Product Documentation
Abstract
This document describes the data needed for problem determination for various issues regarding the Policy Server component of the IBM Security Access Manager for Web product.
Content
Procedure to collect diagnostic data for Security Access Manager Policy Server
1. Turn on per-process trace for Policy Server by removing the '#' on the last line of the file '/opt/PolicyDirector/etc/pdmgrd_routing'
The last 3 lines of the routing file are shown below:
#
# Route to a per-process text file
#*:*.9:UTF8FILE.10.10000:/var/PolicyDirector/log/trace__pdmgrd_utf8.log:644:ivmgr:ivmgr
2. Edit the last line to remove the ‘10.10000’ from the same line as shown below:
# Route to a per-process text file
*:*.9:UTF8FILE:/var/PolicyDirector/log/trace__pdmgrd_utf8.log:644:ivmgr:ivmgr
3. Restart the Policy Server
4. Turn on base runtime trace by removing the '#' on the last line of the file '/opt/PolicyDirector/routing'
The last 3 lines of the routing file are shown below:
#
# Route to a per-process text file
#*:*.9:TEXTFILE.10.10000:/var/PolicyDirector/log/trace__%ld.log:666:ivmgr:ivmgr
5. Edit the last line to remove the ‘10.10000’ from the same line as shown below:
# Route to a per-process text file
*:*.9:TEXTFILE:/var/PolicyDirector/log/trace__%ld.log:666:ivmgr:ivmgr
6. Start a network trace on the Policy Server. Allow the network trace to capture all
data (ie no filtering).
7. Recreate pdadmin issue on the Policy Server only once. Ensure no other users are connecting to the Policy Server.
8. Stop the network trace on the Policy Server.
9. Turn off the per-process trace for Policy Server by replacing the '#' at the beginning of the last line of the file '/opt/PolicyDirector/pdmgrd_routing'
10. Restart the Policy Server
11. Turn off the base runtime trace by replacing the '#' at the beginning of the last line of the file '/opt/PolicyDirector/routing'
12. Collect the following information and files:
A. The /var/PolicyDirector/log/trace__<pid>.log file
B. The trace__pdmgrd_utf8.log
C. The raw binary format of the network trace in step 6
D. The Policy Server ivmgrd.conf file
E. The most recent msg__pdmgrd_utf8.log
F. The ldap.conf file from the Policy Server
13. Archive the data and send to support as per the Uploading Must Gather Captured Data Information
Original Publication Date
15 October 2008
Related Information
Product Synonym
ITAM;TAM;ITAM for ebu;ITAM for e-business;WebSeal;IBM Tivoli Access Manager for e-business;TAM for ebu
Was this topic helpful?
Document Information
Modified date:
17 June 2018
UID
swg27012164