IBM Support

Collecting Data for ISAM: Policy Server

Product Documentation


Abstract

This document describes the data needed for problem determination for various issues regarding the Policy Server component of the IBM Security Access Manager for Web product.

Content


Procedure to collect diagnostic data for Security Access Manager Policy Server

1. Turn on per-process trace for Policy Server by removing the '#' on the last line of the file '/opt/PolicyDirector/etc/pdmgrd_routing'

The last 3 lines of the routing file are shown below:
#
# Route to a per-process text file
#*:*.9:UTF8FILE.10.10000:/var/PolicyDirector/log/trace__pdmgrd_utf8.log:644:ivmgr:ivmgr
2. Edit the last line to remove the ‘10.10000’ from the same line as shown below:
# Route to a per-process text file
*:*.9:UTF8FILE:/var/PolicyDirector/log/trace__pdmgrd_utf8.log:644:ivmgr:ivmgr

3. Restart the Policy Server

4. Turn on base runtime trace by removing the '#' on the last line of the file '/opt/PolicyDirector/routing'

The last 3 lines of the routing file are shown below:
#
# Route to a per-process text file
#*:*.9:TEXTFILE.10.10000:/var/PolicyDirector/log/trace__%ld.log:666:ivmgr:ivmgr

5. Edit the last line to remove the ‘10.10000’ from the same line as shown below:
# Route to a per-process text file
*:*.9:TEXTFILE:/var/PolicyDirector/log/trace__%ld.log:666:ivmgr:ivmgr

6. Start a network trace on the Policy Server. Allow the network trace to capture all
data (ie no filtering).

7. Recreate pdadmin issue on the Policy Server only once. Ensure no other users are connecting to the Policy Server.

8. Stop the network trace on the Policy Server.

9. Turn off the per-process trace for Policy Server by replacing the '#' at the beginning of the last line of the file '/opt/PolicyDirector/pdmgrd_routing'

10. Restart the Policy Server

11. Turn off the base runtime trace by replacing the '#' at the beginning of the last line of the file '/opt/PolicyDirector/routing'

12. Collect the following information and files:

A. The /var/PolicyDirector/log/trace__<pid>.log file

B. The trace__pdmgrd_utf8.log

C. The raw binary format of the network trace in step 6

D. The Policy Server ivmgrd.conf file

E. The most recent msg__pdmgrd_utf8.log

F. The ldap.conf file from the Policy Server

13. Archive the data and send to support as per the Uploading Must Gather Captured Data Information

Original Publication Date

15 October 2008

Related Information

[{"Product":{"code":"SSPREK","label":"Tivoli Access Manager for e-business"},"Business Unit":{"code":"BU059","label":"IBM Software w\/o TPS"},"Component":"--","Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"All versions","Edition":"","Line of Business":{"code":"LOB24","label":"Security Software"}}]

Product Synonym

ITAM;TAM;ITAM for ebu;ITAM for e-business;WebSeal;IBM Tivoli Access Manager for e-business;TAM for ebu

Document Information

Modified date:
17 June 2018

UID

swg27012164