[prev in list] [next in list] [prev in thread] [next in thread] 

List:       novell
Subject:    NOVELL Digest - 29 Oct 2002 to 30 Oct 2002 - Special issue (#2002-449)
From:       Automatic digest processor <LISTSERV () LSV ! SYR ! EDU>
Date:       2002-10-30 20:37:50
[Download RAW message or body]

There are 22 messages totalling 1005 lines in this issue.

Topics in this special issue:

  1. SErver Hardware, version 6 (2)
  2. Unlicensed Printer Connection, NW 4
  3. Groupwise Attachments (2)
  4. Client Update W/o updating ZENWorks
  5. Ring 3 (4)
  6. Novell Certificates for "external" use. (4)
  7. Tree or Server Not Found (4)
  8. replica stuck in NEW state
  9. DHCP and VLANs (3)

The NOVELL list is hosted by L-Soft international's LISTSERV(TM) software
at Syracuse University.  To unsubscribe, send a SIGNOFF NOVELL command
to LISTSERV@LSV.SYR.EDU.  If you have questions about the list, write
to NOVELL-REQUEST@LSV.SYR.EDU.

----------------------------------------------------------------------

Date:    Wed, 30 Oct 2002 09:51:00 -0300
From:    "Greg Bembridge, CET, CNE, MCP" <greg@STEADFAST.CA>
Subject: SErver Hardware, version 6

I have a small business server client that must upgrade to NW6 small business as you \
cannot purchase additional licenses for the existing 4.2 any longer.  The server is a \
three year old IBM Netfinity PII 400MHz.  The internet specs call for a minimum of a \
PII class server as a Netware 6 requirement, which is kinda vague.

This is only a 15 user office, running only accounting and word processing software, \
ARcserve backup and McAfee antivirus - so nothing really heavy.

anyone have any advise on this server as being workable with NW6 small business in \
this environment?

Thanks, greg

Greg Bembridge, CET, CNE, MCP
Steadfast Computer Network Services
Halifax, Nova Scotia
greg@steadfast.ca
www.steadfast.ca

------------------------------

Date:    Wed, 30 Oct 2002 14:12:55 +0000
From:    Tim Heywood <tim@NDS8.COM>
Subject: Re: SErver Hardware, version 6

If you are only doing F&P and have no intention of running GW or BM then
this server will run quite happily with NW6 give enough memory.

If you intend to use GW then you should be looking for a better server.
  If GW is on the cards, then I would run GW and F&P on any new (newer)
server that you purchase, and put BM on the existing server.  That way
all outside comunications are done on a machine that is seperate from
you main F&P machine.  NSBS6.0 has two server licenses in the box, to
enable this kind of set-up.

Tim

*************************
Tim Heywood
Scotland
(God's Country)
Novell Support Connection SYSOP
*************************

In theory, practice and theory are the same,
In practice they are different!

> > > greg@STEADFAST.CA 30/10/2002 12:51:00 >>>

From:   greg@STEADFAST.CA
Sent:   Wednesday, 30 October, 2002 12:51
To:     <NOVELL@LSV.SYR.EDU>
Subject:        SErver Hardware, version 6
Priority:       Normal

I have a small business server client that must upgrade to NW6 small
business as you cannot purchase additional licenses for the existing 4.2
any longer.  The server is a three year old IBM Netfinity PII 400MHz.
The internet specs call for a minimum of a PII class server as a Netware
6 requirement, which is kinda vague.

This is only a 15 user office, running only accounting and word
processing software, ARcserve backup and McAfee antivirus - so nothing
really heavy.

anyone have any advise on this server as being workable with NW6 small
business in this environment?

Thanks, greg

Greg Bembridge, CET, CNE, MCP
Steadfast Computer Network Services
Halifax, Nova Scotia
greg@steadfast.ca
www.steadfast.ca

------------------------------

Date:    Wed, 30 Oct 2002 09:38:44 -0500
From:    Robert Carroll <rpcarroll@JUNO.COM>
Subject: Re: Unlicensed Printer Connection, NW 4

This message is in MIME format.  Since your mail reader does not understand
this format, some or all of this message may not be legible.



Hi Greg,

You want to use the remote printer mode.  I was going to describe the
steps, but there's already a good TID on the subject from Novell's
KnowledgeBase: How to set up an HP JetDirect Card in the NetWare
Environment. - TID10014130.

Remote printing is a little slower than print server mode, but when
you're low on connections, it works great.

Hopefully, you still have a copy of the JetAdmin software, since I have
heard that HP has replaced it with the web version, which has been known
to be problematic.  If not, I can probably locate a copy.

Best wishes,

Bob Carroll, CPA

Original message:
Date:    Tue, 29 Oct 2002 07:12:00 -0300
From:    "Greg Bembridge, CET, CNE, MCP" <greg@STEADFAST.CA>
Subject: Unlicensed Printer Connection, NW 4

I have to install an additional printer with a jetdirect box on a NW4
server, which is at its maximum licensed connections.  I know that when
you use pserver.nlm, printers do not grab a license.  what I cannot
remember (its been years) is how to configure an HP jetdirect box to run
off of pserver.nlm, rather than the normal method of running off its own
print server - and creating a licensed connection??

Anyone know how to do this, other than to ditch the jetdirect box and run
the printer off of a pc running nprinter??

Thanks, Greg

[Attachment #3 (text/html)]

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
<HTML><HEAD>
<META http-equiv=Content-Type content="text/html; charset=iso-8859-1">
<META content="MSHTML 5.50.4731.2200" name=GENERATOR></HEAD>
<BODY bottomMargin=0 leftMargin=3 topMargin=0 rightMargin=3>
<DIV>Hi Greg,</DIV>
<DIV>&nbsp;</DIV>
<DIV>You want to use the remote printer mode.&nbsp; I was going to describe the 
steps, but there's already a good TID on the subject from Novell's 
KnowledgeBase: How to set up an HP JetDirect Card in the NetWare Environment. - 
TID10014130.</DIV>
<DIV>&nbsp;</DIV>
<DIV>Remote printing is a little slower than print server mode, but when you're 
low on connections, it works great.</DIV>
<DIV>&nbsp;</DIV>
<DIV>Hopefully, you still have a copy of the JetAdmin software, since I have 
heard that HP has replaced it with the web version, which has been known to be 
problematic.&nbsp; If not, I can probably locate a copy.</DIV>
<DIV>&nbsp;</DIV>
<DIV>Best wishes,</DIV>
<DIV>&nbsp;</DIV>
<DIV>Bob Carroll, CPA</DIV>
<DIV>&nbsp;</DIV>
<DIV>Original message:<BR>Date:&nbsp;&nbsp;&nbsp; Tue, 29 Oct 2002 07:12:00 
-0300<BR>From:&nbsp;&nbsp;&nbsp; "Greg Bembridge, CET, CNE, MCP" &lt;<A 
href="mailto:greg@STEADFAST.CA">greg@STEADFAST.CA</A>&gt;<BR>Subject: Unlicensed 
Printer Connection, NW 4<BR>&nbsp;<BR>I have to install an additional printer 
with a jetdirect box on a NW4 server, which is at its maximum licensed 
connections.&nbsp; I know that when you use pserver.nlm, printers do not grab a 
license.&nbsp; what I cannot remember (its been years) is how to configure an HP 
jetdirect box to run off of pserver.nlm, rather than the normal method of 
running off its own print server - and creating a licensed 
connection??<BR>&nbsp;<BR>Anyone know how to do this, other than to ditch the 
jetdirect box and run the printer off of a pc running 
nprinter??<BR>&nbsp;<BR>Thanks, Greg<BR>&nbsp;</DIV></BODY></HTML>

[Attachment #4 (.)]
------------------------------

Date:    Wed, 30 Oct 2002 11:20:45 -0400
From:    Greg Bembridge <greg@STEADFAST.CA>
Subject: Groupwise Attachments

I often send attachments to email messages; jpg, doc, zip.  Why is it
that the person receiving the message does not see that attachment, so
has no idea of what file type it is.  It shows the name properly in the
message before I send it?

Greg

Greg Bembridge, CET, CNE, MCP
Steadfast Computer Network Services
Halifax, Nova Scotia
greg@steadfast.ca
www.steadfast.ca

------------------------------

Date:    Wed, 30 Oct 2002 10:29:55 -0500
From:    "Shabbir S. Talib" <shabbir.talib@DC.GOV>
Subject: Client Update W/o updating ZENWorks

Hi Listers

I am trying to update the clients on my network prior to upgrading the
server from ZFD 2 to 3.2

Which client components should I NOT update besides remote management??

Thanks for your contribution.

________________
Shabbir S. Talib
CCNA, CNE, MCSE

----------------------------------------------------
 Information Gateways Inc.   |  Tel: 202-673-3786
 Project @ DC Fire and EMS   |  Fax: 202-673-3709
 1923 VERMONT AVE. NW        |
 WASHINGTON, DC 20001        |
----------------------------------------------------

------------------------------

Date:    Wed, 30 Oct 2002 07:42:11 -0800
From:    Daniel Tran <dtran@SSC.UCLA.EDU>
Subject: Re: Groupwise Attachments

If the receving end is using outlook or some other clients that blocks
attachement then user will not see it.
For example, if you send *.exe *.com to user using outlook.  Outlook
itself may block it because executables can be dangerous.  It's best to
ZIP them first.

Or, it can be virus scanner on the email gateway rejects such
attachments (*.doc file can contain macro)

Or, it can be the attachment is too big and email gateway rejects it.

That's all I can think of for now.

Daniel - dtran@ucla.edu

> -----Original Message-----
> From: Novell LAN Interest Group [mailto:NOVELL@LSV.SYR.EDU]
> On Behalf Of Greg Bembridge
> Sent: Wednesday, October 30, 2002 7:21 AM
> To: NOVELL@LSV.SYR.EDU
> Subject: Groupwise Attachments
> 
> 
> I often send attachments to email messages; jpg, doc, zip.
> Why is it that the person receiving the message does not see
> that attachment, so has no idea of what file type it is.  It
> shows the name properly in the message before I send it?
> 
> Greg
> 
> Greg Bembridge, CET, CNE, MCP
> Steadfast Computer Network Services
> Halifax, Nova Scotia
> greg@steadfast.ca
> www.steadfast.ca
> 

------------------------------

Date:    Wed, 30 Oct 2002 11:15:09 -0500
From:    John Navarro <john_navarro@BUSINESSWEEK.COM>
Subject: Ring 3

I'm having major problems with any antivirus software crashing our NW51
SP5 server.  Both Symantec and Server Protect from Tend Micro abend the
server.  It crashes hard enough that I can't even get a core dump.  I
know of protect.nlm that will run apps on ring3 but I don't know how to
do this.  I believe my problem is NSS related and can't put my finger on
it.  Does anyone know how to use protect.nlm?

Thanks,
John

------------------------------

Date:    Wed, 30 Oct 2002 09:42:33 -0700
From:    Joe Doupnik <JRD@CC.USU.EDU>
Subject: Re: Ring 3

> I'm having major problems with any antivirus software crashing our NW51
> SP5 server.  Both Symantec and Server Protect from Tend Micro abend the
> server.  It crashes hard enough that I can't even get a core dump.  I
> know of protect.nlm that will run apps on ring3 but I don't know how to
> do this.  I believe my problem is NSS related and can't put my finger on
> it.  Does anyone know how to use protect.nlm?
> 
> Thanks,
> John
----------
        Server console colon prompt: Help, then Help Protect. Also the
manuals, but we know that's cheating.
        This likely won't help much, but it may let your server be
shut down gracefully. There are systems things to consider as well
because libraries and other items may have to be moved into the
protected environment and do special calls upon the kernel. Instead
you may have to run those apps on a traditional NW volume.
        Joe D.

------------------------------

Date:    Wed, 30 Oct 2002 18:24:28 +0000
From:    Gordon Ross <G.Ross@CCW.GOV.UK>
Subject: Re: Ring 3

I would have thought it impossible to run Anti-Virus in Ring 3 (or
protected memory as it's now called) due to the fact that they hook into
the O/S APIs.

GTG

> > > john_navarro@BUSINESSWEEK.COM 30/10/2002 16:15:09 >>>
I'm having major problems with any antivirus software crashing our
NW51
SP5 server.  Both Symantec and Server Protect from Tend Micro abend
the
server.  It crashes hard enough that I can't even get a core dump.  I
know of protect.nlm that will run apps on ring3 but I don't know how
to
do this.  I believe my problem is NSS related and can't put my finger
on
it.  Does anyone know how to use protect.nlm?

Thanks,
John

------------------------------

Date:    Wed, 30 Oct 2002 13:52:37 -0500
From:    Joe Acquisto <ACQUISTJ@LAN.NEWPALTZ.EDU>
Subject: Novell Certificates for "external" use.

We have several non NW servers that may need certificates for SSL.  Can
the Novell Certificate Server/NDS, be coaxed into generating
certificates that other servers can use?  If so, how?

-----------------------------------------
Joe Acquisto
SUNY New Paltz
845-257-3134 (V)
845-257-6900 (F)
---------------------------------------------------
http://www.congress.org
http://www.tompaine.com
---------------------------------------------------

------------------------------

Date:    Wed, 30 Oct 2002 13:54:16 -0500
From:    John Navarro <john_navarro@BUSINESSWEEK.COM>
Subject: Re: Ring 3

You are correct.  Attempts to run AV on ring 3 fail due to its inability
to see those hooks.

Gordon Ross wrote:

> I would have thought it impossible to run Anti-Virus in Ring 3 (or
> protected memory as it's now called) due to the fact that they hook into
> the O/S APIs.
> 
> GTG
> 
> 
> 
> > > > john_navarro@BUSINESSWEEK.COM 30/10/2002 16:15:09 >>>
> > > > 
> > > > 
> I'm having major problems with any antivirus software crashing our
> NW51
> SP5 server.  Both Symantec and Server Protect from Tend Micro abend
> the
> server.  It crashes hard enough that I can't even get a core dump.  I
> know of protect.nlm that will run apps on ring3 but I don't know how
> to
> do this.  I believe my problem is NSS related and can't put my finger
> on
> it.  Does anyone know how to use protect.nlm?
> 
> Thanks,
> John
> 
> 

------------------------------

Date:    Wed, 30 Oct 2002 11:59:05 -0700
From:    Al Hidalgo <AHidalgo@SALUD.UNM.EDU>
Subject: Re: Novell Certificates for "external" use.

It's pretty simple.

1) Use the native web server to request a CSR
2) Use the CSR with ConsoleOne to Create the cert
3) Plug the cert into the native web server

-a

Al Hidalgo, MCNE
Senior Analyst
Information Systems
University Hospitals
ahidalgo@salud.unm.edu

> > > ACQUISTJ@LAN.NEWPALTZ.EDU 10/30/02 11:52:37 AM >>>
We have several non NW servers that may need certificates for SSL.
Can
the Novell Certificate Server/NDS, be coaxed into generating
certificates that other servers can use?  If so, how?

-----------------------------------------
Joe Acquisto
SUNY New Paltz
845-257-3134 (V)
845-257-6900 (F)
---------------------------------------------------
http://www.congress.org
http://www.tompaine.com
---------------------------------------------------

------------------------------

Date:    Wed, 30 Oct 2002 13:55:20 -0500
From:    Bill Hodges <Hodges@LIBRA.LAW.UTK.EDU>
Subject: Tree or Server Not Found

Running client 4.83 in a NW 4.11SP9 environment.  At login, some
clients always see "tree or server not found", some clients see it
intermittently, and some clients never see it.

When the error occurs, clicking the login screen advanced button
and reselecting the target tree (although it's already selected)
allows normal login.

I've read all the TIDs I can find and all other documents located with
a multisite search engine.  So far, nothing has helped.

Does anyone have any idea of what might be happening?

Regards.
-
Bill Hodges
Network & Computing Systems Manager
The University of Tennessee College of Law
1505 West Cumberland Avenue
Knoxville, TN  37996-1800
VOICE:  865.974.2547
FAX:  865.974.6571

------------------------------

Date:    Wed, 30 Oct 2002 19:26:12 +0000
From:    Gordon Ross <G.Ross@CCW.GOV.UK>
Subject: Re: Tree or Server Not Found

Are these PCs connected to switches ?

GTG

> > > Hodges@LIBRA.LAW.UTK.EDU 30/10/2002 18:55:20 >>>
Running client 4.83 in a NW 4.11SP9 environment.  At login, some
clients always see "tree or server not found", some clients see it
intermittently, and some clients never see it.

When the error occurs, clicking the login screen advanced button
and reselecting the target tree (although it's already selected)
allows normal login.

I've read all the TIDs I can find and all other documents located with
a multisite search engine.  So far, nothing has helped.

Does anyone have any idea of what might be happening?

Regards.
-
Bill Hodges
Network & Computing Systems Manager
The University of Tennessee College of Law
1505 West Cumberland Avenue
Knoxville, TN  37996-1800
VOICE:  865.974.2547
FAX:  865.974.6571

------------------------------

Date:    Wed, 30 Oct 2002 14:31:08 -0500
From:    Joe Acquisto <ACQUISTJ@LAN.NEWPALTZ.EDU>
Subject: Re: Novell Certificates for "external" use.

Thanks will give it a go.  Been trying with NWadmin32.

joea/

-----------------------------------------
Joe Acquisto
SUNY New Paltz
845-257-3134 (V)
845-257-6900 (F)
---------------------------------------------------
http://www.congress.org
http://www.tompaine.com
---------------------------------------------------


> > > AHidalgo@SALUD.UNM.EDU 10/30/02 01:59PM >>>
It's pretty simple.

1) Use the native web server to request a CSR
2) Use the CSR with ConsoleOne to Create the cert
3) Plug the cert into the native web server

-a

Al Hidalgo, MCNE
Senior Analyst
Information Systems
University Hospitals
ahidalgo@salud.unm.edu

> > > ACQUISTJ@LAN.NEWPALTZ.EDU 10/30/02 11:52:37 AM >>>
We have several non NW servers that may need certificates for SSL.
Can
the Novell Certificate Server/NDS, be coaxed into generating
certificates that other servers can use?  If so, how?

-----------------------------------------
Joe Acquisto
SUNY New Paltz
845-257-3134 (V)
845-257-6900 (F)
---------------------------------------------------
http://www.congress.org
http://www.tompaine.com
---------------------------------------------------

------------------------------

Date:    Wed, 30 Oct 2002 11:44:08 -0800
From:    Daniel Tran <dtran@SSC.UCLA.EDU>
Subject: Re: Tree or Server Not Found

GTG,
I'm seeing the same problem here on and off.
It does not happen on all machines.  Only a handfull of them.
In my environment, they are all on switched-enet.
I've checked manual speed (no auto), frame type, duplex at both ends.
Deinstall/Reinstall client 4.83+sp1 and it did not help.
Machines are running XP & Win2k - It happens on both platform.
I've spent a day looking /testing without success.  Next thing to try is
get a sniffer trace ...
If you have any ideas, let me know

Thanks
Daniel - dtran@ssc.ucla.edu

> -----Original Message-----
> From: Novell LAN Interest Group [mailto:NOVELL@LSV.SYR.EDU]
> On Behalf Of Gordon Ross
> Sent: Wednesday, October 30, 2002 11:26 AM
> To: NOVELL@LSV.SYR.EDU
> Subject: Re: Tree or Server Not Found
> 
> 
> Are these PCs connected to switches ?
> 
> GTG
> 
> > > > Hodges@LIBRA.LAW.UTK.EDU 30/10/2002 18:55:20 >>>
> Running client 4.83 in a NW 4.11SP9 environment.  At login,
> some clients always see "tree or server not found", some
> clients see it intermittently, and some clients never see it.
> 
> When the error occurs, clicking the login screen advanced
> button and reselecting the target tree (although it's already
> selected) allows normal login.
> 
> I've read all the TIDs I can find and all other documents
> located with a multisite search engine.  So far, nothing has helped.
> 
> Does anyone have any idea of what might be happening?
> 
> Regards.
> -
> Bill Hodges
> Network & Computing Systems Manager
> The University of Tennessee College of Law
> 1505 West Cumberland Avenue
> Knoxville, TN  37996-1800
> VOICE:  865.974.2547
> FAX:  865.974.6571
> 

------------------------------

Date:    Wed, 30 Oct 2002 12:10:18 -0800
From:    Daniel Tran <dtran@SSC.UCLA.EDU>
Subject: replica stuck in NEW state

Hi,

Just added a nw5.1 server into existing tree.

Master is a nw5.0+sp6a+os5pt2a+wsock4f.  NDS 8.78. Dsrepair 10210.24

New server is a nw51+sp5 running Edir8.6.2 with sp2.  NDS 10330.03.
Dsrepair 10210.31

I added a R/W replica to the server and it is stuck in "new" state.
I've try various things without success.

DStrace screen on "master" is showing error inconstent database (-618).


DSrepair --> report syn status is showing -603 & -618 on the new server.

Any ideas on how to resolve this?

Thanks
Daniel Tran - dtran@ssc.ucla.edu

------------------------------

Date:    Wed, 30 Oct 2002 12:12:53 -0800
From:    Jeff Groetsema <jgroetsema@UOP.EDU>
Subject: DHCP and VLANs

All,

Has anyone used the (Novell) DHCP server in conjunction with VLANs?  We have an \
upgrade coming up in which we will replace our core switch with a layer 3 switch and \
implement VLANs, each with it's own subnet.  In the past, I've bound IP addresses \
from each subnet to the DHCP server so that it would be able to hand out addresses to \
that subnet.  How does this work with VLANs?  If we have 23 VLANs, do I need to bind \
an IP from each VLAN (subnet)?  There has been talk from our main campus about using \
a "helper" address on the main router that points to the DHCP server.  Does this \
"helper" address negate the need for multiple bindings?

This brings up another series of questions related to the scopes needed.  I'm \
expecting that I'll need to create a scope for each subnet (VLAN), but if this \
"helper" address is used, how does the DHCP server know which subnet scope to \
allocate an address from?

I would be very greatfull for any information anyone can pass along, or any sources \
of information anyone can point me to.

Thanks in advance for any help!

Jeff

------------------------------

Date:    Wed, 30 Oct 2002 14:16:33 -0600
From:    Peter Van Lone <Peter.VanLone@MBTMADISON.COM>
Subject: Re: DHCP and VLANs

Very simple. You don NOT need to bind an IP on the server for each vlan.
Simply create the Subnet Address range for each subnet, setup options,
etdc .....

The router/switch will have the dhcp server addr as it's helper addr,
and any dhcp request broadcast on any vlan will get properly forwarded.
The dhcp server knows which range to pull the addr from because the
forwarded broadcast will be from that subnet 

peter

> -----Original Message-----
> From: Jeff Groetsema [mailto:jgroetsema@UOP.EDU]
> Sent: Wednesday, October 30, 2002 2:13 PM
> To: NOVELL@LSV.SYR.EDU
> Subject: DHCP and VLANs
> 
> All,
> 
> Has anyone used the (Novell) DHCP server in conjunction with VLANs?
We
> have an upgrade coming up in which we will replace our core switch
with a
> layer 3 switch and implement VLANs, each with it's own subnet.  In the
> past, I've bound IP addresses from each subnet to the DHCP server so
that
> it would be able to hand out addresses to that subnet.  How does this
work
> with VLANs?  If we have 23 VLANs, do I need to bind an IP from each
VLAN
> (subnet)?  There has been talk from our main campus about using a
"helper"
> address on the main router that points to the DHCP server.  Does this
> "helper" address negate the need for multiple bindings?
> 
> This brings up another series of questions related to the scopes
needed.
> I'm expecting that I'll need to create a scope for each subnet (VLAN),
but
> if this "helper" address is used, how does the DHCP server know which
> subnet scope to allocate an address from?
> 
> I would be very greatfull for any information anyone can pass along,
or
> any sources of information anyone can point me to.
> 
> Thanks in advance for any help!
> 
> Jeff

------------------------------

Date:    Wed, 30 Oct 2002 15:22:15 -0500
From:    "Leone, Michael" <MLeone@CONTRIBUTIONSHIP.COM>
Subject: Re: Novell Certificates for "external" use.

This message is in MIME format. Since your mail reader does not understand
this format, some or all of this message may not be legible.



I did that to make a self-signed cert for my Win2K Terminal Server to use,
so that I can use the TSAC client to do TS in a web browser over SSL. IIS
didn't mind a bit; it thinks it's a cert .. and it is. :-) Mind you, all the
connecting clients get that annoying "Cert can't be verified" warning, even
after you import the cert into IE, but since the users are all employees, we
just tell them to ignore it.

>>> AHidalgo@SALUD.UNM.EDU 10/30/02 01:59PM >>>
It's pretty simple.

1) Use the native web server to request a CSR
2) Use the CSR with ConsoleOne to Create the cert
3) Plug the cert into the native web server

-a

Al Hidalgo, MCNE
Senior Analyst
Information Systems
University Hospitals
ahidalgo@salud.unm.edu

>>> ACQUISTJ@LAN.NEWPALTZ.EDU 10/30/02 11:52:37 AM >>>
We have several non NW servers that may need certificates for SSL.
Can
the Novell Certificate Server/NDS, be coaxed into generating
certificates that other servers can use?  If so, how?

-----------------------------------------
Joe Acquisto
SUNY New Paltz
845-257-3134 (V)
845-257-6900 (F)
---------------------------------------------------
http://www.congress.org
http://www.tompaine.com
---------------------------------------------------

[Attachment #7 (text/html)]

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 3.2//EN">
<HTML>
<HEAD>
<META HTTP-EQUIV="Content-Type" CONTENT="text/html; charset=iso-8859-1">
<META NAME="Generator" CONTENT="MS Exchange Server version 5.5.2653.12">
<TITLE>RE: Novell Certificates for &quot;external&quot; use.</TITLE>
</HEAD>
<BODY>

<P><FONT SIZE=2>I did that to make a self-signed cert for my Win2K Terminal Server to \
use, so that I can use the TSAC client to do TS in a web browser over SSL. IIS didn't \
mind a bit; it thinks it's a cert .. and it is. :-) Mind you, all the connecting \
clients get that annoying &quot;Cert can't be verified&quot; warning, even after you \
import the cert into IE, but since the users are all employees, we just tell them to \
ignore it.</FONT></P>

<P><FONT SIZE=2>&gt;&gt;&gt; AHidalgo@SALUD.UNM.EDU 10/30/02 01:59PM \
&gt;&gt;&gt;</FONT> <BR><FONT SIZE=2>It's pretty simple.</FONT>
</P>

<P><FONT SIZE=2>1) Use the native web server to request a CSR</FONT>
<BR><FONT SIZE=2>2) Use the CSR with ConsoleOne to Create the cert</FONT>
<BR><FONT SIZE=2>3) Plug the cert into the native web server</FONT>
</P>

<P><FONT SIZE=2>-a</FONT>
</P>

<P><FONT SIZE=2>Al Hidalgo, MCNE</FONT>
<BR><FONT SIZE=2>Senior Analyst</FONT>
<BR><FONT SIZE=2>Information Systems</FONT>
<BR><FONT SIZE=2>University Hospitals</FONT>
<BR><FONT SIZE=2>ahidalgo@salud.unm.edu</FONT>
</P>

<P><FONT SIZE=2>&gt;&gt;&gt; ACQUISTJ@LAN.NEWPALTZ.EDU 10/30/02 11:52:37 AM \
&gt;&gt;&gt;</FONT> <BR><FONT SIZE=2>We have several non NW servers that may need \
certificates for SSL.</FONT> <BR><FONT SIZE=2>Can</FONT>
<BR><FONT SIZE=2>the Novell Certificate Server/NDS, be coaxed into generating</FONT>
<BR><FONT SIZE=2>certificates that other servers can use?&nbsp; If so, how?</FONT>
</P>

<P><FONT SIZE=2>-----------------------------------------</FONT>
<BR><FONT SIZE=2>Joe Acquisto</FONT>
<BR><FONT SIZE=2>SUNY New Paltz</FONT>
<BR><FONT SIZE=2>845-257-3134 (V)</FONT>
<BR><FONT SIZE=2>845-257-6900 (F)</FONT>
<BR><FONT SIZE=2>---------------------------------------------------</FONT>
<BR><FONT SIZE=2><A HREF="http://www.congress.org" \
TARGET="_blank">http://www.congress.org</A></FONT> <BR><FONT SIZE=2><A \
HREF="http://www.tompaine.com" TARGET="_blank">http://www.tompaine.com</A></FONT> \
<BR><FONT SIZE=2>---------------------------------------------------</FONT> </P>

</BODY>
</HTML>


------------------------------

Date:    Wed, 30 Oct 2002 12:23:45 -0800
From:    Daniel Tran <dtran@SSC.UCLA.EDU>
Subject: Re: DHCP and VLANs

Jeff,
I don't run dhcp server on netware but I believe the same concept should
apply.
What you need is to setup various DHCP scopes on the DHCP server (each
scope constitute a diffrent subnet).
On main router (if cisco), you would add ip helper-address <ip of your
dhcp server>

You shouln't have to bind 23 times for 23 vlans.

Daniel Tran - dtran@ssc.ucla.edu

> -----Original Message-----
> From: Novell LAN Interest Group [mailto:NOVELL@LSV.SYR.EDU]
> On Behalf Of Jeff Groetsema
> Sent: Wednesday, October 30, 2002 12:13 PM
> To: NOVELL@LSV.SYR.EDU
> Subject: DHCP and VLANs
>
>
> All,
>
> Has anyone used the (Novell) DHCP server in conjunction with
> VLANs?  We have an upgrade coming up in which we will replace
> our core switch with a layer 3 switch and implement VLANs,
> each with it's own subnet.  In the past, I've bound IP
> addresses from each subnet to the DHCP server so that it
> would be able to hand out addresses to that subnet.  How does
> this work with VLANs?  If we have 23 VLANs, do I need to bind
> an IP from each VLAN (subnet)?  There has been talk from our
> main campus about using a "helper" address on the main router
> that points to the DHCP server.  Does this "helper" address
> negate the need for multiple bindings?
>
> This brings up another series of questions related to the
> scopes needed.  I'm expecting that I'll need to create a
> scope for each subnet (VLAN), but if this "helper" address is
> used, how does the DHCP server know which subnet scope to
> allocate an address from?
>
> I would be very greatfull for any information anyone can pass
> along, or any sources of information anyone can point me to.
>
> Thanks in advance for any help!
>
> Jeff
>

------------------------------

Date:    Wed, 30 Oct 2002 15:37:38 -0500
From:    Bud Durland <bud@MOLDRITEPLASTICS.COM>
Subject: Re: Tree or Server Not Found

Just about every time I've seen this, the problem could be solved by
disabling spanning tree protocol on the switch, or enabling PORTFAST on
Cisco gear.

I did have one instance though, where to make it go away, I had to let
the NIC on the workstations be set to auto-negotiate speed and duplex.
 The switch was locked to 100/half, so that what they always got, but
for some reason when the card was locked down as well we had performance
problems.  This was on IBM pc's with embedded intel networking gear.

Bill Hodges wrote:

>Running client 4.83 in a NW 4.11SP9 environment.  At login, some
>clients always see "tree or server not found", some clients see it
>intermittently, and some clients never see it.
>
>When the error occurs, clicking the login screen advanced button
>and reselecting the target tree (although it's already selected)
>allows normal login.
>
>I've read all the TIDs I can find and all other documents located with
>a multisite search engine.  So far, nothing has helped.
>
>Does anyone have any idea of what might be happening?
>
>
>

--
-------------------------------------------------------------------
"Pinky, are you pondering what I'm pondering?"
"I think so Brain, but burlap chafes me so"
-------------------------------------------------------------------
Bud Durland, CNE                                 Mold-Rite Plastics
Network Administrator                         http://www.mrpcap.com
-------------------------------------------------------------------

------------------------------

End of NOVELL Digest - 29 Oct 2002 to 30 Oct 2002 - Special issue (#2002-449)
*****************************************************************************


[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic