cancel
Showing results for 
Search instead for 
Did you mean: 

Admin console opening in Backup Archive and Restore

Tekkali
Level 4

Hi All

Unable to login netbackup admin console..

Linux LDAP Master server. trying to login . one windows jump server login and in that configured java console 7.6.1.

# more auth.conf
root ADMIN=ALL JBP=ALL
# EBR ADMIN
xxxxx ADMIN=ALL JBP=ALL
corp\zzzz ADMIN=ALL JBP=ALL
xxxxx ADMIN=ALL JBP=ALL
xxxxx ADMIN=ALL JBP=ALL
xxxxx ADMIN=ALL JBP=ALL
* ADMIN=JBP JBP=ENDUSER+BU+ARC

Opening backup and archive window uning zzzz user. with corp ( domain corp\zzzz ) using time it's opening console but active monior not opening.  and media servers list not showing. without domain (zzzz) using time it's opening backup and archive window.

 

Added root user also domain name that time it's opening Java Admin console. but my user not opening activity monitor and media servers list.

 

logs pasted hear. Please any one suggest..

[root@bkpmas-nbu root]# more log.033115

02:21:22.503 [23028] <16> session_dispatch: Request count = 0 tag = 510

02:21:22.504 [23028] <2> populateCertificatePath: Certificate to be used for SSL [/usr/openv/var/vxss/credentials/10.250.255.6]

02:21:22.504 [23028] <4> command_SECURE_CHANNEL_INIT: Using certificate [/usr/openv/var/vxss/credentials/10.250.255.6] and Responding SECURE_CHANNEL_PROCEED.

02:21:24.524 [23028] <4> session_secure_lookup: Initiating SSL Accept

02:21:24.525 [23028] <2> populateCertificatePath: Certificate to be used for SSL [/usr/openv/var/vxss/credentials/10.250.255.6]

02:21:24.566 [23028] <16> VssAccept: (../../libVnbat/vss_auth.cpp,2226): vrtsAtSecConnAcceptEx returned FAILURE

02:21:24.566 [23028] <16> tls_accept: io.c.3291: VssAccept( ) failed

02:21:24.566 [23028] <16> session_secure_lookup: FAILED!! to accept SSL connection from client.Possibly this could be caused by a network blip, JavaGUI unable to authenticate X509 certificate that w

as presented OR user of JavaGUI interactively selected __NOT__ to trust X509 certificate presented.

02:21:24.566 [23028] <16> session_dispatch: session_secure_lookup FAILED!!! fd =  0

02:21:24.746 [23031] <16> session_dispatch: Request count = 0 tag = 510

02:21:24.747 [23031] <2> populateCertificatePath: Certificate to be used for SSL [/usr/openv/var/vxss/credentials/10.250.255.6]

02:21:24.747 [23031] <4> command_SECURE_CHANNEL_INIT: Using certificate [/usr/openv/var/vxss/credentials/10.250.255.6] and Responding SECURE_CHANNEL_PROCEED.

02:21:24.962 [23031] <4> session_secure_lookup: Initiating SSL Accept

02:21:24.962 [23031] <2> populateCertificatePath: Certificate to be used for SSL [/usr/openv/var/vxss/credentials/10.250.255.6]

02:21:24.973 [23031] <4> tls_accept: io.c.3300: SSL Channel established for fd[0]

02:21:24.974 [23031] <4> session_secure_lookup: SSL Connection Accepted!

02:21:25.568 [23023] <16> poll_listen: can't find file descriptor in polling table

02:21:25.569 [23023] <4> bpjava-msvc: NEW_LOG closing debugFD and seting NB_INVALID

02:21:56.132 [23031] <16> session_dispatch: Request count = 1 tag = 118

02:21:56.364 [23031] <16> session_dispatch: Request count = 2 tag = 101

02:21:56.887 [23031] <16> command_LOGON_TO_MSERVER: putenv(BPJAVA_MASTER_IPC_STRING=) failed

02:22:17.890 [23031] <16> readCharByChar: read failed(?), sockFd = 0, count = 0 (want = 3072),  errno = 104 = Connection reset by peer

02:22:17.890 [23031] <16> session_dispatch: recv failed, sockFd = 0, errno = 104 = Connection reset by peer

02:22:17.890 [23031] <4> bpjava-msvc: NEW_LOG closing debugFD and seting NB_INVALID

02:22:18.893 [23030] <16> poll_listen: can't find file descriptor in polling table

02:22:18.893 [23030] <4> bpjava-msvc: NEW_LOG closing debugFD and seting NB_INVALID

21:58:28.601 [2592] <16> session_dispatch: Request count = 0 tag = 510

21:58:28.601 [2592] <2> populateCertificatePath: Certificate to be used for SSL [/usr/openv/var/vxss/credentials/10.250.255.6]

21:58:28.601 [2592] <4> command_SECURE_CHANNEL_INIT: Using certificate [/usr/openv/var/vxss/credentials/10.250.255.6] and Responding SECURE_CHANNEL_PROCEED.

21:58:29.464 [2592] <4> session_secure_lookup: Initiating SSL Accept

21:58:29.464 [2592] <2> populateCertificatePath: Certificate to be used for SSL [/usr/openv/var/vxss/credentials/10.250.255.6]

21:58:29.518 [2592] <4> tls_accept: io.c.3300: SSL Channel established for fd[0]

21:58:29.518 [2592] <4> session_secure_lookup: SSL Connection Accepted!

21:58:29.541 [2592] <16> session_dispatch: Request count = 1 tag = 118

21:58:29.788 [2592] <16> session_dispatch: Request count = 2 tag = 101

21:58:30.056 [2592] <16> command_LOGON_TO_MSERVER: putenv(BPJAVA_MASTER_IPC_STRING=) failed

21:58:49.902 [2592] <16> readCharByChar: read failed(?), sockFd = 0, count = 0 (want = 3072),  errno = 104 = Connection reset by peer

21:58:49.902 [2592] <16> session_dispatch: recv failed, sockFd = 0, errno = 104 = Connection reset by peer

21:58:49.902 [2592] <4> bpjava-msvc: NEW_LOG closing debugFD and seting NB_INVALID

21:58:50.906 [2587] <16> poll_listen: can't find file descriptor in polling table

21:58:50.906 [2587] <4> bpjava-msvc: NEW_LOG closing debugFD and seting NB_INVALID

[root@bkpmas-nbu root]#

 

 

 

 

 

 

1 ACCEPTED SOLUTION

Accepted Solutions

A_K1
Level 3
Partner Accredited Certified

Hi

A few days ago I had the Problem that the Java GUI only opened the BAR GUI. The Problem was that on that Windows Host on the ./NetBackup/logs/admin folder the user "everyone" with "full access" was missing.

http://www.symantec.com/docs/TECH158208

 

View solution in original post

5 REPLIES 5

GulzarShaikhAUS
Level 6
Partner Accredited Certified

If none of the said configured accounts are working, auth.conf must have been garbled. You can try to recreate it. First try to get one user working. root would be the best to make work and then you can add other users entries so make them work.

Also while creating the entries in auth.conf make proper use of cases as *nix are case sensative.

 

Tekkali
Level 4

Hi Sym

 

Thank for response.

Can I rececreate auth.conf file ? what is *nix ?

Incase recreate auth file required netbackup services refresh ?

Thanks

GulzarShaikhAUS
Level 6
Partner Accredited Certified

Hi

You can rename(move the file as auth.conf_old) and then just create an empty file. Then you can populate the file with exact same contents as old auth.conf file. To begin with just add the entry for root and then try to connect using root account. If it works then proceed with other accounts.

root ADMIN=ALL JBP=ALL

*nix is used for Unix/Linux...

No service refresh is required. Let me know if this works. If does not then you can provide with following log files from the machine from where you are trying to login.

bpjava-msvc and bpjava-usvc

JK6035
Not applicable
Partner Accredited

Check to see if "/usr/openv/var/vxss/credentials/" on the Master contains certificates with the correct Master name, short and full.  

A_K1
Level 3
Partner Accredited Certified

Hi

A few days ago I had the Problem that the Java GUI only opened the BAR GUI. The Problem was that on that Windows Host on the ./NetBackup/logs/admin folder the user "everyone" with "full access" was missing.

http://www.symantec.com/docs/TECH158208