*** Dacosta (750352da@gateway/web/freenode/ip.117.3.82.218) has joined #wikid | 00:09 | |
Dacosta | hi joe | 00:10 |
---|---|---|
Dacosta | you awake all day? | 00:10 |
Dacosta | :) | 00:10 |
joevano | Dacosta: almost.. sllep from about 10 PM EDT US to 3 AM | 00:34 |
joevano | sleep* | 00:34 |
joevano | and I run my irc client 24 hours a day on my server so I don't miss anything | 00:35 |
joevano | I am a part of an open-source gaming project and we use IRC as our main communication tool | 00:36 |
joevano | since many of us do not live in compatible time zones | 00:37 |
joevano | conversations can take a very long time... but at least we can have them | 00:37 |
joevano | and I like helping out here when I can... mostly just telling people to wait for nick and pointing out the online documentation | 00:38 |
joevano | though I am getting a little better at being helpful here | 00:39 |
joevano | nick does something similar... but it is his bot WiKIDLogBot that stays in channel and logs everything so he can read it when he comes back | 00:48 |
Dacosta | i understand | 00:49 |
Dacosta | do you know C#? | 00:49 |
Dacosta | I try but still unluck in authantication WiKID with C# web-based application | 00:50 |
joevano | sorry, i do not... Visual Basic 15 years ago, but now I usually just do ruby and rails | 00:52 |
Dacosta | do you know one of person who contributes the demo of C# authantication at http://www.wikidsystems.com/webdemo/wClient_windows.3.1.0.zip | 00:52 |
joevano | your errors do seem to point to a permissions issue somewhere though | 00:52 |
joevano | i don't,but let me see if I can find any info | 00:53 |
Dacosta | I run as an administrator account and I have checked permission | 00:54 |
Dacosta | Where are you living, Joe? | 00:54 |
Dacosta | I'm from Vietnam | 00:55 |
joevano | I live in South Bend, Indiana, US | 01:01 |
Dacosta | Have you ever heard about Vietnam? | 01:48 |
Dacosta | Hi Joe | 02:02 |
Dacosta | have you find any person in WiKID authenticate with C#? | 02:02 |
*** Dacosta has quit (Quit: Page closed) | 02:34 | |
*** Dacosta (750352da@gateway/web/freenode/ip.117.3.82.218) has joined #wikid | 03:10 | |
Dacosta | Hi Joe | 03:34 |
Dacosta | when I register a user | 03:34 |
Dacosta | what is the UserID | 03:34 |
*** Dacosta has quit (Quit: Page closed) | 03:59 | |
*** Dacosta (750352da@gateway/web/freenode/ip.117.3.82.218) has joined #wikid | 07:33 | |
Dacosta | Hi Joe | 07:34 |
Dacosta | I have run http://localhost:1243/WebService1.asmx | 07:38 |
Dacosta | ok now | 07:38 |
Dacosta | However, when i click one of links CheckCredentials DeleteUser FindUserByName HelloWorld RegisterUsername UnlockUser | 07:38 |
Dacosta | For example, i click UnlockUser, enter the user that I want to unlock | 07:39 |
Dacosta | then click invoke | 07:39 |
Dacosta | I get the error: This XML file does not appear to have any style information associated with it. The document tree is shown below. <string><transaction><type>5</type><data><domaincode>216134202009</domaincode><user-id>test1</user-id><result>FAILED</result><return-code>-2147483648</return-code></data></transaction> </string> | 07:40 |
*** Dacosta has quit (Quit: Page closed) | 08:35 | |
*** Dacosta (750352da@gateway/web/freenode/ip.117.3.82.218) has joined #wikid | 09:06 | |
Dacosta | hi all | 09:06 |
*** nowen (~nowen@67.211.17.2) has joined #wikid | 12:16 | |
*** nowen has quit (Read error: Connection reset by peer) | 12:19 | |
*** nowen (~nowen@67.211.17.2) has joined #wikid | 12:31 | |
*** Dacosta_ (71a56292@gateway/web/freenode/ip.113.165.98.146) has joined #wikid | 13:10 | |
*** Dacosta_ has quit (Client Quit) | 13:10 | |
*** Dacosta has quit (Quit: Page closed) | 13:12 | |
*** Dacosta (71a56292@gateway/web/freenode/ip.113.165.98.146) has joined #wikid | 13:12 | |
Dacosta | Dear Mr. Nick | 13:13 |
nowen | hi Dacosta | 13:13 |
Dacosta | I test this page /WiKIDAdmin/example.jsp | 13:13 |
Dacosta | it's working | 13:13 |
nowen | good | 13:14 |
Dacosta | I test on C#, the demo package | 13:15 |
Dacosta | http://localhost:1243/WebService1.asmx/DeleteUser | 13:15 |
Dacosta | I got this: | 13:15 |
Dacosta | This XML file does not appear to have any style information associated with it. The document tree is shown below. | 13:15 |
Dacosta | <string><transaction><type>5</type><data><domaincode>216134202009</domaincode><user-id>test1</user-id><result>FAILED</result><return-code>-2147483648</return-code></data></transaction> </string> | 13:15 |
Dacosta | it can communicate with WiKID server but cannot edit user | 13:16 |
nowen | hmm | 13:16 |
Dacosta | return failed | 13:16 |
Dacosta | it works so cool on the /WiKIDAdmin/example.jsp | 13:17 |
nowen | the java client used by example.jsp is the latest. it could be that the c# code needs to be updated to the latest api | 13:18 |
Dacosta | I cannot find a demo page likes /WiKIDAdmin/example.jsp | 13:18 |
Dacosta | yes, the C# is not working | 13:19 |
Dacosta | :(( | 13:19 |
Dacosta | it is so cool if you can build a demo on C# likes /WiKIDAdmin/example.jsp | 13:20 |
nowen | nobody here knows any C#. | 13:21 |
nowen | I recommend you check the xml transactions in WiKIDClient.cs against the ones in example.jsp | 13:22 |
nowen | and see if there is a difference | 13:22 |
Dacosta | can you list me all files that is built in example.jsp | 13:25 |
nowen | take a look at this page: http://www.wikidsystems.com/support/wikid-support-center/manual/wikid-network-client-wclient-api-manual/referencemanual-all-pages | 13:27 |
*** Dacosta has quit (Ping timeout: 245 seconds) | 13:48 | |
*** Dacosta (750352da@gateway/web/freenode/ip.117.3.82.218) has joined #wikid | 14:12 | |
Dacosta | I search in /opt/WiKID/tomcat/webapps/WiKIDAdmin | 14:12 |
Dacosta | but cannot find any .xml file | 14:13 |
nowen | did you see this page: http://www.wikidsystems.com/support/wikid-support-center/manual/wikid-network-client-wclient-api-manual/referencemanual-all-pages | 14:13 |
*** Dacosta has quit (Quit: Page closed) | 14:58 | |
*** protosfucion (be1bfd83@gateway/web/freenode/ip.190.27.253.131) has joined #wikid | 16:36 | |
protosfucion | Hi everybody | 16:36 |
protosfucion | i have some questions | 16:36 |
protosfucion | is there someone who can give me a hand | 16:37 |
nowen | yep | 16:39 |
nowen | I can help | 16:40 |
protosfucion | if i make some LAN reconfigurations is recommeded to restart de wikid services? | 16:45 |
nowen | did you change the IP address that the domain identifier is based on? | 16:51 |
protosfucion | nope | 16:53 |
protosfucion | there were some firewall changes | 16:54 |
nowen | if you can still access the WiKIDAdmin UI, I don't think you need to | 16:55 |
nowen | are you using replication? | 16:55 |
protosfucion | yes | 16:55 |
nowen | then I think you will need to restart | 16:55 |
protosfucion | theres was a change about the wikid ports | 16:56 |
*** nowen has quit (Ping timeout: 260 seconds) | 17:00 | |
joevano | then definately yes | 17:07 |
joevano | nowen is having intermitten network issues... he probably didn't leave by choice | 17:08 |
*** Abe_MP (4440d642@gateway/web/freenode/ip.68.64.214.66) has joined #wikid | 17:12 | |
Abe_MP | Hello. I need to create a new intermediate cert and localhost cert using the command prompt (I don't have access to the WikidAdmin page). Can someone point me in the right direction for these steps? | 17:14 |
joevano | not sure how you would do it... you'll have to wait for nowen to show back up | 17:15 |
joevano | if it is possible he would know | 17:16 |
Abe_MP | Thanks! :) | 17:25 |
joevano | he should be back soon... as soon as his network comes back... havind issues with his ISP | 17:29 |
*** nowen (~nowen@67.211.17.2) has joined #wikid | 17:36 | |
nowen | ugh. | 17:37 |
nowen | sorry, network problems | 17:37 |
nowen | protosfucion: what port changes did you make? | 17:38 |
nowen | Abe_MP: why don't you have access to the WiKIDAdmin? | 17:38 |
Abe_MP | I'm remote (the server sits at our colo) and I need the VPN to reach the admin page.... | 17:39 |
Abe_MP | but I rebooted the box & had no idea that there was a password to restart Wikid. | 17:39 |
nowen | I don't think you can recreate the certs except via the WiKIDAdmin | 17:40 |
nowen | hmm | 17:40 |
nowen | so you need to recreate the certs to get a new password to start the server? | 17:40 |
Abe_MP | Yep! | 17:40 |
Abe_MP | I found this: How do I know if my certificate is valid? Run the following command (all on one line): keytool -list -v -keystore /opt/WiKID/private/intCAKeys.p12 -storetype pkcs12 -storepass yourpassphrase | 17:40 |
nowen | what company are you with? | 17:41 |
Abe_MP | Mocapay | 17:41 |
Abe_MP | Is there more info on that keytool command? | 17:41 |
nowen | are you using the Enterprise version? | 17:42 |
Abe_MP | Couldn't tell ya... I inherited this box (and the gig) a few weeks ago. | 17:42 |
nowen | run 'rpm -qa | grep wikid' | 17:42 |
nowen | it will tell you the version etc | 17:42 |
Abe_MP | wikid-utilities-3.0.5-1 wikid-server-enterprise-3.4.0.b3115-1 | 17:43 |
nowen | can you PM me? | 17:43 |
Abe_MP | Looks like I am :) | 17:43 |
nowen | Abe_MP: also, we'll do an update | 17:58 |
nowen | really? fire drill, brb | 18:02 |
nowen | ok - back | 18:13 |
*** bgeorge_ (41739342@gateway/web/freenode/ip.65.115.147.66) has joined #wikid | 18:36 | |
*** Abe_MP has quit (Ping timeout: 245 seconds) | 18:46 | |
*** Abe_MP (4440d642@gateway/web/freenode/ip.68.64.214.66) has joined #wikid | 18:52 | |
nowen | Abe_MP: thanks for the order | 18:52 |
nowen | you ready? | 18:52 |
Abe_MP | Yep! | 18:53 |
Abe_MP | All paid up ^_^ | 18:53 |
nowen | ok - this should be easy | 18:53 |
nowen | on the terminal cd into /opt/WiKID/private | 18:54 |
Abe_MP | I'm there. I already backed up *.p12 and CACertStore. | 18:54 |
nowen | ok - mv or rm localhost.p12 and the IntCA p12 | 18:55 |
Abe_MP | Done | 18:55 |
nowen | ok, restart WiKID | 18:56 |
Abe_MP | with the wikid_start command? | 18:56 |
nowen | 'wikidctl restart' | 18:57 |
Abe_MP | ok done | 18:57 |
nowen | you should be able to login to the WiKIDAdmin - assuming you know the WiKIDAdmin password | 18:58 |
Abe_MP | Let me see if the page will load... normally, I need to be on the VPN to reach it | 18:58 |
Abe_MP | Nope... it's timing out. | 18:59 |
nowen | is it up? run 'netstat -anp | grep 443' | 18:59 |
Abe_MP | Still no luck. I think we're having a chicken/egg issue with the VPN. ;) | 19:01 |
nowen | so there is no listener on 443? or you can't get to the IP? | 19:01 |
Abe_MP | I can SSH to the Wikid server, but I have no GUI/browser access from there. | 19:02 |
nowen | because of the networking? | 19:02 |
nowen | tunnel 443 to your local machine using ssh | 19:02 |
nowen | do you need an ssh command? | 19:12 |
Abe_MP | No luck... I tried bouncing it through our jump box & also didn't have any luck. | 19:13 |
nowen | what command did you use? | 19:13 |
Abe_MP | ssh -R 443:localhost:443 user@jumpbox | 19:14 |
nowen | I don't know if it matters, but here's what i use: ssh -N -f -L 443:server.wikidsystems.com:8443 server.wikidsystems.com | 19:15 |
Abe_MP | The first one should be my box (localhost), right? | 19:17 |
nowen | no | 19:17 |
Abe_MP | Then maybe that's where I have it messed up... | 19:18 |
nowen | that's the command I use to get to a remote server, server.wikidsystems.com that is listening on 443. I open my browser to localhost:8443 | 19:18 |
Abe_MP | Still no go. I don't have direct SSH access to the Wikid server, so I have to go through our jump box. | 19:26 |
nowen | hmm | 19:26 |
nowen | perhaps you can chain the commands? run it once on the jumpbox and then locally? | 19:28 |
Abe_MP | I did that. It seemed to work (it prompted to add it to the lost of known hosts). Maybe I'm mixing the ports up. | 19:29 |
Abe_MP | I tried a couple more combinations. Still no love. | 19:31 |
nowen | and your VPN is locked down by WiKID? | 19:32 |
Abe_MP | Yep | 19:33 |
nowen | seems like you should be able to get on the network http://bodhizazen.net/Tutorials/VPN-Over-SSH | 19:34 |
nowen | can you modify the jumpbox to do that? | 19:34 |
Abe_MP | It'll take some time... | 19:37 |
Abe_MP | it may be faster for me to drive to the colo. | 19:37 |
Abe_MP | :p | 19:38 |
Abe_MP | Once I have access to the web interface, then I just recreate the intermediate cert and localhost cert from the Configuration tab, right? | 19:39 |
nowen | yes | 19:39 |
Abe_MP | That Sean (and Dave) were h4rdc0re about the command line... since I'm in charge now I think I'm going to add a GUI so I can have neato stuff... like a web browser. | 19:40 |
nowen | well, they needed the webui | 19:41 |
Abe_MP | Well, wish me luck! I'm going to head over there now. I'll pop back on if I hit any roadblocks. Thanks a bunch for all the help! :D | 19:42 |
nowen | ok | 19:42 |
*** Abe_MP has quit (Quit: Page closed) | 19:43 | |
nowen | bgeorge_: let me know if you have any questions | 19:54 |
bgeorge_ | Good timing, I just figured out what i wanted to ask. | 20:05 |
bgeorge_ | I am trying to setup WiKID with NPS, and in the example in the support docs, the NPS server does not have routing and remote access. | 20:06 |
bgeorge_ | Is it a requirement that they be seperate? | 20:07 |
nowen | hmm. you mean on a different 2008 server? | 20:08 |
bgeorge_ | Yes. | 20:08 |
nowen | I've never tested it using more than one 2008 server, so I don't think so ;) | 20:09 |
bgeorge_ | So it can coexist with other network policies? | 20:10 |
nowen | I assume so as long as they don't conflict | 20:10 |
nowen | I'm not an nps expert. to be honest, I have just gotten it to work and documented it. | 20:11 |
bgeorge_ | Unfortunately neither am I. | 20:13 |
nowen | ;-) | 20:13 |
bgeorge_ | Just to confirm, the Radius client = My windows vpn server, Radius server is the linux box with WiKID on it? | 20:14 |
nowen | to nps, yes | 20:15 |
bgeorge_ | OK, time to give it another shot. | 20:15 |
*** bgeorge_ has quit (Ping timeout: 245 seconds) | 20:27 | |
nowen | ok - time to drive the boy to soccer. | 20:38 |
*** bgeorge_ (41739342@gateway/web/freenode/ip.65.115.147.66) has joined #wikid | 20:38 | |
joevano | have fun | 20:38 |
nowen | bgeorge_: any luck? I was just about to leave | 20:39 |
bgeorge_ | Any suggestion for a NPS "Condition" to just test one user? | 20:39 |
nowen | I dunno - can you put them in a specific group? | 20:40 |
nowen | are all your users using the windows vpn now? | 20:40 |
bgeorge_ | group option is no supported in Connection Request Policy, only under Network Policy | 20:41 |
bgeorge_ | and yes it is in use now | 20:41 |
nowen | I'm not sure | 20:42 |
bgeorge_ | I think thats where I'm stuck. Thanks for your help. Im sure I can find something from microsoft. | 20:43 |
nowen | ok - I got to take the son to soccer practice, but I'll be back tomorrow. | 20:43 |
nowen | ok - later all | 20:44 |
*** nowen has quit (Quit: Leaving.) | 20:44 | |
*** protosfucion has quit (Ping timeout: 245 seconds) | 20:51 | |
*** bgeorge_ has quit (Ping timeout: 245 seconds) | 20:53 | |
*** Abe_MP (4a3fa524@gateway/web/freenode/ip.74.63.165.36) has joined #wikid | 23:08 | |
Abe_MP | Hello! So, I'm on the same network as my Wikid server but I'm getting 102 Connection Refused when trying to open the WikidAdmin page... any ideas? | 23:10 |
*** Abe_MP has quit (Ping timeout: 245 seconds) | 23:41 |
Generated by irclog2html.py 2.11.0 by Marius Gedminas - find it at mg.pov.lt!