NLB Cluster problem

I'm trying to implement Network Load Balancing for my VPN Servers. I have 2 Window Server 2008 R2 running as VPN Server integrated TMG2010 Firewall. Both nodes can ping from one node to another node. On the first node, I tried to connect to the second
node many time through External Interface but failed. When I click connect, it always appear the error "The RPC Server is unavailable on the specified computer". I also tried to disable RPC Restrict from TMG Firewall Policy but it doesn't help. How
can I resolve this problem?

Hi,
Could you clarify “I tried to connect to the second node many time through External Interface but failed.” How did you do that. 
Please disable the Windows built-in firewall first. Which type of the NLB mode you are using? If all interface are set to run NLB in “unicast” mode, NLB Manager will fail to connect to hosts.
The similar thread:
Strange warning message while opening NLB Manager
http://social.technet.microsoft.com/forums/windowsserver/en-US/f9a8330a-d114-4f02-8fbe-5d0c36bb3e49/strange-warning-message-while-opening-nlb-manager
Hope this helps.
We
are trying to better understand customer views on social support experience, so your participation in this
interview project would be greatly appreciated if you have time.
Thanks for helping make community forums a great place.

Similar Messages

  • Staging the NLB cluster Static port change of Exchange 2010 CAS or do it all in one day ?

    Folks,
    Here is the server deployment in my AD domain:
    Email flow and Outlook client connection go through the NLB cluster VIP email.domain.com.au which is served by the following server:
    PRODHT-CAS01 (HT-CAS Server Windows NLB node 1)
    PRODHT-CAS02 (HT-CAS Server Windows NLB node 2)
    Public Folder access through Outlook client goes through the following servers:
    PRODMBX01 (Stand-alone Mailbox Server 1) no DAG
    PRODMBX02 (Stand-alone Mailbox Server 2) no DAG
    Can I make the changes first on the first stack of Exchange Server set as below first:
    PRODHT-CAS01 (HT-CAS Server NLB node 1)
    PRODMBX01 (Stand-alone Mailbox Server 1) no DAG
    in order to test the Outlook email & Public Folder connectivity in the first week and then followed by the rest of the server set:
    PRODHT-CAS02 (HT-CAS Server NLB node 2)
    PRODMBX02 (Stand-alone Mailbox Server 2) no DAG
    would that cause the NLB or user email access problem?
    Do I have to make the changes all in one day for those four servers followed by the reboot?
    Reason of changing: The hardware load balancer (Riverbed) requires to have static RPC port to work properly.
    This is the article to change the Static port in my NLB cluster Exchange HT-CAS server role on Exchange Server 2010 SP2: http://social.technet.microsoft.com/wiki/contents/articles/864.configure-static-rpc-ports-on-an-exchange-2010-client-access-server.aspx
    Thanks in advance.
    /* Server Support Specialist */

    All the servers behind the load balancer must be the same.
    You can change the stand alone MBX server's RCA port as that traffic is not load balanced.
    Changing Exchange is straight forward, just be careful to enter the registry keys correctly and then check AB and RCA is listening on the new static ports after you restart the services.
    Cheers,
    Rhoderick
    Microsoft Senior Exchange PFE
    Blog:
    http://blogs.technet.com/rmilne 
    Twitter:   LinkedIn:
      Facebook:
      XING:
    Note: Posts are provided “AS IS” without warranty of any kind, either expressed or implied, including but not limited to the implied warranties of merchantability and/or fitness for a particular purpose.
    Rhoderick,
    Many thanks for the suggestion. My goal here is to minimize any impact / email service downtime to the user while configuring the static ports.
    1. Do I have to dissolve the Windows NLB cluster after the static port configuration on both HT-CAS servers or can I still keep the NLB cluster?
    2. "All the servers behind the load balancer must be the same." Do you mean do I have to do the static RPC port the same day for all server set ?
    /* Server Support Specialist */

  • Setting up NLB cluster to resolve nodes from GEO location.

    Hi,
    Is it possible that I can configure NLB cluster to load balance my application servers located in different GEO location?
    I do have site to site between these locations but nodes will have static IP address in different subnet?
    can this limitation be taken care of using NLB on Win 2012R2 or using a hardware load balancer?
    So I want to understand clearly about limitation for nodes to be in same subnet is for servers part of NLB cluster or is it for application hosts that NLB is serving to.
    BR, 

    Hi,
    Is it possible to use NLB through a router in two different datacenter?
    Yes, we can use NLB through a router. However, please do not plug the nods of NLB to a router or a layer 3 switch directly. Besides, deploy NLB with single case mode may avoid
    potential connectivity problems.
    A single NLB cluster is not typically deployed across multiple sites (for a number of reasons the technology is best suited to a broadcast-capable LAN environment). Instead,
    multiple, independent NLB clusters are typically deployed, one at each site. The sites are then “federated” into a single service to clients using features such as DNS round-robin to “load balance” client requests across the different sites. Internally, NLB
    can be used to load balance requests sent to a given site amongst the nodes in that site.
    The similar thread:
    NLB Question
    http://social.technet.microsoft.com/Forums/windowsserver/en-US/a402ed55-2f13-4523-848c-fc1d685029a5/nlb-question
    Hope this helps.
    We
    are trying to better understand customer views on social support experience, so your participation in this
    interview project would be greatly appreciated if you have time.
    Thanks for helping make community forums a great place.

  • AD RMS NLB Cluster

    Hello Experts,
    I have 2 servers NLB cluster, and deploy on it AD RMS 2012. I can access RMS 01 and RMS02 Successfully.
    I create Record in DNS with NLB Cluster IP, I can't access URL of RMS Cluster.
    The error message is as below
    How to fix this problem?
     Mai Ali | My blog: Technical | Twitter:
    Mai Ali

    Hi Andrzej,
    I created SQL on Backend for both RMS.
    Yes, I imported SSL certificate on second node and i can access second node also but My problem, that i can't access virtual node of cluster on RMS Management Console.
    Yes, I try ti access ADRMS Console with admin account.
    Yes, RMS.Lab.com added to local intranet and all operation of RMS is worked successfully.
    I think that you can't access virtual node of cluster on RMS Management Control if "RMS.Lab.com" direct to virtual ip of NLB and you need to manage RMS by access physical node and configure from it.
    Thanks for your reply.
    Please remember, if you see a post that helped you please click "Vote As Helpful" and if it answered your question, please click "Mark As Answer"
    Mai Ali | My blog: Technical | Twitter:
    Mai Ali

  • ADFS server in NLB cluster unable to reach all servers in the same subnet

    I have 2 ADFS (3.0) virtual servers (server 2012 R2 on VMware) in an NLB cluster (setup for Office 365 initially) and want to be able to use the SAML to connect to a couple of Linux servers in the same network to allow SSO to the Linux boxes.
    It was working then stopped and now the primary FS server (FS1) cannot ping either Linux box or one of our WS08R2 file and print servers. It can ping all other servers in the same network.
    I tried to get a packet capture with MS NetMon 3.4 but it only picked up the successful ping requests.
    Firewall is disabled but that made no difference.
    NLB cluster configured in Unicast mode as I found Office 365 and another outside service didn't want to work using Multicast or IGMP Multicast.
    The really bizarre thing is the secondary FS vm can ping the other boxes even with "ping server -S clusteraddress"
    Any suggestions as to where to look to track this down will be most welcome.
    Cheers
    David
    Cheers, David

    Hi,
    I am trying to involve someone familiar with this topic to further look at this issue. There might be some time delay. Appreciate your patience.
    Thanks for your understanding and support.
    We
    are trying to better understand customer views on social support experience, so your participation in this
    interview project would be greatly appreciated if you have time.
    Thanks for helping make community forums a great place.

  • Ironport c160 cluster problems

    Hi!
    I have two Ironport C160 in cluster mode, tonight one of them has stopped working, and I can not access this on, but it responds to ping.
    In the system log I found only the following line:
    Mon Mar 12 15:30:39 2012 Warning: Error connecting to cluster machine xxxxx (Serial#: xxxxxx-xxxxxx) at IP xx.xxx.xxx.x - Operation timed out - Timeout connecting to remotehost cluster
    Mon Mar 12 15:31:09 2012 Info: Attempting to connect via IPxxxxx toxxxxxxxx port 22 (Explicitly configured)
    My version is:6.5.3-007
    What I can log to find the cause of the problem?
    How I can find out what the problem?
    How can you solve?
    Thank you very much

    Well, "queuereset" is not a valid command, what you mean is "resetqueue", which I would strongly not recomment  to use without having a very good reason.Because this command removes all messages from the workqueue, delivery queues, and quarantines. There are usually less destructive ways to fix a cluster problem.
    BTW, version 5.5 has long been gone, so we won't need to reference any bugs from there any more.
    Regards,
    Andreas

  • Add port rule nlb cluster

    Hello,
    I have a two-node NLB cluster (Wk28 R2),
    The thing is that I want to add another port rule, and then I go to
    "Host Properties" \ "Port rules" , and there I see the ones I have created so far,  but the "add" button" is grey , not enabled.
    I am logged in as the Domain administrator, and it was me who created the nlb cluster with the same user.
    I am new to NLB, so I am probably missing something.
    THANKS IN ADVANCE!
    Luis Olías Técnico/Admon Sistemas . Sevilla (España - Spain)

    Hi Luis Olias,
    Could you reconfirm the following conditions of NLB manager required?
    When you are using Network Load Balancing (NLB) Manager, you must be a member of the Administrators group on the host that you are configuring, or you must have been delegated the appropriate authority. If you are configuring a cluster or host by running
    NLB Manager from a computer that is not part of the cluster, you do not have to be a member of the Administrators group on that computer.
    Hope this helps.
    We
    are trying to better understand customer views on social support experience, so your participation in this
    interview project would be greatly appreciated if you have time.
    Thanks for helping make community forums a great place.

  • SPF is not supported SCVMM cluster problems, when repairing ?

    SPF is not supported SCVMM cluster problems, when repairing ?

    See:
    *http://forums.sdn.sap.com/thread.jspa?threadID=2056183&tstart=45#10718101

  • Access NLB cluster from outside

    I crated nlb cluster using 3 servers, one is used to create cluster and other 2 for hosts. I assigned 192.168.1.2 for cluster ip. Every server has two nic and one of nic connected to public ip. My worry is how can I access cluster from out side? As mentioned
    in
    this question I asked my server provider enable NAT and this is their reply. "We dont offer any NAT solutions but you can easy set up one of your servers to perform this."
    can anyone tell me how can I do this?
    chapneox

    Hi chapneox,
    Could you clarify your question, I am not quite understand your description “can I access cluster from out side”. You can use the “Internet” IP address as your NLB virtual
    IP address. But if your cluster after NAT or firewall you must map the NLB port from the NAT or firewall device.
    More information:
    Establish Communication in NLB Clusters
    http://technet.microsoft.com/en-us/library/bb687525.aspx
    I’m glad to be of help to you!
    We
    are trying to better understand customer views on social support experience, so your participation in this
    interview project would be greatly appreciated if you have time.
    Thanks for helping make community forums a great place.

  • NLB converging problem VM1 on 2008R2-host VM2 on 2012R2-host

    Hello
    We are in the process of uppgraring our Hyper-V enviroment from 2008 R2 to 2012 R2.
    We migrate the VM's from 2008 to 2012 on volume at a time and now I have run into a problem with NLB between
    two VM's, VM1 is on 2008-host and VM2 is migrated to 2012-host. Both VM's run OS 2008 R2.
    The migration steps we use is:
    Stop the VM on 2008-host
    Copy VHD to 2012 Cluster storage
    Create new VM on 2012-host (from Failover Cluster Manager)
    On VM2 I added a second NIC and set the same IP as the original.
    I have Enabled MAC adress Spoofing and tried setting a static MAC on the NLB NIC but without any luck.
    But the VM is stuck in status Converging.
    I have read most threads I can find on this issue and tried most suggested solutions.
    My question now is if there are any problem in running NLB on VM's when they are on different Hyper-V versions (2008R2/2012R2, both is Datacenter Edition) 
    /Anders

    Hi,
    Which NLB mode you are using? If you are using the IGMP mode you need to configure your switch to allow the NLG data through.
    The similar thread:
    about-nlb-multicast-mode-and-igmp-multicast-mode
    http://social.technet.microsoft.com/Forums/windowsserver/en-US/db4a53c7-bbc4-49c7-a0bb-97658259ef3f/about-nlb-multicast-mode-and-igmp-multicast-mode
    The related KB:
    http://technet.microsoft.com/en-us/library/cc731616.aspx
    Hope this helps.
    We
    are trying to better understand customer views on social support experience, so your participation in this
    interview project would be greatly appreciated if you have time.
    Thanks for helping make community forums a great place.

  • Leopard - QMaster and Virtual Cluster problem

    Hi guys,
    Up until yesterday I had my MacPro Octo running under 10.4 where I did succesfully set up a Virtual Cluster using 4 instances for Compressor. It worked as a charm and my MacPro was doing it's job perfectly.
    Today, I made a bootable backup of my 10.4 install and installed 10.5 using the erase and install options ( clean install ). I installed all my software again and tryed setting up my Virtual Cluster again, using the same settings I had under 10.4. Sadly I can't seem to get it working.
    In the QMaster Preferences pane, I have the QuickCluster with Services option checked. For the compressor entry in the Services I have the Share Option checked and used 4 isntances for the selected service. The Quickcluster received a descent name and the option to include unmanaged services from other computers is checked.
    I have the default options set in the Advanced tab, ( nothing checked except log service activity to log file and Show QMaster service status in the Menu Bar). I then started the Cluster using the Start Sharing button.
    Now I open u Compressor and add a file to process ( QT encode to iPod ), but when I hit the Submit button, my Virtual Cluster doesn't show up in the Cluster Dropdown. If I now leave the Compressor GUI open for 5 minutes, it will eventually show up in the list, and I can pick it. Sadly, picking it from the list at this point and hitting the Submit button makes Compressor Hang.
    I checked my logs, but the only thing concerning Compressor I could find is this :
    4/12/07 20:12:35 Compressor[242] Could not find image named 'MPEG1-Output'.
    4/12/07 20:12:35 Compressor[242] Could not find image named 'MPEG1-Output'.
    4/12/07 20:12:35 Compressor[242] Could not find image named 'MPEG1-Output'.
    4/12/07 20:12:41 Batch Monitor[190] * CDOClient::connect2: CException [NSException raised by 'NSPortTimeoutException', reason = '[NSPortCoder sendBeforeTime:sendReplyPort:] timed out (218488391.647220 218488361.647369) 1'], server [tcp://10.0.1.199:49167]
    4/12/07 20:12:41 Batch Monitor[190] exception caught in -[ClusterStatus getNewStatusFromController:withOptions:withQueryList:]: NSException raised by 'NSPortTimeoutException', reason = '[NSPortCoder sendBeforeTime:sendReplyPort:] timed out (218488391.647220 218488361.647369) 1'
    4/12/07 20:17:55 Batch Monitor[190] * CDOClient::connect2: CException [NSException raised by 'NSPortTimeoutException', reason = '[NSPortCoder sendBeforeTime:sendReplyPort:] timed out (218488705.075513 218488675.075652) 1'], server [tcp://10.0.1.199:49167]
    I tried Stopping and then Restart Sharing and I noticed the follwoing entries in my log :
    4/12/07 20:23:26 compressord[210] can't refresh cache from file "/Library/Application Support/Apple Qmaster/qmasterservices.plist"
    4/12/07 20:23:26 compressord[211] can't refresh cache from file "/Library/Application Support/Apple Qmaster/qmasterservices.plist"
    4/12/07 20:23:26 compressord[213] can't refresh cache from file "/Library/Application Support/Apple Qmaster/qmasterservices.plist"
    4/12/07 20:23:26 qmasterca[269] can't refresh cache from file "/Library/Application Support/Apple Qmaster/qmasterservices.plist"
    4/12/07 20:23:26 qmasterqd[199] can't refresh cache from file "/Library/Application Support/Apple Qmaster/qmasterservices.plist"
    4/12/07 20:23:27 QmasterStatusMenu[178] * CDOClient::connect2: CException [NSException raised by 'NSPortTimeoutException', reason = '[NSPortCoder sendBeforeTime:sendReplyPort:] timed out (218489009.603992 218489007.604126) 1'], server [tcp://10.0.1.199:49407]
    4/12/07 20:23:27 Batch Monitor[190] * CDOClient::connect2: CException [NSException raised by 'NSPortTimeoutException', reason = '[NSPortCoder sendBeforeTime:sendReplyPort:] timed out (218489037.738080 218489007.738169) 1'], server [tcp://10.0.1.199:49407]
    4/12/07 20:23:27 Batch Monitor[190] exception caught in -[ClusterStatus getNewStatusFromController:withOptions:withQueryList:]: NSException raised by 'NSPortTimeoutException', reason = '[NSPortCoder sendBeforeTime:sendReplyPort:] timed out (218489037.738080 218489007.738169) 1'
    Batch Monitor immediately detects the cluster being active again, but Compressor doesnt, leaving me only This Computer available in the Cluster drop down when submitting a batch.
    In my Activity Monitor, I notice that CompressorTranscoder is not responing ( the 4 CompressorTranscoderX processes are fine ) and the ContentAgent proces isn't responding neither.
    Does anyone have any clue on what I could check next or how I could fix my problems ?
    Thanks a lot in advance,
    Stefaan

    Bah, this is crazy, today it doesn't work anymore. Yesterday my cluster was showing up in the Dropdown window, and I could submit a batch to it, and it got processed over my virtual cluster.
    Today, after finishing the second part of my movie, I tried it again. I didn't change anything to my settings, my machine hasn't even rebooted (just recovered from sleep mode) and my cluster isn't showing up at all anymore. Even the Qmaster menu doesn't show it
    Guess, I'll have to wait out until it appears again, or try a few things out

  • August Patch Cluster Problems

    Has anyone had the following issue after installing the latest Patch Cluster?
    After a reboot I get
    couldn't set locale correctly
    To correct this I have to edit /etc/default/init
    and remove
    LC_COLLATE=en_GB.ISO8859-1
    LC_CTYPE=en_GB.ISO8859-1
    LC_MESSAGES=C
    LC_MONETARY=en_GB.ISO8859-1
    LC_NUMERIC=en_GB.ISO8859-1
    LC_TIME=en_GB.ISO8859-1
    If I then create a flash archive and use this flash archive the jumpstart process then puts the locale info back and the problem appears again.
    It's not critical as I don't need to be on the latest Patch Cluster but would wondered if I'm the only one having issues?

    If you open the directory in CDE's file manager, right click on the zipped file and select unzip. The cluster will be unzipped to a directory structure called x86_recommended or something of the sort. Change to that directory to run the patch cluster install script. The patch script is looking for that directory structure.
    Lee

  • Got request timed out when ping network load balancing (NLB) cluster ip

    I want to set up NLB on windows 2008 R2 64
    bit  
    Server1 : private ip 192.168.1.100 ; public ip 172.1.1.1
    Server2 : private ip 192.168.1.101 ; public ip 172.1.1.2
    private ip 100/101 can be communicated with each other, but cannot reach from other servers, even with same subnet.
    Cluster ip:  172.1.1.3
    After created NLB with Unicast, I can ping the cluster ip from these 2 servers, but when I enter the cluster ip in browser, got http 404 not found error;  and cannot ping the cluster ip from other servers.
    Awen

    Hi,
    In your figure, the cluster IP is 172.18.5.22. Does there have some mistype in your post? Another possible is you set the incorrect IP address binding with the IIS service.
    More information:
    Add and Remove IP Address Bindings
    http://technet.microsoft.com/en-us/library/bb734869.aspx
    Hope this helps.
    We
    are trying to better understand customer views on social support experience, so your participation in this
    interview project would be greatly appreciated if you have time.
    Thanks for helping make community forums a great place.

  • NVGRE Gateway Cluster Problem

    Hello
    We have following setup:
    Management Hyper-V hosts running WAP, SPF and SCVMM 2012 R2 components
    Gateway Hyper-V host: single node gateway hyper-v host, configured as a single node cluster to be able to join extra hardware in the future
    this Hyper-V host runs 2 Windows Server Gateway VMs,configured as a failover cluster.
    The following script is used to deploy these windows server gateway VMs as a high available NVGRE gateway service:
    http://www.hyper-v.nu/archives/mscholman/2015/01/hyper-v-nvgre-gateway-toolkit/
    two tenant Hyper-V hosts running VMs which are using network virtualization
    The setup is completed successfully and when creating a tenant in WAP and creating VM network for this tenant using NAT, the VMs of this tenant are accessible and can access Internet using the HA Gateway cluster.
    The Gateway Hyper-V host and NVGRE Gateway VMs are running in a DMZ zone, in a DMZ Active Directory Domain.
    Management and Tenant Hyper-V hosts, incl all Management VMs, are running in a dedicated internal Active Directory domain.
    Problems start when we failover the Windows Server Gateway service to the other VM node of the NVGRE Gateway cluster. We see in the lookup records on the Gateway Hyper-V host that the MAC address of the gateway record for tenants is updated with the new
    MAC address of the VM node running the gateway service.
    But in SCVMM, apparently, this record is not updated. The tenant hosts still use the old MAC address of the other Gateway VM node.
    When looking in the SCVMM database, we can also see that in the VMNetworkGateway table that the record representing the gateway of the tenant, still points to the MAC address of the PA network adapter of the other node of the NVGRE Gateway cluster, not to the
    new node on which the gateway service is running after initiating a failover.
    On the tenant hyper-v hosts, the lookup record for the gateway also points to the old node as well.
    When manually changing the record in the VMNetworkGateway table to the new MAC address, and refreshing the tenant hosts in SCVMM, all starts working again and the tenant VMs can access the gateway again.
    Anybody else facing this issue? Or is running a NVGRE Gateway cluster on a single Hyper-V node not supported?
    To be complete, the deployed VMs running the gateway service are not configured as HA VMs.
    Regards
    Stijn

    If i understand your post correctly you have a single Hyper-V Host running 2 GW VM's. I think the problem is that when you deploy a HA VM Gateway Cluster it wants to create a Cluster Resource (PA IP Address) on the Hyper-V host as well. So when you run 2
    hyper-v hosts and 2 gw vm's and you move the active role to another host it will move the Provider Address to the other Hyper-V host as well. I believe this is by design. You should ask yourself also the question why running 2 vm's in a cluster on the same
    node ;-)
    I would recommend to use 2 node Hyper-V Host Cluster (This is needed for the HA PA Address, And not necessary for your GW VM's )
    Then run the deployment toolkit again. Now when that's done again, take a close look on how the Active node on the Hyper-V host has the corresponding PA assiogned on that Hyper-V host. Then do a failover, refresh the cluster manager and take notice
    of the PA address that has moved along to the other Hyper-V host that is the active one. It is diffuclt to explain, in a couple of sentences but i hope you have the opportunity to build the 2nd Hyper-V host aswell and create a cluste.
    Side note: if you want to keep the excising VM Gateway cluster. remove all gateways from VM Networks and remove the Gateway service from VMM. Then provision the second Hyper-V Host, Configure Cluster, Live migrate 1 GW VM node to it. Reconfigure
    Shared VHDX for quorum and csv and  then add back the network service again. Don't try to leave it as a network service in VMM and move the VM to another node. It will not work when failover.
    Best regards, Mark Scholman. Please remember to click “Mark as Answer” on the post that helps you, and to click “Unmark as Answer” if a marked post does not actually answer your question. This can be beneficial to other community members reading the thread.

  • Cluster Problems??

    Hi All,
    Need some help we have a SAP 4.6C install on a Microsoft cluster with a MSQL database one node in the
    Cluster is corrupt and needs to be rebuilt my question to you all is can one node of the cluster be built
    Or will both nodes have to be rebuilt.
    If so where can I find the documentation to do this can it result in any other problems.
    Thanks
    John

    Hello - The nature of MSCS is failover. Thus one node failure = one node recovery. MSCS documentation would suffice here.
    Regards.

Maybe you are looking for