Failed to update server firewall rules

Hi 
I have a problem with the SQL firewall. Unfortunately, I can not add IP address. It always comes this error when saving: Failed to update server firewall rules 
How can I change this? I need to change this setting so that I can work again. Unfortunately, I do not want to help the Support of Microsoft !!

Hi,
To configure your firewall, you create firewall rules that specify ranges of acceptable IP addresses. You can create firewall rules at the
server and database levels.
Server-level firewall rules: These rules enable clients to access your entire Azure SQL Database server, that is, all the databases within the same logical server. These rules are stored in the
master database.
Database-level firewall rules: These rules enable clients to access individual databases within your Azure SQL Database server. These rules are created per database and are stored in the individual databases (including
master). These rules can be helpful in restricting access to certain (secure) databases within the same logical server.
For additional information check this below link
http://msdn.microsoft.com/en-us/library/azure/ee621782.aspx
http://social.technet.microsoft.com/wiki/contents/articles/2677.windows-azure-sql-database-firewall-en-us.aspx
http://social.msdn.microsoft.com/Forums/azure/en-US/ea128f00-8a94-4ace-88ff-d7095ff60c1a/cannot-change-firewall-setting-for-sql-azure-after-ip-change?forum=ssdsgetstarted
Girish Prajwal

Similar Messages

  • TMG Server Firewall Rule

    Hi experts,
    I am trying to deploy Forefront TMG in a Virtualized Environment.
    The software I am using is Oracle VM VirtualBox.
    I have made 2 server machines . One is a domain controller and on the
    other machine I have installed FTMG 2010. The TMG server is part of the domain.
    It has two NICs one for WAN & the other one for LAN
    On the tmg server I have made a firewall rule that allows all outbound traffic
    to an AD user.
    On another Win7 Virtual Machine that is joined to the domain. I logged in as a user
    and inthe internet options of IE I configured the proxy settings that points
    to my TMG Server. But nothing is showing up even the websnse page.
    I just shows 'Internet Explorer cannot show the webpage'.
    Can anybody help me where I m mistaking....!!!

    Hi There, 
    As mentioned by other experts you WOULD need to have a proper DNS infra, before you could setup TMG as forward proxy.
    Also you can check these articles to learn more about setting up TMG for forward proxy.
    http://technet.microsoft.com/en-us/library/cc441445.aspx
    http://technet.microsoft.com/en-us/library/ee869543.aspx
    Also to isolate the issue, you can try connecting to the same Sites by by-passing TMG, and connecting to Internet directly.

  • Can't able to add update server to fabric in SCVMM 2012 R2

    Hi,
    I have one windows server 2012 R2 standard machine (update server) with WSUS, I have installed from server manager as server role. This update server machine is having the public IP without domain and it is a VM on one of my Hyper-V server. I would like
    to add the update server to my SCVMM 2012 R2 environment. When I try to add the update server to the fabric, it can't seems to be add because its throwing the error like, "Error (410) Agent installation failed on update server. The RPC
    server is unavailable."
    Has anybody else have clue ?
    Can anybody offer some help ?

    Hi,
    following link provides info on how to add untrusted Hyper-V hosts to VMM
    http://technet.microsoft.com/en-us/library/gg610609.aspx
    as it might help you adding an untrusted WSUS also (haven't tested it myself)
    MCITP SA - MCP Active Directory - MCP Infrastructure - MCP Server Virtualization www.it101.eu

  • SQL firewall rule to restrict traffic from only one Azure PaaS website (cross-post from websites)

    (This has also been posted on the websites forum)
    Hi,
    I have been asked to configure the firewall on the SQL PaaS instance to only allow traffic from a specified PaaS website that is within the same subscription. I can't see any way to set a static internal IP for the website, is there a way to identify it
    for the purpose of the SQL Database firewall rule?
    Thanks,
    Karina

    You're right, KG! Sorry.
    This article mentions a reserved-IP:
    https://msdn.microsoft.com/en-us/library/azure/dn690120.aspx
    It specifically mentions your scenario:
    You want to ensure that outbound traffic from Azure uses a predictable IP address. You may have your firewall configured to allow only traffic from specific IP addresses. By reserving a VIP, you will know the source IP address and won’t
    have to update your firewall rules due to a VIP change. This is especially helpful if you want to configure your firewall before you create your cloud service.
    The only thing I'm not confident on would be if it works with Azure Websites - it does mention cloud services, though. If you have further questions, I can give a shot myself and see if I can get a working example.

  • Hi all! I was updating the software on i pad to ios6, update was interrupted(apple update server is unavailable...). iTunes Diagnostics shows that "secure link to I tunes store failed". I use Windows 7 Home Premium 64 bit. Can anybody help please?

    Hi all! I was updating the software on i pad to ios6, update was interrupted(apple update server is unavailable...). iTunes Diagnostics shows that "secure link to I tunes store failed". I use Windows 7 Home Premium 64 bit. Can anybody help please?
    The following was done so far:
    1. Windows Firewall - new rule created for itunes.
    2. iTunes - latest version installed.
    3. LAN setting : automatic detection of proxy is enabled;
    4. iTunes diagnostics shows:
    Microsoft Windows 7 x64 Home Premium Edition (Build 7600)
    TOSHIBA Satellite L655
    iTunes 11.0.2.26
    QuickTime 7.7.3
    FairPlay 2.3.31
    Apple Application Support 2.3.3
    iPod Updater Library 10.0d2
    CD Driver 2.2.3.0
    CD Driver DLL 2.1.3.1
    Apple Mobile Device 6.1.0.13
    Apple Mobile Device Driver 1.64.0.0
    Bonjour 3.0.0.10 (333.10)
    Gracenote SDK 1.9.6.502
    Gracenote MusicID 1.9.6.115
    Gracenote Submit 1.9.6.143
    Gracenote DSP 1.9.6.45
    iTunes Serial Number 003FB880034B7720
    Current user is not an administrator.
    The current local date and time is 2013-04-23 11:01:14.
    iTunes is not running in safe mode.
    WebKit accelerated compositing is enabled.
    HDCP is supported.
    Core Media is supported.
    Video Display Information
    Intel Corporation, Intel(R) HD Graphics
    **** External Plug-ins Information ****
    No external plug-ins installed.
    iPodService 11.0.2.26 (x64) is currently running.
    iTunesHelper 11.0.2.26 is currently running.
    Apple Mobile Device service 3.3.0.0 is currently running.
    **** Network Connectivity Tests ****
    Network Adapter Information
    Adapter Name:          {1CB5BBC2-8124-4664-899A-CE0A4683E3B4}
    Description:          Realtek RTL8188CE Wireless LAN 802.11n PCI-E NIC
    IP Address:          0.0.0.0
    Subnet Mask:          0.0.0.0
    Default Gateway:          0.0.0.0
    DHCP Enabled:          Yes
    DHCP Server:
    Lease Obtained:          Thu Jan 01 08:00:00 1970
    Lease Expires:          Thu Jan 01 08:00:00 1970
    DNS Servers:
    Adapter Name:          {8140112A-43D0-41D6-8B36-BE146C811173}
    Description:          Atheros AR8152/8158 PCI-E Fast Ethernet Controller (NDIS 6.20)
    IP Address:          10.5.7.196
    Subnet Mask:          255.255.0.0
    Default Gateway:          10.5.0.1
    DHCP Enabled:          Yes
    DHCP Server:          172.18.255.2
    Lease Obtained:          Tue Apr 23 10:14:40 2013
    Lease Expires:          Tue Apr 23 22:14:40 2013
    DNS Servers:          121.97.59.7
                        121.97.59.2
                        121.97.59.3
    Active Connection:          LAN Connection
    Connected:          Yes
    Online:                    Yes
    Using Modem:          No
    Using LAN:          Yes
    Using Proxy:          No
    Firewall Information
    Windows Firewall is on.
    iTunes is NOT enabled in Windows Firewall.
    Connection attempt to Apple web site was successful.
    Connection attempt to browsing iTunes Store was unsuccessful.
    The network connection timed out.
    Connection attempt to purchasing from iTunes Store was successful.
    Connection attempt to iPhone activation server was successful.
    Connection attempt to firmware update server was unsuccessful.
    The network connection timed out.
    Connection attempt to Gracenote server was successful.
    The network connection timed out.
    Last successful iTunes Store access was 2013-03-22 10:05:31.
    @@@. iTunes IS ENABLED THROUGH THE FIREWALL , even though diagnostics says "NOT enabled"

    hours after the first post i somehow got this to work. dont know how, but i do tried the dns clear cache, the clear host file, oh and i did the check automatically detech dns AND THEN se-check it again before i got this to work.

  • Secure link to iTunes store failed and Connection attempt to firmware update server was unsuccessful

    Hello everyone, Im facing error with my iTunes. When I run diagnostics i can see "Secure link to iTunes store failed" - please see the image below
    Please note: as it is showing secure link to itunes is failed but still i can see iTunes store, but the above error shows when I run diagnostics.
    After that when I go through the next and I found the diagnostics report as below, within report i have marked a line with RED colored "Connection attempt to firmware update server unsuccessful". I need HELP!!!!!
    Microsoft Windows XP Professional Service Pack 3 (Build 2600)
    Gigabyte Technology Co., Ltd. G31M-ES2C
    iTunes 11.3.0.54
    QuickTime not available
    FairPlay 2.6.12
    Apple Application Support 3.0.5
    iPod Updater Library 11.1f5
    CD Driver 2.2.3.0
    CD Driver DLL 2.1.3.1
    Apple Mobile Device 7.1.2.6
    Apple Mobile Device Driver 1.64.0.0
    Bonjour 3.0.0.10 (333.10)
    Gracenote SDK 1.9.6.502
    Gracenote MusicID 1.9.6.115
    Gracenote Submit 1.9.6.143
    Gracenote DSP 1.9.6.45
    iTunes Serial Number 0012B9F0069DE9C0
    Current user is an administrator.
    The current local date and time is 2014-08-05 01:48:05.
    iTunes is not running in safe mode.
    WebKit accelerated compositing is enabled.
    HDCP is not supported.
    Core Media is supported.
    Video Display Information
    NVIDIA GeForce 8400 GS 
    **** External Plug-ins Information ****
    No external plug-ins installed.
    The drive G: ZTE USB SCSI CD-ROM Rev 2.31 is a USB 2 device.
    **** Network Connectivity Tests ****
    Network Adapter Information
    Adapter Name:    {14DCBC2B-34CB-431B-8625-1E62D7310533}
    Description:    WAN (PPP/SLIP) Interface
    IP Address:    10.128.133.101
    Subnet Mask:    255.255.255.255
    Default Gateway:    10.128.133.101
    DHCP Enabled:    No
    DHCP Server:  
    Lease Obtained:    Thu Jan 01 06:00:00 1970
    Lease Expires:    Thu Jan 01 06:00:00 1970
    DNS Servers:    8.8.8.8
            156.154.70.1
    Active Connection:    Teletalk
    Connected:    Yes
    Online:        Yes
    Using Modem:    Yes
    Using LAN:    No
    Using Proxy:    No
    Firewall Information
    Windows Firewall is on.
    iTunes is enabled in Windows Firewall.
    Connection attempt to Apple web site was successful.
    Connection attempt to browsing iTunes Store was successful.
    Connection attempt to purchasing from iTunes Store was successful.
    Connection attempt to iPhone activation server was successful.
    Connection attempt to firmware update server was unsuccessful.
    The network connection timed out.
    Connection attempt to Gracenote server was successful.
    Last successful iTunes Store access was 2014-08-04 03:23:27.
    **** Device Connectivity Tests ****
    iPodService 11.3.0.54 is currently running.
    iTunesHelper 11.3.0.54 is currently running.
    Apple Mobile Device service 3.3.0.0 is currently running.
    Universal Serial Bus Controllers:
    Intel(R) 82801G (ICH7 Family) USB Universal Host Controller - 27C8.  Device is working properly.
    Intel(R) 82801G (ICH7 Family) USB Universal Host Controller - 27C9.  Device is working properly.
    Intel(R) 82801G (ICH7 Family) USB Universal Host Controller - 27CA.  Device is working properly.
    Intel(R) 82801G (ICH7 Family) USB Universal Host Controller - 27CB.  Device is working properly.
    Intel(R) 82801G (ICH7 Family) USB2 Enhanced Host Controller - 27CC.  Device is working properly.
    No FireWire (IEEE 1394) Host Controller found.
    **** Device Sync Tests ****
    No iPod, iPhone, or iPad found.

    Hi msahed,
    Welcome to Apple Support Communities.
    It sounds like there is an issue with your PC establishing a secure connection to the iTunes Store and the firmware update server. Try following along with the articles below, as they should resolve the issues that you described.
    iTunes: About the "A secure network connection could not be established" alert
    http://support.apple.com/kb/ts1470
    iTunes for Windows: iTunes can't contact the iPhone, iPad, or iPod software update server
    http://support.apple.com/kb/TS1814
    I hope this helps.
    -Jason

  • Hi, I've been trying for days to download Windows support software via Bootcamp assistant, but it always failed with message 'Can't install Windows Support Software because it is not currently available from the Software update server.' Any advice welcome

    Hi,
    I've been trying for days to download Windows support software via Bootcamp assistant but it always fails with message 'Can't install windows software because it is not currently available from the software update server.'
    Anyone else had problems or success with this?
    Thanks in advance.

    9thdoc wrote:
    I'm getting a similar but distinct error message in snow leopard: Download could not continue. "The windows support software is not available" and have no original snow leopard instal disc with me.
    Your issue is completely different. You are running Snow Leopard. There is no download for Windows Support software for Snow Leopard, hence the error you see. Snow Leopard Windows Support software is on the Snow Leopard installation disk.
    You need the Snow Leopard installation disk or a replacement for it.

  • Software update server- 10.4.8 fails to update

    Hello all,
    I have a software update server and perticular updates fail when run on client computers. I have just been stuck disabling them in Server Admin. What is the easiest way to fix this. Some updates in peticular are 10.4.8 and different logic updates. Could these pkgs have become corrupted and need to be re-added to the /usr/share/swupd/html/ directory?
    thank you!

    Hi, I was wondering if you had made any progress on this problem. I have spent some time tonight looking at the update_list.txt file that the Apple Knowledge Base article shows you how to generate. I know for sure that the 10.4.8Combo updater is one that fails to install. I have noticed something that i cannot explain and would be interested to see if you see the same. Below is an excerpt from the .txt file. I noticed that some updates do not follow the folder numbering structure that the others do. The 10.4.8 Combo updater, along with a few others, begin with zzz. Any ideas on this?
    <string>/usr/share/swupd/html/061-1807/h4tBSmzXQ6sWTF9k73hYKz5hZcnJQNv7Rp/HLDSFW Updater.tar</string>
    <string>/usr/share/swupd/html/zzz061-2660/JbKdyCgpmF9jB3vYyk8hzqKf8wKkrxd8Yx/Ma cOSXUpdCombo10.4.8Intel.tar</string>
    <string>/usr/share/swupd/html/061-1750/jpc7Rxgx28fpTTF3TPS3wBvy6QqG58fnxH/LiveT ypeUpdate1.2.tar</string>
    <string>/usr/share/swupd/html/061-1686/hQf6cZrbBpnXggcsmMRmfXGnLbdBv32bSf/iPhot oUpdate201.tar</string>
    <string>/usr/share/swupd/html/061-2161/4rftGHVRPKtYqDZdPLscXB2q7VWhwcxySc/iTune sProducer.tar</string>
    <string>/usr/share/swupd/html/061-2503/XT7KVqv64gCjpqYd8Xr699YTzCM4Zdc87j/Macmi niSMCUpdate.tar</string>
    <string>/usr/share/swupd/html/061-2748/rBd6Lj2RWDkvXXBmmzP6X6yFt9vpnk2cvf/iMovi e_603.tar</string>
    <string>/usr/share/swupd/html/061-1693/GJmbmjdvKYpGvSspNH3tKRJPrKww3XGHq2/Garag eBand_11.tar</string>
    <string>/usr/share/swupd/html/061-1726/tPFZMFh24CVHFyfg2bsvYxLPDPXsCV96tP/DVDSt udioPro3.0.2Update.tar</string>
    <string>/usr/share/swupd/html/061-2510/tXrX8ZRspRydnLRT95Yn9kxqHXS3pTwg2n/Pages 2.0.1v2.tar</string>
    <string>/usr/share/swupd/html/061-1788/LYfpcCc42jr589V2zms8kgnkndRyYtdvRJ/Qmast erAppsUpdate1.2.1.tar</string>
    <string>/usr/share/swupd/html/061-1702/h6zX8TBNG6QDVPwBQhxCDHPZnZFjCjztqy/iDVD5 01Update.tar</string>
    <string>/usr/share/swupd/html/061-1733/pt4fL3fP8RwmQyhZm9NKTxSwkPH2NJGBBJ/Compr essorUpdate1.2.1.tar</string>
    <string>/usr/share/swupd/html/061-2700/nHDMySq3cmj3SrNp8QbjYPRNM4fN9t2wBF/iPhot o_605.tar</string>
    <string>/usr/share/swupd/html/zzz061-2651/hdvQ9XJg4jCKKPZhwWFNmWgzQ7kHL4J3hD/Ma cOSXUpdCombo10.4.8PPC.tar</string>
    <string>/usr/share/swupd/html/061-1859/Qdkh5w7LRbrXxStc7qvkWb5HxLhFxZYNDJ/Qmast er2.0.1.tar</string>

  • [Solved] Windows Firewall rule that allows Windows Update

    Can anyone kindly give me a Windows Firewall rule that allows Windows Update? Assume I'm running MMC's "Windows Firewall with Advanced Security" snap-in as Administrator. Note that a "solution" that takes down the outbound firewall is
    not acceptable.
    Thank You.
    ===== Solution =====
    Suppose that, as the default, you've set the outbound firewall to block (see
    To close the outbound firewall, below). In order for Windows Update to check whether an update is available and then to download the update files, you first need an outbound firewall
    allow-rule that allows the Windows Update service to pass through the outbound firewall.
    Prerequisite: Knowledge of the Microsoft Management Console (MMC) and its "Windows Firewall with Advanced Security" plug-in.
    What you will do: You will use the "Windows Firewall with Advanced Security" MMC plug-in to create an outbound firewall rule that
    allows '%SystemRoot%\System32\svchost.exe' (the generic service driver) to pass through the outbound firewall on behalf of 'wuauserv' (the name of the specific service that performs the update).
    Warning: If you don't know what I'm writing about, get help.
    Name: Allow Windows Update (...or any name you prefer - it doesn't matter)
    Group:
    Profile: Public
    Enabled: Yes
    Action: Allow
    Program: %SystemRoot%\System32\svchost.exe
    Local Address: Any
    Remote Address: Any
    Protocol: Any
    Local Port: Any
    Remote Port: Any
    Allowed Computers: Any
    Status: OK
    Service: wuauserv
    Rule Source: Local Setting
    Interface Type: All interface types
    Excepted Computers: None
    Description:
    To open the outbound firewall:
    More accurate wording would be
    Outbound connections are allowed unless explicitly blocked by a rule.
    If you look at the standard rules you will find no block-rules. That means that nothing is blocked, everything is allowed, and the outbound firewall is wide open.
    To close the outbound firewall:
    More accurate wording would be
    Outbound connections are blocked unless explicitly allowed by a rule.
    If you look at the standard rules you will find only allow-rules that have been crafted to allow the vital Windows connections to pass through the outbound firewall. To an informed observer it's obvious that the firewall engineers crafted these
    allow-rules so that users who closed the outbound firewall wouldn't have to write them. But the firewall engineers left out Windows Update.

    Hi mark,
    Thanks for sharing, it will help other users who have similar issue.
    Regards

  • Windows server update services installation failed the update could not be found

    Hi everybody...
    I have tried to install WSUS Role on windows 2008 r2 ent server. its says windows server update services installation failed.
    actually the wsus role for SCCM 2007, asper the prerequesite i have finished all other steps, only wsus role is pending.. please help..

    Thanks FinMaky,
    The keys are:
    (1) to delete WindowsUpdate registry keys, and then
    (2) enable/restart Windows Update services.
    (3) also to make sure there's no WSUS policy defining update server is in place
    This resolves my issue.
    BIG THANKS!
    Tuesday, April 05, 2011 1:53 PM
    Reply
    |
    Quote
    |
    Report
    as abuse
    FinMaky
    ---Pat

  • SA540 Firewall Rules Fail when Optional Port Configured to Failover

    Today, I configured a client's SA540 for failover.  The primary WAN port is FIOS with a static IP address.  The optional port is Road Runner cable with a static IP address.  The failover tested successfully.  However, now the SA540 cannot be accessed on its internal IP address (https://192.168.1.1) and none of the firewall rules work any longer.  There are several rules but to name two; remote desktop port forwarding to an internal server, and HTTPS to another internal server.  Both rules use IP addresses different than the SA540's WAN IP address.  Additional external IP addresses were configured previously and assigned and they worked up to the point were the failover was configured.
    Now here is the strange part.  If the optional port cable is removed from the port, everything returns to normal, but plug it back in and problems.  I even tried disabling failover in the SA540's configuration and it made no difference unless the cable was unplugged.
    As you might imagine the client is upset about this.  Anyone have any ideas? 
    The firmware is 2.1.18.
    Tony
    PS.  About an hour after I posted this, I tried moving the remote desktop external connection from one of the additional IP addresses configured in the SA540 to the dedicated WAN address and remote desktop sessions were then forwarded into the correct server.  Apparently, the additional IP addresses are not working with the two ISP failover configured, or at least it doesn't work in my configuration.  Any help on this would be much appreciated.  The additional IP addresses are configured in the same subnet as the dedicated (primary) WAN port.   Again, this worked until failover with another ISP was configured.

    This issue has been resolved. After much testing and discussions with the great guys at Cisco TAC, we determined that Verizon FIOS is doing something on their routers to defeat use of IP aliasing. If you have FIOS and you must have more than one IP address and expect to create an IP alias to direct traffic in a 1 to 1 NAT to a node on your network, FIOS doesn’t work. Contact with Verizon technical support is no help. They are oblivious to the problem and don’t want to be bothered.
    Tony Lombardi

  • Server 2008 r2 setting up firewall rule that just doesn't work!

    I have allocated static ip addresses to a group of PCs, then gone to Server 2008 r2 and gone to Windows firewall with advanced security and written a new custom rule. Am blocking internet explorer, have browsed to where it is lodged on PCs, added the ip
    addresses for blocking, in fact followed a detailed set of instructions but it just doesn't work! I am at a loss as to why, can anyone help please, driving me mad now! Thanks.

    Are you applying ADV firewall rules through GPO. If not then you need to create block rules on the clients i think. but I would create a block rule in GPO and link to these PC's OU.

  • [Solved] Windows Firewall rule that will allow Windows Update

    The problem has been solved here:
    https://social.technet.microsoft.com/Forums/en-US/62b9fd5c-10b2-4266-bc15-fcf3e79d20d4/solved-windows-firewall-rule-that-allows-windows-update?forum=w7itpronetworking
    Everything from here down is obsolete.

    Go to Control Panel >Firewall>Advanced Settings. Then click
    Action>Export policy to make a copy of your current policy in case you want to restore it. Then click
    Action>Restore Default Policy.
    This should allow you to use Windows Update.
    See also:
    https://technet.microsoft.com/en-in/library/bb693717.aspx
    https://support.microsoft.com/kb/836941
    S.Sengupta, Windows Entertainment and Connected Home MVP

  • What Specific Firewall Rules are Needed for the DPM Server?

    Hello,
    We want to confirm which firewall ports need to be opened on the DPM server (not protected servers) for all DPM processes, so that we can set these rules in group policy. Below are what we
    think are the needed rules. Note that we have rules for both new DPM 2012 installs and upgrades from DPM 2010 to 2012, since these use different program paths.
    Rule Name
    Program Path
    Protocol
    Local Port
    DPM 2012 DCOM Port
    Any
    TCP
    135
    DPM 2012 AM Port
    Any
    TCP
    6075
    DPM 2012 RTM Agent Coordinator
    C:\Windows\Microsoft Data Protection Manager\DPM\ProtectionAgents\AC\4.0.1908.0\dpmac.exe
    Any
    Any
    DPM 2012 SP1 Agent Coordinator
    C:\Windows\Microsoft Data Protection Manager\DPM\ProtectionAgents\AC\4.1.3313.0\dpmac.exe
    Any
    Any
    DPM 2012 R2 Agent Coordinator
    C:\Windows\Microsoft Data Protection Manager\DPM\ProtectionAgents\AC\4.2.1205.0\dpmac.exe
    Any
    Any
    DPM 2012 AM Service Host (New Install
    %ProgramFiles%\Microsoft System Center 2012\DPM\DPM\bin\AMSvcHost.exe
    Any
    Any
    DPM 2012 AM Service Host (Upgrade Install)
    %ProgramFiles%\Microsoft DPM\DPM\bin\AMSvcHost.exe
    Any
    Any
    DPM 2012 DPM AM Service (New Install)
    %ProgramFiles%\Microsoft System Center 2012\DPM\DPM\bin\DPMAMService.exe
    Any
    Any
    DPM 2012 DPM AM Service (Upgrade Install)
    %ProgramFiles%\Microsoft DPM\DPM\bin\DPMAMService.exe
    Any
    Any
    DPM 2012 MSDPM (New Install)
    %ProgramFiles%\Microsoft System Center 2012\DPM\DPM\bin\msdpm.exe
    Any
    Any
    DPM 2012 MSDPM (Upgrade Install)
    %ProgramFiles%\Microsoft DPM\DPM\bin\msdpm.exe
    Any
    Any
    DPM 2012 DPMRA (New Install)
    %ProgramFiles%\Microsoft System Center 2012\DPM\DPM\bin\DPMRA.exe
    Any
    Any
    DPM 2012 DPMRA (Upgrade Install)
    %ProgramFiles%\Microsoft DPM\DPM\bin\DPMRA.exe
    Any
    Any
    Questions:
    Are any of these rules not needed?
    We know the Agent Coordinator rules are needed on protected servers. Are they also needed on the DPM server (including if we use secondary DPM servers)?
    The DPM Configuring Firewalls TechNet page says DCOM uses TCP 135 and the RPC Dynamic ports. Does that mean we also need a rule that opens all TCP RPC Dynamic ports for
    any program? Or is this not necessary since we have rules for msdpm.exe and dpmra.exe? Reference:
    http://technet.microsoft.com/en-us/library/hh757794
    What other rules may be missing, if any?
    Note that we do not include rules for ports 53 (DNS), 88 (Kerberos), 389 (LDAP), 137-139 & 445 (NetBIOS) because we already open these ports in other group policy objects.
    Also, the below forums post says two exceptions for SQL Server are needed on the DPM server to allow the Remote Administrator console to work. Is there any documentation in the DPM TechNet site on these rules?
    http://social.technet.microsoft.com/Forums/en-US/aa88fd00-6836-46d3-8a93-edb487109118/dpm-2012-remote-administration?forum=dataprotectionmanager
    Thanks,
    -Taylorbox

    Does anyone have any comments on this post? We would especially appreciate some input from Microsoft reps to help us ensure we're setting up the correct firewall rules.
    Thanks,
    -Taylorbox

  • AUSST (Adobe Update Server) failing on clients with error U43M1D206

    Hi,
    I have a newly configured Adobe Update Server setup running on Windows 2008 Server R2 and IIS 7.
    I have the web server configured as per the PDF document (AdobeUpdateServerSetupTool.pdf, pages 15 onwards).
    My clients can successfully see the test xml document at this URL from a web browser:
    http://myserver/Adobe/webfeed/oobe/aam10/mac/updaterfeed.xml
    When I go to do updates from an Adobe CC app (Photoshop for example), the new updates show up in a list, but when I type in my password and attempt to update, the Adobe updater reports an error:
    "Update Failed"
    Updates could not be applied
    The error log file may help you in identifying the problem.  Then, try updating again.  If the problems persist, contact customer support for further assistance.
    The error log reads like this:
    Adobe Photoshop 14.2.1
    Some error occured during download. Please try again later. Error Code: U43M1D206
    DPS Desktop Tools CS6 30.0.0 Update
    Some error occured during download. Please try again later. Error Code: U43M1D206
    DPS Desktop Tools CC 30.0.0 Update
    Some error occured during download. Please try again later. Error Code: U43M1D206
    Adobe ShareOnBehance 1.0.3
    Some error occured during download. Please try again later. Error Code: U43M1D206
    I've searched on the error code quoted above, and not found any useful information.
    I'm wondering if there is an IIS server side set up issue that I'm not aware of.
    Please help with any possible suggestion that I could attempt to get this working successfully as I've exhausted all possible thoughts of how to troubleshoot this further.
    Many thanks.

    I have the same problem, any sollutions?

Maybe you are looking for