User not administrator
Trouble installing the update to iTunes 11.1.0.126
I first received errors when running the installer that I was not logged in as an administrator and did not have proper rights to the C:\Program Files (x86)\iTunes directory. I attempted to change the rights...now I have a big mess on my hands.
What's up with the installer? I am right-clicking, "run as administrator" also.
Now I'm getting an error that I cannot complete the installation.
I'm lost here and desparately need help.
johnsoncm
Did you install the maintenance service properly in download and install updates in the background?
*Tools > Options > Advanced > Update: "Use a background service to install updates"
*https://support.mozilla.org/kb/what-mozilla-maintenance-service
If updating Firefox isn't working properly then this could be that the maintenance service isn't installed and enabled properly or not allowed in security software.
The maintenance service can be uninstalled separately, it shows up as a new item under add/remove programs.
You can try to uninstall and reinstall the maintenance service as a user by running the installer file in the Firefox program folder.
*maintenanceservice_installer.exe
Similar Messages
-
Delegate "New-MoveRequest" permission to users (not administrator)
Hi,
We're currently using Exchange in hybrid mode. I need to delegate the possibility to users (in IT department) to move mailbox from Exchange On-Premise to Exchange Online.
Everything goes fine when using the function "New Remove Move Request" in Exchange EMC as administrator, or when running the cmdlest new-moverequest -Remote as administrator.
What I'd like is the possibility to allow users of the IT dpt to use this function (either from EMC or powershell) without them beeind administrator. Is it possible to delegate this authorization ?
Thanks for any help/advice/solution !
regardsHi ,
Please have a look in to the following blog .
http://technet.microsoft.com/en-us/library/dd638132(v=exchg.150).aspx
Note : As an additional info ,You can also try with creating new RABC group with customized management role .Please try with the below mentioned commands in your test environment first before you get in to production .
Command 1 : $FormatEnumerationLimit = -1
Command 2 : Get-ManagementRoleEntry *\new-moverequest | fl
From the above output you will came to know which management role has to be added on the newly created RABC group .
Command 1 is used to view all the parameters in exchange management shell
command 2 is used to get the required management role which has to be linked on new RABC group to manage mailbox moves.
How to create the customized RABC in exchange 2013?
http://blogs.technet.com/b/nepapfe/archive/2014/02/05/create-a-custom-admin-role-for-exchange-using-rbac.aspx
Please reply me if you have any queries .
Regards
S.Nithyanandham
Thanks S.Nithyanandham -
Setting PC Time and Date as a User, not administrator
Good Day,
I'm trying to set the system time and date as a user. Currently running a hardware time server keeping the clocks on the network at the same time. The time is requested from the time sync server at the start of a DAQ run. This is to ensure every computer recording data has the same start time. We are currently changing network permissions and need to make a user run the software. User privelidges don't allow us to change the system time. Is there a way to allow a User to change the system time, or is that left to the Administrator only?
This function is already implimented on the administrator account and works successfully. Any information would be most appreciated.
ThanksP.C. was mentioned earlier so I will jump in and assume Windows....
If the system is (made) a member of a Window administrative domain then all this is already in the box, and should be part of a well managed system (I have managed it on a workgroup as well, see the articles below for details). It's one of the things I try to promote as we often have systems switched on for hundreds / thousands of hours and knowing when some guy accidently switched it all off is realy usefull It helps with problems / events that occur outside our control and assists tracking down problems and stops drift / skewing of data.
Check out the following articles for more information: -
Basic Operation of the Windows Time Service
http://support.microsoft.com/kb/q224799/
Registry entries for the W32 TimeService
http://support.microsoft.com/default.aspx?scid=kb;en-us;Q223184
Windows 2000 cannot set the correct time when it connects to multiple NTP servers
http://support.microsoft.com/?id=837196
The time service is included on Windows XP as well. For NT4 there is / was a toolkit that allows operation from Microsoft.
Use the command NET TIME /? (on W2K and XP)
Either way you will come accross problems at the firewall if you want to get to an external time source. Unless you have on of those nifty little black boxes that pick up a radio signal from one of the available time sources.
I like Dennis Knutsons idea because you can't always get IT's attention, sometimes they need a little help, thanks again Dennis for another good tip. -
Hi everyone,
it's probably just me but I have tried real hard to get a simple AnyConnect setup working in a lab environment on my ASA 5505 at home, without luck. When I connect with the AnyConnect client I get the error message "User not authorized for AnyConnect Client access, contact your administrator". I have searched for this error and tried some of the few solutions out there, but to no avail. I also updated the ASA from 8.4.4(1) to 9.1(1) and ASDM from 6.4(9) to 7.1(1) but still the same problem. The setup of the ASA is straight forward, directly connected to the Internet with a 10.0.1.0 / 24 subnet on the inside and an address pool of 10.0.2.0 / 24 to assign to the VPN clients. Please note that due to ISP restrictions, I'm using port 44455 instead of 443. I had AnyConnect working with the SSL portal, but IKEv2 IPsec is giving me a headache. I have stripped down certificate authentication which I had running before just to eliminate this as a potential cause of the issue. When running debugging, I do not get any error messages - the handshake completes successfully and the local authentication works fine as well.
Please find the current config and debugging output below. I appreciate any pointers as to what might be wrong here.
: Saved
ASA Version 9.1(1)
hostname ASA
domain-name ingo.local
enable password ... encrypted
xlate per-session deny tcp any4 any4
xlate per-session deny tcp any4 any6
xlate per-session deny tcp any6 any4
xlate per-session deny tcp any6 any6
xlate per-session deny udp any4 any4 eq domain
xlate per-session deny udp any4 any6 eq domain
xlate per-session deny udp any6 any4 eq domain
xlate per-session deny udp any6 any6 eq domain
passwd ... encrypted
names
name 10.0.1.0 LAN-10-0-1-x
dns-guard
ip local pool VPNPool 10.0.2.1-10.0.2.10 mask 255.255.255.0
interface Ethernet0/0
switchport access vlan 2
interface Ethernet0/1
interface Ethernet0/2
interface Ethernet0/3
interface Ethernet0/4
interface Ethernet0/5
interface Ethernet0/6
interface Ethernet0/7
interface Vlan1
nameif Internal
security-level 100
ip address 10.0.1.254 255.255.255.0
interface Vlan2
nameif External
security-level 0
ip address dhcp setroute
regex BlockFacebook "facebook.com"
banner login This is a monitored system. Unauthorized access is prohibited.
boot system disk0:/asa911-k8.bin
ftp mode passive
clock timezone PST -8
clock summer-time PDT recurring
dns domain-lookup Internal
dns domain-lookup External
dns server-group DefaultDNS
name-server 10.0.1.11
name-server 75.153.176.1
name-server 75.153.176.9
domain-name ingo.local
object network obj_any
subnet 0.0.0.0 0.0.0.0
object network LAN-10-0-1-x
subnet 10.0.1.0 255.255.255.0
object network Company-IP1
host xxx.xxx.xxx.xxx
object network Company-IP2
host xxx.xxx.xxx.xxx
object network HYPER-V-DUAL-IP
range 10.0.1.1 10.0.1.2
object network LAN-10-0-1-X
access-list 100 extended permit tcp any4 object HYPER-V-DUAL-IP eq 3389 inactive
access-list 100 extended permit tcp object Company-IP1 object HYPER-V-DUAL-IP eq 3389
access-list 100 extended permit tcp object Company-IP2 object HYPER-V-DUAL-IP eq 3389
tcp-map Normalizer
check-retransmission
checksum-verification
no pager
logging enable
logging timestamp
logging list Threats message 106023
logging list Threats message 106100
logging list Threats message 106015
logging list Threats message 106021
logging list Threats message 401004
logging buffered errors
logging trap Threats
logging asdm debugging
logging device-id hostname
logging host Internal 10.0.1.11 format emblem
logging ftp-bufferwrap
logging ftp-server 10.0.1.11 / asa *****
logging permit-hostdown
mtu Internal 1500
mtu External 1500
ip verify reverse-path interface Internal
ip verify reverse-path interface External
icmp unreachable rate-limit 1 burst-size 1
icmp deny any echo External
asdm image disk0:/asdm-711.bin
no asdm history enable
arp timeout 14400
no arp permit-nonconnected
object network obj_any
nat (Internal,External) dynamic interface
object network LAN-10-0-1-x
nat (Internal,External) dynamic interface
object network HYPER-V-DUAL-IP
nat (Internal,External) static interface service tcp 3389 3389
access-group 100 in interface External
timeout xlate 3:00:00
timeout pat-xlate 0:00:30
timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02
timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00
timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00
timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute
timeout tcp-proxy-reassembly 0:01:00
timeout floating-conn 0:00:00
dynamic-access-policy-record DfltAccessPolicy
aaa-server radius protocol radius
aaa-server radius (Internal) host 10.0.1.11
key *****
radius-common-pw *****
user-identity default-domain LOCAL
aaa authentication ssh console radius LOCAL
http server enable
http LAN-10-0-1-x 255.255.255.0 Internal
no snmp-server location
no snmp-server contact
snmp-server enable traps snmp authentication linkup linkdown coldstart
crypto ipsec ikev2 ipsec-proposal DES
protocol esp encryption des
protocol esp integrity sha-1 md5
crypto ipsec ikev2 ipsec-proposal 3DES
protocol esp encryption 3des
protocol esp integrity sha-1 md5
crypto ipsec ikev2 ipsec-proposal AES
protocol esp encryption aes
protocol esp integrity sha-1 md5
crypto ipsec ikev2 ipsec-proposal AES192
protocol esp encryption aes-192
protocol esp integrity sha-1 md5
crypto ipsec ikev2 ipsec-proposal AES256
protocol esp encryption aes-256
protocol esp integrity sha-1 md5
crypto ipsec security-association pmtu-aging infinite
crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set ikev2 ipsec-proposal AES256 AES192 AES 3DES DES
crypto map External_map 65535 ipsec-isakmp dynamic SYSTEM_DEFAULT_CRYPTO_MAP
crypto map External_map interface External
crypto ca trustpoint srv01_trustpoint
enrollment terminal
crl configure
crypto ca trustpoint asa_cert_trustpoint
keypair asa_cert_trustpoint
crl configure
crypto ca trustpoint LOCAL-CA-SERVER
keypair LOCAL-CA-SERVER
crl configure
crypto ca trustpool policy
crypto ca server
cdp-url http://.../+CSCOCA+/asa_ca.crl:44435
issuer-name CN=...
database path disk0:/LOCAL_CA_SERVER/
smtp from-address ...
publish-crl External 44436
crypto ca certificate chain srv01_trustpoint
certificate <output omitted>
quit
crypto ca certificate chain asa_cert_trustpoint
certificate <output omitted>
quit
crypto ca certificate chain LOCAL-CA-SERVER
certificate <output omitted>
quit
crypto ikev2 policy 1
encryption aes-256
integrity sha
group 5 2
prf sha
lifetime seconds 86400
crypto ikev2 policy 10
encryption aes-192
integrity sha
group 5 2
prf sha
lifetime seconds 86400
crypto ikev2 policy 20
encryption aes
integrity sha
group 5 2
prf sha
lifetime seconds 86400
crypto ikev2 policy 30
encryption 3des
integrity sha
group 5 2
prf sha
lifetime seconds 86400
crypto ikev2 policy 40
encryption des
integrity sha
group 5 2
prf sha
lifetime seconds 86400
crypto ikev2 enable External client-services port 44455
crypto ikev2 remote-access trustpoint asa_cert_trustpoint
telnet timeout 5
ssh LAN-10-0-1-x 255.255.255.0 Internal
ssh xxx.xxx.xxx.xxx 255.255.255.255 External
ssh xxx.xxx.xxx.xxx 255.255.255.255 External
ssh timeout 5
ssh version 2
console timeout 0
no vpn-addr-assign aaa
no ipv6-vpn-addr-assign aaa
no ipv6-vpn-addr-assign local
dhcpd dns 75.153.176.9 75.153.176.1
dhcpd domain ingo.local
dhcpd option 3 ip 10.0.1.254
dhcpd address 10.0.1.50-10.0.1.81 Internal
dhcpd enable Internal
threat-detection basic-threat
threat-detection scanning-threat shun except ip-address LAN-10-0-1-x 255.255.255.0
threat-detection statistics access-list
threat-detection statistics tcp-intercept rate-interval 30 burst-rate 400 average-rate 200
dynamic-filter use-database
dynamic-filter enable interface Internal
dynamic-filter enable interface External
dynamic-filter drop blacklist interface Internal
dynamic-filter drop blacklist interface External
ntp server 128.233.3.101 source External
ntp server 128.233.3.100 source External prefer
ntp server 204.152.184.72 source External
ntp server 192.6.38.127 source External
ssl encryption aes256-sha1 aes128-sha1 3des-sha1
ssl trust-point asa_cert_trustpoint External
webvpn
port 44433
enable External
dtls port 44433
anyconnect image disk0:/anyconnect-win-3.1.02026-k9.pkg 1
anyconnect profiles profile1 disk0:/profile1.xml
anyconnect enable
smart-tunnel list SmartTunnelList1 mstsc mstsc.exe platform windows
smart-tunnel list SmartTunnelList1 putty putty.exe platform windows
group-policy DfltGrpPolicy attributes
vpn-tunnel-protocol ikev1 ikev2 l2tp-ipsec ssl-client ssl-clientless
webvpn
anyconnect profiles value profile1 type user
username write.ingo password ... encrypted
username ingo password ... encrypted privilege 15
username tom.tucker password ... encrypted
class-map TCP
match port tcp range 1 65535
class-map type regex match-any BlockFacebook
match regex BlockFacebook
class-map type inspect http match-all BlockDomains
match request header host regex class BlockFacebook
class-map inspection_default
match default-inspection-traffic
policy-map type inspect dns preset_dns_map
parameters
message-length maximum client auto
message-length maximum 1500
id-randomization
policy-map TCP
class TCP
set connection conn-max 1000 embryonic-conn-max 1000 per-client-max 250 per-client-embryonic-max 250
set connection timeout dcd
set connection advanced-options Normalizer
set connection decrement-ttl
policy-map type inspect http HTTP
parameters
protocol-violation action drop-connection log
class BlockDomains
policy-map global_policy
class inspection_default
inspect ftp
inspect h323 h225
inspect h323 ras
inspect rsh
inspect rtsp
inspect esmtp
inspect sqlnet
inspect skinny
inspect sunrpc
inspect xdmcp
inspect sip
inspect netbios
inspect tftp
inspect ip-options
inspect dns preset_dns_map dynamic-filter-snoop
inspect http HTTP
service-policy global_policy global
service-policy TCP interface External
smtp-server 199.185.220.249
privilege cmd level 3 mode exec command perfmon
privilege cmd level 3 mode exec command ping
privilege cmd level 3 mode exec command who
privilege cmd level 3 mode exec command logging
privilege cmd level 3 mode exec command failover
privilege cmd level 3 mode exec command vpn-sessiondb
privilege cmd level 3 mode exec command packet-tracer
privilege show level 5 mode exec command import
privilege show level 5 mode exec command running-config
privilege show level 3 mode exec command reload
privilege show level 3 mode exec command mode
privilege show level 3 mode exec command firewall
privilege show level 3 mode exec command asp
privilege show level 3 mode exec command cpu
privilege show level 3 mode exec command interface
privilege show level 3 mode exec command clock
privilege show level 3 mode exec command dns-hosts
privilege show level 3 mode exec command access-list
privilege show level 3 mode exec command logging
privilege show level 3 mode exec command vlan
privilege show level 3 mode exec command ip
privilege show level 3 mode exec command failover
privilege show level 3 mode exec command asdm
privilege show level 3 mode exec command arp
privilege show level 3 mode exec command ipv6
privilege show level 3 mode exec command route
privilege show level 3 mode exec command ospf
privilege show level 3 mode exec command aaa-server
privilege show level 3 mode exec command aaa
privilege show level 3 mode exec command eigrp
privilege show level 3 mode exec command crypto
privilege show level 3 mode exec command ssh
privilege show level 3 mode exec command vpn-sessiondb
privilege show level 3 mode exec command vpnclient
privilege show level 3 mode exec command vpn
privilege show level 3 mode exec command dhcpd
privilege show level 3 mode exec command blocks
privilege show level 3 mode exec command wccp
privilege show level 3 mode exec command dynamic-filter
privilege show level 3 mode exec command webvpn
privilege show level 3 mode exec command service-policy
privilege show level 3 mode exec command module
privilege show level 3 mode exec command uauth
privilege show level 3 mode exec command compression
privilege show level 3 mode configure command interface
privilege show level 3 mode configure command clock
privilege show level 3 mode configure command access-list
privilege show level 3 mode configure command logging
privilege show level 3 mode configure command ip
privilege show level 3 mode configure command failover
privilege show level 5 mode configure command asdm
privilege show level 3 mode configure command arp
privilege show level 3 mode configure command route
privilege show level 3 mode configure command aaa-server
privilege show level 3 mode configure command aaa
privilege show level 3 mode configure command crypto
privilege show level 3 mode configure command ssh
privilege show level 3 mode configure command dhcpd
privilege show level 5 mode configure command privilege
privilege clear level 3 mode exec command dns-hosts
privilege clear level 3 mode exec command logging
privilege clear level 3 mode exec command arp
privilege clear level 3 mode exec command aaa-server
privilege clear level 3 mode exec command crypto
privilege clear level 3 mode exec command dynamic-filter
privilege cmd level 3 mode configure command failover
privilege clear level 3 mode configure command logging
privilege clear level 3 mode configure command arp
privilege clear level 3 mode configure command crypto
privilege clear level 3 mode configure command aaa-server
prompt hostname context
no call-home reporting anonymous
call-home
profile CiscoTAC-1
no active
destination address http https://tools.cisco.com/its/service/oddce/services/DDCEService
destination address email [email protected]
destination transport-method http
subscribe-to-alert-group diagnostic
subscribe-to-alert-group environment
subscribe-to-alert-group inventory periodic monthly
subscribe-to-alert-group configuration periodic monthly
subscribe-to-alert-group telemetry periodic daily
Cryptochecksum:41a021a28f73c647a2f550ba932bed1a
: end
Many thanks,
IngoHi Jose,
here is what I got now:
ASA(config)# sh run | begin tunnel-group
tunnel-group DefaultWEBVPNGroup general-attributes
address-pool VPNPool
authorization-required
and DAP debugging still the same:
ASA(config)# DAP_TRACE: DAP_open: CDC45080
DAP_TRACE: Username: tom.tucker, aaa.cisco.grouppolicy = DfltGrpPolicy
DAP_TRACE: Username: tom.tucker, aaa.cisco.username = tom.tucker
DAP_TRACE: Username: tom.tucker, aaa.cisco.username1 = tom.tucker
DAP_TRACE: Username: tom.tucker, aaa.cisco.username2 =
DAP_TRACE: Username: tom.tucker, aaa.cisco.tunnelgroup = DefaultWEBVPNGroup
DAP_TRACE: Username: tom.tucker, DAP_add_SCEP: scep required = [FALSE]
DAP_TRACE: Username: tom.tucker, DAP_add_AC:
endpoint.anyconnect.clientversion="3.1.02026";
endpoint.anyconnect.platform="win";
DAP_TRACE: Username: tom.tucker, dap_aggregate_attr: rec_count = 1
DAP_TRACE: Username: tom.tucker, Selected DAPs: DfltAccessPolicy
DAP_TRACE: Username: tom.tucker, DAP_close: CDC45080
Unfortunately, it still doesn't work. Hmmm.. maybe a wipe of the config and starting from scratch can help?
Thanks,
Ingo -
User iPod is not administrator
I changed operating system of my Windows PC from XP to Windows 8 and installed iTunes. Since then I can't synchronize my old iPod Classic with my iTunes library under W8.
Diagnostic test says: Present user is not administrator. Maybe this is cause of problem.
It is true that under Windows XP the administrators name of my PC was ADMIN and the name of my iPod was iPod of ADMIN.
Now under W8 the name of the administrator and single user of my PC is WXYZ. In iTunes I changed the name of my iPod in iPod of WXYZ but it didn't help. I still can't synchronize. Pressing the synchronize burtton in iTunes gives no action.
N.B. iTunes and Windows show my iPod.Solved problem myself. In iTunes select device (iPod of WXYZ), select tab Music, choose Synchronize Music (complete library). In about 15 minutes complete library in iTunes (5887 items and 10 new playlists) were synchronized.
-
Not Administrator user see uncorrect data
Hi,
i've a problem. I've developed a report in BI Publisher. If i access with Administrator user, i see correct data, but if i access with user not belonging to Administrator Group i see uncorrect data. The query in two scenarios is the same. Is it a problem of particular user? A problem of row security level? Can you help me?
ThanksHi Akshay,
We have also compounded object(Credit Control Area and it is a authorization object) of Customer Credit Management,and we included
Credit Control Area in Free characteristics and Customer Credit Management- Customer credit limit in Row area (which i am facing problem)
Thanks
Mohan -
Network connection IS active. Network connectivity test confirms, but shows Secure link to ITunes store failed. Tried help from diagnostics but get message that help is unavailable because computer isn't connected to internet (but it is). Diagnostic details show current user is not administrator (but is). Details show basic connection to the store failed. Tried all the "helps"/solutions I could find-- ie flush dns, No LSP except Bonjour, firewalls, etc. and still can't connect. What can I do????
Must have Admin password for the OS system to know you are Admin -
that error is known for eventually having to either
1 Unintall reinstall itune or
2 Reinstall Windows -
ABAP Service Users not working - important
Hi,
I installed finally BPC 75 NW, and I cannto get ito the application for the 1° time because I have several issues.... I get the error "The user ID, password cannot be authenticated. Make sure you entered valid credentials".
On Server Mgr. i get 2 errors " Sap server connection : database connection" and "ms message queue: queue name: .private$BPCstatusmessagequeue".
I have done eveything in order to solve this... but... after a lot of research I found a note where it is suggested to uninstall, however I still want to change some parameters as described in the installation guide, I hope you can please help me to clear this:
Manual, page 43, installation for NW.
- ABAP service users can be locked as a result of the install.
- Check and unlock users, use SU01, press Ctrl + F5 (done, not a problem)
- Check that COM + Components exist (done)
- Check interfaces (this means changes in Pooling & Recycling?)
- Check that librfc32.dll is set up appropiately (I had the problem during install where i needed to reassign this dll, now is not an issue unless there is something else to check that i am not aware of)
- IIS Port (80 by default right?)
- ServerConfiguration.config for the correct username and system info (cant find this file)
- Registry Entries on 32 and 64 bits (how can I do this)
- Check C:windowssytem32driversetchosts file to ensure that a fully qualified domain and IP resolution exists (what exactly do i need to check)
On server mgr also I have for COM+ components " domain system administrator with which i installed & password" is this right?
Thanx in advance, it is really important.
VelázquezHi,
Thanx for the feedback !! really appreciate it. Here is the response:
The COM components are ok, as well as the MSMQ and every other component you mentioned (also reinstalled it). I reactivated all "dictionary" to the 3 users created in ABAP, changed role to communication, and give SAP_ALL permission.
In the machine, changed the Default web site to port 81 (to let BPC website take port 80)
Reinstalled NET 2.0, set all components for BPC website to Net 2.0
Created the 3 abap users in domain and gave in both systems the same password.
Entered in the machine as the administrator user (also administrator in Netweaver) and started the installation without trouble.
After that, tried to run the server diagnostic but this user was lacking permits, so I added the 3 users (abap) in the local machine as administrators, in a new group called BPC (only giving the administrator role). Entered now in the machine as BPC_SYSADMIN and ran the Server Diagnostic without trouble.
After doing this, I now am facing an issue trying to add users to the 1° appset... choosing the domain users... however someone mentioned that this is related to the NET tier, is it better to reinstall this tier completely or at least try with NET 1.1, but im just about to find out.
Thanx again for the response.
Velázquez -
same user with administrative rights on all the servers in single domain user as a part of administrator group in all the servers:
same user is configured as administrator on all the servers in one domain at windows 2003 server. Should this user be made part of domain admin and then this can be set up in the group of administrator for all the servers.
How this is technically different?
If same user is set up as an administrator on all the servers in domain, will it have the same access on all the files as a domain admin user?
dhomyaIf the account is not admin on the domaincontrollers and the account is not member of domain admins or any other privileged AD group, the account has only user privileges on AD and thus cannot perform actions like creating and managing accounts,
groups, OUs,policies, sites, ...in other words cannot potentially ruin Active Directory.
I think that is a pretty big difference.
In fact, it is bad practice to perform you daily server management with an AD privileged account.
In regards of file access. The domain administrator will be just an admin, and thus has the privilies assigned to the local admin group, just as any other admin. But if it are different accounts they might be member of different groups assigning different
privileges. Always be carefull when assuming resulting privileges will be the same.
MCP/MCSA/MCTS/MCITP -
User not found error with Outlook Connector
Hi all
I am having some issues with the Outlook Connector (Version 7.1.222.4 JES2005Q4 running on Microsoft Outlook 2003) when trying to subscribe to a users calendar.
Details:
(SJES2005Q4)
Server 1 - Access Manager
Server 1 - Delegated Administrator
Server 2 - Directory Server 5.2
Server 3 - Messenger Server
Server 3 - Calendar Server
Server 3 - Access Manager SDK
Server 3 - Communications Express
Server 3 - Messenger Express
My setup works fine, I can subscribe to users calendars in Communications Express and modify/delete etc; however, when I try to subscribe to this same users calendar in Outlook I get the following error:
"User not found. Either enter the email id of the user OR click on Search and then click on Find to locate the user."
If I click on search, I get a list of my corporate directory, here I am able to select the user but again clicking ok gives the same result.
Looking at the logs it seems that the search at the point where I click ok is missing the "organizational unit" element of the user DN, logs below:
WHEN INITIATING SEARCH (not enterng userid; instead clicking on SEARCH in the ADD CALENDAR BOX)
[14/Feb/2006:11:23:06 +0000] conn=20255 op=-1 msgId=-1 - fd=175 slot=175 LDAP connection from 172.16.7.132 to 192.168.170.97
[14/Feb/2006:11:23:06 +0000] conn=20255 op=0 msgId=1 - BIND dn="uid=me,ou=people,o=domain-dev.co.uk,dc=domain-dev,dc=co,dc=uk" method=128 version=3
[14/Feb/2006:11:23:06 +0000] conn=20255 op=0 msgId=1 - RESULT err=0 tag=97 nentries=0 etime=0 dn="uid=me,ou=people,o=domain-dev.co.uk,dc=domain-dev,dc=co,dc=uk"
[14/Feb/2006:11:23:06 +0000] conn=20255 op=1 msgId=2 - SRCH base="ou=people,o=domain-dev.co.uk,dc=domain-dev,dc=co,dc=uk" scope=2 filter="(&(mail=*)(cn=*))" attrs="cn mail uid objectClass"
[14/Feb/2006:11:23:06 +0000] conn=20255 op=1 msgId=2 - SORT cn (5)
[14/Feb/2006:11:23:06 +0000] conn=20255 op=1 msgId=2 - VLV 1:1:1:0 2:5 (0)
[14/Feb/2006:11:23:06 +0000] conn=20255 op=1 msgId=2 - RESULT err=0 tag=101 nentries=3 etime=0 notes=U
[14/Feb/2006:11:23:06 +0000] conn=20255 op=2 msgId=3 - SRCH base="ou=people,o=domain-dev.co.uk,dc=domain-dev,dc=co,dc=uk" scope=2 filter="(&(mail=*)(cn=*))" attrs="uid mail cn title company telephoneNumber physicalDeliveryOfficeName objectClass"
[14/Feb/2006:11:23:06 +0000] conn=20255 op=2 msgId=3 - SORT cn (5)
[14/Feb/2006:11:23:06 +0000] conn=20255 op=2 msgId=3 - VLV 0:4:0:0 1:5 (0)
[14/Feb/2006:11:23:07 +0000] conn=20255 op=2 msgId=3 - RESULT err=0 tag=101 nentries=5 etime=1 notes=U
NOW SELECTING USERID
[14/Feb/2006:11:23:50 +0000] conn=20255 op=3 msgId=4 - SRCH base="uid=testmail,ou=people,o=domain-dev.co.uk,dc=domain-dev,dc=co,dc=uk" scope=0 filter="(&(mail=*)(cn=*))" attrs="cn displayName givenName sn initials uid departmentNumber title homePhone mail manager mobile company pager secretary description facsimileTelephoneNumber l physicalDeliveryOfficeName postalCode st street c telephoneNumber mailAlternateAddress objectClass"
[14/Feb/2006:11:23:50 +0000] conn=20255 op=3 msgId=4 - RESULT err=0 tag=101 nentries=1 etime=0
PRESSING OK (WITH USER ID SELECTED)
[14/Feb/2006:11:24:20 +0000] conn=20256 op=-1 msgId=-1 - fd=225 slot=225 LDAP connection from 192.168.170.99 to 192.168.170.97
[14/Feb/2006:11:24:20 +0000] conn=20256 op=0 msgId=1 - BIND dn="" method=128 version=2
[14/Feb/2006:11:24:20 +0000] conn=20256 op=0 msgId=1 - RESULT err=0 tag=97 nentries=0 etime=0 dn=""
[14/Feb/2006:11:24:20 +0000] conn=20256 op=1 msgId=2 - SRCH base="o=domain-dev.co.uk,dc=domain-dev,dc=co,dc=uk" scope=2 filter="(uid=testmail)" attrs="cn uid mail givenName sn icsCalendar"
[14/Feb/2006:11:24:20 +0000] conn=20256 op=1 msgId=2 - RESULT err=0 tag=101 nentries=0 etime=0
[14/Feb/2006:11:24:20 +0000] conn=20256 op=2 msgId=3 - UNBIND
[14/Feb/2006:11:24:20 +0000] conn=20256 op=2 msgId=-1 - closing - U1
[14/Feb/2006:11:24:21 +0000] conn=20256 op=-1 msgId=-1 - closed.
NOW WHEN ENTERING USER ID DIRECTLY (that is NOT clicking on SEARCH in the ADD CALENDAR BOX)
[14/Feb/2006:11:25:16 +0000] conn=20257 op=-1 msgId=-1 - fd=225 slot=225 LDAP connection from 192.168.170.99 to 192.168.170.97
[14/Feb/2006:11:25:16 +0000] conn=20257 op=0 msgId=1 - BIND dn="" method=128 version=2
[14/Feb/2006:11:25:16 +0000] conn=20257 op=0 msgId=1 - RESULT err=0 tag=97 nentries=0 etime=0 dn=""
[14/Feb/2006:11:25:16 +0000] conn=20257 op=1 msgId=2 - SRCH base="o=domain-dev.co.uk,dc=domain-dev,dc=co,dc=uk" scope=2 filter="(uid=testmail)" attrs="cn uid mail givenName sn icsCalendar"
[14/Feb/2006:11:25:16 +0000] conn=20257 op=1 msgId=2 - RESULT err=0 tag=101 nentries=0 etime=0
[14/Feb/2006:11:25:16 +0000] conn=20257 op=2 msgId=3 - UNBIND
[14/Feb/2006:11:25:16 +0000] conn=20257 op=2 msgId=-1 - closing - U1
[14/Feb/2006:11:25:16 +0000] conn=20257 op=-1 msgId=-1 - closed.
OUTLOOK CONNECTOR LOGS
02/14/2006 11:25:16.223 (0x0e34) {Addin } [Error ]: wc /get_userprefs.wcap?userid=testmail&id=bo3bn0u68x8sb5rb&fmt-out=text%2Fcalendar
02/14/2006 11:25:16.223 (0x0e34) {Addin } [Error ]: wcap returned errno: 61
02/14/2006 11:25:16.223 (0x0e34) {Addin } [Warning]: LookUpUser getUserPropertiesByEmailID failed : Denied Access
Initially I thought that it maybe something to do with ACI but then the search parameters are not correct at the point of clicking ok.
My Outlook Connector deployment configuration for the "LDAP" tab is as follows:
Search base (root of LDAP directory): ou=people,o=domain-dev.co.uk,dc=domain-dev,dc=co,dc=uk
VLV Search filter: (&(mail=*)(cn=*))
Advanced search filter: (cn=%s*),(givenName=%s*),(sn=%s*),(title=%s*),(uid=%s*),(company=%s*),(departmentNumber=%s*),(physicalDeliveryOfficeName=%s*),(l=*%s*)
Name resolution filter: (&(mail=*)(|(mail=%s*)(|(cn=%s*)(|(sn=%s*)(givenName=%s*)))))
VLV sort attribute: cn
Search timeout after: 1minute
Maximum number of search results returned: 10
Require authentification (See Help for LDAP syntax examples): (User DN pattern) uid=%S,ou=people,o=domain-dev.co.uk,dc=domain-dev,dc=co,dc=uk
Retrieve user settings from LDAP (User DN pattern): uid=%S,ou=people,o=domain-dev.co.uk,dc=domain-dev,dc=co,dc=uk
Does anyone have any ideas?
Thanks
PS: This is also posted in the IMS mailing list, so apologises for duplication to people who visit both forums.The error was fixed by setting the "Authenticated proxy binding: service.wcap.userprefs.ldapproxyauth" to "yes", this is in the release notes as pointed out by Arnaud Quillaud.
Link: http://docs.sun.com/app/docs/doc/819-5200/6n7a49o0b?a=view -
Changing or deleting the user name administrator folder in Mac OS X system preferences
Hello!
Does changing or deleting the user name administrator folder in Mac OS X system preferences affects my Creative Cloud license?
[personal information removed... Mod - https://forums.adobe.com/docs/DOC-3731]
[This is an open forum, not Adobe support, please do not post personal information]
[If you are posting using email, please turn your 'sig file' function OFF for posting]Moving this discussion to the Creative Cloud Download & Install forum.
Rodrigolima74 at minimum it is likely you will need to sign back in after changing the name. I have not personally tested the behavior so please feel free to update this discussion after you have made the change. -
Limited account users not able to access oracle 9.2 database
I have installed oracle 9.2 database on windows server 2003 enterprise, I am having 35 users that login through terminal server to use a application developed in VB6 and uses oracle database, Now if I put all users in administrator group of 2003 everything is working OK , but if I remove them from administrator group they receive the following error after starting the application
"Oracle client and networking components were not found. These components are supplied by Oracle Corporation and are part of the Oracle Version 7.3.3 or later client software installation. Provider is unable to function until these components are installed."
I dont want these users in administrator group as this can be a risk for my setup,but unfortunately I until have no solution for this rahter then keeping them in Administator group.
Any Help will be greatly appreciated.
TahnksOn the client terminals, you need to install Oralce client software to make sure that the clients and server can communicate. Have you installed it? How the clients are connecting to the database, by some tnsnames or in your application, are you using some DSN or something which is using some tnsnames entry?
HTH
Aman.... -
Dear All,
When I try to deploy WD application, it gives me this following error and doesn't deploy.
com.sap.engine.deploy.manager.DeployManagerException: ERROR: Cannot connect to Host: [MTW02SDEP02] with user name: [Administrator] Check your login information. Exception is: com.sap.engine.services.jndi.persistent.exceptions.NamingException: Exception during getInitialContext operation. No server is running. [Root exception is
Caused by: com.sap.engine.services.security.exceptions.BaseLoginException: Exception in creating new RemoteLoginContext instance.
at com.sap.engine.services.security.remote.login.RemoteLoginContextExt.<init>(RemoteLoginContextExt.java:34)
at com.sap.engine.services.jndi.implclient.LoginHelper.clientSideLogin(LoginHelper.java:81)
at com.sap.engine.services.jndi.InitialContextFactoryImpl.getInitialContext(InitialContextFactoryImpl.java:355)
... 38 more
Caused by: com.sap.engine.services.rmi_p4.P4ConnectionException: Possible problem: no available running server node. Check your running servers.
at com.sap.engine.services.rmi_p4.P4ObjectBrokerClientImpl.getException(P4ObjectBrokerClientImpl.java:709)
at com.sap.engine.services.rmi_p4.P4ObjectBrokerClientImpl.getException(P4ObjectBrokerClientImpl.java:697)
at com.sap.engine.services.rmi_p4.Parser.newRequest(Parser.java:180)
at com.sap.engine.services.rmi_p4.Connection.run(Connection.java:427)
... 1 more
(message ID: com.sap.sdm.serverext.servertype.inqmy.extern.EngineApplOnlineDeployerImpl.checkLoginCredentials.DMEXC)
Deployment exception : The deployment of at least one item abortedHi
Try this
1. Is this is the remote server?
if yes make one entry in host file under C:\WINDOWS\system32\drivers\etc
format : <server ip> <servername>
restart NWDS
2.If not then put the Ip address instead of name inside Window--preference --Sap server Check.
3. Put some different UserId and Password who has deployment rights
Best Regards
Satish Kumar -
Finding whether the user has administrative rights
Is there any way by which we can find whether the user has administrative rights or not using java?
The very notion of "administrative rights" is
platform-dependent. It's not standard or well-defined
what "administrative rights" means across all OSes.
You'll have to use JNI or Runtime.execI searched net a lot but couldnt find any tutorial or artical regarding how to achieve this in C or C++.
Any link will be helpful. -
User Photo Administration (mass upload) iview doesn't run
Hello,
I'm trying to mass upload lots of pictures about employees to show on CLP the photo detail. I've been searching for a long time the right way to do it through the standard User Photo Administration (mass upload) iview but not success for me.
I've checked this message really similar to mine but not solve my problem:
https://forums.sdn.sap.com/thread.jspa?threadID=1063236&tstart=0
The iview properties are set to run as explain:
http://help.sap.com/saphelp_nw04/helpdata/EN/09/d7fe40be6eef23e10000000a155106/content.htm
This is my scenario:
EP7 sp15
i've got a folder on my filesystem (c:\photos). In this folder i have two files
a) mapping.properties.txt
inside filled with:
emp10110=10110
USER.CORP_LDAP.emp10110=10110
b) 10010.JPG
After starting the task the photo was not updated and there was nothing in the application log!?
What could be the problem? I can add the file manually but not through mass upload iview.
Has anybody used the User Photo Administration (mass upload) iview ?
Thanks in advance
Scott
Edited by: Scott Summer on Apr 28, 2009 9:57 AMHi,
Instead of use User Photo Administration (Mass upload) using a mapping.properties file, forget it and use a easy DOS script (lots of examples on google) to rename all files on your folder with the user ID of employees. Then you'll get a folder with the employees pictures with ID user as name file.
If your pictures are set like Required Picture Settings on your system(size,dimensions,...) , now you will upload files without problems directly.
Regards
Ruben
Maybe you are looking for
-
Report -- How to get Options to show up in Report for a recurring payment
If you want to help, look at prudenceconservancy.org. The recurring payments I do not get in my report the Donation type. For the non-recurring payments I get the donation type (membership, Eugene Chase Farm , Stone Dock.
-
How can I set up a wireless network??
I have a Airport Base station at home would like to network my laptop with my desktop. Only thing is I believe the desktop does not have a airport card installed, it is an older mac. The base station is hooked up to it by a cable. Could someone pleas
-
I paid for export pdf online and followed instructions for activating it from Download History- but there is no download link on the page. What am I supposed to do now?
-
I got problem everytime i run my files
i always have the same problem when i run my classes event if it runs on another computer: init: deps-jar: Compiling 1 source file to C:\Documents and Settings\Ha Thi Nga\exercite\build\classes compile-single: run-single: java.lang.NoClassDefFoundErr
-
Hi I expect this question has been asked alot.... I am about to upgrade to an intel iMac 20'' with 1 Gb ram are there any problems running final cut pro 4.5 on the new intel machines? and if so are the patches available to fix this? Thanks Jon