Cisco :: LMS 4.1 User Defined Groups Empty?

Jan 23, 2012

I have seen some discussion in the forums regarding user defined groups being empty in LMS 4.0 but not 4.1.  I am having this issue in 4.1. Under User Defined groups, I have created 2 logical groups named "Physical Location" and "Switches".  These do not contain any actual devices, they are just containers for other groups.  Under the Physical Location logical group I have created 2 other groups, Acuna and Hampton.  Under the Switches group I have also created 2 groups, HDM and HHC.  The criterion for the Physical Location group is based on the first 3 characters of the hostname:
 
Device.System.Name startswith "hdm"
 
The criterion for the Switches group is based on the value of a user defined field, Admin_responsibility:
 
Device.Admin_responsibility equals "HDM"
 
The Physical Location groups work - the Switches group does not.  Both the HDM and the HHC group should contain several devices.  The HDM group contains 2, the HHC contains none.  If I edit the groups and click "next" until I get to step 3, Membership: Edit, the "objects matching criteria" list is fully populated - it contains the devices that it should contain.  However, after I click "Finish" and go to Inventory => Add / Import / Manage Devices there is no change in group membership - the HDM group contains 2 devices and the HHC group contains none.

View 4 Replies


ADVERTISEMENT

Cisco :: LMS 4.1 No User Defined Groups Shown In Fault Notification Groups?

Dec 12, 2011

I created some User Defined Groups in LMS 4.1, now I want to apply certain fault notification groups to Event Sets.
   
Unfortunately the Groups I configured are not in the Group Selector of the Fault Notification Group: Admin > Network > Notification and Action Settings > Fault Notification Group

View 3 Replies View Related

Cisco :: LMS 4.0 User Defined Group

Aug 3, 2011

I'am a novice with LMS 4.0.I create 4 device group in Group Management, I restarted my server and since this reboot, I haven't any device in my groups. I would like to use the archive synchronization but I can't see my device in my groups.

View 6 Replies View Related

Cisco LAN :: 3750 Configure Read Access Via User-defined Privilege Level

Mar 11, 2013

I´m looking for the best configuration to restrict a user to read-only. The restriction should be configured via CLI not TACACS+.

-Hardware: 3750 (probably not interesting for this question)
-Oldest IOS: 12.2(53)SE1
 
The user should be allowed to: see the running-configurationtrigger all kinds of show-commandsping and traceroute from the device.The user should not be allowed to: upload/delete/rename files on the flash-memoryget into level 15 (not sure if I can avoid this)all other commands despite those from level 1 and those specified above.

View 2 Replies View Related

Cisco WAN :: 1921 Traffic Shaping Feature Is Not Supported In User Defined Class

Oct 29, 2011

I make qos on VPN Tunnel, but i make command service-policy output name, it show the error below Traffic Shaping feature is not supported in user defined class of parent level policy.My cisco router 1921, IOS : c1900-universalk9-mz.SPA.150-1.M5.bin

View 1 Replies View Related

Cisco :: LMS 4.0.1 User Tracking DB Empty After Restart Daemon Manager

Mar 28, 2012

I have a problem with User tracking. After a restart of the daemon manager or a reboot of the server the end host table is empty. All end hosts then have to be discovered again. is there any possibility to backup and restore the UT-Database?

View 1 Replies View Related

Cisco Routers :: RV220W - VPN User Connection Status Table Empty?

Feb 15, 2012

I was wondering if anyone has seen their VPN User Connection Status Table empty even though you know for sure clients are connected?  I connect with my iPhone to the PPTP VPN successfully and it works fine but there's no entry for the connection on the VPN User Connection Status Table.  Is that normal?  Does the router only collect data about Windows clients?

View 3 Replies View Related

Cisco AAA/Identity/Nac :: ACS5.1 - Unable To Authenticate AD User With Empty Password

May 30, 2011

Our customer has the business needs to authenticate remote users against AD with empty password. I've seen ACS5.1 release note where mentioned about resolved issue: #CSCte72751 #ACS 5.1 drops authentication with empty password.

I tried to authenticate dial-in users through Tacacs and Radius against AD with empty password but without success. ACS points to wrong AD password. Is it possible to authneticate remote users with empty password?

View 3 Replies View Related

Cisco AAA/Identity/Nac :: ACS 5.2 Add A User Into Several Groups?

Apr 5, 2011

We are running two ACS appliances but we cannot figure out how we can add a user into 2 differents groups.Here's the context :We have a company A which is having devices, this company uses Group A.then we have a company B which is having devices, this company uses Group B.But the admin has to manage the devices for both companies A & B.We don't want to mix devices from company A with company B.Is there a way to add the user into both groups A & B.

View 5 Replies View Related

Cisco AAA/Identity/Nac :: New Version Of ACS 5.2 Allow User To Belong To Several Groups Of AD?

Jul 7, 2011

We have ACS Engine 4.1 and want to upgrade it to 5.x.
 
Is the new version of ACS 5.2 allows a user to belong to several groups of AD ?

View 2 Replies View Related

Cisco Switches :: SF-300-08 SNMP Setup Doesn't Show Any Groups In Add User Pulldown

Jun 1, 2012

I'm setting up a new SF-300-08 with SNMP.I have defined Groups OK.But, when I go to Add User, the Group pulldown is grayed out and I can't add a user.                 

View 1 Replies View Related

Cisco Wireless :: 5508 Assign Single Ssid To Multiple Interface Groups By Assigning Ssid To Multiple AP Groups

Aug 26, 2012

Is it possible to assign a single ssid to multiple interface groups by assigning the ssid to multiple AP groups? 
 
I have buildings geographically dispersed that are configured with multiple vlans in interface groups so that I can maintain an addressing scheme of dhcp assigned addresses per building.  Each building is also further grouped as AP groups.  I'd like to know if by assigning the same wlan ssid to each of the AP groups, will I maintain addressing integrity for each building?  I'm thinking it will work.
 
Do the buildings have to be outside AP range of each other to avoid problems?

5508 controller
7.2.110.0  code
6 buildings
6 interface groups
1 ssid

View 4 Replies View Related

Cisco AAA/Identity/Nac :: Invoke IP POOL Defined On VPN 3000 To ACS5.3?

Aug 27, 2012

I configured an ip pool on VPN 3000 concetnrator. i wanted to an attribute to use on the nework access profile on the acs 5.3. i was advised to use pool name. However, we don't have pool name attribute on VPN concentrator. only, IP range and subnet mask. how do i refer an IP pool on VPN concentrator in ACS5.3? is there another attribute I can use on ACS5.3 to invoke a pool on CVPN3000, like ip range...?

View 2 Replies View Related

Cisco :: LMS Version 4.1 - Configuring Dashboards Based On Defined Roles?

May 14, 2012

I am trying to configure the dashboards for the pre-defined roles ie) Network Operator, Network Administrator, Helpdesk, etc but I cannot find the document to do this. I am running LMS version 4.1.

The goal is to create users and put them in one of these roles and then they would inherit these dashboards when they log on. Can this be done on LMS ? The doco that I am reading says that each user needs to configure their own dashboard or they can use the public dashboard as a starting point.

View 1 Replies View Related

Cisco Switching/Routing :: ISR 3845 - No More Than 1023 Classmaps Can Be Defined

Apr 17, 2012

I realize what the error message says but I was not aware that there is a class-map limit?  This is on a ISR 3845 router.Is there a limit on the amount of class maps that can be configured on the router?
 
Is it the amount of times class maps are used (as I do not think my client has 1023 class maps but they are used several times each)?

View 3 Replies View Related

Windows 7 - Accessing A Records Defined On A Server On VPN Connection?

Jun 19, 2011

I have a VPN connection to my office network. The VPN connection appears to work fine as it connects and logs me in successfully. In the connection box I have to provide a domain and my username to log in. Once the VPN is connected I am then able to ping my office computer as if I was on the same network. That is great. The problem is that there is a server on that network that defines a bunch of A records for web applications we are working on and I can't seem to hit any of those from my home computer, even though I can at work. If I remote into the office PC and navigate to these addresses they work fine. I also know that my co-worker can hit these a records from home so it has to be something I'm doing wrong.

[Code]....

View 2 Replies View Related

Cisco VPN :: ASA5510 - Unable To Access Servers Remotely Defined On SSL VPN Route

May 12, 2011

i have configured SSL VPN on Cisco ASA5510 which is working fine .My Users connected the VPN and access the servers remotely. But now i face one challange  my users use PPTP VPN of the customer now a days configured at the Customer Network. When they Connect the PPTP VPN unable to Access the servers remotely defined on the SSL VPN Route.

View 1 Replies View Related

Cisco Wireless :: 5508 - Broadcast SSID Only On Defined Access Points?

Jun 13, 2012

I'm using a Cisco Wireless LAN Controller 5508, 14x Access Points 1041 and 6x Access Points 1031 in combination with a NCS 1.0.
 
Is it possible to broadcast SSID'S only on defined Access Points, e.g. AP 1-3,7-10,18? If yes, what have I to do?

View 8 Replies View Related

Cisco :: All Devices Isn't Empty In LMS 4.2

Jun 3, 2012

after upgrading from Prime LMS 4.1 to 4.2 (Windows version) the "All Devices" group and all the other system defined groups are empty.
 
The "Inventory dashboard" shows 397 reachable devices which is correct. I can access the devices when I type the name into the search field in the upper right corner of the LMS page.
 
When I open a device selector (e.g. from the "Device Management" tab) all system defined groups are empty.
 
When I make a new user defined group with the definition "IP address contains '1'" I get a group with all devices.

View 8 Replies View Related

Cisco :: LMS 4.0 - Empty Device Selector?

Oct 9, 2011

Allthough we see all our devices in Inventory Portlets, we cant access devices via device selector neither in CM, RME, DFM ...OGSserver is running?

View 2 Replies View Related

Cisco :: LMS 4.2.1 Net-config Job CLI Output Empty

Jul 18, 2012

I have run a netconfig jobs in LMS 4.2.1 with these settings: [code] After running the job the "Device Details" of the jobs say "Successful Devices" for all three switches:"Deploy successful (Primary Login Succeeded   / Primary Enable Succeeded  )" For the devices switch-1 and switch-2 I get the desired output: [code]. Why there is no output although the job is successful?

View 3 Replies View Related

Cisco :: Resetting LMS 3.2 Data To Empty

Jan 29, 2013

I would like to empty my LMS 3.2 DB and re-discover all of my devices again.  What is the best way to do this besides wiping the software and reinstalling?           

View 1 Replies View Related

Cisco AAA/Identity/Nac :: ACS 5.2 - Command Set Is Empty

Jan 15, 2012

I have a problem with the ACS 5.2 configuration: I am trying to use the AAA authorization to centralize privileges and commands but only the privilege level is sent to router, the command set aren't sent.
 
The test cenary is this:
 
ACS 5.2Router 2900 family IOS 15.0 
The ACS is configured with:
 
Shell Profiles (to match with a privilege level), Command Sets (with the command list), Service Selection Rules (to set to one service) and Authorization (to assign one shell profile and one command set).
 
The router is configured with the follows commands:
 
[code]....

View 4 Replies View Related

Default Gateway Came Up Empty

Feb 8, 2013

I am having issues playing certain games on my ps3. So I've been searching for solutions and I came across a video that wanted me to go to run/cmd/ipconfig. I have little knowledge of computers but I'm not sure that what my ipconfig is showing is supposed to be there. At first I googled and learned about ipv6 addresses because i found that weird but i think that checks out fine. I then googled about the weird numbers and letters in my default gateway and came up empty. Is there a reason thats there?

View 3 Replies View Related

Cisco :: LMS 4.2.1 - Legacy Menu Is Completely Empty

Jun 13, 2012

After an upgrade from LMS 4.2 to 4.2.1 Legacy menu is completely empty. Is it a bug? If it's empty, how to get to some of DFM options (like rediscovery, discovery status etc.) They seem not present in "Site map".

View 4 Replies View Related

Cisco :: Show IP SLA History Empty - ASR1006

Aug 29, 2012

I want to do something with IP SLA and started by estabilishing a baseline.
 
I'm trying to check history on an ASR. I tested same config on a 3845 and was forgetting the "history filter all". After this I could see history table on 3845 but still history is empty on the ASR1006. The operation started because I can see information with "show ip sla statistics".
 
know if i missed something or maybe this is not supported in ASR1006?
 
re-ld-tcc-02_ASR1006#show vers
Cisco IOS Software, IOS-XE Software (X86_64_LINUX_IOSD-ADVIPSERVICESK9-M), Version 15.2(1)S2, RELEASE SOFTWARE (fc1)

[Code]......

View 5 Replies View Related

Network Places On Windows XP Is Empty

May 26, 2011

my network places on winXP is empty when i 'm in lan with 14other pc using a switch.

View 1 Replies View Related

Cisco WAN :: 877 / Setup A PPP Dialer To Present Empty Credentials?

Sep 7, 2011

I am trying to copy a setup from a Nortel IAX100 where the carrier provides two ATM PVC's over ADSL - one for voice (VoIP) and one for data (IP). Relevant lines from the backup of the IAX's configuration include the following for the PPP authentication over the voice circuit:
 
<wan_8_32>
<entry1 vccId="1" conId="1" name="Voice" protocol="PPPOE" encap="LLC" firewall="enable" nat="enable" igmp="disable" vlanId="-1" service="enable" instanceId="1509949441"/>
</wan_8_32>
<pppsrv_8_32>
<ppp_conId1 userName="" password="" serviceName="" idleTimeout="0" ipExt="disable" auth="auto" useStaticIpAddr="0" localIpAddr="255.255.255.255" />
</pppsrv_8_32>
 
The null username and password for the PPP connection have me a bit stumped.  Does the PPP connection not use any authenetication at all?  (Is that possible/likely? How could I deubg it?)  Or does does the IAX100 supply a chap/pap response with null credentails?  (If so, how would I duplicate that using an instruction to a dialer interface?I am configuring an 877 with 12.4T and advanced IP services.

View 11 Replies View Related

Cisco VPN :: 2811 Showing Crypto Map As Empty And No SA Shown

Nov 16, 2011

I replaced old cisco router 2811 with new one 2921 , all works except crypto map VPNs routers can ping each other , ACLs are not applied to outbound interfaces show crypto isakmp sa is empty after i make same configuration on a new router 2921 config.

View 1 Replies View Related

Cisco AAA/Identity/Nac :: ACS 5.2 Command Set - How To Authorize Empty Arguments

May 19, 2011

after switching from a very old ACS 3.2 to ACS 5.2 I'm wondering on how to specify an empty argument in a command set.
 
Example:
 
I want to permit:
write 
but I don't want to permit:
write terminal
write erase
write network
write core
and so on.
 
If I specify command="write" and leave the argument field empty, every argument is allowed. This would also permit "write erase" what I don't want.
 
In ACS 3.2 I could specify command="write" and argument="^<cr>$". This does exacly what I want. The command write with an empty argument is allowed. If there is any argument, the command is denied.
 
In ACS 5.2 if I enter the same string in the argument field, the "<cr>" is filtered out and in the config is now only the string "^$" which is not working.
 
how to specify an empty argument?
 
BTW: ACS View shows only [ CmdAV=write  ] in the logs...

View 3 Replies View Related

Cisco AAA/Identity/Nac :: 2960 / CNA / Sending Empty Commands?

Dec 30, 2011

while working with Cisco's CNA (Cisco Network Assistant) on a 2960 switch, any change done by this tool is sent out as an empty set of commands, to a TACACS server to approve.
 
I have 2960 switch, a PC with CNA on it and brand new ACS 5.2. This switch is set up for TACACS+ authorization. While working with TELNET/SSH, all commands are authorized properly. When doing "debug aaa authorization", you can see the commands are being sent to a TACACS server (as expected) for approval. And what is more important – within the debug output every command appears at "AV CMD= …" and "Arguments = …" Those commands seen by the ACS and approved correctly.But, when working with CNA, those fields (i.e. av cmd and arguments) are empty in the first place. Hence all what ACS does see are "empty commands" and no clue for the correct ones (say, changing interface's description). The HTTP server has it set of authorization commands.

View 6 Replies View Related

Cisco :: LMS 4.0 Device Credential And Repository Showing As Empty?

Jan 16, 2012

I have a case for an LMS 4.0 running in a Live environement (With devices already discovered and organized into seperate groups), where the Device Credential and repository DCR is showing suddenly as empty and only i can see the groups listed, but without any devices in them (Through Inventory > Device Administration > Add/Import/Manage Devices).After a restart of the whole LMS server a few weeks ago, the problem was fixed and the devices appeared again, but now the same issue re-appeared.

View 5 Replies View Related

D-Link DIR-655 :: Access Control Name Cannot Be Empty String

Feb 26, 2008

When attempting to configure access controls from the advanced menu I enable the access control checkbox. I then follow the configuration wizard completing each step as directed by the wizard. When I complete the wizard and try to save the rule I get the following error message regardless of how I complete the wizard. "Name can not be empty string". Yes, cannot is misspelled in the message. I have tried every combination of choices in the wizard and many combinations of naming the rule to no avail.

This did work properly on a previous firmware version, probably 1.04 or 1.05. I have not tried back loading to the previous versions to see where it did or did not work. I don't know how well the router goes back and don't really care to reload all the settings again by hand if the automatic recovery doesn't work.I want to use this feature to control what hours certain machines on the network have access to the internet.

View 15 Replies View Related







Copyrights 2005-15 www.BigResource.com, All rights reserved