Monday, 2012-02-13

*** crafty_ (4c4d9e85@gateway/web/freenode/ip.76.77.158.133) has joined #wikid00:18
crafty_i just downloaded wikid 3.0.9 on my blackberry.  when i try to run it i get an error message that says "Uncaught exception:  java.lang.error00:20
crafty_Any suggestions?00:20
*** crafty_ has quit (Ping timeout: 245 seconds)00:29
*** coolacid has quit (Quit: Leaving)02:58
nowenmorhing13:36
nowenor morning, maybe13:36
nowenionepoch: why do you want to disable the redirect?13:37
*** mlavengood (3faa0bfa@gateway/web/freenode/ip.63.170.11.250) has joined #wikid14:29
mlavengoodgood morning14:29
nowenmorning14:29
mlavengoodquick question.  I am getting ready to start testing and wondered if I can only use one NIC14:30
mlavengoodThe testing will all be internal to my network14:30
nowenyeah, that's no problem14:30
nowenjust know that only tokens on your internal network will be able to talk to the server14:31
mlavengoodgreat.  Thank you for your help14:31
nowenyou can also NAT the WiKID server to an external ip14:31
nowenbut use the external IP as the domain identifier/12 digit code14:31
mlavengoodok.  If I don't NAT at this time (change control/dmz)  do I use the internal ip as the domain identifier?14:32
nowenyes14:32
nowenbut you can't 'move' those users to a new external domain.14:33
mlavengoodok makes sense14:34
mlavengoodsince this will be test it should not be a problem14:34
nowencool14:34
mlavengoodthe domain identifier is for the authentication source?14:34
nowenit is how the tokens find the WiKID server14:35
mlavengoodso multiple client systems can use the same domain identifier?14:35
nowenyes, multiple tokens can be on the same domain.  But, to be clear, the services you're protecting, vpn, etc, are Network clients.14:36
mlavengoodgot it14:36
mlavengoodstill working my way through the documentation.  Thanks again14:36
nowennp14:36
*** JC___ (408b4af1@gateway/web/freenode/ip.64.139.74.241) has joined #wikid15:43
nowenwelcome JC___15:44
JC___Hi!  We are currently looking at upgrading our 2 Factor authentication system but we already have a bunch of c200 OTP OATH hardware tokens...if we go with Wikid, can we configure the service to use these tokens for authetication?15:44
JC___We are already using these in other systems we authenticate with which won't be going away and we don't want to give our users a second method to remember to use as well15:45
nowenJC___: sorry, we don't support OATH.  However, those tokens are a sunk cost.  I'd be curious as to whether WiKID is cost-effective against an OATH server without tokens15:46
*** JC___ has quit (Ping timeout: 245 seconds)15:50
*** mlavengood has quit (Ping timeout: 245 seconds)16:02
*** FlexyZ (5551950e@gateway/web/freenode/ip.85.81.149.14) has joined #wikid19:57
FlexyZhi20:07
jYhi20:08
FlexyZI have some problems getting the community version running on ubuntu 11.10 - any one tried that or20:11
nowenwhat issues?20:12
FlexyZI cant install the -- Install the Intermediate CA --20:12
FlexyZI verified the bounty stuff and looks good (I think)20:13
nowenahh20:13
FlexyZjava.security.cert.CertificateException: java.lang.IllegalArgumentException: Bad sequence size: 7 at org.bouncycastle.jce.provider.JDKX509CertificateFactory.engineGenerateCertificate(Unknown Source) java.security.cert.CertificateException: java.lang.IllegalArgumentException: Bad sequence size: 7 at org.bouncycastle.jce.provider.JDKX509CertificateFactory.engineGenerateCertificate(Unknown Source)20:13
nowenwhen does this occur? you have the server back from us?20:14
FlexyZnot sure what u mean20:14
nowenwhen you first enter in the fqdn etc, you are creating a signing request.  you enter that into the pop and you get a cert back from us20:15
FlexyZyes that works20:16
nowenand then you install the cert20:16
FlexyZyes then it fails - just a blank screen and the exception20:16
nowenwhat fqdn did you use?20:19
FlexyZjust the machine name hapcorewikid20:20
nowenI don't see a cert for that name20:20
FlexyZthis is when I create the CA right?20:21
nowenyeah, is that the host name of the server?20:22
FlexyZyes should be20:23
FlexyZlet me try agani20:23
nowenyeah, try again20:23
FlexyZdone20:25
nowenok, so, did you get the pop-up window?20:25
FlexyZ Keys and CSR successfully generated!20:26
FlexyZand the begin certificate signing request20:26
nowentake the cert signing request and enter it into https://www.wikidsystems.com/wikid/newcertreq.jsp20:27
nowenwhat you have generated is the CSR, not the cert20:28
FlexyZthx - what went wrong? - no popup or20:28
nowendo you see the link to that site above the CSR box?20:29
nowenahh - there it is20:29
nowendid you get the cert back in the same window?20:29
FlexyZyes20:30
nowencool20:30
FlexyZcan I use the iphone token on the community edition or is that only for Ent20:46
nowensmart phone tokens and radius are only Enterprise.20:46
FlexyZalright20:47
*** FlexyZ has quit (Ping timeout: 245 seconds)21:02
*** nowen has parted #wikid (None)21:32
*** nowen (~nowen@adsl-74-176-212-133.asm.bellsouth.net) has joined #wikid22:21
*** nick_atx (~npapoyan@69.56.37.254) has joined #wikid22:42
*** nick_atx has parted #wikid (None)22:43
*** nowen has quit (Quit: Leaving.)23:46

Generated by irclog2html.py 2.11.0 by Marius Gedminas - find it at mg.pov.lt!