IT分销/经销认证商业智能

【已结贴】Cognos和AD集成,报“未提供名称空间”错误,求助

使用的是Cognos 8 的configuration,在安全-》身份认证 内建立新名称空间。参照另一台配置好的机器填入各项参数。测试该名称空间时报


[错误] CAM-AAA-0146 未提供名称空间“CHINALIFE”。
CAM-AAA-0064 函数“CAM_AAA_Configure2”失败。
CAM-AAA-0089 未初始化提供程序。
CAM-AAA-0036 无法进行身份验证,因为凭证无效。

请高手不吝赐教,多谢了。
参与5

5同行回答

漂流木DW漂流木DW技术经理省立医院
使用的是Cognos 8 的configuration,在安全-》身份认证 内建立新名称空间。参照另一台配置好的机器填入各项参数。测试该名称空间时报[错误] CAM-AAA-0146 未提供名称空间“CHINALIFE”。CAM-AAA-0064 函数“CAM_A ...joshuaduan 发表于 2010-9-30 09:49 是否加入了域,就...显示全部
使用的是Cognos 8 的configuration,在安全-》身份认证 内建立新名称空间。参照另一台配置好的机器填入各项参数。测试该名称空间时报


[错误] CAM-AAA-0146 未提供名称空间“CHINALIFE”。
CAM-AAA-0064 函数“CAM_A ...
joshuaduan 发表于 2010-9-30 09:49

是否加入了域,就是在我的电脑-》属性里面去设置的。没有遇到过。咯咯。收起
医药 · 2010-10-13
浏览846
cognoszhangcognoszhang固定收益智能研究组临时负责人、大数据研究员天弘基金管理有限公司
4# joshuaduan (PS:如果是自己写的认证sso程序,或可能是jar包不全。)显示全部
4# joshuaduan


(PS:如果是自己写的认证sso程序,或可能是jar包不全。)收起
基金 · 2010-10-12
浏览793
joshuaduanjoshuaduan技术经理IBM
问题解决:原因是这台机器未加到AD域中。显示全部
问题解决:原因是这台机器未加到AD域中。收起
IT分销/经销 · 2010-10-12
浏览811
joshuaduanjoshuaduan技术经理IBM
Problem(Abstract) When testing an AD Authentication Provider configured on a Workgroup Server that points to an Active Directory(AD) Domain Controller fails with the following error:    Symptom ['Active Directory']1. [ ERROR ] CAM...显示全部
Problem(Abstract)
When testing an AD Authentication Provider configured on a Workgroup Server that points to an Active Directory(AD) Domain Controller fails with the following error:  
  
Symptom
['Active Directory']
1. [ ERROR ] CAM-AAA-0146 The namespace 'AD' is not available.
CAM-AAA-0064 The function 'CAM_AAA_Configure2' failed.
CAM-AAA-0089 The provider is not initialized.
ADSI Error HRESULT Returns:
ERROR_DS_SERVER_DOWN
ADSI Error:
System Error:
The server is not operational.
CAM-AAA-0124 The Active Directory function call to 'getDomainTreesTopology' failed.  
  



Environment
Cognos 8.3 running in a Windows 2003 R2 SP2 WORKGROUP with the AD Authentication set to a Windows 2003 R2 SP2 Domain  
  

Resolving the problem
On the Workgroup Server:
Enable the following Security Options using the Group Policy Editor:
Network security: LAN Manager authentication level: Send LM & NTLM responses,
Network security: LDAP client signing requirements - Negotiate signing.
Use the ipconfig to Flush DNS and delete all ARP cache.
On the Domain Controller:
Enable the following Security Options using the Group Policy Editor:
Network security: LAN Manager authentication level: Send LM & NTLM responses,
Network security: LDAP client signing requirements - Negotiate signing.
User rights Assignment: Create a token object - Administrators, Local service, network service

Steps on the Workgroup:
1. Start - Run - GPEDIT.MSC
2. Navigate to: / Computer Configuration/ Windows Settings / Security Settings / Local Policies / Security Options
3. Make the following changes: Network security: LAN Manager authentication level: Send LM & NTLM responses, Network security: LDAP client signing requirements - Negotiate signing.
4. Add the DNS Suffix to the Workgroup Server Name: Rightclick My Computer - Properties - Computer Name - Change - More - add any Domain Suffix.
5. Open a DOS window and type: ipconfig /FLUSHDNS, ipconfig /REGISTERDNS, arp -d

Steps On the Domain Controller:
1. Start - Run - GPEDIT.MSC
2. Navigate to: / Computer Configuration/ Windows Settings / Security Settings / Local Policies / Security Options
3. Make the following changes: Network security: LAN Manager authentication level: Send LM & NTLM responses, Network security: LDAP client signing requirements - Negotiate signing.
4. Make the following changes: User rights Assignment: Create a token object - Administrators, Local service, network service收起
IT分销/经销 · 2010-10-01
浏览927
贝克汉姆贝克汉姆软件开发工程师IBM
测试configuration 的新名称空间显示全部
测试configuration 的新名称空间收起
互联网服务 · 2010-09-30
浏览804

提问者

joshuaduan
技术经理IBM

相关问题

相关资料

问题状态

  • 发布时间:2010-09-30
  • 关注会员:0 人
  • 问题浏览:4602
  • 最近回答:2010-10-13
  • X社区推广