Couldn't verify 'C:\Windows\ccmsetup\ccmsetup.cab' authenticode signature. Return code 0x80096001 - SCCM 2012 R2 Client Deployment

Hi All,
I installed SCCM 2012 R2 one primary site from one of our customer & using SQL 2012 SP1 DB at the back-end.
Facing Issues while deploying agent  from one of our client machine - OS - window 7 Professional Sp1:
==========[ ccmsetup started in process 3828 ]==========
ccmsetup 25-02-2014 02:20:37 PM
284 (0x011C)
Running on platform X86 ccmsetup
25-02-2014 02:20:37 PM 284 (0x011C)
Updated security on object C:\Windows\ccmsetup\cache\.
ccmsetup 25-02-2014 02:20:37 PM
284 (0x011C)
Launch from folder C:\Windows\ccmsetup\ ccmsetup
25-02-2014 02:20:37 PM 284 (0x011C)
CcmSetup version: 5.0.7958.1000 ccmsetup
25-02-2014 02:20:37 PM 284 (0x011C)
Successfully started the ccmsetup service ccmsetup
25-02-2014 02:20:37 PM 332 (0x014C)
In ServiceMain ccmsetup
25-02-2014 02:20:37 PM 1480 (0x05C8)
Folder 'Microsoft\Configuration Manager' not found. Task does not exist.
ccmsetup 25-02-2014 02:20:37 PM
332 (0x014C)
CcmSetup is exiting with return code 0 ccmsetup
25-02-2014 02:20:37 PM 332 (0x014C)
Running on 'Microsoft Windows 7 Professional ' (6.1.7601). Service Pack (1.0). SuiteMask = 272. Product Type = 18
ccmsetup 25-02-2014 02:20:37 PM
1480 (0x05C8)
Ccmsetup command line: "C:\Windows\ccmsetup\ccmsetup.exe" /runservice "/config:C:\Windows\ccmsetup\MobileClientUnicode.tcf" "/RetryWinTask:1"
ccmsetup 25-02-2014 02:20:37 PM
1480 (0x05C8)
Command line parameters for ccmsetup have been specified.  No registry lookup for command line parameters is required.
ccmsetup 25-02-2014 02:20:37 PM
1480 (0x05C8)
Command line: "C:\Windows\ccmsetup\ccmsetup.exe" /runservice "/config:C:\Windows\ccmsetup\MobileClientUnicode.tcf" "/RetryWinTask:1"
ccmsetup 25-02-2014 02:20:37 PM
1480 (0x05C8)
SslState value: 224 ccmsetup
25-02-2014 02:20:37 PM 1480 (0x05C8)
CCMHTTPPORT:    80 ccmsetup
25-02-2014 02:20:37 PM 1480 (0x05C8)
CCMHTTPSPORT:    443 ccmsetup
25-02-2014 02:20:37 PM 1480 (0x05C8)
CCMHTTPSSTATE:    480 ccmsetup
25-02-2014 02:20:37 PM 1480 (0x05C8)
CCMHTTPSCERTNAME:     ccmsetup
25-02-2014 02:20:37 PM 1480 (0x05C8)
FSP:    SCCM.MYDOMAIN.COM ccmsetup
25-02-2014 02:20:37 PM 1480 (0x05C8)
CCMCERTISSUERS:    CN=MYDOMAIN-CA-CA; DC=MYDOMAIN; DC=COM
ccmsetup 25-02-2014 02:20:37 PM
1480 (0x05C8)
CCMFIRSTCERT:    1 ccmsetup
25-02-2014 02:20:37 PM 1480 (0x05C8)
Config file:      C:\Windows\ccmsetup\MobileClientUnicode.tcf
ccmsetup 25-02-2014 02:20:37 PM
1480 (0x05C8)
Retry time:       10 minute(s)
ccmsetup 25-02-2014 02:20:37 PM
1480 (0x05C8)
MSI log file:     C:\Windows\ccmsetup\Logs\client.msi.log
ccmsetup 25-02-2014 02:20:37 PM
1480 (0x05C8)
MSI properties:    INSTALL="ALL" SMSSITECODE="PRI" CCMHTTPPORT="80" CCMHTTPSPORT="443" CCMHTTPSSTATE="480" FSP="SCCM.MYDOMAIN.COM" CCMCERTISSUERS="CN=MYDOMAIN-CA-CA; DC=MYDOMAIN; DC=COM"
CCMFIRSTCERT="1" ccmsetup
25-02-2014 02:20:37 PM 1480 (0x05C8)
Source List: ccmsetup
25-02-2014 02:20:37 PM 1480 (0x05C8)
                  \\SCCM.MYDOMAIN.COM\SMSClient
ccmsetup 25-02-2014 02:20:37 PM
1480 (0x05C8)
                  \\SCCMDMZ.MYDOMAIN.COM\SMSClient
ccmsetup 25-02-2014 02:20:37 PM
1480 (0x05C8)
                  \\SCCM.MYDOMAIN.COM\SMSClient
ccmsetup 25-02-2014 02:20:37 PM
1480 (0x05C8)
                  \\SCCMDMZ.MYDOMAIN.COM\SMSClient
ccmsetup 25-02-2014 02:20:37 PM
1480 (0x05C8)
MPs: ccmsetup
25-02-2014 02:20:37 PM 1480 (0x05C8)
                  SCCM.MYDOMAIN.COM
ccmsetup 25-02-2014 02:20:37 PM
1480 (0x05C8)
No version of the client is currently detected.
ccmsetup 25-02-2014 02:20:37 PM
1480 (0x05C8)
Folder 'Microsoft\Configuration Manager' not found. Task does not exist.
ccmsetup 25-02-2014 02:20:37 PM
1480 (0x05C8)
Attempting #1 retry. Max 5 retries. ccmsetup
25-02-2014 02:20:37 PM 1480 (0x05C8)
Updated security on object C:\Windows\ccmsetup\.
ccmsetup 25-02-2014 02:20:37 PM
1480 (0x05C8)
Sending Fallback Status Point message to 'SCCM.MYDOMAIN.COM', STATEID='100'.
ccmsetup 25-02-2014 02:20:37 PM
1480 (0x05C8)
Failed to get client version for sending messages to FSP. Error 0x8004100e
ccmsetup 25-02-2014 02:20:37 PM
1480 (0x05C8)
Params to send FSP message '5.0.7958.1000 Deployment '
ccmsetup 25-02-2014 02:20:37 PM
1480 (0x05C8)
Request failed: 500 Internal Server Error
FSPStateMessage
25-02-2014 02:20:37 PM 1480 (0x05C8)
Running as user "SYSTEM" ccmsetup
25-02-2014 02:20:37 PM 1480 (0x05C8)
Detected 69650 MB free disk space on system drive.
ccmsetup 25-02-2014 02:20:37 PM
1480 (0x05C8)
Checking Write Filter Status. ccmsetup
25-02-2014 02:20:37 PM 1480 (0x05C8)
This is not a supported write filter device. We are not in a write filter maintenance mode.
ccmsetup 25-02-2014 02:20:37 PM
1480 (0x05C8)
Performing AD query: '(&(ObjectCategory=mSSMSManagementPoint)(mSSMSDefaultMP=TRUE)(mSSMSSiteCode=PRI))'
ccmsetup 25-02-2014 02:20:38 PM
1480 (0x05C8)
OperationalXml '<ClientOperationalSettings><Version>5.00.7958.1000</Version><SecurityConfiguration><SecurityModeMask>0</SecurityModeMask><SecurityModeMaskEx>448</SecurityModeMaskEx><HTTPPort>80</HTTPPort><HTTPSPort>443</HTTPSPort><CertificateStoreName></CertificateStoreName><CertificateIssuers>CN=MYDOMAIN-CA-CA;
DC=MYDOMAIN; DC=COM</CertificateIssuers><CertificateSelectionCriteria></CertificateSelectionCriteria><CertificateSelectFirstFlag>1</CertificateSelectFirstFlag><SiteSigningCert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iteSigningCert></SecurityConfiguration><RootSiteCode>PRI</RootSiteCode><CCM>
<CommandLine>SMSSITECODE=PRI</CommandLine> </CCM><FSP> <FSPServer>SCCM.MYDOMAIN.COM</FSPServer> </FSP><Capabilities SchemaVersion ="1.0"><Property Name="SSLState" Value="0" /></Capabilities><Domain
Value="MYDOMAIN.COM" /><Forest Value="MYDOMAIN.COM" /></ClientOperationalSettings>'
ccmsetup 25-02-2014 02:20:39 PM
1480 (0x05C8)
Unable to open Registry key Software\Microsoft\CCM. Return Code [80070002]. Client HTTPS state is Unknown.
ccmsetup 25-02-2014 02:20:39 PM
1480 (0x05C8)
The MP name retrieved is 'SCCM.MYDOMAIN.COM' with version '7958' and capabilities '<Capabilities SchemaVersion="1.0"><Property Name="SSLState" Value="0"/></Capabilities>'
ccmsetup 25-02-2014 02:20:39 PM
1480 (0x05C8)
MP 'SCCM.MYDOMAIN.COM' is compatible ccmsetup
25-02-2014 02:20:39 PM 1480 (0x05C8)
Retrieved 1 MP records from AD for site 'PRI'
ccmsetup 25-02-2014 02:20:39 PM
1480 (0x05C8)
Retrived site version '5.00.7958.1000' from AD for site 'PRI'
ccmsetup 25-02-2014 02:20:39 PM
1480 (0x05C8)
SiteCode:         PRI ccmsetup
25-02-2014 02:20:39 PM 1480 (0x05C8)
SiteVersion:      5.00.7958.1000
ccmsetup 25-02-2014 02:20:39 PM
1480 (0x05C8)
Ccmsetup is being restarted due to an administrative action. Installation files will be reset and downloaded again.
ccmsetup 25-02-2014 02:20:39 PM
1480 (0x05C8)
Only one MP SCCM.MYDOMAIN.COM is specified. Use it.
ccmsetup 25-02-2014 02:20:39 PM
1480 (0x05C8)
Searching for DP locations from MP(s)... ccmsetup
25-02-2014 02:20:39 PM 1480 (0x05C8)
Current AD site of machine is Default-First-Site
LocationServices 25-02-2014 02:20:39 PM
1480 (0x05C8)
Local Machine is joined to an AD domain LocationServices
25-02-2014 02:20:39 PM 1480 (0x05C8)
Current AD forest name is MYDOMAIN.COM, domain name is MYDOMAIN.COM
LocationServices 25-02-2014 02:20:39 PM
1480 (0x05C8)
DhcpGetOriginalSubnetMask entry point is supported.
LocationServices 25-02-2014 02:20:39 PM
1480 (0x05C8)
Begin checking Alternate Network Configuration
LocationServices 25-02-2014 02:20:39 PM
1480 (0x05C8)
Finished checking Alternate Network Configuration
LocationServices 25-02-2014 02:20:39 PM
1480 (0x05C8)
Adapter {95A6D3CE-4F28-4E55-A29A-FF3F1A317C61} is DHCP enabled. Checking quarantine status.
LocationServices 25-02-2014 02:20:39 PM
1480 (0x05C8)
Adapter {6024AB68-EB5E-4370-BD9E-8B2CEFE261A8} is DHCP enabled. Checking quarantine status.
LocationServices 25-02-2014 02:20:39 PM
1480 (0x05C8)
Sending message body '<ContentLocationRequest SchemaVersion="1.00">
  <AssignedSite SiteCode="PRI"/>
  <ClientPackage/>
  <ClientLocationInfo LocationType="SMSPACKAGE" DistributeOnDemand="0" UseProtected="0" AllowCaching="0" BranchDPFlags="0" AllowHTTP="1" AllowSMB="0" AllowMulticast="0"
UseInternetDP="0">
    <ADSite Name="Default-First-Site"/>
    <Forest Name="MYDOMAIN.COM"/>
    <Domain Name="MYDOMAIN.COM"/>
    <IPAddresses>
<IPAddress SubnetAddress="10.0.0.0" Address="10.10.10.192"/>
    </IPAddresses>
  </ClientLocationInfo>
</ContentLocationRequest>
' ccmsetup
25-02-2014 02:20:39 PM 1480 (0x05C8)
Sending message header '<Msg SchemaVersion="1.1"><ID>{F6331322-941A-4E44-974F-A755B1B016A4}</ID><SourceHost>POOJASETHI</SourceHost><TargetAddress>mp:[http]MP_LocationManager</TargetAddress><ReplyTo>direct:POOJASETHI:LS_ReplyLocations</ReplyTo><Priority>3</Priority><Timeout>600</Timeout><ReqVersion>5931</ReqVersion><TargetHost>SCCM.MYDOMAIN.COM</TargetHost><TargetEndpoint>MP_LocationManager</TargetEndpoint><ReplyMode>Sync</ReplyMode><Protocol>http</Protocol><SentTime>2014-02-25T08:50:39Z</SentTime><Body
Type="ByteRange" Offset="0" Length="1126"/><Hooks><Hook3 Name="zlib-compress"/></Hooks><Payload Type="inline"/></Msg>'
ccmsetup 25-02-2014 02:20:39 PM
1480 (0x05C8)
CCM_POST 'HTTP://SCCM.MYDOMAIN.COM/ccm_system/request'
ccmsetup 25-02-2014 02:20:39 PM
1480 (0x05C8)
Content boundary is '--aAbBcCdDv1234567890VxXyYzZ'
ccmsetup 25-02-2014 02:20:39 PM
1480 (0x05C8)
Received header '<Msg SchemaVersion="1.1">
<ID>{14ADB6F1-95C1-4EEF-B8BA-16CD020ACFCF}</ID>
<SourceID>GUID:526CE573-6351-407E-AC2A-2C3927979AD9</SourceID>
<SourceHost>SCCM</SourceHost>
<TargetAddress>direct:POOJASETHI:LS_ReplyLocations</TargetAddress>
<ReplyTo>MP_LocationManager</ReplyTo>
<CorrelationID>{00000000-0000-0000-0000-000000000000}</CorrelationID>
<Priority>3</Priority>
<Timeout>600</Timeout>
<Capabilities><Property Name="SSL" Version="1"/></Capabilities><ReplyCapabilities><AllowRegistrationReset>direct:SCCM:ClientRegistration</AllowRegistrationReset></ReplyCapabilities><TargetHost>POOJASETHI</TargetHost><TargetEndpoint>LS_ReplyLocations</TargetEndpoint><ReplyMode>Sync</ReplyMode><Protocol>https</Protocol><SentTime>2014-02-25T08:50:39Z</SentTime><Body
Type="ByteRange" Offset="0" Length="3494"/><Hooks><Hook3 Name="zlib-compress"/><Hook Name="authenticate"><Property Name="Signature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roperty><Property
Name="AuthSenderMachine">SCCM;SCCM.MYDOMAIN.COM;</Property><Property Name="MPSiteCode">PRI</Property></Hook></Hooks><Payload Type="inline"/></Msg>'
ccmsetup 25-02-2014 02:20:39 PM
1480 (0x05C8)
Received reply body '<ContentLocationReply SchemaVersion="1.00"><ContentInfo PackageFlags="16777216"><ContentHashValues/></ContentInfo><Sites><Site><MPSite SiteCode="PRI" MasterSiteCode="PRI"
SiteLocality="LOCAL" IISPreferedPort="80" IISSSLPreferedPort="443"/><LocationRecords><LocationRecord><URL Name="http://SCCM.MYDOMAIN.COM/SMS_DP_SMSPKG$/PRI00003" Signature="http://SCCM.MYDOMAIN.COM/SMS_DP_SMSSIG$/PRI00003"/><ADSite
Name="Default-First-Site"/><IPSubnets><IPSubnet Address="10.0.0.0"/><IPSubnet Address=""/></IPSubnets><Metric Value=""/><Version>7958</Version><Capabilities SchemaVersion="1.0"><Property
Name="SSLState" Value="0"/></Capabilities><ServerRemoteName>SCCM.MYDOMAIN.COM</ServerRemoteName><DPType>SERVER</DPType><Windows Trust="1"/><Locality>LOCAL</Locality></LocationRecord><LocationRecord><URL
Name="http://SCCMDMZ.MYDOMAIN.COM/SMS_DP_SMSPKG$/PRI00003" Signature="http://SCCMDMZ.MYDOMAIN.COM/SMS_DP_SMSSIG$/PRI00003"/><ADSite Name="Default-First-Site"/><IPSubnets><IPSubnet Address="172.16.10.0"/><IPSubnet
Address=""/></IPSubnets><Metric Value=""/><Version>7958</Version><Capabilities SchemaVersion="1.0"><Property Name="SSLState" Value="0"/></Capabilities><ServerRemoteName>SCCMDMZ.MYDOMAIN.COM</ServerRemoteName><DPType>SERVER</DPType><Windows
Trust="1"/><Locality>FALLBACK</Locality></LocationRecord></LocationRecords></Site></Sites><ClientPackage FullPackageID="PRI00003" FullPackageVersion="1" FullPackageHash="BFC11E099E8F451107B43E0DBEFD93B01DB2D6453DA74F8A2CB94B73D676C1CD"
MinimumClientVersion="5.00.7958.1000" RandomizeMaxDays="7" ProgramEnabled="false" LastModifiedTime="30354761;897103744" SiteVersionMatch="true" SiteVersion="5.00.7958.1000" EnablePeerCache="true"/><RelatedContentIDs/></ContentLocationReply>'
ccmsetup 25-02-2014 02:20:39 PM
1480 (0x05C8)
Found local location 'http://SCCM.MYDOMAIN.COM/SMS_DP_SMSPKG$/PRI00003'
ccmsetup 25-02-2014 02:20:39 PM
1480 (0x05C8)
Found remote location 'http://SCCMDMZ.MYDOMAIN.COM/SMS_DP_SMSPKG$/PRI00003'
ccmsetup 25-02-2014 02:20:39 PM
1480 (0x05C8)
Discovered 1 local DP locations. ccmsetup
25-02-2014 02:20:39 PM 1480 (0x05C8)
PROPFIND 'http://SCCM.MYDOMAIN.COM/SMS_DP_SMSPKG$/PRI00003'
ccmsetup 25-02-2014 02:20:39 PM
1480 (0x05C8)
Using DP location http://SCCM.MYDOMAIN.COM/SMS_DP_SMSPKG$/PRI00003
ccmsetup 25-02-2014 02:20:39 PM
1480 (0x05C8)
GET 'http://SCCM.MYDOMAIN.COM/SMS_DP_SMSPKG$/PRI00003/ccmsetup.cab'
ccmsetup 25-02-2014 02:20:39 PM
1480 (0x05C8)
Couldn't verify 'C:\Windows\ccmsetup\ccmsetup.cab' authenticode signature. Return code 0x80096001
ccmsetup 25-02-2014 02:20:39 PM
1480 (0x05C8)
Sending Fallback Status Point message to 'SCCM.MYDOMAIN.COM', STATEID='316'.
ccmsetup 25-02-2014 02:20:39 PM
1480 (0x05C8)
Failed to get client version for sending messages to FSP. Error 0x8004100e
ccmsetup 25-02-2014 02:20:39 PM
1480 (0x05C8)
Params to send FSP message '5.0.7958.1000 Deployment Error 0x80004005. Pre-req file name: C:\Windows\ccmsetup\ccmsetup.cab'
ccmsetup 25-02-2014 02:20:39 PM
1480 (0x05C8)
Request failed: 500 Internal Server Error
FSPStateMessage
25-02-2014 02:20:39 PM
1480 (0x05C8)
Failed to extract manifest cab file with error 0x80004005. Try next location.
ccmsetup 25-02-2014 02:20:39 PM
1480 (0x05C8)
Enumerated all 1 local DP locations but none of them is good. Fallback to MP.
ccmsetup 25-02-2014 02:20:39 PM
1480 (0x05C8)
GET 'HTTP://SCCM.MYDOMAIN.COM/CCM_Client/ccmsetup.cab'
ccmsetup 25-02-2014 02:20:39 PM
1480 (0x05C8)
Couldn't verify 'C:\Windows\ccmsetup\ccmsetup.cab' authenticode signature. Return code 0x80096001
ccmsetup 25-02-2014 02:20:39 PM
1480 (0x05C8)
CcmSetup failed with error code 0x80004005
ccmsetup 25-02-2014 02:20:39 PM
284 (0x011C)
Please let me know any solution or workaround for this 
Thanks Rahul$

Hi,
The client cannot verify the signature of ccmsetup.cab. I suggest you check the Trusted Root Certification Authorities in certificate store on the client to see whether a certificate is missing.
Try to enable verbose logging for SCCM client installation. Then check the log to see whether there are some useful information.(http://technet.microsoft.com/en-us/library/gg699356.aspx)  
Best Regards,
Joyce Li
We
are trying to better understand customer views on social support experience, so your participation in this
interview project would be greatly appreciated if you have time.
Thanks for helping make community forums a great place.

Similar Messages

  • Problem Installing SCCM 2012 R2 client on Windows Thin PC 7 (Windows Embedded)

    Hi, I'm trying to install SCCM 2012 R2 client on Windows thin pc 7
    I check the ccmsetup.log and it returned this:
    Failed to get list of protected volume: List pointer is NULL (3)
    ccmsetup 07/08/2014 08:06:26''
    2040 (0x07F8)
    DetectEWF failed with 0x80070003. ccmsetup
    07/08/2014 08:06:26'' 2040 (0x07F8)
    DetectWindowsEmbeddedWF failed with 0x80070003.
    ccmsetup 07/08/2014 08:06:26''
    2040 (0x07F8)
    A Fallback Status Point has not been specified.  Message with STATEID='304' will not be sent.
    ccmsetup 07/08/2014 08:06:26''
    2040 (0x07F8)
    Cannot install over embedded OS with WF enabled on the system drive.
    ccmsetup 07/08/2014 08:06:26''
    2040 (0x07F8)
    CcmSetup failed with error code 0x80004005 ccmsetup
    07/08/2014 08:06:26'' 1960 (0x07A8)
    Can somebody help me?
    Thanks
    Renzo
    PD: Sorry for my bad English

    Cannot install over embedded OS with WF enabled on the system drive.
    You have to disable write filters on that device first.
    Torsten Meringer | http://www.mssccmfaq.de

  • Windows 8.1 Update (with WinPE 5.1) ADK + SCCM 2012 R2 and WinXP

    Hello,
    I see new ADK version (8.1 Update) is released
    http://www.microsoft.com/en-US/download/confirmation.aspx?id=39982
    It contains WinPE 5.1 and new USMT (which version?), does it support migration from WinXP to Win7?
    Previously I used USMT5 (instead of 6.3) and modified WinPE 5.0 with bootsect.exe from WinPE 4.0 (from ADK 8.0) on SCCM 2012 R2 CU3.
    And can I use ADK 8.1 Update with SCCM 2012 R2?

    He does answer your question about the USMT version.
    The rest still applies in terms of XP support. See below.
    http://blogs.technet.com/b/mniehaus/archive/2014/01/09/migrating-from-windows-xp-to-windows-8-1-using-mdt-2013.aspx
    Yes, ConfigMgr 2012 R2 is supported.
    http://blogs.technet.com/b/configmgrteam/archive/2014/04/03/understanding-the-adk-for-windows-8-1-update-and-configmgr-osd.aspx
    Daniel Ratliff | http://www.PotentEngineer.com
    in the article I found:
    Windows PE version 5.1 is not needed for Configuration Manager and can actually be problematic if you try to use it. Windows PE 5.0 can continue to be used to deploy Windows 8.1 Update. There is a documented process to upgrade Windows PE to version 5.1,
    but this should be considered incompatible with Configuration Manager at this time.
    So for a new installation of SCCM 2012 R2 I can install ADK 8.1 update because in contains WinPE 5.0 and option to update to 5.1. And unclear about XP, it seems XP is not supported again.
    Also fourth release was in September 2014, but article was posted in April 2014.

  • Windows Updates are not getting download after installation of SCCM 2012 SP1

    I have installed SCCM 2012 SP1 step by step as per microsoft documents, Now I am getting error while downloading windows updates from microsoft site.
    Error by WCM.log : System.Net.WebException: The underlying connection was closed: An unexpected error occurred on a send. ---> System.IO.IOException: Unable to read data from the transport
    connection: An existing connection was forcibly closed by the remote host. ---> System.Net.Sockets.SocketException: An existing connection was forcibly closed by the remote host
    Error By wsyncmgr: DB Server not detected for SUP XYZ.com from SCF File. skipping.
    Sync failed: WSUS update source not found on site KSL. Please refer to WCM.log for configuration error details.. Source: getSiteUpdateSource
    STATMSG: ID=6703 SEV=E LEV=M SOURCE="SMS Server" COMP="SMS_WSUS_SYNC_MANAGER" SYS=KSL-MUM-SCCM01.KSEC.KotakGroup.com SITE=KSL PID=3688 TID=4752 GMTDATE=Tue May 21 10:59:06.745 2013 ISTR0="getSiteUpdateSource" ISTR1="WSUS
    update source not found on site KSL. Please refer to WCM.log for configuration error details." ISTR2="" ISTR3="" ISTR4="" ISTR5="" ISTR6="" ISTR7="" ISTR8="" ISTR9="" NUMATTRS=0
    I have reinstall my SUP on site server, i have my WSUS & site server is on same server. I have kept my sup setting as per requirment (8530 & 8531)
    Kindly suggest is any other settings need to be done on server side.

    Yes, I know this is an old post, but I’m trying to clean them up. Did you solve this problem, if so what was the solution?
    From your log snip-it, it looks like the firewall is causing your problem. Temporary turn off the firewall and see if that solves your problem.
    Garth Jones | My blogs: Enhansoft and
    Old Blog site | Twitter:
    @GarthMJ

  • Automatic Install of Endpoint Protection fails on windows 8.1 clients with SCCM 2012 R2

    Running SCCM 2012 R2 and deploying CM clients and Endpoint Protection via software updates. CM client and EP install fine on Windows 7 clients. CM client installs fine but endpoint protection fails on Windows 8.1 clients with the following from the
    endpoint protection agent log:
    <![LOG[Create Process Command line: "C:\Windows\ccmsetup\SCEPInstall.exe" /s /q /policy "C:\Windows\CCM\EPAMPolicy.xml".]LOG]!><time="12:22:02.560+240" date="08-13-2014" component="EndpointProtectionAgent"
    context="" type="1" thread="4260" file="epagentutil.cpp:607">
    <![LOG[Detail error message is : [EppSetupResult]
    HRESULT=0x80070643
    Description=Cannot complete the System Center Endpoint Protection installation. An error has prevented the System Center Endpoint Protection setup wizard from completing successfully. Please restart your computer and try again. Error code:0x80070643. Fatal
    error during installation.
    So on the win8.1 client I run the above command line manually in a command window and receive Access is denied. Then I run the same command in an elevated command window and EP installs fine. Does this have something to do with why the automatic
    EP client install fails with the 0x80070643 error code? If so, what is the fix?

    Hi,
    Try uninstalling any other security software.
    For more information, please review the link below:
    I‘m getting an error code from my Microsoft security software
    http://www.microsoft.com/security/portal/mmpc/help/errorcodes.aspx
    We
    are trying to better understand customer views on social support experience, so your participation in this
    interview project would be greatly appreciated if you have time.
    Thanks for helping make community forums a great place.

  • Module C:\Windows\CCM\StatusAgentProxy.dll failed to register. HRESULT -2147010895 Problem installing sccm 2012 client

    Hi,
    I am getting the following error, detailed in the client.msi.log, when trying to install the SCCM 2012 SP1 client on windows 2008 R2 servers.Why StatusAgentProxy.dll fails to register.
    <![LOG[MSI: Action 22:08:03: RegisterTypeLibraries. Registering type libraries]LOG]!><time="22:08:03.092-330" date="12-18-2013" component="ccmsetup" context="" type="0" thread="8096" file="msiutil.cpp:314">
    <![LOG[MSI: Action 22:08:03: SelfRegModules. Registering modules]LOG]!><time="22:08:03.827-330" date="12-18-2013" component="ccmsetup" context="" type="0" thread="8096" file="msiutil.cpp:314">
    <![LOG[MSI: Module C:\Windows\CCM\StatusAgentProxy.dll failed to register.  HRESULT -2147010895.  Contact your support personnel.]LOG]!><time="22:08:03.889-330" date="12-18-2013" component="ccmsetup"
    context="" type="3" thread="8096" file="msiutil.cpp:300">
    <![LOG[MSI: Action 22:08:03: Rollback. Rolling back action:]LOG]!><time="22:08:03.952-330" date="12-18-2013" component="ccmsetup" context="" type="0" thread="8096" file="msiutil.cpp:314">
    <![LOG[File C:\Windows\ccmsetup\{59A0EA77-D28C-4286-83A6-04BB57B9CDD6}\client.msi installation failed. Error text:
    ExitCode: 1603
    Action: SelfRegModules.
    ErrorMessages:
    Module C:\Windows\CCM\StatusAgentProxy.dll failed to register.  HRESULT -2147010895.  Contact your support personnel.
    I've already checked this forum but nothing helped .
    Please provide a valid action plan to resolve this issue.
    I'd highly appreciate any help.
    Thanks and regards
    Arsalan

    Hi,
    Restart those server might be helpful.
    After installing the Client manually, you could check the registration of statusagentproxy.dll in that log.
    Best Regards,
    Joyce Li
    We
    are trying to better understand customer views on social support experience, so your participation in this
    interview project would be greatly appreciated if you have time.
    Thanks for helping make community forums a great place.

  • Windows 8.1 clients are not detecting updates deployed to them through SCCM 2012 R2

    Hello, 
    We are using SCCM 2012 R2 to deploy software updates. 
    On Windows 8.1 SCCM does not show certain updates as being needed and isn't deploying them to the clients even though Windows Update will show them as high importance. These same updates are being detected and deployed to Windows 8 clients successfully.
    I believe that the update catalog that WSUS uses may have some incorrect detection rules for the following updates:  
    2917933
    2913320
    2913270
    2913152
    2909569
    2904440
    2904266
    2903939
    2899189 
    2893984
    2893294
    2892074
    2916626
    2898785
    My automatic deployment rules include Windows 8.1 in the product category. I have even created a standalone rule for Windows 8.1 that builds a new package and the behavior is the same. 
    We only have a handful of Windows 8+ clients so this hasn't been a big issue but others may want to keep an eye out. 

    I am also running into this issue.  After "checking online for updates" on one of my machines in office I found that there were 21 important updates for my 8.1 box.  When I cross reference them in SCCM under All Software Updates, it appears these
    8.1 updates are not listed.  They are however listed for all other OS.  
    10 seconds after typing this, I went in to verify my WSUS ->  Products and Classifications settings and come to find 8.1 and 2012 R2 weren't selected, even though it's an option in SCCM.  Go figure!  This wasn't the end though.  After
    running a Synchronization, my issue still wasn't resolved.  Went back to check my settings and they again were changed back to having these OS unchecked.  Finally, a solution!  I found that in SCCM, under Administration tab, Site Configuration
    > Sites > ABC - Mysitename, right click and scroll down to "Configure Site Components" > Software Update Point.  This setting (although the same as is in WSUS) takes precedence, thus was rolling my settings back to the original configuration
    in WSUS.
    So long story short, even though my automatic deployment rules stated approve all windows 7/8/8.1 criticals/importants, 8.1 was getting skipped for the most part because my WSUS server wasn't syncing with Microsoft for all of the updates I required.  I
    did have a couple of updates that squeezed through because they were categorized as "Security Updates for Windows 8, 8.1".
    Not sure if this is the solution you were looking for, but your thread got me started in the right direction, hopefully this response helps in the same way!
    Thanks!

  • SCCM 2012 R2 sp1 cu1 ccmsetup.exe still 5.00.7958.1000

    I downloaded sccm 2012 r2 sp1 cu1.  I applied the server update to our Primary server.  I also pushed out the client update (5.00.7958.1203) to all of our servers.  But I have noticed that any new servers are still showing client version as
    5.00.7958.1000.  I checked the version of ccmsetup.exe on our Sccm primary server and it is showing 5.00.7958.1000.  I would have thought when I applied the sccm 2012 r2 sp1 cu1 server update to the primary server it would have updated the ccmsetup.exe
    to version 5.00.7958.1203.  I know with time the client on new boxes will be updated with the client update push I have running on all windows server collection, but why not just have the most current version from the start.  I searched for
    an updated copy of ccmset.exe on the primary server, but never found it.  I checked MS site for the most current version of sccm 2012 client install, but could find that either.  Any help would be greatly appreciated,
    Mark

    Nope. CU1 is simple an update that must be layered on top of the R2 client. You can do this using either SCUP or a program deployment using the package/program that was created during the CU setup.
    For reference:
    http://technet.microsoft.com/en-us/library/jj553405.aspx
    As a side note, this is something on most folks top 10 list of things they want changed but don't count on anything anytime soon.
    Jason | http://blog.configmgrftw.com

  • CcmSetup is exiting with return code 0 Need Help

    Installing SCCM Client on Window 7 Machine, Examining the log file, this caught my eye. 
    <![LOG[Successfully deleted the ccmsetup service]LOG]!><time="13:58:26.463-480" date="05-09-2014" component="ccmsetup" context="" type="1" thread="3656" file="ccmsetup.cpp:3345">
    <![LOG[0]LOG]!><time="13:58:26.463-480" date="05-09-2014" component="ccmsetup" context="" type="1" thread="3656" file="ccmsetup.cpp:9763">
    <![LOG[Deleted file C:\Windows\ccmsetup\ccmsetup.xml]LOG]!><time="13:58:26.463-480" date="05-09-2014" component="ccmsetup" context="" type="1" thread="3640" file="ccmsetup.cpp:9493">
    <![LOG[Task 'Configuration Manager Client Upgrade Task' does not exist]LOG]!><time="13:58:26.463-480" date="05-09-2014" component="ccmsetup" context="" type="0" thread="3640"
    file="wintask.cpp:634">
    <![LOG[CcmSetup is exiting with return code 0]LOG]!><time="13:58:26.463-480" date="05-09-2014" component="ccmsetup" context="" type="1" thread="3640" file="ccmsetup.cpp:10875">
    I search around this error code 0, But it seems mine is a different issue? The clients installs normally as usual, but can't see any software updates and such.
    Could the Error Code 0 have cause this also? Need guidance on this matter. 

    You just haven't waited long enough after agent installation. Agent installation and agent communication with the site are two separate things. After successful installation, the agent still has to find the site, register with it, download policies, and
    evaluate policies. This all takes a few minutes initially and after every reboot.
    You can check policyagent.log and policyevaluator.log to see all of the "fun" as far as policy goes.
    Jason | http://blog.configmgrftw.com
    Yea I was checking all the log files specific by everyone here, nothing seems wrong or out of the ordinary. Thanks for your help, and also everyone else here, Sorry I took so long to get back to this post.  

  • Sccm 2012 agent not installing with error CcmSetup failed with error code 0x80041013

    We have sccm 2012 r2 enviroment , when we deploy client agent to one DC , client agent is not getting install with below error .. I can able to install agent to all the machines except one DC.
    CcmGetOSVersion failed with 0x80041013
    CcmSetup failed with error code 0x80041013
    Any idea ?

    The error code 0x80041013 translates to:
    Provider load failure
    Source: Windows Management (WMI)
    Like Briij suggested, you should try to fix the WMI repository.
    Regards,
    Nickolaj Andersen | www.scconfigmgr.com | @Nickolaja

  • SCCM 2012 SP1 CU4 ccmsetup runs with SMS Agent Host on the "Service" mmc after upgrading the client to CU4.

    Dear Brothers,
    I have an issue with two (2) of my Site Servers, I have below scenarioa and explained issue details:
    Scenario:
    1. Server1: Windows 2012 Server, CAS, SCCM 2012 Hierarchy Roles: Management Point, DP, SUP, Component Server.
    2. Server2: Windows 2008 R2 Server, Secondary Site Role, SCCM 2012 Hierarchy Roles: Management Point, DP, Component Server.
    Issue:
    After updating the SCCM 2012 Client to CU4 on the actual Site Server, the "ccmsetup" appears also with "SMS Agent Host"
    at the Service MMC. Which I believed this is very unusual behavior.
      The Client however it seems properly installed and working please see below details:
    Questions: I believed the Client installations are still running on the background, even though the Client tends to look working on the Control Panel.
    1. How can I resolved this issue?
    2. Should I need to perform a total Client uninstallation, even depth till removing entries in the Registry levels?
    3. Or this is a normal behavior for the scenario?
    Advance thanks for your future replies, my brothers in technology.

    Dear Brother,
    2 Weeks since I installed the CU4, it seems a little bit to long isn't it? for both the ccmsetup and the SMS Host Agent Services to exist, for the errors on the ccmsetup.log there are some errors after uninstallation since I am trying to removed
    the issue .
    CCMsetup.log
    ==========[ ccmsetup started in process 5376 ]========== 7/1/2014 7:14:45 PM 4104 (0x1008)
    Running on platform X64 7/1/2014 7:14:45 PM 4104 (0x1008)
    Updated security on object C:\Windows\ccmsetup\cache\. 7/1/2014 7:14:45 PM 4104 (0x1008)
    Launch from folder C:\Windows\ccmsetup\ 7/1/2014 7:14:45 PM 4104 (0x1008)
    CcmSetup version: 5.0.7804.1500 7/1/2014 7:14:45 PM 4104 (0x1008)
    Running on OS (6.2.9200). Service Pack (0.0). SuiteMask = 272. Product Type = 3 7/1/2014 7:14:45 PM 4104 (0x1008)
    Ccmsetup command line: ccmsetup.exe  /uninstall 7/1/2014 7:14:45 PM 4104 (0x1008)
    Command line parameters for ccmsetup have been specified.  No registry lookup for command line parameters is required. 7/1/2014 7:14:45 PM 4104 (0x1008)
    Command line: ccmsetup.exe  /uninstall 7/1/2014 7:14:45 PM 4104 (0x1008)
    SslState value: 224 7/1/2014 7:14:45 PM 4104 (0x1008)
    Detected client version 5.00.7804.1500 from WMI. 7/1/2014 7:14:45 PM 4104 (0x1008)
    Updated security on object C:\Windows\ccmsetup\. 7/1/2014 7:14:45 PM 4104 (0x1008)
    Another instance of ccmsetup is already running. 7/1/2014 7:14:45 PM 4104 (0x1008)
    Task 'Configuration Manager Client Upgrade Task' does not exist 7/1/2014 7:14:45 PM 4104 (0x1008)
    CcmSetup is exiting with return code 3 7/1/2014 7:14:45 PM 4104 (0x1008)
    MSI: Action 19:15:20: SmsRemoveUIEvents. This custom action is no longer used. The custom action used to remove the COM+ event subscriber and publisher used for UI notifications. We no longer use COM+ events for UI notifications. 7/1/2014 7:15:20 PM 5628
    (0x15FC)
    MSI: Action 19:15:20: CcmUnregisterPerfCounters. Removes performance counters gathered in the CcmUnregisterPerfCountersInit action 7/1/2014 7:15:20 PM 5628 (0x15FC)
    MSI: Action 19:15:20: CcmRemoveLanternDocuments. Removing documents from Microsoft Policy Platform that have been submitted by Configuration Manager authority. 7/1/2014 7:15:20 PM 5628 (0x15FC)
    MSI: Action 19:15:30: CcmTypelibRollback. In the event of install failing, this event rolls back the type libraries to the state before install started. 7/1/2014 7:15:30 PM 5628 (0x15FC)
    MSI: Action 19:15:30: SmsDeinstallDesktopClient. This custom action uninstalls the desktop client with following steps-
    1. Makes sure there are no desktop client installations in progress and prevents any new instance of intallation.
    2. Checks the desktop client version and gets the installation direcotry.
    3. Stops remote control and other desktop components.
    4. Kills the following client processes - clisvc1.exe, pea32.exe, smsapm32.exe, smsmon32.exe and sms_reen.exe.
    5. Saves information needed for migration and uninstalls the desktop components followed by clean up. 7/1/2014 7:15:30 PM 5628 (0x15FC)
    MSI: Action 19:15:30: CcmDetectFilesInUseRollback. Rolls back files moved by CcmDetectFilesInUse. 7/1/2014 7:15:30 PM 5628 (0x15FC)
    MSI: Action 19:15:30: CcmDetectFilesInUse. Moves files that are in use so that they will be deleted upon the next reboot. 7/1/2014 7:15:30 PM 5628 (0x15FC)
    MSI: Action 19:15:31: CcmDetectFilesInUseCommit. Commits action of CcmDetectFileInUse. After this we cannot rollback. 7/1/2014 7:15:31 PM 5628 (0x15FC)
    MSI: Action 19:15:31: InstallFiles. Copying new files 7/1/2014 7:15:31 PM 5628 (0x15FC)
    MSI: Internal Error 2902. ixfAssemblyCopy 7/1/2014 7:15:32 PM 5628 (0x15FC)
    MSI: Action 19:15:32: Rollback. Rolling back action: 7/1/2014 7:15:32 PM 5628 (0x15FC)
    File C:\Windows\ccmsetup\configmgr2012ac-sp1-kb2882125-x64.msp installation failed. Error text: ExitCode: 1603
    Action: InstallFiles.
    ErrorMessages:
    Internal Error 2902. ixfAssemblyCopy
     7/1/2014 7:15:33 PM 5628 (0x15FC)
    A Fallback Status Point has not been specified.  Message with STATEID='301' will not be sent. 7/1/2014 7:15:33 PM 5628 (0x15FC)
    Deleted file C:\Windows\ccmsetup\ccmsetup.xml 7/1/2014 7:15:33 PM 5628 (0x15FC)
    Deleted file C:\Windows\ccmsetup\client.msi 7/1/2014 7:15:33 PM 5628 (0x15FC)
    CcmSetup failed with error code 0x80070643 7/1/2014 7:15:33 PM 5628 (0x15FC)
    Regards,

  • CCMSETUP not updating on SCCM 2012 SP1 CU3/CU4 primary site

    I have a SCCM 2012 SP1 CU3 primary site and i can't upgrade the local installed SCCM Client.
    The error I get in ccmsetup.log is:
    <![LOG[MSI: Setup was unable to register the CCM_Service_HostingConfiguration endpoint
    The error code is 80041002]LOG]!><time="15:44:22.408-60" date="02-08-2014" component="ccmsetup" context="" type="3" thread="2496" file="msiutil.cpp:300">
    <![LOG[MSI: Action 15:44:22: Rollback. Rolling back action:]LOG]!><time="15:44:22.562-60" date="02-08-2014" component="ccmsetup" context="" type="0" thread="2496" file="msiutil.cpp:314">
    <![LOG[File C:\windows\ccmsetup\{59A0EA77-D28C-4286-83A6-04BB57B9CDD6}\client.msi installation failed. Error text: ExitCode: 1603
    Action: CcmRegisterHostingConfiguration.
    ErrorMessages:
    Setup was unable to register the CCM_Service_HostingConfiguration endpoint
    The error code is 80041002
    ]LOG]!><time="15:45:00.798-60" date="02-08-2014" component="ccmsetup" context="" type="3" thread="2496" file="msiutil.cpp:872">
    <![LOG[Client installation has failed too many times. Ccmsetup will now abort.]LOG]!><time="15:45:00.830-60" date="02-08-2014" component="ccmsetup" context="" type="3" thread="2496" file="ccmsetup.cpp:7941">
    <![LOG[Successfully deleted the ccmsetup service]LOG]!><time="15:45:05.831-60" date="02-08-2014" component="ccmsetup" context="" type="1" thread="2496" file="ccmsetup.cpp:3320">
    <![LOG[InstallFromManifest failed 0x80070643]LOG]!><time="15:45:05.831-60" date="02-08-2014" component="ccmsetup" context="" type="3" thread="2496" file="ccmsetup.cpp:7086">
    <![LOG[CcmSetup failed with error code 0x80070643]LOG]!><time="15:45:05.832-60" date="02-08-2014" component="ccmsetup" context="" type="1" thread="2324" file="ccmsetup.cpp:10544">
    I have this on my primary and secondary servers as well.
    Is upgrading to R2 recommended and will that solve this issue ?
    When googling to this issue i found that there is a solution for this: remove MP, upgrade Client, install MP.
    But this is my primary and secondary and on secondary i am not allowed to remove the MP. It is hardcoded enabled.

    Try the following steps to specify the hotfix when installing the client.
    1. Open an elevated command prompt.
    2. Run a command line similar to the following – if CU3 has already been installed, the MSP file below should be on the site server, in the
    \\servername\SMS_SITE\Client\hotfix folder:
    \ccmsetup.exe PATCH=\Configmgr2012ac-sp1-kb2882125-x64.msp 
    Juke Chou
    TechNet Community Support

  • Cannot verify server window is open and I am locked from using IPad

    cannot verify server window is open and I am locked from using IPad

    When you say that you rebooted, do you mean like this? Reset the iPad by holding down on the sleep and home buttons at the same time for about 10-15 seconds until the Apple Logo appears - ignore the red slider if it appears on the screen - let go of the buttons. Let the iPad start up.
    If thats what you did and it failed, it couldn't hurt to reset your router as well by unplugging it from power for about 30 seconds.
    You can also try Resetting All Settings. Settings>General>Reset>Reset All Settings. That will require you to join the network again and that might trigger the connection again. No data is lost when resting all settings but as the name implies, all device settings will be restored to factory defaults  and you will have to enter your preferred settings again.

  • COULDN'T VERIFY YOUR CODE!!

    Am having a problem to activate the product on my windows 8.1 Pro laptop, Whenever I enter the provided code I receive the following error message:
    COULDN'T VERIFY YOUR CODE, PLEASE TRY AGAIN LATER NOTE: The subscription for 5 devices and I have activated successfully on my mobile only.I didn't uninstall or reinstall the SW.

    Try the troubleshooting steps in
    http://pondini.org/TM/Troubleshooting.html

  • SAMLUtils.checkSignatureValid: Couldn't verify signature.

    Hi,
    When i try to the SAML post. I receive the below error message.
    </ds:Signature><samlp:Status><samlp:StatusCode Value="samlp:Success"/></samlp:Status><saml:Assertion xmlns:saml="urn:oasis:names:tc:SAML:1.0:assertion" AssertionID="_2a1708489b7c0a59481ab12aaf855362" IssueInstant="2012-03-27T18:21:36Z" Issuer="econnectng07.test.com:443" MajorVersion="1" MinorVersion="1"><saml:Conditions NotBefore="2012-03-27T18:21:36Z" NotOnOrAfter="2012-03-27T18:26:36Z"/><saml:AuthenticationStatement AuthenticationInstant="2012-03-27T18:21:02Z" AuthenticationMethod="urn:oasis:names:tc:SAML:1.0:am:HardwareToken"><saml:Subject><saml:NameIdentifier Format="urn:oasis:names:tc:SAML:1.1:nameid-format:X509SubjectName">uid=test,ou=People,ou=AMIND,dc=amat,dc=com </saml:NameIdentifier><saml:SubjectConfirmation><saml:ConfirmationMethod>urn:oasis:names:tc:SAML:1.0:cm:bearer</saml:ConfirmationMethod></saml:SubjectConfirmation></saml:Subject><saml:SubjectLocality IPAddress="10.208.155.122"/></saml:AuthenticationStatement></saml:Assertion></samlp:Response>
    libSAML:03/27/2012 11:21:37:067 AM PDT: Thread[service-j2ee-103,5,main]
    getWSSTTokenProfilePublicKey: entering
    libSAML:03/27/2012 11:21:37:067 AM PDT: Thread[service-j2ee-103,5,main]
    Could not find a KeyInfo, try to use certAlias
    libSAML:03/27/2012 11:21:37:068 AM PDT: Thread[service-j2ee-103,5,main]
    SAMLUtils.checkSignatureValid: Couldn't verify signature.
    libSAML:03/27/2012 11:21:37:068 AM PDT: Thread[service-j2ee-103,5,main]
    verifyResponse: Response's signature is invalid.
    libSAML:03/27/2012 11:21:37:069 AM PDT: Thread[service-j2ee-103,5,main]
    SAMLUtils.sendError: error page/saml2/jsp/saml2error.jsp
    libSAML2:03/27/2012 11:21:41:021 AM PDT: Thread[SystemTimerPool,5,main]
    CacheCleanUpRunnable.run:
    This is SAML 1 post and i have the client certificate imported in my saml keystore also. Appreciate your help.
    libSAML:03/27/2012 11:22:34:002 AM PDT: Thread[SystemTimerPool,5,main]
    Clean up runnable wakes up..
    libSAML:03/27/2012 11:22:34:002 AM PDT: Thread[SystemTimerPool,5,main]
    AssertionManager::CleanUpThread::number of assertions in IdEntryMap:0
    [root@dca-ldap-stg1 debug]# pwd

    You've cut-off the digital signature from the SAML response in your posting, and haven't provided any information about the digital certificate in your keystore. How can one respond to your problem?
    Is the client certificate in your keystore responsible for signing the SAML assertion? If not, do you have the SAML service's digital certificate accessible to your verifier program in your keystore? If not, you need to import the signer's digital certificate into your keystore, verify that it is there, and then run your program again.
    Arshad Noor
    StrongAuth, Inc.

Maybe you are looking for