Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 

The user is unable to browse any Cisco Unity subscriber information through the Cisco Unity System Administration web page when the Cisco Security Agent is enabled. The user cannot import users from Microsoft Exchange. The HTTP 403 (Forbidden) You are not

Core Issue

This issue is observed with Cisco Security Agent (CSA) version 4.5.1.639 on the Cisco Unity Server 4.0(5).

When this issue occurs, the CSA logs show a common scenario where the subscribers display names with the [ character. This problem does not exist when the CSA is disabled.

This error appears in the application event log when the browser error is received:

The process 'C:\WINNT\system32\inetsrv\inetinfo.exe' (as user NT AUTHORITY\SYSTEM) attempted to receive the data '/Web/SA/FrameASP/SubsFrame.asp?DirId=3992db657dccff41aaf59d5af42b32de&Alias=acohn&Server= &Database=&MailBoxId=&FirstName=Annette&LastName=Cohn&UserName=Cohn%2C%20Annette%20%5BEC%5
D&MailStoreType=&Smtp=&Extension=20931&MailStore=undefined&Domain=undefined&NavWidth=205'.The operation was denied.

The root cause is usually that the CSA policy does not allow some non-alpha characters. Therefore, there are parsing problems through to the Microsoft Internet Information Server (IIS).


Resolution

This problem is documented in Cisco bug ID CSCse51014.

As a workaround, disable the CSA. A full maintenance release will be available soon. To request an interim hotfix version of the CSA for Cisco Unity version 4.5.1(655), open a case with the Cisco Technical Assistance Center (TAC) through the TAC Service Request Tool.

For similar problems seen in the Cisco CallManager CSA, refer to Cisco bug ID CSCsd48467.

539
Views
0
Helpful
0
Comments