Server 2012 CDP PKI Setup on Subordinate CA - Active Directory Certificate Services could not create an encryption certificate
Hi,
When I check pkiview.msc on my 2012 Subordinate CA I get the error shown in the first picture below. I'm also getting errors similar to below in the event log:
"Active Directory Certificate Services could not create an encryption certificate. Requested by contoso\admin1. The revocation function was unable to check revocation because the revocation server was offline. 0x80092013 (-2146885613 CRYPT_E_REVOCATION_OFFLINE)."
I'm assisting in setting up a 2 tier PKI infrastructure using Windows 2012. The root CA looks good, but we're getting errors on the subordinate. The server was working, but we discovered that the server would only issue certificates with a maximum of a 1
year expiry date - obviously no good, so we decided to run through the following commands on the root CA (as recommended byhttp://www.techieshelp.com/subordinate-ca-increase-certificate-validity/)
certutil -setreg ca\ValidityPeriodunits "Years"
certutil -setreg ca\ValidityPeriod "5"
restarted AD certificate services on the root and subordinate CA.Then did the following on the subordinate CA:
1.On the Subordinate CA create a new CA request by right clicking the server in ADCS and select New Request.
2.Supplied the original request file from the subordinate CA (I couldn't find a way of generating a new request file)
3.Issued the certificate using the Root CA.
4.On the Subordinate CA ADCS installed new CA cert.
However, I keep on getting CDP or AIA errors on my subordinate CA.Also I'm missing a CDP field value when I look at the certificate listed in the personal and trusted certification authority store on my subordinate CA.
In addition, when I look at my CDP locations in Certificate Authority, I see a lot of CDPs, but I'm not sure if I need them all - I suspect I could just get away with LDAP, the C:\windows path and a single http:// path.
I've tried renewing the existing certificate and CRL on my subordinate CA, but that didn't work either.
Please advise.
Thanks
Ok, the process to renew the subordinate CA is incorrect. Once the registry setting to change the validity period was made on the root CA, the root CA ADCS service needs to be restarted. That is the only time those keys are read. Then:
1) On the subordinate CA, open the CA tool, right click the CA and select Renew CA Certificate. You can use the same key, no need to create a new one. It will create a NEW certificate request file
2) Copy that to the Root CA and submit like you would have done during the initial install
3) Approve the request and export the issued certificate
4) On the subordinate CA, in the CA tool, right click the CA and choose Install CA Certificate.
You can not reuse request files.
Mark B. Cooper, President and Founder of PKI Solutions Inc., former Microsoft Senior Engineer and subject matter expert for Microsoft Active Directory Certificate Services (ADCS). Known as “The PKI Guy” at Microsoft for 10 years.
Similar Messages
-
Hi,
We have some problems with our Root CA. I can se a lot of failed requests. with the event id 22: in the logs. The description is: Active Directory Certificate Services could not process request 3686 due to an error: The revocation function was unable to
check revocation because the revocation server was offline. 0x80092013 (-2146885613). The request was for CN=xxxxx.ourdomain.com. Additional information: Error Verifying Request Signature or Signing Certificate
A couple of months ago we decomissioned one of our old 2003 DCs and it looks like this server might have had something to do with the CA structure but I am not sure whether this was in use or not since I could find the role but I wasn't able to see any existing
configuration.
Let's say that this server was previously responsible for the certificates and was the server that should have revoked the old certs, what can I do know to try and correct the problem?
Thank you for your help
//Crishello,
let me recap first:
you see these errors on a ROOT CA. so it seems like the ROOT CA is also operating as an ISSUING CA. Some clients try to issue a new certificate from the ROOT CA and this fails with your error mentioned.
do you say that you had a PREVIOUS CA which you decomissioned, and you now have a brand NEW CA, that was built as a clean install? When you decommissioned the PREVIOUS CA, that was your design decision to don't bother with the current certificates that it
issued and which are still valid, right?
The error says, that the REQUEST signature cannot be validated. REQUESTs are signed either by itself (self-signed) or if they are renewal requests, they would be signed with the previous certificate which the client tries to renew. The self-signed REQUESTs
do not contain CRL paths at all.
So this implies to me as these requests that are failing are renewal requests. Renewal requests would contain CRL paths of the previous certificates that are nearing their expiration.
As there are many such REQUEST and failures, it probably means that the clients use AUTOENROLLMENT, which tries to renew their current, but shortly expiring, certificates during (by default) their last 6 weeks of lifetime.
As you decommissioned your PREVIOUS CA, it does not issue CRL anymore and the current certificates cannot be checked for validity.
Thus, if the renewal tries to renew them by using the NEW CA, your NEW CA cannot validate CRL of the PREVIOUS CA and will not issue new certificates.
But it would not issue new certificates anyway even if it was able to verify the PREVIOUS CA's CRL, as it seems your NEW CA is completely brand new, without being restored from the PREVIOUS CA's database. Right?
So simply don't bother :-) As long as it was your design to decommission the PREVIOUS CA without bothering with its already issued certificates.
The current certificates which autoenrollment tries to renew cannot be checked for validity. They will also slowly expire over the next 6 weeks or so. After that, autoenrollment will ask your NEW CA to issue a brand new certificate without trying to renew.
Just a clean self-signed REQUEST.
That will succeed.
You can also verify this by trying to issue a certificate on an affected machine manually from Certificates MMC.
ondrej. -
What am I trying to do?
I have tried installing Microsoft Exchange Server 2013 Cumulative Update 7 Setup on a fresh install of Windows Server 2012 R2 but it gets stuck when running the setup exe on Step 8 of 14 “Mailbox Transport Service” I have included full
error logs at the bottom of the page but the basics are in order it will throw which loop around are:
[01/20/2015 17:13:20.0084] [2] Beginning processing Set-SharedConfigDC
[01/20/2015 17:13:20.0178] [2] The call to Microsoft Exchange Active Directory Topology service on server 'TopologyClientTcpEndpoint (localhost)' returned an error. Error details No Minimal Required Number of Suitable Directory Servers
Found in Forest mydomain.com Site Default-First-Site and connected Sites..
[01/20/2015 17:13:20.0178] [2] No Minimal Required Number of Suitable Directory Servers Found in Forest mydomain.com Site Default-First-Site and connected Sites.
Exchange is currently running in the envirmonet on 2010 Sp3 I am installing 2013 CU7 fresh so I can migrate the databases over.
What am I running?
2 X DC on domain and forest functional level 2008R2 both writable
1 X fresh install of Windows 2012 R2 which is domain joined
What have I tried?
Checked Ipv6 is enabled on all DC NICS and Existing Exchange Servers
Rebooted every server
Run setup as Administrator
My account is part of the domain Enterprise Admin group
Tried adding "Exchange Server" or "Exchange Enterprise Servers" to the group policy and doing the relevant gpupdate /force and reboot :
Computer Configuration Windows Settings
Security Settings + Local Policies
User Rights Assignment Mange auditing and security log
Turned off firewall on DC and Exchange Server even stopped the service
Turned off all AV on the DC and Exchange Server
Checked I could telnet to global catalog servers on port 3268 which I can
Checked the global catalog records existed in DNS which they all do
Done the obvious ping tests all round which confirms connectivity
Schema has been prepared using appropriate commands before running the setup exe
setup.exe /PrepareSchema /IacceptExchangeServerLicenseTerms
Making sure the following path has full permissions:
EXCHANGE14:\Current\Release\Shared\Datacenter\Setup
Restarted Microsoft Exchange Active Directory Topology service
DcDiag all looks good
What have I noticed that is suspicious?
Microsoft Exchange Transport service will not start even though both of its dependences services have started:
Microsoft Filtering Management Service
Microsoft Exchange Active Directory Topology Service
It will eventually error with
“Windows could not start the Microsoft Exchange Transport Service on local computer
Error 1053: This Service did not respond to the start of control request in a timely fashion”
This error is from the GUI wizard itself:
Error:
The following error was generated when "$error.Clear();
$maxWait = New-TimeSpan -Minutes 8
$timeout = Get-Date;
$timeout = $timeout.Add($maxWait);
$currTime = Get-Date;
$successfullySetConfigDC = $false;
while($currTime -le $timeout)
$setSharedCDCErrors = @();
try
Set-SharedConfigDC -DomainController $RoleDomainController -ErrorVariable setSharedCDCErrors -ErrorAction SilentlyContinue;
$successfullySetConfigDC = ($setSharedCDCErrors.Count -eq 0);
if($successfullySetConfigDC)
break;
Write-ExchangeSetupLog -Info ("An error ocurred while setting shared config DC. Error: " + $setSharedCDCErrors[0]);
catch
Write-ExchangeSetupLog -Info ("An exception ocurred while setting shared config DC. Exception: " + $_.Exception.Message);
Write-ExchangeSetupLog -Info ("Waiting 30 seconds before attempting again.");
Start-Sleep -Seconds 30;
$currTime = Get-Date;
if( -not $successfullySetConfigDC)
Write-ExchangeSetupLog -Error "Unable to set shared config DC.";
" was run: "System.Exception: Unable to set shared config DC.
at Microsoft.Exchange.Configuration.Tasks.Task.WriteError(Exception exception, ErrorCategory category, Object target, Boolean reThrow, String helpUrl)
at Microsoft.Exchange.Configuration.Tasks.Task.WriteError(Exception exception, ErrorCategory category, Object target)
at Microsoft.Exchange.Management.Deployment.WriteExchangeSetupLog.InternalProcessRecord()
at Microsoft.Exchange.Configuration.Tasks.Task.<ProcessRecord>b__b()
at Microsoft.Exchange.Configuration.Tasks.Task.InvokeRetryableFunc(String funcName, Action func, Boolean terminatePipelineIfFailed)".
Exchange logs which have been written:
**The error will loop around for 8 minutes on trying to set-sharedconfig DC whatever this is trying to do ??
[01/20/2015 17:13:20.0084] [2] Active Directory session settings for 'Set-SharedConfigDC' are: View Entire Forest: 'True', Configuration Domain Controller:mydomain.com', Preferred Global Catalog: 'mydomain.com', Preferred Domain Controllers:
'{ mydomain.com}'
[01/20/2015 17:13:20.0084] [2] User specified parameters:
-DomainController:mydomain.com' -ErrorVariable:'setSharedCDCErrors' -ErrorAction:'SilentlyContinue'
[01/20/2015 17:13:20.0084] [2] Beginning processing Set-SharedConfigDC
[01/20/2015 17:13:20.0178] [2] The call to Microsoft Exchange Active Directory Topology service on server 'TopologyClientTcpEndpoint (localhost)' returned an error. Error details No Minimal Required Number of Suitable Directory Servers
Found in Forest mydomain.com Site Default-First-Site and connected Sites..
[01/20/2015 17:13:20.0178] [2] No Minimal Required Number of Suitable Directory Servers Found in Forest mydomain.com Site Default-First-Site and connected Sites.
[01/20/2015 17:13:20.0178] [2] The call to Microsoft Exchange Active Directory Topology service on server 'TopologyClientTcpEndpoint (localhost)' returned an error. Error details No Minimal Required Number of Suitable Directory Servers
Found in Forest mydomain.com Site Default-First-Site and connected Sites..
[01/20/2015 17:13:20.0178] [2] No Minimal Required Number of Suitable Directory Servers Found in Forest mydomain.com Site Default-First-Site and connected Sites.
[01/20/2015 17:13:20.0178] [2] Ending processing Set-SharedConfigDC
[01/20/2015 17:13:20.0193] [2] Beginning processing Write-ExchangeSetupLog
[01/20/2015 17:13:20.0193] [2] An error ocurred while setting shared config DC. Error: The call to Microsoft Exchange Active Directory Topology service on server 'TopologyClientTcpEndpoint (localhost)' returned an error. Error details
No Minimal Required Number of Suitable Directory Servers Found in Forest mydomain.com Site Default-First-Site and connected Sites..
[01/20/2015 17:13:20.0193] [2] Ending processing Write-ExchangeSetupLog
[01/20/2015 17:13:20.0193] [2] Beginning processing Write-ExchangeSetupLog
[01/20/2015 17:13:20.0193] [2] Waiting 30 seconds before attempting again.
[01/20/2015 17:13:20.0193] [2] Ending processing Write-ExchangeSetupLog
[01/20/2015 17:13:50.0195] [2] Beginning processing Write-ExchangeSetupLog
[01/20/2015 17:13:50.0273] [2] [ERROR] Unable to set shared config DC.
[01/20/2015 17:13:50.0273] [2] [ERROR] Unable to set shared config DC.
[01/20/2015 17:13:50.0288] [2] Ending processing Write-ExchangeSetupLog
[01/20/2015 17:13:50.0288] [1] The following 1 error(s) occurred during task execution:
[01/20/2015 17:13:50.0288] [1] 0. ErrorRecord: Unable to set shared config DC.
[01/20/2015 17:13:50.0288] [1] 0. ErrorRecord: System.Exception: Unable to set shared config DC.
at Microsoft.Exchange.Configuration.Tasks.Task.WriteError(Exception exception, ErrorCategory category, Object target, Boolean reThrow, String helpUrl)
at Microsoft.Exchange.Configuration.Tasks.Task.WriteError(Exception exception, ErrorCategory category, Object target)
at Microsoft.Exchange.Management.Deployment.WriteExchangeSetupLog.InternalProcessRecord()
at Microsoft.Exchange.Configuration.Tasks.Task.<ProcessRecord>b__b()
at Microsoft.Exchange.Configuration.Tasks.Task.InvokeRetryableFunc(String funcName, Action func, Boolean terminatePipelineIfFailed)
[01/20/2015 17:13:50.0288] [1] [ERROR] The following error was generated when "$error.Clear();
$maxWait = New-TimeSpan -Minutes 8
$timeout = Get-Date;
$timeout = $timeout.Add($maxWait);
$currTime = Get-Date;
$successfullySetConfigDC = $false;
while($currTime -le $timeout)
$setSharedCDCErrors = @();
try
Set-SharedConfigDC -DomainController $RoleDomainController -ErrorVariable setSharedCDCErrors -ErrorAction SilentlyContinue;
$successfullySetConfigDC = ($setSharedCDCErrors.Count -eq 0);
if($successfullySetConfigDC)
break;
Write-ExchangeSetupLog -Info ("An error ocurred while setting shared config DC. Error: " + $setSharedCDCErrors[0]);
catch
Write-ExchangeSetupLog -Info ("An exception ocurred while setting shared config DC. Exception: " + $_.Exception.Message);
Write-ExchangeSetupLog -Info ("Waiting 30 seconds before attempting again.");
Start-Sleep -Seconds 30;
$currTime = Get-Date;
if( -not $successfullySetConfigDC)
Write-ExchangeSetupLog -Error "Unable to set shared config DC.";
" was run: "System.Exception: Unable to set shared config DC.
at Microsoft.Exchange.Configuration.Tasks.Task.WriteError(Exception exception, ErrorCategory category, Object target, Boolean reThrow, String helpUrl)
at Microsoft.Exchange.Configuration.Tasks.Task.WriteError(Exception exception, ErrorCategory category, Object target)
at Microsoft.Exchange.Management.Deployment.WriteExchangeSetupLog.InternalProcessRecord()
at Microsoft.Exchange.Configuration.Tasks.Task.<ProcessRecord>b__b()
at Microsoft.Exchange.Configuration.Tasks.Task.InvokeRetryableFunc(String funcName, Action func, Boolean terminatePipelineIfFailed)".
[01/20/2015 17:13:50.0288] [1] [ERROR] Unable to set shared config DC.
[01/20/2015 17:13:50.0288] [1] [ERROR-REFERENCE] Id=AllADRolesCommonServiceControl___ee47ab1c06fb47919398e2e95ed99c6c Component=EXCHANGE14:\Current\Release\Shared\Datacenter\Setup
[01/20/2015 17:13:50.0288] [1] Setup is stopping now because of one or more critical errors.
[01/20/2015 17:13:50.0288] [1] Finished executing component tasks.
[01/20/2015 17:13:50.0304] [1] Ending processing Install-BridgeheadRole
Windows Event Viewer:
Process Microsoft.Exchange.Directory.TopologyService.exe (PID=5276) Forest mydomain.com. Exchange Active Directory Provider couldn't find minimal required number of suitable Global Catalog servers
in either the local site 'Default-First-Site' or the following sites:Hi apl228,
1. Please make sure the IPv6 is enabled.
2. Please make sure the account that install Exchange server has Administrator permission.
3. Please make sure DNS has been configured correctly.
Thanks
Mavis Huang
TechNet Community Support -
Hi there
I want to try sharepoint foundation and office web apps server .
I installed server 2012 sharepoint found 2013 sql server 2012 and create a new forest on active directory domain sevice
now I want to install office web apps server 2013 but when I run the setup said me can't install office web apps server on the domain name that installed sharepoint .
how can I create second domain name on this active directory domain service to install office web apps server ?
help me please I'm new and just want to try sharepoint and office web apps server .
mostly I need to create MS access custom web app and I need the web place to run my access custom web app on this server and because I live in iran can't create and sign up for office 365 and sharepoint online so i'm forced to run them on my system .help
me to complete ths server ?
Greate Regards :
Raha
whit the best regard : RahaHi,
For how to Use Office Web Apps with SharePoint 2013, the below links should be what you want to refer to:
Configure Office Web Apps for SharePoint 2013
http://technet.microsoft.com/en-us/library/ff431687.aspx
Video: Configure Office Web Apps for SharePoint 2013
http://technet.microsoft.com/en-us/library/dn455088.aspx
How Office Web Apps work on-premises with SharePoint 2013
http://technet.microsoft.com/en-us/library/ff431685.aspx
In addition, for further assistance for Sharepoint, I suggest you post in the SharePoint forum.
Regards,
Yan Li
Regards, Yan Li -
HI,
when I configure AD RMS configuration it gives me error that "one or more ADRMS role services could not be configured: AD RMS setup failed because of invalid configuraion setting". The user which I try to install is an administrator of DC and
also the service account is a member of enterprise domain group. When I tried this on test environment it works perfectly but on production environment it didn't. pls help me with this....
Thanks......
I am using windows 2012 standard Server..HI Eddie,
Thanks for reply.. Pls find the debug log below... It says " Message: The 'http://tempuri.org/RMProvisionSettingsSchema.xsd:Domain' element is invalid - The value 'D' is invalid according to its datatype 'http://tempuri.org/RMProvisionSettingsSchema.xsd:WindowsDomainName'
- The actual length is less than the MinLength value. "
00000706 56.78187180
[11964] CallStack:Microsoft.RightsManagementServices.Configuration.HelperMethods.IsValidConfigSetting
00000707 56.78187180
[11964] System.Xml.Schema.XmlSchemaValidationException
00000708 56.78187180
[11964] Message: The 'http://tempuri.org/RMProvisionSettingsSchema.xsd:Domain' element is invalid - The value 'D' is invalid according to its datatype 'http://tempuri.org/RMProvisionSettingsSchema.xsd:WindowsDomainName' -
The actual length is less than the MinLength value.
00000709 56.78187180
[11964] StackTrace: at Microsoft.RightsManagementServices.Configuration.HelperMethods.ProvisionSchemaValidationEventHandler(Object sender, ValidationEventArgs e)
00000710 56.78187180
[11964] at System.Xml.Schema.XmlSchemaValidator.CheckElementValue(String stringValue)
00000711 56.78187180
[11964] at System.Xml.Schema.XmlSchemaValidator.ValidateAtomicValue(String stringValue, XmlSchemaSimpleType& memberType)
00000712 56.78187180
[11964] at System.Xml.Schema.XmlSchemaValidator.InternalValidateEndElement(XmlSchemaInfo schemaInfo, Object typedValue)
00000713 56.78187180
[11964] at System.Xml.DocumentSchemaValidator.ValidateElement()
00000714 56.78187180
[11964] at System.Xml.DocumentSchemaValidator.ValidateNode(XmlNode node)
00000715 56.78187180
[11964] at System.Xml.DocumentSchemaValidator.ValidateElement()
00000716 56.78187180
[11964] at System.Xml.DocumentSchemaValidator.ValidateNode(XmlNode node)
00000717 56.78187180
[11964] at System.Xml.DocumentSchemaValidator.ValidateElement()
00000718 56.78187180
[11964] at System.Xml.DocumentSchemaValidator.ValidateNode(XmlNode node)
00000719 56.78187180
[11964] at System.Xml.DocumentSchemaValidator.ValidateElement()
00000720 56.78187180
[11964] at System.Xml.DocumentSchemaValidator.ValidateNode(XmlNode node)
00000721 56.78187180
[11964] at System.Xml.DocumentSchemaValidator.ValidateElement()
00000722 56.78187180
[11964] at System.Xml.DocumentSchemaValidator.ValidateNode(XmlNode node)
00000723 56.78187180
[11964] at System.Xml.DocumentSchemaValidator.ValidateNode(XmlNode node)
00000724 56.78187180
[11964] at System.Xml.DocumentSchemaValidator.Validate(XmlNode nodeToValidate)
00000725 56.78187180
[11964] at System.Xml.XmlDocument.Validate(ValidationEventHandler validationEventHandler, XmlNode nodeToValidate)
00000726 56.78187180
[11964] at Microsoft.RightsManagementServices.Configuration.HelperMethods.IsValidConfigSetting(ConfigOperationType configOperation)
00000727 56.78187180
[11964]
00000728 56.78199768
[11964] -Microsoft.RightsManagementServices.Configuration.Commands.InstallADRMS.ProcessRecord
00000729 56.84855270
[11964] +Microsoft.RightsManagementServices.Configuration.DeploymentPSProvider.RemoveDrive
00000730 56.84864807
[11964] -Microsoft.RightsManagementServices.Configuration.DeploymentPSProvider.RemoveDrive
00000731 56.86203766
[23784] +[Tier2Diagnostic]
00000732 56.86203766
[23784] CallStack:System.Windows.Threading.ExceptionWrapper.InternalRealCall
00000733 56.86203766
[23784] Microsoft.ADRoles.ServerManager.Common.PowerShellRemoting.RemotingException
00000734 56.86203766
[23784] Message: AD RMS setup failed because of invalid configuration settings.
00000735 56.86203766
[23784] StackTrace: at Microsoft.ADRoles.ServerManager.Common.PowerShellRemoting.WorkflowExecutor.ExecuteCommand(Command workflowCommand, EventHandler`1 outputEventsHandler, EventHandler`1 progressEventHandler,
EventHandler`1 finishedEventHandler, EventHandler`1 warningEventHandler, EventHandler`1 errorEventHandler)
00000736 56.86203766
[23784] at Microsoft.RightsManagementServices.Deployment.M3PPowerShellEngine.ExecuteCommand(CmdletProperties propertyBag, EventHandler`1 outputHandler, EventHandler`1 progressStatusHandler, EventHandler`1 progressPercentageHandler, EventHandler`1
warningHandler, EventHandler`1 errorHandler)
00000737 56.86203766
[23784] at Microsoft.RightsManagementServices.Deployment.AbstractPowerShellProvider.<>c__DisplayClass3`1.<ExecuteAsynchronously>b__0(Object sender, DoWorkEventArgs eventArgs)
00000738 56.86203766
[23784] at Microsoft.RightsManagementServices.Configuration.AbortableBackgroundWorker.OnDoWork(DoWorkEventArgs e)
00000739 56.86203766
[23784] at System.ComponentModel.BackgroundWorker.WorkerThreadStart(Object argument)
00000740 56.86203766
[23784] + System.Management.Automation.RemoteException
00000741 56.86203766
[23784] + Message: AD RMS setup failed because of invalid configuration settings.
00000742 56.86203766
[23784] + StackTrace:
00000743 56.86203766
[23784]
00000744 56.86225891
[23784] +[Tier2Diagnostic] One or more AD RMS role services could not be configured:
00000745 56.86225891
[23784] CallStack:Microsoft.RightsManagementServices.Configuration.AbortableBackgroundWorker`1+<>c__DisplayClass1.<Run>b__0
00000746 56.86225891
[23784] Microsoft.ADRoles.ServerManager.Common.PowerShellRemoting.RemotingException
00000747 56.86225891
[23784] Message: AD RMS setup failed because of invalid configuration settings.
00000748 56.86225891
[23784] StackTrace: at Microsoft.ADRoles.ServerManager.Common.PowerShellRemoting.WorkflowExecutor.ExecuteCommand(Command workflowCommand, EventHandler`1 outputEventsHandler, EventHandler`1 progressEventHandler,
EventHandler`1 finishedEventHandler, EventHandler`1 warningEventHandler, EventHandler`1 errorEventHandler)
00000749 56.86225891
[23784] at Microsoft.RightsManagementServices.Deployment.M3PPowerShellEngine.ExecuteCommand(CmdletProperties propertyBag, EventHandler`1 outputHandler, EventHandler`1 progressStatusHandler, EventHandler`1 progressPercentageHandler, EventHandler`1
warningHandler, EventHandler`1 errorHandler)
00000750 56.86225891
[23784] at Microsoft.RightsManagementServices.Deployment.AbstractPowerShellProvider.<>c__DisplayClass3`1.<ExecuteAsynchronously>b__0(Object sender, DoWorkEventArgs eventArgs)
00000751 56.86225891
[23784] at Microsoft.RightsManagementServices.Configuration.AbortableBackgroundWorker.OnDoWork(DoWorkEventArgs e)
00000752 56.86225891
[23784] at System.ComponentModel.BackgroundWorker.WorkerThreadStart(Object argument)
00000753 56.86225891
[23784] + System.Management.Automation.RemoteException
00000754 56.86225891
[23784] + Message: AD RMS setup failed because of invalid configuration settings.
00000755 56.86225891
[23784] + StackTrace:
00000756 56.86225891
[23784]
00000757 56.86357880
[23784] PageLeave: Progress
00000758 56.86389160
[23784] ErrorNotification: <null>
00000759 56.86653519
[23784] PageEnter: Results
00000760 56.89128876
[23784] +[Tier2Diagnostic] One or more AD RMS role services could not be configured:
00000761 56.89128876
[23784] CallStack:Microsoft.RightsManagementServices.Deployment.ViewModel.ResultsPageViewModel.SetUpResultDetails
00000762 56.89128876
[23784] System.Management.Automation.ApplicationFailedException
00000763 56.89128876
[23784] Message: One or more AD RMS role services could not be configured:
00000764 56.89128876
[23784] StackTrace:
00000765 56.89128876
[23784] + Microsoft.ADRoles.ServerManager.Common.PowerShellRemoting.RemotingException
00000766 56.89128876
[23784] + Message: AD RMS setup failed because of invalid configuration settings.
00000767 56.89128876
[23784] + StackTrace: at Microsoft.ADRoles.ServerManager.Common.PowerShellRemoting.WorkflowExecutor.ExecuteCommand(Command workflowCommand, EventHandler`1 outputEventsHandler, EventHandler`1 progressEventHandler,
EventHandler`1 finishedEventHandler, EventHandler`1 warningEventHandler, EventHandler`1 errorEventHandler)
00000768 56.89128876
[23784] at Microsoft.RightsManagementServices.Deployment.M3PPowerShellEngine.ExecuteCommand(CmdletProperties propertyBag, EventHandler`1 outputHandler, EventHandler`1 progressStatusHandler, EventHandler`1 progressPercentageHandler, EventHandler`1
warningHandler, EventHandler`1 errorHandler)
00000769 56.89128876
[23784] at Microsoft.RightsManagementServices.Deployment.AbstractPowerShellProvider.<>c__DisplayClass3`1.<ExecuteAsynchronously>b__0(Object sender, DoWorkEventArgs eventArgs)
00000770 56.89128876
[23784] at Microsoft.RightsManagementServices.Configuration.AbortableBackgroundWorker.OnDoWork(DoWorkEventArgs e)
00000771 56.89128876
[23784] at System.ComponentModel.BackgroundWorker.WorkerThreadStart(Object argument)
00000772 56.89128876
[23784] + System.Management.Automation.RemoteException
00000773 56.89128876
[23784] + Message: AD RMS setup failed because of invalid configuration settings.
00000774 56.89128876
[23784] + StackTrace:
00000775 56.89128876
[23784]
00000776 56.89152908
[23784] +[Tier2Diagnostic] OnOperationError
00000777 56.89152908
[23784] CallStack:Microsoft.RightsManagementServices.Configuration.AbortableBackgroundWorker`1+<>c__DisplayClass1.<Run>b__0
00000778 56.89152908
[23784] System.Management.Automation.ApplicationFailedException
00000779 56.89152908
[23784] Message: One or more AD RMS role services could not be configured:
00000780 56.89152908
[23784] StackTrace:
00000781 56.89152908
[23784] + Microsoft.ADRoles.ServerManager.Common.PowerShellRemoting.RemotingException
00000782 56.89152908
[23784] + Message: AD RMS setup failed because of invalid configuration settings.
00000783 56.89152908
[23784] + StackTrace: at Microsoft.ADRoles.ServerManager.Common.PowerShellRemoting.WorkflowExecutor.ExecuteCommand(Command workflowCommand, EventHandler`1 outputEventsHandler, EventHandler`1 progressEventHandler,
EventHandler`1 finishedEventHandler, EventHandler`1 warningEventHandler, EventHandler`1 errorEventHandler)
00000784 56.89152908
[23784] at Microsoft.RightsManagementServices.Deployment.M3PPowerShellEngine.ExecuteCommand(CmdletProperties propertyBag, EventHandler`1 outputHandler, EventHandler`1 progressStatusHandler, EventHandler`1 progressPercentageHandler, EventHandler`1
warningHandler, EventHandler`1 errorHandler)
00000785 56.89152908
[23784] at Microsoft.RightsManagementServices.Deployment.AbstractPowerShellProvider.<>c__DisplayClass3`1.<ExecuteAsynchronously>b__0(Object sender, DoWorkEventArgs eventArgs)
00000786 56.89152908
[23784] at Microsoft.RightsManagementServices.Configuration.AbortableBackgroundWorker.OnDoWork(DoWorkEventArgs e)
00000787 56.89152908
[23784] at System.ComponentModel.BackgroundWorker.WorkerThreadStart(Object argument)
00000788 56.89152908
[23784] + System.Management.Automation.RemoteException
00000789 56.89152908
[23784] + Message: AD RMS setup failed because of invalid configuration settings.
00000790 56.89152908
[23784] + StackTrace:
00000791 56.89152908
[23784] -
Getting below mentioned error while installing a package in the windows 2012 server remotely through psexec command
Error 1718. Windows Installer Service could not be accessed.
The same msi is getting installed local in through when we are doing through manually
Please help on the sameHi Rahulan,
Would you please let us know current situation of this issue? If any update, please feel free to let us know.
Just addition, please refer to following threads and check if can help you.
The Windows Installer Service could not be accessed.
error 1719 windows installer service could not be accessed ....
Hope this helps.
Best regards,
Justin Gu -
I am trying to install VMware Server 2.0.2 on my HP Laptop running Windows 8 Pro as Host. But I am getting the following warning messages but the install continues to completion:
Warning Msg:
Warning 1909. Could not create shortcut Manage Virtual Networks.lnk. Verify that the destination folder exist and that you can access it.
Warning 1909. Could not create shortcut Server Home Page.lnk. Verify that the destination folder exist and that you can access it.
After installation, I am not able to login to the VM Server. When I click on the VMware Sever login icon, the error that I am getting states: okonita1:8333 -
Oops! Page Not Found
Sorry, the page you were looking for could not be found.
I am at a loss how to correct this error. I have googled, read and followed a lot of the online help that I can find including taking ownership of suspect target folders such as ProgramData, all to no avail.
At this point, I am hoping someone does know what specifically can help resolve my issue and I am asking for help. VMware knowledge base or support are not helpful.
Thanks all,
EnyiDid you run the VMServer setup *as Administrator*?
Did you have IIS installed on your system before you installed VMServer? -
WL Server & apache 2 integration: mod_weblogic: could not create lock
Hi,
we're running Apache 2.0.50 as a front-end for WL Server 8.1 using mod_weblogic as the proxy.
We have to run Apache as a different user than the default LocalSystem account to be able to access a windows share. But when we set up Apache to run as a user (in the windows domain) the server will not start up. Looking at the error log I can see the following message:
[Wed Jan 26 16:10:37 2005] [crit] (OS 5)Access is denied. : mod_weblogic: could not create lock
The user has administrative rights on the server so I'm not really sure why mod_weblogic can not obtain a lock.
What is the lock it's trying to obtain?
Thanks.
RuairiHello,
has this been resolved by anyone in the meantime? I'm running into the same kind of problem. Here's my setup:
Apache 2.0.55, on Solaris 8
mod_wl_20.so, from Bea Weblogic Server 8.1 SP 2
When I have the following line in my httpd.conf file:
LoadModule weblogic_module modules/mod_wl_20.so
I receive the following error in Apache's error log file:
[timestamp] [crit] (13)Permission denied: mod_weblogic: could not create lock
I am currently not running Apache as root. Without the weblogic module, it works fine.
I guess my main question is: what kind of lock is it trying to obtain? Changing the AcceptMutex parameter in Apache does not seem to help.
Regards,
Ralf -
How to setup Wireless Clients MAC+Active Directory based acess
Dear Gents,
I want to setup Wireless Clients MAC+Active Directory based acess on AP 1242 standalone Wireless series .
Steps i have configured :
1) SSID manger under Open authentication : Selected with EAP.
2) under advacned Radius : s
MAC Address Authentication
MAC Addresses Authenticated by:
Authentication Server Only
3) Server Manger : Current server list
added the radius ip address 10.1.200.x
EAP Authentication
MAC Authentication
Accounting
Priority 1: < NONE >10.113.253.1010.1.200.23410.8.200.1510.15.200.15
Priority 1: < NONE >10.113.253.1010.1.200.23410.8.200.1510.15.200.15
Priority 1: < NONE >10.113.253.1010.1.200.23410.8.200.1510.15.200.15
Priority 2: < NONE >10.113.253.1010.1.200.23410.8.200.1510.15.200.15
Priority 2: < NONE >10.113.253.1010.1.200.23410.8.200.1510.15.200.15
Priority 2: < NONE >10.113.253.1010.1.200.23410.8.200.1510.15.200.15
Priority 3: < NONE >10.113.253.1010.1.200.23410.8.200.1510.15.200.15
Priority 3: < NONE >10.113.253.1010.1.200.23410.8.200.1510.15.200.15
Priority 3: < NONE >10.113.253.1010.1.200.23410.8.200.1510.15.200.15
From ACS - Radius we have choose a Group x( named as Mac-address group )
All the wireless Client ( laptops ) mac-address are added as add username option and enter username
as mac-address & enter the mac-address as pwd second option of password TAB.Hi Akber,
I think you didnt understood what i was trying to say here :-( No problem..I will explain my theory again.Your requirment is to autheticate user from ACS internal database (you have already added the MAC address as the username on your ACS internal database) as well as from ACS external database (in your case this is AD).
What i was saying is when when authetication request comes to raidus server it checks its internal database and if it find a valid username and password (here it will the MAC address and password which you have entered to the ACS database) the ACS will not query the external database (in your case the AD) for authetication.
You can not have ACS to look in to both MAC and AD database at the same time.
Hope this clears your doubt.
Regards
Najaf -
SCOM 2012 Data Access Service could not start
Hello,
I have 3 SCOM 2012 servers. I got the error that the All Managament Server Pool is not available. Google search give me a lot of posts to add folder PoolManager at HKLM\System\CurrontControlSet\services\HealthService\Parameters with the DWORD keys PoolLeaseRequestPeriodSeconds
600 and PoolNetworkLatencySeconds 120. After restarting last SCOM server the Data Access Service could not run "Windows could not start the System Center Data Access Service. Error 1053: The service did not respond to the start or control request in a
timely fashion"
At Operations Manager Eventlog I see an error: "OpsMgr Management Configuration Service failed to communicate with System Center Data Access Service due the following exception: System.Runtime.Remoting.RemotingException: Unable to get ISdkService interface.
Please make sure local Sdk Service is running."
At System Eventlog I see an error: "A timeout was reached (30000 milliseconds) while waiting for the System Center Data Access Service service to connect."
Why did it run on the both other servers and failes on the third one? What can I check?
Regards, DoreenHi,
According to my understanding, after editing the registry key value, two of three management servers work fine now, and the issue only occur to the third one. Whether all those servers are running with Windows server 2012?
I would like to suggest you re-check the service account for the data access service, maybe we can re-enter the account credential. Those three servers may use the same account for the service, make sure the account is not disabled and you enter in the right
password for it.
Here is a similar thread, please go through it for more details:
http://social.technet.microsoft.com/Forums/en-US/f2281934-513d-4b60-bb4b-34ae8a892ace/failed-to-open-the-console-and-system-center-data-access-service-wont-start-scom-2012?forum=operationsmanagergeneral
In addition, please also restart the third server and check the result, and I know that there is a similar error message in SCOM 2007:
http://blogs.technet.com/b/csstwplatform/archive/2012/01/02/scom-2007-r2-unable-to-open-the-scom-console-after-server-reboot-the-sdk-service-is-stopped.aspx
Regards,
Yan Li
Regards, Yan Li -
got event ID 4015 and source DNS-Server-Service. please suggest how to fix this issue
The DNS server has encountered a critical error from the Active Directory. Check that the Active Directory is functioning properly. The extended error debug information (which may be empty) is "". The event data contains the error.
RajHi
first run "ipconfig /flushdns" and then "ipconfig /registerdns" finally restart dns service and check the situation,also you can check dns logs computer management ->Event viewer->Custom Views->Server roles->DNS. -
I know this question has been asked before, but never for R2, that I can tell, and the posted fixes aren't working. I have just installed SCVMM 2008 R2 on a Windows Server 2008 R2 server, using a remote SQL 2008 SP1 database. When I attempt to connect to SCVMM, I get the following error:
"The SQL Server service account does not have permission to access Active Directory Domain Services (AD DS).
Ensure that the SQL Server service is running under a domain account or a computer account that has permission to access AD DS. For more information, see "Some applications and APIs require access to authorization information on account objects" in the Microsoft Knowledge Base at http://go.microsoft.com/fwlink/?LinkId=121054.
ID: 2607"
What I've seen online is that this is usually becuase the domain account SCVMM is running as does not have the proper permissions on the SQL database. Here's what I've confirmed:
1) My SCVMM service account is a local admin on the SCVMM server
2) My SCVMM service account is a dbowner on the SCVMM database in SQL
3) My SQL service account is a dbowner on the SCVMM database in SQL
4) My SQL service account is a domain user (even made it a domain admin, just in case, and it still "doesn't have access to AD DS," which is obviously untrue)
5) Neither service account is locked out
Has anyone run in to this? It says in Technet that remote SQL 2008 is supported, as long as the SQL management studio is installed to the SCVMM server, and I installed and patched before I began the SCVMM installation. I just don't know what else to try - I have no errors in event logs, no issues during the installation itself...
Andrew ToppThat answer was very unhelpful fr33m4n. The individual mentions that they've received the error that points to the KB article. I currently receive the same error -- there seems to be no resolution. I've run the Microsoft VBS script to add TAUG to the WAAG
as suggested by 331951, and that made absolutely no difference.
1) My SCVMM service account is a local admin on the SCVMM server
2) My SCVMM service account is a dbowner on the SCVMM database in SQL
3) My SQL service account is a dbowner on the SCVMM database in SQL
4) My SQL service account is a domain user (even made it a domain admin, just in case, and it still
"doesn't have access to AD DS," which is obviously untrue)
The user is also a member of WAAG, the machines have delegated authority to each other. Is there any other solution? -
Could not create JVM Virtual machine(While starting soa managed server)?
Hi,
While starting managed server I am getting following errors:
Could not commit 1048576KB heap memory at 0x0000000004790000.
Could not create JVM Virtual machine.
After above error SOA managed server is to be down.
Please help me that how can i resolve this issue.
Thanks
DharmHi Dharm,
This is typically printed when we are short on memory.
What is OS version and JDK being using here ? 32bit or 64bit ?
Current Xms and Xmx values ?
Thanks,
Sharmela -
Server repository could not create function template for ...
Hello,
we are trying to send rfc and idocs from SAP to MII but we always get errors like:
Server repository could not create function template ...
or
The meta data for the IDoc type "HRCC1DNPERSO01" is unavailable.
Has anyone an idea?
Kind Regards,
Christoph MertinsHi Christoph,
Per the resolution of the CSS Ticket:
Parameters that are not mentioned in the SDN guide were needed in your particular situation.
The necessary parameters for configuring the MII side of the IDoc Listener are explained in the MII Help Documentation in the Client Properties section:
http://help.sap.com/saphelp_xmii120/helpdata/en/45/a705b23c14532ae10000000a1553f7/content.htm
All others are described in the Message Listeners section here:
http://help.sap.com/saphelp_xmii120/helpdata/en/45/6a86ac88130dece10000000a11466f/content.htm
Can you please update this post to reflect your particular situation so the SDN community can benefit from your experience?
Kind Regards,
Diana Hoppe
Edited by: Diana Hoppe on Dec 9, 2008 9:06 AM -
Java system error: Server repository could not create function template
Hi, Our BI person is trying to publish/broadcast a query to the PRODCTION portal, she gets the below error message. I am
attaching the defaulttracelog file
"Java system error: Server repository could not create function template for RSRD_X_PRODUCE_PROXY caused by: com.sap.mw.jco.JCO$Exception: (103)"
<!LOGHEADER[START]/>
<!HELP[Manual modification of the header may cause parsing problem!]/>
<!LOGGINGVERSION[1.5.3.7185 - 630]/>
<!NAME[./log/defaultTrace.trc]/>
<!PATTERN[defaultTrace.trc]/>
<!FORMATTER[com.sap.tc.logging.ListFormatter]/>
<!ENCODING[UTF8]/>
<!FILESET[8, 20, 10485760]/>
<!PREVIOUSFILE[defaultTrace.7.trc]/>
<!NEXTFILE[defaultTrace.9.trc]/>
<!LOGHEADER[END]/>
#1.5 #002264F9350800600000022F000019C000048E9B91EF3AB3#1282698726384#com.sap.security.core.persistence#sap.com/irj#com.sap.security.core.persistence#J2EE_GUEST#0##n/a##4dba6f30af8111df934c002264f93508#SAPEngine_Application_Thread[impl:3]_35##0#0#Error#1#/System/Security/Usermanagement#Java#An exception was thrown in the UME/ABAP user management connector that was caused by unavailability of the RFC communication with the backend system: "". ##An exception was thrown in the UME/ABAP user management connector that was caused by unavailability of the RFC communication with the backend system: "". #1#Connect to SAP gateway failed
Connect_PM TYPE=A ASHOST=localhost SYSNR=00 GWHOST=localhost GWSERV=sapgw00 PCS=1
LOCATION CPIC (TCP/IP) on local host with Unicode
ERROR partner '127.0.0.1:sapgw00' not reached
TIME Tue Aug 24 21:12:06 201
RELEASE 700
COMPONENT NI (network interface)
VERSION 38
RC -10
MODULE nixxi.cpp
LINE 2823
DETAIL NiPConnect2
SYSTEM CALL connect
ERRNO 10061
ERRNO TEXT WSAECONNREFUSED: Connection refused
COUNTER 56
#1.5 #002264F93508006000000230000019C000048E9B91EF47C8#1282698726384#com.sap.engine.services.monitor.mbeans.Monitor#sap.com/irj#com.sap.engine.services.monitor.mbeans.Monitor#J2EE_GUEST#0##n/a##4dba6f30af8111df934c002264f93508#SAPEngine_Application_Thread[impl:3]_35##0#0#Error##Plain###Caller J2EE_GUEST not authorized, user J2EE_GUEST is not available from user management, reason: com.sap.security.api.NoSuchUserException:USER_AUTH_FAILED: User account for logonid "J2EE_GUEST" not found!#
#1.5 #002264F93508006000000231000019C000048E9B91EF4CD5#1282698726384#System.err#sap.com/irj#System.err#J2EE_GUEST#0##n/a##4dba6f30af8111df934c002264f93508#SAPEngine_Application_Thread[impl:3]_35##0#0#Error##Plain###com.sap.engine.services.jmx.exception.JmxSecurityException: Caller J2EE_GUEST not authorized, user J2EE_GUEST is not available from user management, reason: com.sap.security.api.NoSuchUserException:USER_AUTH_FAILED: User account for logonid "J2EE_GUEST" not found!
at com.sap.engine.services.jmx.auth.UmeAuthorization.checkMBeanPermission(UmeAuthorization.java:63)
at com.sap.engine.services.jmx.JmxServerFrame.checkMBeanPermission(JmxServerFrame.java:98)
at com.sap.engine.services.jmx.MBeanServerSecurityWrapper.unregisterMBean(MBeanServerSecurityWrapper.java:395)
at com.sap.engine.services.jmx.ClusterInterceptor.unregisterMBean(ClusterInterceptor.java:1327)
at com.sap.pj.jmx.server.interceptor.MBeanServerInterceptorChain.unregisterMBean(MBeanServerInterceptorChain.java:258)
at com.sap.engine.services.monitor.mbeans.Monitor.unregister(Monitor.java:106)
at com.sap.engine.library.monitor.impl0.AbstractMonitorNode.remove(AbstractMonitorNode.java:154)
at com.sap.engine.library.monitor.impl0.MonitorObjectFactory.uninstallMonitorNode(MonitorObjectFactory.java:483)
at com.sap.engine.services.monitor.install.MonitorInstaller.uninstallMonitors(MonitorInstaller.java:595)
at com.sap.engine.services.monitor.install.MonitorInstaller.uninstallMonitors(MonitorInstaller.java:581)
at com.sap.engine.services.monitor.install.MonitorInstaller.uninstallMonitors(MonitorInstaller.java:581)
at com.sap.engine.services.monitor.install.MonitorInstaller.uninstallMonitors(MonitorInstaller.java:581)
at com.sap.engine.services.monitor.install.MonitorInstaller.uninstallMonitors(MonitorInstaller.java:581)
at com.sap.engine.services.monitor.install.MonitorInstaller.uninstallMonitors(MonitorInstaller.java:581)
at com.sap.engine.services.monitor.install.MonitorInstaller.uninstallMonitors(MonitorInstaller.java:581)
at com.sap.engine.services.monitor.install.MonitorInstaller.uninstallMonitors(MonitorInstaller.java:568)
at com.sap.engine.services.monitor.server.ApplicationLifeCycleImpl.applicationStopped(ApplicationLifeCycleImpl.java:52)
at com.sap.engine.services.monitor.deployment.MonitorDeploymentContainer.commitStop(MonitorDeploymentContainer.java:630)
at com.sap.engine.services.deploy.server.application.StopTransaction.commonCommitFinished(StopTransaction.java:244)
at com.sap.engine.services.deploy.server.application.StopTransaction.commitCommon(StopTransaction.java:290)
at com.sap.engine.services.deploy.server.application.StopTransaction.commitLocal(StopTransaction.java:278)
at com.sap.engine.services.deploy.server.application.ApplicationTransaction.makeAllPhasesLocal(ApplicationTransaction.java:374)
at com.sap.engine.services.deploy.server.application.ParallelAdapter.runInTheSameThread(ParallelAdapter.java:132)
at com.sap.engine.services.deploy.server.application.ParallelAdapter.makeAllPhasesLocalAndWait(ParallelAdapter.java:250)
at com.sap.engine.services.deploy.server.DeployServiceImpl.stopApplicationLocalAndWait(DeployServiceImpl.java:4569)
at com.sap.engine.services.deploy.server.DeployCommunicatorImpl.stopApplicationLocalAndWait(DeployCommunicatorImpl.java:628)
at com.sap.portal.prt.sapj2ee.SAPJ2EEPortalRuntime$2.run(SAPJ2EEPortalRuntime.java:602)
at java.security.AccessController.doPrivileged(Native Method)
at java.lang.ClassLoader$NativeLibrary.load(Native Method)
at java.lang.ClassLoader.loadLibrary0(ClassLoader.java:1586)
at java.lang.ClassLoader.loadLibrary(ClassLoader.java:1482)
at java.lang.Runtime.load0(Runtime.java:737)
at java.lang.System.load(System.java:811)
at com.sapportals.wcm.service.fsmount.FSMountService.loadDLL(FSMountService.java:736)
at com.sapportals.wcm.service.fsmount.FSMountService.<clinit>(FSMountService.java:796)
at java.lang.Class.forName0(Native Method)
at java.lang.Class.forName(Class.java:219)
at com.sapportals.wcm.repository.runtime.CmConfigurationProvider.convertGS(CmConfigurationProvider.java:637)
at com.sapportals.wcm.repository.runtime.CmConfigurationProvider.convertServiceConfig(CmConfigurationProvider.java:601)
at com.sapportals.wcm.repository.runtime.CmConfigurationProvider.readConfiguration(CmConfigurationProvider.java:205)
at com.sapportals.wcm.crt.CrtSystemImpl.createComponentManager(CrtSystemImpl.java:108)
at com.sapportals.wcm.repository.runtime.CmSystem.startUp(CmSystem.java:202)
at com.sapportals.wcm.repository.runtime.CmSystem.getInstance(CmSystem.java:164)
at com.sapportals.wcm.repository.runtime.CmAdapter.getResourceImpl(CmAdapter.java:974)
at com.sapportals.wcm.repository.runtime.CmAdapter.getResource(CmAdapter.java:192)
at com.sapportals.wcm.portal.service.KMServiceImpl.afterInit(KMServiceImpl.java:249)
at com.sapportals.portal.prt.core.broker.PortalServiceItem.__initServiceInstanceStep2(PortalServiceItem.java:877)
at com.sapportals.portal.prt.core.broker.PortalServiceItem.startServices(PortalServiceItem.java:1118)
at com.sapportals.portal.prt.core.broker.PortalAppBroker.startLoadOnStartupServices(PortalAppBroker.java:1707)
at com.sapportals.portal.prt.core.broker.PortalAppBroker.start(PortalAppBroker.java:1662)
at com.sapportals.portal.prt.core.broker.PortalAppBroker.startNonCoreApplications(PortalAppBroker.java:1592)
at com.sapportals.portal.prt.runtime.Portal.init(Portal.java:422)
at com.sapportals.portal.prt.core.PortalCoreInitializer.coreInit(PortalCoreInitializer.java:54)
at com.sapportals.portal.prt.dispatcher.PortalInitializer.<init>(PortalInitializer.java:129)
at com.sapportals.portal.prt.dispatcher.Dispatcher$doSetupPortalInitializer.run(Dispatcher.java:161)
at java.security.AccessController.doPrivileged(Native Method)
at com.sapportals.portal.prt.dispatcher.Dispatcher.initDispatcher(Dispatcher.java:361)
at com.sapportals.portal.prt.dispatcher.Dispatcher.access$000(Dispatcher.java:42)
at com.sapportals.portal.prt.dispatcher.Dispatcher$InitRunner.run(Dispatcher.java:114)
at com.sapportals.portal.prt.dispatcher.Dispatcher.init(Dispatcher.java:394)
at com.sap.engine.services.servlets_jsp.server.runtime.context.WebComponents.addServlet(WebComponents.java:139)
at com.sap.engine.services.servlets_jsp.server.container.ApplicationThreadInitializer.loadServlets(ApplicationThreadInitializer.java:386)
at com.sap.engine.services.servlets_jsp.server.container.ApplicationThreadInitializer.run(ApplicationThreadInitializer.java:110)
at com.sap.engine.core.thread.impl3.ActionObject.run(ActionObject.java:37)
at java.security.AccessController.doPrivileged(Native Method)
at com.sap.engine.core.thread.impl3.SingleThread.execute(SingleThread.java:104)
at com.sap.engine.core.thread.impl3.SingleThread.run(SingleThread.java:176)
#1.5 #002264F93508005C0000042300002CF00004939AAEE9AEB7#1288192475655#com.sapportals.wcm.repository.manager.reporting.RPRepositoryManager#sap.com/irj#com.sapportals.wcm.repository.manager.reporting.RPRepositoryManager#J2EE_GUEST#0##n/a##c7d00e00e1dc11dfa36d002264f93508#SAPEngine_Application_Thread[impl:3]_29##0#0#Error##Plain###setting initial ACL on /reporting_backend/reports/System Administration/CM Store/cm.crawlcontent - com.sap.security.api.NoSuchRoleException: Role with uniqueName system_admin_role not found!
at com.sap.security.core.imp.RoleFactory.getRoleByUniqueName(RoleFactory.java:1783)
at com.sapportals.wcm.repository.manager.reporting.RPRepositoryManager.getRoles(RPRepositoryManager.java:1474)
at com.sapportals.wcm.repository.manager.reporting.RPRepositoryManager.syncReportResources(RPRepositoryManager.java:1334)
at com.sapportals.wcm.repository.manager.reporting.RPRepositoryManager.initBackend(RPRepositoryManager.java:489)
at com.sapportals.wcm.repository.manager.reporting.RPRepositoryManager.getResource(RPRepositoryManager.java:581)
at com.sapportals.wcm.repository.RMAdapter.getResource(RMAdapter.java:228)
at com.sapportals.wcm.repository.runtime.CmAdapter.findResource(CmAdapter.java:1349)
at com.sapportals.wcm.repository.runtime.CmAdapter.findManagerAndResource(CmAdapter.java:1322)
at com.sapportals.wcm.repository.runtime.CmAdapter.getResourceImpl(CmAdapter.java:979)
at com.sapportals.wcm.repository.runtime.CmAdapter.getResource(CmAdapter.java:192)
at com.sapportals.wcm.service.reporting.ReportingService.localConfigure(ReportingService.java:294)
at com.sapportals.wcm.service.reporting.ReportingService.startUpImpl(ReportingService.java:74)
at com.sapportals.wcm.service.AbstractService.start(AbstractService.java:167)
at com.sapportals.wcm.crt.CrtThreadSafeComponentHandler.tryToStart(CrtThreadSafeComponentHandler.java:247)
at com.sapportals.wcm.crt.CrtThreadSafeComponentHandler.handleLookup(CrtThreadSafeComponentHandler.java:109)
at com.sapportals.wcm.crt.CrtComponentManager.lookup(CrtComponentManager.java:322)
at com.sapportals.wcm.crt.CrtComponentManager.lookupChildComponent(CrtComponentManager.java:403)
at com.sapportals.wcm.crt.CrtContainerManager.lookupComponent(CrtContainerManager.java:44)
at com.sapportals.wcm.crt.CrtSystemImpl.lookupComponentByUri(CrtSystemImpl.java:131)
at com.sapportals.wcm.crt.CrtComponentManager.startUp(CrtComponentManager.java:278)
at com.sapportals.wcm.crt.CrtSystemImpl.startUpComponentManager(CrtSystemImpl.java:166)
at com.sapportals.wcm.repository.runtime.CmSystem.startUp(CmSystem.java:227)
at com.sapportals.wcm.repository.runtime.CmSystem.getInstance(CmSystem.java:164)
at com.sapportals.wcm.repository.runtime.CmAdapter.getResourceImpl(CmAdapter.java:974)
at com.sapportals.wcm.repository.runtime.CmAdapter.getResource(CmAdapter.java:192)
at com.sapportals.wcm.portal.service.KMServiceImpl.afterInit(KMServiceImpl.java:249)
at com.sapportals.portal.prt.core.broker.PortalServiceItem.__initServiceInstanceStep2(PortalServiceItem.java:877)
at com.sapportals.portal.prt.core.broker.PortalServiceItem.startServices(PortalServiceItem.java:1118)
at com.sapportals.portal.prt.core.broker.PortalAppBroker.startLoadOnStartupServices(PortalAppBroker.java:1707)
at com.sapportals.portal.prt.core.broker.PortalAppBroker.start(PortalAppBroker.java:1662)
at com.sapportals.portal.prt.core.broker.PortalAppBroker.startNonCoreApplications(PortalAppBroker.java:1592)
at com.sapportals.portal.prt.runtime.Portal.init(Portal.java:422)
at com.sapportals.portal.prt.core.PortalCoreInitializer.coreInit(PortalCoreInitializer.java:54)
at com.sapportals.portal.prt.dispatcher.PortalInitializer.<init>(PortalInitializer.java:129)
at com.sapportals.portal.prt.dispatcher.Dispatcher$doSetupPortalInitializer.run(Dispatcher.java:161)
at java.security.AccessController.doPrivileged(Native Method)
at com.sapportals.portal.prt.dispatcher.Dispatcher.initDispatcher(Dispatcher.java:361)
at com.sapportals.portal.prt.dispatcher.Dispatcher.access$000(Dispatcher.java:42)
at com.sapportals.portal.prt.dispatcher.Dispatcher$InitRunner.run(Dispatcher.java:114)
at com.sapportals.portal.prt.dispatcher.Dispatcher.init(Dispatcher.java:394)Go to visual admin -> server -> services -> JCO RFC provider.
Check the RFC that connects to the BI Abap.
Its reporting the J2EE_GUEST user in the SAP with the system nr 00.
Is this BI java portal?
Is the java portal a addon to Abap or having seperate SID?
Check the connection definitions are correct and the gateway is running.
Maybe you are looking for
-
Balance carried forward for New GL
Hi Expert, I would like understand about the balance carried forward for AP and AR in the New GL. When executing the program in test run mode, user will download the balances and try to tie to the recon accts in trial balance. The openning balance ge
-
How to properly update iTunes content while traveling abroad?
Spent some time searching and found a number of threads covering T&Cs and whys and wherefores of US Citizens on extended overseas travel trying to update or purchase iTunes content. There's a lot of 'why not' but not much 'how to'. I'm seeking the Ap
-
Deployment error in Enhancement package Galaxy
Hi, I am trying to do Netweaver BPM end-to end process implementation example. i followed all the steps as in the link https://www.sdn.sap.com/irj/sdn/go/portal/prtroot/docs/library/uuid/d07f3e88-554f-2b10-3cbf-ab8afea51b9f At the final stage of dep
-
Weird iTunes iPod display problem
iPod Touch G5, IOS 8.02 iMac desktop OS 10.9.5 This began when my WiFi sync stopped working. As far as I can recall, it was coincident with loading IOS-8. For what it's worth, my WiFi sync with my original iPad (IOS-5.1.1) has been flawless. I trie
-
Copying text from pdf, "square" characters
Using SQL 2005 standard edition. I have an issue with pdf generated reports. When copying text from the pdf (from a cell in a table row) the characters are just pasted as "squares" into notepad\word etc. Each character is just a small square. I am us