What is des 3 ?

what is des 3 ?
I understand that it is an option for perhaps encrypting credit card numbers ?
stev

AIUI, DES3 is probably the same as Triple-DES.
Basically, once there was an encryption algorithm that was used by most banks to encrypt data. Because it is computationally expensive to do so, it was widely implemented in hardware.
Unfortunately, the DES algorithm (DEA) used only a 56 bit key, which is now crackable in a matter of days. So rather than replacing the hardware, some bright spark came up with the idea of applying the algorithm 3 times, with a different key each time, giving an effective key length of 168 bits, or 112 bits if the first and last keys are identical.
This has the benefit that existing hardware can be reused. The snag is the additional computation power required. But it's still used extensively within electronic funds transfer, and in software for general encryption purposes.
(Some of the above might be completely wrong.)
Hope this helps.--
<sig> http://www.itswalky.com http://www.crfh.net </sig>

Similar Messages

  • What exactly des the HT multiplier affect?

    Hi guys.
    I recently built a new rig with the K8N Neo2 Platinum primarily based on Anandtech.com's review of it.  I've been trying to overclock my system that I built but believe I fried my ram somehow while doing it.  Which I still don't understand as Anandtech did some reviews with my ram on this board and were able to get a lot more out of it than I was at.
    At any rate my question is:
    What exactly does the HT multiplier affect in the bios settings?
    Some overclockers have said if you get your fsb over 260 you need it at 3x and if less than that at 4x.  I'm assuming this has something to do with your ram but I'm not sure.  If someone could shed some light on this I would appreciate it!
    Thanks

    Quote
    HTT (or HT):
    HTT (HyperTransportTechnology) is what the Athlon 64 uses as sort of an fsb, the complete story is above so I won't tell it all here. The HTT is the link between the CPU and the Chipset, that runs at a certain speed. The A64 systems get a lot of advantage out of this fast connection. Here are the speeds for the different chipsets:
    VIA K8T800pro/nForce4: HTT Multiplier: 5, Actual speed at 200Mhz: 1Ghz
    VIA K8T800/nForce3 250: HTT Multiplier: 4, Actual speed at 200Mhz: 800Mhz
    nForce3 150: HTT Multiplier: 3, Actual speed at 200Mhz: 600Mhz
    Note that any speed above 800Mhz is pretty much overkill, you don't need it because you simply have too little devices to use all the bandwidth. In fact, the 600Mhz of the nForce3 150 hardly gives it a disadvantage, its just not being used...
    http://forums.extremeoverclocking.com/showindex.php?t=107925

  • Help with DES key

    In my Java application, I use a DES key to encrypt files. Im not much of a security guy, so was wondering what a DES key looks like. Is it a string of characters? Is it a number?.
    The reason Im asking is that my application requires the user to note down the key and remember it (perhaps by jotting it down on a piece of paper). The key value has to hence be displayed to the user. How can I display the key value in Java in a human readable form so that next time he types it into my application, the application gets the same key it printed out earlier?
    Many thanks

    Seems a silly approach asking the user to remember the key but you will need to encode the key from binary into human readable form. You could try Base64 or Hex encoding.
    P.S. A PBE approach to the whole thing would probably be better.

  • So frustrated!!!! mouseover to display larger image

    I've searched all day for the answer, been sent 400 lines of
    code that I couldnt understand, read the tutorials... got nowhere.
    so, here we go...
    I have 3 images. 'Front.gif' 'back.gif' and 'detail.gif. I
    sell dresses. I want the user to be able to click on the small gif
    'front' and for the large image of the front of the dress to appear
    (on the same page but different location to front.gif). Then the
    user clicks on 'back.gif' and the front picture of the dress is
    replaced with the back view. then repeat for the 'detailed' view of
    the dress.
    all pictures/photos the the dress (front, back and detail)
    are the same size.
    I've tried layers, rollovers, swaps, crazy code that got me
    half way. I feel like dreamweaver is laughing at me saying "just
    click on that blue button and thats it"!!!!!
    thanks, kitty

    "Michael Fesser" <[email protected]> wrote in message
    news:[email protected]...
    > .oO(P@tty Ayers ~ACE)
    >
    >>"Michael Fesser" <[email protected]> wrote in
    message
    >>news:[email protected]...
    >>
    >>> I understood it like this: There are some small
    pictures and a single
    >>> area to show a large image. If you click a small
    image, a larger version
    >>> will appear in that specific area of the page.
    The same thing happens if
    >>> you use the eBay gallery to attach multiple
    images to an auction.
    >>
    >>Well, here's what she said:
    >>
    >>[...]
    >
    > I know what she said. Question is how you understood it.
    I've understood
    > it the way I described and how I've seen it done many
    times on all kinds
    > of websites: shops, eBay, galleries, even Flickr albums
    look like that.
    >
    >>Clicking a small picture of the front of a dress
    makes a similar larger
    >>image appear. So far so good.
    >>Then, say I'd like to see a picture of the back of
    the dress, and a
    >>detailed
    >>view. How can I find those? Pretty much only by
    random guessing and
    >>clicking
    >>everywhere, because to see the back you have to click
    on the front, and to
    >>see the detailed view you have to click on the back
    view.
    >
    > Ah, that's the ... hmm ... what is "des Pudels Kern" in
    English?
    > www.dict.cc suggests "The gist of the matter"? Anyway.
    >
    > Of course this would be a confusing and user-unfriendly
    design. But it's
    > not how I understood the OP. To me it seemed to be
    intended more like
    > this:
    >
    > +--------+ +-----------------------------+
    > | | | |
    > | front | | |
    > | | | |
    > +--------+ | |
    > +--------+ | |
    > | | | |
    > | back | | big image |
    > | | | |
    > +--------+ | |
    > +--------+ | |
    > | | | |
    > | detail | | |
    > | | | |
    > +--------+ +-----------------------------+
    >
    > As said - quite common.
    >
    > At least I think I've understood your interpretation of
    the original
    > posting now and the problems you see with it. Now it's
    up to the OP to
    > make things clearer. ;)
    >
    > Micha
    Ok, maybe you're right.
    Patty Ayers | www.WebDevBiz.com
    Free Articles on the Business of Web Development
    Web Design Contract, Estimate Request Form, Estimate
    Worksheet

  • How can I determine the cipher bit strength used by MY os X?

    How can I determine the cipher bit strength used by MY OS X?  Using Lion now?

    CT:
    Not Filvault, but the regular cryptographic use as built into OS X.  For example 1Password uses the algorithm in the OS X's Linux.  How many bits (i.e. 50, 128, 256...) does it use and what algorithm (DES, AES...)
    Linc
    As per reply to CT?
    Like so:
    http://osxdaily.com/2012/01/30/encrypt-and-decrypt-files-with-openssl/
    What is the strength used?

  • My computer des not detect my IPad what should I do?

    What to do when computer does not detect IPad

    iPad not appearing in iTunes
    http://www.apple.com/support/ipad/assistant/itunes/
    iOS: Device not recognized in iTunes for Mac OS X
    http://support.apple.com/kb/TS1591
    iOS: Device not recognized in iTunes for Windows
    http://support.apple.com/kb/TS1538
    IOS: Syncing with iTunes
    http://support.apple.com/kb/HT1386
    Apple - Support - iPad - Syncing
    http://www.apple.com/support/ipad/syncing/
     Cheers, Tom

  • What's the problem on the DES PBE encryption

    I've tried the to make a DES encryption by using my provided key
    But it got the the following errors :
    <pre>
    Exception in thread "main" java.security.spec.InvalidKeySpecException: Inappropriate key specification
    at com.sun.crypto.provider.DESKeyFactory.engineGenerateSecret(DashoA6275)
    at javax.crypto.SecretKeyFactory.generateSecret(DashoA6275)
    at t.main(t.java:37)
    </pre>
    <pre>
    import java.security.*;
    import javax.crypto.*;
    import javax.crypto.spec.*;
    public class t{
         public static void main(String[] args) throws Exception{
              char[] charArray = new char[5];
              ("mykey").getChars(0, 5, charArray, 0);
              PBEKeySpec pbeKeySpec = new PBEKeySpec(charArray);
              SecretKeyFactory keyFac = SecretKeyFactory.getInstance("DES");
              SecretKey pbeKey = keyFac.generateSecret(pbeKeySpec);
              Cipher pbeCipher = Cipher.getInstance("DES");
         pbeCipher.init(Cipher.ENCRYPT_MODE, pbeKey);
         // Our cleartext
         byte[] cleartext = "This is another example".getBytes();
         // Encrypt the cleartext
         byte[] ciphertext = pbeCipher.doFinal(cleartext);
    </pre>
    Do anyone know how to solve it, thx

    Just a note: DES only has a 56-bit key so it's not consider secure enough these days (triple-DES is but it doesn't work directly with PBE)...
    - Doug
    javax.crypto.spec.PBEParameterSpec paramSpec
    = new javax.crypto.spec.PBEParameterSpec( "mySalt".getBytes(), 1000 );
    javax.crypto.spec.PBEKeySpec keySpec
    = new javax.crypto.spec.PBEKeySpec("myPassword".toCharArray());
    javax.crypto.SecretKeyFactory kf
    = javax.crypto.SecretKeyFactory.getInstance("PBEWithMD5AndDES");
    javax.crypto.SecretKey passwordKey = kf.generateSecret( keySpec );
    javax.crypto.Cipher cipher
    = javax.crypto.Cipher.getInstance("PBEWithMD5AndDES");
    cipher.init(javax.crypto.Cipher.ENCRYPT_MODE, passwordKey, paramSpec);
    // Our cleartext
    byte[] cleartext = "This is another example".getBytes();
    // Encrypt the cleartext
    byte[] ciphertext = cipher.doFinal(cleartext);
    System.out.println("Ciphertext is : " + new String(ciphertext));

  • DES Encryption compatibility between Microsoft dot Net and Java

    Hi,
    I have a situation that a Secret key is shared between two components like Core and the Customer. The customer encrypts a particular data using DES algorithm using the shared secret key. The customer uses Microsoft dot Net framework to do this. The encrypted data comes to core part which has been developed in Java. I want to know whether it is possible to decrypt the data value using DES algorithm which is coming from Dot Net platform. By the way I am getting different values. I want to know whether the byte[] in Java and Dot Net are same. Please provide me relevent answers to this question. Is it possible to make interaction with the cryptography between two differnet environments like Java and Microsoft Dot Net. I mean only DES algorithm.

    DebadattaMishra wrote:
    Hi,
    I have a situation that a Secret key is shared between two components like Core and the Customer. The customer encrypts a particular data using DES algorithm using the shared secret key.Yuk! That is what SSL is for.
    The customer uses Microsoft dot Net framework to do this. The encrypted data comes to core part which has been developed in Java. I want to know whether it is possible to decrypt the data value using DES algorithm which is coming from Dot Net platform. Yes though there are many pitfalls. The devil is in the detail of the .NET code. I would not tackle this without access to the full .NET encryption code.
    By the way I am getting different values.This is not surprising since, as I said above, there are many pitfalls. The.NET documentation is poor at best and in some cases is very very misleading. Some of the .NET methods involved in key generation have obscure semantics and only after a very careful reading of lots of MS documentation did I start to understand the semantics.
    I want to know whether the byte[] in Java and Dot Net are same. You should compare the 'bits' of each byte and not the numeric values since Java uses signed bytes.
    Please provide me relevent answers to this question.This is not your call. Anyone is free to post answers as long as they follow the forum code of conduct.
    Is it possible to make interaction with the cryptography between two differnet environments like Java and Microsoft Dot Net. I mean only DES algorithm.Of course!

  • Error while opening LabView files - Bei der Weitergabe des Befehls an das Programm ist ein Fehler aufgetrete​n

    Hy Forum
    Some times ago i had some troubles while opening files in labiew....
    I want to open a LabView file (no matter if *.vi or *.lvproj file) from a network path (mapped network drive). The Windows User Account Control (Windows 7, 32bit) appears to asking me for giving access to my system settings! Oops, never seen this before, pressing yes button....
    Ok, but after this the following error message appears: 
    I don't know what the correct message in english is
    "An error occurred while executing this command"????
    "Bei Weitergabe des Befehls an das Programm ist ein Fehler aufgetreten"
    The LabView Getting Startet windows will be opened, but not the desired vi or project. Even if i try to open a project from the getting startet window or from the windows explorer, just the UAC window and the same error message.
    Easy as it is, just remove the "run as administrator" options on the compatibility settings of Labview and it will run without UAC confirm.
    And also files on network drives will be opened.
    Hope this would be helpful..

    Hi Dominik,
    thanks for posting your experience here. This may help someone down the line.
    LabVIEW should indeed not normally be run as admin as it works fine in Win7 when run as a standard user.
    Regards,
    Joseph Tagg

  • In BI 7,in loading point of view what is the difference

    Hello All
    In BI 7,in loading point of view
    Upto the first level(upto PSA) we use infopackage and from that layer onwards we use DTP's.
    My question is why do we want to use DTPs there? Why cant we use infopackage only?
    What is the advantage by using this DTPs for loading the data within BI
    Please let me know in this regard
    Many Thanks
    Swami

    Hi Swami,
    Although not recommended you can still use infopackages if you want in BI 7.x. The introduction of the DTP was to overcome some disadvantages of using infopackages up to and including release 3.x to load the data targets (especially with datamarts where one infopackage loads several data targets,
    if something goes wrong with the load to one of these data targets then it can be very difficult to correct).
    This section contains some arguments in brief why the DTP was introduced with BI 7.0 :
    Transfer from one source to one target
    BW 3.X
    One InfoPackage / Request supplies data for several data targets
    Fixed sequence of steps (DataSource / transfer rules / update rules / data target)
    Fixed source type: Combination DataSource/source system
    Fixed target type: Cube or ODS object or master data
    No init selection for extraction from infoprovider
    One request can produce several error requests, depending on the data targets
    No error handling into ODS Objects
    Delta management
    BI 3.X: The Receiver for DataSources is merely a logical system, which makes it impossible to have a separate delta management for several data targets within
    one system
    BI 7.0
    Data Transfer Process transports data from one data source to one data target; new source and target types can easily be defined
    Arbitrary number of steps (filter objects/transformations) between two persistent objects
    Init selection available
    Request produces error records stored in generic error stack
    Error handling into ODS Objects possible
    Resume from persistent buffer
    Delta management
    BI 7.0: The delta management is maintained by the data transfer process which connects arbitrary sources and targets
    I hope the above helps.
    Des.

  • Weblogic SSO with AD - My Try - What's wrong?

    Dear All
    I'm trying to setup Weblogic to Authenticate using AD and have SSO with a Windows workstation(joined to the domain).
    I just setup an Active Directory(Win2K3), a Windows XP(SP2) and a Linux System(CentOS5) with Weblogic 10.3.
    I'm wondering what is wrong with my configuration. I can only logon on Adminstration Console using weblogics local users, and even with entering username(those which created on AD) and password AD Authentication does not work.
    Anyone has simliar experiance or any clue?
    Appreciated
    TIA
    Cheers
    Here is the setup:
    The domain is: example.com and machines are: dc.example.com (AD), winclient.example.com (Windows XP joined to the example.com domain) and weblogic.example.com (CentOS with Weblogic 10.3 installed)
    The hosts file on all three machines are filled with their FQDN, Machine Name and corresponding IP addresses. They all have ping working successfully between each two of them. Firewalls are checked to be off.
    These are the steps I came through based on documentation I could found on the net:
    h1. 0. Configuring Your Network Domain to Use Kerberos
    In Linux Machine(Weblogic Server) edit Kerberos configuration file for appropriate values:
    */etc/krb5.conf*
    \[logging\]
    default = FILE:/var/log/krb5libs.log
    kdc = FILE:/var/log/krb5kdc.log
    admin_server = FILE:/var/log/kadmind.log
    \[libdefaults\]
    default_realm = EXAMPLE.COM
    default_tkt_enctypes = des-cbc-crc
    default_tgs_enctypes = des_cbc_crc
    dns_lookup_realm = false
    dns_lookup_kdc = false
    ticket_lifetime =28800
    forwardable = yes
    \[realms\]
    EXAMPLE.COM = {
    kdc = 192.168.1.193:88
    admin_server = dc
    default_domain = EXAMPLE.COM
    \[domain_realm\]
    .example.com = EXAMPLE.COM
    example.com = EXAMPLE.COM
    \[kdc\]
    profile = /var/kerberos/krb5kdc/kdc.conf
    \[appdefaults\]
    autologin = true
    forward = true
    forwardable = true
    encrypt = true
    pkinit = {
    allow_pkinit = false
    h1. 1. Create two users on AD: "New->User" with "User must change password at next logon" option cleared (not tidked)
    weblogic (for weblogic service) (with password = "password1")
    weblogicusr (the user which should access Weblogic Administration Console) ("password2")
    * Note that group membership of these two users are left default.(Domain Users)
    h1. 2. For "weblogic" & "weblogicusr" user set these Account Optiones:
    - Use DES encryption types for this account (ticked)
    - Do not require Kerberos preauthentication (cleared)
    * then reset the password again for "weblogic" (with password = "password1") and "weblogicusr" (with "password2").
    h1. 3. Create Service Principal Names for Weblogic Server and User on Win2K3 machine:
    - >setspn -a host/weblogic.example.com weblogic
    - >setspn -a HTTP/weblogic.example.com weblogic
    here is the result
    C:\Documents and Settings\Administrator.DC>setspn -L weblogic
    Registered ServicePrincipalNames for CN=weblogic,CN=Users,DC=example,DC=com:
    HTTP/weblogic
    host/weblogic
    HTTP/weblogic.example.com
    host/weblogic.example.com
    and
    - >setspn -a HTTP/weblogic.example.com weblogicusr
    and the result
    C:\Documents and Settings\Administrator.DC>setspn -L weblogicusr
    Registered ServicePrincipalNames for CN=Weblogic User,CN=Users,DC=example,DC=com:
    HTTP/weblogicsrv.example.com
    HTTP/weblogicsrv
    h1. 4. Create the keytab file for Weblogic Server:
    On AD machine issue:
    (ktpass from MS Windows Support Tools)
    >ktpass -princ host/[email protected] -pass password1 -mapuser weblogic -out c:\temp\weblogic.host.keytab
    >ktpass -princ HTTP/[email protected] -pass password1 -mapuser weblogic -out c:\temp\weblogic.HTTP.keytab
    (ktab from JRE 6)
    >ktab -k c:\temp\weblogic.keytab -a [email protected]
    Password for [email protected]:*password1*
    Done!
    Service key for [email protected] is saved in c:\temp\weblogic.keytab
    ** Note I could not kinit successfully merely with weblogic.host.keytab and/or weblogic.HTTP.keytab, I got this error +"Key table entry not found while getting initial credentials"+ how ever the keytab I created using ktab("weblogic.keytab") works fine in this case, so I decided to merge whole three of them into a keytab.
    >\[root@weblogic keytabs\]# kinit -k -t weblogic.host.keytab [email protected]
    >kinit(v5): Key table entry not found while getting initial credentials
    h1. 5. Port and Merge keytabs
    Then I ported these three files to the Linux Machine(weblogic.example.com): weblogic.host.keytab, weblogic.HTTP.keytab and weblogic.keytab
    and merged into one keytab:
    ktutil: "rkt weblogic.host.keytab"
    ktutil: "rkt weblogic.HTTP.keytab"
    ktutil: "rkt weblogic.keytab"
    ktutil: "wkt weblogic-keytab"
    ktutil: "q"
    * then put the result keytab "weblogic-keytab" somewhere in Weblogic Path:
    >/root/bea/user_projects/domains/base_domain/kerberos
    h2. 5.1 Test the keytab and kerberos configuration
    >\[root@weblogic keytabs\]# kinit -k -t weblogic-keytab [email protected]
    >\[root@weblogic keytabs\]# klist
    >Ticket cache: FILE:/tmp/krb5cc_0
    >Default principal: [email protected]
    >
    >Valid starting Expires Service principal
    >09/04/09 16:16:42 09/05/09 00:16:42 krbtgt/[email protected]
    >
    Kerberos 4 ticket cache: /tmp/tkt0
    klist: You have no tickets cached
    h1. 6. Creating a JAAS Login File
    Create krb5Login.conf and put it in here: "/root/bea/user_projects/domains/base_domain/kerberos/"
    krb5Login.conf
    com.sun.security.jgss.initiate {
    com.sun.security.auth.module.Krb5LoginModule required
    principal=*"[email protected]"* useKeyTab=true
    keyTab=*/root/bea/user_projects/domains/base_domain/kerberos/weblogic-keytab* storeKey=true;
    com.sun.security.jgss.accept {
    com.sun.security.auth.module.Krb5LoginModule required
    principal=*"[email protected]"* useKeyTab=true
    keyTab=*/root/bea/user_projects/domains/base_domain/kerberos/weblogic-keytab* storeKey=true;
    h1. 7. Modify startup options
    add these option to "/root/bea/user_projects/domains/base_domain/bin/startWebLogic.sh"
    h2. 7.1 Kerberos
    -Djava.security.krb5.realm=EXAMPLE.COM
    -Djava.security.krb5.kdc=dc.example.com
    -zjava.security.auth.login.config=$PATHTOKRB/krb5Login.conf
    -Djavax.security.auth.useSubjectCredsOnly=false
    -Dweblogic.security.enableNegotiate=true h2. 7.2 Debug
    -DDebugSecurityAdjudicator=true
    -Dweblogic.debug.DebugSecurityAtn=true
    -Dsun.security.krb5.debug=true
    -Dweblogic.StdoutDebugEnabled=true";
    -Dweblogic.log.StdoutSeverity=Debugh1. 8. Configuring the Identity Assertion Provider
    In Weblogic Administration I created a Security Realm called "example.com" with everything default and made it default. Then restarted the Weblogic Server.
    Again in Administation Console did this to example.com Security Realm:
    h2. 8.1 -> Prividers: Add 3 Providers
    Negotiate     WebLogic Negotiate Identity Assertion provider     1.0
         DIA     WebLogic Identity Assertion provider     1.0
         AD     Provider that performs LDAP authentication     1.0 (Active Directory provider)
         Default     WebLogic Authentication Provider     1.0
    h2. 8.2 -> Change the default parameters
    h3. 8.2.1 Negotiate     WebLogic Negotiate Identity Assertion provider
    -> Base64 Decoding Required: false (No Change, but shouldn't it be true and how to change?)
    -> Form Based Negotiation Enabled: Removed the tick
    h3. 8.2.2 DIA     WebLogic Identity Assertion provider (no changes)
    (no changes)
    h3. 8.2.3 AD     Provider that performs LDAP authentication (Active Directory provider)
    -> Control Flag: *SUFFICIENT*
    -> User Name Attribute: *sAMAccountName*
    -> Principal: *HTTP/[email protected]*
    -> Host: *192.168.1.193*
    -> User Base DN: *CN=Users,DC=example,dc=com*
    -> Propagate Cause For Login Exception: *ticked*
    -> Group Base DN: *CN=Users,DC=example,dc=com*
    -> Credential: *password1*
    * others left with their default values.
    h1. 9. Configuring an Internet Explorer Browser
    On Windows XP machine (winclient.example.com):
    h2. 9.1 Configure Local Intranet Domains
    - In Internet Explorer, Tools > Internet Options -> the Security tab -> Local intranet -> Sites:
    > "Include all sites that bypass the proxy server" *ticked*
    > "Include all local (intranet) sites not listed in other zones" *ticked*
    - then in -> Advanced Dialog Box added this:
    > weblogic.example.com
    h2. 9.2 Configure Intranet Authentication
    - In Internet Explorer, Tools > Internet Options -> the Security tab -> Local intranet -> Custome Level:
    > In the Security Settings dialog box -> the User Authentication section.
    > "Automatic logon only in Intranet zone" *ticked*
    h2. 9.3 The Proxy Settings
    No proxies are enabled
    h2. 9.4 Enable Integrated Windows Authentication
    - In Internet Explorer, Tools > Internet Options -> Advanced tab -> Security section:
    > "Enable Integrated Windows Authentication" *ticked* by default
    Edited by: Mehdi Sarmadi on Sep 4, 2009 5:51 AM

    I found something in Logfile:
    <Sep 4, 2009 6:17:39 PM IRDT> <Debug> <SecurityAtn> <BEA-000000> <LDAP Atn Login username: weblogicusr>
    <Sep 4, 2009 6:17:39 PM IRDT> <Debug> <SecurityAtn> <BEA-000000> <new LDAP connection to host 192.168.1.193 port 389 use local conne
    ction is false>
    <Sep 4, 2009 6:17:39 PM IRDT> <Debug> <SecurityAtn> <BEA-000000> <created new LDAP connection LDAPConnection { ldapVersion:2 bindDN:
    ""}>
    <Sep 4, 2009 6:17:39 PM IRDT> <Debug> <SecurityAtn> <BEA-000000> <connection failed netscape.ldap.LDAPException: error result (49);
    80090308: LdapErr: DSID-0C090334, comment: AcceptSecurityContext error, data 525, vece^@>
    <Sep 4, 2009 6:17:39 PM IRDT> <Debug> <SecurityAtn> <BEA-000000> <[Security:090294]could not get connection>
    According to this post: Re: WL10.3 and SSO and Active Directory
    a correct ldap connection should look like this:
    <LDAP Atn Login username: Administrator>
    <userExists? user:Administrator>
    <new LDAP connection to host 10.10.0.254 port 389 use local connection is false>
    <created new LDAP connection LDAPConnection { ldapVersion:2 bindDN:""}>
    <connection succeeded>
    *<getConnection return conn:LDAPConnection {ldaps://10.10.0.254:389 ldapVersion:3 bindDN:"HTTP/[email protected]"}>
    <getDNForUser search("CN=Users,DC=DOMAIN,dc=local", "(&(&(cn=Administrator)(objectclass=user))(!(userAccountControl:1.2.840.113556.1.4.803:=2)))", base DN & below)>xist>*
    Moreover, I turned AD's debug logging and this is what happens when I try to login with a AD user: Why "Anonymous Logon"?!
    Event Type:     Information
    Event Source:     NTDS LDAP
    Event Category:     LDAP Interface
    Event ID:     1535
    Date:          9/4/2009
    Time:          6:47:07 PM
    User:          NT AUTHORITY\*ANONYMOUS LOGON*
    Computer:     DC
    Description:
    Internal event: The LDAP server returned an error.
    Additional Data
    Error value:
    80090308: LdapErr: DSID-0C090334, comment: AcceptSecurityContext error, data 525, vece
    Any help would be greatly appreciated

  • What is renderingContext? and how can I get it?

    Hi all,
    I've been trying to make a dff.segment required dinamically in the controller and I've go it with the help of this forum and sweating a bit...
    My problem is, a method of the OAWebBean class I use in the controller is deprecated and the suggested method requires a parameter that I do not know how to manage.
    The method is getIndexedChild, for example:
    OAWebBean x = (OAWebBean ) des.getIndexedChild (RenderingContext, int);
    I need to know what is, and how to get the RenderingContext in the controller.
    The deprecated method I use now is getIndexedChild (int)
    Many thanks.
    Juanje

    Many thanks Tapash.
    Sometimes I get stoped with this silly things for hours (I'm a Forms developer recycled to OAF).

  • FTP to mail scenario with DES decryption

    Hi All,
    I have a existing process where FTP data files are scheduled to be available at 1:00pm each day on the FTP server.  Earlier to support this, a Windows-based FTP client script has been developed by us  which automatically retrieves the files via the Internet and does a number of other tasks which are detailed below.  This script runs at 1:10pm each day, including weekends and holidays.  The script retrieves 3 files, which are saved locally, and then decrypted, archived, and finally transferred via mail and also FTP to specific Unix directories for import into various SAP systems
    I have a scenario where SAP PI needs to do the same stuff above that is pick a file from the ftp location and send it to a mail address. The file will be in encrypted format and SAP PI needs to decrypt the file and the decrypted file needs to be send through.
    The files at the FTP side are encrypted using DES Encryption so ideally SAP PI needs to decrypt it using DES decryption.
    I know I can keep the DES software on the UNIX server at XI side and call it in sender file adapter at OS level calls but as far as I know it will be difficult for maintenance as the logs won't be available for proper monitoring.
    What is the best way to achieve this  ?
    Thanks in advance.
    Ravijeet
    Edited by: RAVIJEET.SAP.PI on Dec 2, 2010 4:00 PM
    Edited by: RAVIJEET.SAP.PI on Dec 2, 2010 8:18 PM

    Any suggestions

  • What to in SLD (Business and Technical sys)for Java server Proxy?

    I am using java server proxy for communicating with XI.
    I have HTTP as sender comm channel and XI as Receiver comm channel and this is the error i got in SXMB_MONI.
    What to give in SLD for java Server proxy, i have given Web as Java.....is this what the error says.Help is highly appreciated.
    <?xml version="1.0" encoding="UTF-8" standalone="yes" ?>
    - <!--  Request Message Mapping
      -->
    - <SAP:Error xmlns:SAP="http://sap.com/xi/XI/Message/30" xmlns:SOAP="http://schemas.xmlsoap.org/soap/envelope/" SOAP:mustUnderstand="">
      <SAP:Category>Application</SAP:Category>
      <SAP:Code area="MAPPING">EXCEPTION_DURING_EXECUTE</SAP:Code>
      <SAP:P1>com/sap/xi/tf/_Folder_MM_</SAP:P1>
      <SAP:P2>com.sap.aii.utilxi.misc.api.BaseRuntimeException</SAP:P2>
      <SAP:P3>Fatal Error: com.sap.engine.lib.xml.parser.Parser~</SAP:P3>
      <SAP:P4 />
      <SAP:AdditionalText />
      <SAP:ApplicationFaultMessage namespace="" />
      <SAP:Stack>Während des Anwendungs-Mappings com/sap/xi/tf/_Folder_MM_ wurde eine com.sap.aii.utilxi.misc.api.BaseRuntimeException geworfen: Fatal Error: com.sap.engine.lib.xml.parser.Parser~.</SAP:Stack>
      <SAP:Retry>M</SAP:Retry>
      </SAP:Error>
    =====================
    Thanks

    Hi,
    Refer this configuration guide:
    https://www.sdn.sap.com/irj/servlet/prt/portal/prtroot/docs/library/uuid/ac6de690-0201-0010-54ac-8923089dcc97
    Refer these too:
    Java Proxy Inside Story Part I
    https://www.sdn.sap.com/irj/servlet/prt/portal/prtroot/docs/library/uuid/a068cf2f-0401-0010-2aa9-f5ae4b2096f9
    Java Proxy Inside Story Part II
    https://www.sdn.sap.com/irj/servlet/prt/portal/prtroot/docs/library/uuid/f272165e-0401-0010-b4a1-e7eb8903501d
    Regards
    suraj
    Message was edited by: S.R.Suraj
    Message was edited by: S.R.Suraj

  • What is the syntax for the mdx offset in universe designer?

    Hi everybody!!!
    I wish someone could help me with my mdx syntax. I made an universe with Universe designer (BOEdge 3.1) from a BW query and I'm trying to create in this universe an object with an offset.
    My new object has to be the result of the [0CALYEAR].[LEVEL01] with "- 1" offset, is it possible???
    I tried to put the code in the select or in the where fields of the object but without results. When I try to make a query in webi rich client this "new object" doesn't work...
    Please help me...
    Dario

    Hi Ingo,
    thank you for the reply.
    I tried to use that document...the problem is when I put the code in the object (inside univ des) and I analyse the code using the button, the syntax is every time without errors. When I try to make the query in webi rich client , if I use that object the software shows a window with error.
    I used these code in the "where" field:
    1. <EXPRESSION>@SELECT([0CALYEAR].[LEVEL01])-1</EXPRESSION>
    2. <EXPRESSION>@SELECT(Anno calendario\L01 Anno calendario)-1</EXPRESSION>
    the problem is to find the right syntax for what I want...the -1 offset for the new object from the OCALYEAR. I need that if in webi I select from the object filter [0CALYEAR].[LEVEL01] the value 2010 - in the new object will be 2009 etc...
    Dario

Maybe you are looking for

  • Cisco VPN Client and Border Manager

    Don't know if this is the correct spot, but here goes. We are using BM 3.8sp4 using proxy, and NAT. We have a contractor that needs to access his company network using a Cisco VPN Client Ver 5. They have Enable Transparent Tunneling checked in the cl

  • I cannot open a document from an earlier version of pages.

    Hope someone has a helpful solution for me.  I am trying to access my resume that I did in an earlier version of Pages.  I tried to open it today and saw an error saying that the document could not be opened.  I have tried researching this and basica

  • Illustrator wont copy & paste at 300 ppi regardless of settings

    I just recently reformated my computer and I've been having an issue with copy and paste from Illustrator to Photoshop. Before I could copy a 2"x2" vector box from Illustrator into photoshop making a new document and the size and resolution would mat

  • Adding a record in a table from a workflow process

    Hi all, I need to add a recod in a table using a workflow. Here the scenario: A user add a record into table A, when done MDM trigger the workflow in Visio. The workflow has to add a record in table B coping some values of table A. Thank in advance f

  • Song title does not match song played

    I purchased a song im 2010 from Itunes and it downloaded.  It played fine until recently.  Itunes said I had a download waiting, so I downloaded it.  Now, when I play the song, it isn't the song I bought.  The title of the song is correct, but I have