Demo Discussion
Forum Config Examples Contributions Vulnerabilities
  Discussion forum about ELOG, Page 553 of 808  Not logged in ELOG logo
New entries since:Thu Jan 1 01:00:00 1970
ID Date Icon Author Author Email Categorydown OS ELOG Version Subject
  67491   Fri May 3 19:09:45 2013 Reply Hal Proctorhproctor2@gmail.comInfoWindows2.9.2Re: Kerberos on VM server 64bit

Stefan Ritt wrote:

Hal Proctor wrote:

 I have a logbook installed on a Windows 64 bit VM server 2008 R2 and can access it fine using the password file.  However when using Kerberos it does not authenticate correctly.  I installed Kerberos and pointed it to the realm an domain controller.  Using KINIT command line it appears to accept my password.  Any help is appriciated.  Perhaps some other diagnostics i could try against the kerberos install

Here is global settings:

port = 49212

ssl = 1 

url = https://my-elog.domain.com:49212/

Authentication = Kerberos, file

Kerberos Realm = DOMAIN.COM

Admin User = me

Max content length = 10485760

Password file = pw.txt

Allow password change = 1  (perhaps this is an issue???)

 

Also...when adding users to the logbook, do you leave the password blank if using Kerberos?

You can leave the password just blank.

The "Allow password change = 1" does not make any difference. It works here even with this option.

So I have no idea why you have that problem. Does it work on another computer, i.e. is it related to the 64 bit VM machine?

Best regards,
Stefan 

 

The kerberos install, installed the Network Identity Manager and placed krb5 config in my windows directory.  Can a server run lsass.exe only?   or does the krb5 config file and Network Identity Manager need to be on the server?

 

  67492   Fri May 3 19:27:53 2013 Reply Hal Proctorhproctor2@gmail.comInfoWindows2.9.2Re: Kerberos on VM server 64bit

Hal Proctor wrote:

Stefan Ritt wrote:

Hal Proctor wrote:

 I have a logbook installed on a Windows 64 bit VM server 2008 R2 and can access it fine using the password file.  However when using Kerberos it does not authenticate correctly.  I installed Kerberos and pointed it to the realm an domain controller.  Using KINIT command line it appears to accept my password.  Any help is appriciated.  Perhaps some other diagnostics i could try against the kerberos install

Here is global settings:

port = 49212

ssl = 1 

url = https://my-elog.domain.com:49212/

Authentication = Kerberos, file

Kerberos Realm = DOMAIN.COM

Admin User = me

Max content length = 10485760

Password file = pw.txt

Allow password change = 1  (perhaps this is an issue???)

 

Also...when adding users to the logbook, do you leave the password blank if using Kerberos?

You can leave the password just blank.

The "Allow password change = 1" does not make any difference. It works here even with this option.

So I have no idea why you have that problem. Does it work on another computer, i.e. is it related to the 64 bit VM machine?

Best regards,
Stefan 

 

The kerberos install, installed the Network Identity Manager and placed krb5 config in my windows directory.  Can a server run lsass.exe only?   or does the krb5 config file and Network Identity Manager need to be on the server?

 

 Installed both on a Windows 2003 R2 server (32bit) and Kerberos not authenticating, yet gievs me a ticket thru kinit.

  67496   Wed May 8 19:17:09 2013 Reply Gian Henriquesgianlhsdm@gmail.comInfoWindows292-2Re: Blockying user access

Garret Delaronde wrote:

Gian Henriques wrote:

 How can I block access to some tools (like edit, erase, config...) for each user? I want only admin users can edit, erase , etc. 

 

I want know too, how can I erase configuration of SMTP?  I make a test with the "elogd -t" command and now every time I create a new entry in my log book I receve the mensage of error to send email, cause I don't configure a SMTP host. 

 Hello, you can use the "Deny" flag in the config file for each logbook.

 

Deny <function> = <user>

Example: Deny Edit = Gian

simply add as many deny functions as you would like. Its a bit of work if you have a lot of logbooks but its the easiest solution.

Hope that helps.

 

Elog Syntax guide is helpful for this stuff too.

 Thanks for help. It work's. 

 But I want to know if I can block a logbook from a user. For example I have a logbook named "Store". I want only users of the vendors have access to this log. How can I do it? 

I didn't find this in manual.

  67497   Wed May 8 23:15:34 2013 Reply Gian Henriquesgianlhsdm@gmail.comInfoWindows292-2Re: Blockying user access

Gian Henriques wrote:

Garret Delaronde wrote:

Gian Henriques wrote:

 How can I block access to some tools (like edit, erase, config...) for each user? I want only admin users can edit, erase , etc. 

 

I want know too, how can I erase configuration of SMTP?  I make a test with the "elogd -t" command and now every time I create a new entry in my log book I receve the mensage of error to send email, cause I don't configure a SMTP host. 

 Hello, you can use the "Deny" flag in the config file for each logbook.

 

Deny <function> = <user>

Example: Deny Edit = Gian

simply add as many deny functions as you would like. Its a bit of work if you have a lot of logbooks but its the easiest solution.

Hope that helps.

 

Elog Syntax guide is helpful for this stuff too.

 Thanks for help. It work's. 

 But I want to know if I can block a logbook from a user. For example I have a logbook named "Store". I want only users of the vendors have access to this log. How can I do it? 

I didn't find this in manual.

 The only way I find for this trouble is using the "Login user". But we have something best?

  67498   Fri May 10 17:21:50 2013 Reply Garret Delarondegarret.delaronde@gmail.comInfoWindows292-2Re: Blockying user access

Gian Henriques wrote:

Gian Henriques wrote:

Garret Delaronde wrote:

Gian Henriques wrote:

 How can I block access to some tools (like edit, erase, config...) for each user? I want only admin users can edit, erase , etc. 

 

I want know too, how can I erase configuration of SMTP?  I make a test with the "elogd -t" command and now every time I create a new entry in my log book I receve the mensage of error to send email, cause I don't configure a SMTP host. 

 Hello, you can use the "Deny" flag in the config file for each logbook.

 

Deny <function> = <user>

Example: Deny Edit = Gian

simply add as many deny functions as you would like. Its a bit of work if you have a lot of logbooks but its the easiest solution.

Hope that helps.

 

Elog Syntax guide is helpful for this stuff too.

 Thanks for help. It work's. 

 But I want to know if I can block a logbook from a user. For example I have a logbook named "Store". I want only users of the vendors have access to this log. How can I do it? 

I didn't find this in manual.

 The only way I find for this trouble is using the "Login user". But we have something best?

 I haven't found a specific way to block viewing a log book. 

I use the top groups settings to keep users in the logbooks they only need access to.

Example

Top Group = Logbook Group1, Logbook Group 2

Group Logbook Group 1 = Logbook1, Logbook2

Group Logbook Group 2 = Logbook3, Logbook4

Then only assign users for logbook1 and logbook2 that you wish to view those logbooks only. They would have to go to the specific top group url in order to view the logbooks.

Then you can go to http://elogurl/(top group)/

And essentially just have the users view the only logbooks they are assigned to.

  67514   Tue May 28 19:01:42 2013 Question Remington Tyler Thorntonrtthornt@indiana.eduInfoLinux2.8-2350hyperlink other elog posts

I am on an experiment that used ELOG for all documentation and meeting notes. In our meeting notes we link to elog posts that had been discussed during the meeting. We had done this by hyperlinking the URL to the entry. Recently we had to move our logbook to another machine and so none of our hyperlinks work since the URLs have changed. I noticed that when one creates a new entry in the subject they can reference another post. Is there a way to link another elog in the body of the elog by using its logbook name and id number without having to use a URL?

Thanks in advance

  67516   Wed May 29 14:57:23 2013 Reply Andreas Luedekeandreas.luedeke@psi.chInfoLinux2.8-2350Re: hyperlink other elog posts

Remington Tyler Thornton wrote:

I am on an experiment that used ELOG for all documentation and meeting notes. In our meeting notes we link to elog posts that had been discussed during the meeting. We had done this by hyperlinking the URL to the entry. Recently we had to move our logbook to another machine and so none of our hyperlinks work since the URLs have changed. I noticed that when one creates a new entry in the subject they can reference another post. Is there a way to link another elog in the body of the elog by using its logbook name and id number without having to use a URL?

Thanks in advance

This is one of the rare cases where it helps to read the manual: https://midas.psi.ch/elog/userguide.html#add (You may need to upgrade to elog 2.9)

If you want to replace the old URLs with the new ones, you can edit the logbook files with the entries. The attached script allows you to do so easily. But be careful, try it on a copy of your data first.

 
Detect language » English
 
 
Detect language » English
 
Using:
regreplace "<old-url>" "<new-url>" *a.log
 
I hope this helps.
Andreas
Attachment 1: regreplace
#!/bin/bash
if [ $# -lt 3 ]
then
	echo "using: $0 <search-for> <replace-with> <file-list>"
	exit
fi
if [ "$1" = "-f" ]
then 
	flag="-f"
	shift 1
else
	flag="-i"
fi
search="$(echo "$1"|awk '{gsub("\\","\\\\");gsub("/","\\/");print $0}')"
replace="$(echo "$2"|awk '{gsub("\\","\\\\");gsub("[$]","\\$");gsub("/","\\/");print $0}')"
shift 2
echo "replace \"$search\" with \"$replace\" in the files "
bold=`tput smso`
offbold=`tput rmso`
for file in $(grep -l "$search" "$@")
do
	tmp=/tmp/regreplace_$(basename $file)
	sed "s/${search}/${replace}/g" $file >$tmp
	
	echo "${bold}diffs of $file$offbold ('<' = before, '>' = after)"
	diff $file $tmp
	cp $flag $tmp $file
        rm -f $tmp
done
  67522   Mon Jun 3 15:49:33 2013 Reply Martin Rongenmartin.rongen@rwth-aachen.deInfoLinux2.6.0Re: "full" only changes color

Kees Bol wrote:
Hi,
I have the strange problem that when changing to "full"-diplaymode the output looks the same as with "summary", only the color is different. The texts don't appear.
Any idea what can cause this behaviour?

thanks
Kees Bol



I now have the same problem in 2.9.2. Attached please find the elogd.cfg

Best regards
Martin
Attachment 1: elogd.cfg
[global]
port = 8080
Logbook Tabs=0 ;this is the only logbook here

[EDM beamtime logbook]
Theme = default
Title image URL = http://lx3b58:8888/EDM+beamtime+logbook/
Password file = passwd
Self register = 0
Admin user = jedi_admin

Menu commands = New, Reply, Find, Login, Config
Guest menu commands = New, Reply, Find, Login
List Menu commands = New, Find, Help, Logout, Config
Guest List Menu commands = New, Find, Last Day, Help, Login

Attributes = entry type, run number , Start, Stop,  run type, operators, shift, COSY state, DAQ state, comments
List display =Date, entry type, comments, run number, run type, operators, shift, COSY state, DAQ state
Guest List display =Date, entry type, comments, run number, run type, operators, shift, COSY state, DAQ state

Options entry type = run{1}, comment{2}, shift summary{3}, reply{4}
Preset entry type = run
Preset on reply Entry type = reply
Subst on reply comments = Re: $comments
{1,2,3} Options entry type = run{1}, comment{2}, shift summary{3}
{4} Options entry type =  reply
	
Cell Style entry type run = background-color:#b9ca67
Cell Style entry type comment = background-color:#bd9c73
Cell Style entry type shift summary = background-color:#d6b6e6
Cell Style entry type reply = background-color:#5cb8ff

Required Attributes = entry type

{1} Show Attributes Edit= entry type, run number , Start, Stop,  run type, operators, shift, COSY state, DAQ state, comments
{1} Required Attributes = operators, shift, run number, run type, COSY state, DAQ state

{2} Show Attributes Edit= entry type, operators, shift, COSY state, DAQ state, comments
{2} Required Attributes = operators, shift, COSY state, DAQ state

{3} Show Attributes Edit= entry type, operators, shift, COSY state, DAQ state, comments
{3} Required Attributes = operators, shift, COSY state, DAQ state

{4} Show Attributes Edit= entry type, operators, comments, run number, run type
{4} Required Attributes = operators

Options Shift = Morning, Day, Night
Options run type = Test entry, ED SCT
Options COSY state = Problem, Maintenance, Running
Options DAQ state = OK, Faulty

Cell Style COSY state Problem = background-color:red
Cell Style COSY state Maintenance =  background-color:yellow 
Cell Style COSY state Running = background-color:green
Cell Style DAQ state OK = background-color:green
Cell Style DAQ state Faulty = background-color:red

Extendable options = run type

Fixed Attributes Edit = run type, COSY state, DAQ state, entry type, run number, Start, Stop, shift 
Fixed Attributes Reply = entry type, run type, COSY state, DAQ state, entry type, run number, Start, Stop, shift, comments

Page Title = EDM beamtime logbook
Reverse sort = 1
Quick filter = run number

{1} Preset run number = $shell(bash preset_run.sh 2>/dev/null)
;looks up last run number in logbook folder and increments


;Type run number = numeric
Type Start  = datetime
Type Stop = datetime
{1} Preset Start =  $utcdate
{1} Preset Stop =   $utcdate

Thumbnail size=500

Summary lines = 0 ;so it doesnt appear on front page

Search all logbooks = 0

Default encoding = 2 ; html-necessary for latex
Allowed encoding = 4 ; only html allowed

Time format = %A, %B %d, %Y, %H:%M 
{1} Execute new = bash append_root.sh $run number
 ; adds link to root-file

RSS Title = run $comment, posted by $operators on $entry time

; No Email notification
Suppress Email to users = 1

ELOG V3.1.5-3fb85fa6