
Can you help me? Please.
Greetingsyou can try passwd -r ldap for changing the ldap passwds...
-
Solaris 9 10 - pam.conf - LDAP - su - user login - DS 6.3.1
We are trying to configure our Solaris clients to use LDAP for authentication. We have modified the nsswitch.conf and pam.conf. The pam.conf looks like this:
login auth requisite pam_authtok_get.so.1 debug
login auth required pam_dhkeys.so.1 debug
login auth required pam_dial_auth.so.1 debug
login auth binding pam_unix_cred.so.1
login auth binding pam_unix_auth.so.1 server_policy debug
login auth required pam_ldap.so.1 use_first_pass debug
rlogin auth sufficient pam_rhosts_auth.so.1
rlogin auth requisite pam_authtok_get.so.1
rlogin auth required pam_dhkeys.so.1
rlogin auth binding pam_unix_cred.so.1
rlogin auth binding pam_unix_auth.so.1 server_policy
rlogin auth required pam_ldap.so.1 use_first_pass debug
dtlogin auth requisite pam_authtok_get.so.1
dtlogin auth required pam_dhkeys.so.1
dtlogin auth binding pam_unix_cred.so.1
dtlogin auth binding pam_unix_auth.so.1 server_policy
dtlogin auth required pam_ldap.so.1 use_first_pass debug
rsh auth sufficient pam_rhosts_auth.so.1
rsh auth binding pam_unix_auth.so.1 server_policy
rsh auth required pam_ldap.so.1 use_first_pass debug
ppp auth requisite pam_authtok_get.so.1
ppp auth required pam_dhkeys.so.1
ppp auth binding pam_unix_auth.so.1 server_policy
ppp auth required pam_dial_auth.so.1
ppp auth required pam_ldap.so.1 use_first_pass debug
dtsession auth requisite pam_authtok_get.so.1
dtsession auth required pam_dhkeys.so.1
dtsession auth binding pam_unix_auth.so.1 server_policy
dtsession auth required pam_ldap.so.1 debug
other auth requisite pam_authtok_get.so.1 debug
other auth sufficient pam_dhkeys.so.1 debug
other auth binding pam_unix_cred.so.1
other auth binding pam_unix_auth.so.1 server_policy debug
other auth required pam_ldap.so.1 use_first_pass debug
passwd auth required pam_passwd_auth.so.1 debug server_policy
cron account required pam_projects.so.1
cron account required pam_unix_account.so.1
dtlogin account requisite pam_roles.so.1
dtlogin account required pam_projects.so.1
dtlogin account binding pam_unix_account.so.1 server_policy
dtlogin account required pam_ldap.so.1 debug
ppp account requisite pam_roles.so.1
ppp account required pam_projects.so.1
ppp account required pam_unix_account.so.1 server_policy
other account requisite pam_roles.so.1
other account required pam_projects.so.1
other account binding pam_unix_account.so.1 server_policy
other account required pam_ldap.so.1 debug
ppp session required pam_unix_session.so.1
other session required pam_unix_session.so.1
other session required pam_mkhomedir.so.1 skel=/etc/skel umask=0022
other password required pam_dhkeys.so.1 debug
other password requisite pam_authtok_get.so.1 debug
other password requisite pam_authtok_check.so.1 debug
other password sufficient pam_authtok_store.so.1 server_policy debug
other password required pam_ldap.so.1 debug
The issue we are having is that the DS is configured to force a password change after an administrator reset. If we change the lines:
other account binding pam_unix_account.so.1 server_policy
other account required pam_ldap.so.1 debug
to
other account binding pam_ldap.so.1 debug
other account required pam_unix_account.so.1 server_policy
we get the prompt to change the password. But at that point a non-root user can not su to any other user.
Does anyone have any ideas? Also, we are trying to configure a Linux client to do the same thing, but can't get the system-auth file correct either.
Edited by: jason.hershcopf on Apr 2, 2009 6:32 PMHi Jason,
Wondering if you got an answer for this. I am having similiar issues with LDAP on Solaris 10.
Any feedback will be of great help.
Thanks! -
Pam.conf does not use ldap for password length check when changing passwd
I have already posted this in the directory server forum but since it is to do with pam not using ldap I thought there might be some pam experts who check this forum.
I have dsee 6.0 installed on a solaris 10 server (client).
I have a solaris 9 server (server) set up to use ldap authentication.
bash-2.05# cat /var/ldap/ldap_client_file
# Do not edit this file manually; your changes will be lost.Please use ldapclient (1M) instead.
NS_LDAP_FILE_VERSION= 2.0
NS_LDAP_SERVERS= X, Y
NS_LDAP_SEARCH_BASEDN= dc=A,dc= B,dc= C
NS_LDAP_AUTH= tls:simple
NS_LDAP_SEARCH_REF= FALSE
NS_LDAP_SEARCH_SCOPE= one
NS_LDAP_SEARCH_TIME= 30
NS_LDAP_SERVER_PREF= X.A.B.C, Y.A.B.C
NS_LDAP_CACHETTL= 43200
NS_LDAP_PROFILE= tls_profile
NS_LDAP_CREDENTIAL_LEVEL= proxy
NS_LDAP_SERVICE_SEARCH_DESC= passwd:ou=People,dc=A,dc=B,dc=com?one
NS_LDAP_SERVICE_SEARCH_DESC= group:ou=People,dc=A,dc=B,dc=C?one
NS_LDAP_SERVICE_SEARCH_DESC= shadow:ou=People,dc=A,dc=B,dc=C?one
NS_LDAP_BIND_TIME= 10
bash-2.05# cat /var/ldap/ldap_client_cred
# Do not edit this file manually; your changes will be lost.Please use ldapclient (1M) instead.
NS_LDAP_BINDDN= cn=proxyagent,ou=profile,dc=A,dc=B,dc=C
NS_LDAP_BINDPASSWD= {NS1}6ff7353e346f87a7
bash-2.05# cat /etc/nsswitch.conf
# /etc/nsswitch.ldap:
# An example file that could be copied over to /etc/nsswitch.conf; it
# uses LDAP in conjunction with files.
# "hosts:" and "services:" in this file are used only if the
# /etc/netconfig file has a "-" for nametoaddr_libs of "inet" transports.
# the following two lines obviate the "+" entry in /etc/passwd and /etc/group.
passwd: files ldap
group: files ldap
# consult /etc "files" only if ldap is down.
hosts: files dns
ipnodes: files
# Uncomment the following line and comment out the above to resolve
# both IPv4 and IPv6 addresses from the ipnodes databases. Note that
# IPv4 addresses are searched in all of the ipnodes databases before
# searching the hosts databases. Before turning this option on, consult
# the Network Administration Guide for more details on using IPv6.
#ipnodes: ldap [NOTFOUND=return] files
networks: files
protocols: files
rpc: files
ethers: files
netmasks: files
bootparams: files
publickey: files
netgroup: ldap
automount: files ldap
aliases: files ldap
# for efficient getservbyname() avoid ldap
services: files ldap
sendmailvars: files
printers: user files ldap
auth_attr: files ldap
prof_attr: files ldap
project: files ldap
bash-2.05# cat /etc/pam.conf
#ident "@(#)pam.conf 1.20 02/01/23 SMI"
# Copyright 1996-2002 Sun Microsystems, Inc. All rights reserved.
# Use is subject to license terms.
# PAM configuration
# Unless explicitly defined, all services use the modules
# defined in the "other" section.
# Modules are defined with relative pathnames, i.e., they are
# relative to /usr/lib/security/$ISA. Absolute path names, as
# present in this file in previous releases are still acceptable.
# Authentication management
# login service (explicit because of pam_dial_auth)
login auth requisite pam_authtok_get.so.1 debug
login auth required pam_dhkeys.so.1 debug
login auth required pam_dial_auth.so.1 debug
login auth binding pam_unix_auth.so.1 server_policy debug
login auth required pam_ldap.so.1 use_first_pass debug
# rlogin service (explicit because of pam_rhost_auth)
rlogin auth sufficient pam_rhosts_auth.so.1
rlogin auth requisite pam_authtok_get.so.1
rlogin auth required pam_dhkeys.so.1
rlogin auth binding pam_unix_auth.so.1 server_policy
rlogin auth required pam_ldap.so.1 use_first_pass
# rsh service (explicit because of pam_rhost_auth,
# and pam_unix_auth for meaningful pam_setcred)
rsh auth sufficient pam_rhosts_auth.so.1
rsh auth required pam_unix_auth.so.1
# PPP service (explicit because of pam_dial_auth)
ppp auth requisite pam_authtok_get.so.1
ppp auth required pam_dhkeys.so.1
ppp auth required pam_dial_auth.so.1
ppp auth binding pam_unix_auth.so.1 server_policy
ppp auth required pam_ldap.so.1 use_first_pass
# Default definitions for Authentication management
# Used when service name is not explicitly mentioned for authenctication
other auth requisite pam_authtok_get.so.1 debug
other auth required pam_dhkeys.so.1 debug
other auth binding pam_unix_auth.so.1 server_policy debug
other auth required pam_ldap.so.1 use_first_pass debug
# passwd command (explicit because of a different authentication module)
passwd auth binding pam_passwd_auth.so.1 server_policy debug
passwd auth required pam_ldap.so.1 use_first_pass debug
# cron service (explicit because of non-usage of pam_roles.so.1)
cron account required pam_projects.so.1
cron account required pam_unix_account.so.1
# Default definition for Account management
# Used when service name is not explicitly mentioned for account management
other account requisite pam_roles.so.1 debug
other account required pam_projects.so.1 debug
other account binding pam_unix_account.so.1 server_policy debug
other account required pam_ldap.so.1 no_pass debug
# Default definition for Session management
# Used when service name is not explicitly mentioned for session management
other session required pam_unix_session.so.1
# Default definition for Password management
# Used when service name is not explicitly mentioned for password management
other password required pam_dhkeys.so.1 debug
other password requisite pam_authtok_get.so.1 debug
other password requisite pam_authtok_check.so.1 debug
other password required pam_authtok_store.so.1 server_policy debug
# Support for Kerberos V5 authentication (uncomment to use Kerberos)
#rlogin auth optional pam_krb5.so.1 try_first_pass
#login auth optional pam_krb5.so.1 try_first_pass
#other auth optional pam_krb5.so.1 try_first_pass
#cron account optional pam_krb5.so.1
#other account optional pam_krb5.so.1
#other session optional pam_krb5.so.1
#other password optional pam_krb5.so.1 try_first_pass
I can ssh into client with user VV which does not exist locally but exists in the directory server. This is from /var/adm/messages on the ldap client):
May 17 15:25:07 client sshd[26956]: [ID 634615 auth.debug] pam_authtok_get:pam_sm_authenticate: flags = 0
May 17 15:25:11 client sshd[26956]: [ID 896952 auth.debug] pam_unix_auth: entering pam_sm_authenticate()
May 17 15:25:11 client sshd[26956]: [ID 285619 auth.debug] ldap pam_sm_authenticate(sshd VV), flags = 0
May 17 15:25:11 client sshd[26956]: [ID 509786 auth.debug] roles pam_sm_authenticate, service = sshd user = VV ruser = not set rhost = h.A.B.C
May 17 15:25:11 client sshd[26956]: [ID 579461 auth.debug] pam_unix_account: entering pam_sm_acct_mgmt()
May 17 15:25:11 client sshd[26956]: [ID 724664 auth.debug] pam_ldap pam_sm_acct_mgmt: illegal option no_pass
May 17 15:25:11 client sshd[26956]: [ID 100510 auth.debug] ldap pam_sm_acct_mgmt(VV), flags = 0
May 17 15:25:11 client sshd[26953]: [ID 800047 auth.info] Accepted keyboard-interactive/pam for VV from 10.115.1.251 port 2703 ssh2
May 17 15:25:11 client sshd[26953]: [ID 914923 auth.debug] pam_dhkeys: no valid mechs found. Trying AUTH_DES.
May 17 15:25:11 client sshd[26953]: [ID 499478 auth.debug] pam_dhkeys: get_and_set_seckey: could not get secret key for keytype 192-0
May 17 15:25:11 client sshd[26953]: [ID 507889 auth.debug] pam_dhkeys: mech key totals:
May 17 15:25:11 client sshd[26953]: [ID 991756 auth.debug] pam_dhkeys: 0 valid mechanism(s)
May 17 15:25:11 client sshd[26953]: [ID 898160 auth.debug] pam_dhkeys: 0 secret key(s) retrieved
May 17 15:25:11 client sshd[26953]: [ID 403608 auth.debug] pam_dhkeys: 0 passwd decrypt successes
May 17 15:25:11 client sshd[26953]: [ID 327308 auth.debug] pam_dhkeys: 0 secret key(s) set
May 17 15:25:11 client sshd[26958]: [ID 965073 auth.debug] pam_dhkeys: cred reinit/refresh ignored
If I try to then change the password with the `passwd` command it does not use the password policy on the directory server but the default defined in /etc/default/passwd
bash-2.05$ passwd
passwd: Changing password for VV
Enter existing login password:
New Password:
passwd: Password too short - must be at least 8 characters.
Please try again
May 17 15:26:17 client passwd[27014]: [ID 285619 user.debug] ldap pam_sm_authenticate(passwd VV), flags = 0
May 17 15:26:17 client passwd[27014]: [ID 509786 user.debug] roles pam_sm_authenticate, service = passwd user = VV ruser = not set rhost = not set
May 17 15:26:17 client passwd[27014]: [ID 579461 user.debug] pam_unix_account: entering pam_sm_acct_mgmt()
May 17 15:26:17 client passwd[27014]: [ID 724664 user.debug] pam_ldap pam_sm_acct_mgmt: illegal option no_pass
May 17 15:26:17 client passwd[27014]: [ID 100510 user.debug] ldap pam_sm_acct_mgmt(VV), flags = 80000000
May 17 15:26:17 client passwd[27014]: [ID 985558 user.debug] pam_dhkeys: entered pam_sm_chauthtok()
May 17 15:26:17 client passwd[27014]: [ID 988707 user.debug] read_authtok: Copied AUTHTOK to OLDAUTHTOK
May 17 15:26:20 client passwd[27014]: [ID 558286 user.debug] pam_authtok_check: pam_sm_chauthok called
May 17 15:26:20 client passwd[27014]: [ID 271931 user.debug] pam_authtok_check: minimum length from /etc/default/passwd: 8
May 17 15:26:20 client passwd[27014]: [ID 985558 user.debug] pam_dhkeys: entered pam_sm_chauthtok()
May 17 15:26:20 client passwd[27014]: [ID 417489 user.debug] pam_dhkeys: OLDRPCPASS already set
I am using the default policy on the directory server which states a minimum password length of 6 characters.
server:root:LDAP_Master:/var/opt/SUNWdsee/dscc6/dcc/ads/ldif#dsconf get-server-prop -h server -p 389|grep ^pwd-
pwd-accept-hashed-pwd-enabled : N/A
pwd-check-enabled : off
pwd-compat-mode : DS6-mode
pwd-expire-no-warning-enabled : on
pwd-expire-warning-delay : 1d
pwd-failure-count-interval : 10m
pwd-grace-login-limit : disabled
pwd-keep-last-auth-time-enabled : off
pwd-lockout-duration : disabled
pwd-lockout-enabled : off
pwd-lockout-repl-priority-enabled : on
pwd-max-age : disabled
pwd-max-failure-count : 3
pwd-max-history-count : disabled
pwd-min-age : disabled
pwd-min-length : 6
pwd-mod-gen-length : 6
pwd-must-change-enabled : off
pwd-root-dn-bypass-enabled : off
pwd-safe-modify-enabled : off
pwd-storage-scheme : CRYPT
pwd-strong-check-dictionary-path : /opt/SUNWdsee/ds6/plugins/words-english-big.txt
pwd-strong-check-enabled : off
pwd-strong-check-require-charset : lower
pwd-strong-check-require-charset : upper
pwd-strong-check-require-charset : digit
pwd-strong-check-require-charset : special
pwd-supported-storage-scheme : CRYPT
pwd-supported-storage-scheme : SHA
pwd-supported-storage-scheme : SSHA
pwd-supported-storage-scheme : NS-MTA-MD5
pwd-supported-storage-scheme : CLEAR
pwd-user-change-enabled : off
Whereas /etc/default/passwd on the ldap client says passwords must be 8 characters. This is seen with the pam_authtok_check: minimum length from /etc/default/passwd: 8
. It is clearly not using the policy from the directory server but checking locally. So I can login ok using the ldap server for authentication but when I try to change the password it does not use the policy from the server which says I only need a minimum lenght of 6 characters.
I have read that pam_ldap is only supported for directory server 5.2. Because I am running ds6 and with password compatability in ds6 mode maybe this is my problem. Does anyone know of any updated pam_ldap modules for solaris 9?
Edited by: ericduggan on Sep 8, 2008 5:30 AMyou can try passwd -r ldap for changing the ldap passwds...
-
Openldap-2.4.32 PAM authentication on Solaris 10
Hi,
I configured two Solaris servers to be openldap client/server. They are connected, and I am able to add/modify/retrieve entries/user information from client machine.
Executing ldapwhoami command from client is successful; server receives and processes request as expected.
I am configuring PAM for rlogin from Client machine and expect that user credential will be authenticated from LDAP Server, but cannot rlogin.
Could someone please show me how to verify PAM to see if it works?
Please let me know if there is anything missing from my setup or anything that I can double-check.
Any help is greatly appreciated.
Regards,
Joe
Downloaded and installed packages from SunFreeWare.com:
openldap-2.4.32-sol10-sparc-local.gz
db-4.7.25.NC-sol10-sparc-local.gz
gcc-3.3.2-sol10-sparc-local.gz
libgcc-3.3-sol10-sparc-local.gz
libtool-2.4.2-sol10-sparc-local.gz
openssl-1.0.1c-sol10-sparc-local.gz
sasl-2.1.25-sol10-sparc-local.gz
From Client LDAP, I am able to add users to Server LDAP, and ldapwhoami execution is also successful.
apggd04dev# ldapwhoami -H ldap://apggd06dev.pg.dtveng.net -x -W -D uid=jkly,ou=users,dc=pg,dc=dtveng,dc=net
Enter LDAP Password:
dn:uid=jkly,ou=users,dc=pg,dc=dtveng,dc=net
Configuring for PAM:
- /etc/pam.conf:
# rlogin service (explicit because of pam_rhost_auth)
rlogin auth sufficient pam_rhosts_auth.so.1
rlogin auth requisite pam_authtok_get.so.1
rlogin auth required pam_dhkeys.so.1
rlogin auth required pam_unix_cred.so.1
rlogin auth binding pam_unix_auth.so.1
rlogin auth required pam_ldap.so.1 debug
- /etc/nsswitch.conf:
passwd: files ldap
group: files ldap
shadow: files ldap
Errors from /var/log/pamlog:
Mar 5 08:56:15 apggd04dev login: [ID 884769 auth.debug] PAM[3257]: pam_set_item(296b0:user)
Mar 5 08:56:20 apggd04dev login: [ID 884769 auth.debug] PAM[3257]: pam_set_item(296b0:authtok)
Mar 5 08:56:20 apggd04dev last message repeated 1 time
Mar 5 08:56:20 apggd04dev login: [ID 110225 auth.debug] PAM[3257]: pam_authenticate(296b0, 0): error No account present for user
Mar 5 08:56:20 apggd04dev login: [ID 219349 auth.debug] pam_unix_auth: user jkly not found
Mar 5 08:56:20 apggd04dev login: [ID 110225 auth.debug] PAM[3257]: pam_authenticate(296b0, 0): error No account present for user
Mar 5 08:56:20 apggd04dev login: [ID 285619 auth.debug] ldap pam_sm_authenticate(rlogin jkly), flags = 0
Mar 5 08:56:20 apggd04dev login: [ID 293258 auth.warning] libsldap: Status: 2 Mesg: Unable to load configuration '/var/ldap/ldap_client_file' ('').
Mar 5 08:56:20 apggd04dev login: [ID 110225 auth.debug] PAM[3257]: pam_authenticate(296b0, 0): error Error in underlying service module
Mar 5 08:56:20 apggd04dev login: [ID 884769 auth.debug] PAM[3257]: pam_set_item(296b0:authtok)
Mar 5 08:56:24 apggd04dev login: [ID 884769 auth.debug] PAM[3257]: pam_set_item(296b0:user)
Mar 5 08:56:24 apggd04dev login: [ID 884769 auth.debug] PAM[3257]: pam_set_item(296b0:ruser)
Mar 5 08:56:24 apggd04dev login: [ID 884769 auth.debug] PAM[3257]: pam_set_item(296b0:user_prompt)
Mar 5 08:56:24 apggd04dev login: [ID 601877 auth.debug] PAM[3257]: pam_authenticate(296b0, 0)
Mar 5 08:56:24 apggd04dev login: [ID 407395 auth.debug] PAM[3257]: load_modules(296b0, pam_sm_authenticate)=/usr/lib/security/pam_rhosts_auth.so.1
Mar 5 08:56:24 apggd04dev login: [ID 110225 auth.debug] PAM[3257]: pam_authenticate(296b0, 0): error No account present for user
Mar 5 08:56:24 apggd04dev login: [ID 386855 auth.debug] PAM[3257]: pam_get_user(296b0, 0, NULL)Hi,
I configured two Solaris servers to be openldap client/server. They are connected, and I am able to add/modify/retrieve entries/user information from client machine.
Executing ldapwhoami command from client is successful; server receives and processes request as expected.
I am configuring PAM for rlogin from Client machine and expect that user credential will be authenticated from LDAP Server, but cannot rlogin.
Could someone please show me how to verify PAM to see if it works?
Please let me know if there is anything missing from my setup or anything that I can double-check.
Any help is greatly appreciated.
Regards,
Joe
Downloaded and installed packages from SunFreeWare.com:
openldap-2.4.32-sol10-sparc-local.gz
db-4.7.25.NC-sol10-sparc-local.gz
gcc-3.3.2-sol10-sparc-local.gz
libgcc-3.3-sol10-sparc-local.gz
libtool-2.4.2-sol10-sparc-local.gz
openssl-1.0.1c-sol10-sparc-local.gz
sasl-2.1.25-sol10-sparc-local.gz
From Client LDAP, I am able to add users to Server LDAP, and ldapwhoami execution is also successful.
apggd04dev# ldapwhoami -H ldap://apggd06dev.pg.dtveng.net -x -W -D uid=jkly,ou=users,dc=pg,dc=dtveng,dc=net
Enter LDAP Password:
dn:uid=jkly,ou=users,dc=pg,dc=dtveng,dc=net
Configuring for PAM:
- /etc/pam.conf:
# rlogin service (explicit because of pam_rhost_auth)
rlogin auth sufficient pam_rhosts_auth.so.1
rlogin auth requisite pam_authtok_get.so.1
rlogin auth required pam_dhkeys.so.1
rlogin auth required pam_unix_cred.so.1
rlogin auth binding pam_unix_auth.so.1
rlogin auth required pam_ldap.so.1 debug
- /etc/nsswitch.conf:
passwd: files ldap
group: files ldap
shadow: files ldap
Errors from /var/log/pamlog:
Mar 5 08:56:15 apggd04dev login: [ID 884769 auth.debug] PAM[3257]: pam_set_item(296b0:user)
Mar 5 08:56:20 apggd04dev login: [ID 884769 auth.debug] PAM[3257]: pam_set_item(296b0:authtok)
Mar 5 08:56:20 apggd04dev last message repeated 1 time
Mar 5 08:56:20 apggd04dev login: [ID 110225 auth.debug] PAM[3257]: pam_authenticate(296b0, 0): error No account present for user
Mar 5 08:56:20 apggd04dev login: [ID 219349 auth.debug] pam_unix_auth: user jkly not found
Mar 5 08:56:20 apggd04dev login: [ID 110225 auth.debug] PAM[3257]: pam_authenticate(296b0, 0): error No account present for user
Mar 5 08:56:20 apggd04dev login: [ID 285619 auth.debug] ldap pam_sm_authenticate(rlogin jkly), flags = 0
Mar 5 08:56:20 apggd04dev login: [ID 293258 auth.warning] libsldap: Status: 2 Mesg: Unable to load configuration '/var/ldap/ldap_client_file' ('').
Mar 5 08:56:20 apggd04dev login: [ID 110225 auth.debug] PAM[3257]: pam_authenticate(296b0, 0): error Error in underlying service module
Mar 5 08:56:20 apggd04dev login: [ID 884769 auth.debug] PAM[3257]: pam_set_item(296b0:authtok)
Mar 5 08:56:24 apggd04dev login: [ID 884769 auth.debug] PAM[3257]: pam_set_item(296b0:user)
Mar 5 08:56:24 apggd04dev login: [ID 884769 auth.debug] PAM[3257]: pam_set_item(296b0:ruser)
Mar 5 08:56:24 apggd04dev login: [ID 884769 auth.debug] PAM[3257]: pam_set_item(296b0:user_prompt)
Mar 5 08:56:24 apggd04dev login: [ID 601877 auth.debug] PAM[3257]: pam_authenticate(296b0, 0)
Mar 5 08:56:24 apggd04dev login: [ID 407395 auth.debug] PAM[3257]: load_modules(296b0, pam_sm_authenticate)=/usr/lib/security/pam_rhosts_auth.so.1
Mar 5 08:56:24 apggd04dev login: [ID 110225 auth.debug] PAM[3257]: pam_authenticate(296b0, 0): error No account present for user
Mar 5 08:56:24 apggd04dev login: [ID 386855 auth.debug] PAM[3257]: pam_get_user(296b0, 0, NULL) -
PAM Support fpr Solaris SGD 4.3
Hi,
where can I find more informations howw to integrate PAM Support under Solaris SGD 4.3
I read in the relase notes:
Support for PAM for UNIX User Authentication
Secure Global Desktop now supports PAM (Pluggable Authentication Modules) for UNIX user authentication. The change affects the following login authorities:
* ENS
* UNIX User
* UNIX Group
Secure Global Desktop uses PAM for user authentication, account operations and password operations.
When you install Secure Global Desktop on Linux platforms, Setup automatically creates PAM configuration entries for Secure Global Desktop by copying the current configuration for the passwd program and creating the /etc/pam.d/tarantella file. On Solaris OS platforms, you can add a new entry for Secure Global Desktop (tarantella) in the /etc/pam.conf file if required.
Using PAM gives Secure Global Desktop Administrators more flexibility and control over UNIX user authentication, for example by adding new login tests, account limits, or valid password checks.
But how this should be done, I could not find out....
Regards
LukasHi,
Yes I now that. Pam is allways configured via Operating System. But where can I find some documentation how to configure pam to allow unix authentication against the ssgd.
I do not want to create a unix user for each sgd user (ldap) which is using a AS 400 connection or a classroom object. So I that this could be done via PAM Module for ssgd
Thanks for further advise. -
Hi,
I try to build all the packages for a i486 WRAP and so I wanted to build pam too. But the PAM build process crashes with:
gcc -march=i486 -mtune=generic -O2 -pipe -W -Wall -Wbad-function-cast -Wcast-align -Wcast-qual -Wmissing-declarations -Wmissing-prototypes -Wpointer-arith -Wreturn-type -Wstrict-prototypes -Wwrite-strings -Winline -Wshadow -Wl,--as-needed -Wl,-O1 -o pam_conv1 pam_conv_l.o pam_conv_y.o
pam_conv_l.o: In function `yylex':
pam_conv_l.c:(.text+0xda6): undefined reference to `yywrap'
collect2: ld returned 1 exit status
make[4]: *** [pam_conv1] Error 1
make[4]: Leaving directory `/home/i486/abs/core/pam/src/Linux-PAM-1.0.2/conf/pam_conv1'
make[3]: *** [all] Error 2
make[3]: Leaving directory `/home/i486/abs/core/pam/src/Linux-PAM-1.0.2/conf/pam_conv1'
make[2]: *** [all-recursive] Error 1
make[2]: Leaving directory `/home/i486/abs/core/pam/src/Linux-PAM-1.0.2/conf'
make[1]: *** [all-recursive] Error 1
make[1]: Leaving directory `/home/i486/abs/core/pam/src/Linux-PAM-1.0.2'
make: *** [all] Error 2
the makepkg comes directly from abs, I also tried to deactivate all modification to the build process in the PKGBUILD but
with no success.
Any tips?sargon wrote:Ok, found the problem.
PAM builds when i add flex to the build deps.
Again an not listened build dep.
That is correct. However, packages that are in the base and base-devel groups are not required and shouldn't be listed as dependencies; they are assumed to be installed (at least the more common ones). -
OpenSSH 4.4p1 packages with PAM support for Solaris 9, 10
As mentioned in a previous post* , I've compiled OpenSSH packages with PAM support for Solaris 9 and 10. They've since been updated to version 4.4p1, and are compiled against a static zlib (1.2.3) and OpenSSL (0.9.8c). You can find them here:
http://firewallworks.com/downloads/unsupported/Solaris-sparc/
Regards,
Greg
* http://forum.sun.com/jive/thread.jspa?threadID=103378&tstart=105Yes, zlib 1.2.3 is a requirement. In facts, zlib mentions a 2005 vulnerability fix but I found no matching patch in sunsolve. See
http://www.kb.cert.org/vuls/id/JGEI-6E7RC3
I have been wandering whether to replace the official zlib. Linking statically is probably a better idea. Thanks -
Are you aware about bash security issue CVE-2014-6271 ? Do you have a patch for that? The problem may exist in all Solaris versions.
The official communication is now posted to
https://blogs.oracle.com/security/entry/security_alert_cve_2014_7169 -
Problem With httpd.conf and mod_rewrite rules Apache 2.2
I have some RewriteRules that are working on my Leopard Client Apache 2.2 machine - but when I try to implement them on Leopard Server Apache 2.2, they don't work. I don't get any errors, they just won't execute.
Could somebody with Leopard Server help me out using the below info?
Here are the rules I am trying to add: (below is the httpd.conf file)
======RULES========
RewriteEngine On
Options +FollowSymLinks
RewriteRule ^(.+)/$ http://%{HTTP_HOST}$1 [R=301, L]
# Remove ".php"
RewriteCond %{THE_REQUEST} ^GET\ ([^\?]+)\.php(.*)\ HTTP
RewriteRule (.+)\.php(.*)$ $1$2 [R, L]
# Remove ".asp"
RewriteCond %{THE_REQUEST} ^GET\ ([^\?]+)\.asp(.*)\ HTTP
RewriteRule (.+)\.asp(.*)$ $1$2 [R, L]
# Remove ".aspx"
RewriteCond %{THE_REQUEST} ^GET\ ([^\?]+)\.aspx(.*)\ HTTP
RewriteRule (.+)\.aspx(.*)$ $1$2 [R, L]
# Remove ".htm" and ".html"
RewriteCond %{THE_REQUEST} ^GET\ ([^\?]+)\.htm.(.)\ HTTP
RewriteRule (.+)\.htm.(.)$ $1$2 [R, L]
# Remove ".cfm"
RewriteCond %{THE_REQUEST} ^GET\ ([^\?]+)\.cfm(.*)\ HTTP
RewriteRule (.+)\.cfm(.*)$ $1$2 [R, L]
# Remove ".bak"
RewriteCond %{THE_REQUEST} ^GET\ ([^\?]+)\.bak(.*)\ HTTP
RewriteRule (.+)\.bak(.*)$ $1$2 [R, L]
# Remove ".inc"
RewriteCond %{THE_REQUEST} ^GET\ ([^\?]+)\.inc(.*)\ HTTP
RewriteRule (.+)\.inc(.*)$ $1$2 [R, L]
# Remove ".*"
RewriteCond %{THE_REQUEST} ^GET\ ([^\?]+)\..(.)\ HTTP
RewriteRule (.+)\..(.)$ $1$2 [R, L]
=====RULES============
=========HTTPD.CONF=============
#### Default httpd.conf for Mac OS X Server, Apache 2.2
#### This httpd.conf differs from the httpd.conf distributed
#### with Apache and the httpd.conf present on Mac OS X.
#### Feel free to edit this; the Server Admin app also edits this file but will
#### respect your changes unless noted below. See also ReadMe.txt.
## ServerRoot: The top of the directory tree under which the server's
## configuration, error, and log files are kept.
## NOTE! If you intend to place this on an NFS (or otherwise network)
## mounted filesystem then please read the LockFile documentation
## (available at <URL:<a class="jive-link-external-small" href="http://">http://www.apache.org/docs/mod/core.html#lockfile>);
## you will save yourself a lot of trouble.
## Do NOT add a slash at the end of the directory path.
ServerRoot "/usr"
## PidFile: The file in which the server should record its process
## identification number when it starts.
PidFile /var/run/httpd.pid
## ScoreBoardFile: File used to store internal server process information.
## Not all architectures require this. But if yours does (you'll know because
## this file will be created when you run Apache) then you must ensure that
## no two invocations of Apache share the same scoreboard file.
#ScoreBoardFile "/var/run/apache2runtimestatus"
## Server-pool size regulation. Rather than making you guess how many
## server processes you need, Apache dynamically adapts to the load it
## sees --- that is, it tries to maintain enough server processes to
## handle the current load, plus a few spare servers to handle transient
## load spikes (e.g., multiple simultaneous requests from a single
## Netscape browser).
## It does this by periodically checking how many servers are waiting
## for a request. If there are fewer than MinSpareServers, it creates
## a new spare. If there are more than MaxSpareServers, some of the
## spares die off. The default values are probably OK for most sites.
MinSpareServers 1
MaxSpareServers 1
## Number of servers to start initially --- should be a reasonable ballpark
## figure.
StartServers 1
## MaxRequestsPerChild: the number of requests each child process is
## allowed to process before the child dies. The child will exit so
## as to avoid problems after prolonged use when Apache (and maybe the
## libraries it uses) leak memory or other resources. On most systems, this
## isn't really needed, but a few (such as Solaris) do have notable leaks
## in the libraries. For these platforms, set to something like 10000
## or so; a setting of 0 means unlimited.
## NOTE: This value does not include keepalive requests after the initial
## request per connection. For example, if a child process handles
## an initial request and 10 subsequent "keptalive" requests, it
## would only count as 1 request towards this limit.
MaxRequestsPerChild 100000
## Dynamic Shared Object (DSO) Support
## To be able to use the functionality of a module which was built as a DSO you
## have to place corresponding `LoadModule' lines at this location so the
## directives contained in it are actually available before they are used.
## Please read the file http://httpd.apache.org/docs/dso.html for more
## details about the DSO mechanism and run `httpd -l' for the list of already
## built-in (statically linked and thus always available) modules in your httpd
## binary.
## Note: The order in which modules are loaded is important. Don't change
## the order below without expert advice.
## Example:
## LoadModule foo_module libexec/mod_foo.so
#### For Mac OS X Server: Note that the Server Admin application
#### and the apxs utility enable and disable modules
#### by removing and adding a comment character.
LoadModule authnfilemodule libexec/apache2/modauthnfile.so
#LoadModule authndbmmodule libexec/apache2/modauthndbm.so
#LoadModule authnanonmodule libexec/apache2/modauthnanon.so
#LoadModule authndbdmodule libexec/apache2/modauthndbd.so
#LoadModule authndefaultmodule libexec/apache2/modauthndefault.so
LoadModule authzhostmodule libexec/apache2/modauthzhost.so
#LoadModule authzgroupfilemodule libexec/apache2/modauthzgroupfile.so
#LoadModule authzusermodule libexec/apache2/modauthzuser.so
#LoadModule authzdbmmodule libexec/apache2/modauthzdbm.so
#LoadModule authzownermodule libexec/apache2/modauthzowner.so
#LoadModule authzdefaultmodule libexec/apache2/modauthzdefault.so
#LoadModule authbasicmodule libexec/apache2/modauthbasic.so
#LoadModule authdigest_applemodule libexec/apache2/modauth_digestapple.so
LoadModule cache_module libexec/apache2/mod_cache.so
LoadModule memcachemodule libexec/apache2/modmemcache.so
LoadModule diskcachemodule libexec/apache2/moddiskcache.so
#LoadModule dbd_module libexec/apache2/mod_dbd.so
LoadModule dumpio_module libexec/apache2/mod_dumpio.so
LoadModule extfiltermodule libexec/apache2/modextfilter.so
LoadModule include_module libexec/apache2/mod_include.so
LoadModule filter_module libexec/apache2/mod_filter.so
LoadModule deflate_module libexec/apache2/mod_deflate.so
LoadModule logconfigmodule libexec/apache2/modlogconfig.so
LoadModule logio_module libexec/apache2/mod_logio.so
LoadModule env_module libexec/apache2/mod_env.so
LoadModule expires_module libexec/apache2/mod_expires.so
LoadModule headers_module libexec/apache2/mod_headers.so
LoadModule ident_module libexec/apache2/mod_ident.so
LoadModule setenvif_module libexec/apache2/mod_setenvif.so
LoadModule proxy_module libexec/apache2/mod_proxy.so
#LoadModule proxyconnectmodule libexec/apache2/modproxyconnect.so
#LoadModule proxyftpmodule libexec/apache2/modproxyftp.so
LoadModule proxyhttpmodule libexec/apache2/modproxyhttp.so
#LoadModule proxyajpmodule libexec/apache2/modproxyajp.so
LoadModule proxybalancermodule libexec/apache2/modproxybalancer.so
LoadModule ssl_module libexec/apache2/mod_ssl.so
LoadModule mime_module libexec/apache2/mod_mime.so
#LoadModule mimemagicmodule libexec/apache2/modmimemagic.so
#LoadModule dav_module libexec/apache2/mod_dav.so
LoadModule status_module libexec/apache2/mod_status.so
LoadModule autoindex_module libexec/apache2/mod_autoindex.so
LoadModule asis_module libexec/apache2/mod_asis.so
LoadModule info_module libexec/apache2/mod_info.so
LoadModule cgi_module libexec/apache2/mod_cgi.so
#LoadModule davfsmodule libexec/apache2/moddavfs.so
LoadModule vhostaliasmodule libexec/apache2/modvhostalias.so
LoadModule negotiation_module libexec/apache2/mod_negotiation.so
LoadModule dir_module libexec/apache2/mod_dir.so
LoadModule imagemap_module libexec/apache2/mod_imagemap.so
LoadModule actions_module libexec/apache2/mod_actions.so
LoadModule speling_module libexec/apache2/mod_speling.so
LoadModule userdir_module libexec/apache2/mod_userdir.so
LoadModule alias_module libexec/apache2/mod_alias.so
LoadModule rewrite_module libexec/apache2/mod_rewrite.so
#LoadModule php5_module libexec/apache2/libphp5.so
#LoadModule encoding_module libexec/apache2/mod_encoding.so
#LoadModule jk_module libexec/apache2/mod_jk.so
#LoadModule applespotlightmodule libexec/apache2/modspotlightapple.so
#LoadModule bonjour_module libexec/apache2/mod_bonjour.so
LoadModule appleauthmodule libexec/apache2/modauthapple.so
LoadModule spnegoauthmodule libexec/apache2/modspnegoapple.so
LoadModule appledigestmodule libexec/apache2/moddigestapple.so
LoadModule hfsapplemodule libexec/apache2/modhfsapple.so
#LoadModule fastcgi_module libexec/apache2/mod_fastcgi.so
#LoadModule scgipubsubmodule libexec/apache2/modscgipubsub.so
#LoadModule davsvnmodule libexec/apache2/moddavsvn.so
#LoadModule authzsvnmodule libexec/apache2/modauthzsvn.so
## If you wish httpd to run as a different user or group, you must run
## httpd as root initially and it will switch.
## User/Group: The name (or #number) of the user/group to run httpd as.
## It is usually good practice to create a dedicated user and group for
## running httpd, as with most system services.
User www
Group www
## Each directory to which Apache has access, can be configured with respect
## to which services and features are allowed and/or disabled in that
## directory (and its subdirectories).
## First, we configure the "default" to be a very restrictive set of
## features.
<Directory />
Options FollowSymLinks
AllowOverride None
</Directory>
## UserDir: The name of the directory which is appended onto a user's home
## directory if a ~user request is received.
#### For Mac OS X Server: Note that
#### personal websharing is not supported on Mac OS X Server.
<IfModule mod_userdir.c>
UserDir Sites
</IfModule>
## AccessFileName: The name of the file to look for in each directory
## for access control information.
AccessFileName .htaccess
## The following lines prevent .htaccess files from being viewed by
## Web clients.
#### For Mac OS X Server: Note the case-insensitive pattern, which protects
#### .htaccess fils on HFS volumes.
#### (Note: Denying .DS_S* may interfere with Finder WebDAV operation)
<Files ~ "^\.([Hh][Tt]|[Dd][Ss]_[Ss])">
Order allow,deny
Deny from all
Satisfy All
</Files>
#### Block attempts to circumvent access controls by requesting forks.
<Files "rsrc">
Order allow,deny
Deny from all
Satisfy All
</Files>
<DirectoryMatch ".*\.\.namedfork">
Order allow,deny
Deny from all
Satisfy All
</DirectoryMatch>
## DefaultType is the default MIME type the server will use for a document
## if it cannot otherwise determine one, such as from filename extensions.
## If your server contains mostly text or HTML documents, "text/plain" is
## a good value. If most of your content is binary, such as applications
## or images, you may want to use "application/octet-stream" instead to
## keep browsers from trying to display binary files as though they are
## text.
DefaultType text/plain
<IfModule mod_mime.c>
# TypesConfig points to the file containing the list of mappings from
# filename extension to MIME-type.
TypesConfig /dev/null
#AddType application/x-gzip .tgz
# AddEncoding allows you to have certain browsers uncompress
# information on the fly. Note: Not all browsers support this.
#AddEncoding x-compress .Z
#AddEncoding x-gzip .gz .tgz
# Filters allow you to process content before it is sent to the client.
# To parse .shtml files for server-side includes (SSI):
# (You will also need to add "Includes" to the "Options" directive.)
#AddOutputFilter INCLUDES .shtml
## Although mod_mime may support several extensions following a single
## mime type (ex: "AddType video/quicktime qt mov"), the parser used
## by the Server Admin application expects only one extension per line.
AddHandler send-as-is asis
AddHandler cgi-script cgi
AddHandler fastcgi-script fcgi
AddHandler imap-file map
AddHandler server-parsed shtml
AddHandler type-map var
AddHandler spotlight-search spotlight
AddType application/andrew-inset ez
AddType application/atom+xml atom
AddType application/atomcat+xml atomcat
AddType application/atomsvc+xml atomsvc
AddType application/ccxml+xml ccxml
AddType application/davmount+xml davmount
AddType application/ecmascript ecma
AddType application/font-tdpfr pfr
AddType application/hyperstudio stk
AddType application/javascript js
AddType application/json json
AddType application/mac-binhex40 hqx
AddType application/mac-compactpro cpt
AddType application/marc mrc
AddType application/mathematica ma
AddType application/mathematica mb
AddType application/mathematica nb
AddType application/mathml+xml mathml
AddType application/mbox mbox
AddType application/mediaservercontrol+xml mscml
AddType application/mp4 mp4s
AddType application/msword doc
AddType application/msword dot
AddType application/mxf mxf
AddType application/octet-stream bin
AddType application/octet-stream bpk
AddType application/octet-stream class
AddType application/octet-stream dist
AddType application/octet-stream distz
AddType application/octet-stream dmg
AddType application/octet-stream dms
AddType application/octet-stream dump
AddType application/octet-stream elc
AddType application/octet-stream iso
AddType application/octet-stream lha
AddType application/octet-stream lzh
AddType application/octet-stream scpt
AddType application/octet-stream so
AddType application/oda oda
AddType application/ogg ogg
AddType application/pdf pdf
AddType application/pgp-encrypted pgp
AddType application/pgp-signature asc
AddType application/pgp-signature sig
AddType application/pics-rules prf
AddType application/pkcs10 p10
AddType application/pkcs7-mime p7c
AddType application/pkcs7-mime p7m
AddType application/pkcs7-signature p7s
AddType application/pkix-cert cer
AddType application/pkix-crl crl
AddType application/pkix-pkipath pkipath
AddType application/pkixcmp pki
AddType application/pls+xml pls
AddType application/postscript ai
AddType application/postscript eps
AddType application/postscript ps
AddType application/prs.cww cww
AddType application/rdf+xml rdf
AddType application/reginfo+xml rif
AddType application/relax-ng-compact-syntax rnc
AddType application/resource-lists+xml rl
AddType application/rls-services+xml rs
AddType application/rsd+xml rsd
AddType application/rss+xml rss
AddType application/rtf rtf
AddType application/sbml+xml sbml
AddType application/sdp sdp
AddType application/set-payment-initiation setpay
AddType application/set-registration-initiation setreg
AddType application/shf+xml shf
AddType application/smil+xml smi
AddType application/smil+xml smil
AddType application/srgs gram
AddType application/srgs+xml grxml
AddType application/ssml+xml ssml
AddType application/vnd.3gpp.pic-bw-large plb
AddType application/vnd.3gpp.pic-bw-small psb
AddType application/vnd.3gpp.pic-bw-var pvb
AddType application/vnd.3m.post-it-notes pwn
AddType application/vnd.accpac.simply.aso aso
AddType application/vnd.accpac.simply.imp imp
AddType application/vnd.acucobol acu
AddType application/vnd.acucorp acutc
AddType application/vnd.acucorp atc
AddType application/vnd.adobe.xdp+xml xdp
AddType application/vnd.adobe.xfdf xfdf
AddType application/vnd.amiga.ami ami
AddType application/vnd.anser-web-certificate-issue-initiation cii
AddType application/vnd.anser-web-funds-transfer-initiation fti
AddType application/vnd.antix.game-component atx
AddType application/vnd.apple.installer+xml mpkg
AddType application/vnd.apple.installer+xml pkg
AddType application/vnd.audiograph aep
AddType application/vnd.blueice.multipass mpm
AddType application/vnd.bmi bmi
AddType application/vnd.businessobjects rep
AddType application/vnd.chemdraw+xml cdxml
AddType application/vnd.chipnuts.karaoke-mmd mmd
AddType application/vnd.cinderella cdy
AddType application/vnd.claymore cla
AddType application/vnd.clonk.c4group c4d
AddType application/vnd.clonk.c4group c4f
AddType application/vnd.clonk.c4group c4g
AddType application/vnd.clonk.c4group c4p
AddType application/vnd.clonk.c4group c4u
AddType application/vnd.commonspace csp
AddType application/vnd.commonspace cst
AddType application/vnd.contact.cmsg cdbcmsg
AddType application/vnd.cosmocaller cmc
AddType application/vnd.crick.clicker clkx
AddType application/vnd.crick.clicker.keyboard clkk
AddType application/vnd.crick.clicker.palette clkp
AddType application/vnd.crick.clicker.template clkt
AddType application/vnd.crick.clicker.wordbank clkw
AddType application/vnd.criticaltools.wbs+xml wbs
AddType application/vnd.ctc-posml pml
AddType application/vnd.cups-ppd ppd
AddType application/vnd.curl curl
AddType application/vnd.data-vision.rdz rdz
AddType application/vnd.denovo.fcselayout-link fe_launch
AddType application/vnd.dna dna
AddType application/vnd.dolby.mlp mlp
AddType application/vnd.dpgraph dpg
AddType application/vnd.dreamfactory dfac
AddType application/vnd.ecowin.chart mag
AddType application/vnd.enliven nml
AddType application/vnd.epson.esf esf
AddType application/vnd.epson.msf msf
AddType application/vnd.epson.quickanime qam
AddType application/vnd.epson.salt slt
AddType application/vnd.epson.ssf ssf
AddType application/vnd.eszigno3+xml es3 et3
AddType application/vnd.ezpix-album ez2
AddType application/vnd.ezpix-package ez3
AddType application/vnd.fdf fdf
AddType application/vnd.flographit gph
AddType application/vnd.fluxtime.clip ftc
AddType application/vnd.framemaker fm
AddType application/vnd.framemaker frame
AddType application/vnd.framemaker maker
AddType application/vnd.frogans.fnc fnc
AddType application/vnd.frogans.ltf ltf
AddType application/vnd.fsc.weblaunch fsc
AddType application/vnd.fujitsu.oasys oas
AddType application/vnd.fujitsu.oasys2 oa2
AddType application/vnd.fujitsu.oasys3 oa3
AddType application/vnd.fujitsu.oasysgp fg5
AddType application/vnd.fujitsu.oasysprs bh2
AddType application/vnd.fujixerox.ddd ddd
AddType application/vnd.fujixerox.docuworks xdw
AddType application/vnd.fujixerox.docuworks.binder xbd
AddType application/vnd.fuzzysheet fzs
AddType application/vnd.genomatix.tuxedo txd
AddType application/vnd.google-earth.kml+xml kml
AddType application/vnd.google-earth.kmz kmz
AddType application/vnd.grafeq gqf
AddType application/vnd.grafeq gqs
AddType application/vnd.groove-account gac
AddType application/vnd.groove-help ghf
AddType application/vnd.groove-identity-message gim
AddType application/vnd.groove-injector grv
AddType application/vnd.groove-tool-message gtm
AddType application/vnd.groove-tool-template tpl
AddType application/vnd.groove-vcard vcg
AddType application/vnd.handheld-entertainment+xml zmm
AddType application/vnd.hbci hbci
AddType application/vnd.hhe.lesson-player les
AddType application/vnd.hp-hpgl hpgl
AddType application/vnd.hp-hpid hpid
AddType application/vnd.hp-hps hps
AddType application/vnd.hp-jlyt jlt
AddType application/vnd.hp-pcl pcl
AddType application/vnd.hp-pclxl pclxl
AddType application/vnd.hzn-3d-crossword x3d
AddType application/vnd.ibm.minipay mpy
AddType application/vnd.ibm.modcap afp
AddType application/vnd.ibm.modcap list3820
AddType application/vnd.ibm.modcap listafp
AddType application/vnd.ibm.rights-management irm
AddType application/vnd.ibm.secure-container sc
AddType application/vnd.igloader igl
AddType application/vnd.immervision-ivp ivp
AddType application/vnd.immervision-ivu ivu
AddType application/vnd.intercon.formnet xpw
AddType application/vnd.intercon.formnet xpx
AddType application/vnd.intu.qbo qbo
AddType application/vnd.intu.qfx qfx
AddType application/vnd.ipunplugged.rcprofile rcprofile
AddType application/vnd.irepository.package+xml irp
AddType application/vnd.is-xpr xpr
AddType application/vnd.jam jam
AddType application/vnd.jcp.javame.midlet-rms rms
AddType application/vnd.jisp jisp
AddType application/vnd.kahootz ktr
AddType application/vnd.kahootz ktz
AddType application/vnd.kde.karbon karbon
AddType application/vnd.kde.kchart chrt
AddType application/vnd.kde.kformula kfo
AddType application/vnd.kde.kivio flw
AddType application/vnd.kde.kontour kon
AddType application/vnd.kde.kpresenter kpr
AddType application/vnd.kde.kpresenter kpt
AddType application/vnd.kde.kspread ksp
AddType application/vnd.kde.kword kwd
AddType application/vnd.kde.kword kwt
AddType application/vnd.kenameaapp htke
AddType application/vnd.kidspiration kia
AddType application/vnd.kinar kne
AddType application/vnd.kinar knp
AddType application/vnd.koan skd
AddType application/vnd.koan skm
AddType application/vnd.koan skp
AddType application/vnd.koan skt
AddType application/vnd.llamagraphics.life-balance.desktop lbd
AddType application/vnd.llamagraphics.life-balance.exchange+xml lbe
AddType application/vnd.lotus-1-2-3 123
AddType application/vnd.lotus-approach apr
AddType application/vnd.lotus-freelance pre
AddType application/vnd.lotus-notes nsf
AddType application/vnd.lotus-organizer org
AddType application/vnd.lotus-screencam scm
AddType application/vnd.lotus-wordpro lwp
AddType application/vnd.macports.portpkg portpkg
AddType application/vnd.mcd mcd
AddType application/vnd.medcalcdata mc1
AddType application/vnd.mediastation.cdkey cdkey
AddType application/vnd.mfer mwf
AddType application/vnd.mfmp mfm
AddType application/vnd.micrografx.flo flo
AddType application/vnd.micrografx.igx igx
AddType application/vnd.mif mif
AddType application/vnd.mobius.daf daf
AddType application/vnd.mobius.dis dis
AddType application/vnd.mobius.mbk mbk
AddType application/vnd.mobius.mqy mqy
AddType application/vnd.mobius.msl msl
AddType application/vnd.mobius.plc plc
AddType application/vnd.mobius.txf txf
AddType application/vnd.mophun.application mpn
AddType application/vnd.mophun.certificate mpc
AddType application/vnd.mozilla.xul+xml xul
AddType application/vnd.ms-artgalry cil
AddType application/vnd.ms-asf asf
AddType application/vnd.ms-cab-compressed cab
AddType application/vnd.ms-excel xla
AddType application/vnd.ms-excel xlc
AddType application/vnd.ms-excel xlm
AddType application/vnd.ms-excel xls
AddType application/vnd.ms-excel xlt
AddType application/vnd.ms-excel xlw
AddType application/vnd.ms-fontobject eot
AddType application/vnd.ms-htmlhelp chm
AddType application/vnd.ms-ims ims
AddType application/vnd.ms-lrm lrm
AddType application/vnd.ms-powerpoint pot
AddType application/vnd.ms-powerpoint pps
AddType application/vnd.ms-powerpoint ppt
AddType application/vnd.ms-project mpp
AddType application/vnd.ms-project mpt
AddType application/vnd.ms-works wcm
AddType application/vnd.ms-works wdb
AddType application/vnd.ms-works wks
AddType application/vnd.ms-works wps
AddType application/vnd.ms-wpl wpl
AddType application/vnd.ms-xpsdocument xps
AddType application/vnd.mseq mseq
AddType application/vnd.musician mus
AddType application/vnd.neurolanguage.nlu nlu
AddType application/vnd.noblenet-directory nnd
AddType application/vnd.noblenet-sealer nns
AddType application/vnd.noblenet-web nnw
AddType application/vnd.nokia.n-gage.data ngdat
AddType application/vnd.nokia.n-gage.symbian.install n-gage
AddType application/vnd.nokia.radio-preset rpst
AddType application/vnd.nokia.radio-presets rpss
AddType application/vnd.novadigm.edm edm
AddType application/vnd.novadigm.edx edx
AddType application/vnd.novadigm.ext ext
AddType application/vnd.oasis.opendocument.chart odc
AddType application/vnd.oasis.opendocument.chart-template otc
AddType application/vnd.oasis.opendocument.formula odf
AddType application/vnd.oasis.opendocument.formula-template otf
AddType application/vnd.oasis.opendocument.graphics odg
AddType application/vnd.oasis.opendocument.graphics-template otg
AddType application/vnd.oasis.opendocument.image odi
AddType application/vnd.oasis.opendocument.image-template oti
AddType application/vnd.oasis.opendocument.presentation odp
AddType application/vnd.oasis.opendocument.presentation-template otp
AddType application/vnd.oasis.opendocument.spreadsheet ods
AddType application/vnd.oasis.opendocument.spreadsheet-template ots
AddType application/vnd.oasis.opendocument.text odt
AddType application/vnd.oasis.opendocument.text-master otm
AddType application/vnd.oasis.opendocument.text-template ott
AddType application/vnd.oasis.opendocument.text-web oth
AddType application/vnd.olpc-sugar xo
AddType application/vnd.oma.dd2+xml dd2
AddType application/vnd.openofficeorg.extension oxt
AddType application/vnd.osgi.dp dp
AddType application/vnd.palm oprc
AddType application/vnd.palm pdb
AddType application/vnd.palm pqa
AddType application/vnd.palm prc
AddType application/vnd.pg.format str
AddType application/vnd.pg.osasli ei6
AddType application/vnd.picsel efif
AddType application/vnd.pocketlearn plf
AddType application/vnd.powerbuilder6 pbd
AddType application/vnd.previewsystems.box box
AddType application/vnd.proteus.magazine mgz
AddType application/vnd.publishare-delta-tree qps
AddType application/vnd.pvi.ptid1 ptid
AddType application/vnd.quark.quarkxpress qwd
AddType application/vnd.quark.quarkxpress qwt
AddType application/vnd.quark.quarkxpress qxb
AddType application/vnd.quark.quarkxpress qxd
AddType application/vnd.quark.quarkxpress qxl
AddType application/vnd.quark.quarkxpress qxt
AddType application/vnd.recordare.musicxml mxl
# AddType application/vnd.rn-realmedia rm
AddType application/vnd.seemail see
AddType application/vnd.sema sema
AddType application/vnd.semd semd
AddType application/vnd.semf semf
AddType application/vnd.shana.informed.formdata ifm
AddType application/vnd.shana.informed.formtemplate itp
AddType application/vnd.shana.informed.interchange iif
AddType application/vnd.shana.informed.package ipk
AddType application/vnd.simtech-mindmapper twd
AddType application/vnd.simtech-mindmapper twds
AddType application/vnd.smaf mmf
AddType application/vnd.solent.sdkm+xml sdkd
AddType application/vnd.solent.sdkm+xml sdkm
AddType application/vnd.spotfire.dxp dxp
AddType application/vnd.spotfire.sfs sfs
AddType application/vnd.sus-calendar sus
AddType application/vnd.sus-calendar susp
AddType application/vnd.svd svd
AddType application/vnd.syncml+xml xsm
AddType application/vnd.syncml.dm+wbxml bdm
AddType application/vnd.syncml.dm+xml xdm
AddType application/vnd.tao.intent-module-archive tao
AddType application/vnd.tmobile-livetv tmo
AddType application/vnd.trid.tpt tpt
AddType application/vnd.triscape.mxs mxs
AddType application/vnd.trueapp tra
AddType application/vnd.ufdl ufd
AddType application/vnd.ufdl ufdl
AddType application/vnd.uiq.theme utz
AddType application/vnd.umajin umj
AddType application/vnd.unity unityweb
AddType application/vnd.uoml+xml uoml
AddType application/vnd.vcx vcx
AddType application/vnd.visio vsd
AddType application/vnd.visio vss
AddType application/vnd.visio vst
AddType application/vnd.visio vsw
AddType application/vnd.visionary vis
AddType application/vnd.vsf vsf
AddType application/vnd.wap.wbxml wbxml
AddType application/vnd.wap.wmlc wmlc
AddType application/vnd.wap.wmlscriptc wmlsc
AddType application/vnd.webturbo wtb
AddType application/vnd.wordperfect wpd
AddType application/vnd.wqd wqd
AddType application/vnd.wt.stf stf
AddType application/vnd.xara xar
AddType application/vnd.xfdl xfdl
AddType application/vnd.yamaha.hv-dic hvd
AddType application/vnd.yamaha.hv-script hvs
AddType application/vnd.yamaha.hv-voice hvp
AddType application/vnd.yamaha.smaf-audio saf
AddType application/vnd.yamaha.smaf-phrase spf
AddType application/vnd.yellowriver-custom-menu cmp
AddType application/vnd.zzazz.deck+xml zaz
AddType application/voicexml+xml vxml
AddType application/winhlp hlp
AddType application/wsdl+xml wsdl
AddType application/wspolicy+xml wspolicy
AddType application/x-ace-compressed ace
AddType application/x-bcpio bcpio
AddType application/x-bittorrent torrent
AddType application/x-bzip bz
AddType application/x-bzip2 boz
AddType application/x-bzip2 bz2
AddType application/x-cdlink vcd
AddType application/x-chat chat
AddType application/x-chess-pgn pgn
AddType application/x-cpio cpio
AddType application/x-csh csh
AddType application/x-director dcr
AddType application/x-director dir
AddType application/x-director dxr
AddType application/x-director fgd
AddType application/x-dvi dvi
AddType application/x-futuresplash spl
AddType application/x-gtar gtar
AddType application/x-hdf hdf
AddType application/x-httpd-php php
AddType application/x-httpd-php-source phps
AddType application/x-httpd-php3 php3
AddType application/x-java-jnlp-file jnlp
AddType application/x-latex latex
AddType application/x-ms-wmd wmd
AddType application/x-ms-wmz wmz
AddType application/x-msaccess mdb
AddType application/x-msbinder obd
AddType application/x-mscardfile crd
AddType application/x-msclip clp
AddType application/x-msdownload bat
AddType application/x-msdownload com
AddType application/x-msdownload dll
AddType application/x-msdownload exe
AddType application/x-msdownload msi
AddType application/x-msmediaview m13
AddType application/x-msmediaview m14
AddType application/x-msmediaview mvb
AddType application/x-msmetafile wmf
AddType application/x-msmoney mny
AddType application/x-mspublisher pub
AddType application/x-msschedule scd
AddType application/x-msterminal trm
AddType application/x-mswrite wri
AddType application/x-netcdf cdf
AddType application/x-netcdf nc
AddType application/x-pkcs12 p12
AddType application/x-pkcs12 pfx
AddType application/x-pkcs7-certificates p7b
AddType application/x-pkcs7-certificates spc
AddType application/x-pkcs7-certreqresp p7r
AddType application/x-quicktimeplayer qtl
AddType application/x-rar-compressed rar
AddType application/x-sh sh
AddType application/x-shar shar
AddType application/x-shockwave-flash swf
AddType application/x-stuffit sit
AddType application/x-stuffitx sitx
AddType application/x-sv4cpio sv4cpio
AddType application/x-sv4crc sv4crc
AddType application/x-tar tar
AddType application/x-tar tgz
AddType application/x-tcl tcl
AddType application/x-tex tex
AddType application/x-texinfo texi
AddType application/x-texinfo texinfo
AddType application/x-ustar ustar
AddType application/x-wais-source src
AddType application/x-x509-ca-cert crt
AddType application/x-x509-ca-cert der
AddType application/xenc+xml xenc
AddType application/xhtml+xml xht
AddType application/xhtml+xml xhtm
AddType application/xhtml+xml xhtml
AddType application/xml xml
AddType application/xml xsl
AddType application/xml-dtd dtd
AddType application/xop+xml xop
AddType application/xslt+xml xslt
AddType application/xspf+xml xspf
AddType application/xv+xml mxml
AddType application/xv+xml xhvml
AddType application/xv+xml xvm
AddType application/xv+xml xvml
AddType application/zip zip
AddType audio/basic au
AddType audio/basic snd
AddType audio/midi kar
AddType audio/midi mid
AddType audio/midi midi
AddType audio/midi rmi
AddType audio/mp4 mp4a
AddType audio/mp4a-latm m4a
AddType audio/mp4a-latm m4p
AddType audio/mpeg m2a
AddType audio/mpeg m3a
AddType audio/mpeg mp2
AddType audio/mpeg mp2a
AddType audio/mpeg mp3
AddType audio/mpeg mpga
AddType audio/vnd.digital-winds eol
AddType audio/vnd.lucent.voice lvp
AddType audio/vnd.nuera.ecelp4800 ecelp4800
AddType audio/vnd.nuera.ecelp7470 ecelp7470
AddType audio/vnd.nuera.ecelp9600 ecelp9600
AddType audio/wav wav
AddType audio/x-aiff aif
AddType audio/x-aiff aifc
AddType audio/x-aiff aiff
AddType audio/x-m4a m4a
AddType audio/x-mpegurl m3u
AddType audio/x-ms-wax wax
AddType audio/x-ms-wma wma
AddType audio/x-pn-realaudio ra
AddType audio/x-pn-realaudio ram
AddType audio/x-pn-realaudio rm
AddType audio/x-pn-realaudio-plugin rmp
AddType audio/x-scpls pls
AddType audio/x-wav wav
AddType chemical/x-cdx cdx
AddType chemical/x-cif cif
AddType chemical/x-cmdf cmdf
AddType chemical/x-cml cml
AddType chemical/x-csml csml
AddType chemical/x-pdb pdb
AddType chemical/x-xyz xyz
AddType image/bmp bmp
AddType image/cgm cgm
AddType image/g3fax g3
AddType image/gif gif
AddType image/ief ief
AddType image/jp2 jp2
AddType image/jpeg jpe
AddType image/jpeg jpeg
AddType image/jpeg jpg
AddType image/pict pct
AddType image/pict pic
AddType image/pict pict
AddType image/png png
AddType image/prs.btif btif
AddType image/svg+xml svg
AddType image/svg+xml svgz
AddType image/tiff tif
AddType image/tiff tiff
AddType image/vnd.adobe.photoshop psd
AddType image/vnd.djvu djv
AddType image/vnd.djvu djvu
AddType image/vnd.dwg dwg
AddType image/vnd.dxf dxf
AddType image/vnd.fastbidsheet fbs
AddType image/vnd.fpx fpx
AddType image/vnd.fst fst
AddType image/vnd.fujixerox.edmics-mmr mmr
AddType image/vnd.fujixerox.edmics-rlc rlc
AddType image/vnd.microsoft.icon ico
AddType image/vnd.ms-modi mdi
AddType image/vnd.net-fpx npx
AddType image/vnd.wap.wbmp wbmp
AddType image/vnd.xiff xif
AddType image/x-cmu-raster ras
AddType image/x-cmx cmx
AddType image/x-macpaint mac
AddType image/x-macpaint pnt
AddType image/x-macpaint pntg
AddType image/x-pcx pcx
AddType image/x-pict pct
AddType image/x-pict pic
AddType image/x-portable-anymap pnm
AddType image/x-portable-bitmap pbm
AddType image/x-portable-graymap pgm
AddType image/x-portable-pixmap ppm
AddType image/x-quicktime qti
AddType image/x-quicktime qtif
AddType image/x-rgb rgb
AddType image/x-xbitmap xbm
AddType image/x-xpixmap xpm
AddType image/x-xwindowdump xwd
AddType message/rfc822 eml
AddType message/rfc822 mime
AddType model/iges iges
AddType model/iges igs
AddType model/mesh mesh
AddType model/mesh msh
AddType model/mesh silo
AddType model/vnd.dwf dwf
AddType model/vnd.gdl gdl
AddType model/vnd.gtw gtw
AddType model/vnd.mts mts
AddType model/vnd.vtu vtu
AddType model/vrml vrml
AddType model/vrml wrl
AddType text/calendar ics
AddType text/calendar ifb
AddType text/css css
AddType text/csv csv
AddType text/html htm
AddType text/html html
AddType text/html shtml
AddType text/plain asc
AddType text/plain conf
AddType text/plain def
AddType text/plain in
AddType text/plain list
AddType text/plain log
AddType text/plain text
AddType text/plain txt
AddType text/prs.lines.tag dsc
AddType text/richtext rtx
AddType text/rtf rtf
AddType text/sgml sgm
AddType text/sgml sgml
AddType text/tab-separated-values tsv
AddType text/troff man
AddType text/troff me
AddType text/troff ms
AddType text/troff roff
AddType text/troff t
AddType text/troff tr
AddType text/uri-list uri
AddType text/uri-list uris
AddType text/uri-list urls
AddType text/vnd.fly fly
AddType text/vnd.fmi.flexstor flx
AddType text/vnd.in3d.3dml 3dml
AddType text/vnd.in3d.spot spot
AddType text/vnd.sun.j2me.app-descriptor jad
AddType text/vnd.wap.wml wml
AddType text/vnd.wap.wmlscript wmls
AddType text/x-asm s
AddType text/x-asm sm
AddType text/x-c c
AddType text/x-c cc
AddType text/x-c cpp
AddType text/x-c cxx
AddType text/x-c dic
AddType text/x-c h
AddType text/x-c hh
AddType text/x-fortran f
AddType text/x-fortran f77
AddType text/x-fortran f90
AddType text/x-fortran for
AddType text/x-java-source java
AddType text/x-pascal p
AddType text/x-pascal pas
AddType text/x-setext etx
AddType text/x-uuencode uu
AddType text/x-vcalendar vcs
AddType text/x-vcard vcf
AddType video/3gp2 3gp2
AddType video/3gpp 3gp
AddType video/3gpp 3gpp
AddType video/3gpp2 3g2
AddType video/h261 h261
AddType video/h263 h263
AddType video/h264 h264
AddType video/jpeg jpgv
AddType video/jpm jpgm
AddType video/jpm jpm
AddType video/mj2 mj2
AddType video/mj2 mjp2
AddType video/mp4 m4v
AddType video/mp4 mp4
AddType video/mp4 mp4v
AddType video/mp4 mpg4
AddType video/mpeg m1v
AddType video/mpeg m2v
AddType video/mpeg mpe
AddType video/mpeg mpeg
AddType video/mpeg mpg
AddType video/quicktime mov
AddType video/quicktime qt
AddType video/vnd.fvt fvt
AddType video/vnd.mpegurl m4u
AddType video/vnd.mpegurl mxu
AddType video/vnd.vivo viv
AddType video/x-dv dif
AddType video/x-dv dv
AddType video/x-fli fli
AddType video/x-ms-asf asf
AddType video/x-ms-asf asx
AddType video/x-ms-wm wm
AddType video/x-ms-wmv wmv
AddType video/x-ms-wmx wmx
AddType video/x-ms-wvx wvx
AddType video/x-msvideo avi
AddType video/x-sgi-movie movie
AddType x-conference/x-cooltalk ice
# Settings for hosting different languages.
# Required modules: mod_mime, mod_negotiation
# DefaultLanguage and AddLanguage allows you to specify the language of
# a document. You can then use content negotiation to give a browser a
# file in a language the user can understand.
# Specify a default language. This means that all data
# going out without a specific language tag (see below) will
# be marked with this one. You probably do NOT want to set
# this unless you are sure it is correct for all cases.
# * It is generally better to not mark a page as
# * being a certain language than marking it with the wrong
# * language!
# DefaultLanguage nl
# Note 1: The suffix does not have to be the same as the language
# keyword --- those with documents in Polish (whose net-standard
# language code is pl) may wish to use "AddLanguage pl .po" to
# avoid the ambiguity with the common suffix for perl scripts.
# Note 2: The example entries below illustrate that in some cases
# the two character 'Language' abbreviation is not identical to
# the two character 'Country' code for its country,
# E.g. 'Danmark/dk' versus 'Danish/da'.
# Note 3: In the case of 'ltz' we violate the RFC by using a three char
# specifier. There is 'work in progress' to fix this and get
# the reference data for rfc1766 cleaned up.
# Catalan (ca) - Croatian (hr) - Czech (cs) - Danish (da) - Dutch (nl)
# English (en) - Esperanto (eo) - Estonian (et) - French (fr) - German (de)
# Greek-Modern (el) - Hebrew (he) - Italian (it) - Japanese (ja)
# Korean (ko) - Luxembourgeois* (ltz) - Norwegian Nynorsk (nn)
# Norwegian (no) - Polish (pl) - Portugese (pt)
# Brazilian Portuguese (pt-BR) - Russian (ru) - Swedish (sv)
# Simplified Chinese (zh-CN) - Spanish (es) - Traditional Chinese (zh-TW)
AddLanguage ca .ca
AddLanguage cs .cz .cs
AddLanguage da .dk
AddLanguage de .de
AddLanguage el .el
AddLanguage en .en
AddLanguage eo .eo
AddLanguage es .es
AddLanguage et .et
AddLanguage fr .fr
AddLanguage he .he
AddLanguage hr .hr
AddLanguage it .it
AddLanguage ja .ja
AddLanguage ko .ko
AddLanguage ltz .ltz
AddLanguage nl .nl
AddLanguage nn .nn
AddLanguage no .no
AddLanguage pl .po
AddLanguage pt .pt
AddLanguage pt-BR .pt-br
AddLanguage ru .ru
AddLanguage sv .sv
AddLanguage zh-CN .zh-cn
AddLanguage zh-TW .zh-tw
# LanguagePriority allows you to give precedence to some languages
# in case of a tie during content negotiation.
# Just list the languages in decreasing order of preference. We have
# more or less alphabetized them here. You probably want to change this.
LanguagePriority en ca cs da de el eo es et fr he hr it ja ko ltz nl nn no pl pt pt-BR ru sv zh-CN zh-TW
# ForceLanguagePriority allows you to serve a result page rather than
# MULTIPLE CHOICES (Prefer) [in case of a tie] or NOT ACCEPTABLE (Fallback)
# [in case no accepted languages matched the available variants]
ForceLanguagePriority Prefer Fallback
# Commonly used filename extensions to character sets. You probably
# want to avoid clashes with the language extensions, unless you
# are good at carefully testing your setup after each change.
# See http://www.iana.org/assignments/character-sets for the
# official list of charset names and their respective RFCs.
AddCharset us-ascii.ascii .us-ascii
AddCharset ISO-8859-1 .iso8859-1 .latin1
AddCharset ISO-8859-2 .iso8859-2 .latin2 .cen
AddCharset ISO-8859-3 .iso8859-3 .latin3
AddCharset ISO-8859-4 .iso8859-4 .latin4
AddCharset ISO-8859-5 .iso8859-5 .cyr .iso-ru
AddCharset ISO-8859-6 .iso8859-6 .arb .arabic
AddCharset ISO-8859-7 .iso8859-7 .grk .greek
AddCharset ISO-8859-8 .iso8859-8 .heb .hebrew
AddCharset ISO-8859-9 .iso8859-9 .latin5 .trk
AddCharset ISO-8859-10 .iso8859-10 .latin6
AddCharset ISO-8859-13 .iso8859-13
AddCharset ISO-8859-14 .iso8859-14 .latin8
AddCharset ISO-8859-15 .iso8859-15 .latin9
AddCharset ISO-8859-16 .iso8859-16 .latin10
AddCharset ISO-2022-JP .iso2022-jp .jis
AddCharset ISO-2022-KR .iso2022-kr .kis
AddCharset ISO-2022-CN .iso2022-cn .cis
AddCharset Big5.Big5 .big5 .b5
AddCharset cn-Big5 .cn-big5
# For russian, more than one charset is used (depends on client, mostly):
AddCharset WINDOWS-1251 .cp-1251 .win-1251
AddCharset CP866 .cp866
AddCharset KOI8 .koi8
AddCharset KOI8-E .koi8-e
AddCharset KOI8-r .koi8-r .koi8-ru
AddCharset KOI8-U .koi8-u
AddCharset KOI8-ru .koi8-uk .ua
AddCharset ISO-10646-UCS-2 .ucs2
AddCharset ISO-10646-UCS-4 .ucs4
AddCharset UTF-7 .utf7
AddCharset UTF-8 .utf8
AddCharset UTF-16 .utf16
AddCharset UTF-16BE .utf16be
AddCharset UTF-16LE .utf16le
AddCharset UTF-32 .utf32
AddCharset UTF-32BE .utf32be
AddCharset UTF-32LE .utf32le
AddCharset euc-cn .euc-cn
AddCharset euc-gb .euc-gb
AddCharset euc-jp .euc-jp
AddCharset euc-kr .euc-kr
#Not sure how euc-tw got in - IANA doesn't list it???
AddCharset EUC-TW .euc-tw
AddCharset gb2312 .gb2312 .gb
AddCharset iso-10646-ucs-2 .ucs-2 .iso-10646-ucs-2
AddCharset iso-10646-ucs-4 .ucs-4 .iso-10646-ucs-4
AddCharset shift_jis .shift_jis .sjis
</IfModule>
## The modmimemagic module allows the server to use various hints from the
## contents of the file itself to determine its type. The MIMEMagicFile
## directive tells the module where the hint definitions are located.
<IfModule modmimemagic.c>
MIMEMagicFile /etc/apache2/magic
</IfModule>
## HostnameLookups: Log the names of clients or just their IP addresses
## e.g., www.apache.org (on) or 204.62.129.132 (off).
## The default is off because it'd be overall better for the net if people
## had to knowingly turn this feature on, since enabling it means that
## each client request will result in AT LEAST one lookup request to the
## nameserver.
HostnameLookups Off
## LogLevel: Control the number of messages logged to the error_log.
## Possible values include: debug, info, notice, warn, error, crit,
## alert, emerg.
LogLevel warn
<IfModule modlogconfig.c>
# The following directives define some format nicknames for use with
# a CustomLog directive (see below).
LogFormat "%h %l %u %t \"%r\" %>s %b \"%{Referer}i\" \"%{User-Agent}i\"" combined
LogFormat "%h %l %u %t \"%r\" %>s %b" common
LogFormat "%{Referer}i -> %U" referer
LogFormat "%{User-agent}i" agent
<IfModule mod_logio.c>
# You need to enable mod_logio.c to use %I and %O
LogFormat "%h %l %u %t \"%r\" %>s %b \"%{Referer}i\" \"%{User-Agent}i\" %I %O" combinedio
</IfModule>
# The location and format of the access logfile (Common Logfile Format).
# If you do not define any access logfiles within a <VirtualHost>
# container, they will be logged here. Contrariwise, if you do
# define per-<VirtualHost> access logfiles, transactions will be
# logged therein and not in this file.
#### For Mac OS X Server: Server Admin manages CustomLog directives
#### on a virtual host basis.
#CustomLog /var/log/apache2/access_log common
# If you prefer a logfile with access, agent, and referer information
# (Combined Logfile Format) you can use the following directive.
#CustomLog /var/log/apache2/access_log combined
</IfModule>
## Optionally add a line containing the server version and virtual host
## name to server-generated pages (error documents, FTP directory listings,
## mod_status and mod_info output etc., but not CGI generated documents).
## Set to "EMail" to also include a mailto: link to the ServerAdmin.
## Set to one of: On | Off | EMail
ServerSignature On
UseCanonicalName Off
## Aliases: Add here as many aliases as you need (with no limit). The format is
## Alias fakename realname
<IfModule mod_alias.c>
# Redirect: Allows you to tell clients about documents that used to
# exist in your server's namespace, but do not anymore. The client
# will make a new request for the document at its new location.
# Example:
# Redirect permanent /foo http://www.example.com/bar
# Alias: Maps web paths into filesystem paths and is used to
# access content that does not live under the DocumentRoot.
# Example:
# Alias /webpath /full/filesystem/path
# If you include a trailing / on /webpath then the server will
# require it to be present in the URL. You will also likely
# need to provide a <Directory> section to allow access to
# the filesystem path.
# ScriptAlias: This controls which directories contain server scripts.
# ScriptAliases are essentially the same as Aliases, except that
# documents in the target directory are treated as applications and
# run by the server when requested rather than as documents sent to the
# client. The same rules about trailing "/" apply to ScriptAlias
# directives as to Alias.
ScriptAliasMatch ^/cgi-bin/((?!(?i:webobjects)).*$) "/Library/WebServer/CGI-Executables/$1"
#### For Mac OS X Server: Uncomment this line to enable web-based
#### configuration of mailman:
#Include /etc/apache2/httpd_mailman.conf
<IfModule mod_setenvif.c>
<IfModule mod_negotiation.c>
# Allow convenient access to Apache manual
AliasMatch ^/manual(?:/(?:de|en|es|fr|ja|ko|pt-br|ru))?(/.*)?$ "/Library/WebServer/share/httpd/manual$1"
<Directory "/Library/WebServer/share/httpd/manual">
Options Indexes
AllowOverride None
Order allow,deny
Allow from all
<Files *.html>
SetHandler type-map
</Files>
SetEnvIf Request_URI ^/manual/(de|en|es|fr|ja|ko|pt-br|ru)/ prefer-language=$1
RedirectMatch 301 ^/manual(?:/(de|en|es|fr|ja|ko|pt-br|ru)){2,}(/.*)?$ /manual/$1$2
LanguagePriority en de es fr ja ko pt-br ru ForceLanguagePriority Prefer Fallback
</Directory>
</IfModule>
</IfModule>
</IfModule>
## Directives controlling the display of server-generated directory listings.
#### For Mac OS X Server: Note that indexing is further controlled
#### by the Server Admin application, which adds "Options +/-Indexes
#### in the virtual host scope.
<IfModule mod_autoindex.c>
## FancyIndexing is whether you want fancy directory indexing or standard
IndexOptions FancyIndexing
## AddIcon* directives tell the server which icon to show for different
## files or filename extensions. These are only displayed for
## FancyIndexed directories.
AddIconByEncoding (CMP,/icons/compressed.gif) x-compress x-gzip
AddIconByType (TXT,/icons/text.gif) text/*
AddIconByType (IMG,/icons/image2.gif) image/*
AddIconByType (SND,/icons/sound2.gif) audio/*
AddIconByType (VID,/icons/movie.gif) video/*
AddIcon /icons/binary.gif .bin .exe
AddIcon /icons/binhex.gif .hqx
AddIcon /icons/tar.gif .tar
AddIcon /icons/world2.gif .wrl .wrl.gz .vrml .vrm .iv
AddIcon /icons/compressed.gif .Z .z .tgz .gz .zip
AddIcon /icons/a.gif .ps .ai .eps
AddIcon /icons/layout.gif .html .shtml .htm .pdf
AddIcon /icons/text.gif .txt
AddIcon /icons/c.gif .c
AddIcon /icons/p.gif .pl .py
AddIcon /icons/f.gif .for
AddIcon /icons/dvi.gif .dvi
AddIcon /icons/uuencoded.gif .uu
AddIcon /icons/script.gif .conf .sh .shar .csh .ksh .tcl
AddIcon /icons/tex.gif .tex
AddIcon /icons/bomb.gif core
AddIcon /icons/back.gif ..
AddIcon /icons/hand.right.gif README
AddIcon /icons/folder.gif ^^DIRECTORY^^
AddIcon /icons/blank.gif ^^BLANKICON^^
## DefaultIcon is which icon to show for files which do not have an icon
## explicitly set.
DefaultIcon /icons/unknown.gif
## AddDescription allows you to place a short description after a file in
## server-generated indexes. These are only displayed for FancyIndexed
## directories.
## Format: AddDescription "description" filename
#AddDescription "GZIP compressed document" .gz
#AddDescription "tar archive" .tar
#AddDescription "GZIP compressed tar archive" .tgz
#AddDescription "Mac OS Disk Image file" .dmg
## ReadmeName is the name of the README file the server will look for by
## default, and append to directory listings.
## HeaderName is the name of a file which should be prepended to
## directory indexes.
## If MultiViews are amongst the Options in effect, the server will
## first look for name.html and include it if found. If name.html
## doesn't exist, the server will then look for name.txt and include
## it as plaintext if found.
ReadmeName README
HeaderName HEADER
## IndexIgnore is a set of filenames which directory indexing should ignore
## and not include in the listing. Shell-style wildcarding is permitted.
IndexIgnore .??* *~ *# HEADER* README* RCS CVS *,v *,t
</IfModule>
## MetaDir: specifies the name of the directory in which Apache can find
## meta information files. These files contain additional HTTP headers
## to include when sending the document
#MetaDir .web
## MetaSuffix: specifies the file name suffix for the file containing the
## meta information.
#MetaSuffix .meta
# Customizable error responses come in three flavors:
# 1) plain text 2) local redirects 3) external redirects
# Some examples:
#ErrorDocument 500 "The server made a boo boo."
#ErrorDocument 404 /missing.html
#ErrorDocument 404 "/cgi-bin/missing_handler.pl"
#ErrorDocument 402 http://www.example.com/subscription_info.html
# The configuration below implements multi-language error documents through
# content-negotiation, and via the default Alias for /error in the vhost config file.
<Directory "/usr/share/httpd/error">
AllowOverride None
Options IncludesNoExec
AddOutputFilter Includes html
AddHandler type-map var
Order allow,deny
Allow from all
LanguagePriority en cs de es fr it ja ko nl pl pt-br ro sv tr
ForceLanguagePriority Prefer Fallback
</Directory>
ErrorDocument 400 /error/HTTPBADREQUEST.html.var
ErrorDocument 401 /error/HTTP_UNAUTHORIZED.html.var
ErrorDocument 403 /error/HTTP_FORBIDDEN.html.var
ErrorDocument 404 /error/HTTPNOTFOUND.html.var
ErrorDocument 405 /error/HTTPMETHOD_NOTALLOWED.html.var
ErrorDocument 408 /error/HTTPREQUEST_TIMEOUT.html.var
ErrorDocument 410 /error/HTTP_GONE.html.var
ErrorDocument 411 /error/HTTPLENGTHREQUIRED.html.var
ErrorDocument 412 /error/HTTPPRECONDITIONFAILED.html.var
ErrorDocument 413 /error/HTTPREQUEST_ENTITY_TOOLARGE.html.var
ErrorDocument 414 /error/HTTPREQUEST_URI_TOOLARGE.html.var
ErrorDocument 415 /error/HTTPUNSUPPORTED_MEDIATYPE.html.var
ErrorDocument 500 /error/HTTPINTERNAL_SERVERERROR.html.var
ErrorDocument 501 /error/HTTPNOTIMPLEMENTED.html.var
ErrorDocument 502 /error/HTTPBADGATEWAY.html.var
ErrorDocument 503 /error/HTTPSERVICEUNAVAILABLE.html.var
ErrorDocument 506 /error/HTTPVARIANT_ALSOVARIES.html.var
# Allow server status reports generated by mod_status,
# with the URL of http://servername/server-status
<IfModule mod_status.c>
<Location /server-status>
SetHandler server-status
Order deny,allow
Deny from all
Allow from 127.0.0.1
</Location>
# ExtendedStatus controls whether Apache will generate "full" status
# information (ExtendedStatus On) or just basic information (ExtendedStatus
# Off) when the "server-status" handler is called. The default is Off.
ExtendedStatus On
</IfModule>
# Allow remote server configuration reports, with the URL of
# http://servername/server-info (requires that mod_info.c be loaded).
#<IfModule mod_info.c>
# <Location /server-info>
# SetHandler server-info
# Order deny,allow
# Deny from all
# Allow from .your-domain.com
# </Location>
#</IfModule>
## Proxy Server directives.
<IfModule mod_proxy.c>
ProxyRequests Off
<IfModule moddiskcache.c>
CacheEnable disk /
CacheRoot "/var/run/proxy"
</IfModule>
</IfModule>
## SSL stuff
<IfModule mod_ssl.c>
SetEnvIf User-Agent ".MSIE." nokeepalive ssl-unclean-shutdown
SSLPassPhraseDialog exec:/etc/apache2/getsslpassphrase
SSLSessionCache shmcb:/var/run/ssl_scache(512000)
SSLSessionCacheTimeout 300
SSLMutex file:/var/log/apache2/ssl_mutex
SSLRandomSeed startup builtin
SSLRandomSeed connect builtin
AddType application/x-x509-ca-cert crt
AddType application/x-pkcs7-crl crl
</IfModule>
<IfModule mod_jk.c>
JkWorkersFile /etc/apache2/workers.properties
JkLogFile /var/log/apache2/mod_jk.log
JkLogLevel error
JkMount /*.jsp JBoss1
JkMount /servlet/* JBoss1
JkMount /examples/* JBoss1
</IfModule>
## The default server is used for status on a special port
#ServerName www.example.com
Listen 127.0.0.1:9010
DocumentRoot "/var/empty"
ErrorLog "/var/log/apache2/error_log"
<Directory /var/empty>
Order Deny,Allow
Deny from All
</Directory>
<IfModule modspotlightapple2.c>
Spotlight On
</IfModule>
<IfModule modauth_digestapple.c>
BrowserMatch "MSIE" AuthDigestEnableQueryStringHack=On
</IfModule>
<IfModule mod_rewrite.c>
RewriteEngine On
RewriteCond %{REQUEST_METHOD} ^TRACE
RewriteRule .* - [F]
</IfModule>
<IfModule mod_headers.c>
Header add MS-Author-Via "DAV"
RequestHeader set XFORWARDEDPROTO 'https' env=https
</IfModule>
<IfModule mod_encoding.c>
EncodingEngine on
NormalizeUsername on
DefaultClientEncoding UTF-8
# Windows XP?
AddClientEncoding "Microsoft-WebDAV-MiniRedir/" MSUTF-8
# Windows 2K SP2 with .NET
AddClientEncoding "(Microsoft .* DAV\$)" MSUTF-8
# Windows 2K SP2/Windows XP
AddClientEncoding "(Microsoft .* DAV 1.1)" CP932
# Windows XP?
AddClientEncoding "Microsoft-WebDAV*" CP932
# RealPlayer
AddClientEncoding "RMA/*" CP932
# MacOS X webdavfs
AddClientEncoding "WebDAVFS" UTF-8
# cadaver
AddClientEncoding "cadaver/" EUC-JP
</IfModule>
RLimitNPROC max max
ExtendedStatus On
Timeout 300
KeepAlive On
MaxKeepAliveRequests 500
KeepAliveTimeout 15
# As of Mac OS X Server 10.5, the compiled-in server limit is 2048
ServerLimit 2048
# Server Admin manages ListenBackLog as a function of MaxClients: min(511, MaxClients/2)
MaxClients 1024
ListenBackLog 512
# Including WebObjects Configs
Include /System/Library/WebObjects/Adaptors/Apache2.2/apache.conf
#### The following Include directive is essential for the virtual hosts to be usable.
Include "/etc/apache2/sites/*.conf"
========HTTPD.CONF==========I am modifying the correct httpd.conf file on the server, it just doesn't seem to work. - If I put the rewrite rules in the <Directory /> the rewrite works but it adds /Library/WebServer/Documents to the URL.
I also tried putting the rewrite rules in <IfModule mod_rewrite.c> but that did not work either.
mod_rewrite is enabled and running on the server.
I will post the rewrite rules again in the code brackets. Sorry for the long post. - If some one can try them out on their Leopard Server to see if they can get them to work, it would be much appreciated. Again, these work on my Leopard Client but I can't get them to work on Server.
-- The httpd.conf file posted above is just the default conf file found in /private/etc/apache2/
<code>
RewriteEngine On
Options +FollowSymLinks
RewriteRule ^(.+)/$ http://%{HTTP_HOST}$1 [R=301, L]
RewriteCond %{THE_REQUEST} ^GET\ ([^\?]+)\.php(.*)\ HTTP
RewriteRule (.+)\.php(.*)$ $1$2 [R, L]]
RewriteCond %{THE_REQUEST} ^GET\ ([^\?]+)\.asp(.*)\ HTTP
RewriteRule (.+)\.asp(.*)$ $1$2 [R, L]]
RewriteCond %{THE_REQUEST} ^GET\ ([^\?]+)\.aspx(.*)\ HTTP
RewriteRule (.+)\.aspx(.*)$ $1$2 [R, L]]
RewriteCond %{THE_REQUEST} ^GET\ ([^\?]+)\.htm.(.)\ HTTP
RewriteRule (.+)\.htm.(.)$ $1$2 [R, L]]
RewriteCond %{THE_REQUEST} ^GET\ ([^\?]+)\.cfm(.*)\ HTTP
RewriteRule (.+)\.cfm(.*)$ $1$2 [R, L]]
RewriteCond %{THE_REQUEST} ^GET\ ([^\?]+)\.bak(.*)\ HTTP
RewriteRule (.+)\.bak(.*)$ $1$2 [R, L]]
RewriteCond %{THE_REQUEST} ^GET\ ([^\?]+)\.inc(.*)\ HTTP
RewriteRule (.+)\.inc(.*)$ $1$2 [R, L]]
RewriteCond %{THE_REQUEST} ^GET\ ([^\?]+)\..(.)\ HTTP
RewriteRule (.+)\..(.)$ $1$2 [R, L]]
<code> -
Problem with /etc/project in Solaris 10
Bonjour,
I need your help to understand and have project work correctly under Solaris 10.
What seems to be prety straight forward on paper doesn't work at all for me and can't figure why so!
Obviously I'm trying to make it work for an Oracle user.
I create a project called "oracle" with id 100.
here is what you can found in my /etc/project :
oracle:100::oracle::process.max-file-descriptor=(priv,1024,deny);project.max-shm-memory=(priv,4294967296,deny)
here is what you can found in my /etc/user_attr :
oracle::::project=oracle
now, once I reboot and login as oracle I do a id -p, here is the output :
uid=3000(oracle) gid=3002(oinstall) projid=0(system)
I do ulimit -a, here is the output :
time(seconds) unlimited
file(blocks) unlimited
data(kbytes) unlimited
stack(kbytes) 8192
coredump(blocks) 0
nofiles(descriptors) 256 <------------------- should be 1024 no?
vmemory(kbytes) unlimited
Shouldn't I be part of project oracle (100)???
Now, of what I understant is oracle is NOT part of the "oracle" project and thuss setting are not set up at loging.
What am I doing wrong or what am I missing?
Thanks for your timeI'd start by verifying the settings via valid OS methods, no cat/grep whenever possible
# logins -xl oracle
oracle 3000 oinstall 3002
/export/home/oracle
/bin/sh
PS 051110 -1 -1 -1
# grep project /etc/nsswitch.conf
project: files
# grep oracle /etc/user_attr
oracle::::project=oracle
# projects oracle
default oracle
# projects -l oracle
oracle
projid : 100
comment: ""
users : oracle
groups : (none)
attribs: process.max-file-descriptor=(priv,1024,deny)
project.max-shm-memory=(priv,4294967296,deny)
# ssh -l oracle 0
Password:
Sun Microsystems Inc. SunOS 5.10 Generic January 2005
$ id -p
uid=3000(oracle) gid=3002(oinstall) projid=100(oracle) -
Problem in iws6.0 on solaris 8
i have recently deployed my web application on
os Solaris 8
iws 6.0
jdk1.2.2
when i am running my application i am getting the probelm
[04/Aug/2003:16:22:49] failure ( 4852): Internal error: exception thrown from the servlet service function (uri=/Intranet/HTML/controller.jsp): java.lang.ArrayIndexOutOfBoundsException: 20386816, Stack: java.lang.ArrayIndexOutOfBoundsException: 20386816
at org.apache.jasper.runtime.HttpJspBase.service(Compiled Code)
at javax.servlet.http.HttpServlet.service(Compiled Code)
at org.apache.jasper.servlet.JspServlet$JspServletWrapper.service(Compiled Code)
at org.apache.jasper.servlet.JspServlet$JspServletWrapper.access$6(Compiled Code)
at org.apache.jasper.servlet.JspServlet.serviceJspFile(Compiled Code)
at org.apache.jasper.servlet.JspServlet.service(Compiled Code)
at javax.servlet.http.HttpServlet.service(Compiled Code)
at com.iplanet.server.http.servlet.NSServletRunner.invokeServletService(Compiled Code)
at com.iplanet.server.http.servlet.WebApplication.service(Compiled Code)
at com.iplanet.server.http.servlet.NSServletRunner.ServiceWebApp(Compiled Code)
at com.iplanet.server.http.servlet.NSServletSession.internalRedirect(Native Method)
at com.iplanet.server.http.servlet.NSServletSession.internalRedirect(Compiled Code)
at com.iplanet.server.http.servlet.NSRequestDispatcher.forward(Compiled Code)
at org.apache.jasper.runtime.PageContextImpl.forward(Compiled Code)
at org.apache.jasper.runtime.PageContextImpl.handlePageException(Compiled Code)
at jsps.Intranet._HTML._controller_jsp._jspService(Compiled Code)
at org.apache.jasper.runtime.HttpJspBase.service(Compiled Code)
at javax.servlet.http.HttpServlet.service(Compiled Code)
at org.apache.jasper.servlet.JspServlet$JspServletWrapper.service(Compiled Code)
at org.apache.jasper.servlet.JspServlet$JspServletWrapper.access$6(Compiled Code)
at org.apache.jasper.servlet.JspServlet.serviceJspFile(Compiled Code)
at org.apache.jasper.servlet.JspServlet.service(Compiled Code)
at javax.servlet.http.HttpServlet.service(Compiled Code)
at com.iplanet.server.http.servlet.NSServletRunner.invokeServletService(Compiled Code)
at com.iplanet.server.http.servlet.WebApplication.service(Compiled Code)
at com.iplanet.server.http.servlet.NSServletRunner.ServiceWebApp(Compiled Code)
when i restart the instance my application works fine,but intermittently i get this problem .
i have used request controller architecture, when ever a request is made it will go to the controller.jsp and from there the requested file will be forwarded.
Previously i have used the same application on
os windows 2000 server
iws 6.0
jdk1.3
And there was no problem with the application.Have you tried increasing your stack size?
-
Problem with zone installation on solaris 08/07
Hello :)
I need some help
I install solaris 10 08/07 on my x2100 M2.Everything is ok.
Then I try to install non-global zone named web-zone with the following commands:
# mkdir /export/web-zone
# chmod 700 /export/web-zone
# zonecfg -z web-zone
web-zone: No such zone configured
Use 'create' to begin configuring a new zone.
zonecfg:web-zone> create
zonecfg:web-zone> set autoboot=true
zonecfg:web-zone> set zonepath=/export/web-zone
zonecfg:web-zone> add net
zonecfg:web-zone:net> set address=192.168.0.3
zonecfg:web-zone:net> set physical=bge1
zonecfg:web-zone:net> end
zonecfg:web-zone> info
zonepath: /export/web-zone
autoboot: true
pool:
inherit-pkg-dir:
dir: /lib
inherit-pkg-dir:
dir: /platform
inherit-pkg-dir:
dir: /sbin
inherit-pkg-dir:
dir: /usr
net:
address: 192.168.0.3
physical: bge1
zonecfg:web-zone> verify
zonecfg:web-zone> commit
zonecfg:web-zone> exit
# zoneadm -z web-zone verify
# zoneadm -z web-zone install
# zoneadm list -cv
# zoneadm -z web-zone boot
When I zlogin into zone configuration stack with:
Fatal internal error: prompt_error called before prompt_open!
The IP address previously set on the network interface
is no longer available. The system state is corrupted. System identification
can no longer continue.
Press Return to continue
And that�s it :)
On interface bge1 I have 2 ip addresses, one for management processor (192.168.0.254) and one for global zone (192.168.0.2)
The output from ifconfig �a is :
# ifconfig -a
lo0: flags=2001000849<UP,LOOPBACK,RUNNING,MULTICAST,IPv4,VIRTUAL> mtu 8232 index 1
inet 127.0.0.1 netmask ff000000
lo0:1: flags=2001000849<UP,LOOPBACK,RUNNING,MULTICAST,IPv4,VIRTUAL> mtu 8232 index 1
zone web-zone
inet 127.0.0.1 netmask ff000000
bge1: flags=1000843<UP,BROADCAST,RUNNING,MULTICAST,IPv4> mtu 1500 index 2
inet 192.168.0.2 netmask ffffff00 broadcast 192.168.0.255
ether 0:1b:24:5:4f:6f
bge1:1: flags=4001000842<BROADCAST,RUNNING,MULTICAST,IPv4,DUPLICATE> mtu 1500 index 2
zone web-zone
inet 192.168.0.3 netmask ffffff00 broadcast 192.168.0.255
Any Ideas ?? :)
Thaks
pp Sory for my baad english :)Hi
Thank you for replay
This is happened exactly when I zlogin for first time to complete installation.
The installation procedure flow flawless.I set terminal type 13 (dt terminal) and everything is OK, but when I try to setup hostname I�ve got this error.
I try this with 3 different zones on this machine with same result
I have old x86 machines with solaris 11/06 zones installed , everything works fine (1 year uptime)
This is not the first zone in my life :)
Best Regards
DJ JAM -
Installation problem of WL6.0SP1 on solaris
When I install WL6.0SP1 on Sun Solaris, it gives such message:
weblogic600sp1_sol.bin Preparing to install...
Error: failed /tmp/install.dir.16036/Solaris/resource/jre/jre/lib/sparc/client/libjvm.so,
because ld.so.1: /tmp/install.dir.16036/Solaris/resource/jre/jre/bin/../bin/sparc/native_threads/java:
fatal: libCrun.so.1: open failed: No such file or directory
>
My classpath is set as:
/usr/java1.2/lib:/oracle/product/8.1.6/jdbc/lib/classes12.zip:/usr/local/j2sdkee1.2.1/lib/j2ee.jar:
Does any one know what is wrong with it?
Thanks.You probably need Solaris patches. I had this problem to installing on Solaris
7. GO to Sun's web site to look for pathces relating to C runtime libs.
"Yingwei" <[email protected]> wrote:
>
When I install WL6.0SP1 on Sun Solaris, it gives such message:
weblogic600sp1_sol.bin Preparing to install...
Error: failed /tmp/install.dir.16036/Solaris/resource/jre/jre/lib/sparc/client/libjvm.so,
because ld.so.1: /tmp/install.dir.16036/Solaris/resource/jre/jre/bin/../bin/sparc/native_threads/java:
fatal: libCrun.so.1: open failed: No such file or directory
>
My classpath is set as:
/usr/java1.2/lib:/oracle/product/8.1.6/jdbc/lib/classes12.zip:/usr/local/j2sdkee1.2.1/lib/j2ee.jar:
Does any one know what is wrong with it?
Thanks. -
Problem with JNI in a Solaris shared library
Hi,
I have a problem.
I have used JNI in my .dll on Windows & .so on Solaris . I have also used the same JNI code in a .exe on Windows & an executable on Solaris. 3 out of the above 4 combinations work & 1 doesen't. When I use JNI from a .so on Solaris 8(with/without the J2SE recommended patch), the JVM seems to have some exception & dumps core when I invoke CreateJavaVM(). See Below - I've included the output on the screen & the output from 'pstack core' :
Unexpected Signal : 11 occurred at PC=0xFED29D44
Function=[Unknown. Nearest: JVM_GetMethodIxExceptionIndexes+0x1994]
Library=/usr/java/jre/lib/sparc/libjvm.so
Current Java thread:
Dynamic libraries:
0x10000 SblSim
0xff280000 /usr/lib/libnsl.so.1
0xfec00000 /usr/java/jre/lib/sparc/libjvm.so
0xff370000 /usr/lib/libpthread.so.1
0xff350000 /usr/lib/librt.so.1
0xff260000 /usr/lib/libsocket.so.1
0xff390000 /usr/lib/libdl.so.1
0xff230000 /usr/lib/libCrun.so.1
0xff200000 /usr/lib/libm.so.1
0xff340000 /usr/lib/libw.so.1
0xff1b0000 /usr/lib/libthread.so.1
0xff080000 /usr/lib/libc.so.1
0xff180000 /usr/lib/libmp.so.2
0xff160000 /usr/lib/libaio.so.1
0xff1f0000 /usr/platform/SUNW,Sun-Blade-1000/lib/libc_psr.so.1
0xfebd0000 /usr/j2se/jre/lib/sparc/native_threads/libhpi.so
0xfeba0000 /usr/j2se/jre/lib/sparc/libverify.so
0xfeb60000 /usr/j2se/jre/lib/sparc/libjava.so
0xfeb40000 /usr/j2se/jre/lib/sparc/libzip.so
0xfe920000 /usr/lib/locale/en_US.ISO8859-1/en_US.ISO8859-1.so.2
0xf1400000 ./libaicd.so
0xfc480000 ./libmttoolkit.so
0xfdfe0000 ./libmttlogger.so
0xfdfb0000 /usr/j2se/jre/lib/sparc/libnet.so
Local Time = Tue Nov 12 09:51:37 2002
Elapsed Time = 29
# HotSpot Virtual Machine Error : 11
# Error ID : 4F530E43505002D5 01
# Please report this error at
# http://java.sun.com/cgi-bin/bugreport.cgi
# Java VM: Java HotSpot(TM) Client VM (1.4.0_01-b03 mixed mode)
# An error report file has been saved as hs_err_pid3120.log.
# Please refer to the file for further information.
Abort(coredump)
Below is the output of 'pstack core'
$ pstack core
core 'core' of 3120: SblSim libaicd.so 127.0.0.1 9999
----------------- lwp# 1 / thread# 1 --------------------
ff1c9764 __sigprocmask (ff1cbf60, 0, 0, 565f8, ff1de000, 0) + 8
ff1be110 _sigon (565f8, ff1e5930, 6, ffbedba4, 565f8, 6) + d0
ff1c1150 thrpkill (0, 1, 6, ff1de000, 1, ff140450) + f8
ff0cb900 raise (6, 0, 0, ffffffff, ff1403bc, 4) + 40
ff0b58ec abort (ff13c000, ffbedcf8, 0, fffffff8, 4, ffbedd19) + 100
feee2700 ???????? (1, fef98e50, ffbedd98, 0, feffc130, feee1258)
feee12c8 ???????? (60650, b, fed29d44, ffbeeab8, b, 0)
fede77c0 ???????? (fed29d44, ffbeeab8, ffbee800, fed29d44, fed03744, 0)
ff1cb824 __sighndlr (b, ffbeeab8, ffbee800, fede6f38, 5669c, 5668c) + c
ff1c84d8 sigacthandler (b, 565f8, 0, 0, 0, ff1de000) + 708
--- called from signal handler with signal 11 (SIGSEGV) ---
fed29d44 ???????? (0, 60650, 0, 0, 0, 0)
fed2d7d4 ???????? (606e4, 0, 0, ffbeed00, 0, 0)
f172e818 __1cHJNIEnv_JNewObject6MpnH_jclass_pnK_jmethodID_E_pnI_jobject__ (606e4, 0, 0, ffbeed70, 39, 107f90) + 70
f172dbf8 __1cGJEvent2t5B6M_v_ (107f60, f1a877f4, db088, ff0c1c44, 107f48, 0) + 80
f16f2864 __1cGCEvent2t6Mii_v_ (107f60, 0, 1, ff13c000, 107f48, 0) + 7c
f16e62e8 __1cVCISCHelperThreadMutex2t6M_v_ (107f50, 0, 560ac, 30f68, fefe4000, 0) + c0
f16ddc34 __1cLinitGlobals6F_v_ (0, 1, 19a, f1a198ec, f1a198ec, 0) + 5c
f16de4e4 CreateISCDriverInstance (0, 5cc40, 0, 57608, 565e8, 0) + 554
00034f08 __1cJRunSblSim6F_v_ (1, ffbef322, ffbef32c, ff13fc70, 100d4, 0) + 320
00035588 main (4, ffbef1dc, ffbef1f0, 55c00, 0, 0) + 1a8
00018460 _start (0, 0, 0, 0, 0, 0) + 108
----------------- lwp# 2 / thread# 2 --------------------
ff11e958 _signotifywait (ff1de000, 59, 0, 0, 0, 0) + 8
ff1c2030 thr_yield (0, 0, 0, 0, 0, 0) + 8c
----------------- lwp# 3 --------------------------------
ff1c9774 private___lwp_cond_wait (ff075d70, ff1ded9c, ff1de000, 0, 0, 4) + 8
ff11c554 doorreturn (ff075cb0, ff1ba740, 0, 0, 0, 0) + 68
----------------- lwp# 4 / thread# 4 --------------------
ff11efbc ___lwp_cond_wait (60048, 60030, fe901ad0, 0, 0, fe901ac8) + 8
ff116610 lwpcond_timedwait (1cb8c88, 3dd1157a, fe901ba4, 60030, 60048, 1) + 98
fecfc7d8 ???????? (0, 1, 0, 581b8, feffa26c, 0)
fecfcfd4 ???????? (ff00a15c, feffa4b8, feffa4b4, 0, 0, 0)
fecfccc0 ???????? (d3980, 0, 0, 0, 0, 0)
fecfcbd0 ???????? (d3980, ff1df688, 1, 1, ff1de000, 0)
ff1cb728 threadstart (d3980, 0, 0, 0, 0, 0) + 40
----------------- lwp# 5 --------------------------------
ff11c4fc doorreturn (4, ff1df688, ff1df6a0, 3, ff1de000, 1) + 10
ff1ba740 lwpstart (fea95d70, 0, 6000, ff075b74, 0, 0) + 18
ff1c2030 thr_yield (0, 0, 0, 0, 0, 0) + 8c
----------------- lwp# 6 / thread# 5 --------------------
ff11efbc ___lwp_cond_wait (d5720, d5708, 0, fed10a40, 0, 0) + 8
fed110d4 ???????? (d56c8, 0, 5000, 5210, d4d38, 4d24)
fed10824 ???????? (fdf8172c, 0, 0, d4d38, d4d38, 30dec8)
fed103b0 ???????? (d4dcc, fdf81824, 0, 0, 0, 0)
fa40cc94 ???????? (f2000380, b6, fdf818a4, ffffffff, 0, fdf817c0)
fa405da0 ???????? (f2000380, b6, fdf818a8, fa415444, 0, fdf81840)
fa405da0 ???????? (fdf81938, 0, 0, fa4157a4, 2f4210, fdf818d8)
fa400438 ???????? (fdf819c0, fdf81c08, a, f6050b68, fa40bc8c, fdf81b50)
fecfe2f8 ???????? (fdf81c00, fdf81a88, fdf81b48, d4d38, d4d38, fdf81a9c)
fed0ff90 ???????? (fefe4000, d5298, fdf81b3c, fdf81b38, fdf81b48, d4d38)
fed0fdf0 ???????? (fdf81c00, fdf81bfc, fdf81bf0, fdf81be8, fdf81be0, d4d38)
fed0fd78 ???????? (d4d38, d4d38, ac9a0, d5298, 2d4488, fed0fa60)
fed0fa88 ???????? (d4d38, 0, 0, 0, 0, 0)
fecfcbd0 ???????? (d4d38, ff1df688, 1, 1, ff1de000, 0)
ff1cb728 threadstart (d4d38, 0, 0, 0, 0, 0) + 40
----------------- lwp# 7 / thread# 6 --------------------
ff11efbc ___lwp_cond_wait (d7040, d7028, 0, 1, 0, 0) + 8
fed110d4 ???????? (d6fe8, 0, 5000, 5210, d6658, 4d24)
fed10824 ???????? (fa38169c, 0, 0, d6658, d6658, 30dec8)
fed103b0 ???????? (d66ec, fa38179c, 0, 0, 0, 0)
fa40cc94 ???????? (f2000490, b6, fa3817a0, fa414050, 0, fa381730)
fa405da0 ???????? (f2000478, b6, fa3818b4, fa415444, 0, fa3817d8)
fa405c4c ???????? (f2000478, b6, fa381934, fa415444, d6658, fa381858)
fa405c4c ???????? (fa381938, 0, 0, fa38197c, 2f4210, fa3818d8)
fa400438 ???????? (fa3819c0, fa381c08, a, f60520b8, fa40bc8c, fa381b50)
fecfe2f8 ???????? (fa381c00, fa381a88, fa381b48, d6658, d6658, fa381a9c)
fed0ff90 ???????? (fefe4000, d6bb8, fa381b3c, fa381b38, fa381b48, d6658)
fed0fdf0 ???????? (fa381c00, fa381bfc, fa381bf0, fa381be8, fa381be0, d6658)
fed0fd78 ???????? (d6658, d6658, ac9e0, d6bb8, 2d4488, fed0fa60)
fed0fa88 ???????? (d6658, 0, 0, 0, 0, 0)
fecfcbd0 ???????? (d6658, ff1df688, 1, 1, ff1de000, 0)
ff1cb728 threadstart (d6658, 0, 0, 0, 0, 0) + 40
----------------- lwp# 8 / thread# 7 --------------------
ff11d194 _poll (0, 0, 0, fa281a28, ff13f1b4, fa281a28) + 8
ff1cb134 select (0, a, 0, ff1de000, fa281e14, 0) + 34
fed32afc ???????? (d8040, 0, a, 0, 0, 0)
fed328b4 ???????? (d8040, 0, 0, 0, 0, 0)
fecfcbd0 ???????? (d8040, ff1df688, 1, 1, ff1de000, 0)
ff1cb728 threadstart (d8040, 0, 0, 0, 0, 0) + 40
----------------- lwp# 9 / thread# 8 --------------------
ff11efbc ___lwp_cond_wait (5f998, 5f980, 2e7aa0, ff1de000, fa181e14, 0) + 8
fecfc634 ???????? (5f950, 0, 0, 0, feffa26c, 0)
fed3371c ???????? (3c00, 3f44, 0, 0, 0, 0)
fecfcbd0 ???????? (d81a8, ff1df688, 1, 1, ff1de000, 0)
ff1cb728 threadstart (d81a8, 0, 0, 0, 0, 0) + 40
----------------- lwp# 10 / thread# 9 --------------------
ff11f008 lwpsema_wait (f1f81e30, ff1de000, 0, f1f81d70, ff3e2628, 0) + c
ff1b94c0 _swtch (f1f81d70, ffffffff, ff1de000, 5, 1000, 0) + 158
ff1bcc64 sema_wait (ff020fe0, ff1e98e4, 5000, 10000, 534d, 1) + bc
fed345c8 ???????? (0, 6, b, a, 1, 0)
fed34254 ???????? (ff002ae4, ff00a5a0, ff00a5d4, dab90, 2d4488, fed0fa60)
fed0fa88 ???????? (da630, 0, 0, 0, 0, 0)
fecfcbd0 ???????? (da630, ff1df688, 1, 1, ff1de000, 0)
ff1cb728 threadstart (da630, 0, 0, 0, 0, 0) + 40
----------------- lwp# 11 / thread# 10 --------------------
ff11efbc ___lwp_cond_wait (604e8, 604d0, 2e7aa0, feffa26c, 106c40, 0) + 8
fecfc88c ???????? (604a0, 0, 0, dbbd0, feffa26c, 0)
fed349ac ???????? (db670, db670, dbfd0, dbbd0, 2d4488, fed0fa60)
fed0fa88 ???????? (db670, 0, 0, 0, 0, 0)
fecfcbd0 ???????? (db670, ff1df688, 1, 1, ff1de000, 0)
ff1cb728 threadstart (db670, 0, 0, 0, 0, 0) + 40
-------------------------- thread# 3 --------------------
ff1bddbc reapwait (ff1e29e0, 20520, 0, ff1de000, 0, 0) + 38
ff1bdb14 _reaper (ff1dee30, ff1e4740, ff1e29e0, ff1dee08, 1, fe400000) + 38
ff1cb728 threadstart (0, 0, 0, 0, 0, 0) + 40This is an update to the original message -
I have tried both HotSpot & Server JVMs but still see the
same behavior. I'm using 1.4 .
I'd like to provide more information to those who can help
me. I have a feeling there might be something wrong in my
CC options. Thus you will find below what my CC statement
looks like for one of the files in my project & for the
linking of the final shared library. I also have
provided the output of ldd on my shared library libaicd.so
& for comparison the output of ldd on libjvm.so as that
might provide some usefull information just incase
something looks suspecious & might ring a bell.
/opt/SUNWspro.cc6/bin/CC -c -KPIC -g -DDEBUG=DEBUG -
D_DEBUG -mt -DSOLARIS -DSTD_STREAM -
I/vob1/qwsrc/fw/include -I.-I/vob4/source/idl -
I/vob4/source/mttoolkit -I/vob4/source/mttoolkit/tools -
I/vob4/source/integrations/siebel/aicd -
I/vob4/source/include -I/vob1/qwsrc/fw/include -
I/vob4/source/source -I/vob4/source/mttoolkit -
I/vob1/external/platform_neutral/siebel/scapi/include -
I/external/sparc/Sun/jdk/1.3.1/include -
I/external/sparc/Sun/jdk/1.3.1/include/solaris -
I/vob4/source/idl -I/vob4/source/mttoolkit -
I/vob4/source/mttoolkit/tools -
I/vob4/source/mttoolkit/vnet -
I/vob4/source/mttoolkit/bool -DUNIX -
D_USE_MTTServerToolkit -D_JAVA_ WIAcceptTimeOut.cpp -
o /space/users/janak/buildoutput/sparc/debug/obj/integratio s/siebel/aicd/WIAcceptTimeOut.o
/opt/SUNWspro.cc6/bin/CC -G -
o /space/users/janak/buildoutput/sparc/debug/lib/fw/libaicd.so
/space/us
ers/janak/buildoutput/sparc/debug/obj/integrations/siebel/ai
cd/AgentService.o /space/users/janak/buildoutput/sparc/debug
/obj/integrations/siebel/aicd/AgentServiceCmds.o /space/user
s/janak/buildoutput/sparc/debug/obj/integrations/siebel/aicd
/AgentServiceEvents.o /space/users/janak/buildoutput/sparc/d
ebug/obj/integrations/siebel/aicd/AgentServiceICAReq.o /spac
e/users/janak/buildoutput/sparc/debug/obj/integrations/siebe
l/aicd/AgentServiceICEvents.o /space/users/janak/buildoutput
/sparc/debug/obj/integrations/siebel/aicd/AgentServiceUtilit
ies.o /space/users/janak/buildoutput/sparc/debug/obj/integra
tions/siebel/aicd/AvMc.o /space/users/janak/buildoutput/spar
c/debug/obj/integrations/siebel/aicd/InternationalStrings.o
/space/users/janak/buildoutput/sparc/debug/obj/integrations/
siebel/aicd/JEvent.o /space/users/janak/buildoutput/sparc/de
bug/obj/integrations/siebel/aicd/JMultipleEvents.o /space/us
ers/janak/buildoutput/sparc/debug/obj/integrations/siebel/ai
cd/JNIObject.o /space/users/janak/buildoutput/sparc/debug/ob
j/integrations/siebel/aicd/JObject.o /space/users/janak/buil
doutput/sparc/debug/obj/integrations/siebel/aicd/JSemaphore.
o /space/users/janak/buildoutput/sparc/debug/obj/integration
s/siebel/aicd/JWorkerThread.o /space/users/janak/buildoutput
/sparc/debug/obj/integrations/siebel/aicd/MultipleEvents.o /
space/users/janak/buildoutput/sparc/debug/obj/integrations/s
iebel/aicd/Param.o /space/users/janak/buildoutput/sparc/debu
g/obj/integrations/siebel/aicd/ParamQueue.o /space/users/jan
ak/buildoutput/sparc/debug/obj/integrations/siebel/aicd/RefC
ount.o /space/users/janak/buildoutput/sparc/debug/obj/integr
ations/siebel/aicd/SiebelDriver.o /space/users/janak/buildou
tput/sparc/debug/obj/integrations/siebel/aicd/SiebelEvent.o
/space/users/janak/buildoutput/sparc/debug/obj/integrations/
siebel/aicd/SiebelWorkItem.o /space/users/janak/buildoutput/
sparc/debug/obj/integrations/siebel/aicd/SingleEvent.o /spac
e/users/janak/buildoutput/sparc/debug/obj/integrations/siebe
l/aicd/SmartPtr.o /space/users/janak/buildoutput/sparc/debug
/obj/integrations/siebel/aicd/StdAfx.o /space/users/janak/bu
ildoutput/sparc/debug/obj/integrations/siebel/aicd/ThreadPoo
l.o /space/users/janak/buildoutput/sparc/debug/obj/integrati
ons/siebel/aicd/Utilities.o /space/users/janak/buildoutput/s
parc/debug/obj/integrations/siebel/aicd/WIAcceptTimeOut.o -
lnsl -lc -lCstd -
L/space/users/janak/buildoutput/sparc/debug/lib/cti -
lmttoolkit -
L/space/users/janak/buildoutput/sparc/debug/lib/fw -
lmttlogger -
L/space/users/janak/buildoutput/sparc/debug/lib/fw -
lqwlicmtt -
L/external/sparc/Sun/jdk/1.3.1/jre/lib/sparc/server -
Bdynamic -ljvm -mt -lpthread -lposix4
$ ldd /usr/j2se/jre/lib/sparc/libjvm.so
libCrun.so.1 => /usr/lib/libCrun.so.1
libdl.so.1 => /usr/lib/libdl.so.1
libthread.so.1 => /usr/lib/libthread.so.1
libsocket.so.1 => /usr/lib/libsocket.so.1
libnsl.so.1 => /usr/lib/libnsl.so.1
libm.so.1 => /usr/lib/libm.so.1
libw.so.1 => /usr/lib/libw.so.1
libc.so.1 => /usr/lib/libc.so.1
libmp.so.2 => /usr/lib/libmp.so.2
/usr/platform/SUNW,Sun-Blade-1000/lib/libc_psr.so.1
$ ldd libaicd.so
libnsl.so.1 => /usr/lib/libnsl.so.1
libc.so.1 => /usr/lib/libc.so.1
libmttoolkit.so => ./libmttoolkit.so
libmttlogger.so => ./libmttlogger.so
libjvm.so => /usr/java/jre/lib/sparc/libjvm.so
libpthread.so.1 => /usr/lib/libpthread.so.1
librt.so.1 => /usr/lib/librt.so.1
libdl.so.1 => /usr/lib/libdl.so.1
libmp.so.2 => /usr/lib/libmp.so.2
libCrun.so.1 => /usr/lib/libCrun.so.1
libthread.so.1 => /usr/lib/libthread.so.1
libsocket.so.1 => /usr/lib/libsocket.so.1
libm.so.1 => /usr/lib/libm.so.1
libaio.so.1 => /usr/lib/libaio.so.1
libw.so.1 => /usr/lib/libw.so.1
/usr/platform/SUNW,Sun-Blade-1000/lib/libc_psr.so.1
Maybe you are looking for
-
MY PC WAS REFORMATTED. WHAT WILL HAPPEN WHEN I CONNECT MY IPOD TO MY PC NOW
Hi everyone! My pc was recently formatted, and now I want to add new songs to my iPod. What will happen to the songs in my iPod when i connect it to the newly formatted PC? (not all songs in my iPod are in my PC anymore). Is there a way I can get all
-
Where can I find the syntax guide for Oracle 11g?
Sooooo frustrating...I've perused the Oracle site, have done Google searches, and cannot seem to find the syntax guide for Oracle 11g. Can someone provide me the URL or clue me in as to where it might be buried? Am I just being stupid??? Thanks in ad
-
How to Add Publisher Administrator Credentials to Oracle BI Presentation Services Credential Store
I used to follow this document until 10g - Bookshelf v10.1.3.2: Adding Publisher Administrator Credentials to Oracle BI Presentation Services Credential Store Does anyone know how to configure the same in OBIEE 11G Thanks for your help Srix
-
this is bull---- this question has been asked a million times, my friends and I said that we'd give you until to day to get it together or we'd migrae backt o FF 4 - so I'm moving - what's the address to get to firefox four? ''Edited by a moderator d
-
TS4020 Can we have two ICloud accounts on ipad
Does there need to be separate logins to the iPad? I want us bothe to be able to have out preferences and iCloud accounts on our iPad. Is that possible or do we need to just keep it to one?