Unable to ssh into 2960 switch
Having trouble being able to SSH into one of our switches.
It looks like everything is configured correctly and matches a config of one of the other switches that I can connect into via SSH.
I can connect into the config of sw7.txt,(10.15.0.7) but not into sw6.txt(10.15.0.6)
What am I missing?
Hello,
Can you ping sw7?
Could you also please post your topology?
Thanks
Similar Messages
-
Unable to SSH into both remote & VM machine server
Unable to SSH into both remote & VM machine server
Getting the message
"fork failed: Resource temporarily unavailable"
"ssh_exchange_identification: Connection closed by remote host"
"ssh_exchange_identification: Connection closed by remote host"
"ssh_exchange_identification: Connection closed by remote host"
Please help.These are the processes currently running: from top command.
These are the ulimit -a settings
This is the output of trying to ssh into local Ubuntu VM (I am able to login here via VirtualBox interface)
$ssh -v -v -v [email protected]
OpenSSH_6.2p2, OSSLShim 0.9.8r 8 Dec 2011
debug1: Reading configuration data /Users/spgen/.ssh/config
debug1: /Users/spgen/.ssh/config line 1: Applying options for *
debug1: Reading configuration data /etc/ssh_config
debug1: /etc/ssh_config line 20: Applying options for *
debug1: /etc/ssh_config line 102: Applying options for *
debug2: ssh_connect: needpriv 0
debug1: Executing proxy command: exec ssh 10.0.2.15 -W 192.168.1.11:22
debug1: permanently_drop_suid: 501
debug1: identity file /Users/spgen/.ssh/id_rsa type -1
debug1: identity file /Users/spgen/.ssh/id_rsa-cert type -1
debug1: identity file /Users/spgen/.ssh/id_dsa type -1
debug1: identity file /Users/spgen/.ssh/id_dsa-cert type -1
debug1: Enabling compatibility mode for protocol 2.0
debug1: Local version string SSH-2.0-OpenSSH_6.2
fork failed: Resource temporarily unavailable
ssh_exchange_identification: Connection closed by remote host
ssh_exchange_identification: Connection closed by remote host
ssh_exchange_identification: Connection closed by remote host
This is the output of trying to SSH into remote AWS server. ( I am able to login through web interface here)
$ssh -v -v -v -i /Users/spgen/pem-files/123.pem [email protected]
OpenSSH_6.2p2, OSSLShim 0.9.8r 8 Dec 2011
debug1: Reading configuration data /Users/spg/.ssh/config
debug1: /Users/spgen/.ssh/config line 1: Applying options for *
debug1: Reading configuration data /etc/ssh_config
debug1: /etc/ssh_config line 20: Applying options for *
debug1: /etc/ssh_config line 102: Applying options for *
debug2: ssh_connect: needpriv 0
debug1: Executing proxy command: exec ssh 10.0.2.15 -W 54.94.230.41:22
debug3: Incorrect RSA1 identifier
debug1: permanently_drop_suid: 501
debug3: Could not load "/Users/spgen/pem-files/123.pem" as a RSA1 public key
debug1: identity file /Users/spgen/pem-files/123.pem type -1
debug1: identity file /Users/spgen/pem-files/123.pem-cert type -1
debug1: Enabling compatibility mode for protocol 2.0
debug1: Local version string SSH-2.0-OpenSSH_6.2
fork failed: Resource temporarily unavailable
ssh_exchange_identification: Connection closed by remote host
ssh_exchange_identification: Connection closed by remote host
ssh_exchange_identification: Connection closed by remote host"
I guess the processes is not the issue, but maybe something to do with ssh config files.
As you rightly guessed 'fork failed' is happening on the local system. Would appreciate any pointers.
TIA. -
Script to ssh into router/switch to shut port
Does anyone have a script that can automatically ssh or telnet into a router or switch and shut a port?
Hello,
have a look at the SSH script below...
I have not tested this, it might require a little bit of tweaking...
This script is used to issue config commands to a cisco device using either telnet or SSHv1.
http://www.cpan.org/authors/id/R/RG/RGRAVES/CCS/CCS_sub_SSH.pl
HTH,
GP -
Cannot ssh into secondary accounts.
I am unable to ssh into secondary accounts on my Leopard box (Mac Mini, Mac OS X 10.5.2), just the main account. The ssh only keeps asking for the password, never giving a failure. I am using password authentication for the secondary and primary accounts.
Have you checked inside the Sharing Preferences?
Open Sharing Preferences
Click "Remote Login" (don't remove the check though)
Make sure the settings you prefer are reflected and add users as needed. -
Can not administer Catalyst 2960 switch via console
Hello,
I want to configure my switch via console cable, the switch boots up normally, and there are no configurations present on the switch. However, anything I type does not appear on the terminal client. I used several terminal clients (TeraTerm, PuTTY, HyperTerminal), all latest versions as well as different PCs. I even forced the switch to rommon mode, still, anything I type does not appear on the terminal client.
Here's the output of TeraTerm:
Boot Sector Filesystem (bs) installed, fsid: 2
Base ethernet MAC Address: e8:40:40:06:f0:80
Xmodem file system is available.
The password-recovery mechanism is enabled.
Initializing Flash...
flashfs[0]: 542 files, 19 directories
flashfs[0]: 0 orphaned files, 0 orphaned directories
flashfs[0]: Total bytes: 32514048
flashfs[0]: Bytes used: 11565056
flashfs[0]: Bytes available: 20948992
flashfs[0]: flashfs fsck took 11 seconds.
...done Initializing Flash.
done.
Loading "flash:/c2960-lanbasek9-mz.122-50.SE5/c2960-lanbasek9-mz.122-50.SE5.bin"...@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
File "flash:/c2960-lanbasek9-mz.122-50.SE5/c2960-lanbasek9-mz.122-50.SE5.bin" uncompressed and installed, entry point: 0x3000
executing...
Restricted Rights Legend
Use, duplication, or disclosure by the Government is
subject to restrictions as set forth in subparagraph
(c) of the Commercial Computer Software - Restricted
Rights clause at FAR sec. 52.227-19 and subparagraph
(c) (1) (ii) of the Rights in Technical Data and Computer
Software clause at DFARS sec. 252.227-7013.
cisco Systems, Inc.
170 West Tasman Drive
San Jose, California 95134-1706
Cisco IOS Software, C2960 Software (C2960-LANBASEK9-M), Version 12.2(50)SE5, RELEASE SOFTWARE (fc1)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2010 by Cisco Systems, Inc.
Compiled Tue 28-Sep-10 13:44 by prod_rel_team
Image text-base: 0x00003000, data-base: 0x01400000
Initializing flashfs...
fsck: Disable shadow buffering due to heap fragmentation.
flashfs[1]: 542 files, 19 directories
flashfs[1]: 0 orphaned files, 0 orphaned directories
flashfs[1]: Total bytes: 32514048
flashfs[1]: Bytes used: 11565056
flashfs[1]: Bytes available: 20948992
flashfs[1]: flashfs fsck took 2 seconds.
flashfs[1]: Initialization complete....done Initializing flashfs.
Checking for Bootloader upgrade.. not needed
POST: CPU MIC register Tests : Begin
POST: CPU MIC register Tests : End, Status Passed
POST: PortASIC Memory Tests : Begin
POST: PortASIC Memory Tests : End, Status Passed
POST: CPU MIC interface Loopback Tests : Begin
POST: CPU MIC interface Loopback Tests : End, Status Passed
POST: PortASIC RingLoopback Tests : Begin
POST: PortASIC RingLoopback Tests : End, Status Passed
POST: PortASIC CAM Subsystem Tests : Begin
POST: PortASIC CAM Subsystem Tests : End, Status Passed
POST: PortASIC Port Loopback Tests : Begin
POST: PortASIC Port Loopback Tests : End, Status Passed
Waiting for Port download...Complete
This product contains cryptographic features and is subject to United
States and local country laws governing import, export, transfer and
use. Delivery of Cisco cryptographic products does not imply
third-party authority to import, export, distribute or use encryption.
Importers, exporters, distributors and users are responsible for
compliance with U.S. and local country laws. By using this product you
agree to comply with applicable laws and regulations. If you are unable
to comply with U.S. and local laws, return this product immediately.
A summary of U.S. laws governing Cisco cryptographic products may be found at:
http://www.cisco.com/wwl/export/crypto/tool/stqrg.html
If you require further assistance please contact us by sending email to
[email protected].
cisco WS-C2960-24TT-L (PowerPC405) processor (revision J0) with 65536K bytes of memory.
Processor board ID FOC1510X4ZQ
Last reset from power-on
1 Virtual Ethernet interface
24 FastEthernet interfaces
2 Gigabit Ethernet interfaces
The password-recovery mechanism is enabled.
64K bytes of flash-simulated non-volatile configuration memory.
Base ethernet MAC Address : E8:40:40:06:F0:80
Motherboard assembly number : 73-12600-05
Power supply part number : 341-0097-03
Motherboard serial number : FOC15094MZG
Power supply serial number : DCA150583WQ
Model revision number : J0
Motherboard revision number : A0
Model number : WS-C2960-24TT-L
System serial number : FOC1510X4ZQ
Top Assembly Part Number : 800-32797-01
Top Assembly Revision Number : F0
Version ID : V09
CLEI Code Number : COM3L00BRE
Hardware Board Revision Number : 0x0A
Switch Ports Model SW Version SW Image
* 1 26 WS-C2960-24TT-L 12.2(50)SE5 C2960-LANBASEK9-M
Press RETURN to get started!
*Mar 1 00:00:31.381: %LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan1, changed state to down
*Mar 1 00:00:32.556: %SPANTREE-5-EXTENDED_SYSID: Extended SysId enabled for type vlan
*Mar 1 00:00:35.802: %LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan99, changed state to down
*Mar 1 00:00:35.861: %SYS-5-CONFIG_I: Configured from memory by console
*Mar 1 00:00:36.012: %SYS-5-RESTART: System restarted --
Cisco IOS Software, C2960 Software (C2960-LANBASEK9-M), Version 12.2(50)SE5, RELEASE SOFTWARE (fc1)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2010 by Cisco Systems, Inc.
Compiled Tue 28-Sep-10 13:44 by prod_rel_team
*Mar 1 00:00:36.037: %SSH-5-ENABLED: SSH 1.99 has been enabled
*Mar 1 00:00:37.060: %LINK-5-CHANGED: Interface FastEthernet0/6, changed state to administratively down
*Mar 1 00:00:37.094: %LINK-5-CHANGED: Interface FastEthernet0/7, changed state to administratively down
*Mar 1 00:00:37.127: %LINK-5-CHANGED: Interface FastEthernet0/8, changed state to administratively down
*Mar 1 00:00:37.161: %LINK-5-CHANGED: Interface FastEthernet0/9, changed state to administratively down
*Mar 1 00:00:37.195: %LINK-5-CHANGED: Interface FastEthernet0/10, changed state to administratively down
*Mar 1 00:00:37.228: %LINK-5-CHANGED: Interface FastEthernet0/11, changed state to administratively down
*Mar 1 00:00:37.262: %LINK-5-CHANGED: Interface FastEthernet0/12, changed state to administratively down
*Mar 1 00:00:37.362: %LINK-5-CHANGED: Interface FastEthernet0/13, changed state to administratively down
*Mar 1 00:00:37.362: %LINK-5-CHANGED: Interface FastEthernet0/14, changed state to administratively down
*Mar 1 00:00:37.362: %LINK-5-CHANGED: Interface FastEthernet0/15, changed state to administratively down
*Mar 1 00:00:37.404: %LINK-5-CHANGED: Interface FastEthernet0/16, changed state to administratively down
*Mar 1 00:00:37.446: %LINK-5-CHANGED: Interface FastEthernet0/17, changed state to administratively down
*Mar 1 00:00:37.488: %LINK-5-CHANGED: Interface FastEthernet0/18, changed state to administratively down
*Mar 1 00:00:37.497: %LINK-5-CHANGED: Interface FastEthernet0/19, changed state to administratively down
*Mar 1 00:00:37.539: %LINK-5-CHANGED: Interface FastEthernet0/20, changed state to administratively down
*Mar 1 00:00:37.572: %LINK-5-CHANGED: Interface FastEthernet0/21, changed state to administratively down
*Mar 1 00:00:37.606: %LINK-5-CHANGED: Interface FastEthernet0/22, changed state to administratively down
*Mar 1 00:00:37.639: %LINK-5-CHANGED: Interface FastEthernet0/23, changed state to administratively down
*Mar 1 00:00:37.673: %LINK-5-CHANGED: Interface FastEthernet0/24, changed state to administratively down
*Mar 1 00:00:37.690: %LINK-5-CHANGED: Interface GigabitEthernet0/1, changed state to administratively down
*Mar 1 00:00:37.715: %LINK-5-CHANGED: Interface GigabitEthernet0/2, changed state to administratively down
After the last line, I can not type any command at all. I encountered this on three 2960 switches that we have here in our laboratory. Can anybody help me on how I can get access to the switch via console?
Thanks in advance.Have You Check your console Cable.
also
If u are using USB to Serial check driver are properly installed.
else
See Helpful Cisco Documentation
http://www.cisco.com/en/US/products/hw/switches/ps700/products_tech_note09186a008010ff7a.shtml
Do Rate Helpful Posts -
C3750 Unable to ssh after few days!
Hi all,
If anyone could help me please, I'm having a problem with my switch, it seems that I'm losing the ablity to ssh to the switch after few days but if I reload it I can ssh into it again with no problem! At first I thought it was something wrong with my configuration so I've reconfugred the ssh, username, domain name and cleaned the rsa keys and regenrated new new ones.
My switch version is:
Cisco IOS Software, C3750E Software (C3750E-UNIVERSALK9NPE-M), Version 15.0(1)SE3, RELEASE SOFTWARE (fc1)Thank you guys for the reply,
This is what I get when I try to ssh:
ssh [email protected]
[email protected]'s password:
Permission denied, please try again.
And Leo Laohoo, you guessed it right! it's look like a memory leaks, this is the output for "sh log":
*Mar 5 17:19:57.579: %AAA-3-ACCT_LOW_MEM_UID_FAIL: AAA unable to create UID for incoming calls due to insufficient processor memory
*Mar 5 17:19:58.385: %AAA-3-ACCT_LOW_MEM_UID_FAIL: AAA unable to create UID for incoming calls due to insufficient processor memory
*Mar 5 17:19:59.005: %AAA-3-ACCT_LOW_MEM_UID_FAIL: AAA unable to create UID for incoming calls due to insufficient processor memory
*Mar 6 23:22:38.979: %PARSER-5-CFGLOG_LOGGEDCMD: User:console logged command:!exec: enable
cs08#
Do you guys think of any work around other than down/upgrade the software? cuase the biggest issue now is, it's one of 9 switches that all run the same ISO version and all of them are on new production data center, and honestly I've had other weird issue with other switches too! -
Aironet 1142 as supplicant to 2960 switch (NEAT/CISP/MAB)
Hello!
First, my configuration, (then the problem down below):
I have an Aironet 1142 with mulitple SSIDs [mapped to VLANs] connected to Gi1/0/2 on a 2960 switch in a user-accessible area. This switch is uplinked to another 2960 switch in a wiring closet, and the Microsoft NPS server is connected to the wiring closet 2960.
Aironet -- 2960 [user area] --- 2960 [closet] -- NPS RADIUS
I have the user-area 2960 configured as an authenticator switch for dot1x, and port Gi1/0/2 is authenticating the Aironet via MAB to RADIUS. RADIUS is sending VSA device-traffic-class=switch to the 2960. The closet-2960 has no special 802.1x configuration, nor is it an authenticator swtich; it just has a manually-configured trunk port to the user-area 2960 [for now; i'm trying to take this one step at a time!].
The user-area 2960 correctly converts port Gi1/0/1 to a trunk port when the Aironet is authenticated [via MAB]. The Aironet boots up, the port is opened, I can ping the Aironet on the native VLAN, and all is well [so it seems]. The Aironet's dot11Radio is configured for two SSIDs and mapped to VLANs, which are being spanned via STP thru the user-area 2960 and the closet-2960. STP is correct and verified on all switches.
I have DHCP snooping configured on the user-area 2960 but only for VLAN 1 [but NOT the wireless user VLANs], the trunk port to the closet 2960 is a trusted port. Hosts on the wired ports on the user-area 2960 are able to get DHCP IPs. On the Aironet, "show dot11 associations" shows hosts on the SSIDs are getting DHCP addresses. Again, I am *NOT* running dhcp snooping on wireless SSID VLANs [i read elsewhere that can cause problems as users roam between Aironets].
I do have CISP configured on the user-area 2960. I do not have CISP configured on the closet-2960 [best I can tell, that's not required at this stage, but I could be wrong].
Despite the alleged documentation, I could not get the Aironet to use a dot1x credentials profile to authenticate to NPS/RADIUS as an 802.1x supplicant, which is why I resorted to MAB for this exercise. The Aironet simply would not run dot1x [best I could tell]. The documentation and configuration didn't seem complex, so I was quite confused.
I have upgraded the Aironet to the latest 12.4(25d)JA2 software, and the 2960 is at 12.2(55)SE7 [i saw 12.2(58) has some issues, but i'm willing to be persuaded otherwise, based on sound advice].
Ok, now the problem:
Users on the guest wireless SSID (Vlan 20) say they cannot connect. Yep, classic. VLAN 20 is trunked and spanned to all the sufficient places. The Aironet shows users in the associations list for that SSID with IP addresses from the DHCP server! DHCP snooping is not configured on that VLAN.
I read another support forum post saying CISP and MAB could cause problems with "disappearing" ARP entries. I appear to have that problem. However, the user on the Staff wireless (VLAN 10) has full access. Am I running into a problem with "multi-host" authentication config? Via tcpdump on my firewall, I see nothing but broadcast and multicast traffic coming from a host on VLAN 20. What puzzles me is how I do see *SOME* traffic from a VLAN 20 host on this SSID, but no unicast traffic! Argh!
Since you're going to ask, here is my port config for this AP on the 2960 authenticator switch in the user-area, and the AAA config pieces:
#sh run br | in ip dhcp
ip dhcp snooping vlan 1
no ip dhcp snooping information option
ip dhcp snooping database flash:dhcp_snoop.txt
ip dhcp snooping
#sh ip dhcp snoop
Switch DHCP snooping is enabled
DHCP snooping is configured on following VLANs:
1
DHCP snooping is operational on following VLANs:
1
DHCP snooping is configured on the following L3 Interfaces:
Insertion of option 82 is disabled
circuit-id default format: vlan-mod-port
remote-id: ccd5.3947.7980 (MAC)
Option 82 on untrusted port is not allowed
Verification of hwaddr field is enabled
Verification of giaddr field is enabled
DHCP snooping trust/rate is configured on the following Interfaces:
Interface Trusted Allow option Rate limit (pps)
GigabitEthernet1/0/46 no no 15
Custom circuit-ids:
GigabitEthernet1/0/48 yes yes unlimited
Custom circuit-ids:
GigabitEthernet1/0/52 yes yes unlimited
Custom circuit-ids:
#sh run br | incl aaa auth
aaa authentication login default local group rad_eap
aaa authentication dot1x default group radius
aaa authorization console
aaa authorization exec default local group rad_eap
aaa authorization network default group rad_eap local
#sh run int gi1/0/2
interface GigabitEthernet1/0/2
description Wireless Access Points
switchport mode trunk
switchport nonegotiate
srr-queue bandwidth share 1 30 35 5
srr-queue bandwidth limit 50
priority-queue out
authentication host-mode multi-host
authentication order mab dot1x
authentication port-control auto
authentication violation restrict
mab
mls qos trust cos
macro description CISCO_WIRELESS_AP_EVENT
auto qos trust
spanning-tree portfast
#sh int gi1/0/2 sw
Name: Gi1/0/2
Switchport: Enabled
Administrative Mode: trunk
Operational Mode: trunk
Administrative Trunking Encapsulation: dot1q
Operational Trunking Encapsulation: dot1q
Negotiation of Trunking: Off
Access Mode VLAN: 1 (default)
Trunking Native Mode VLAN: 1 (default)
Administrative Native VLAN tagging: enabled
Voice VLAN: none
Administrative private-vlan host-association: none
Administrative private-vlan mapping: none
Administrative private-vlan trunk native VLAN: none
Administrative private-vlan trunk Native VLAN tagging: enabled
Administrative private-vlan trunk encapsulation: dot1q
Administrative private-vlan trunk normal VLANs: none
Administrative private-vlan trunk associations: none
Administrative private-vlan trunk mappings: none
Operational private-vlan: none
Trunking VLANs Enabled: ALL
Pruning VLANs Enabled: 2-1001
Capture Mode Disabled
Capture VLANs Allowed: ALL
Protected: false
Unknown unicast blocked: disabled
Unknown multicast blocked: disabled
Appliance trust: none
#sh auth sess int gi1/0/2
Interface: GigabitEthernet1/0/2
MAC Address: acf2.c5f2.8e27
IP Address: 10.100.32.42
User-Name: acf2c5f28e27
Status: Authz Success
Domain: DATA
Oper host mode: multi-host
Oper control dir: both
Authorized By: Authentication Server
Vlan Group: N/A
Session timeout: N/A
Idle timeout: N/A
Common Session ID: 0A64200B00000CDA41AFBEDF
Acct Session ID: 0x00000D00
Handle: 0xDE000CDA
Runnable methods list:
Method State
mab Authc Success
dot1x Not run
#sh mab int gi1/0/2
MAB details for GigabitEthernet1/0/2
Mac-Auth-Bypass = Enabled
#sh int trunk
Port Mode Encapsulation Status Native vlan
Gi1/0/1 on 802.1q trunking 1
Gi1/0/2 on 802.1q trunking 1
Gi1/0/48 on 802.1q trunking 1
Gi1/0/52 on 802.1q trunking 1
Port Vlans allowed on trunk
Gi1/0/1 1-4094
Gi1/0/2 1-4094
Gi1/0/48 1-2,10,20
Gi1/0/52 1-2,10,20
Port Vlans allowed and active in management domain
Gi1/0/1 1-2,10,20
Gi1/0/2 1-2,10,20
Gi1/0/48 1-2,10,20
Gi1/0/52 1-2,10,20
Port Vlans in spanning tree forwarding state and not pruned
Gi1/0/1 1-2,10,20
Gi1/0/2 1-2,10,20
Gi1/0/48 2
Gi1/0/52 1-2,10,20
Ok, what am I missing??The problem lies in the wired Ethernet port on the Aironet. I did not submit that configuration because I thought it was simple and unrelated. Here is what I had:
interface GigabitEthernet0.20
encapsulation dot1Q 20
no ip route-cache
bridge-group 20
no bridge-group 20 source-learning
no bridge-group 20 unicast-flooding
bridge-group 20 spanning-disabled
The correct configuration should have been:
interface GigabitEthernet0.20
encapsulation dot1Q 20
no ip route-cache
bridge-group 20
no bridge-group 20 source-learning
bridge-group 20 spanning-disabled
The line "no bridge-group 20 unicast-flooding" should not be applied to the wired port. That's stupid. With that erroneous command, the wired port will forward only broadcast and multicast traffic! Unicast traffic will be dropped. Oops.
However, I do not understand why applying this to the radio interfaces has no effect there. I have yet to find any conclusive detailed answers, either. Regardless, my original problem is fixed. -
Zenworks unable to log into the network
We have a Zenworks Configuration Management 11.2.2 environment with Active Directory authentication. The User source was pointing at a particular Domain controller with SSL authentication and working just fine. Today, the Domain Controller went down and I had to change it to another DC. I updated the certificate for the new DC and switched to it with no problems in the Zenworks Console. Now when users are logging into PCs with the agent installed it will generate an error and not authenticate to Zenworks. You are able to hit 'cancel' and login to the computer. If you try to manually login to the agent it will generate the following error:
"zenworks unable to log into the network because the login credentials or the server certificate is incorrect"
In the console, I am able to verify the User Source connection is correct and communicating properly. I have turned SSL on/off, switched the DC server back to the original authenticating server, and rebooted all the servers but I still get this error even on the Zenworks server themselves. I'm not sure what else to check. I found a thread with a similar issue but there resolution was to blow away the server and start from scratch. That is not a viable option for me as this system is fully set up and in production.
Any insight would greatly be appreciated.I would start by testing LDAP Connectivity to the new server using a
native LDAP Toool. (Caution - Some MS LDAP Tools may not even use LDAP
but Use Std Windows Networking.)
On 4/22/2013 5:26 PM, scotholl wrote:
>
> We have a Zenworks Configuration Management 11.2.2 environment with
> Active Directory authentication. The User source was pointing at a
> particular Domain controller with SSL authentication and working just
> fine. Today, the Domain Controller went down and I had to change it to
> another DC. I updated the certificate for the new DC and switched to it
> with no problems in the Zenworks Console. Now when users are logging
> into PCs with the agent installed it will generate an error and not
> authenticate to Zenworks. You are able to hit 'cancel' and login to the
> computer. If you try to manually login to the agent it will generate
> the following error:
>
> "zenworks unable to log into the network because the login credentials
> or the server certificate is incorrect"
>
> In the console, I am able to verify the User Source connection is
> correct and communicating properly. I have turned SSL on/off, switched
> the DC server back to the original authenticating server, and rebooted
> all the servers but I still get this error even on the Zenworks server
> themselves. I'm not sure what else to check. I found a thread with a
> similar issue but there resolution was to blow away the server and start
> from scratch. That is not a viable option for me as this system is
> fully set up and in production.
>
> Any insight would greatly be appreciated.
>
>
Craig Wilson - MCNE, MCSE, CCNA
Novell Knowledge Partner
Novell does not officially monitor these forums.
Suggestions/Opinions/Statements made by me are solely my own.
These thoughts may not be shared by either Novell or any rational human. -
Trouble uplinking to 2960 switch
Hello,
Just installed a new 2960 switch.
Everything is working except that I am no longer to uplink a small unmanged linksys switch that is leftover from previous configuration.
I am using x-over cable and have tried adjusting switchport modes.
If I use a straight through cable, The link goes up and down constantly. If I use a x-over cable, the link stays up but no communications.
What am I doing wrong?
-Brian
www.jaydien.comBrian,
I would guess that the problem your having is a line speed negotiation problem. Without the specific models numbers of the equipment and the ports being used on the equipment for the uplink, it is just a guess.
All Linksys switches auto cross over. While this function can be disabled (on most models), it should not be an issue.
You may be plugging your Linksys into the 10/100/1000 of the 2960 which may be confusing the Linksys terribly if it is only 10/100. Try one of the 10/100 ports on your 2960 or statically set the line speeds on one or both devices, where available.
Get those model and port numbers and we will look deeper.
Thanks,
Chris -
SSH into 10.6.8 MacMini
Been a few years since I last did this so I'm rusty. Any tips will be appreciated. The lowdown:
I want to open my MacMini 10.6.8 via wi-fi to my home router, so I can access it from work. In System Preferences>Sharing I have enabled Remote Login (for all users).
I've also forwarded port 22 from the router to the MacMini and can confirm that it's open (using http://portchecker.co/), only when Firewall is OFF in System Preferences. As soon as I switch Firewall to ON, the port is closed.
What am I forgetting?
This is difficult to troubleshoot while sitting at the MacMini at home for the added reason that my MacBook Pro uses the same router as the MacMini. Is there a way, by the way, that I can 'spoof' my MacBook Pro to behave as if it doesn't belong to the same wLAN when trying to connect to the MacMini?
Thanks, people.1st if your Mac mini is going to be sitting behind your router all the time, you do not need to firewall, as the router is going to block all unsolicited connections, except port 22, which you explicitly opened, and you want your Mac mini to see as well.
If you insist on the firewall, then you need to use the System Preferences -> Security -> Firewall -> Options to specify that port 22 is allowed.
As for accessing your Mac mini via the outside world, but while still sitting at home, you should be able to just specify the router's IP address
ssh 11.22.33.44 (which is whatever your router's IP address is as reported by a service such as whatismyip.com or just googling "My IP Address".
NOTE: You may want to consider opening a different higher numbered port and have the router switch that to your Mac mini's port 22. Most routers allow this outside to inside port number switching. For example, open port 43922 to port 22 via the router, then access your Mac mini by specifying
ssh -p 43922 11.22.33.44
As long as the high numbered port is legal, there is very little chance of it interfering with anything.
The high numbered port to port 22 trick also allows you to have more than one port opened going to different Macs at home. I have about 5 such ports open on my router so I can ssh into different Macs at home while I'm away from the house.
The other advantage is that port 22 is well known, and an easy target for attempts to break into a system. Using a high numbered port reduces the number of probes to your Mac trying to break in. While it is not security, it is an annoyance reduction factor. -
Catalyst 2960S switch stack support?
I have a customer with a new stack of four Catalyst 2960S switches.
Is this configuration supported by Onplus?
I can't seem to figure out the login access and enable access credentials
so that Onplus can backup the configuration of the stack.
Jeff Bright
Bright Systems
Broken Arrow, OKI also have a 2960S stack in my office. I checked my handy OnPlus iPhone App and it shows backup, restore, and firmware all equal 1 which I recall correctly means backup is supported. I'll double check when I get into the office to ensure backups are actually working.
Sent from Cisco Technical Support iPhone App -
Unable to log into the portal-After Upgrade from NetWeaver 7.0 to 7.3EHP1
Dear Experts,
We have poltal landscape(NW 7.0 Dualstack SPS27) with our customozed themes and par files(Company name,logos and colours)
Recently we upgraded the one of portal from NW 7.0 to NW 7.3EHP1 . Upgrade has been successfilly completed with small issue.
After upgrade all urls are working(/nwa, /sld) except /irj/portal.We know that NW 7.3 EHp1 accepts only ear file i.e we converted the our customized log on par file to ear file through par migration tool and the same was deployed successfully through NWDS 7.3 version.After deploying we are able to access the
/irj/portal url with our customized par(means ear file) without issues,
We are unable to log into the portal after giving the correct user id and password,getting the portal runtime error as foloows.
Portal runtime error
An exception occured while processing your request.Send the exception ID your administrator
Exception id:
see log files for details about this exception
Default.trc log file(/server0/log)
#EP-PIN-PRT#tc~epbc~prtc~api#C00061FD2733006C00000005000056CB#9034950000000004#sap.com/com.sap.portal.runtime.system.hooks#com.sap.portal.prt.
runtime#J2EE_ADMIN#4##43E00B85A79911E380F800000089DCC6#3a483a0fa79911e3903000000089dcc6#3a483a0fa79911e3903000000089dcc6#0#Thread[HTTP Worker
[@900472845],5,Dedicated_Application_Thread]#Plain##
08:14_09/03/14_0005_9034950
[EXCEPTION]
java.lang.RuntimeException: Could not create Resource Repository root folder in PCD
at com.sap.portal.resource.repository.ResourceRepositorySrv.initRepositoryRootContext(ResourceRepositorySrv.java:140)
at com.sap.portal.resource.repository.ResourceRepositorySrv.init(ResourceRepositorySrv.java:93)
at com.sap.portal.prt.core.RequestDispatcherFactory$ServiceRequestDispatcher$3.service(RequestDispatcherFactory.java:518)
at com.sap.engine.services.servlets_jsp.server.deploy.impl.module.IRequestDispatcherImpl.dispatch(IRequestDispatcherImpl.java:363)
at com.sap.portal.prt.core.RequestDispatcherFactory$ServiceRequestDispatcher.init(RequestDispatcherFactory.java:503)
at com.sap.portal.prt.broker.PortalServiceItem.initServiceInstance(PortalServiceItem.java:347)
at com.sap.portal.prt.broker.PortalServiceItem.getServiceInstance(PortalServiceItem.java:210)
at com.sap.portal.prt.broker.PortalServiceItem.load(PortalServiceItem.java:578)
at com.sap.portal.prt.om.ObjectsManager.createObejctHandle(ObjectsManager.java:234)
at com.sap.portal.prt.om.ObjectsManager.getObjectHandle(ObjectsManager.java:147)
at com.sap.portal.prt.broker.PortalAppBroker.getPortalService(PortalAppBroker.java:498)
at com.sap.portal.prt.service.ServiceManager.getPortalServiceItem(ServiceManager.java:431)
at com.sap.portal.prt.service.ServiceManager.get(ServiceManager.java:220)
at com.sap.portal.prt.runtime.Portal$RuntimeResources.getService(Portal.java:130)
at com.sap.portal.resource.repository.WebResourceRepositorySrv.init(WebResourceRepositorySrv.java:71)
at com.sap.portal.prt.core.RequestDispatcherFactory$ServiceRequestDispatcher$3.service(RequestDispatcherFactory.java:518)
at com.sap.engine.services.servlets_jsp.server.deploy.impl.module.IRequestDispatcherImpl.dispatch(IRequestDispatcherImpl.java:363)
at com.sap.portal.prt.core.RequestDispatcherFactory$ServiceRequestDispatcher.init(RequestDispatcherFactory.java:503)
at com.sap.portal.prt.broker.PortalServiceItem.initServiceInstance(PortalServiceItem.java:347)
at com.sap.engine.services.servlets_jsp.server.deploy.impl.module.IRequestDispatcherImpl.dispatch(IRequestDispatcherImpl.java:363)
at com.sap.portal.prt.core.RequestDispatcherFactory$ServiceRequestDispatcher.init(RequestDispatcherFactory.java:503)
at com.sap.portal.prt.broker.PortalServiceItem.initServiceInstance(PortalServiceItem.java:347)
at com.sap.portal.prt.broker.PortalServiceItem.getServiceInstance(PortalServiceItem.java:210)
at com.sap.portal.prt.broker.PortalServiceItem.load(PortalServiceItem.java:578)
at com.sap.portal.prt.om.ObjectsManager.createObejctHandle(ObjectsManager.java:234)
at com.sap.portal.prt.om.ObjectsManager.getObjectHandle(ObjectsManager.java:147)
at com.sap.portal.prt.broker.PortalAppBroker.getPortalService(PortalAppBroker.java:498)
at com.sap.portal.prt.service.ServiceManager.getPortalServiceItem(ServiceManager.java:431)
at com.sap.portal.prt.service.ServiceManager.get(ServiceManager.java:220)
at com.sap.portal.prt.runtime.Portal$RuntimeResources.getService(Portal.java:130)
at com.sap.portal.resource.repository.WebResourceImportService$ResourceImporter.<init>(WebResourceImportService.java:248)
at com.sap.portal.resource.repository.WebResourceImportService.importApplicationResources(WebResourceImportService.java:172)
at com.sapportals.portal.navigation.NavigationMimeRepositoryService.loadAllPicsToWRR(NavigationMimeRepositoryService.java:186)
at com.sapportals.portal.navigation.NavigationMimeRepositoryService.init(NavigationMimeRepositoryService.java:160)
at com.sap.portal.prt.core.RequestDispatcherFactory$ServiceRequestDispatcher$3.service(RequestDispatcherFactory.java:518)
at com.sap.engine.services.servlets_jsp.server.deploy.impl.module.IRequestDispatcherImpl.dispatch(IRequestDispatcherImpl.java:363)
at com.sap.portal.prt.core.RequestDispatcherFactory$ServiceRequestDispatcher.init(RequestDispatcherFactory.java:503)
at com.sap.portal.prt.broker.PortalServiceItem.initServiceInstance(PortalServiceItem.java:347)
at com.sap.portal.prt.broker.PortalServiceItem.getServiceInstance(PortalServiceItem.java:210)
at com.sap.portal.prt.broker.PortalServiceItem.load(PortalServiceItem.java:578)
at com.sap.portal.prt.om.ObjectsManager.createObejctHandle(ObjectsManager.java:234)
at com.sap.portal.prt.om.ObjectsManager.getObjectHandle(ObjectsManager.java:147)
at com.sap.portal.prt.broker.PortalAppBroker.getPortalService(PortalAppBroker.java:498)
at com.sap.portal.prt.service.ServiceManager.getPortalServiceItem(ServiceManager.java:431)
at com.sap.portal.prt.service.ServiceManager.get(ServiceManager.java:220)
at com.sap.portal.prt.runtime.Portal$RuntimeResources.getService(Portal.java:130)
at com.sap.portal.pcm.iview.admin.PcmIviewCommon.getAdditionalAttributes(PcmIviewCommon.java:358)
at com.sap.portal.pcm.iview.admin.PcmIviewCommon.initLayers(PcmIviewCommon.java:173)
at com.sap.portal.pcm.iview.admin.AdminBaseiView.createAttrSetLayersList(AdminBaseiView.java:177)
at com.sap.portal.pcm.page.admin.AdminBasePage.getCustomImplementation(AdminBasePage.java:76)
at com.sap.portal.pcm.admin.PcmAdminBase.getImplementation(PcmAdminBase.java:642)
at com.sapportals.portal.navigation.LightningHelperService.getFrameworkPageAttributesValues(LightningHelperService.java:143)
at com.sapportals.portal.navigation.LightningHelperService.getFrameworkPageAttributesValues(LightningHelperService.java:171)
at com.sapportals.portal.navigation.fpm.util.PhaseConfiguration.prepareAttributes(PhaseConfiguration.java:71)
at com.sapportals.portal.navigation.fpm.util.PhaseConfiguration.storeRelatedAttributesInSharedStorage(PhaseConfiguration.java:35)
at com.sapportals.portal.navigation.fpm.NavigationFpmListener.doFrameworkPhase(NavigationFpmListener.java:535)
at com.sapportals.portal.navigation.fpm.NavigationFpmListener.doPhase(NavigationFpmListener.java:122)
at com.sapportals.portal.pb.fpm.FPMContainer.distributeEvent(FPMContainer.java:63)
at com.sapportals.portal.pb.fpm.FPM.doDocumentHook(FPM.java:179)
at com.sapportals.portal.prt.service.document.DocumentHookMulticaster.doDocumentHook(DocumentHookMulticaster.java:100)
at com.sapportals.portal.prt.service.document.DocumentHookService.doDocumentHook(DocumentHookService.java:119)
at com.sapportals.portal.prt.service.document.DocumentHookServiceNew.doDocumentHook(DocumentHookServiceNew.java:186)
at com.sapportals.portal.prt.connection.PortalHook.doDocumentHook(PortalHook.java:665)
at com.sap.portal.prt.core.PortalRequestManager.callPortalComponent(PortalRequestManager.java:183)
at com.sap.portal.prt.core.PortalRequestManager.dispatchRequest(PortalRequestManager.java:107)
at com.sap.portal.prt.core.PortalRequestManager.dispatchRequest(PortalRequestManager.java:141)
at com.sap.portal.prt.component.PortalComponentResponse.include(PortalComponentResponse.java:206)
at com.sapportals.portal.navigation.PortalLauncher.doContent(PortalLauncher.java:116)
at com.sapportals.portal.prt.component.AbstractPortalComponent.serviceDeprecated(AbstractPortalComponent.java:213)
at com.sapportals.portal.prt.component.AbstractPortalComponent.service(AbstractPortalComponent.java:129)
at com.sap.engine.services.httpserver.chain.AbstractChain.process(AbstractChain.java:78)
at com.sap.engine.services.httpserver.filters.MemoryStatisticFilter.process(MemoryStatisticFilter.java:57)
at com.sap.engine.services.httpserver.chain.ServerFilter.process(ServerFilter.java:12)
at com.sap.engine.services.httpserver.chain.AbstractChain.process(AbstractChain.java:78)
at com.sap.engine.services.httpserver.filters.DSRHttpFilter.process(DSRHttpFilter.java:43)
at com.sap.engine.services.httpserver.chain.ServerFilter.process(ServerFilter.java:12)
at com.sap.engine.services.httpserver.chain.AbstractChain.process(AbstractChain.java:78)
at com.sap.engine.services.httpserver.server.Processor.chainedRequest(Processor.java:475)
at com.sap.engine.services.httpserver.server.Processor$FCAProcessorThread.process(Processor.java:269)
at com.sap.engine.services.httpserver.server.rcm.RequestProcessorThread.run(RequestProcessorThread.java:56)
at com.sap.engine.core.thread.execution.Executable.run(Executable.java:122)
at com.sap.engine.core.thread.execution.Executable.run(Executable.java:101)
at com.sap.engine.core.thread.execution.CentralExecutor$SingleThread.run(CentralExecutor.java:328)
Caused by: javax.naming.InvalidNameException: Character not allowed: ':' in 'pcd:resource_repository'
at com.sapportals.portal.pcd.pl.PcdName.checkComponent(PcdName.java:64)
at com.sapportals.portal.pcd.pl.PcdName.checkNameComponent(PcdName.java:39)
at com.sapportals.portal.pcd.pl.PcdName.padd(PcdName.java:636)
at com.sapportals.portal.pcd.pl.PcdName.add(PcdName.java:626)
at com.sapportals.portal.pcd.gl.util.StringUtils.tokenizeIntoPcdName(StringUtils.java:112)
at com.sapportals.portal.pcd.pl.PcdName.appendUrlInternal(PcdName.java:408)
at com.sapportals.portal.pcd.pl.PcdName.<init>(PcdName.java:245)
at com.sap.portal.resource.repository.ResourceRepositorySrv.initRepositoryRootContext(ResourceRepositorySrv.java:121)
... 132 more
1)We are suspecting this issue is related to the theme issue.How to update the theme in the upgraded portal(have a backup of themes)
2)Want to know if we update a theme where it stored at the operating system level(in NW 7.3 EHP1 as well as NW 7.0)
3)Is there any post steps after portal upgrade.
Request you suggest.
Regards
MaruthiHi
Refer the SAP Notes
1942399 - Fix usage of unregistered class loader while processing HTTP request in an application being updated or stopped at the same time
1744820 - Migration 7.3 fails while executing migration of pcd_upgrade
1703578 - WPC migration stops during connection creation
1918086 - ERROR: Unable to get iView
Regards
Ram -
Unable to Login into APEX after upgrade from ORACLE XE to APEX 3.2
Hi,
I have upgraded Oracle 10g XE to with apex_3.2 on the Windows XP.
My ORACLE XE wa in folder "C:\ORACLE XE"
And APEX 3.2 in folder "C:\Ver 3.2\APEX"
Once you complete the standard install, i performd the following steps to complete
the upgrade which i got on my previous post.
Till normal installation i was able to login in Apex link and was able to run my application which was
in oracle XE but the only problem was i was unable to see any images in "EDIT PAGE" but my application was running well.
then i did following steps to get those images
Connect to SQL*Plus as SYS
@APEX_HOME/apex/apxldimg.sql APEX_HOME
@APEX_HOME/apex/apxxepwd.sql password
(where password is the password of the Application Express internal ADMIN account)
I chanbged image directory as below
FROM:
create directory APEX_IMAGES as ‘&1/apex/images’ ;
TO:
create directory APEX_IMAGES as ‘c:\oraclexe\apex\images’ and also tried ‘c:\ver 3.2\apex\images’;
Ran @apxldimg.sql
@apxxepwd.sql password (where password is the password of the Application Express internal ADMIN account)
Exit from the SQL*Plus session.
Change directory to c:\oraclexe\apex\owa, open the README.TXT file and follow the instructions within to complete the installation
But now i am unable to login into the page itself. It "showing Page Not Found"
Please kindly help me how to run APEX now through link.
Thanks in advance.
Thanks & Regards
Sanjay
Edited by: user11204334 on Aug 11, 2009 2:05 AM
Edited by: user11204334 on Aug 11, 2009 4:30 AMHi John,
Thanks for reply
I got error while doing following steps in few procedures
Change directory to c:\oraclexe\apex\owa, open the README.TXT file and follow the instructions within to complete the installation
Before doing the above step i was able to login into my application but without images
Can you please help that how to check those errors and any particular procedure you know which is responsible for the Login problem.
Thanks a Lot for help John
Thanks & Regards
Sanjay -
I am unable to sign into my google account after a tower being down. Any ideas
Using FaceTime http://support.apple.com/kb/ht4319
Troubleshooting FaceTime http://support.apple.com/kb/TS3367
The Complete Guide to FaceTime: Set-up, Use, and Troubleshooting Problems
http://tinyurl.com/32drz3d
Cheers, Tom -
CUPC – Unable to go into deskphone control mode and unable to chat
Home Lab – learning Presence
CUCM 9
CUPS 9 (not 8.6 as virtually all of the help and discussion forums, documents, etc are for)
CUPC 8.6 (3 copies running on 3 different laptops)
4 users configured in CUCM for Presence capabilities
No LDAP integration
Current status:
Presence indicators for phones works fine, no issues
3 users can log into their CUPC clients and Presence information from their own associated deskphone displays correctly (ie if User 1 takes his deskphone offhook, the CUPC for User 1 shows as “On the Phone”
Users can place phone calls with each other by typing the DN in the “Search for name or number” field
I have two different issues that I have not been able to solve all day – they may be related to each other.
The first issue: I am unable to go into deskphone mode. Although the checkbox is visible – it appears to be greyed out and clicking in it does nothing.
The second issue: I am unable to start a chat session. I highlite a contact (that I manually entered), right click, and select chat. I get an error message that says “Failed to start conversation. Invalid parameter”
I have scoured the Cisco site for docs and most of them pertain to CUPS 8.6 and not 9. There is a difference in that v9 does not have the Application -> IP Phone Messenger selection.
My current configs:
CUCM
4 application users – CUPS-AXL (with Stand CCM SuperUsers permissions), CUPS-Deskphone, CUPS-CTIGW, and CUPS-PhoneMSG (all with Standard CTI Allow control of all devices).
3 end users – From top to bottom, all users have passwords and digest credentials. Under Service Settings, all users have the “Enable user for Unified CM IM and Presence” checked. This is the replacement for the assigning license capabilities from version 8.6. Also under Service Settings, all users have a UC Service Profile assigned. The UC Service Profile has two UC service settings – a Presence and IM Profile and a CTI Profile. Under Device Information – all user have been associated to two different devices (their hardphone and the CUPC client). Under the Directory Number Association portion – each user has their own primary line selected from the drop down box. Under the Permissions Information section - each user has Standard CCM End Users and Standard CTI Enabled permissions.
Devices – each user has a 7960 hard phone and a CUPC. For each device (both types) at the Device Level -> Owner User ID, Protocol Specific Information -> BLF Presence Group, SUBSCRIBE CSS are all set. Under the line for each device (both types) – Allow control of device from CTI is checked, in the Associated Devices window is the MAC and UPC<name> of the devices, Under Users Associated with Line is the correct user
Under System –> Application Server, the CUP server is configured.
Under System -> Licensing, all users and devices are licensed. There is no Capabilities Assignment in version 9
CUPS
Under Diagnostics -> System Troubleshooter -> all green except for the things not configured, LDAP, 3rd party, etc
User Management -> End User -> are licensed for IM and Presence and have Microsoft RCC enabled. They also show 2 devices
Under Application – this is where its different from v8 to v9.
Application -> Legacy Clients -> Settings. I have set the TFTP server IP to the CUCM
Application -> Legacy Clients -> CCMCIP Profile. I created a new profile, set the Primary and Secondary CCMCIP Host to be the IP Address of the CUCM Publisher. For Server Certification Verfication, I selected Any Certificate from the drop down. I assigned this profile to all 4 of my users.
Application -> Microsoft RCC settings. Application status = on. For Application Username and password, I have tried using CUPS-Deskphone and CUPS-CTIGW with their appropriate passwords. There is not difference in using either one of them. CUCM address is address of my Pub. I assigned this Microsoft RCC service to all 4 of my users.
So, as I said, I have been working on this all day today burning my fingers and my mouse up on Google. To no avail.
Any ideas anyone?
JeffUpdate –
Well, I finally bit the bullet and stood up a MS AD domain in my lab.
I integrated CUCM into the LDAP and imported the users from LDAP
I also stood up a DNS server.
I reconfigured CUPS to the new domain, joined all of the endpoint laptops to the domain, and retested.
Same place as I was before with the deskphone mode – however, my ability to IM is fixed (as was expected).
Using CUPS, I am not able to go into deskphone control mode. The option box is still greyed out.
However, I installed Jabber for Windows on the same laptops.
In Jabber, I am able to select the option at the bottom of the window to use my deskphone for calls, and then I can move it back to the Jabber client.
So, anyone have any ideas why CUPC refuses to let me go into deskphone control mode?
All features and functions of the JFW work great. No problems.
Jeff
Maybe you are looking for
-
Something have happend with my NX. All thats happening with it now is that the 3 lights on it flashes. Windows dont find it anymore and no sound comes through it. Have tried to disconnect all cables to it and just have the power cable in it but still
-
JNI problems (findclass and vm error)
Hi, First please apologize if this question has already been asked. I've looked at the archives and I haven't found any answer to these problems. Thanks to take the time to read this quite long post, but I've tried to be sufficiently explicit... So,
-
How to uninstall iWork '09 (trial version) completely
I want to uninstall iWork '09 trial version completely. I deleted the folders, but there's something left with Mackeeper. Do I have to finish that Mackeeper thing?
-
Problem uploading app to iPhone store - Air 2.6
I've update my iPhone app by packaging with Air 2.6. I get the following error when uploading to the iTunes store: "This bundle is invalid. The key UIRequiredDeviceCapabilities in Info.plist may not contain values that would prevent this application
-
Good morning I see in the ORACLE literature concerning ASO cubes that it refers to sending slices of data to the cube as "trickle feed". Is this because the send function for the ASO cubes is not nearly as robust as Block storage? If not, what is tri