Copyright 2009 Trend Micro Inc. Classification 9/23/2015 1 Troubleshooting TMSP Marks Shen Senior Engineer – QA Evan Wang Engineer - QA.

Slides:



Advertisements
Similar presentations
ITR3 lecture 7: more introduction to UNIX Thomas Krichel
Advertisements

© 2012 Entrinsik, Inc. Informer Administration Exploring the system menu and functions PRESENTER: Jason Vorenkamp| Informer Software Engineer| March 2012.
ESafe Reporter V3.0 eSafe Learning and Certification Program February 2007.
Week 6: Chapter 6 Agenda Automation of SQL Server tasks using: SQL Server Agent Scheduling Scripting Technologies.
©2009 Justin C. Klein Keane PHP Code Auditing Session 3 – Tools of the Trade & Crafting Malicious Input Justin C. Klein Keane
Cisco Confidential © 2013 Cisco and/or its affiliates. All rights reserved. 1 Unity Connection Qualification for Prime Collaboration Development Release.
Using the Windows Event Viewer and Task Scheduler Chapter 5.
© 2008 Cisco Systems, Inc. All rights reserved. Cisco Unity Connection 7.0 Directory Integration TOI Manoj Agrawal
©2011 Quest Software, Inc. All rights reserved. Steve Walch, Senior Product Manager Blog: November, 2011 Partner Training Webcast.
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 1 © 2010 Cisco and/or its affiliates. All rights reserved. 1 Cryptographic.
Talend 5.4 Architecture Adam Pemble Talend Professional Services.
1 Objectives Discuss the Windows Printer Model and how it is implemented in Windows Server 2008 Install the Print Services components of Windows Server.
Today’s Agenda Chapter 12 Admin Tasks Chapter 13 Automating Admin Tasks.
Automating Student Course Profile & Student Record Report Uploads to GaDOE Chris A. McManigal Camden County Schools Kingsland, GA.
Module 13 Automating SQL Server 2008 R2 Management.
Mobile Tech Architecture Overview Phil Sirigiano Technical Services 3/4/2015.
Migration XenDesktop 7. © 2013 Citrix | Confidential – Do Not Distribute Migration prerequisites Set up a XenDesktop 7 Site, including the site database.
A Practical Guide to Fedora and Red Hat Enterprise Linux Unit 10: Basic Apache Configuration and Management Chapter 26: Apache (httpd): Setting Up a Web.
M. Taimoor Khan * Java Server Pages (JSP) is a server-side programming technology that enables the creation of dynamic,
Senior Design 2010 Group 10.  Students  Nathan Dane  Jamin Hitchcock  Eric Tweedt  Advisor  Tien Nguyen  Client  Mary Greeley Medical Center 
XenClient Enterprise 4.5 Diagnostics. XenClient Enterprise 4.5 Diagnostics Copyright © 2013 Citrix Page 2 Table of Contents Engine and Synchronizer Problem.
Bag – O - Bytes A New Twist on GoldBags with a Splash of Technology! FPB Help Desk
Copyright ®xSpring Pte Ltd, All rights reserved Versions DateVersionDescriptionAuthor May First version. Modified from Enterprise edition.NBL.
Slide 1. © 2012 Invensys. All Rights Reserved. The names, logos, and taglines identifying the products and services of Invensys are proprietary marks.
Web Based Inventory Site Building Room Asset Number Category Type Description Serial Number Manufacturer Model Vendor Name Acquired Date P O Number Budget.
Copyright 2009 Trend Micro Inc. Classification 9/19/ Troubleshooting TMSP Marks Shen Senior Engineer – QA Evan Wang Engineer - QA.
The Active Update Internal Error 47 message in Trend Micro PC-cillin Internet Security 2004 and 2005 SID :  The pattern file was corrupted during.
Guidelines for Homework 6. Getting Started Homework 6 requires that you complete Homework 5. –All of HW5 must run on the GridFarm. –HW6 may run elsewhere.
User Manager Pro Suite Taking Control of Your Systems Joe Vachon Sales Engineer November 8, 2007.
Vantage Report 3.0 Product Sales Guide
Troubleshooting Tips and Tricks Derick Larson Kinetic Data.
Overview of MSS System Human Actors Non-Human Actors In-house developed components Third party products.
Module 10: Monitoring ISA Server Overview Monitoring Overview Configuring Alerts Configuring Session Monitoring Configuring Logging Configuring.
ServerProtect 5.58 for NT Tech Support Dep.. Table of Contents Introduction and Installation Managing ServerProtect Configuring ServerProtect Maintaining.
TELE 301 Lecture 10: Scheduled … 1 Overview Last Lecture –Post installation This Lecture –Scheduled tasks and log management Next Lecture –DNS –Readings:
The 1:1 meeting scheduler that runs itself The 1:1 meeting scheduler that runs itself.
Phone: Mega AS Consulting Ltd © 2007  CAT – the problem & the solution  Using the CAT - Administrator  Mega.
Database weekly reports Zbigniew Baranowski Carlos Fernando Gamboa.
Classification 10/24/2015 Presenter Name Presenter Title Threat Discovery Appliance 2.0 Debug feature and troubleshooting.
Automated Scheduling and Operations for Legacy Applications.
LDAP Authentication Copyright © Liferay, Inc. All Rights Reserved. No material may be reproduced electronically or in print without written permission.
Classification Presenter Name Presenter Title TDA Troubleshooting sharing.
Securing Sensitive Information Data Security Dashboards often contain the most important data in the company Securing that information makes business.
Thank you. Harel Ben Attia Senior Software Engineer River A data workflow management system.
Software Architecture in Practice Practical Exercise in Performance Engineering.
What's New in Kinetic Calendar 2.0 Jack Boespflug Kinetic Data.
Jodie Gaver Jodie Gaver Working with Configuration Manager since Working with Configuration Manager since MCTS: Administering and Deploying.
C. Aiftimiei, E. Ferro / January LCFGng server installation Cristina Aiftimiei, Enrico Ferro INFN-LNL.
Configuring and Troubleshooting Identity and Access Solutions with Windows Server® 2008 Active Directory®
Collaborative Planning Training. Agenda  Collaboration Overview  Setting up Collaborative Planning  User Setups  Collaborative Planning and Forecasting.
Hyperion Artifact Life Cycle Management Agenda  Overview  Demo  Tips & Tricks  Takeaways  Queries.
30 Copyright © 2009, Oracle. All rights reserved. Using Oracle Business Intelligence Delivers.
How to configure, build and install Trilinos November 2, :30-9:30 a.m. Jim Willenbring.
Cognos 8 BI Configuration, Administration, and Upgrade Cognos 8 BI.
Dextrosoft SCHEDULED PHONE BACKUP Backup your mobile life Version Copyright © 2015 Dextrosoft Private Limited. All Rights Reserved.
@toniblyx at #SummitNow Alfresco Backup and Recovery Tool: a real world backup solution November 2013 Toni de la Fuente – Alfresco Senior Solutions Engineer.
#SummitNow A Day in the Life of an Alfresco Admin November 2013 Antonio Soler Premier Support Engineer Alfresco Software Ltd.
Performing Troubleshooting Tasks with Response Point Response Point Troubleshooting Scenarios Joe Schurman Founder, Executive Director Evangelyze Communications,
CACI Proprietary Information | Date 1 PD² v4.2 Increment 2 SR13 and FPDS Engine v3.5 Database Upgrade Name: Semarria Rosemond Title: Systems Analyst, Lead.
SQL Database Management
Cameron Blashka | Informer Implementation Specialist
Chapter 9 Periodic Processes
TechEd /21/2018 5:20 PM © 2013 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered.
Implementing Listening Producers in IBM Sterling Filegateway
ODP node monitoring and maintenance
First Level Incident Handling FAQ (For EAL)
Booksy University Bug Reports and Feature Requests.
Cloud Migration Training
Presentation transcript:

Copyright 2009 Trend Micro Inc. Classification 9/23/ Troubleshooting TMSP Marks Shen Senior Engineer – QA Evan Wang Engineer - QA

Copyright 2009 Trend Micro Inc. Classification 9/23/ Agenda  Frequent Case  Debug log and information  Troubleshooting  Q&A

Copyright 2009 Trend Micro Inc. No report was generated Logs need to collect on Daemon Server –/opt/TrendMicro/tdss/tdes/log/iae_log.txt –/opt/TrendMicro/tdss/tdes/reports/tdes.log(Since 2.5R3) –/var/log/cron Information –Customer expiration date –Device register to TMSP

Copyright 2009 Trend Micro Inc. No report was generated Cont. Normal debug log for log correlation and report generation Crontab task cron_iae.sh will be executed at 2:15 am every day

Copyright 2009 Trend Micro Inc. No report was generated Cont. Report will not be generated if Customer service get expired Customer without device registered

Copyright 2009 Trend Micro Inc. No incident in report Logs need to collect on Daemon Server –/opt/TrendMicro/tdss/tdes/log/iae_log.txt Information –Check if TDA log has been uploaded Latest log time

Copyright 2009 Trend Micro Inc. Cannot access Admin console (err 404) Logs that need to collect on Daemon Server –/var/log/httpd/access_log –/var/log/httpd/error_log Information –ps –ef | grep httpd –netstat –anp | grep httpd

Copyright 2009 Trend Micro Inc. No Rsync log uploaded Logs need to collect on Access Server –Log receiver /var/log/messages /home/tdalog/log/pre-post-exec.log /home/tdalog/log/db_import_tda.log /home/tdalog/log/db_import_tdm.log –Authentication (describe in next sides) Information –ps –ef | grep tmsshd –netstat –anp | grep tmsshd Listen on port 22

Copyright 2009 Trend Micro Inc. No Rsync log uploaded Cont. normal log of tmsshd and rsync Classification 9/23/2015 9

Copyright 2009 Trend Micro Inc. No Rsync log uploaded Cont. Normal debug log of TDA log processing –/home/tdalog/log/pre-post-exec.log

Copyright 2009 Trend Micro Inc. CAS server case Problems caused by CAS failure : –Device register to TMSP fail –Customer portal login fail (only before R3) –Log uploading fail through RSYNC Log on Access Server: –/var/log/messages –/var/log/cas_8000.log –/var/log/cas_8001.log –/var/log/cas_8002.log Information: ps –ef | grep pound ps –ef | grep rubcasd Normal log of CAS authentication –/var/log/cas_8000.log

Copyright 2009 Trend Micro Inc. CAS server case – Service down TDA register fail Check /var/log/messages Recover –If pound or cas service is down /etc/init.d/pound start /etc/init.d/rubcasd start

Copyright 2009 Trend Micro Inc. Data Gateway Case Problems caused by Data Gateway failure : –OCS Heartbeat / OCS log cannot be handled –T2 / T3 mitigation request cannot be delivered to TMTM –SIC sample cannot be handled Logs on Access Server: –/opt/TrendMicro/dg/apache-tomcat /webapps/dg/WEB- INF/logs/dg.log –$APACHE_HOME/logs/ssl_request_log_dg –$APACHE_HOME/logs/error_log –/opt/TrendMicro/dg/apache-tomcat /logs/catalina.out Information: ps –ef | grep httpd ps –ef | grep tomcat netstat –anp | grep 443 netstat –anp | grep 8009 netstat –anp | grep 8080

Copyright 2009 Trend Micro Inc. Data Gateway Case – DB disconnect TDA register fail Check apache error log: /usr/apache/logs/error_log

Copyright 2009 Trend Micro Inc. Customer portal cannot login Logs need to collect on Access Server: –/opt/TrendMicro/dg/apache-tomcat /webapps/tms2/WEB-INF/logs/tms.log –$APACHE_HOME/logs/ssl_request_log_portal –$APACHE_HOME/logs/error_log –/opt/TrendMicro/dg/apache-tomcat /logs/catalina.out Information ps –ef | grep httpd ps –ef | grep tomcat netstat –anp | grep 443 netstat –anp | grep 8009 netstat –anp | grep 8080

Copyright 2009 Trend Micro Inc. Cannot get notification Exclude Mail server problem, collect debug logs: –/root/infomation.log –/var/log/cron No Subscription DB connection fail

Copyright 2009 Trend Micro Inc Classification FAQ Why no daily report can be found from web UI? 1. Check TDES log from #tail -n 100 /opt/TrendMicro/tdss/tdes/log/iae_log.txt If content like "Daily report: customer_ID, JP" cannot be found, that mean the scheduled job has not started so far. 2. Daily report is auto generated at 7:15 am every day, so check the system time of TDES: 3. Report generation need take some time, please check if the report is generating: #ps -ef | grep php if some php process is running, it means the reports are under generating. 4. Check if customer has expired for TMSP service, find the profile “expire time” from admin console

Copyright 2009 Trend Micro Inc. FAQ Why there is no data in report? 1. Check if the log has been uploaded to TMS and imported into Database Login log receiver machine and check the file last modification time #ll /home/tdalog/userdata/USERID/DEVICE_GUID/*.db If not latest data, that means TDA did not upload logs. 2. Log in database and query yesterday's log Some times, TDA did not detect any events, if so, there will be no yesterday's data in DB 3. Check iae_log.txt, check if “Running TDES 2.1 for XXXX (device=50)(customer_id=30) on date: ” existing, this means TMS run IAE for this customer. if NO this content exist, means there is something wrong when process IAE.

Copyright 2009 Trend Micro Inc. FAQ How to re-generate report manually? Login TDES machine, change dir to "/opt/TrendMicro/tdss/tdes/"; –1. Daily Report #php gendailydata.php user_id YEAR MONTH DAY example: "php gendailydata.php trend " generate daily report of for customer "trend“ –2. Executive Report (Weekly / Monthly) #php genexecdata.php user_id START_DATE START_DATE yes m/w START_DATE: report start data with format “YYYY-MM-DD” START_DATE: report end data with format “YYYY-MM-DD” yes: if this report will be imported into DB m/w: monthly or weekly example: "php genexecdata.php trend yes m" to generate monthly report for customer "trend" of –3. Upsell Report # php genupselldata.php user_id START_DATE END_DATE no example: " php genupselldata.php trend no" to generate upsell report for customer "trend" from to Note: Upsell report will not be imported into DB and cannot download from admin console After execute these command, reports will be re-generated and imported into database for downloading

Copyright 2009 Trend Micro Inc. FAQ What’s the steps to deploy new report php file? Sometimes, reports generation related php need to be modified and deploy to TDES, here are the steps to do this: 1.back up old php file 2.replace with new php file 3.remove cache_*.php under TDES installation folder 4.Re-generate report to verify new php files if necessary

Copyright 2009 Trend Micro Inc. Q&A

Copyright 2009 Trend Micro Inc. Classification 9/23/ THANK YOU!