Friday, February 5, 2010

Discovery and Extended search ACL configurations will be deleted when installing an upgraded point release.

Objective: Explain why ACL settings to Search and Discovery and Extended Search may be deleted after an installation. In addition, explain that the information contained in both ACL files has changed in build 3.029.

Information: When upgrading from a previous point release (pre build 3.029) to a newer version of OCS Archive Viewer, your Discovery and Extended search Access Control settings will be replaced by the installer.

Your ACL settings for discovery and extended search will be deleted.
The version of OCS AV where we have changed the information in these files are included in build 3.029 and newer. The name of the files that contain these settings are:
DiscoverConfig.xml and ExtendedConfig.xml.
The location for these files are: Inetpub\wwwroot\ITIMArchiveViews\Admin
The changes were made to the naming format in order to resolve some issues with our the security settings in certain environments.
As part of this update, we have added the SamAccount tag to the file and modified our storage format.
Here is an example:
GroupORUser ocsr2\Keith Carbonneau GroupORUser
SamAccount ocsr2\kcarbonneau SamAccount

The Screen shot below shows the UI for the ACL these files are associated with. The UI for the ACL is located on the Admin page under the Extended Search Tab and the Discovery Tab as well.


Upgrading from 3.028 and older to 3.029 and newer:
When upgrading from 3.028 and older to an updated version, please print, copy and move these files to another location outside of ITIMarchiveviews folder to avoid them being overwritten by the installer:
1. DiscoverConfig.xml
2. ExtendedConfig.xml.
The location for these files are: Inetpub\wwwroot\ITIMArchiveViews\Admin\
3. Web.config:
The location for this file is: Inetpub\wwwroot\ITIMArchiveViews\
4. When the installer is finished...
5. Replace the newer web.config with the older web.config
6. Re-enter the Extended Search and Discover ACL users and groups by referencing the older DiscoverConfig.xml and ExtendedConfig.xml. Please do not simply replace the files. You must reenter them via the UI or manually add the SamAccount tag to in these xml files.

Upgrading from 3.029 and newer:
When upgrading from 3.029 and newer to an updated version, please print, copy and move these files to another location outside of ITIMarchiveviews folder to avoid them being overwritten by the installer:
1. DiscoverConfig.xml
2. ExtendedConfig.xml.
The location for these files are: Inetpub\wwwroot\ITIMArchiveViews\Admin\
3. Web.config:
The location for these files are: Inetpub\wwwroot\ITIMArchiveViews\
4. When the installer is finished, move all 3 files back to the original location.

We are working on an enhancement in an upcoming build for the installer to avoid overwriting all configuration files.

Wednesday, February 3, 2010

I can't enable Windows Authentication because the option doesnt exist under Authentication in IIS7.

When configuring Instant Archive Viewer to use Windows Authentication in IIS 7 on a Windows 2008 Server, by default there is no option to choose Windows Authentication. In this case you will need to add the role in the Server Manager.
To configure Windows Authentication for IIS 7.
  1. In Server Manager, under the Roles node, select the Web Server (IIS) role.
  2. In the Role Services section, click Add Role Services.

  3. The Add Role Services wizard appears.

  4. Under the Security role service, select the Windows Authentication check box.
  5. Click Next and verify the role service changes to be applied.
  6. Click Install to start the IIS and ASP.NET installation process.
  7. Click Close to close the Add Role Services wizard.