My Writings. My Thoughts.
NetTracker管理员密码丢失的解决办法
// 五月 2nd, 2007 // No Comments » // 技术
NetTracker是一款比较完善日志分析软件,其报表功能也很强大,我经常用其分析一些web、proxy日志,前些天不幸将其管理员口令忘了,遂研究了一下解决方法,如下,非常简单!
进入NetTracker安装目录,找到NetTracker.cfg文件,将其中的
<authentication>
<loginexpiration>session</loginexpiration>
<method>internal</method>
<restrictprofilemanager/>
</authentication>
改为
<authentication>
<loginexpiration>session</loginexpiration>
<method>internal</method>
</authentication>
即可。
JES Directory Server 的备份恢复
// 五月 2nd, 2007 // No Comments » // 技术
Unix下备份的一个好处就是多数情况下可以将应用直接打包,tar好之后放到备份介质上,恢复的时候直接解压就行,无比方便,当然通常要排除日志目录或将日志统一存放到数据库或日志服务器中。其实这样不但利于故障恢复,也很容易创造一个与生产环境高度相似的测试环境,只不过有些应用可能需要做些许改动,就像如下。
将Sun JES Directory Server 备份文件恢复到不同IP的机器后,需要修改该机器的主机名、FQDN,并将欲访问管理服务器的客户机地址添加到/etc/hosts当中的domain.com域。
另外,取消引荐与复制。
如果不修改主机名,启动时输出如下:
-bash-3.1# ./start-admin
iPlanet-WebServer-Enterprise/6.0SP2 B01/06/2003 22:24
并且同时启动日志会报错。
[03/Aug/2006:14:12:14] failure ( 3035): Error receiving response from watchdog
[03/Aug/2006:14:12:14] failure ( 3035): Could not set PID path /ldap/ids51sp4/admin-serv/logs/pid
修改主机名后,启动输出如下:
-bash-3.1# ./start-admin
iPlanet-WebServer-Enterprise/6.0SP2 B01/06/2003 22:24
Info: Cache expiration set to 600 seconds
warning: daemon is running as super-user
[LS ls1] http://ldap.domain.com, port 390 ready to accept requests
startup: server started successfully
只会影响管理服务器,应用实例可以正常启动并查询。
如何修改Java Enterprise System Directory Server监听端口?
// 五月 2nd, 2007 // No Comments » // 技术
1.在 serverRoot/%instance%/config/dse.ldif 中查找 listenhost,将其修改为本机FQDN,或将本机 /etc/hosts 文件中添加该FQDN也行。
2.然后再在ServerRoot/admin-serv/config/中的*.conf中查找1中找到的FQDN,确定后修改该*.conf或本机host文件。(应当在adm.conf中的ldapHost: mail.domain.com项中)
启动,ok。
Sun JES Web Proxy Server错误:FATAL: Error : 2
// 二月 3rd, 2007 // No Comments » // 技术
环境:
HP DL360 G5
RHEL3.4.5-2
Sun JES Proxy Server Version: 4.0.3 B05/21/2006 22:49
故障现象:
bjproxy所有用户无法使用socks代理,均提示:
[03/Feb/2007:13:55:41] 000 debug: new socket accepted[1]
[03/Feb/2007:13:55:41] 002 debug: request from 192.168.221.117:4885
[03/Feb/2007:13:55:41] 002 warning: socks4 request from 192.168.221.117:4885 can’t authenticate
[03/Feb/2007:13:55:41] 000 debug: new socket accepted[1]
[03/Feb/2007:13:55:41] 003 debug: request from 192.168.221.117:4886
[03/Feb/2007:13:55:41] 003 debug: auth: userpass
[03/Feb/2007:13:55:41] 003 debug: authentication type 2 successful for testmail
[03/Feb/2007:13:55:41] 003 debug: request 1 to 65.54.239.140:1863
[03/Feb/2007:13:55:41] 003 request: testmail 5 connect: denied 192.168.221.117:4886 -> 65.54.239.140:1863
[03/Feb/2007:13:55:41] 003 FATAL: Error : 2 [2364487233:1863]
[03/Feb/2007:13:55:41] 002 debug: request from 192.168.221.117:4885
[03/Feb/2007:13:55:41] 002 warning: socks4 request from 192.168.221.117:4885 can’t authenticate
[03/Feb/2007:13:55:41] 000 debug: new socket accepted[1]
[03/Feb/2007:13:55:41] 003 debug: request from 192.168.221.117:4886
[03/Feb/2007:13:55:41] 003 debug: auth: userpass
[03/Feb/2007:13:55:41] 003 debug: authentication type 2 successful for testmail
[03/Feb/2007:13:55:41] 003 debug: request 1 to 65.54.239.140:1863
[03/Feb/2007:13:55:41] 003 request: testmail 5 connect: denied 192.168.221.117:4886 -> 65.54.239.140:1863
[03/Feb/2007:13:55:41] 003 FATAL: Error : 2 [2364487233:1863]
分析:
手册和帮助文件写的很不好,基本上没有有用的信息。分析以往日志发现:错误代码与用户不在允许的地址范围内时出现的错误代码相同。




撰写文章