SCCM client agent installation failed

We have SCCM 2012 R2 setup with IBCM server. we are facing issue sccm agent installationon internet base client machines....Please suggest...
Log :-
Unexpected row count (0) retrieved from AD.
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
Failed to get site version from AD with error 0x80004005
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
Sending message header '<Msg SchemaVersion="1.1"><ID>{4208965B-39B7-43CB-834D-28F389048AC3}</ID><SourceHost>HOME-PC</SourceHost><TargetAddress>mp:[http]MP_LocationManager</TargetAddress><ReplyTo>direct:HOME-PC:LS_ReplyLocations</ReplyTo><Priority>3</Priority><Timeout>600</Timeout><ReqVersion>5931</ReqVersion><TargetHost>https://configmgr.mahindracomviva.com</TargetHost><TargetEndpoint>MP_LocationManager</TargetEndpoint><ReplyMode>Sync</ReplyMode><Protocol>http</Protocol><SentTime>2014-10-16T10:13:44Z</SentTime><Body
Type="ByteRange" Offset="0" Length="186"/><Hooks><Hook3 Name="zlib-compress"/></Hooks><Payload Type="inline"/></Msg>'
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
MapNLMCostDataToCCMCost() returning Cost 0x1
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
CCM_POST 'https://configmgr.mahindracomviva.com/ccm_system/request'
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
Begin searching client certificates based on Certificate Issuers
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
Completed searching client certificates based on Certificate Issuers
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
Begin to select client certificate
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
The 'Certificate Selection Criteria' was not specified, counting number of certificates present in 'MY' store of 'Local Computer'.
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
4 certificate(s) found in the 'MY' certificate store.
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
The 'MY' of 'Local Computer' store has 4 certificate(s). Using custom selection criteria based on the machine name.
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
Machine name is 'HOME-PC'.
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
There are no certificate(s) that meet the criteria.
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
Performing search that includes SAN2 extensions...
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
Certificate [Thumbprint F5CAC89C23EFDCB1934C2A0BF0ABD1AB2E1B3CAC] doesn't have SAN2 extension.
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
Found a certificate with subject name as ‘COMV-IBCM-GGN.COMVIVA.COM’, but will continue to look for the certificate with subject name as ‘HOME-PC’.
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
Certificate [Thumbprint 94D8210DA461FB18F0D53FBA32B6332D4C9AD86C] doesn't have SAN2 extension.
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
Certificate [Thumbprint 570E3ECD56798292943128AA6BD2D3B60409947C] doesn't have SAN2 extension.
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
Using custom selection criteria based on the machine NetBIOS name.
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
Machine name is 'HOME-PC'.
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
There are no certificate(s) that meet the criteria.
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
GetSSLCertificateContext failed with error 0x87d00281
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
A Fallback Status Point has not been specified.  Message with STATEID='315' will not be sent.
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
GetHttpRequestObjects failed for verb: 'CCM_POST', url: 'https://configmgr.mahindracomviva.com/ccm_system/request'
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
Failed to get site version from MP 'https://configmgr.mahindracomviva.com' with error 0x87d00281
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
SiteCode:         GGN
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
SiteVersion:      
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
Ccmsetup is being restarted due to an administrative action. Installation files will be reset and downloaded again.
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
Only one MP https://configmgr.mahindracomviva.com is specified. Use it.
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
Searching for DP locations from MP(s)...
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
Unable to retrieve AD site membership
LocationServices 16/10/2014 15:43:44
1800 (0x0708)
Local machine is not a member of an AD domain
LocationServices 16/10/2014 15:43:44
1800 (0x0708)
DhcpGetOriginalSubnetMask entry point is supported.
LocationServices 16/10/2014 15:43:44
1800 (0x0708)
Begin checking Alternate Network Configuration
LocationServices 16/10/2014 15:43:44
1800 (0x0708)
Finished checking Alternate Network Configuration
LocationServices 16/10/2014 15:43:44
1800 (0x0708)
Adapter {E6BEE3FC-06F0-42D2-B5B3-4F7B0C05247D} is DHCP enabled. Checking quarantine status.
LocationServices 16/10/2014 15:43:44
1800 (0x0708)
Adapter {0AFBCCE2-1482-4BF4-A39E-0A4A9F99A0B1} is DHCP enabled. Checking quarantine status.
LocationServices 16/10/2014 15:43:44
1800 (0x0708)
Adapter {4B8A2A53-61E1-49A6-A15A-47746CE73FFD} is DHCP enabled. Checking quarantine status.
LocationServices 16/10/2014 15:43:44
1800 (0x0708)
Adapter {94D699BB-E9AF-4806-A67E-F749A125B095} is DHCP enabled. Checking quarantine status.
LocationServices 16/10/2014 15:43:44
1800 (0x0708)
Adapter {6BDA1337-26C5-4F6A-9F4A-16799FF4384B} is DHCP enabled. Checking quarantine status.
LocationServices 16/10/2014 15:43:44
1800 (0x0708)
Sending message body '<ContentLocationRequest SchemaVersion="1.00">
  <AssignedSite SiteCode="GGN"/>
  <ClientPackage/>
  <ClientLocationInfo LocationType="SMSPACKAGE" DistributeOnDemand="0" UseProtected="0" AllowCaching="0" BranchDPFlags="0" AllowHTTP="1" AllowSMB="0" AllowMulticast="0"
UseInternetDP="1">
    <ADSite Name=""/>
    <Forest Name=""/>
    <Domain Name=""/>
    <IPAddresses>
<IPAddress SubnetAddress="14.98.171.173" Address="14.98.171.173"/>
<IPAddress SubnetAddress="169.254.0.0" Address="169.254.30.82"/>
<IPAddress SubnetAddress="2002:0E62:ABAD:0000" Address="2002:0E62:ABAD:0000:0000:0000:0E62:ABAD"/>
    </IPAddresses>
  </ClientLocationInfo>
</ContentLocationRequest>
' ccmsetup
16/10/2014 15:43:44
1800 (0x0708)
Sending message header '<Msg SchemaVersion="1.1"><ID>{DF70CBCE-A11D-4479-B965-C68CF73F851F}</ID><SourceHost>HOME-PC</SourceHost><TargetAddress>mp:[http]MP_LocationManager</TargetAddress><ReplyTo>direct:HOME-PC:LS_ReplyLocations</ReplyTo><Priority>3</Priority><Timeout>600</Timeout><ReqVersion>5931</ReqVersion><TargetHost>https://configmgr.mahindracomviva.com</TargetHost><TargetEndpoint>MP_LocationManager</TargetEndpoint><ReplyMode>Sync</ReplyMode><Protocol>http</Protocol><SentTime>2014-10-16T10:13:44Z</SentTime><Body
Type="ByteRange" Offset="0" Length="1370"/><Hooks><Hook3 Name="zlib-compress"/></Hooks><Payload Type="inline"/></Msg>'
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
MapNLMCostDataToCCMCost() returning Cost 0x1
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
CCM_POST 'https://configmgr.mahindracomviva.com/ccm_system/request'
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
Begin searching client certificates based on Certificate Issuers
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
Completed searching client certificates based on Certificate Issuers
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
Begin to select client certificate
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
The 'Certificate Selection Criteria' was not specified, counting number of certificates present in 'MY' store of 'Local Computer'.
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
4 certificate(s) found in the 'MY' certificate store.
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
The 'MY' of 'Local Computer' store has 4 certificate(s). Using custom selection criteria based on the machine name.
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
Machine name is 'HOME-PC'.
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
There are no certificate(s) that meet the criteria.
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
Performing search that includes SAN2 extensions...
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
Certificate [Thumbprint F5CAC89C23EFDCB1934C2A0BF0ABD1AB2E1B3CAC] doesn't have SAN2 extension.
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
Found a certificate with subject name as ‘COMV-IBCM-GGN.COMVIVA.COM’, but will continue to look for the certificate with subject name as ‘HOME-PC’.
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
Certificate [Thumbprint 94D8210DA461FB18F0D53FBA32B6332D4C9AD86C] doesn't have SAN2 extension.
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
Certificate [Thumbprint 570E3ECD56798292943128AA6BD2D3B60409947C] doesn't have SAN2 extension.
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
Using custom selection criteria based on the machine NetBIOS name.
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
Machine name is 'HOME-PC'.
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
There are no certificate(s) that meet the criteria.
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
GetSSLCertificateContext failed with error 0x87d00281
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
GetHttpRequestObjects failed for verb: 'CCM_POST', url: 'https://configmgr.mahindracomviva.com/ccm_system/request'
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
GetDPLocations failed with error 0x87d00281
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
Failed to get DP locations as the expected version from MP 'https://configmgr.mahindracomviva.com'. Error 0x87d00281
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
A Fallback Status Point has not been specified.  Message with STATEID='101' will not be sent.
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
Next retry in 10 minute(s)...
ccmsetup 16/10/2014 15:43:44
1800 (0x0708)
Regards Sheetla Maurya

now we are getting this error in locationServices log file......
Processing pending site assignment. LocationServices 10/20/2014 11:32:19 AM 1592 (0x0638)
Assigning to site 'GGN' LocationServices 10/20/2014 11:32:19 AM 1592 (0x0638)
LSIsSiteCompatible : Verifying Site Compatibility for <GGN> LocationServices 10/20/2014 11:32:19 AM 1592 (0x0638)
Using INF MP https://configmgr.mahindracomviva.com as lookup MP. LocationServices 10/20/2014 11:32:19 AM 1592 (0x0638)
Attempting to retrieve site information from lookup MP(s) via HTTPS LocationServices 10/20/2014 11:32:19 AM 1592 (0x0638)
Current AD site of machine is GGN-INFOCITY LocationServices 10/20/2014 11:32:34 AM 940 (0x03AC)
Failed to send site information Location Request Message to
https://configmgr.mahindracomviva.com LocationServices 10/20/2014 11:32:53 AM 1592 (0x0638)
LSIsSiteCompatible : Domain joined client is on Internet. Unable to check compatibiliy of Site <GGN> LocationServices 10/20/2014 11:32:53 AM 1592 (0x0638)
Won't send a client assignment fallback status point message because the last assignment error matches this one. LocationServices 10/20/2014 11:32:53 AM 1592 (0x0638)
Please share your suggestions....
Regards Sheetla Maurya

Similar Messages

  • SCCM Manual Agent installation is not Working

    We have SCCM 2012 SP2 , when we deploy SCCM client Agent manually it is not reporting back to SCCM console
    Error: i could see Client ID Manager Startup.log
     Failed to refresh site code. Error: 0x8000ffff

    Did you check ccmsetup.log file on the client machine ?
    Have you created System Management Container and assigned full permissions on it for your SCCM server ?
    In the Control panel-> Configuration Manager ->Action tab -> What policies do you see ?
    SCCM 2012 R2 Step by Step Guides
    Prajwal Desai, http://prajwaldesai.com

  • SCCM Client Agent Deployment - Internet based client scenario

    Hi There,
    I need to deploy SCCM 2012 client agent and certificate to the machines not connected to the corporate LAN. I know that SCCM agent and certificate needs to be installed manually on them ( or via Group Policy ).... but here I'm talking about 2000 internet
    based machines.
    Can you please let me know the enterprise level best practice to capture those 2000 internet based machines.
    50% of these machines may not come on corporate network for very long time....so cannot capture them by Group Policy... How to capture those machines.... Has anyone worked on a solution to create some kind of portal etc...whose link we can provide to the
    users via email for them to just click and that installs both SCCM client agent and certificate....just a thought.
    Regards,
    Sam

    There is no best practice as that would imply that every organization is the same and should do it the same way.
    Ultimately, this challenge is unique to your organization -- not the specific ConfigMgr details, but how best to get it done within the resources and security posture of your organization.
    If your users are local admins and you have a VPN solution, then you can potentially just send them batch files to run (that install a cert and install the client agent) when they are connected via VPN. You could potentially expose both via an HTTP download
    and the CA web issuance pages also or using certutil (assuming the user has local admin permissions again). There simply are too many variables that are unique and specific to your environment to be able to describe any sort of complete solution.
    Ultimately, it comes down to two parts, neither of which is overly complicated (or magic):
    1. Request and install client auth certificate.
      - Must be done as local admin
      - Can be automated using certutil and PowerShell
    2. Install ConfigMgr client agent
      - Must be done as local admin
      - Must be initiated by running ccmsetup (with appropriate switches and properties)
      - Must have access to rest of client setup files either locally, via the Internet DP, or Internet MP
      - Must be able to communicate with MP
    I have seen folks publish scripts for this and web pages even so a little web searching may turn one of these up.
    Jason | http://blog.configmgrftw.com

  • SCOM agent installation fail ?

    Hi
    when I try to push the installation of SCOM 2012 R2 agent through Console on windows server 2008 it always fails with this error:
    The Operations Manager Server could not execute WMI Query "Select * from Win32_OperatingSystem" on computer TKTMG01.intranet.local
    Operation: Agent Install
    Install account: intranet\troll_gw
    Error Code: 800706BA
    Error Description: The RPC server is unavailable.
    Any help would be highly appreciated.
    Regards,
    Basem

    Hi,
    As Ed already posted, check the firewall on the server where the agent installation fails. If you´ve turned off the firewall and It´s still failing to install, you need to talk to your network team about this isue since there might as well be a firewall
    between the servers blocking the traffic.
    A general recommendation in a heavily firewalled environment is to install the agents manually to make as few firewall openings as possible. Check this link for more information on what ports need tobe open in order for the installation to go through: http://blogs.technet.com/b/kevinholman/archive/2007/12/12/agent-discovery-and-push-troubleshooting-in-opsmgr-2007.aspx
    Regards,
    Daniel
    IT Consultant at Viridis IT

  • Client Agent installation on SCCM Primary Site Server

    Hello,
    I Installed Client agent via Client push to my SCCM Primary Site. Installation was sucessfull (Return code 0 in ccmsetup.log). But in console still the client status shows 'NO'.
    Is there any difference when installing Client agent on Primary Site or any other site server. Please advice.
    Regards,
    Vishnu 
    V I S H N U

    Thank you Torsten, Got the log files.
    ClientLocation.log: - All things seems fine here. Got assigned to correct Site code.
    But found the below errors in other two logs.
    ccmmessaging.log
    Raising event:
    instance of CCM_CcmHttp_Status
     ClientID = "GUID:BFD290FF-1A90-4863-8304-EAA205D6EC20";
     DateTime = "20150128053734.123000+000";
     HostName = "QVDCSCM01.QDOM.GLOBAL";
     HRESULT = "0x00000000";
     ProcessID = 9048;
     StatusCode = 0;
     ThreadID = 11052;
     CcmMessaging 28/01/2015 05:37:34 11052 (0x2B2C)
    No reply message from Server. Server may be temporarily down or a transient network error. CcmMessaging 28/01/2015 05:37:34 11052 (0x2B2C)
    Post to http://QVDCSCM01.QDOM.GLOBAL/ccm_system/request failed with 0x8000000a. CcmMessaging 28/01/2015 05:37:34 11052 (0x2B2C)
    LocationServices.log
    Failed to send management point list Location Request Message to QVDCSCM01.QDOM.GLOBAL LocationServices 28/01/2015 05:37:34 11052 (0x2B2C)
    Persisted Default Management Point Locations locally LocationServices 28/01/2015 05:37:34 11052 (0x2B2C)
    Current AD site of machine is Default-First-Site-Name LocationServices 28/01/2015 05:37:34 11052 (0x2B2C)
    Failed to send management point list Location Request Message to QVDCSCM01.QDOM.GLOBAL LocationServices 28/01/2015 05:37:34 11052 (0x2B2C)
    Attempting to retrieve local MPs from the assigned MP LocationServices 28/01/2015 05:37:34 11052 (0x2B2C)
    Current AD site of machine is Default-First-Site-Name LocationServices 28/01/2015 05:37:34 11052 (0x2B2C)
    Failed to send management point list Location Request Message to QVDCSCM01.QDOM.GLOBAL LocationServices 28/01/2015 05:37:34 11052 (0x2B2C)
    Current AD site of machine is Default-First-Site-Name LocationServices 28/01/2015 05:37:34 11052 (0x2B2C)
    Current AD site of machine is Default-First-Site-Name LocationServices 28/01/2015 05:37:34 11052 (0x2B2C)
    Executing Task LSRefreshDefaultMPTask LocationServices 28/01/2015 05:37:45 1188 (0x04A4)
    V I S H N U

  • SCCM Client Push Installation Wizard does not install the client. CCMSetup folder - not created

    Hello,
    I have tried running the Client Push wizard for a single computer or a pilot collection of 8 computers, the result is always
    the same - no SCCM client is installed on any computer.
    The computers are running 32-bit Windows XP SP2.
    The Windows firewall is disabled.
    The client push installation account is setup and have domain admin and local admin privileges. Client Push automatic method
    is not enabled.
    The domain is AD WIndows 2000.
    The SCCM server is running Windows 2003 R2 SP2 64bit Standard.
    The AD schema has been extended.
    MP, and SLP are installed and published. (MP is published in DNS as well.)
    FSP is installed.
    MP, SLP and FSP are running on the same server.
    SQL 2005 server is running locally.
    System management container is created and all rights and permissions delegated.
    With the Push installation account I can access C$ share on the client computer from the SCCM server.
    RPC, Remote registry, WMI services are running on the client machines.
    All prerequisites are installed from the client folder on SCCM server- latest BITS 2.5, Windows installer 3.1 and MSXML6.
    All computers are in the same IP subnet which is listed in the boundaries.
    Yet, the client is not being installed.
    No CCMSetup folder is created on the client machines in Windows\System32 folder, so it is really difficult to troubleshoot
    what the is the issue. I do not see anything helpful in the ccm.log on the server.
    I have tried running the CCMSetup.exe manually on one of the workstations and that was successful and reported back to the
    SCCM server / console.
    What else I should check / try? I really want to push agents via the wizard.
    Thank you,
    Peter

    Hi Wally,
    I have changed 2 things:
    1. Enabed automatic push installation (so I am not usign the wizard any more)
    2. Changed the IP subnet to IP ranges in the site boundairies.
    After runnignt the discovery, I was able to see some activities in the ccm.log. A ccmsetup folder is now created but the agent is still not instaleld. Here is the ccmsetup.log
    ==================================
    <![LOG[==========[ ccmsetup started in process 3140 ]==========]LOG]!><time="09:45:07.045+240" date="12-06-2007" component="ccmsetup" context="" type="1" thread="3108" file="ccmsetup.cpp:8853">
    <![LOG[Version: 4.0.5931.0000]LOG]!><time="09:45:07.045+240" date="12-06-2007" component="ccmsetup" context="" type="1" thread="3108" file="ccmsetup.cpp:1913">
    <![LOG[Command line parameters for ccmsetup have been specified.  No registry lookup for command line parameters is required.]LOG]!><time="09:45:07.045+240" date="12-06-2007" component="ccmsetup" context="" type="1" thread="3108" file="ccmsetup.cpp:3937">
    <![LOG[Command line: "C:\WINDOWS\system32\ccmsetup\ccmsetup.exe" /runservice /config:MobileClient.tcf]LOG]!><time="09:45:07.045+240" date="12-06-2007" component="ccmsetup" context="" type="1" thread="3108" file="ccmsetup.cpp:3946">
    <![LOG[CCMHTTPPORT:    80]LOG]!><time="09:45:07.045+240" date="12-06-2007" component="ccmsetup" context="" type="1" thread="3108" file="ccmsetup.cpp:7851">
    <![LOG[CCMHTTPSPORT:    443]LOG]!><time="09:45:07.045+240" date="12-06-2007" component="ccmsetup" context="" type="1" thread="3108" file="ccmsetup.cpp:7866">
    <![LOG[CCMHTTPSSTATE:    0]LOG]!><time="09:45:07.045+240" date="12-06-2007" component="ccmsetup" context="" type="1" thread="3108" file="ccmsetup.cpp:7884">
    <![LOG[CCMHTTPSCERTNAME:    ]LOG]!><time="09:45:07.045+240" date="12-06-2007" component="ccmsetup" context="" type="1" thread="3108" file="ccmsetup.cpp:7912">
    <![LOG[FSP:    HFXDBSSOM.CORP.EASTLINK.CA]LOG]!><time="09:45:07.045+240" date="12-06-2007" component="ccmsetup" context="" type="1" thread="3108" file="ccmsetup.cpp:7927">
    <![LOG[CCMFIRSTCERT:    0]LOG]!><time="09:45:07.061+240" date="12-06-2007" component="ccmsetup" context="" type="1" thread="3108" file="ccmsetup.cpp:7969">
    <![LOG[Config file:      C:\WINDOWS\system32\ccmsetup\MobileClient.tcf]LOG]!><time="09:45:07.061+240" date="12-06-2007" component="ccmsetup" context="" type="1" thread="3108" file="ccmsetup.cpp:4341">
    <![LOG[Retry time:       10 minute(s)]LOG]!><time="09:45:07.061+240" date="12-06-2007" component="ccmsetup" context="" type="1" thread="3108" file="ccmsetup.cpp:4342">
    <![LOG[MSI log file:     ]LOG]!><time="09:45:07.061+240" date="12-06-2007" component="ccmsetup" context="" type="1" thread="3108" file="ccmsetup.cpp:4343">
    <![LOG[MSI properties:    INSTALL="ALL" SMSSITECODE="PHX" CCMHTTPPORT="80" CCMHTTPSPORT="443" CCMHTTPSSTATE="0" FSP="HFXDBSSOM.CORP.EASTLINK.CA" CCMFIRSTCERT="0"]LOG]!><time="09:45:07.061+240" date="12-06-2007" component="ccmsetup" context="" type="1" thread="3108" file="ccmsetup.cpp:4344">
    <![LOG[Source List:]LOG]!><time="09:45:07.061+240" date="12-06-2007" component="ccmsetup" context="" type="1" thread="3108" file="ccmsetup.cpp:4352">
    <![LOG[                  \\HFXDBSSOM.corp.eastlink.ca\SMSClient]LOG]!><time="09:45:07.061+240" date="12-06-2007" component="ccmsetup" context="" type="1" thread="3108" file="ccmsetup.cpp:4359">
    <![LOG[                  \\HFXDBSSOM\SMSClient]LOG]!><time="09:45:07.061+240" date="12-06-2007" component="ccmsetup" context="" type="1" thread="3108" file="ccmsetup.cpp:4368">
    <![LOG[MPs:]LOG]!><time="09:45:07.061+240" date="12-06-2007" component="ccmsetup" context="" type="1" thread="3108" file="ccmsetup.cpp:4371">
    <![LOG[                  HFXDBSSOM.corp.eastlink.ca]LOG]!><time="09:45:07.061+240" date="12-06-2007" component="ccmsetup" context="" type="1" thread="3108" file="ccmsetup.cpp:4386">
    <![LOG[Updated security on object C:\WINDOWS\system32\ccmsetup\.]LOG]!><time="09:45:07.076+240" date="12-06-2007" component="ccmsetup" context="" type="0" thread="3108" file="ccmsetup.cpp:8692">
    <![LOG[Sending Fallback Status Point message, STATEID='100'.]LOG]!><time="09:45:07.076+240" date="12-06-2007" component="ccmsetup" context="" type="1" thread="3108" file="ccmsetup.cpp:9169">
    <![LOG[State message with TopicType 800 and TopicId {A450B407-619B-4777-B77E-C3352753B58A} has been sent to the FSP]LOG]!><time="09:45:07.326+240" date="12-06-2007" component="FSPStateMessage" context="" type="1" thread="3108" file="fsputillib.cpp:730">
    <![LOG[Running as user "SYSTEM"]LOG]!><time="09:45:07.326+240" date="12-06-2007" component="ccmsetup" context="" type="1" thread="2600" file="ccmsetup.cpp:2534">
    <![LOG[Detected 24292 MB free disk space on system drive.]LOG]!><time="09:45:07.326+240" date="12-06-2007" component="ccmsetup" context="" type="1" thread="2600" file="ccmsetup.cpp:465">
    <![LOG[DetectWindowsEmbeddedFBWF() Detecting OS Version]LOG]!><time="09:45:07.342+240" date="12-06-2007" component="ccmsetup" context="" type="1" thread="2600" file="ccmsetup.cpp:511">
    <![LOG[Client OS is not Windows XP Embedded]LOG]!><time="09:45:07.342+240" date="12-06-2007" component="ccmsetup" context="" type="1" thread="2600" file="ccmsetup.cpp:548">
    <![LOG[Successfully ran BITS check.]LOG]!><time="09:45:08.745+240" date="12-06-2007" component="ccmsetup" context="" type="1" thread="2600" file="ccmsetup.cpp:6948">
    <![LOG[Failed to successfully complete HTTP request. (StatusCode at WinHttpQueryHeaders: 401)]LOG]!><time="09:45:08.745+240" date="12-06-2007" component="ccmsetup" context="" type="3" thread="2600" file="ccmsetup.cpp:5813">
    <![LOG[Sending Fallback Status Point message, STATEID='308'.]LOG]!><time="09:45:08.760+240" date="12-06-2007" component="ccmsetup" context="" type="1" thread="2600" file="ccmsetup.cpp:9169">
    <![LOG[State message with TopicType 800 and TopicId {3BFABF82-FB74-43FB-8A4A-6DFDEAEAC25C} has been sent to the FSP]LOG]!><time="09:45:08.776+240" date="12-06-2007" component="FSPStateMessage" context="" type="1" thread="2600" file="fsputillib.cpp:730">
    ==============================================================
    There are two red errors I am concerned about:
    "Failed to successfully complete HTTP request. (StatusCode at WinHttpQueryHeaders: 401)
    and
    "Failed to download 'WindwosXP-KB923845-x86-ENU.exe' from http://HFXDBSSOM.corp.eastlink.ca/CCM_Client/i386/BITS25 with error code 0x80004005).
    What should I do to resolve these errors?
    Thanks,
    Peter

  • SCCM Client PC's failing to download/install Windows Updates

    Hi,
    Last month I noticed that our client PC's, shortly after they had built (using SCCM Task Sequence)  were downloading and installing Windows Updates using the usual Windows Update process. What I mean is, I had Software Centre showing Updates as installing,
    but also had the Windows Update agent installing various updates. It was also showing in the start menu (Yellow icon saying Shut down and install updates). Now my understanding is, that that shouldn't of been happening, and only SCCM/Software Centre should
    be showing Windows Updates as installing.
    I noticed that we had some GPO's set for Windows Updates, which I have disabled, as I believed these were not necessary. Also, I like to control my Updates via SCCM Software Update groups after testing them, and not just allow clients to grab any updates
    that are required and approved.
    My problem now is, none of the clients are getting/installing any updates. I'm getting the following errors in the WUAHandler.log:
    Unable to read existing WUA resultant policy. Error = 0x80070002.
    WUAHandler
    09/04/2015 19:03:29
    8732 (0x221C)
    Group policy settings were overwritten by a higher authority (Domain Controller) to: Server  and Policy NOT CONFIGURED
    WUAHandler
    09/04/2015 19:03:29
    8732 (0x221C)
    Failed to Add Update Source for WUAgent of type (2) and id ({FC358571-80C5-4EAA-8A33-F79AD4C14785}). Error = 0x87d00692.
    WUAHandler
    09/04/2015 19:03:29
    8732 (0x221C)
    So, I've checked in:
    HKLM\Software\Policies\Microsoft\Windowa\WindowsUpdate\ & HKLM\Software\Wow6432Node\Policies\Microsoft\Windows\WindowsUpdate 
    and neither have a WSUS server set. I'm assuming this is correct?
    RSOP shows all policies in \\Computer Configuration\Administrative Templates\Windows Components\Windows Update as
    DISABLED
    GPEDIT shows \\Computer Configuration\Administrative Templates\Windows Components\Windows Update\Specify intranet Microsoft update service location as
    Enabled and as our server (https://XXX.XXX:8531) - I'm assuming this is what SCCM client sets as if I changed this setting and then restart the setting comes back. If it was a Group Policy conflict then I
    would expect to see it in RSOP.
    Does anyone have any suggestions? I'm puzzled as to what to look at next. Is my first assumption of having 0 group policies configured for WSUS correct? Am I also correct in assuming Windows Updates shouldn't show in Control panel, or at the Start > Shutdown
    prompt, and only show in Software Centre?
    Thanks, and sorry for the long winded post!

    Hey Jason,
    Thanks for replying and explaining the WUA stuff. That made sense to be but my mind was being clouded by the issue all of the PC's/Clients onsite were, and are still getting. I cleared out the Group Policy cache as detailed on the link.
    - Cleared C:\Program Data\Microsoft\Group Policy\History\*.*
    - Ran a gpupdate /force
    - Restarted PC
    Issue still remains. Here is the output from the WUAHandler.log
    CWuaHandler::SetCategoriesForStateReportingExclusion called with E0789628-CE08-4437-BE74-2495B842F43B;E0789628-CE08-4437-BE74-2495B842F43B,A38C835C-2950-4E87-86CC-6911A52C34A3; for leaves and E0789628-CE08-4437-BE74-2495B842F43B,A38C835C-2950-4E87-86CC-6911A52C34A3;
    for bundles 
    WUAHandler 13/04/2015 16:14:34 2508 (0x09CC)
    Its a WSUS Update Source type ({FC358571-80C5-4EAA-8A33-F79AD4C14785}), adding it. WUAHandler 13/04/2015 16:15:02 2488 (0x09B8)
    Unable to read existing resultant WUA policy. Error = 0x80070002. WUAHandler 13/04/2015 16:15:02 2488 (0x09B8)
    Enabling WUA Managed server policy to use server: https://(Name.domain of our SCCM SUP):8531 WUAHandler 13/04/2015 16:15:02 2488
    (0x09B8)
    Waiting for 2 mins for Group Policy to notify of WUA policy change... WUAHandler 13/04/2015 16:15:02 2488 (0x09B8)
    Unable to read existing WUA resultant policy. Error = 0x80070002. WUAHandler 13/04/2015 16:15:11 2488 (0x09B8)
    Group policy settings were overwritten by a higher authority (Domain Controller) to: Server  and Policy NOT CONFIGURED WUAHandler 13/04/2015 16:15:11 2488 (0x09B8)
    Failed to Add Update Source for WUAgent of type (2) and id ({FC358571-80C5-4EAA-8A33-F79AD4C14785}). Error = 0x87d00692. WUAHandler 13/04/2015 16:15:11 2488 (0x09B8)

  • SCCM Primary Site installation fails

    Hello!
    In my organization we have two domain/forests. DomainA.local and DomainB.local
    in one forest (DomainA.local) we have sccm 2012 sp1 CAS site. with dedicated database server on sql 2012 sp1 cu5
    in other forest (DomainB.local) we want to setup primary site on sccm 2012 sp1 with dedicated database server on sql 2012 sp1 cu5
    forests have trust both sided.
    all installation accounts have administrative rights on all SC servers. in both domains.
    when i try to install SCCM 2012 primary site in the hierarchy,
    i receiving the errors:
    INFO: Created SQL Server machine certificate for Server [S-SCDB-02.DomainB.local] successfully.
      ERROR: Failed to open certificate store (HRESULT=0x35)    Configuration Manager Setup    9/3/2013 11:56:19 AM    3268 (0x0CC4)
    ERROR: Failed to write S-SCDB-02.DomainB.local SQL Server certificate to store (TrustedPeople) on site server (S-SCDB-01.DomainA.local).
    ERROR: Failed to write certificate of primary site's SQL Server [S-SCDB-02.DomainB.local] to CAS SQL Server [S-SCDB-01.DomainA.local].
    Install user from domainB.local has administrative rights on S-SCDB-01.DomainA.local and sysadmin rights in sql server.
    Also, it has full administrator role on CAS.Of course, it has administrative rights on primary site server and sql server S-SCDB-02.DomainB.local and sysadmin rights.
    WHY????

    >Taking a step back: why? Are you using a CAS and multiple primary sites at all? Do you have 100,000+ clients to manage?
    we need CAS due to our network infrastructure.
    thank you for you help.
    we solved problem today.
    it was need to open "windows" ports on the firewall between SCCM Primary Site server and CAS SQL server to give SCCM
    primary site installation process the ability to install the primary site's sql-server's self-signed certificate to CAS sql-server trusted people local store.
    i did not remember this point in deploying documentation((((

  • ZLM Agent IR2 agent installation fails

    Hi all
    I have installed ZLM 7.3 IR2 Server in SLES 10 SP2. The ZLM Server setup is not able to complete on sles11 server, the system hangs. Also when trying to install the ZLM 7.3 IR2 agent on SLED 11 OS, the installation starts & hangs in the middle.
    Some of the error messages are
    1)Error no 111 Connection Refused
    2) when executed the zlm-config file it displays the "OS is not supported version"
    The SuSEfirewall is set to stop & iptables rules were not set.
    I have tried the ZLM 7.3 IR2 agent installation in a freshly installed SLED 10 machine, but the machine is not able to contact the server (host name not found). I have not configured DNS service in the server machine. Please provide suggestions in the ZLM 7.3 IR2 agent installation.

    baranii,
    a few questions for my understanding:
    I have installed ZLM 7.3 IR2 Server in SLES 10 SP2.
    This is a running ZLM server and you try to register the other devices to this server. Correct ?
    The ZLM Server setup is not able to complete on sles11 server, the system hangs.
    SLES 11 or SLES 11 SP1 ? For SLES 11 SP1 you would need to use ZLM 7.3 IR3.
    Do you want to install another ZLM server on this SLES 11 server or just the agent ?
    I have tried the ZLM 7.3 IR2 agent installation in a freshly installed SLED 10 machine, but the machine is not able to contact the server (host name not found). I have not configured DNS service in the server machine.
    The agent must be able to resolve the dns name of the zlm server.
    You can either configure DNS or you can add an entry to the /etc/hosts file of the managed device. But you must make sure the device can afterwards ping the ZLM server by its name. (ping <ZLM Server Name>).
    It is possible to register the zlm server by its ip address and not by it's name, but5 I would recommend to use the dns name.
    So if you have fixed the name resolution and retry the agent installation, verify the zlm-install.log file if a installation fails. That log file is available in /var/opt/novell/logs/zenworks. Go from the end back and look for errors or warnings.
    Rainer

  • DPM Agent Installer Fails with errorcode =0x80070643

    I've seen this all over the place. Sometimes it's with DPM 2007 but I'm using an evaluation version of DPM 2010. I'm trying to install the agent on a protected server running Windows
    2008 Standard with Service Pack 2. This is our Exchange 2007 server and is also running ForeFront. 
    I initially tried installing from the DPM server and received the following error code
    Install protection agent on PS failed:
    Error 313: The agent operation failed because an error occurred while running the installation program on PS.
    Error details: Fatal error during installation (0x80070643)
    Recommended action: Review the log files on PS: [windir]\temp\msdpm*.log and take appropriate action. Retry the operation, and if the error persists, restart the computer
    and then retry the operation again.
    I reviewed the error logs but I didn't know exactly what to look for and I don't see anything that jumps out at me.
    On other sites I have seen instructions for a manual install on the protected server after disabeling the firewall and so I tried that.
    On the protected server I mapped a drive to the folder containing the agent on the DPM server. I ran Net stop mpssvc. Then I launched the installer  DPMAgentInstaller_x64.exe. When
    I ran that I received a different error.
    DPMAgentInstaller failed with errorcode =0x80070643, error says: Fatal error during installation.
    Check log files in [WINDIR]temp\MSDPM*.LOG
    Press Enter key to close the window
    I rebooted and tried again with the same error.
    On another page I read that someone asked about the paging file so I verified that there was sufficient space allocated (only 2/3 of the allocated space is being used).
    Our primary partition has over 50GB of free space and our data partition has over 370 GB free.
    I can post sections of the log files if that would help.
    Thanks

    Dan,
    This is usually a problem with the installer. I've seen this in DPMRA.msi installation failures when In some instances the default permissions of the scheduled tasks directory altered.
    The following is a sample from the failing MSDPMAgentBoostrap0Curr.errlog file.
    WARNING Failed: Hr: = [0x80070424] : F: lVal : (HANDLE)(schService = OpenServiceW( schSCManager, strServiceName.PeekStr(), (0x00010000L) | 0x0020 | 0x0004 | 0x0002))
    WARNING Failed: Hr: = [0x80070424] DeleteServiceByName for service[DPMClientService] failed                                                                         
    WARNING Failed: Hr: = [0x80070002] : Error while deleting the Scheduled Task [ScheduledDPMClientBackup]                                                             
    WARNING Failed: Hr: = [0x80070002] DeleteScheduledTaskByName failed                                                                                                 
    WARNING Failed: Hr: = [0x80070005] : F: lVal : pTaskScheduler->NewWorkItem(pwszClientTaskName, CLSID_CTask, IID_ITask, (IUnknown**)&pTask)                          
    WARNING Failed: Hr: = [0x80070005] AddScheduledTaskForClient failed  
    The service deletion failure is fine since it fails with 0x80070424 (ERROR_SERVICE_DOES_NOT_EXIST - The specified service does not exist as an installed service). The same goes with the scheduled task deletion with the error 0x80070002 (ERROR_FILE_NOT_FOUND
    - The system cannot find the file specified). The installer was removing old services or tasks that may be lingering and if they do not exist we will get the above errors.
    The access is denied error on the task creation is the aberration that must be addressed.
    The permissions on %windir%\Tasks need to allow write access to the account doing the DPMRA.msi install.
    Some have implemented group policies to lock down the permissions on the Tasks directory. This was done to combat the Conficker worm. Please see
    KB 962007 Virus alert about the Win32/Conficker worm for more details.
    Note: You must reset the default permissions on the Task directory. See the "After the environment is fully cleaned" section of the KB article.
    If not this let us know.
    /Steve
    Steve L [MSFT] This posting is provided "AS IS" with no warranties, and confers no rights.

  • Sccm client push installation problem

    in my company 22000 users and install sccm 2012(1 primary site in main dc  and 4 site system server in branch  )
    i enable automatic site-wide client push installation . only sccm client installed in 11000 computers during 7 month and  increment installation it very slowly 2-10 per month 
    how i install  svvm client in another computers automaticly
    please help me

    Yes. You can also manually create boundaries. Each client must fall under a boundary (eg IP Subnet, IP Range, AD site). You need to check that all are covered. Boundaries have to be added to boundary groups which are configured for site assignment.
    http://www.gerryhampsoncm.blogspot.ie/2013/02/sccm-2012-sp1-step-by-step-guide-part-6.html
    Gerry Hampson | Blog:
    www.gerryhampsoncm.blogspot.ie | LinkedIn:
    Gerry Hampson | Twitter:
    @gerryhampson

  • SCCM Client Push installation comms/ports

    Hi all,
    I've done a bit of reading of articles/resources and I'm not quite clear on communication requirements. I read that ICMP ping is required in addition to various TCP ports for client push installation. Our setup is a hub and spoke design with firewalls which
    we don't administer between premises (convenient how 'site' is a key word in SCCM grrr) :)
    I thought we would be able to have Distribution Points/Management Points on remote premises and have the clients on those premises do all necessary communication with the local server in their same subnet in order to deploy the SCCM client and report status.
    Do I require ping etc through to the main server before it will use the local Distribution Point to deploy and report via the local Management Point?
    We have a few clients manually installed at a couple of remote premises which are reporting but can't push the client and we have many clients at our central premises which have had client push installation and reported back successfully - presumably because
    they are in the same subnet with no firewalls between.
    I also have a couple of manually installed clients at remote premises which are not reporting client activity but I'll look into that further once the main client push feature is working.
    Thanks for any clarification, I'm building my SCCM knowledge!
    R

    Hi Gerry,
    Thanks for your response and the resources on your blog.
    I have looked at the link but I'm still not clear on instances (if any) where direct communication is required between the client and the primary site server.
    Should clients be expected to be able to communicate only with their local distribution point/management point which is in the same subnet if they are firewalled from the primary site server as I have? How does SCCM know to have a remote distribution point
    do the communication to a client that is local to it without knowing the IP address? My servers have exceptions setup between them but the clients are fairly restricted to their own premises.
    My boundaries are configured per AD Site but unless SCCM checks DNS for IP address would it be able to determine the AD Site to have the nearest DP/MP handle all the client interaction?
    My query about ICMP was based on this link https://technet.microsoft.com/en-us/library/gg682180.aspx which says:
    "In addition to the ports listed in the following table, client push installation also uses Internet Control Message Protocol (ICMP) echo request messages from the site server to the client computer to confirm whether the client computer is available on
    the network."
    Edit: I see Jason has partly answered my question above - I spent too long typing this post :)
    Thanks

  • DPM Agent Installation Failed with Error code =0x80070643

    Hi,
    We had an Virtual Machine TFS server 2010 which had SQL server 2008 R2 installed on it.
    On this Server we were running an DPM 2010 agent and it was fine. 
    Then I had uninstalled DPM 2010 agent and  try to Install DPM 2012 R2 Agent on this Virtual Machine it gives me error 0x80070643. And for other VM the agent installation is fine.
    When I checked on DPM agent logs in Windows/Temp folder it gives me below error.
    I had tried with Deleting DPM Registry but still the Problem remains same.
    Thanks

    Hi,
    Earlier the Protected Server had DPM 2010 Agent installed and while Troubleshooting I had already deleted the
    HKLM\SOFTWARE\MICROSOFT\Microsoft Data Protection Manager\Setup Registry 
    And Tried to Reinstall Agent but still it gives same error.
    Regards,
    Nadeem

  • SCCM Client Application Installation WMI Classes and Cycles

    Hi,
    I am writing some software to monitor application deployements via SCCM - specifcally required applications. The applications installing OK however
    it takes a bit of time for the SCCM console to realize the application has been installed after the client has actually done it.
    So here are my questions:
    1. What client cycle actually sends the status message back to the SCCM database saying "I have installed this application" - I am guessing the
    "Application Deployment EValuation Cycle"?
    2. Which WMI class can I look at that can tell me "when" the SCCM client installed the application?
    Thanks,
    Ward

    To add to Torsten's answer here, there is no client cycle/action for this as it's automatic (see Torsten's answer). The App Deploy Eval cycle is for re-evaluating global conditions and application requirements on an on-going basis to ensure they are still
    enforced and has nothing to do with reporting back to the site.
    For part 2, CCM_Application should also get you what you are looking for on the client side but that's pretty inefficient for anything thing more than one-of deployments in small environments. Why not use reporting?
    Jason | http://blog.configmgrftw.com | @jasonsandys

  • REG:Oracle Audit Vault Agent Installation fails at the last step .

    Hi ,
    I am installing Audit vault agent 10.3 and it is failing at the last on solarisis 10 sparc 64 bit .
    The error is
    OUI-25031:Some of the configuration assistants failed/cancelled. It is strongly recommended that you retry the configuration assistants at this time. Not successfully running any "Recommended" assistants means your system will not be correctly configured.
    I have tried the Doc ID 1058184.1 but it fails at the end saying cannot update av.properties , If we create the the directories manually and create the av.properties file then the agent will start but it is not stopping until you kill the agent .
    Moreover if i am continuing with this agent after registering the collectors i am not able to start them as i am facing the http 404 error .
    So i think i need to install the audit agent successfully first .
    can anybody help me please as we are on client side and it is critical deliverable .
    Regards
    Edited by: 836778 on May 1, 2012 4:52 PM
    Edited by: 836778 on May 1, 2012 4:59 PM

    In case you're still dealing with this issue:
    I hit this problem when the OS user I was installing with was not in the proper OS group. I don't have the documentation in front of me right now, but make sure your user is in the DBA and/or OINSTALL group.

Maybe you are looking for

  • Get current user in toolarea (jsp page)

    Hi I try to retrive logged user in toolarea par (ToolAreaiView.jsp) with this code: IUser user; user= UMFactory.getAuthenticator().getLoggedInUser(request, response); out.write(user.getName()); but I have error for request and response (object not fo

  • Ipod will not accept purchased videos, but i have ipod 1.1.2 and itunes 7.0

    Hi I formatted my Ipod on windows several months ago. A week later, I bought a mac and have been using my ipod on mac ever since. Yesterday, I bought a video from the itunes store, and in order to play it, I tunes told me that i needed to update my I

  • How to create dblink from oracle to sqlserver

    sqlserver:10.5.0.61 sqlserver 2005 windows server 2003 oracle:10.30.16.19 9.2.0.6 solaris i installed oracle 9i transparent gateway on 10.5.0.61, and the follows are my config files : 10.5.0.61: D:\oracle\ora92\tg4msql\admin\initvatdata.ora # This is

  • No sound on my mini

    Well, I think I've tried everything including restoring the software with the latest updater and switching earbuds (the original buds and others work in my discman, but not on the iPod). I even tried it in the car with the FM transmitter and I'm not

  • Itunes downloading error 2

    I keep getting the message "Apple Application Support was not found. Apple Application Support is required to run Itunes. Please uninstall itunes, then install itunes again." Then "Error 2 (Windows error 2) when I try to download itunes