Quantcast
Channel: THWACK: Popular Discussions - Network Configuration Manager
Viewing all 4266 articles
Browse latest View live

0x80040217 The server response was not available

$
0
0

Hi all,

 

I am trying to send the results from a scheduled NCM job to an email address. The SMTP server settings and authentication is right, firewall is shut down and the recipient is from the same domain as the smtp server, still I get this error:

Unable to send notification email to '<email@email.com>' : The message could not be sent to the SMTP server. The transport error code was 0x80040217. The server response was not available.

However, sending e-mail does work with a syslog viewer (NPM) action.

 

How to solve this problem?

 

Thanks in advance.

Marnix


NCM Node List - flexible to mange Nodes

$
0
0

How do i add additional to the Grouped List ? Like i mentioned below, i can able to group the Nodes based on NODE GROUP, COUNTRY AND CITY. Added to that, can we also add some more property to group the nodes ?

 

For example, under CITY, i need to segregate location wise.

 

SERVERS -----INDIA----MUMBAI----BKC,LVSB,etc

 

Help with regular expressions and config change reports

$
0
0

I could use some help with creating a regular expression that the config change report ignores during it's comparison.  Basically, I have Cirrus comparing the most recent config downloaded with the latest baseline.  The problem is that the running configuration of my cisco devices has the crypto key listed in the config, and in the startup, the crypto key doesn't exist.  I would like to exclude this section from even being compared, but my regular expression knowledge is severely lacking.  I'm guessing there is a way for me to exclude the following:


crypto ca certificate chain TP-self-signed-1667691779
 certificate self-signed 01
  3082022B 30820194 A0030201 02020101 300D0609 2A864886 F70D0101 04050030
  31312F30 2D060355 04031326 494F532D 53656C66 2D536967 6E65642D 43657274
  69666963 6174652D 31363637 36393137 3739301E 170D3036 30383036 31303234
  35365A17 0D323030 31303130 30303030 305A3031 312F302D 06035504 03132649
  4F532D53 656C662D 5369676E 65642D43 65727469 66696361 74652D31 36363736
  39313737 3930819F 300D0609 2A864886 F70D0101 01050003 818D0030 81890281
  8100B4CA F3563FC5 43010A48 B075619E A7DE4790 AF982EF5 5402B501 207DB313
  67C78E80 CCD4CBA7 D2214222 055D8CBF A676A6A3 64C0B6C2 2247D76C C4C60202
  EFCA453E 5848D707 16D2940D C7384BBE 6BA52028 5F1CD47F C66CFD7B EF51188D
  8AF9B9E9 D4DFB645 1D36E2B0 1D2B6BDE CF00F2FB 149AA487 7CF2FD66 74A4D032
  CDFB0203 010001A3 53305130 0F060355 1D130101 FF040530 030101FF 301F0603
  551D2304 18301680 14797F79 CD395C9D 9BBBF477 BE2CB863 2BD9D2B3 DA301D06
  03551D0E 04160414 797F79CD 395C9D9B BBF477BE 2CB8632B D9D2B3DA 300D0609
  2A864886 F70D0101 04050003 8181007B 9EB45922 73A18372 A31736D2 DA9089FD
  760DE6D1 0B50007E 05BA8328 D8A48A76 5B68D3EE 69BA29BD 89D63CE8 6BEF5ECE
  05DC7804 FAE7DA90 716CB0C5 40BBCB21 8BFDE99D AF3E4D35 796BFA05 FF5F3000
  78368944 B9BA15C8 F017126D 7AF337D0 88F38689 57F73A18 7509491A F3060E3A
  D0F1BCE8 4C110ECF 9A016242 7758E3
  quit


Is there a way to exclude everything to "quit" and what would it look like?  Any help would be appreciated.


NCM Device Command Template Reference - How to Add New Device Support

$
0
0

NCM device support is based on device command templates. NCM provides out of the box support for over 15 different vendors and 100s of different device models. 

For devices not supported out of the box, NCM includes the ability to extend the default device support by creating or modifying device command templates. 

To learn more, please see the NCM Admin Guide:   http://www.solarwinds.net/support/orionNCM/docs/OrionNCMAdministratorGuide.pdf

Please note, this Admin Guide is intended to be a living document.  If anything is unclear or there is content that you would like to see added, please let us know by posting on Thwack!

Policy to detect multiple logging servers?

$
0
0

Hi,

 

I'm trying to use NCM Policies to detect when there are additional logging servers configured on Cisco switches apart from the current server (or multiple servers in the future).

 

For example, the policy rule would report a violation if the command "logging 10.1.1.1" doesn't exist but would also report a violation if other logging servers were set in the configuration.

 

I tried using matching multiple usernames with Boolean rules in NCM policy as a starting point but haven't had much luck.

 

Has anyone else tried to do this or a similar policy?

Connection Refused : Problem with NCM downloading Juniper configs

$
0
0

Hi,

I have problems downloading Juniper config files. It seems this a common issue with downloading config files using SSH. The configuration looks fine (SSH auto, no enable) but whenever I try to download it says connection refused. I searched everywhere but I could not find any answer. I wonder if someone from solarwinds can answer this question.

Regards,

Rayan

NCM Credentials

$
0
0

Are NCM credentials a pain or am I missing something?

Login Credentials are easy enough to setup.

Device credentials can only be changed at the console? Like most folks, we use TACACS for most of our equipment and those accounts are independent of the Windows accounts. For security reasons, most of our users are not allowed direct NCM console access. At the same time, I don't want the NCM admins knowing the TACACS username and passwords for the unprivileged users. Anybody suggest a work around?

NCM Integration to NPM. On the Orion NPM Web pages, why do users require "view customization rights' to add NCM credentials? Maybe I did something wrong? Otherwise, I  really can't afford to have every user who needs access to their configs to have the "view customization rights".  (Yes, they have access to the NCM Web Console, but it sort of defeats the purpose of NCM/NPM integration.)

Any thoughts?

Device Command template for Checkpoint UTM-1 Edge firmware veris v8.2.57n

$
0
0

Hi,

   I was hoping if I can get a NCM device command template for Checkpoint UTM -1 Edge ( Sofaware Technologies  ) device. I tried using one mentioned in another thread:

(http://thwack.solarwinds.com/docs/DOC-129647)


!--SolarWinds Network
Management Tools-->


<!--Copyright 2010
SolarWinds.Net All rights reserved-->


<Configuration-Management
Device="Checkpoint Edge" SystemOID="
1.3.6.1.4.1.6983.1.10.22">


  
<Commands>


      
<Command Name="Reboot" Value="reset gateway"/>


      
<Command Name="DownloadConfig" Value="export"/>


      
<Command Name="EraseConfig" Value="reset
defaults${CRLF}Y"/>


      
<Command Name="Version" Value="info device"/>


    </Commands>

</Configuration-Management>

But I still get error whiling downloading a configuration:

[2/25/2014 3:01:15 PM] TimerTick: mstrData=<EMEA-XX-XXXX >> State=3 - Connected to server - idle

[2/25/2014 3:01:15 PM] Pending Disconnect = False

[2/25/2014 3:01:15 PM] Pre-Commands: Waiting more than 3 seconds for response start sending pre-command if any...

[2/25/2014 3:01:17 PM] TimerTick: mstrData=<EMEA-UK-RTS-1003 >> State=3 - Connected to server - idle

[2/25/2014 3:01:17 PM] Pending Disconnect = False

[2/25/2014 3:01:17 PM] Pre-Commands: Waiting more than 3 seconds for response start sending pre-command if any...

[2/25/2014 3:01:19 PM] TimerTick: mstrData=<EMEA-UK-RTS-1003 >> State=3 - Connected to server - idle

[2/25/2014 3:01:19 PM] Pending Disconnect = False

[2/25/2014 3:01:19 PM] Pre-Commands: Waiting more than 3 seconds for response start sending pre-command if any...

[2/25/2014 3:01:21 PM] TimerTick: mstrData=<EMEA-UK-RTS-1003 >> State=3 - Connected to server - idle

[2/25/2014 3:01:21 PM] Pending Disconnect = False

[2/25/2014 3:01:21 PM] Pre-Commands: Waiting more than 3 seconds for response start sending pre-command if any...

[2/25/2014 3:01:23 PM] TimerTick: mstrData=<EMEA-UK-RTS-1003 >> State=3 - Connected to server - idle

[2/25/2014 3:01:23 PM] Pending Disconnect = False

[2/25/2014 3:01:23 PM] Pre-Commands: Waiting more than 3 seconds for response start sending pre-command if any...

[2/25/2014 3:01:25 PM] TimerTick: mstrData=<EMEA-UK-RTS-1003 >> State=3 - Connected to server - idle

[2/25/2014 3:01:25 PM] Pending Disconnect = False

[2/25/2014 3:01:25 PM] Pre-Commands: Waiting more than 3 seconds for response start sending pre-command if any...

[2/25/2014 3:01:25 PM] TimerTick: Login Timeout

/25/2014 4:06:27 PM] Process Line = <set net lan rip passive-interface disabled >

[2/25/2014 4:06:27 PM] Fuzzy match detector start detecting prompt. String1=setnetlanrippassive-interfacedisabled String2=emea-uk-rts-1003>

[2/25/2014 4:06:27 PM] Save Command Output: set net lan rip passive-interface disabled

[2/25/2014 4:06:27 PM] Process Line = <>

[2/25/2014 4:06:27 PM] Process Line = <# Interface authentication settings>

[2/25/2014 4:06:27 PM] Fuzzy match detector start detecting prompt. String1=#interfaceauthenticationsettings String2=emea-uk-rts-1003>

[2/25/2014 4:06:27 PM] Save Command Output: # Interface authentication settings

[2/25/2014 4:06:27 PM] Process Line = <set net lan rip authentication simple-text-password "" md5-key 0 md5-password "" mode none >

[2/25/2014 4:06:27 PM] Fuzzy match detector start detecting prompt. String1=setnetlanripauthenticationsimple-text-password""md5-key0md5-password""modenone String2=emea-uk-rts-1003>

[2/25/2014 4:06:27 PM] Save Command Output: set net lan rip authentication simple-text-password "" md5-key 0 md5-password "" mode none

[2/25/2014 4:06:27 PM] Process Line = <>

[2/25/2014 4:06:27 PM] Process Line = <# DMZ/WAN2 port settings>

[2/25/2014 4:06:27 PM] Fuzzy match detector start detecting prompt. String1=#dmz/wan2portsettings String2=emea-uk-rts-1003>

[2/25/2014 4:06:27 PM] Save Command Output: # DMZ/WAN2 port settings

[2/25/2014 4:06:27 PM] Process Line = <set net dmz mode disabled hidenat disabled address undefined netmask 255.255.255.0 dhcpserver disabled dhcprange automatic dhcprelayip1 undefined dhcprelayip2 undefined hotspot disabled bridge-to none bridge-range undefined bridge-stp-priority 0x80 bridge-stp-cost 0x64 bridge-antispoofing enabled >

[2/25/2014 4:06:27 PM] Fuzzy match detector start detecting prompt. String1=setnetdmzmodedisabledhidenatdisabledaddressundefinednetmask255.255.255.0dhcpserverdisableddhcprangeautomaticdhcprelayip1undefineddhcprelayip2undefinedhotspotdisabledbridge-tononebridge-rangeundefinedbridge-stp-priority0x80bridge-stp-cost0x64bridge-antispoofingenabled String2=emea-uk-rts-1003>

[2/25/2014 4:06:27 PM] Save Command Output: set net dmz mode disabled hidenat disabled address undefined netmask 255.255.255.0 dhcpserver disabled dhcprange automatic dhcprelayip1 undefined dhcprelayip2 undefined hotspot disabled bridge-to none bridge-range undefined bridge-stp-priority 0x80 bridge-stp-cost 0x64 bridge-antispoofing enabled

[2/25/2014 4:06:27 PM] Process Line = <>

[2/25/2014 4:06:27 PM] Process Line = <# High Availability settings>

 

 

Hoping if I can get assiatnce on a script,Thanks


Restrict view for NCM in Cisco?

$
0
0

I'm testing out NCM and it's working really well.  I would like to be able to restrict the Cisco device user account to only be able to show the running config.  Has anyone done this, and/or what do other people do for security on the Cisco device account that NCM uses?

HP (formerly 3Com) v1910 / v2928 PoE Switches

$
0
0

We have literally thousands of these same switches at one of our customers. We have to be able to use NCM to backup, change control, restore configurations to all of these switches.

 

One thing to point out is that the method the original poster (Jeff), and this here Jeff are using is somewhat unsupported by HP (formerly 3com).  When we login via Telnet, and type that command "_cmdline-mod on" then answer "Y" and enter the secret password - that is the only way we can access the advanced level command line.  It is somewhat Menu driven, but not really, because you can also type out commands. This is a strange bird to say the least, but one that *MUST* be solved and supported by Solarwinds at any cost. I am ready to open a case and work closely with any Engineer to get this resolved, but it must be resolved.

 

I get right to that "Please input password:" prompt, then it enters the correct number of *'s, but always reports incorrect password, then the rest of the script fails to run. I have tried the Template Builder Assistance and the Solarwinds Config Generator...and neither offer enough granularity in creating templates or configuration change scripts to be successful.


This is how it should work:

 

Username: admin

Password:

<PROMPT> _cmdline-mode on

All commands can be displayed and executed. Continue? [Y/N] Y

Please input password: ******

Warning: Now you enter an all-command mode for developer's testing, some commands may affect operation by wrong use, please carefully use it with our engineer's direction.

<PROMPT>


This is the reality when executing via script in NCM:

 

Username: admin

Password:

<PROMPT> _cmdline-mode on

All commands can be displayed and executed. Continue? [Y/N] Y

Please input password: ******

incorrect password

<PROMPT>


Here is the ConfigMgmt-Commands File I am working with -- Note some of this is added after using the Template Builder Assistant:

 

<Configuration-Management Device="3com-2928" SystemOID="1.3.6.1.4.1.43.1.8.75">

  <Commands>

    <Command Name="ALLOCATEPTY" Value="True" />

    <Command Name="CUSTOMUSERNAMEPROMPT" Value="Username:" />

    <Command Name="MENUBASED" Value="True" />

    <Command Name="EnterConfigMode" Value="_cmdline-mode on${CRLF}" />

  <Command Name="VirtualEnablePrompt" Value="Y${CRLF}" REGEX="All commands can be displayed and executed. Continue? [Y/N]" DELAY="5" />

  <Command Name="VirtualEnablePrompt" Value="123456${CRLF}" REGEX="Please input password:" DELAY="5" />

  <Command Name="DOWNLOADCONFIGINDIRECT" Value="backup startup-configuration to ${StorageAddress} ${Node Name}.cfg ${CRLF}" />

  </Commands>

</Configuration-Management>


Here is the Execute Script I am working with -- Generated with Solarwinds Config Generator 1.0:

 

'ADVANCED:FILTER RESULTS:False

'ADVANCED:FILTER PATTERN:Serial

'ADVANCED:SHOW COMMANDS:True

_cmdline-mode on

Y

123456

backup startup-configuration to 157.241.7.206 ${Node Name}.cfg

 

I hope someone has either done this or Solarwinds Tech Support see's this and can help me get to the next step.

 

Thanks,

Jeff Singleton

Motorola Solutions Inc.

Conditional/Nested Rules?

$
0
0

Hello everyone,

I am trying to make a rule condional on the first part being true.  I want to ensure "ip verify unicast reverse-path" is configured on all our WAN connections.  We set a description of "DS[13]*" on all our WAN interfaces so locate that and then match "ip verify unicast reverse-path"

So far my rule looks like this "description DS[13].*\n(.*\n)*.*ip verify unicast reverse-path"

The problem I am having is some of our routers do not have WAN connections so there is no match on "DS[13]" and that causes an exception.  I need this rule to be ignored if there is no match for "description DS[13]"

I would like to create several of these expressions for my rules because we dont match on just "int Fa0/0" or "int Fa0/1" but have to match on "int BVI20" or on "int Fa0/0.20".  To ensure we are matching the correct interface we assign a "description trusted" "description isolated" or "description restricted" to the appropriate interface, sub-interface or bridge interface.  For each of these we need to conditionally match to each of these specific descriptions then require the "ip verify unicast reverse-path" be found next.

Example
int BVI20
 desc trusted <-Found this or "isolated" or "restricted" or ....
 ip verify unicast reverse-path<- Require this
exit

int fa0/0.10
 desc isolated <-Tested. missing ip verify produce exception.
exit

int BVI35
 desc private <-Not tested no exception.
exit

Thanks.

NCM config template for show config

$
0
0

Hi,

I am new to solarwinds and currently using solarwinds NCM for backup.However for some routers i have limited access and i can only use show config to display the configuration.I need to take backup using show config command.I read a post saying i need to create a config template.I tried building a config template using ncm template builder assistant 6.1 but this is not working with NCM 7.2.Dont know why.The template is running fine with template builder assistant when i validated the template.

Can anyone provide me a script for show config for backup or help me as to how i can achieve this using NCM.

F5 BigIP v11 LTM UCS Backup

$
0
0

I have two questions...

First is does anyone have the F5 onfig backup template for NCM working with v11?  Mine just fails every time and I am not quite sure where to go from here.  I realize that the template was for v10 but v11 still has the tmsh shell commands so I thought it might work.

Second question is around the possibility of doing a full UCS backup with NCM.  As I understand it, the current backup template only backs up the bigip.conf file which is helpful but not very much if you completely lose the device and have to start from scratch again since you lose your certificates and license and everything else.  In order to do this we would need to ssh and run a command to perform the backup, and then perform an SCP copy of the ucs file to Orion.  I had read several posts where I thought it was indicated that support for this was coming out but nothing recently.

Any thoughts on either of these?

Where can I find the logs of jobs ran configured in and ran from NCM. Also are job logs created by the Policy Reporter?

$
0
0

Need to get my hands on Policy report logs to prove to an audit that we have been running a baseline config report, can't seem to find them anywhere on NCM. I am guessing that the first place to look will be where the place where NCM job logs are saved. I am under pressure to locate these (if they exist) so any help greatly appreciated!! Thanks!

Upgraded to NCM 7.1 and now I am unable to download configs from Cisco WLAN Controllers

$
0
0

I recently updated my Network Configuration Manager to 7.1 and after the upgrade, I can no longer download configurations from Cisco WLAN Controllers.


NCM Configuration Backup/Restore report

$
0
0

Is there a way to run a report to show a log for all configuration backups and restores in a certain date range in a network?

Connection Refused : Problem with NCM downloading Juniper configs

$
0
0

Hi,

I have problems downloading Juniper config files. It seems this a common issue with downloading config files using SSH. The configuration looks fine (SSH auto, no enable) but whenever I try to download it says connection refused. I searched everywhere but I could not find any answer. I wonder if someone from solarwinds can answer this question.

Regards,

Rayan

Cisco stack switches details in solarwinds NCM Inventory

$
0
0


Hi Members,

 

I need information on one the feature of NCM. We do the Inventory in NCM but inventory generated by Solar Winds for Cisco stack switches gives details
of only one switch in the stack.  That Switch is Master in that stack. We need to get detail of all the switches in the stack.

 

Your assistance will be highly appreciated and warm welcome.

 

Thanks,

Are you KIDDING ME.....!!!

$
0
0

Is there any way to create an alert for a group that I have created in NCM? I pulling my hair out on how to do this. I have tried both the Basic and Advanced Alert Manager. Even had a Solarwinds S-Rep help add he could not figure it out. This is insane! For a product that cost this much it should be easy to do this. I have watch video upon video and read article upon article trying to find a "simple", like PRTG (notice how I quoted the word simple. Hopefully Solarwinds reps are reading this and get the idea that they need to make their product simple) way to do this.

 

I have been in this field for nearly 15 years and never seen a product that is so bloated with add-ons, SQL configs (which is slow on retrieving historical data) and just general interface ****. This product was designed to be difficult so that you will buy into their Professional Services. ROI is dependent on TCO. PRTG is one third the cost and can do anything the Solarwinds Orion can do and in a single pane of glass. I have spent nearly 40+ hours working on getting basic alerting to work to some capacity and my PRTG (trial of course) is up an running monitoring everything in my environment with alerts and dependencies. It took me half a day to setup and configure PRTG. I had a co-worker who never saw PRTG let alone heard of it and he was able to figure it out in minutes. No jumping around the web interface and logging into your SAM server to make adjustments. The PRTG for Android / iOS is also free, Solarwinds Mobile Admin, $670 per seat. SLAP!

 

This product is clearly way over rated and people are falling for their marketing. I doubt very much that I will renew come later this year. Oh, and just their renewal fee would pay for PRTG (unlimited) and maintenance for one year. WOW! Can I say it again, ROI is dependent on TCO! Please note that I had several other admins and engineers try to do what I am requesting and they are besides them selves. Thank you listening to my rant hope it has been enjoyable.

NCM Credentials

$
0
0

Are NCM credentials a pain or am I missing something?

Login Credentials are easy enough to setup.

Device credentials can only be changed at the console? Like most folks, we use TACACS for most of our equipment and those accounts are independent of the Windows accounts. For security reasons, most of our users are not allowed direct NCM console access. At the same time, I don't want the NCM admins knowing the TACACS username and passwords for the unprivileged users. Anybody suggest a work around?

NCM Integration to NPM. On the Orion NPM Web pages, why do users require "view customization rights' to add NCM credentials? Maybe I did something wrong? Otherwise, I  really can't afford to have every user who needs access to their configs to have the "view customization rights".  (Yes, they have access to the NCM Web Console, but it sort of defeats the purpose of NCM/NPM integration.)

Any thoughts?

Viewing all 4266 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>