<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: HIDS agent problem in Operating System - HP-UX</title>
    <link>https://community.hpe.com/t5/operating-system-hp-ux/hids-agent-problem/m-p/3953773#M739892</link>
    <description>Hi Rainer -&lt;BR /&gt;&lt;BR /&gt;It appears the SSL handshake with an agent failed. Have you tried all the suggestions listed in the Troubleshooting section of the Admin Guide?&lt;BR /&gt;&lt;BR /&gt;See&lt;BR /&gt;&lt;A href="http://docs.hp.com/en/5991-6776/aphs01.html#cacjifja" target="_blank"&gt;http://docs.hp.com/en/5991-6776/aphs01.html#cacjifja&lt;/A&gt;&lt;BR /&gt;&lt;A href="http://docs.hp.com/en/5991-6776/aphs01.html#cacjhecj" target="_blank"&gt;http://docs.hp.com/en/5991-6776/aphs01.html#cacjhecj&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;Pierre&lt;BR /&gt;</description>
    <pubDate>Tue, 20 Mar 2007 15:11:08 GMT</pubDate>
    <dc:creator>Pierre Pasturel</dc:creator>
    <dc:date>2007-03-20T15:11:08Z</dc:date>
    <item>
      <title>HIDS agent problem</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/hids-agent-problem/m-p/3953772#M739891</link>
      <description>&lt;BR /&gt;Hi,&lt;BR /&gt;&lt;BR /&gt;my HIDS manager ( HP-UX Host IDS B.03.00) cannot contact the agent systems any longer :&lt;BR /&gt;&lt;BR /&gt;ERROR in TRACE.log is:&lt;BR /&gt;&lt;BR /&gt;MAJOR: initialize ipAddress: X.X.X.X Handshake Exception: java.io.IOException: Broken pipe&lt;BR /&gt;&lt;BR /&gt;The GUI says : No agent available&lt;BR /&gt;&lt;BR /&gt;ids IS running on the agent hosts&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;Any ideas ??&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Thu, 01 Mar 2007 07:34:55 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/hids-agent-problem/m-p/3953772#M739891</guid>
      <dc:creator>Rainer von Bongartz</dc:creator>
      <dc:date>2007-03-01T07:34:55Z</dc:date>
    </item>
    <item>
      <title>Re: HIDS agent problem</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/hids-agent-problem/m-p/3953773#M739892</link>
      <description>Hi Rainer -&lt;BR /&gt;&lt;BR /&gt;It appears the SSL handshake with an agent failed. Have you tried all the suggestions listed in the Troubleshooting section of the Admin Guide?&lt;BR /&gt;&lt;BR /&gt;See&lt;BR /&gt;&lt;A href="http://docs.hp.com/en/5991-6776/aphs01.html#cacjifja" target="_blank"&gt;http://docs.hp.com/en/5991-6776/aphs01.html#cacjifja&lt;/A&gt;&lt;BR /&gt;&lt;A href="http://docs.hp.com/en/5991-6776/aphs01.html#cacjhecj" target="_blank"&gt;http://docs.hp.com/en/5991-6776/aphs01.html#cacjhecj&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;Pierre&lt;BR /&gt;</description>
      <pubDate>Tue, 20 Mar 2007 15:11:08 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/hids-agent-problem/m-p/3953773#M739892</guid>
      <dc:creator>Pierre Pasturel</dc:creator>
      <dc:date>2007-03-20T15:11:08Z</dc:date>
    </item>
    <item>
      <title>Re: HIDS agent problem</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/hids-agent-problem/m-p/3953774#M739893</link>
      <description>Pierre,&lt;BR /&gt;&lt;BR /&gt;thanks for the hint, the certificates were expired.&lt;BR /&gt;&lt;BR /&gt;I created new ones as described, but still have this error on the management system when trying to poll the client:&lt;BR /&gt;&lt;BR /&gt;Wed Mar 21 10:57:04 2007: libcomm: pid=26511 thread_id=2: accept_connection: Handshake error (ssl_err=1,ret=0) as server&lt;BR /&gt;2:error:14094416:SSL routines:SSL3_READ_BYTES:sslv3 alert certificate unknown:s3_pkt.c:1052:SSL alert number 46&lt;BR /&gt;Wed Mar 21 10:57:04 2007: libcomm: pid=26511 thread_id=2: read_thread: error accepting connection, errno=607&lt;BR /&gt;</description>
      <pubDate>Wed, 21 Mar 2007 04:54:33 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/hids-agent-problem/m-p/3953774#M739893</guid>
      <dc:creator>Rainer von Bongartz</dc:creator>
      <dc:date>2007-03-21T04:54:33Z</dc:date>
    </item>
    <item>
      <title>Re: HIDS agent problem</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/hids-agent-problem/m-p/3953775#M739894</link>
      <description>Hi Rainer -&lt;BR /&gt;&lt;BR /&gt;Did you make sure both the admin and agent certs were not expired?&lt;BR /&gt;&lt;BR /&gt;On the admin system, run the following:&lt;BR /&gt;% /opt/ids/bin/IDS_checkAdminCert&lt;BR /&gt;% cksum /etc/opt/ids/certs/admin/cacert.pem&lt;BR /&gt;&lt;BR /&gt;On the agent system, run the following:&lt;BR /&gt;% /opt/ids/bin/IDS_checkAgentCert&lt;BR /&gt;% cksum /etc/opt/ids/certs/agent/cacert.pem&lt;BR /&gt;&lt;BR /&gt;The checksums for .../admin/cacert and .../agent/cacert should match.&lt;BR /&gt;&lt;BR /&gt;If the admin certs expired, and you re-ran IDS_genAdminKeys, you will need to regenerate certs for the agent also by running IDS_genAgentCerts and then IDS_importAgentCerts on the agent system to install them.&lt;BR /&gt;&lt;BR /&gt;Pierre&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Wed, 21 Mar 2007 12:01:50 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/hids-agent-problem/m-p/3953775#M739894</guid>
      <dc:creator>Pierre Pasturel</dc:creator>
      <dc:date>2007-03-21T12:01:50Z</dc:date>
    </item>
    <item>
      <title>Re: HIDS agent problem</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/hids-agent-problem/m-p/3953776#M739895</link>
      <description>Piere,&lt;BR /&gt;&lt;BR /&gt;I checked the checksums and the match.&lt;BR /&gt;I re-created the keys and distiributed them but the errors stays the same&lt;BR /&gt;&lt;BR /&gt;On the admin system it says:&lt;BR /&gt;HP-UX Host IDS Root CA Certificate:&lt;BR /&gt;Valid from: Thu Mar 22 09:54:44 CET 2007 until: Thu Feb 19 09:54:44 CET 2009&lt;BR /&gt;&lt;BR /&gt;HP-UX Host IDS Admin Certificate:&lt;BR /&gt;Valid from: Thu Mar 22 09:55:10 CET 2007 until: Thu Feb 19 09:55:10 CET 2009&lt;BR /&gt;&lt;BR /&gt;$ cksum /etc/opt/ids/certs/admin/cacert.pem&lt;BR /&gt;2699799611 1082 /etc/opt/ids/certs/admin/cacert.pem&lt;BR /&gt;&lt;BR /&gt;On the agent system it says.&lt;BR /&gt;HP-UX Host IDS Root CA Certificate:&lt;BR /&gt;Valid from: Mar 22 08:54:44 2007 GMT until: Feb 19 08:54:44 2009 GMT&lt;BR /&gt;&lt;BR /&gt;HP-UX Host IDS Agent Certificate on host nova:&lt;BR /&gt;Valid from: Mar 22 09:10:52 2007 GMT until: Feb 19 09:10:52 2009 GMT&lt;BR /&gt;ids@nova $&lt;BR /&gt;&lt;BR /&gt;2699799611 1082 /etc/opt/ids/certs/agent/cacert.pem&lt;BR /&gt;&lt;BR /&gt;so everythings looks OK. &lt;BR /&gt;Any further hints ??&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Thu, 22 Mar 2007 08:56:06 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/hids-agent-problem/m-p/3953776#M739895</guid>
      <dc:creator>Rainer von Bongartz</dc:creator>
      <dc:date>2007-03-22T08:56:06Z</dc:date>
    </item>
    <item>
      <title>Re: HIDS agent problem</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/hids-agent-problem/m-p/3953777#M739896</link>
      <description>Hi Rainer - &lt;BR /&gt;&lt;BR /&gt;Sorry for the late response.&lt;BR /&gt;&lt;BR /&gt;What is the output of the following commands on both the admin and agent system?&lt;BR /&gt;&lt;BR /&gt;% date&lt;BR /&gt;% ls -lR /etc/opt/ids/certs&lt;BR /&gt;&lt;BR /&gt;Can the admin (idsgui (GUI) and idsadmin CLUI) connect to an agent running on the admin system? I assume you are trying to connect to a remote agent.&lt;BR /&gt;&lt;BR /&gt;Run "idsadmin -c 3 -a &lt;AGENT-HOST-YOU-CAN&gt; |&amp;amp; tee /var/tmp/idsadmin.log" and run the "ping" command from the idsadmin interctive menu and then attach idsadmin.log in your next response.&lt;BR /&gt;&lt;BR /&gt;Pierre&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/AGENT-HOST-YOU-CAN&gt;</description>
      <pubDate>Mon, 26 Mar 2007 11:10:09 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/hids-agent-problem/m-p/3953777#M739896</guid>
      <dc:creator>Pierre Pasturel</dc:creator>
      <dc:date>2007-03-26T11:10:09Z</dc:date>
    </item>
  </channel>
</rss>

