Paused on services : antispam

Hi,
Quick question here, but would need fast response as the client is not receiving mails anymore.
We had a power failure, then had to reboot everything when power came back.
I've restarted the Spam Blocker when all the servers were up and ready, as it is using Active Directory.
System seems to be working properly, except the fact that when I do a status in CLI I get the following :
Status as of:                  Tue Aug 02 10:52:16 2011 EDT
Up since:                      Tue Aug 02 10:03:15 2011 EDT (49m 1s)
Last counter reset:            Never
System status:                 Paused on services: antispam
Oldest Message:                1 hour 17 mins 37 secs
Feature - Bounce Verification: Perpetual
Feature - IronPort Anti-Spam:  212 days
Feature - Incoming Mail Handling: Perpetual
Feature - Sophos Anti-Virus:   212 days
I've read somewhere that I might be caused by an invalid feature key, but as you may see, everything is up-to-date and.
I'm trying to find the right command to force the device to change from Paused to active in the command line, but haven't found anything yet.
Can someone help me?
Thank you!
Mathieu

Hello Mathieu,
just a quick follow-up and a side note for other customers that may encounter the same issue.
An immediate fix for this would also be to run an upgrade on the appliance as this will also deploy a new Anti-Spam engine during the upgrade. Of course this only works when the appliance is not yet on the latest AsyncOS release (so everything prior 7.1.3). For customers running the latest release and running into this the only way forward would be to call the support hotline to get this fixed via a remote access.
Regarding a root cause analysis and to provide some technical background here:
The Anti-Spam module (as well as Anti-Virus) is by default checking every five minutes for an update. The update is then pulled and applied (= written to disk). If the appliance encounters an unexpected shutdown (e.g. power loss) it *may* happen that after the reboot the Anti-Spam engine and rules are corrupted and Anti-Spam is therefore not operational. This can be identified with CLI command antispamstatus, that will show N/A then. As Anti-Spam updates are more frequent available than Anti-Virus updates, the chance that Anti-Spam is affected by this is higher than Anti-Virus being affected.
Thanks and regards,
Martin

Similar Messages

  • C160 anti-spam service paused?

      I received an alert from our C160 and logged in to find this message in the Status:
    System Status:
    Paused on services: antispam
       I checked the Service under Security Services > Ironport Anti-spam and it's checked as enabled. What would cause this and how to I "un-pause" it?

    I would recommend asking this question in the Email security section as it deals with an email security appliance.
    Christian Rahl
    Customer Support Engineer
    Cisco Web Content Security Appliance
    Cisco Technical Assistance Center RTP

  • Work queue paused and CASE update fails

      We have a C160 appliance that whose Work Queue is growing. The Status shows
    System Status:  Paused on services: antispam
    How can I unpause this?  Also, when I grep the Updater logs, I see this which says at the end that the case update failed:
    Tue May 28 12:19:33 2013 Info: Starting scheduled update
    Tue May 28 12:19:33 2013 Info: Scheduled next update to occur at Tue May 28 12:24:33 2013
    Tue May 28 12:19:41 2013 Info: case started downloading files
    Tue May 28 12:19:41 2013 Info: case waiting on download lock
    Tue May 28 12:19:41 2013 Info: case acquired download lock
    Tue May 28 12:19:41 2013 Info: case beginning download of remote file "http://updates.ironport.com/case/1.0/case_rules/default/1369750263859399"
    Tue May 28 12:19:42 2013 Info: case released download lock
    Tue May 28 12:19:42 2013 Info: case successfully downloaded file "case/1.0/case_rules/default/1369750263859399"
    Tue May 28 12:19:42 2013 Info: case waiting on download lock
    Tue May 28 12:19:42 2013 Info: case acquired download lock
    Tue May 28 12:19:42 2013 Info: case beginning download of remote file "http://updates.ironport.com/case/1.0/dfa_updates/default/1369757302745197"
    Tue May 28 12:19:42 2013 Info: case released download lock
    Tue May 28 12:19:42 2013 Info: case successfully downloaded file "case/1.0/dfa_updates/default/1369757302745197"
    Tue May 28 12:19:42 2013 Info: case waiting on download lock
    Tue May 28 12:19:42 2013 Info: case acquired download lock
    Tue May 28 12:19:42 2013 Info: case beginning download of remote file "http://updates.ironport.com/case/1.0/toc_rules/default/1369755790836242"
    Tue May 28 12:19:42 2013 Info: case released download lock
    Tue May 28 12:19:42 2013 Info: case successfully downloaded file "case/1.0/toc_rules/default/1369755790836242"
    Tue May 28 12:19:42 2013 Info: case waiting on download lock
    Tue May 28 12:19:42 2013 Info: case acquired download lock
    Tue May 28 12:19:42 2013 Info: case beginning download of remote file "http://updates.ironport.com/case/1.0/pkg_version/default/1369757350776856"
    Tue May 28 12:19:42 2013 Info: case released download lock
    Tue May 28 12:19:42 2013 Info: case successfully downloaded file "case/1.0/pkg_version/default/1369757350776856"
    Tue May 28 12:19:42 2013 Info: case waiting on download lock
    Tue May 28 12:19:42 2013 Info: case acquired download lock
    Tue May 28 12:19:42 2013 Info: case beginning download of remote file "http://updates.ironport.com/case/1.0/uridb_updates/default/1369756889979770"
    Tue May 28 12:19:43 2013 Info: case released download lock
    Tue May 28 12:19:43 2013 Info: case successfully downloaded file "case/1.0/uridb_updates/default/1369756889979770"
    Tue May 28 12:19:43 2013 Info: case waiting on download lock
    Tue May 28 12:19:43 2013 Info: case acquired download lock
    Tue May 28 12:19:43 2013 Info: case beginning download of remote file "http://updates.ironport.com/case/1.0/dfa/default/1369757354605748"
    Tue May 28 12:19:43 2013 Info: case released download lock
    Tue May 28 12:19:43 2013 Info: case successfully downloaded file "case/1.0/dfa/default/1369757354605748"
    Tue May 28 12:19:43 2013 Info: case started applying files
    Tue May 28 12:19:45 2013 Warning: case update failed

       One of the other threads I found on this said that hard booting the appliance could cause corruption of the work queue, is that an issue?
      I had to modify the command to
    CLI> antispamupdate ironport force
      to get it to work, but that looks like that did the trick for the case update at least.
    EDIT:   That looks like it fixed the paued work queue as well and the queue is going down.  Thanks!

  • CRM Enhanced SLA(Service Level Agreement) not Pausing

    I am Using CRM 2015 and Make 3 SLA of type Enhanced and using SLA KPI
    Resolve by KPI Instance
    CRM built-in Configuration of this Instance is as
    1SLA:    If Priority High 2 Hours
    2 SLA:   If Priority Nomral 4 Hours
    3 SLA :  If Priorty Low 6 Hours
    Problem if i want to pause any SLA Where I Pause the timer...
    in Status of Case there is not Status of Paused..
    Muhammad Sohail

    Hi Sohail,
    Have you selected the "On Hold Status" for which the SLA for the cases are to be paused in service configuration settings.
    Regards, Abhishek Bakshi If you find this post helpful then please Vote as Helpful and Mark As Answer. Check my blog on https://mydynamicscrmblog.wordpress.com/

  • Problem rename sharepoint 2010 search service application admin database

    Hi all,
    i have a problem that hopefully someone has an answer to.  i am not too familiar with sharepoint so please excuse my ignorance.
    we have sharepoint 2010 on a windows 2008r2 server.  everything seems to work fine.  but as you know, the default database names are horrendous.  i have managed to rename all of them, except for the "search service application" admin
    database.
    the default is: Search_Service_Application_DB_<guid>
    the other 2 databases (crawl and property) were renamed without a problem.
    we are following the article from technet on how to rename the search service admin db (http://technet.microsoft.com/en-nz/library/ff851878%28en-us%29.aspx).  it says to enter the following command:
    $searchapp | Set-SPEnterpriseSearchServiceApplication -DatabaseName "new database name" -DatabaseServer "dbserver"
    however, i get an error about identity being null.  no big deal, i add the -Identity switch and the name of my search service application.  but the real problem comes the error it throws:
    Set-SPEnterpriseSearchServiceApplication : The requested database move was aborted as the associated search application is not paused.
    At line:1 char:54
    + $searchapp | Set-SPEnterpriseSearchServiceApplication <<<<  -Identity "Search Service Application" -DatabaseName "SharePoint2010_Search_Service_Application_DB" -DatabaseServer "dbserver"
        + CategoryInfo          : InvalidData: (Microsoft.Offic...viceApplication:
       SetSearchServiceApplication) [Set-SPEnterpriseSearchServiceApplication], I
      nvalidOperationException
        + FullyQualifiedErrorId : Microsoft.Office.Server.Search.Cmdlet.SetSearchS
       erviceApplication
    when i look at the crawling content sources, i see "Local SharePoint Sites" and it's status is Idle.  i even looked at this article on how to pause the search to no avail.  (http://technet.microsoft.com/en-us/library/ee808864.aspx)
    does someone know how i can rename my Search Service Applcation Admin database properly?  or at least "pause" that service so i can rename it?
    thank you all in advanced

    If you want to have no guids for your search admin db, i recommend you check out this script :)
    just delete your search service application (assuming you have just started)
    Alpesh Nakar's Blog
    Alpesh
    Just SharePoint Just SharePoint Updates
    SharePoint Conference Southeast Asia
    Oct 26-27 2010 Contributing Author
    SharePoint 2010 Unleashed
    MCTS: SharePoint 2010 Configuration
    MCITP: SharePoint 2010 Administrator

  • Enumeration of services in services.msc console issue

    Hi, I was given a task to allow non-admin users to restart MSSQLSERVER service on
    Windows Server 2003 R2 computer which was old core banking database server now used only for finding some archives in SQL databases. I have done the following steps:
    Granting permission to start/stop/pause MSSQLSERVER service and dependent SQLSERVERAGENT service to these users using GPO created from old core banking database server on Domain Controller and linked to an OU containing that server 
    Creating custom .msc console with services snap-in targeting old core banking database server
    Deploying that .msc console to these user's desktop using Group Policy Preferences
    Granting authenticated users right to enumerate services on server remotely using:
    SC sdset scmanager D:(A;;CCLCRPRC;;;AU)(A;;CCLCRPRC;;;IU)(A;;CCLCRPRC;;;SU) (A;;CCLCRPWPRC;;;SY)(A;;KA;;;BA)S:(AU;FA;KA;;;WD)(AU;OIIOFA;GA;;;WD)
    When I tested this I noticed that when non-admin user double clicked .msc shorcut from their desktop, services on old core banking database server are listed but
    these two SQL services are not there (by the way I noticed that some other system services are not listed, i.e. print spooler). If user logs on locally on server and opens services.mcs console all services are there and user restarts MSSQLSERVER
    service and thus SQLSERVERAGENT service successfully.
    What is going on here? I do not want users to log on to server using RDP or interactively since only they need is to restart SQL services.
    Thanks in advance!
    PS: I checked the number of listed services using PowerShell, non-admin user lists only 46 and domain admin user lists 109 services. This is weird! ((Get-Service -ComputerName database_server).Count) 

    Hi,
    Based on your description, it seems that standard domain users don’t have enough permissions to open these services. Here, I want to confirm how we granted permissions for
    users to open these services. Besides, if we try opening these services as standard users, will we get any error message?
    Regarding how to grant users rights to manage services, the following article can be referred to as reference.
    How to Grant Users Rights to Manage Services (Start, Stop, Etc.)
    http://social.technet.microsoft.com/wiki/contents/articles/5752.how-to-grant-users-rights-to-manage-services-start-stop-etc.aspx
    Hope it helps.
    TechNet Subscriber Support
    If you are TechNet Subscription user and have any feedback on our support quality, please send your feedback here.
    Best regards,
    Frank Shen

  • Unplanned failover in a Hyper-V cluster vs unplanned failover in an ordinary (not Hyper-V) cluster

    Hello!
    Please excuse me if you think my question is silly, but before deploying something  in a production environment I'd like to dot the i's  and cross the t's.
    1) Suppose there's a two node cluster with a Hyper-V role that hosts a number of highly available VM.
    If the both cluster nodes are up and running an administrator can initiate a planned failover wich will transfer all VMs
    including their system state to another node without downtime.
    In case any cluster node goes down unexpectedly the unplanned failover fires up that will transfer all VMs to another node
    WITHOUT their system state. As far as I understand this can lead to some data loss.
    http://itknowledgeexchange.techtarget.com/itanswers/how-does-live-migration-differ-from-vm-failover/
    If, for example, I have an Exchange vm and it would be transfered to the second node during unplanned failover in the Hyper-V cluster I will lose some data by design.
    2) Suppose there's a two node cluster with the Exchange clustered installation: in case one node crashes the other takes over without any data loss.
    Conclusion: it's more disaster resilient to implement some server role in an "ordinary" cluster that deploy it inside a vm in the Hyper-V cluster.
    Is it correct?
    Thank you in advance,
    Michael

    "And if this "anything in memory and any active threads" is so large that can take up to 13m15s to transfer during Live Migration it will be lost."
    First, that 13m15s required to live migrate all your VMs is not the time it takes to move individual VMs.  By default, Hyper-V is set to move a maximum of 2 VMs at a time.  You can change that, but it would be foolish to increase that value if
    all you have is a single 1GE network.  The other VMs will be queued.
    Secondly, you are getting that amount of time confused with what is actually happening.  Think of a single VM.  Let's even assume that it has so much memory and is so active that it takes 13 minutes to live migrate.  (Highly unlikely, even
    on a 1 GE NIC).  During that 13 minutes the VM takes to live migrate, the VM continues to perform normally.  In fact, if something happens in the middle of the LM, causing the LM to fail, absolutely nothing is lost because the VM is still operating
    on the original host.
    Now let's look at what happens when the host on which that VM is running fails, causing a restart of the VM on another node of the cluster.  The VM is doing its work reading and writing to its data files.  At that instance in time when the host
    fails, the VM may have some unwritten data buffers in memory.  Since the host fails, the VM crashes, losing whatever it had in memory at the instant in time.  It is not going to lose any 13 minutes of data.  In fact, if you have an application
    that is processing data at this volume, you most likely have something like SQL running.  When the VM goes down, the cluster will automatically restart the VM on another node of the cluster.  SQL will automatically replay transaction logs to recover
    to the best of its ability.
    Is there a possibility of data loss?  Yes, a very tiny possibility for a very small amount.  Is there a possibility of data corruption?  Yes, a very, very tiny possibility, just like with a physical machine.
    The amount of time required for a live migration is meaningless when it comes to potential data loss of that VM.  The potential data loss is pretty much the same as if you had it running on a physical machine, the machine crashed, and then restarted.
    "clustered applicationsDO NOT STOP working during unplanned failover (so there is no recovery time), "
    Not exactly true.  Let's use SQL as an example again.  When SQL is instsalled in a cluster, you install at a minimum one instance, but you can have multiple instances.  When the node on which the active instance is running fails, there is
    a brief pause in service while the instance starts on the other node.  Depending on transactions outstanding, last write, etc., it will take a little bit of time for the SQL instance to be ready to start handling requests on the new node.
    Yes, there is a definite difference between restarting the entire VM (just the VM is clustered) and clustering the application.  Recovery time is about the biggest issue.  As you have noted, restarting a VM, i.e. rebooting it, takes time. 
    And because it takes a longer period of time, there is a good chance that clients will be unable to access the resource for a period of time, maybe as much as 1-5 minutes depending upon a lot of different factors, whereas with a clustered application, the
    clients may be unable to access for up to a minute or so.
    However, the amount of data potentially lost is quite dependent upon the application.  SQL is designed to recover nicely in either environment, and it is likely not to lose any data.  Sequential writing applications will be dependent upon things
    like disk cache held in memory - large caches means higher probability of losing data.  No disk cache means there is not likely to be any loss of data.
    .:|:.:|:. tim

  • Choppy playback in CC, suddenly

    Yes, yet another mysterious choppy, jerky playback out-of-the-blue issue.
    Premiere Pro CC 7.01, Mac, was working relatively fine for a few weeks on a couple projects. Now, on new project, exact same setup and media as before, I get playback that is fine, then after a few moments or a minute, gets choppy, as my CPU becomes increasingly pegged, as if GPU acceleration becomes disabled with time. Cannot edit when it is like that. I give it a rest for a few moments, can play ok for a minute, then CPU and choppiness creaps up again.
    Premiere Pro CC 7.0.1
    Mac OSx 10.8.2
    Nikon D800 and D7000 .mov files, 1920-x1080 23.976fps, High Quality
    Sequence: DSLR 1920x1080x23.976fps
    Project: Mercury OpenCL GPU (via AMD Radeon 6770m in Macbook Pro.) No change if switch to Software Only.
    Premier Pref/Memory: either Optimize for Performance or Memory, and restart. No effect.
    Playback Resolution: 1/2. Always worked before.
    No other software running. (Time Machine enabled, not backing up. Crashplan paused or service unloaded did not help.)
    When CPU pegs, it is kernal_task and Premiere at top of All Processes/%CPU table in Activity Monitor.
    Macbook Pro, late 2011, quad-core 2.5 GHz i7, 16GB memory. Apogee Duet2 audio output.
    Source files and cache files and preview files on Pegaus Raid on Thunderbolt. NEC monitor on Thunderbolt. Premiere on internal drive.
    No complex layers, effects. Just straight video and 2-4 tracks of audio. So little to no Previews rendered.  Timeline bar is yellow, which always played fine (via OpenCL.) Rendering Previews of a few minute section does not help.
    Happens whether doing multicam sequence or simple cuts.
    Cleaned media cache (Premiere/Prefs/Media/clean cache.) No Previews to clean out.
    Graphics Switching disabled, so always on Radeon.
    Only Changes since it was working -
    CC app update (i.e. the menu bar thing, but I usually Quit that anyway.)
    Indesign CC, Extension Manager update (but never launched.)
    More memory allocated to Crashplan (but if I pause or unload that service no effect. And memory does not seem to be an issue looking at Activity Monitor.)
    Checked Files on and rebuilt Thunderbolt raid directory (with DiskWarrior, just as general maintenance.)
    Apple Timecapsule firmware updated to 7.6.4.
    Maybe Java updated to v7 update 25 during that time.
    Thanks,
    Vincent

    Solved. (Possibly only temporarily - I will report back.)
    Unfortunately I was in panic mode so I was not using scientific method to fix my problem – more of a shotgun method.
    Major variables here so I’ll try to recap.
    #1) I started messing round with Lumetri “SpeedLooks” LUTS for the first time directly in Premiere. I have been using the lumetri looks that are in premiere now – but I have never gone and grabbed a lut from somewhere else – which I did when I imported the SpeedLook luts from the Speedgrade program folder. This was the beginning of the end – whatever happened started slowing everything down and started giving me choppy codec/frame rate issue feeling problems ever forward – even when I would play stripped down clips directly from my camera on the source menu.
    #2) I started rolling my nvidia driver back and forward while troubleshooting – I ended up in the forward most current position, but who knows.
    #3) As mentioned I uninstalled and reinstalled Adobe Cloud and Premiere in order to get to the newest version. Adobe Cloud was lying to me about my apps being up to date. Don’t believe the lies. Terrible lies. Will this keep happening? Is there even support for the Adobe Creative Cloud app itself? On the latest and greatest (ahem) version of both for now.
    #4) I was constantly creating a new project for troubleshooting but this time I decided to save it in a completely new folder way out on my root nowhere near where my video projects have been for the past 9 months. Once I relocated the project and the source files to a new distant location I dragged some footage on the timeline and it worked! Then I loaded it with effects (no LUTS, not that brave) and it worked!  I was back to my old self as though my home office was the TARDIS.
    So… If it is a weird corrupt file or old cach preview files issue, will these bad vibe files start building up again in this new location and one day out of the blue I’ll suddenly be editing in 1979 on a TRS-80 again? Why did this start happening to my projects to begin with? Did the SpeedLook LUTS create the possibly bad preview/cache files to begin with? Did this happen because I was messing with SpeedLook LUTS inside premiere, with Canon 5D footage on an unbeknownst to me (or Adobe Cloud) old (7.0) version of Premiere thinking I was on the latest version? Dare I try LUTS again now that I'm finally stable?
    I’m a paranoid gunshy mess over this.
    When it finally worked I literally watched a few clips for a coupla minutes and had to run. I’ll put it through its paces tonight and see if we’re finally back to the future. (But I’ll probably hold off on LUTs until I get some insight/feedback – because I can’t go through this again – I’ll just have to make my contrasty blue and teal magic in 3-Way CoCo until then.

  • Red X Battery Issue Prevalent After Reset

    I have the dreaded red X on my battery icon when attempting to charge, ive already run a factory reset (and lost stuff because apparently "backup paused, cloud service unable to connect" but thats beside the point), and yet this issue is still there, along with the battery drain issues many have stated from the kitkat update. to make matters worse, my phone wont connect to my laptop through usb, and i feel the red x issue and this are connected. Does anyone know of something i can do? this battery is less than a year old, and the usb cable has worked with other devices.
    Ive pulled the battery, checked the cable, hard reset, tried charging in safe mode, and still nothing.
    Does anyone know what i could do to fix these problems?

    Thank you for your response. My phone has suffered no physical/water damage of any kind that I am aware of, this appears to be an issue linked mainly to the kit kat update. My little brother is not having this problem, yet we both have the same phone, however his was replaced recently due to water damage so maybe that has something to do with it. A new problem has arisen with my phone now, I cant accept downloads through texts; such as ringtones or pictures. this wasnt an issue before the reset...
    Anyway, what is the general cost of a replacement when under warranty because Ive still got a few months left. Seeing as how there is no physical damage and it seems to be linked to the update which I have no control over, would it be possible to have any fees reasonably waived?

  • C30/C300 performance issues

    Hello,
    I've got 2C30s + 1C300 on an ISP network and these are being used for both incoming and outgoing mails.
    Recently, we started having performances issues where the workqueue was paused several times daily(reason paused on antivirus,antispam,etc). This eventually causes the workqueue to backup like 10k-20k and the units don't process mails rapidly.
    I also noted some viruses(i.e: MyTob) being detected and was wondering whether IronPort/Sophos engine is not being able to scan the messages properly, thus resulting in this huge performance issue.
    We also get lots of sophos timeouts daily. it's set to 120 seconds.
    RAM comes up to 60%, even if traffic is not that huge.
    Has anyone experienced a similar problem?
    Thanks,
    Vinesh

    Hi,
    Here's a sample of the mail logs.
    I did increase/decrease the antivirus timeouts, but no changes.
    It seems that it has difficulty scanning the files.
    Thu Nov 29 15:43:39 2007 Info: Start MID 233665168 ICID 702663276
    Thu Nov 29 15:43:39 2007 Info: MID 233665168 ICID 702663276 From:
    Thu Nov 29 15:43:39 2007 Info: MID 233665168 ICID 702663276 RID 0 To:
    Thu Nov 29 15:43:47 2007 Info: MID 233665168 Message-ID '<6d9jas>'
    Thu Nov 29 15:43:47 2007 Info: MID 233665168 Subject 'Error'
    Thu Nov 29 15:43:47 2007 Info: MID 233665168 ready 64728 bytes from
    Thu Nov 29 15:44:49 2007 Warning: MID 233665168: scanning error (name=u'doc.scr', type=executable/exe): viewer bailed out
    Thu Nov 29 15:44:49 2007 Info: MID 233665168 matched all recipients for per-recipient policy DEFAULT in the outbound table
    Thu Nov 29 15:45:03 2007 Info: MID 233665168 interim AV verdict using Sophos VIRAL
    Thu Nov 29 15:45:03 2007 Info: MID 233665168 antivirus positive 'W32/Mytob-C'
    Thu Nov 29 15:45:03 2007 Info: Message aborted MID 233665168 Dropped by antivirus
    Thu Nov 29 15:45:03 2007 Info: Message finished MID 233665168 done

  • Is it possible to undeploy a support package?

    Is it possible to undeploy a support package you applied using jspm -> single_support_packages ?

    Thank you Effan but can you give me more detail as to how to do it ?
    I was on lm service sp2 and I applied lm service sp6. Now I want to now go back to lm service sp2.
    This is what I have in my RemoteGui.bat
    @echo ===============================================
    @echo  Starting SDM remote gui
    @echo.
    @echo  To connect to the SDM Server
    @echo.
    @echo  Use Your password and port 50018
    @echo ===============================================
    @set sdm_gui_options=-Dsun.java2d.noddraw=true -Duser.language=en
    @call "/usr/sap/ZM1/DVEBMGS00/SDM/program\sdm_prep_com.bat"
    %sdm_com% remotegui "sdmhome=/usr/sap/ZM1/DVEBMGS00/SDM/program"
    @pause
    lm service has a bunch of components like
    sap.com/tc/smd/agent/application/checks
    sap.com/tc/smd/agent/application/connectors
    sap.com/tc/smd/agent/application/database
    sap.com/tc/smd/agent/application/datacollector
    sap.com/tc/smd/agent/application/e2emai
    sap.com/tc/smd/agent/application/eem
    sap.com/tc/smd/agent/application/filesystem
    sap.com/tc/smd/agent/application/flightrecorderdumpscan
    sap.com/tc/smd/agent/application/global/conf
    sap.com/tc/smd/agent/application//global/licenseaudit
    What is the syntax to undeploy these components from sp6 back to the original sp level 2.

  • SQL Cluster unexpected failover

    So we had one of our SQL clusters unexpectedly failover recently. Second time in a few months. Two node active/passive SQL 2012 cluster running on Windows 2012 Standard.
    Here's what we could cull from the application/system logs?
    1. "
    Cluster resource 'SQLServer' of type 'SQL Server' in clustered role 'SQLServerRole' failed.
    Based on the failure policies for the resource and role, the cluster service may try to bring the resource online on this node or move the group to another node of the cluster and then restart it.  Check the resource and group state using Failover Cluster
    Manager or the Get-ClusterResource Windows PowerShell cmdlet."
    2. "
    Cluster resource 'SQLServer' (resource type 'SQL Server', DLL 'sqsrvres.dll') did not respond to a request in a timely fashion. Cluster health detection will attempt to automatically recover by terminating the Resource Hosting Subsystem (RHS) process running
    this resource. This may affect other resources hosted in the same RHS process. The resources will then be restarted. 
    The suspect resource 'SQLServer' will be marked to run in an isolated RHS process to avoid impacting multiple resources in the event that this resource failure occurs again. Please ensure services, applications, or underlying infrastructure (such as storage
    or networking) associated with the suspect resource is functioning properly."
    3. "The cluster Resource Hosting Subsystem (RHS) stopped unexpectedly. An attempt will be made to restart it. This is usually associated with recovery of a crashed or deadlocked resource.  Please determine which resource and resource DLL is causing
    the issue and verify it is functioning properly."
    4. "A timeout (30000 milliseconds) was reached while waiting for a transaction response from the MSSQLSERVER service."
    Cluster.log wasn't much more helpful on the root cause either:
    00000f28.00001c78::2014/12/04-21:25:54.662 INFO  [RES] Network Name <Cluster Name>: Netbios: Slow Operation, FinishWithReply: 0
    00000f28.00001c78::2014/12/04-21:25:54.662 INFO  [RES] Network Name:  [NN] got sync reply: 0
    00000f28.00001c78::2014/12/04-21:25:54.662 INFO  [RES] Network Name <Cluster Name>: Netbios: End of Slow Operation, state: Initialized/Idle, prevWorkState: Idle
    00000f20.00000e94::2014/12/04-21:25:55.240 INFO  [RES] SQL Server Agent <SQL Server Agent>: [sqagtres] IsAlive request.
    00000f20.00000e94::2014/12/04-21:25:55.240 INFO  [RES] SQL Server Agent <SQL Server Agent>: [sqagtres] CheckServiceAlive: returning TRUE (success)
    00001134.000001d8::2014/12/04-21:25:57.287 ERR   [RES] SQL Server <SQLServer>: [sqsrvres] Failure detected, diagnostics heartbeat is lost
    00001134.000001d8::2014/12/04-21:25:57.287 INFO  [RES] SQL Server <SQLServer>: [sqsrvres] IsAlive returns FALSE
    00001134.000001d8::2014/12/04-21:25:57.287 WARN  [RHS] Resource SQLServer IsAlive has indicated failure.
    00000880.0000161c::2014/12/04-21:25:57.303 INFO  [NM] Received request from client address HOST-XXX-SQL02.
    00000880.0000161c::2014/12/04-21:25:57.303 INFO  [RCM] HandleMonitorReply: FAILURENOTIFICATION for 'SQLServer', gen(3) result 1/0.
    00000880.000023a4::2014/12/04-21:25:57.303 INFO  [GEM] Sending 1 messages as a batched GEM message
    00000880.0000161c::2014/12/04-21:25:57.303 INFO  [RCM] Res SQLServer: Online -> ProcessingFailure( StateUnknown )
    00000880.0000161c::2014/12/04-21:25:57.303 INFO  [RCM] TransitionToState(SQLServer) Online-->ProcessingFailure.
    00000880.0000161c::2014/12/04-21:25:57.318 INFO  [RCM] rcm::RcmGroup::UpdateStateIfChanged: (SQLServerRole, Online --> Pending)
    00000880.00001db8::2014/12/04-21:25:57.334 INFO  [GEM] Sending 1 messages as a batched GEM message
    00000880.0000161c::2014/12/04-21:25:57.334 ERR   [RCM] rcm::RcmResource::HandleFailure: (SQLServer)
    00000880.00001db8::2014/12/04-21:25:57.334 INFO  [GEM] Sending 1 messages as a batched GEM message
    00000880.00000bac::2014/12/04-21:25:57.334 INFO  [RCM] ignored non-local state Pending for group SQLServerRole
    00000880.0000161c::2014/12/04-21:25:57.350 INFO  [RCM] resource SQLServer: failure count: 1, restartAction: 2 persistentState: 1.
    00000880.0000161c::2014/12/04-21:25:57.350 INFO  [RCM] Greater than restartPeriod time has elapsed since first failure of SQLServer, resetting failureTime and failureCount.
    00000880.0000161c::2014/12/04-21:25:57.350 INFO  [RCM] Will queue immediate restart (500 milliseconds) of SQLServer after terminate is complete."
    Any ideas? Anywhere we could look for more specific info? Any preventative measures we could take?
    Thanks,
    Ryan

    Hello,
    Since you are using SQL Server 2012, there is an extended events trace running on the cluster that holds all of the return values from sp_server_diagnostics, check that out (.xel) to see if there is anything in there.
    The error is pretty straight forward, there wasn't a timely response to the sp_server_diagnostics return set. Look for schedulers that are overwhelmed, SQL server paging a bunch of memory (outside OS pressure), someone pausing a service, etc.
    Is this happening during a peak traffic or load time?
    -Sean
    The views, opinions, and posts do not reflect those of my company and are solely my own. No warranty, service, or results are expressed or implied.

  • User Profile Service - User Profile Incremental Synchronization Timer job stuck at 33% Status: Pausing

    User Profile Service - User Profile Incremental Synchronization Progress: 33% Status: Pausing
    It has been almost 15 days.
    Both User Profile Service and User Profile Synchronization Service are in Started state and FIM service also starting 
    I tried clearing sharePoint config cache.
    I also restarted the sharepoint timer service.
    I tried almost everything that is on Internet but nothing helped me.
    Is there any other way to solve the issue as I was struck on production server (ASAP) 
    In synchronization serivce manager status of MOSS_DeltaImport is Inprogress from past 2 days  
    Best Regards.

    Hi,
    Please follow the steps in the link below to clear the configuration cache.
    http://blogs.msdn.com/b/jamesway/archive/2011/05/23/sharepoint-2010-clearing-the-configuration-cache.aspx
    Here is a similar thread for your reference:
    https://social.technet.microsoft.com/Forums/en-US/beaa852c-6f40-428a-b97c-20722864e045/user-profile-service-user-profile-incremental-synchronization-timer-job-stuck-at-88-status?forum=sharepointadminprevious
    Or try to clear the file system cache on all servers in the server farm on which the Windows SharePoint Services Timer service is running. Microsoft has provided a step by step procedure on clearing file system cache from the SharePoint front-end servers
    in this kb article.
    You can also see the ULS logs and check error messages.
    http://sharepointlogviewer.codeplex.com/
    Best Regards
    Dennis Guo
    TechNet Community Support

  • Why is the Server service paused?

    Trying to network my T43 laptop running Win XP, SP2, all updates current.
     Using Norton firewall, which has been adjusted so T43 can print on the desktop
    printer as well as send files to the desktop's shared folder.
    On startup the Server service is being "paused" and therefore other
    computers on local wireless network cannot get to files on this computer.  I
    have reviewed everything I can think of but am unable to determine where this
    command is really coming from.
    Can anyone offer suggestion on what to try?  (I did turn off Norton firewall
    and activated Windows firewall but had same result.)
    Following is entry from Event Viewer
    Event Type: Information
    Event Source: Service Control Manager
    Event Category: None
    Event ID: 7035
    Date:  4/2/2008
    Time:  15:33:33
    User:  XXXXXX\Me
    Computer:       XXXXXX
    Description:  The Server service was successfully sent a pause control
    In Server Properties display, the folloiwing:
    --General tab
        Service name:  lanmanserver
        Display name:  Server
        Description:   Supports file, print, and named-pipe sharing over the
    network for this computer. If this service is stopped, these functions will
    be unavailable. If this service is disabled, any services that explicitly
    depend on it will fail to start.
        Path to executable:  C:\WINDOWS\system32\svchost.exe -k netsvcs
        Startup type:  Automatic
    --Log On tab
        log on as Local System account
    --Recovery tab
        All 3 failure conditions set to Take No Action
    --Dependencies tab
        This service depends on the following system components"  <No
    Dependencies>
        The following system components depend on this service:  Computer Browser
    In other words, everything here seems to be set up as expected.  The service
    does in fact start.  Something else is stopping it.  Finding out what process
    sends the Pause command is not so easy.  Any kind of trace or debug I can
    impose on startup to see where this might be coming from?

    I have had this problem too, and I resolved it.
    Normaly network connections in your IBM / Lenovo computer is managed by third part software called IBM / Lenovo Access Connections. Service is paused because of security settings in one or more of your connections profiles who is managed by this software. To resolve it, you need to enable file and printer sharing in your location profile managed by software mentioned above.
    I have an old ThinkPad T43, so instrucions bellow is for an old IBM Access Connections.
    To resolve this, do the following:
    1) Open "IMB Access connections" ;
    2) then click on "Manage Location profiles...";
    3) in "Manage Location profiles" window choose your default connection profile (what you are using everyday);
    4) double click on it (or click on button "Edit..." bellow);
    5) new window appears; in this window there is many tabs;
    6) choose "Security" tab (to find it, you may use horizontal arrow buttons in the right up corner in this window);
    7) then tick off an option "Disable file and printer sharing" (option should be clear!);
    6) click "OK";
    7) read bellow ***
    8) click "Close";
    9) restart your PC (to make sure all is ok).
    *** You should apply these instructions (from 1 to 7) for ALL your "IBM Access Connections" / "Lenovo Access connections" profiles, if you do not want allow them to manage your files and printer sharing security. As result Server service automatically will not pause in case of choosing another location profile - service will continue to work normally in all profiles.
    Good Luck!
    GMH from Latvia,
    ThinkPad lover for years

  • I am unable to have photos processed from my Photoshop Elements 11 program directly to Costco due to the fact that I am now receiving a error statement saying: "Online services encountered an error. The service will now be terminated or paused if possible

    I am unable to have photos processed from my Photoshop Elements 11 program directly to Costco.  I am now receiving a error statement saying: "Online services encountered an error. The service will now be terminated or paused if possible. 7: NULL ==*in Attributes." How do I get the online services back and running on my PS to allow me to have my photos processed by Costco online? 

    Please post Photoshop Elements related queries over at
    http://forums.adobe.com/community/photoshop_elements

Maybe you are looking for

  • New Infinity & BT Vision customer - but no connect...

    Hello I am a new customer who joined BT to receive the full Infinity broadband, phone line and full BT vision for £40 pcm + line rental paid in advance. The engineer came to install the service on 19/4/11 and did get all the equipment installed but s

  • Document Management System in KM

    hi experts, can anyone share few points on Document Management System life cycle. can anybody give me steps for DMLC thank you, vijai

  • Help with the Spiral Tool, controlling decay

    I am attempting to use the spiral tool to create a spiral that gradually increases in the size of the spacing (decay) between segments as it opens up outward. My problem with the spiral tool is that it offers little control of when, where and how muc

  • APOGEE DUET USERS plus MacBook for Sale . . . sort of . . .

    Hello. I decided on getting an Apple Duet for my new interface. As I only need two inputs at a time, it is a logical choice as it is only made for Macs and I just bought a MacBook Pro with 4G RAM and 2.2Mhz processor. I love this much more than the M

  • STMS shows wrong release after upgrade

    I've just upgraded our DEV box (also our transport domain controller) from R/3 4.6C to ECC 6.0 and am trying to get STMS to show the new release version on the system overview screen. I try to "update configuration" but the release remains the same w