*** Guest60188 has quit (Ping timeout: 246 seconds) | 00:02 | |
*** blkperl has quit (Ping timeout: 264 seconds) | 06:14 | |
*** blkperl (~blkperl@destiny.cat.pdx.edu) has joined #wikid | 06:15 | |
*** Mohammed (c7ffd33f@gateway/web/freenode/ip.199.255.211.63) has joined #wikid | 13:13 | |
*** Mohammed is now known as Guest51231 | 13:13 | |
*** Guest51231 has quit (Ping timeout: 246 seconds) | 13:27 | |
*** Indi (d57b2b32@gateway/web/freenode/ip.213.123.43.50) has joined #wikid | 14:57 | |
Indi | Hello | 14:57 |
---|---|---|
laszlof | hi | 14:59 |
Indi | i wonder if you can help me please? I am setting up a wikid virtual appliance as a test... | 14:59 |
*** nowen (~nowen@2602:306:3ae5:cbf0:6e62:6dff:feb0:8f07) has joined #wikid | 15:00 | |
Indi | i think i have set everything up ok. When I use the wikid token client on a laptop connected to my domain everything works ok and i get a code. However, when the same laptop is not connected to my Domain, but is connected to the internet, I cannot generate a token ... | 15:01 |
nowen | Indi: is your domain identifier/server code based on the external IP? | 15:02 |
Indi | yes and is padded with zeros | 15:02 |
nowen | when you connect to your domain, are you on the internal network? | 15:03 |
Indi | yes | 15:04 |
nowen | I am guessing that your firewall rules prevent return trips | 15:04 |
nowen | will your internal users need 2fa? | 15:06 |
Indi | the external ip i am using for wikid doesnt have a firewall for this test. No software firewall on laptop either. | 15:07 |
Indi | no 2fa will be for external vpn users only | 15:08 |
Indi | i am using a mobile hotspot on my phone for testing using my laptop. Do you think that may be the issue? | 15:08 |
nowen | I'm just guessing that your internal network has a limitation on routes that go external and then come back internal. I'm guessing you can only get to the WiKID server internally from the internal address | 15:09 |
laszlof | it uses standard ports, so I doubt it. | 15:09 |
laszlof | ya, internal -> external -> internal is always funny with NAT | 15:09 |
nowen | most companies do this for security reasons | 15:09 |
Indi | let me try it internally from the external address ... | 15:11 |
Indi | ok so when i use an internal address internally it does not work. When I use an external address internally it does work. When I use the laptop externally it doesnt work | 15:14 |
nowen | you can see what's happening on the token: https://www.wikidsystems.com/support/wikid-support-center/troubleshooting-faq/how-do-i-run-the-token-in-debug-mode | 15:15 |
Indi | i tried that. cant get the debug to display though. is there a seperate log file that it writes to somewhere? | 15:16 |
nowen | no, you have to then run the token from the command line: java -jar wikidtoken-3.1.30.jar | 15:19 |
Indi | ah ok i'll try that thanks | 15:20 |
Indi | gives me "unable to access jarfile wikidtoken-3.1.30.jar" | 15:25 |
nowen | is it in that directory? | 15:28 |
nowen | if you used the installer, you can just grab the jar here: http://www.wikidsystems.com/webdemo/tokens/j2se/3.1.30/wikidtoken-3.1.30.jar | 15:29 |
Indi | great thanks - there were no jar files | 15:30 |
nowen | yeah - the installer puts it where it should go for the OS | 15:38 |
Indi | ok so ive got it running from command line and it says debug = true, but it still doesnt give any debug output in the command prompt window. just says proxy hostname : DIRECT then No proxy then Could not connect to servercode: 213123043051 | 15:43 |
Generated by irclog2html.py 2.11.0 by Marius Gedminas - find it at mg.pov.lt!