Over 1 million tech questions and answers.

OCSP Based Validation for Client Certificates Using Responder Defined by Web Server

Q: OCSP Based Validation for Client Certificates Using Responder Defined by Web Server

I was wondering if it's possible configure a Windows 2019 IIS v10 hosted Web Server to perform OCSP checking of client certificates that are used to authenticate?

It is my understanding that typically the Responder URL that the Web Server contacts in order to validate the client cert is extracted from the AIA attribute in the client certificate. But is it possible to override/supplement this with an additional Responder?


For instance, what if I set up an OCSP Responder in the same domain as the Web Server and associated its revocation configuration with the SUB CA binded to the IIS Site. Now if client certs come in for authentication and have an unrelated OCSP Responder
in their AIA, can I somehow tell the Web Server to check also the aforementioned Responder that has been stood up in the domain?

RELEVANCY SCORE 200
Preferred Solution: OCSP Based Validation for Client Certificates Using Responder Defined by Web Server

I recommend downloading and running Reimage. It's a computer repair tool that has been proven to identify and fix many Windows problems with a high level of success.

I've used it in the past to identify and fix everything from blue screens (BSOD's), ActiveX errors, corrupt files and processes, dll/exe/sys errors, recover lost memory, Windows update problems, defragging, malware removal etc.

You can download it direct from this link http://downloadreimage.com/download.php. (This link will automatically start a download of Reimage that you can save to your computer.)

A: OCSP Based Validation for Client Certificates Using Responder Defined by Web Server

Per a reply from Mark B. Cooper at PKI Solutions this is indeed possible. You must edit the following GPO in order to override the default behaviour of the web server which is to only check the Responder URL specified in the client certificates' AIA extension.
Default Domain Policy > Computer Configuration > Policies > Windows Settings > Security Settings > expand Public Key Policies
Once a custom Responder is specified in the CA / SUB CA's revocation properties the above GPO will allow it to check that custom Responder URL first, then ocsp as defined in the AIA extension and then CRLs
Thanks Mark!
EDIT:
Will post reference links once MS verifies my account.

Read other 1 answers
RELEVANCY SCORE 100.8

I am conducting OCSP validation on SSL certificates in IE browser.
However, the results differ depending on whether or not id-pkix-ocsp-nocheck exists in the OCSP certificate.
Id-pkix-ocsp-nocheck in OCSP certificate exists: SSL certificate validation succeeded.
Id-pkix-ocsp-nocheck not present in OCSP certificate: OCSP Request 2 times request (verification failed).

Why do IE browsers differ in the validation of SSL certificates according to the id-pkix-ocsp-nocheck extension field in the OCSP certificate?

Read other answers
RELEVANCY SCORE 74.4

A software to install on client machine to report to server machine if it's alive?
Preferably using web port.
Is there such a freeware??

-
currently in use, Teamviewer. but it'snot freeware

A:HELP! freeware server/client based pc monitoring?

If I'm understanding what you're asking, you simply want to know if a machine connected to the server is turned on?

If that's the case, you shouldn't need a program; every server software I've ever worked with maintains a list of connected clients. Even if it doesn't, couldn't this function also be performed by pinging the computers?

Read other 8 answers
RELEVANCY SCORE 65.2

Is there a way in Excel (I'm running Excel 2010, but have access to older versions) to hide/unhide cells based on hyperlinks or defined areas? I've hyperlinked so that we could go to specific parts of the document, but that does me little good because we have to hide them or the doc gets to big. Is there a way to have the hyperlink (or the cell hyperlinked) unhide the area? I've attached the document (removed all company info, but the lay out is there) so that you can see what I'm referring to.

I've thought macros, but I'm not sure how to go about it... I did define each area for the hyperlink, so would that be the route to go?
 

A:Excel - Hide/unhide based on defined cells/hyperlinks?

Read other 6 answers
RELEVANCY SCORE 63.6

i have the server with windows 2003 SP1 and i executed replication active directory, domain controller on the new server, as i have two servers. all expect one client computer work ok.onthe problematically computer is with the windows me.
problem is:
when i shut down old server,the computer with win me drop out from domain and he don't see new server.when i power on old server the client computer work ok.i deinstalled the win me on this computer and i installed to him win xp pro but problem is same. this computer don't see new server and he don't see others client computers in network.
what i do?
i tryed to make new user account but nothing i can't because of this computer don't see new server.
on client computer light green indicator on network adapter (Realtek 8139d) all the time.
i use commands: ping with the ip address of server, with the name of server nothing, ipconfig /release, ipconfig /renew, ipconfig /flushdns, ipconfig /registerdns.

ip address of old server is 192.168.0.100 and new server 192.168.0.101.
maybe problem is when i type ipconfig in dosprompt on new server
i receive: DNS server 192.168.0.100 and DHCP 192.168.0.100

plz help me thanks
 

Read other answers
RELEVANCY SCORE 62.8

I have a spread sheet where I would like a message to pop up after I enter a value in cell G2 based on what the value of I2 is. like the following description:
In cell I2 I have "=(E2*F2*G2)/144" after I enter a value in cell G2 I want a message to come up if the value of I2/g2 is less than three and not equal to zero" Is this possible? If so could someone help me out with this?

thanx
 

A:validation based on another cell

This is the same as the challenge file but I added the code for this question
 

Read other 1 answers
RELEVANCY SCORE 62.8

I'm aware that SHA-1 server certificates that chain to Root CA certificates within Microsoft's Trusted Programme are unsupported by Edge and IE11 on Windows 10, as of a couple of years ago.

We have an IIS web farm hosting our ASP.NET systems. The server uses a root certificate that, while was generated using SHA-1, is not part of the Trusted Programme and therefore has no problem when being used to connect to it securely; the problem is that some
of our applications require smartcard authentication, which as soon as they're prompted to enter the PIN, Edge/IE11 kills the connection.

It's as if Edge/IE11 won't allow the transmission of SHA-1 based certificates.

One strange caveat to this is that if I force IE11 to use only deprecated TLS versions (i.e. TLS 1.0) then it works, in that the smartcard certificate is transmitted and used to authenticate. If I force IE11 to use TLS 1.2 then it fails.

Using certutil I'm
able to determine that the smartcard client certificate was generated using SHA-1 and is also signed by the Root CA certificate used on the server.

IE11 works perfectly fine from Windows 7, so I assume the security policy only affects W10 versions.

Did I miss an announcement that this would also affect client certificates? The original announcement made it clear this would not be the case (taken from a Microsoft blog)

How will SHA-1 client authentication certificates be impacted?

The mid-2017 update will not prevent a client using ... Read more

Read other answers
RELEVANCY SCORE 62.8

Hi,

I have an internal website requiring the user to provide a client certificate to allow access. On my client computer I have installed my user certificate and it shows up in the certificates list in IE8.

However, when I try to access the website I get an 403.7 error in the IIS log (client certificate required). IE doesn't even ask me for a certificate but just displays a blank site.

If I try browsing the website from the same client computer but using the Google Chrome browser, everything works just fine.

I have tried altering the various IE security settings and adding the site to Trusted sites etc. but haven't been able to solve the issue.

Any help would be greatly appreciated.

Erik

A:IE8 and SSL Client Certificates issue

SOLVED:

I figured out, that for some reason, when running IE on Windows 7 requests for client certificates must be performed using the "Advanced certificate request" link on the /certsrv website.

I have no idea why, but it works.

Erik

Read other 1 answers
RELEVANCY SCORE 62.8

Hi,

I have an internal website requiring the user to provide a client certificate to allow access. On my client computer I have installed my user certificate and it shows up in the certificates list in IE8.

However, when I try to access the website I get an 403.7 error in the IIS log (client certificate required). IE doesn't even ask me for a certificate but just displays a blank site.

If I try browsing the website from the same client computer but using the Google Chrome browser, everything works just fine.

I have tried altering the various IE security settings and adding the site to Trusted sites etc. but haven't been able to solve the issue.

Any help would be greatly appreciated.

Erik

Read other answers
RELEVANCY SCORE 61.6

Hi Team
Is there any certutil command to list out all the issued certificates on basis of certificate template name.
In simple one output for each certificate template.
Cheers!!
Sreeram

Read other answers
RELEVANCY SCORE 61.2

So far i have read you can't do this. So i'm wondering how you achieve this the correct way. I work for a gas field company and the database i am redesigning has a lot of fields that need validation, like well site names, company names etc. The person who built the original database had no validation at all, and you could find the word Production spelled 12 different way sometimes. Made it very hard to keep data readable.

So the part im working on now is the well sites list. I have a table called Well Sites. I have a main work orders table where they must choose a well site which is a lookup of the well sites table. This is fine and dandy, however. If they choose not to use a name in the drop down list, they can simply type anything they want, which is what i want to avoid. I want them to ONLY be able to type names that exist in the well sites table.

I was hoping it would be as easy as setting up a validation rule but from what google is telling me that is not even possible. So how do i control what user's enter. I do NOT want to type in a list of 600 well site names using OR for a validation rule. That is unmanagable, but i need to restrict what they can type so we don't get mis-spellings and mis-labeled wells.

Now i understand some things but some things i've just never done before prior to now. If i setup a one to many relationship between two tables then it seems to work like i want. Only values that exist in the other table can be entered into... Read more

A:Field Validation based on another tables data

Read other 6 answers
RELEVANCY SCORE 61.2

Hi,

Suppose all employee have certificates on their local machine (which join company domain). 
This certificate is issued by Active Directory Certification Services 
and all employee request and get this certificate automatically by group policy.

Right now I can export this certificate along with its private key in .pfx format by using <g class="gr_ gr_18 gr-alert gr_spell gr_inline_cards gr_run_anim ContextualSpelling ins-del multiReplace" data-gr-id="18" id="18">mmc</g>
interface.
I'd like to know how can I get all user certificates along with their private key in .pfx format automatically without have the user go to export via <g class="gr_ gr_19 gr-alert gr_spell gr_inline_cards gr_run_anim ContextualSpelling ins-del multiReplace"
data-gr-id="19" id="19">mmc</g>. 

I'm trying to implement <g class="gr_ gr_20 gr-alert gr_spell gr_inline_cards gr_run_anim ContextualSpelling ins-del" data-gr-id="20" id="20">server-sided</g> digital signature service using SignServer-by Primekey which
is opensource software. I plan to put all .pfx I obtain on server HSM. This will <g class="gr_ gr_24 gr-alert gr_gramm gr_inline_cards gr_run_anim Grammar multiReplace" data-gr-id="24" id="24">provided</g> server-sided
digital signature services for all employee. (There will be some sort of authe... Read more

Read other answers
RELEVANCY SCORE 60.4

We have client machines on IE11 that cannot connect to common websites using https (Facebook, Reddit etc.) because they do not have the Trusted Root Certs installed.
Until 2014 Microsoft released updates to Trusted Root Certificates via KB patches.
Since then they have advised customers to rely upon the process of Windows Update connecting to Microsoft servers to process the CTL (Certificate Trust Lists).
Question 1: Are clients sitting behind a proxy server able to download and process these lists? Our client machines clearly show that they are not able to resolve the update servers, so I assume not.
According to this article from 2014 - https://technet.microsoft.com/en-gb/library/dn265983.aspx

"The list of trusted root certificates is available as a self-extracting IEXPRESS package in the Microsoft Download Center, the Windows catalog, or by using Windows Server Update Services (WSUS). IEXPRESS packages are released at the same time as the trusted
CTL."
Question 2: Where can I find that/any of those packages?? They are not easy to find, evidently I am searching for the wrong thing via Google/Bing/Windows Update Catalog
If the latter does not/no longer exists, how do we obtain new/replacement Trusted Root Certs, and how should we distribute them around our estate?

Read other answers
RELEVANCY SCORE 60

Hi there
sincerely hoping & wondering whether someone out here could help me by offering me your solution or suggestion ?

My situation is as follows:
In my worksheet there is about 600 cells scattered all over the sheet that are to represent different monetary value figures, that I have used NAME MANAGER to define as MONEDATA1, MONEDATA2, and MONEDATA3 (each holding around 200 cells, which is the approx.limit allowed by NAME MANAGER for Excel 2010). Thing is, my work revolves around dealing with 12 different countries of currencies, and so all these monetary cells, in CURRENCY format, thus need to be 1 out of 12 different currencies with respective currency signs, at any one time I do some calculation. So, they must convert into 1 of those 12 currencies, each time determined by a selection from a single dropdown list of 12 currencies located at the top of the worksheet in one particular cell I data validated, which is $C$6.

Now, I just need the worksheet to convert all the 3 groups MONEDATA1, MONEDATA2 and 3 simultaneously, instantly when 1 of the 12 currencies is chosen in $C$6, by using a VBA code. Is there a best way to resolve this need ?

Could you help me with the above problem ? Thanks in anticipation and advance ! Greatly appreciated any help.
cheers & have a nice day there,
Jason.
 

A:Excel data validation and executing a code based on selected value

 

Read other 1 answers
RELEVANCY SCORE 60

I am using Excel 2010

I want to limit a validation list based on the contents of Cell D4
There are 4 lists possible based on the contents of D4:

If cell is 1 = list (on datasheet tab) should be limited to range A42:A71 only

If cell is 2 = list (on datasheet tab) should be limited to range A72:A87 only

If cell is 3 = list (on datasheet tab) should be limited to range A88:A90 only

If cell is 4 = list (on datasheet tab) should be limited to range A92:A93 only
Thanks
 

A:Excel 2010: Limit validation list based on another cell

Soooo... is this possible or no?
 

Read other 3 answers
RELEVANCY SCORE 59.6

I got a ISP business, and we are facing the following problem:

We got a Linux Klarconet server and Wifi Access points controlling the internet access to our customers via mac filtering and this means that each month we have to log in to the configuration utility of the Access points and either grant or deny the service using MAC filtering, this is both time consuming and exausting for us, that's why we are looking for a solution for this problem.

What we are planing to implement is the following:

--- Each client makes a montly deposit for the internet service in the bank.
--- The bank sends a report containing the information regarding who has paid and who has not via the internet to the system.
--- Based upon the report given by the bank, the system then grants or deny the internet service to our customers using the following method:
each customer has a mac address for his wifi client antenna, the server instead of the AP must take this mac address to identify the client and proceed with the validation of service.

In other words, what I want to do is use the Linux Klarconnect server to do the mac filtering and therefore granting or restricting the internet access to the customers on top of that the server must have a feathure that would allow it to recibe a montly report from the bank or the institution where the customers are going to make the deposit and use the report to perform the filtering.

If anyone knows of a system or a method that would allow me to do thi... Read more

Read other answers
RELEVANCY SCORE 58.8

Hi all,

I am trying to develop a cost calculator based on several drop down lists. I have used the following formula:

=AVERAGEIFS('Scope Of Work'!I:I,'Scope Of Work'!C:C,C6,'Scope Of Work'!F:F,'Cost Calculation'!D6,'Scope Of Work'!G:G,'Cost Calculation'!E6)

Cells C6, D6 and E6 in the Cost Calculation Tab are all drop down menus based on data validation. The formula works when all 3 cells have a selection value but I also want it to calculate if only one or two of the drop down lists have been populated, any ideas?

Thanks,

Mark.
 

A:Solved: Excel 2007 - Dynamic formula based on Data Validation List

Read other 11 answers
RELEVANCY SCORE 56.4

I'm trying to get into paypal but IE AND Firefox are telling me that the security certificate is invalid. Is the certificate server down or is there something wrong in my interent settings?

A:IE 8 security certificates- server down?

Is your date (including the year) and time correct? This was the problem on another computer; the date and time invalidated the certificate.

Read other 3 answers
RELEVANCY SCORE 56

We have enable the counters for week to do the analysis of the Memory and CPU Utilization in our 2003 Server.
Report got generated with 14MB file , however when we tried looking for the report we unable to find any collector information showing up on it and when we tried to pull the report with PAL tool found no output , could you please let us know any other action
need to be taken care before we enable data collector set in server 2003  32bit 

Read other answers
RELEVANCY SCORE 55.6

Hi All,
I will be deploying ATA 1.6 in our dev environment in the coming weeka and just needing a bit of help clearing up some detail with the "how-to" aspect of certificate generation. The environment I will be installing into is AD based with it's own
CA, so I won't be looking to use the self signed certs (unless someone can give me a good reason otherwise) and am wanting to get the certs provisioned from our own internal CA.
1. IIS certificate is easy, no problems here as I've done quite a few.
2. The Server Authentication template does not seem to be enabled within our environment, so I cannot use the Advanced Certificate Request form from the web portal as I can for the IIS CSR. I looked at generating a Server Authentication Certificate from
the certificates MMC, however I am getting lost under the Certificate Enrollement Policy page as policies configured by my administrator do not include a Server Authentication type.
I am getting the feeling I am going to need to either (a) get the Server Authentication template enabled or (b) generate a certificate template to facilitate this request. In either case I will need detail on what exactly is needed and why to get anything
like this approved. Can anyone help with more detailed/specific instructions on what needs to be done to generate the certificate here?
I guess the other option would be to use our internal CA for the IIS cert (trusted by all in the domain) and then use self signed for the ATA Center... Read more

Read other answers
RELEVANCY SCORE 55.6

Hiya

The previous VeriSign 128-bit International (Global) Server Intermediate certification authority certificate expired on January 7, 2004. This may cause problems for clients that try to establish server-authenticated secure socket layer (SSL) connections with Web servers and other SSL/Transport Layer Security (TLS)-enabled applications that do not have up-to-date certificates.

To prevent these problems, Microsoft Internet Information Services (IIS) operators should contact VeriSign to update the intermediate certification authority certificates for servers that use 128-bit SSL to connect to Web sites with the Secure Hypertext Transfer Protocol.
Affected software

Microsoft Internet Information Server
Microsoft Internet Security and Acceleration Server
Microsoft Exchange
Microsoft SQL Server
http://support.microsoft.com/default.aspx?scid=KB;EN-US;834438

Regards

eddie
 

Read other answers
RELEVANCY SCORE 55.6

I've got a Server 2003 box running a fully working Certificate Authority on about 20 windows machines.. How do I use this CA request properly with a Mac?

I just want it to authenticate via Wireless using Internet Authentication using a RADIUS server via wireless router.

thanks, is this possible?
 

A:Server 2003 Certificates, do they work with Other OS'es?

No, they do not. Working with a Mac is described in detail with the software guidance instructions and Facs.
 

Read other 2 answers
RELEVANCY SCORE 55.6

Hey all, as most I know a lot about some aspects of computers and there's a lot of stuff I don't know as well.
 
Server certificate issues have been coming up the past couple of years and wanted to learn more about them; like how to be able to discern bogus certs, how to write certs, how to over come cert errors when trying to send mail, etc etc
 
I'm looking for a 'for Dummies' like book focused soley on certs (or covers certs thoroughly); I really don't want an expensive phone book covering the entire Windows OS or Servers in general.
 
Anyone have any suggestions?

A:Beginner's Book for Server Certificates?

Server CertificatesCertificates for dummiesBeginner's Guide to SSL Certificates - Symantec

Read other 2 answers
RELEVANCY SCORE 55.2

I can't seem to find anything that mentions this anywhere. Are they the same? I know you can get viruses from downloading/opening emails in a client, can you from the Web? Which is more secure from hackers?
 

Read other answers
RELEVANCY SCORE 55.2

I am wondering if anyone knows of any sites that have a web irc client that they allow to connect to any server of my choice. Anyone know of anything like that?
 

A:Looking for a website with a web based irc client that i can use to connect to any...

Read other 6 answers
RELEVANCY SCORE 54.8

Hello,

I believe my computer has been infected. Starting today, I began receiving messages from my browser (Chrome) stating that "The site's security certificate is signed using a weak signature algorithm!" I tried to navigate to the same sites using Firefox but did not receive this warning. I am however being redirected to obviously troublesome websites. MyWOT is also popping up on nearly all of these redirects. Please advise.

A:Suspected Infection: Bad Server Certificates and Redirects

Download Security Check from HERE, and save it to your Desktop. * Double-click SecurityCheck.exe * Follow the onscreen instructions inside of the black box. * A Notepad document should open automatically called checkup.txt; please post the contents of that document.=============================================================================Please download Farbar Service Scanner (FSS) and run it on the computer with the issue.Make sure the following options are checked:
Internet ServicesWindows FirewallSystem RestoreSecurity Center/Action CenterWindows UpdateWindows DefenderPress "Scan".It will create a log (FSS.txt) in the same directory the tool is run.Please copy and paste the log to your reply.====================================================================================Please download MiniToolBox and run it.Checkmark following boxes:Report IE Proxy SettingsReport FF Proxy SettingsList content of HostsList IP configurationList Winsock EntriesList last 10 Event Viewer logList Installed ProgramsList Devices (do NOT change any settings here)List Users, Partitions and Memory sizeClick Go and post the result.=============================================================================Download Malwarebytes' Anti-Malware (aka MBAM): http://www.malwarebytes.org/products/malwarebytes_free to your desktop. * Double-click mbam-setup.exe and follow the prompts to install the program. * At the end, be sure a checkmark is placed next to Update Malwar... Read more

Read other 4 answers
RELEVANCY SCORE 54.8

My company has a client that's running Windows Server 2003 in his office. For legal reasons, we can't support his server for him, only the application that we installed on his server. Server maintenance has to come from his 3rd party people. I'm just curious though.

This application of ours connects to a secure site that our company maintains. Every couple weeks, the application stops logging in to our website and he calls us to get it fixed. We Webex to his server and always see the same error. We found that if we open up IE and enter the web address in the address bar, we get a prompt for the certificate. Our application doesn't have the ability to answer this "Yes", "No", "View Certificate" prompt. So we go through the process of installing the certificate. After that, the app works flawlessly for a couple weeks before he calls us again. It's stopped logging in. After we browse to the site and install the certificate again, everything's fine. He's nice but he's tired of having to call us everytime this expires.

He's the only client out of about 1900 that has this problem. He's also the only one AFAIK that's running our app on Server 2003. I've seen Server 2003 but only have about a week's training experience with it. What kind of settings can I have this guy's support team look for on the system to keep this certificate from disappearing every couple weeks? No one uses t... Read more

Read other answers
RELEVANCY SCORE 54.8

Hello message board! Just a few questions here I can not seem to find out via Google, manuals, and reading other forum posts... We are attempting to utilize a t610 with the Linux based o.s. and are running into a few hurdles... I have seen on "Windows" based thin clients, after you make a change to something, you must "Commit" the changes... Is there a way to do this on a Linux box? It seems that the o.s. partition is Read Only?? Also, is there a way to navigate files and folders on this type of thin client? I see the terminal in "Admin" mode and I can kind-of nav files and folders through the text editor, but I am at a semi-loss doing things this way... I know this may be a stupid question, but is there a way to re-image this thin client to a "Windows" based o.s.? The main problem I am experiencing is an add-on/extension in firefox is not "sticking" in my firefox browser.... I have installed the extension many times, and after I restart the browser, it is gone and my settings are reverted to "original"... I am taking a guess here, but I am guessing every time this client "reboots" it is booting to an image?? One last question, is there any "manuals" for these Linux based clients? I see most or all of the helps seems to be geared towards Windows, and would just like a reference... Thanks for reading!Brandon













Solved!

View Solution... Read more

A:T610 Linux based thin client

If you're talking about the HP ThinPro OS- Before you can make changes to the file system, you need to run this command from the terminal - "fsunlock". When you're done, "fslock" locks the file system again. There isn't another file explorer tool included that I'm aware of in ThinPro. Command line and the notepad tool are the only real ways to navigate the file system. If you're looking for help with something, keep in mind it is basically a stripped-down version of Ubuntu, with some extra utilities and GUI provided by HP. The nuts and bolts are the same as an Ubuntu build so I've gotten quite a bit of insight from Ubuntu forums online for problems that I've had. As for your browser extensions issue, depending on how you're doing this, you can configure connections to allow them to configure their own settings, or to use HP ThinPro settings. If you haven't allowed Firefox to create and use its own settings in the file system, nothing you change inside the browser will stick. I haven't tried installing a browser extension but I'm pretty sure that's where your problem is.

Read other 4 answers
RELEVANCY SCORE 54.8

I am new to Exchange and am having some problems with it. I have two aliases set up and would like to move messages sent to either alias to a specific folder. In the past, I have successfully done this with client side rules based on a value in the subject line. Unfortunately, the text in the subject line is not standardized. When I receive an email sent to the alias it resolves to my username from the address book and is delivered to my inbox. Any assistance would be greatly appreciated.
 

Read other answers
RELEVANCY SCORE 54.8

Hi there

I'm trying to look for an alternative robust email client to outlook -- want to start gradually moving away from Ms Office to cheaper solutions.

I don't like the way Ms is going with subscription based Office 365 and Office 2013 is IMO "The Pits" - office 2010 works fine but I want where possible to start using alternatives. Libre Office is fine for some things but not quite ready for prime time yet (IMO) especially for EXCEL but I can start moving away from office gradually with an email client first.

The email client must NOT be web or browser based (I Hate webmail type of things) and must support IMAP. I don't want it to have ADWARE or NAGWARE (you know those that keep persuading you "Please update to PRO version etc etc"). It must also support MULTIPLE ACCOUNTS. It should ideally have a similar or identical interface to OUTLOOK -- simple plain, not like the background I've seen on some Gamers machines !!!!

If it can integrate with GMAIL that's fine but not mandatory. Preferably free too .

I did see a portable client ISCRIBE at i.Scribe and InScribe: A Small and Easy to use Email Client but it looks as if it might be a little experimental.

I discarded OPERAMAIL -- don't want any BROWSER or web mail type of stuff.

Linux has some decent choices such as EVOLUTION (probably one of the best if not the best) but Windows seems a bit lacking in this area -- pity OUTLOOK EXPRESS wasn't continued after XP -- it was small, simple and could als... Read more

A:alternative email client to Outlook (NOT WEB BASED) please

From my previous post in Need a good email client :
Mozilla Thunderbird. You might be put off by claims about its future (no more development) but it will still be supported for a long time (stability/security fixes still going on). Zimbra Desktop Incredimail Pegasus Mail Opera Mail eM Client Windows Live Mail / Windows 8 Mail App
When have you tried opera mail last ? It should be separate from the browser today (it still uses the old presto engine while the browser uses the chrome one), check here : Opera Desktop Team - Opera Mail

Thunderbird, and Zimbra are all good choices and should fit your requirements. eM Client is very nice but it supports only 2 mail accounts on free version. Pegasus Mail is quite good but the UI is old now and it doesn't feel like outlook. Incredimail has promotional tag lines in your outgoing email and some ads show up.

Not included in this list is Claws Mail - the email client that bites!, since I never tried it. It seems to be OK, it's open source and works on both linux and windows, the interface looks a bit like outlook express, and it supports multiple accounts and IMAP. It might be what you're looking for.

Read other 6 answers
RELEVANCY SCORE 54.4

Hello, I always use web-based email via the browser at home. I do not use an email client(well in the office we have Outlook). I'd like to use Thunderbird at home with a Gmail account that can be used by the kids. Now I am using Avira IS 2012 and would like to make it scan emails through it's mailguard component. I have seen Thunderbird work with Avast IS on my brother's pc but I see that for it to scan all emails the SSL/TSL should be deactivated. I was asking the tech guys at the office about email clients, digital certificates etc and they only remarked "google it"...wow... So I came here....Now my questiosn are: a. Is it safe to disable SSL/TSL in an email client? In the office we have that(with Norton Enterprise) and I see an indicator at the bottom of the email message that it was scanned by Norton. b. Can there be an application that can allow me to have SSL/TSL at the same time have Avira scan my emails...? I searched google and found out that in Avira it also has to be disabled to let it scan all emails. c. SSL/TSL is encryption right..? Does not using encryption in email okay..? I mean at home. In the office it's important but at home...opinions please..d. What ports for POP3 IMAP SMTP should I allow Thunderbird to use In the firewall( I use Comodo). If Thunderbird wants connections via other ports other than the default ones...should I allow it or not..?e. Can an email client be run inside a sandbox? Is it sane enough or crazy..? Just... Read more

A:Thunderbrid email client, Comodo Email Certificates, Avira IS 2012 questions

I would highly recommend that you keep TLS/SSL enabled this makes sure that your password and user credentials are not sent in the clear.

if the AV needs to have this disabled then its not a good AV..

The ports are on the setup page for Gmail: http://kb.mozillazine.org/Using_Gmail_with_Thunderbird_and_Mozilla_Suite

Digital Certs are expensive to create and use, and only vital for businesses and not home users.

Read other 1 answers
RELEVANCY SCORE 54.4

Hi;
I am having the KMS Server with Server 2012 KMS Key,which is hosted on Windows server 2012 R2.

We need to update the KMS Server 2K12 Key to 2K16 KMS Key, Is there any way to Get the detail that the key will activate these OS Versions?

MBAM Report Feature Error Alert

Read other answers
RELEVANCY SCORE 54.4

I am trying to replace the auto generated self-signed (Issued to DM, issued by DM) certificates for the HDPM Server and Master Repository.  I am NOT refereeing to FTPS, the HPDM Embedded HTTPS Server, or the Thin Client Agent certs.   I have already setup certs from our own domain internal CA for FTPS in IIS and the Apache Embedded HTTPS server.  These are working fine and Repository tests pass for both protocols.  I have also issues to the Thin Clients from our internal CA just fine. I'm interested in the actual HPDM Server cert and Master repository cert. These are self-generated when the two services start up.  They use a very weak MD5 hash and RSA 1024 key.  I cannot find any documentation around this except for troubleshooting in which you can delete these certs restart the services and they will be regenerated.   Here are the certs\key paths%HPDM Install Path%\MasterRepositoryController\Controller.crt (Repository Cert)%HPDM Install Path%\MasterRepositoryController\Controller.key (Repository Key)%HPDM Install Path%\MasterRepositoryController\Client.crt (HPDM Server Cert)%HPDM Install Path%\Server\Bin\hpdmskey.keystore (Both HPDM Server and Repository Certs and Keys)(Not sure the format it is in.  It's not PEM and ok P12 as far as I can tell) There is also %HPDM Install Path%\Server\bin\hpdmcert.key.  Not sure what this is.  Think it?s the HPDM Server key but deleting it does nothing and it is ne... Read more

Read other answers
RELEVANCY SCORE 54.4

Hi.

I'm a beginner when it comes to VB Script and so I am struggling to work this out. I basically have a worksheet that contains information about different staff members. The sheet is set up so that column A (from row 8 on) is their name and columns B to L (also from row 8 on) are other staff attributes. Due to several reasons, there is more than one listing for each staff member (up to 40). The database is supposed to be there so that any staff member can come in and look up their information (or that of any other staff member). However, with so many listings and so many staff members, it becomes an unmanageable database. I could just create filters so that staff members could simply filter out other employees; however, this would create issues. Instead, I have created a cell above the table (say C2) where staff members can enter their name via means of a data validation list (which is linked to a list of staff members on another sheet). I would then like all rows in the table to hide except for those where the name in column A = C2.

I have searched this on the net and I keep seeing similar responses that all say it's hard when there is data validation / formulas involved. Is there a way this can be done?

Cheers
 

Read other answers
RELEVANCY SCORE 54

Hello!
I've already asked the
question regarding auto-starting the data collector sets and have posted MS's answer - now it seems the issue can be much broader: I failed to make my user defined data collector sets start according to their schedules, for example:
I created a test data collector set (with several CPU counters), saved it as a template and tested it on Windows Server 2008R2 and Windows Server 2019:
2008R2

2019

I've tested various user defined data collector sets on all my Windows Server 2019 computers - physical and virtual, domain and non-domain joined, the result is always the same - the data collector sets just don't start and the following event(s) get registered
in the Diagnosis-PLA log:

Here's the codes' description -
https://docs.microsoft.com/en-us/openspecs/windows_protocols/ms-pla/590752a5-ddc3-49e4-9914-147a90bd0193

No issues arise when starting the data collector sets manually.
Can anyone tell me if it works on your computers with Windows Server 2019?

Regards,
Michael

Read other answers
RELEVANCY SCORE 53.2

Hi,

I am having an issue with offline files created offline syncing back to the server. I have set up a network share to be available offline on a client computer. All files are available offline without issue. Here is the issue however. If I set the folder to work offline any file I create in the folder when it is offline just disappears when the folder comes back online, there are no conflicts or sync failures reported in sync center. If I create a new folder offline the folder does sync back to the server. Any changes made to an existing file are also replicated back to the server once the share is back online. So the issue is only with newly created files when the share is offline. I have not been able to replicate this error on any other file server in our environment, However I have recreated the issue with multiple shares with multiple Win 7 clients on this file server.

Steps taken so far.

Checked and reset permission levels on the share.
Recreated new shares from scratch for testing.
Disabled and enabled offline files on the client computer and cleared the offline cache.
Check various registry entry settings.
Disabled cashing on the File server.
Tested with XP the issue does not exist with XP.

I have spent hours researching this error online to no avail.

The clients are running Windows 7 Enterprise 64 bit
The File server is Server 2003 Standard 32 bit with SP2

Any help or ideas would be most welcome.

A:Offline Folder sync issue, Win 7 Client Server 2003 Flie Server.

I've seen the complaints about this problem but with no clear resolution. There are some hot fixes listed that may help, updating to Windows 7 SP1 is supposed to help in some cases but nothing seems for certain.

No way for me to recreate this problem but apparently others have the same problem.

Offline created files disappear after re-connect

Browse by Tags - The troubleshooters and problem solvers... - Site Home - TechNet Blogs

Administratively assigned offline files on Win7 client disappear from server (Network Steve Forum)

The Group Policy settings in the next link may have an effect on this problem.

http://mcpmag.com/articles/2003/11/0...ine-files.aspx

Read other 3 answers
RELEVANCY SCORE 53.2

There is a process running on my computer called csrss.exe
 
I went to http://www.processlibrary.com and looked it up and came up with 2 different things. One says it is a Trojan and needs to be removed. The same exact process name also says it is Microsoft client server runtime server and SHOULD NOT be removed.
 
How I am supposed to tell the difference so I do not make a mistake by either leaving it alone or removing it???

A:Process: csrss.exe (trojan or Microsoft Client Server Runtime Server?)

Hello and welcome to Bleeping Computer! I am HelpBot: an automated program designed to help the Bleeping Computer Staff better assist you! This message contains very important information, so please read through all of it before doing anything.
We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.
To help Bleeping Computer better assist you please perform the following steps:
*************************************************** In order to continue receiving help at BleepingComputer.com, YOU MUST tell me if you still need help or if your issue has already been resolved on your own or through another resource! To tell me this, please click on the following link and follow the instructions there.CLICK THIS LINK >>> http://www.bleepingcomputer.com/logreply/561994 <<< CLICK THIS LINK
If you no longer need help, then all you needed to do was the previous instructions of telling me so. You can skip the rest of this post. If you do need help please continue with Step 2 below.
***************************************************If you still need help, I would like you to post a Reply to this topic (click the "Add Reply" button in the lower right hand of t... Read more

Read other 2 answers
RELEVANCY SCORE 53.2

When i try to validate my computer with windows, and it tries to connect to the server its fails, and I am not able to do it over the phone, can anyone tell me some steps I should take to try to fix it, ports to open on my router? Anything?
 

Read other answers
RELEVANCY SCORE 52.8

Update for Windows 7 Client Beta for x64-based Systems (KB963660)
Install this update to resolve issues with Media Player or Media Center for Windows 7 Beta where multimedia codecs are not functioning on or after 15 March 2009. For complete details of this update, see KB963660. After you install this item, you may have to restart your computer. This update is provided to you and licensed under the Windows 7 Prerelease License Terms.

An update is available that will replace certain audio and video codecs that expire in prerelease versions of Windows 7 on March 15, 2009
Yesterday update installing fail with error 80070643. Tryed manually also install it but no luck, any suggestion how to debug it why it fails or solution for this?

A:Update for Windows 7 Client Beta for x64-based Systems (KB963660) error

Same problem here, anyone get this to install after it fails the first time?

Read other 9 answers
RELEVANCY SCORE 52.4

Hello,

I try to connect to https://vpn.par01.softlayer.com web site with IE 11 and I always get the same following error message :

This page can?t be displayed
Turn on TLS 1.0, TLS 1.1, and TLS 1.2 in Advanced settings and try connecting to https://vpn.par01.softlayer.com  again. If this error persists, contact your site administrator.

By clicking on the "Change settings" button associated with this error message, the IE Advanced option tab is displayed :

from there, I can see that SSL 3.0 and all TLS versions are correctly checked ;

When I do the same test from a colleague's PC with the same Windows 7 version and exactly the same IE 11 version,  there is not problem to reach this web page

When comparing Wireshark traces taken on both PC, I can see the following differences in the SSL CLient Hello packet sent by IE :

1) in the good case,  this Client hello includes 26 Cipher Suites, with TLS 1.2

2) in the bad case, this Client hello includes 24 Cipher Suites, with TLS 1.2

The 2 missing Cipher Suites in the bad case are the following ones :

Cipher Suite: TLS_RSA_WITH_RC4_128_SHA (0x0005)
Cipher Suite: TLS_RSA_WITH_RC4_128_MD5 (0x0004)

In the good case, the Server hello sent by the server (in response to the Client hello) shows the TLS_RSA_WITH_RC4_128_SHA Cipher Suite is the one selected ;

In the bad case, the Client hello is answered by the server by a packet showing the following message :

TLSv1 Record Layer... Read more

Read other answers
RELEVANCY SCORE 52.4

I have 6 computers in a workgroup that need to be synchronized to a workgroup server.  The server is a virtual Win 7 running on a Windows 10 host.  Neither the server or client computers have internet access.  I started the process by configuring
the host to use its CMOS clock as its time source, which seems to have worked. The client computers are not virtual and can communicate with the Win 10 host as I am able to RDP to the host from the clients.  I made the following registry key changes to
get that accomplished.
Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\W32Time\Config]
"AnnounceFlags"=dword:00000005

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\W32Time\Parameters]
"Type"="NoSync"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\W32Time\TimeProviders\NtpClient]
"Enabled"=dword:00000000

"SpecialPollTimeRemaining"=hex(7):00,00

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\W32Time\TimeProviders\NtpServer]
"Enabled"=dword:00000001

<-------End of REG file------->

After applying these changes, I ran the following 'w32tm /config /update /syncfromflags: NO 
I get a message that the command is successful.
These changes are based on the following post:
https://social.technet.microsoft.com/Forums/office/en-US/04865e36-d43d-4167-a07d-9f28fd4f22fa/how-do-you-configure-windows-time-synchronizati... Read more

Read other answers
RELEVANCY SCORE 52.4

Hi I'm working on a client/server with the Java programming language and trying to figure out how to protect my server. With my current Virus/Firewall protection suite theres nothing I can do to keep out unwanted Java applications on the port I choose to allow the Java SE Binary through for clients accessing the server application. ESET Smart Security 4 is what I am using. Does anybody know of a security suite that would allow only a specific Java application to get through the firewall? I'm not to sure on this subject because my firewall is identifying any Java application as only the "Java SE Binary" and not I'm sure if you can even really name your Java application like you would something you would write in C++. Any information would be appreciated, thank you.
 

A:Java Server/Client + Server Firewall Safety

Read other 6 answers
RELEVANCY SCORE 52.4

A friend is moving his business, and the new business park that he's setting up shop in does not have anyway to get any wired internet to his building, excluding a T1 line, which he can't justify the cost of.

One windows 7 machine acts as the server, primarily for Quickbooks database, and there are two other windows 7 machines that are clients, reading off said database.

He's getting one of those usb dongles for wireless internet service, for the server only (the other two computers will be tethered to a smartphone for internet for QB and windows updates periodically).

They do NOT want to share the servers wireless connection to the other machines.

My only concern was if the server will continue to try to check the LAN for internet connectivity, or will it check both network connections when one fails, or is there a setting I can tell them to change to ensure it knows to go to the wireless dongle for internet all the time, without interfering with the workstations talking to the server over the LAN to get to the database?

The setup at the old office was business class DSL, they are using a relatively new Linksys router, which had the DSL authentication information.

Thank you!

A:LAN network for server/client only, USB hotspot for server internet.

I managed to find a solution this morning, for anyone that's interested, the whole article is here: Multiple Network Connections at the Same Time on Windows | Ivan Zlatev

But the short answer is, under the advanced properties of TCP/IP v4, uncheck automatic metric, set your internet to a value of 1, and the LAN to a value of 9999.

Read other 1 answers
RELEVANCY SCORE 52.4

was trying to network my computer to the server but keep getting the message 'server not responding from client computer' can anyone help please.
 

Read other answers
RELEVANCY SCORE 52.4

I'm looking at setting up windows 2003 terminal servers all over the place to replace the awful thing people are currently doing here - vncing servers with one small shared password among everyone <holding my hands over my ears for the backlash>. Don't blame me, it's another awful legacy I have to get rid of...

1. I've got to set up a Terminal Server Licensing server and was thinking about putting this on my second domain controller. I was wondering what would happen in this server dies, though. Is there some way of having resilience in this scenario? Perhaps a second Licensing server or something, the way you have 2 or more Domain Controllers?

2. Also, I know that Windows XP has an RDP client, I've used before on many occasions, but what about all the Windows 2000 clients that I still have out there. What should I do for them to access the new Terminal Servers?
 

A:Terminal Server license server(s)? RDP client for Windows2K?

I'm not 100% sure on #1, but I believe that the TS licensing becomes integrated into the AD, so if one DC goes down, the other one will be able to check licensing. On another note, if you are using the TS for administration only, I don't believe you needs the TS Licensing to be installed.

For #2, you can download the latest version of the RDP client from MS's website. It should also be available through Windows Updates, although I think Win2K isn't supported any longer, other than Critical Updates.
 

Read other 1 answers
RELEVANCY SCORE 51.6

I am continually getting the error "Run Time error 1004: Application defined or object defined error," each time a user clicks one of the cells within this excel file. It comes up as apparently a visual basic error. I've search other sites and unfortunately do not know enough about macros or excel formulas to know what to do next, so I thought I would post about it here. One user apparently has no trouble opening it while every other user has the same issue. Here is the debug code:

Private Sub Worksheet_Deactivate()

End Sub

Sub Worksheet_SelectionChange(ByVal Target As Excel.Range)
Cells.Interior.ColorIndex = -4142
Target.EntireRow.Interior.ColorIndex = 8
Target.EntireColumn.Interior.ColorIndex = 8
End Sub

The "Cells.Interior.ColorIndex = -4142" portion is highlighted in yellow, so I assume that's where the error is. From there, I'm not sure what to do to change it. Please let me know as soon as possible what direction I should take.

Thanks

A:run time error 1004 application defined or object defined error

To be honest...I would assume that the file is corrupt and try to replace it. All seemingly meaningful links on this error involve VBA coding and things that can go wrong with it...way overhead my head and out of my interest arena .

If it truly is a coding error (as seems implied), I would take it to the originator of that file, since it throws an error.

Very strange that e pluribus unum...manages to use it without problems .

Louis

Read other 1 answers