*** stuck_ (6038d27d@gateway/web/freenode/ip.96.56.210.125) has joined #wikid | 04:06 | |
stuck_ | hello everyone | 04:06 |
---|---|---|
stuck_ | I am trying to reset the web administrator password, can someone guide me plz/ | 04:06 |
*** stuck_ has quit (Quit: Page closed) | 05:55 | |
*** SEJeff_work has quit (*.net *.split) | 09:47 | |
*** SEJeff_work (~jeff__@209.160.81.1) has joined #wikid | 09:48 | |
*** nowen (~nowen@adsl-176-210-205.asm.bellsouth.net) has joined #wikid | 15:23 | |
*** proprietarysucks (~nathanr@static-96-247-50-178.lsanca.fios.verizon.net) has joined #wikid | 18:47 | |
proprietarysucks | anyone want to help me out with a few issues I have setting up google sso with wikid? | 18:47 |
nowen | sure | 18:48 |
nowen | I can try | 18:48 |
proprietarysucks | I've got it set up as best as I could understand, however a few things aren't happening as I expect | 18:48 |
nowen | ok | 18:49 |
proprietarysucks | I've got two IPs, one for internal, and one for the external serving | 18:50 |
proprietarysucks | sorry just logging in and stuff 1 sec | 18:50 |
proprietarysucks | ok so I have the 1 domain added, and then a network client for it | 18:51 |
nowen | ok | 18:51 |
proprietarysucks | I've enabled the google SSO module, and did the certificates | 18:51 |
proprietarysucks | including adding that cert to my google sso page on docs | 18:51 |
proprietarysucks | apps page rather | 18:52 |
proprietarysucks | so the first odd thing to me is that I can't figure out what urls to provide google to forward to | 18:52 |
proprietarysucks | it asks for login, logout and password change | 18:52 |
proprietarysucks | I read at some example somewhere for example https://your-wikid-external/login | 18:52 |
proprietarysucks | and same for /logout etc | 18:53 |
nowen | yeah | 18:53 |
proprietarysucks | however if I try to actually go to that address I don't get anything | 18:53 |
nowen | I think login is the only one that matters | 18:53 |
nowen | oh | 18:53 |
proprietarysucks | also, should the server code be the 0 padded of my external address or internal? | 18:53 |
proprietarysucks | and by that I mean the internal of the VIP to the external, or the external vipped address | 18:54 |
nowen | zero-padded external | 18:54 |
nowen | the google sso code is in /opt/WiKID/tomcat/webapps/wikid | 18:57 |
nowen | look for the login page there | 18:57 |
nowen | we may have moved it to make redirects easier | 18:57 |
proprietarysucks | ok. I'll change that and check it out.. gonna grab coffee.. thanks | 18:59 |
nowen | np | 19:00 |
proprietarysucks | hmmm just spins after trying to create the domain | 19:15 |
nowen | check the WiKIDAdmin logs for an error. top right corner | 19:16 |
proprietarysucks | hmm only "GET /openid/images/logo.gif HTTP/1.1" 404 344 | 19:16 |
proprietarysucks | now the domain is listed | 19:17 |
proprietarysucks | I guess it was created then | 19:17 |
nowen | there's a drop down for log level. you can drop it to debug and hit filter again. but if it were a problem, it would have shown up. | 19:18 |
proprietarysucks | attempting to get to the url from an external web proxy, I get couldnt connect | 19:19 |
proprietarysucks | oh it's pissed | 19:21 |
proprietarysucks | how can I delete this network client | 19:21 |
proprietarysucks | nvm | 19:22 |
proprietarysucks | should have delete in the same place that delete is for domains =] | 19:22 |
proprietarysucks | ok I'm starting over here | 19:23 |
nowen | are you using the openjdk or sun jdk? | 19:23 |
proprietarysucks | open | 19:24 |
nowen | which docs are you using? | 19:24 |
proprietarysucks | the videos | 19:24 |
proprietarysucks | ok I've created the domain, the network client. | 19:25 |
proprietarysucks | the IP address in the network client is set to localhost, do I need that to be the external ip? | 19:25 |
nowen | you're using googlesso? | 19:26 |
proprietarysucks | yeah | 19:27 |
nowen | iirc the ip is empty | 19:27 |
proprietarysucks | it's 127.0.0.1 by default | 19:27 |
proprietarysucks | kill it? | 19:27 |
nowen | hold on | 19:27 |
proprietarysucks | the other fun thing is that I'm having issues contacting our machines by their external ip from inside | 19:31 |
nowen | no ip needed for google sso | 19:34 |
nowen | http://www.wikidsystems.com/support/wikid-support-center/how-to/how-to-wikid-strong-authentication-to-google-apps-for-your-domain could help | 19:37 |
nowen | did you get certs from us? | 19:38 |
*** finalbeta_ has quit (Ping timeout: 252 seconds) | 19:56 | |
*** proprietarysucks has quit (Quit: Lost terminal) | 20:02 | |
*** proprietarysucks (~nathanr@static-96-247-50-178.lsanca.fios.verizon.net) has joined #wikid | 20:04 | |
proprietarysucks | stupid screen locked up. did anyone say anything to me | 20:04 |
nowen | proprietarysucks: | 20:05 |
nowen | (02:36:17 PM) nowen: no ip needed for google sso | 20:05 |
nowen | (02:39:39 PM) nowen: http://www.wikidsystems.com/support/wikid-support-center/how-to/how-to-wikid-strong-authentication-to-google-apps-for-your-domain could help | 20:05 |
nowen | (02:40:11 PM) nowen: did you get certs from us? | 20:05 |
proprietarysucks | right now I'm not able to use token client because of networking issue | 20:07 |
proprietarysucks | asking about it in #networking but probably not going to get much help | 20:08 |
proprietarysucks | you know about networking? | 20:08 |
nowen | a bit | 20:10 |
proprietarysucks | I have a fortigate firewall and a vip for this auth server | 20:10 |
nowen | what's a vip? | 20:11 |
proprietarysucks | virtual ip mapping | 20:11 |
proprietarysucks | external - | 20:11 |
nowen | ok | 20:11 |
proprietarysucks | whoops | 20:11 |
nowen | so, nat? | 20:11 |
proprietarysucks | external ip -> internal ip | 20:11 |
proprietarysucks | hmm | 20:11 |
nowen | proprietarysucks: that's fine. zero pad the external ip for the domain id. | 20:38 |
*** proprietarysucks has quit (Quit: Lost terminal) | 21:28 | |
*** nowen has parted #wikid (None) | 23:37 |
Generated by irclog2html.py 2.11.0 by Marius Gedminas - find it at mg.pov.lt!