WRVS4400N responds to pings but web interface fails

Hello.
I have a WRVS4400N router in a remote office.  I have connectivity to the office and computers there.  But the web interface for the router is failing to come up.  This happens once every few days or so.  Is there any utility or something that I can use to remotely reset the router without making use of the webinterface or having physical access to the router?
It's a version 2 router with the latest firmware.
Thanks.

I gain access via LogMeIn.  QuickVPN has not been enabled on this router.  And the hardware VPN between it and a like-router in a second office is down and will not come back up.
I know the interface does not come up when I'm physically there because I tried it last time I traveled to the office during the last outage.  I am using it's LAN IP 192.168.148.1.  I also tried 192.168.148.2.  Both IPs respond to pings but no web interface will connect.
The web browser (Chrome, Firefox, and IE) just says "unable to connect" or "cannot display the page"

Similar Messages

  • Installation of a 'large' application though web interface fails -

    Proxy Error
    The proxy server received an invalid response from an upstream server.
    The proxy server could not handle the request GET /pls/apex/f.
    Reason: Error reading from remote server
    Expecting p_company or wwv_flow_company cookie to contain security group id of application owner.
    ERR-7620 Could not determine workspace for application ().
    Get the same message now (didn't used to) when trying to build a master-detail form, so I'm thinking it is a sort of time out // lack of memory issue.
    I need to install with new number and parse through a new schema name...
    I have read this cannot be done in sql*plus. Can the f123.sql file be edited in some way?
    My application is over 90 pages, and I'd hate to have to chop it up to multiple smaller apps. Any suggestions I can go to either the DBA or app server admin with, or workarounds, would be much appreciated!
    We are on we are APEX 3.1 on 10G//Unix with Oracle IAS.
    Thank you.
    Pamela

    Hello,
    How big is the export file you're trying to import? In your Apache configuration there will be a timeout setting, can you check what that value is set to?
    John.
    Blog: http://jes.blogs.shellprompt.net
    Work: http://www.apex-evangelists.com
    Author of Pro Application Express: http://tinyurl.com/3gu7cd
    REWARDS: Please remember to mark helpful or correct posts on the forum, not just for my answers but for everyone!

  • Web Interface of Cisco Prime 2.1 not working

    Excuse me!
    I install the trial version cisco prime 2.1 (OVA) on ESXi server
    I can ping cisco prime but web interface of cisco prime not worinking
    prime/admin# ncs status
    Health Monitor Server is running.
    Ftp Server is running
    Database server is running
    Tftp Server is running
    Matlab Server is running
    NMS Server is running.
    Plug and Play Gateway is running.
    SAM Daemon is running ...
    DA Daemon is running ...
    Syslog Daemon is running ...

    Services running fine..
    check it with other Browser , Supported browser are below::
    –    Google Chrome 31 or later.
    –    Microsoft Internet Explorer 8.0 or 9.0 with Google Chrome Frame plugin (users logging in to the simplified Lobby Ambassador interface do not need the plugin).
    –    Mozilla Firefox ESR 24.
    –    Mozilla Firefox 24, 25 or 26.
    If above does not help , reboot the server once and check the issue again.
    Thanks-
    Afroz
    ***Ratings Encourages Contributors ****

  • Ix2 web interface not responding

    I have the EMC IX2 200. I can no longer connect to the web interface. I recently had to replace a failed drive, I used the same  model and size. Afterwards the mirror repaired itself but I could never manage the storage. Some message about the drives. The drive status showed fine in the mgmt interface. I downloaded firmware updates but it would not allow me to install. I tried rebooting the device but it never completed, even after waiting for than a day. It wouldn't respond to pings so I unplugged it the powered it back up. Now the web interface never comes back up. I can access my existing shares but I can't manage the device via the web interface. No service is listening on ports 80 or 443. I did have ssh enabled so I can access the system via a shell. Apparenty this is a common problem for which no known solution exists judging from numerous other forums. After rebooting all lights appear normal other  than the white exclamation light keeps blinking. I've already spent many days on this issue but haven't given up on this product yet.   Any suggestions? 
    [Port scan]
    Scanning 192.168.1.15 [1000 ports]
    Discovered open port 22/tcp on 192.168.1.15
    Discovered open port 21/tcp on 192.168.1.15
    Discovered open port 139/tcp on 192.168.1.15
    Discovered open port 445/tcp on 192.168.1.15
    Discovered open port 9000/tcp on 192.168.1.15
    Discovered open port 873/tcp on 192.168.1.15
    Discovered open port 49152/tcp on 192.168.1.15
    Discovered open port 631/tcp on 192.168.1.15
    Discovered open port 548/tcp on 192.168.1.15
    Discovered open port 3689/tcp on 192.168.1.15

    Yes, I'm not sure what is up with their tech support. I think they inherited a somewhat underwhelming product that had  unrealized potential. I think it suffers from too much compromise on hardware for what they were trying to accomplish in software. It is somewhat maddening that they refused to use ssh to diagnose the problem. That is why it exists. I had it enabled when i first acquired this product to fix an issue at tech support's request. It appears everything booted up but something is wrong with the appweb service. The service is running but doesn't respond to connection attempts on 80 or 443. It isn't listening on the web ports. I still haven't heard back from their escalated support team. I wonder if it really exists? I've seen many other forums where a support issue got stuck here. The storage problem has worsened. I was copying all my data off when, in the middle, the share quit responding. The box would not power down, reboot or reset. I tried pulling power but still could not access the main share when it came back up where most my critical data resides. I connected in with ssh and traversed the directory tree, the base folder is there where the share would be advertised, but all the data is gone! I didn't get anywhere near a full copy completed. There are some other minor shares I had created and they still work, but I still cannot access the box via the appweb service, even though the process is running. Fortunately I can recover most my important data because I was also backing it up with Crash Plan (thank god!) but this will be very time consuming. I can't even begin to express how frustrating this process has been, not to mention the countless hours trouble shooting. Long story short, I wouldn't trust any important data on this device. I've ordered a Synology DS213j with two 3TB Western Digital RED drives to replace this. If I can get the ix2 repaired I will only use it for lab unless someone wants to buy it off me. -- thanks, David

  • WRT54GL Web Interface Broken - Failed Firmware Update - Router Works

    I have a WRT54GL v1.1 router. I tried to update the firmware, using what I thought was the newer firmware, apparently somewhere I mislicked and didn't get what I thought I was getting. It succeeded, but now the web admin interface is totally broken. It loads, but there are no link or text, I can seem some form fields with some data, but mostly it's like seeing the page with NO content or navigation (though I can see the layout correctly). This means I can't change any of the router settings.
    My internet still works. Wireless works (I just have no way to secure it now). I have tried to usu TFTP to upload the correct drivers from this web site. It says "Cannot Connect to Server" or something like that when it tries. I have pinged the router and it works. I have tried to assign a static IP (192.168.1.100) and then have TFTP start as soon as I see my continuos ping start to get a result. It still says the same "Cannot Connect" type of message.
    I have also tried to see if the router has some kind of "Management Mode" by holding the rest button, unplugging the router, plugging it back in, waiting 10 seconds and releasing then waiting a minute and going to 192.168.1.1 and it looks like the same exact broken web interface I normally get. It doesn't appear to go to a "Management Mode."
    The power light is not blinking.
    Help!
    Screenshot of Broken Interface

    What was the procedure you followed to upgrade/re-flash the firmware through TFTP?
    As TFTP firmware upgrade was failed follow the below mentioned steps.
    Double click the TFTP.exe file and click run.
    For Server- Enter the IP Address of the router that you assigned.  By default, the router is 192.168.1.1...
    For Password- Enter the password you assigned the router. By default, the router’s password is “admin”.
    For File- Click the triple “…” button and browse for the .bin firmware file...
    Click Upgrade button to start upgrading.  A progress bar should show up to show the progress.
    Once the Upgrade is done press and hold the reset button for 30 seconds...Release the reset button...Unplug the power cable from your router, wait for 30 seconds and re-connect the power cable...Now re-configure your router...

  • I can Ping FW inside interface but can not connect to remote resources

    dear all
    i configer my asa 5520 through ASDM to enable VPN Connection , i follow the cisco steps and it works fine and the anyconnect version 3.1 in Windows 8 - one day troubleshoot for this point only - can connect and have an IP address from the range , but i have something wrong in NAT may be because all guides talking about old ASDM ( NAT Exempt) but i am confeused to apply it on the new ASDM.
    i can ping the inside interface  from my labtop which using anyconnect , but i can not access anything else inside my network
    Please anyone has a solution , please describe it using ASDM , thanks for help
    This is my configuration
    interface GigabitEthernet0/1
    description
    nameif SRV_ZONE
    security-level 50
    ip address 192.168.1.1 255.255.255.0
    interface GigabitEthernet0/2
    description
    nameif TRUST_ZONE
    security-level 100
    ip address 172.17.200.1 255.255.255.0
    interface GigabitEthernet0/3
    shutdown
    no nameif
    no security-level
    no ip address
    interface Management0/0
    nameif MGMT
    security-level 0
    ip address 10.10.10.1 255.255.255.0
    dns server-group DefaultDNS
    domain-name xxx.xxx.xxx
    object network obj-192.168.1.11
    host 192.168.1.11
    object network obj-xxx.xxx.xxx.xxx
    host xxx.xxx.xxx.xxx
    object service obj-tcp-source-eq-25
    service tcp source eq smtp
    object network obj-192.168.1.12
    host 192.168.1.12
    object network obj-xxx.xxx.xxx.xxx
    host xxx.xxx.xxx.xxx
    object network obj-192.168.1.0
    subnet 192.168.1.0 255.255.255.0
    object service obj-tcp-eq-25
    service tcp destination eq smtp
    object network obj_any
    subnet 0.0.0.0 0.0.0.0
    object network obj-0.0.0.0
    host 0.0.0.0
    object network obj_any-01
    subnet 0.0.0.0 0.0.0.0
    object network obj-172.17.8.8
    host 172.17.8.8
    object network obj-172.17.0.0
    subnet 172.17.0.0 255.255.0.0
    object network obj_any-02
    subnet 0.0.0.0 0.0.0.0
    object network obj_any-03
    subnet 0.0.0.0 0.0.0.0
    object network obj_any-04
    subnet 0.0.0.0 0.0.0.0
    object network obj_any-05
    subnet 0.0.0.0 0.0.0.0
    object network obj_any-06
    subnet 0.0.0.0 0.0.0.0
    object network obj.172.17.8.115
    host 172.17.8.115
    object network obj.xxx.xxx.xxx.xxx
    host xxx.xxx.xxx.xxx
    object service http
    service tcp source eq www destination eq www
    object network obj.xxx.xxx.xxx.xxx
    host xxx.xxx.xxx.xxx
    object service https
    service tcp source eq https destination eq https
    object service newservice
    service tcp source eq pop3 destination eq pop3
    object network mail
    host 172.17.8.8
    description mail     
    object network 192.168.1.11
    host 192.168.1.11
    description smtp     
    object service smtpnew
    service tcp source eq 587 destination eq 587
    object network VPN_RANGE
    description VPN ACCESS RANGE  
    object network VPN_PoOL
    subnet 172.17.16.0 255.255.255.0
    description vpn
    object-group network DM_INLINE_NETWORK_1
    network-object host 192.168.1.11
    network-object host 192.168.1.12
    object-group network Eighth_Floor
    network-object 172.17.8.0 255.255.255.0
    object-group service WEB_SERVICES
    service-object tcp destination eq www
    object-group network ENT_SERVERS
    network-object host 192.168.1.11
    network-object host 192.168.1.1
    object-group network DM_INLINE_NETWORK_2
    network-object 172.17.200.0 255.255.255.0
    network-object 172.17.8.0 255.255.255.0
    object-group service DM_INLINE_TCP_2 tcp
    port-object eq www
    port-object eq https
    port-object eq smtp
    object-group service web tcp
    port-object eq www
    port-object eq xxx
    port-object eq ftp
    port-object eq xxx
    port-object eq xxx
    object-group service xxx_Web_and_Email
    service-object object http
    service-object tcp destination eq pop3
    service-object tcp destination eq smtp
    object-group protocol TCPUDP
    protocol-object udp
    protocol-object tcp
    object-group protocol DM_INLINE_PROTOCOL_1
    protocol-object udp
    protocol-object tcp
    object-group protocol DM_INLINE_PROTOCOL_2
    protocol-object ip
    object-group protocol DM_INLINE_PROTOCOL_3
    protocol-object ip
    access-list DMZ_access_in extended permit ip 192.168.1.0 255.255.255.0 172.17.0.0 255.255.0.0
    access-list DMZ_access_in extended permit ip 192.168.1.0 255.255.255.0 any
    access-list justice_splitTunnelAcl standard permit 10.100.100.0 255.255.255.0
    access-list xxx-VPN_splitTunnelAcl remark vpn
    access-list xxx-VPN_splitTunnelAcl standard permit 172.17.16.0 255.255.255.0
    access-list xxx-VPN_splitTunnelAcl standard permit any
    access-list cap extended permit tcp any host xxx.xxx.xxx.xxx eq smtp log
    access-list cap1 extended permit tcp host 192.168.1.11 any eq smtp
    access-list SRV_ZONE_nat_outbound extended permit tcp 192.168.1.0 255.255.255.0 any eq smtp
    access-list SRV_ZONE_nat_outbound extended permit ip host 192.168.1.11 any
    access-list TRUST_ZONE_access_in extended permit ip host 172.17.88.108 any
    access-list TRUST_ZONE_access_in extended permit object-group DM_INLINE_PROTOCOL_2 10.10.3.0 255.255.255.0 any
    access-list TRUST_ZONE_access_in extended permit object-group DM_INLINE_PROTOCOL_3 10.10.50.0 255.255.255.0 any
    access-list TRUST_ZONE_access_in extended permit ip 172.17.8.0 255.255.255.0 any
    access-list TRUST_ZONE_access_in extended permit ip 172.17.200.0 255.255.255.0 any
    access-list TRUST_ZONE_access_in extended permit ip 172.17.0.0 255.255.0.0 host 192.168.1.12
    access-list TRUST_ZONE_cryptomap extended permit ip xxx.xxx.xxx.xxx 255.255.255.248 any
    access-list outside_access_in extended permit tcp any host 192.168.1.11 eq smtp
    access-list outside_access_in extended permit tcp any host 172.17.8.8 eq www
    access-list outside_access_in extended permit tcp any host 192.168.1.12 object-group web
    access-list outside_access_in extended permit tcp any host 172.17.8.8 eq pop3
    access-list outside_access_in extended permit ip 172.17.16.0 255.255.255.0 any inactive
    access-list vpn remark vpn
    access-list vpn standard permit 172.17.16.0 255.255.255.0
    pager lines 24
    logging enable
    logging trap informational
    logging asdm informational
    logging host TRUST_ZONE 172.17.8.100
    mtu INT_ZONE 1500
    mtu SRV_ZONE 1500
    mtu TRUST_ZONE 1500
    mtu MGMT 1500
    ip local pool VPN_POOL 172.17.16.100-172.17.16.254 mask 255.255.255.0
    ip verify reverse-path interface INT_ZONE
    ip verify reverse-path interface SRV_ZONE
    no failover
    icmp unreachable rate-limit 1 burst-size 1
    icmp permit any SRV_ZONE
    icmp permit any TRUST_ZONE
    asdm image disk0:/asdm-635.bin
    no asdm history enable
    arp timeout 14400
    nat (SRV_ZONE,INT_ZONE) source static obj-192.168.1.11 obj-xxx.xxx.xxx.xxx service any obj-tcp-source-eq-25
    nat (SRV_ZONE,INT_ZONE) source static obj-192.168.1.12 obj-xxx.xxx.xxx.xxx
    nat (SRV_ZONE,INT_ZONE) source dynamic obj-192.168.1.0 interface service obj-tcp-eq-25 obj-tcp-eq-25
    nat (INT_ZONE,SRV_ZONE) source static any any destination static 192.168.1.11 obj-172.17.8.8 service obj-tcp-source-eq-25 obj-tcp-source-eq-25
    nat (TRUST_ZONE,INT_ZONE) source static VPN_PoOL VPN_PoOL destination static VPN_PoOL VPN_PoOL
    object network obj_any
    nat (SRV_ZONE,INT_ZONE) dynamic obj-0.0.0.0
    object network obj_any-01
    nat (SRV_ZONE,MGMT) dynamic obj-0.0.0.0
    object network obj-172.17.8.8
    nat (TRUST_ZONE,INT_ZONE) static xxx.xxx.xxx.xxx service tcp www www
    object network obj-172.17.0.0
    nat (TRUST_ZONE,SRV_ZONE) static 172.17.0.0
    object network obj_any-02
    nat (TRUST_ZONE,INT_ZONE) dynamic interface
    object network obj_any-03
    nat (TRUST_ZONE,SRV_ZONE) dynamic interface
    object network obj_any-04
    nat (TRUST_ZONE,INT_ZONE) dynamic obj-0.0.0.0
    object network obj_any-05
    nat (TRUST_ZONE,SRV_ZONE) dynamic obj-0.0.0.0
    object network obj_any-06
    nat (TRUST_ZONE,MGMT) dynamic obj-0.0.0.0
    object network obj.172.17.8.115
    nat (TRUST_ZONE,INT_ZONE) static obj.xxx.xxx.xxx.xxx service tcp www www
    object network mail
    nat (TRUST_ZONE,INT_ZONE) static obj-xxx.xxx.xxx.xxx service tcp pop3 pop3
    nat (TRUST_ZONE,INT_ZONE) after-auto source static obj-172.17.8.8 obj-xxx.xxx.xxx.xxx service https https
    access-group outside_access_in in interface INT_ZONE
    access-group DMZ_access_in in interface SRV_ZONE
    access-group TRUST_ZONE_access_in in interface TRUST_ZONE
    route INT_ZONE 0.0.0.0 0.0.0.0 xxx.xxx.xxx.xxx 1
    route TRUST_ZONE 10.10.0.0 255.255.0.0 172.17.200.254 1
    route TRUST_ZONE 10.11.0.0 255.255.0.0 172.17.200.254 1
    route TRUST_ZONE 10.12.0.0 255.255.0.0 172.17.200.254 1
    route TRUST_ZONE 10.13.0.0 255.255.0.0 172.17.200.254 1
    route TRUST_ZONE 172.17.0.0 255.255.0.0 172.17.200.254 1
    timeout xlate 3:00:00
    timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02
    timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00
    timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00
    timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute
    timeout tcp-proxy-reassembly 0:01:00
    dynamic-access-policy-record DfltAccessPolicy
    aaa authentication enable console LOCAL
    aaa authentication http console LOCAL
    aaa authentication ssh console LOCAL
    aaa authentication serial console LOCAL
    http server enable
    http 172.17.8.0 255.255.255.0 TRUST_ZONE
    http 172.17.8.155 255.255.255.255 TRUST_ZONE
    http 172.17.8.45 255.255.255.255 TRUST_ZONE
    http 10.10.10.2 255.255.255.255 MGMT
    http 192.168.1.12 255.255.255.255 SRV_ZONE
    http 0.0.0.0 0.0.0.0 INT_ZONE
    http 172.17.200.0 255.255.255.0 TRUST_ZONE
    no snmp-server location
    no snmp-server contact
    snmp-server enable traps snmp authentication linkup linkdown coldstart
    crypto ipsec transform-set ESP-3DES-SHA esp-3des esp-sha-hmac
    crypto ipsec transform-set ESP-AES-256-MD5 esp-aes-256 esp-md5-hmac
    crypto ipsec transform-set ESP-DES-SHA esp-des esp-sha-hmac
    crypto ipsec transform-set ESP-DES-MD5 esp-des esp-md5-hmac
    crypto ipsec transform-set ESP-AES-192-MD5 esp-aes-192 esp-md5-hmac
    crypto ipsec transform-set ESP-3DES-MD5 esp-3des esp-md5-hmac
    crypto ipsec transform-set ESP-AES-256-SHA esp-aes-256 esp-sha-hmac
    crypto ipsec transform-set ESP-AES-128-SHA esp-aes esp-sha-hmac
    crypto ipsec transform-set ESP-AES-192-SHA esp-aes-192 esp-sha-hmac
    crypto ipsec transform-set ESP-AES-128-MD5 esp-aes esp-md5-hmac
    crypto ipsec security-association lifetime seconds 28800
    crypto ipsec security-association lifetime kilobytes 4608000
    crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set pfs
    crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set transform-set ESP-AES-128-SHA ESP-AES-128-MD5 ESP-AES-192-SHA ESP-AES-192-MD5 ESP-AES-256-SHA ESP-AES-256-MD5 ESP-3DES-SHA ESP-3DES-MD5 ESP-DES-SHA ESP-DES-MD5
    crypto dynamic-map pol 1 match address TRUST_ZONE_cryptomap
    crypto dynamic-map pol 1 set transform-set ESP-AES-128-SHA ESP-AES-128-MD5 ESP-AES-192-SHA ESP-AES-192-MD5 ESP-AES-256-SHA ESP-AES-256-MD5 ESP-3DES-SHA ESP-3DES-MD5 ESP-DES-SHA ESP-DES-MD5
    crypto map INT_ZONE_map 65535 ipsec-isakmp dynamic SYSTEM_DEFAULT_CRYPTO_MAP
    crypto map TRUST_ZONE_map0 1 ipsec-isakmp dynamic pol
    crypto map TRUST_ZONE_map0 interface TRUST_ZONE
    crypto map INT_ZONE_map0 65535 ipsec-isakmp dynamic SYSTEM_DEFAULT_CRYPTO_MAP
    crypto map INT_ZONE_map0 interface INT_ZONE
    crypto ca trustpoint ASDM_TrustPoint0
    enrollment self
    fqdn SEC-xxx-FW1
    subject-name CN=SEC-xxx-FW1
    no client-types
    proxy-ldc-issuer
    crl configure
    crypto ca trustpoint ASDM_TrustPoint1
    enrollment self
    subject-name CN=SEC-xxx-FW1
    keypair sslvpnkeypair
    crl configure
    crypto ca certificate chain ASDM_TrustPoint0
    certificate 31
        57f4e52e 6b851966 77515d62 c209a0df 1c32ce94 bb90cbce 497cfd04 6745ea85
        efb75f85 2ae1ad35 344d94ab 915e01ab d3292626 ac697a52 b4ed6632 d3ed2332 ae
      quit
    crypto ca certificate chain ASDM_TrustPoint1
    certificate e6054352
        c64f3661 30f14c3d 06b5f039 9f14560d 3b154fd1 42782268 7531689e 8e547d91
        85e88415 e326f653 74733a6c a3f5c935 f7e83f56 f6
      quit
    crypto isakmp enable INT_ZONE
    crypto isakmp policy 10
    authentication pre-share
    encryption 3des
    hash sha
    group 2
    lifetime 86400
    crypto isakmp policy 65535
    authentication pre-share
    encryption 3des
    hash sha
    group 2
    lifetime 86400
    telnet timeout 5
    ssh 0.0.0.0 0.0.0.0 INT_ZONE
    ssh 172.17.8.0 255.255.255.0 TRUST_ZONE
    ssh 10.10.10.2 255.255.255.255 MGMT
    ssh timeout 5
    console timeout 0
    management-access TRUST_ZONE
    vpn load-balancing
    interface lbpublic INT_ZONE
    interface lbprivate INT_ZONE
    priority-queue INT_ZONE
      tx-ring-limit 256
    threat-detection basic-threat
    threat-detection scanning-threat
    threat-detection statistics host number-of-rate 3
    threat-detection statistics access-list
    no threat-detection statistics tcp-intercept
    ssl trust-point ASDM_TrustPoint1 INT_ZONE
    webvpn
    enable INT_ZONE
    svc image disk0:/anyconnect-win-2.1.0148-k9.pkg 1
    svc enable
    tunnel-group-list enable
    group-policy xxx-VPN internal
    group-policy xxx-VPN attributes
    dns-server value xx.xx.xx.xx xx.xx.xx.xx
    vpn-tunnel-protocol IPSec
    split-tunnel-policy tunnelspecified
    split-tunnel-network-list value xxx-VPN_splitTunnelAcl
    group-policy DfltGrpPolicy attributes
    vpn-tunnel-protocol webvpn
    group-policy GPNEW internal
    group-policy GPNEW attributes
    dns-server value 172.17.8.41
    vpn-tunnel-protocol IPSec l2tp-ipsec svc webvpn
    default-domain value xxx.xxx.xxx
    address-pools value VPN_POOL
    username VPNAM password xxx encrypted
    username VPNAM attributes
    service-type remote-access
    vpn-group-policy xxx-VPN
    tunnel-group xxx-VPN type remote-access
    tunnel-group xxx-VPN general-attributes
    dhcp-server 172.17.8.41
    tunnel-group xxx-VPN ipsec-attributes
    pre-shared-key *****
    tunnel-group pol type ipsec-l2l
    tunnel-group pol ipsec-attributes
    pre-shared-key *****
    trust-point ASDM_TrustPoint0
    tunnel-group SSLClientProfile type remote-access
    tunnel-group SSLClientProfile general-attributes
    address-pool VPN_POOL
    default-group-policy GPNEW
    tunnel-group SSLClientProfile webvpn-attributes
    group-alias SSLVPNClient enable
    policy-map type inspect dns preset_dns_map
    parameters
      message-length maximum 512
    policy-map global_policy
    class inspection_default
      inspect dns preset_dns_map
      inspect ftp
      inspect h323 h225
      inspect h323 ras
      inspect netbios
      inspect rsh
      inspect rtsp
      inspect skinny 
      inspect sqlnet
      inspect sunrpc
      inspect tftp
      inspect sip 
      inspect xdmcp
      inspect ip-options
      inspect pptp
    service-policy global_policy global
    prompt hostname context
    call-home
    profile CiscoTAC-1
      no active
      destination address http https://tools.cisco.com/its/service/oddce/services/DDCEService
      destination address email [email protected]
      destination transport-method http
      subscribe-to-alert-group diagnostic
      subscribe-to-alert-group environment
      subscribe-to-alert-group inventory periodic monthly
      subscribe-to-alert-group configuration periodic monthly
      subscribe-to-alert-group telemetry periodic daily
    Cryptochecksum:78a941e3f509dec8f3570c60061eedaa
    : end

    thanks god
    i solve the problem
    the problem is in NAT
    i creat an object with the ip address host from VPN pool and name it vpn
    then i do the nat from inside to that host as the following picture...
    trust zone is the inside zone
    vpn is the outside vpn host...
    thanks and hope it helps anyone else...

  • Actiontec MI424-WR web interface not responding properly

    The web interface of my Actiontec MI424-WR rev c router, with firmware v 4.0.16.1.56.0.10.12.3, is not responding properly when I try to access it to configure the router or read the logs.  It sometimes takes a very long time to respond, and my browser will say that "the connection to the server was reset".   Has anyone else had this problem?
    ps
    I neglected to mention, it just started doing this recently, probably within the last two weeks or so, it was fine before.

    annonymous009 wrote:
    The web interface of my Actiontec MI424-WR rev c router, with firmware v 4.0.16.1.56.0.10.12.3, is not responding properly when I try to access it to configure the router or read the logs.  It sometimes takes a very long time to respond, and my browser will say that "the connection to the server was reset".   Has anyone else had this problem?
    ps
    I neglected to mention, it just started doing this recently, probably within the last two weeks or so, it was fine before.
    Connecting to it it wirelessly or via cat5?
    If wirelessly does the same occur if you connect hard wired.?
    Any other routers on your LAN?
    Any new wireless devices, phones etc, added recently?

  • Privileged Exec password works for telnet but not web interface on Cisco AP 1242

    I recently configured a Cisco AP 1242, software version 12.4, via the web interface using the default Cisco credentials. At that time I setup an administrator account with read/write access and changed the Cisco to a read only access. Now went I attempt to login to the web interface it won't accept the administrator password. It will except the administrator password in a telnet session however. So via the telnet session I setup another user with privileged exec level access and that wont work on the web interface either. The Login box keeps coming back requesting a password. Strangely enough, I can login to the web Interface using admin username, with the Cisco password; but I can't do anything, and I also can't view everything.
    I've tried the following:
    I've turned on SSH and created a certificate in the AP, but the login box continues to pop on the https://url.
    I've attempted to setup a user with a non-encrypted password, but have been unsuccessful.
    I've tried a different browser - login box continues to pop.
    I've made sure the web interface is activated in the AP
    I've tried a differnet computer
    I've tried disabling password-encryption service
    Reset the enable password
    I've successfully setup other 1240 APs but must have done something wrong on this one. Anyone know what I'm missing? Thanks.
    Solution: I was missing "ip http authentication local" in my config.

    Solution: I was missing "ip http authentication local" in my config.

  • Rule works in web interface but not in DIS

    I have a global rule that restricts metadata shown/updated for non-admin users which works very nicely
    (((dpEvent like "OnRequest" or dpEvent like "OnSubmit") and
    (dpAction like "CheckinSel" or dpAction like "CheckinNew" or dpAction like "Info" or dpAction like "Update")) and
    isFalse(userHasRole("admin")) and
    isFalse(userHasRole("WCCAdmins")))
    One of the fields in the rule has a derived value which sets its value to the folder in which the document is checked in
    <$dprDerivedValue=#local.fFolderName$>
    This all works great from the traditional web interface (not the ADF one ) but if a document is dropped into a folder in DIS or checked in from an office document, the rule is applied and the check in metadata is restricted as specified in the rule but the derived field is not populated

    Ah yes, I achieved the same thing by removing all the rules except the userHasRoles and of course it works for all events. Odd that the field hiding rules were still working when I chose the check-in form option from 'save as new' in an office document maybe because one of those events was firing when that choice is made , but I'd swear it didn't apply the derived field,anyway, I have it working now with less conditions and I learnt something new about DIS so thanks.
    Martin

  • Can't login to router web interface anymore (Authentication Required fails)

    After upgrading to Firefox 9.0.1 (or another recent version), I can't login to the web interface of my router anymore, even though I can login with other browsers.
    I've tried to login to 192.168.1.1 using Firefox 9.0.1 and my saved credentials (admin/********), but the authentication pop-up just showed up again. The same thing happened when I manually entered the same information. Using safe mode and/or private browsing didn't help either.
    To be sure that is was a problem with the Firefox browser, I wrote the address, login and password in a text file, then copied-&-pasted the information into both Firefox and Google Chrome. The result: after repeating this a couple of times, it always worked on Chrome and never on Firefox.
    The login process used to work flawlessly with previous versions of the browser, but I'm not sure if the problem appeared on 9.0.1 or the version before.

    Start Firefox in <u>[[Safe Mode]]</u> to check if one of the extensions or if hardware acceleration is causing the problem (switch to the DEFAULT theme: Firefox (Tools) > Add-ons > Appearance/Themes).
    *Don't make any changes on the Safe mode start window.
    *https://support.mozilla.org/kb/Safe+Mode
    *https://support.mozilla.org/kb/Troubleshooting+extensions+and+themes
    Create a new profile as a test to check if your current profile is causing the problems.
    See "Basic Troubleshooting: Make a new profile":
    *https://support.mozilla.org/kb/Basic+Troubleshooting#w_8-make-a-new-profile
    There may be extensions and plugins installed by default in a new profile, so check that in "Tools > Add-ons > Extensions & Plugins" in case there are still problems.
    If that new profile works then you can transfer some files from the old profile to that new profile, but be careful not to copy corrupted files.
    See:
    *http://kb.mozillazine.org/Transferring_data_to_a_new_profile_-_Firefox

  • Wireless lan Controller 4402 / ping dynamic interface failed

    hi,
    i've a problem with a Wireless Lan Controller 4402.
    When i configure the dynamic interface on the my network , with wired lan
    i don't reach (i use the ping command) the ip address of the WLC.
    In my case (wired):
    On my pc i've a ip 10.1.78.1 255.255.0.0 and dgw 10.1.1.1 (vlan721)
    The lan WLC have a ip of management 10.12.2.4 /24 (vlan799) [dgw 10.12.2.1]
    dynamic vlan 792 ip add 10.12.78.100 / 22 (vlan792) [dgw 10.12.68.1]
    i ping these interfaces (10.12.2.4 and 10.12.78.100) and the ping is ok.
    When i create a dynamic interface vlan 721 starting the problem:
    dynamic vlan 791 ip address 10.1.1.240 / 16 (vlan721)
    After this ......the ping on 10.12.2.4 and 10.12.78.100 don't respond very well
    and i lose the 80-90% of the ping packages.
    through the wi-fi instead I do not have problems.
    the problem exist only via wired (cable).
    Can you help me?
    Thanks
    FCostalunga

    Hello,
    Pinging the dynamic interface is officially not supported. The reason why is because the controller places a very low priority on ICMP traffic. Typically, you will not have an issue with doing so on your wireless network because this interface is basically a gateway for the client. However, from the wired network - the only interface designed to respond to pings 100% of the time is the management interface. Hope this helps!
    -Mark

  • Interfaces fails twice but executes correclty from next time

    Hi,
    I have interfaces which are coping data from MS Access tables to oracle tables.
    NOw here i am facing somewhat strange issue.
    I have 3 environments Dev,Test and PROD.
    Now when i am moving scenarios from TEST to PROD ,the interfaces fails for first 2 times giving following error
    ODI-1227: Task SrcSet0 (Loading) fails on the source MICROSOFT_ACCESS connection MTP_Products.
    Caused By: java.sql.SQLException: [Microsoft][ODBC Driver Manager] Invalid string or buffer length
         at sun.jdbc.odbc.JdbcOdbc.createSQLException(JdbcOdbc.java:6957)
         at sun.jdbc.odbc.JdbcOdbc.standardError(JdbcOdbc.java:7114)
         at sun.jdbc.odbc.JdbcOdbc.SQLGetDataString(JdbcOdbc.java:3907)
         at sun.jdbc.odbc.JdbcOdbcResultSet.getDataString(JdbcOdbcResultSet.java:5698)
         at sun.jdbc.odbc.JdbcOdbcResultSet.getString(JdbcOdbcResultSet.java:354)
    and executes correctly next time.
    Although i have specified fields data types and its legth more than required.
    Let me know if anyone has come across such issues or anyone has idea about something like it.
    Help appreciated.
    Thanks,
    Mahesh

    Download a new copy of the Firefox program: http://www.mozilla.com/firefox/all.html
    Trash the current Firefox application to do a clean reinstall.
    Install the new version that you have downloaded.
    Your profile data is stored elsewhere in the [http://kb.mozillazine.org/Profile_folder_-_Firefox Firefox Profile Folder], so you won't lose your bookmarks and other personal data.

  • Correct password doesn't work with Mail interface, but works with web interface.

    Mail claims "The POP server “mail.nykayak.com” rejected the password for user “valerie”, yet when I log in through the web interface the password works. All other accounts work. Has anyone experienced this and found a solution?

    Mackie, Welcome to the discussion area!
    On your iMac G3, go to the AirPort menu and select the network name. It will prompt you automatically for the correct type of wireless encryption password.
    I wouldn't trust selecting an option from Internet Connect.
    In AirPort Admin Utility, what type of wireless encryption have you enabled? If it is WPA2 the iMac G3 won't be able to connect.
    Also ensure that your AirPort Extreme base station (AEBS) is configured to work in an 802.11b compatible mode. The iMac G3 is only 802.11b.

  • Failover interface failed

    Hi,
       I have 2 ASA 5520 firewall configured with HA(Failover). but some time my primary firewall goes down standby firewall doesnt come active. i found below log from primary firewall..what is the reason & what is the mining of reason code of 4...
    Nov 30 2012 14:07:47: %ASA-1-105002: (ASA) Enabling failover.
    Nov 30 2012 14:08:43: %ASA-1-105043: (Primary) Failover interface failed
    Nov 30 2012 14:08:56: %ASA-1-103001: (Primary) No response from other firewall (reason code = 4).
    After i hard reboot my standby firewall below log had been generated..
    Nov 30 2012 15:51:57: %ASA-1-105042: (Primary) Failover interface OK
    Nov 30 2012 15:52:02: %ASA-1-709003: (Primary) Beginning configuration replication: Send to mate.
    Nov 30 2012 15:52:15: %ASA-1-709004: (Primary) End Configuration Replication (ACT)
    Please assist....
    Regards
    Suhas

    Hi,
    The explanation for that can be found in the ASAs syslog messages document.
    Here it is
    103001 Error Message    %ASA-1-103001: (Primary) No response from other firewall (reason
    code = code).
    Explanation    This is a failover message, which is displayed if the primary unit is unable to  communicate with the secondary unit over the failover cable. (Primary) can also be listed as  (Secondary). for the secondary unit. Table 1-2 lists the reason codes and the descriptions to  determine why the failover occurred.
    Table 1-2     Reason Codes
    Reason Code
    Description
    1
    The local unit is not receiving the hello packet on the failover LAN  interface when LAN failover occurs or on the serial failover cable when  serial failover occurs, and declares that the peer is down.
    2
    An interface did not pass one of the four failover tests, which are as  follows: 1) Link Up, 2) Monitor for Network Traffic, 3) ARP, and 4)  Broadcast Ping.
    3
    No proper ACK for 15+ seconds after a command was sent on the serial cable.
    4
    The local unit is not receiving the hello packet on the failover LAN and  other data interfaces and it is declaring that the peer is down.
    5
    The failover LAN interface is down, and other data interfaces are not  responding to additional interface testing. In addition, the local unit  is declaring that the peer is down.
    Recommended Action    Verify that the failover cable is connected correctly and both units have the  same hardware, software, and configuration. If the problem persists, contact the Cisco TAC.
    Are you saying that the Primary ASA loses all connectivity to the Secondary ASA (looking at the log messages). Judging by the above Cisco description it would mean the Primary ASA isnt getting Failover Hellos through any of the monitored interfaces which again would make it seem like the Secondary Firewall is expriencing some problems.
    - Jouni

  • Cisco AP 1131AG Web Interface Problem

    Hello,
    I purchased two Cisco access points (model AIR-AP1131AG-A-K9) from a seller on eBay. The Access Points power up fine and are able to get an IP address (I can see the AP's MAC address on my router), but it won't let me connect to the web interface to manage it. I have tried using different browsers, but they all say something along the lines of "The page could not be found" when I enter the IP address into my browser. No login screen, no nothing: just a time-out error.
    When the Access Points are powered on, the Ethernet and Radio lights start out green, but then the Ethernet light stays green and the radio light flashes amber and the two alternate being lit. The status light on the outside of the Access Point goes from green to orange to red and back again, looping infinitely.
    Any ideas what could be wrong? Thanks for any and all help in advance! (Please let me know if you need more information; I don't ahve the AP's with me, but I will be home in a few hours and can respond then.)

    do a show cdp neighbor detail on the port the AP is connected to.  Take a look at the software that is running, IOS will show k9w7, and lightweight will show k9w8.
    if it''s k9w8, you'll need to convert them back to IOS
    http://www.cisco.com/en/US/docs/wireless/access_point/conversion/lwapp/upgrade/guide/lwapnote.html#wp160918
    HTH,
    Steve
    Please remember to rate useful posts, and mark questions as answered

Maybe you are looking for