SCOM 2012R2 - Alerts Not Generating, Must Restart SCOM to Resolve

Hi TechNet,
I am having an issue with my SCOM 2012R2 where the system goes into a state where alerts are not generated.  We start to see events like the one below leading up to the point where this happens. This is resolved by restarting our SCOM MS. Is there another
solution besides having to restart our SCOM MS every day?
A Bind Data Source in Management Group has posted items to the workflow, but has not received a response in 36720 seconds.  This indicates a performance or functional problem with the workflow.
Workflow Id : Microsoft.SystemCenter.CollectPerformanceData
Instance    : SCOM01.xxxxx.LOCAL
Instance Id : {1189BAF9-AFDC-ADA0-196D-D749A369A350}
- <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
- <System>
<Provider Name="HealthService" />
<EventID Qualifiers="32768">2115</EventID>
<Level>3</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2015-02-02T11:28:11.000000000Z" />
<EventRecordID>2683831</EventRecordID>
<Channel>Operations Manager</Channel>
<Computer>SCOM01.xxxxx.LOCAL</Computer>
<Security />
</System>
- <EventData>
<Data>Concerto Systems Management</Data>
<Data>Microsoft.SystemCenter.CollectAlerts</Data>
<Data>SCOM01.xxxxx.LOCAL</Data>
<Data>{1189BAF9-AFDC-ADA0-196D-D749A369A350}</Data>
<Data>37320</Data>
</EventData>
</Event>

Hi,
Please refer to the Kevin's reply in the thread below:
https://social.technet.microsoft.com/forums/systemcenter/en-US/f88bf528-d896-495f-ada2-abfda37e634e/a-bind-data-source-in-management-group-xyx-has-posted-items-to-the-workflow-but-has-not-received-a
Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Subscriber Support, contact [email protected]

Similar Messages

  • AWR snapsohots not generating after restart of the instance

    oracle : 10.2.0.3
    OS : Linux 64-bit
    Issue : AWR snapshots are being generated after restart of the instance.
    I restarted the instance at 31.01.2010 8 AM CST.
    SQL> select STARTUP_TIME from  v$instance;
    STARTUP_T
    31-JAN-10
    SQL> select max(begin_interval_time)   from DBA_HIST_SNAPSHOT
      2  /
    MAX(BEGIN_INTERVAL_TIME)
    31-JAN-10 08.00.04.996 AMto my surprise the AWR reports are not being generated from 8 AM till now 8PM.
    What could be the reason ? Do I need to do any thing manual initiation ?
    Edited by: [email protected] on Feb 1, 2010 8:41 AM

    SELECT STARTUP_TIME     FROM DBA_HIST_SNAPSHOT WHERE STARTUP_TIME > TRUNC(SYSDATE);
    post results from SQL above

  • Dialog box says firefox running but not responding must restart

    dialog box appeared stating that firefox is running but not responding, must close and restart

    See "Hang at exit":
    * http://kb.mozillazine.org/Firefox_hangs
    * [[Firefox hangs]]

  • On initial startup, wi-fi not connected, must restart

    Whenever I start up the iMac, the wi-fi fan is blank, and the error message says wi-fi hardware not connected.  After I restart, everything works fine.  Minor issue, but it would be nice if everything worked fine on initial startup.

    A couple of things to check are System Preferences - Network and make sure the Remember networks this computer has joined box is checked. Then ensure your network is the top choice in the Prefered Networks choice.
    Also if you are in the habit of restarting your mac daily I'd recommend re-reading your manual where it clearly says:
    Putting Your iMac to Sleep
    If you‘ll be away from your iMac for less than a few days, put it to sleep. When your iMac is in sleep, its screen is dark. You can quickly wake your iMac and bypass thestartup process.

  • Fiefox not responding must hit ctrl,alt,deleate and close process.

    1) closing firefox .firefox not responding.Must hit ctrl,alt,deleat and go to processes and stop process.
    2)when moving from one site to another after visiting about 3 or 4 sites unable to leave page,get indicator " loading"which continues forever page does not change.Must restart firefox as outlined in item 1) very frustrating this is getting as bad as IE

    found plugins and disable all so far so good

  • SCOM does not generate alert for logical disk space

    Hi,
    Today we noticed that one of agent in SCOM has drive space below 5% and 500 MB but SCOM did not generate any alert.
    I have also verified that there is no override set for this agent's logical disks.  I have also verified that discovery is able to discover all disks on server but monitoring is not working as expected.
    I have flushed health service on agent but it didn't help.
    When I gone through event logs on agent, I found below events:
    Log Name:      Operations Manager
    Source:        HealthService
    Date:          5/26/2014 5:13:05 AM
    Event ID:      1103
    Description:
    Summary: 6 rule(s)/monitor(s) failed and got unloaded, 1 of them reached the failure limit that prevents automatic reload. Management group "XXXXXXXX".
    This is summary only event, please see other events with descriptions of unloaded rule(s)/monitor(s).
    Log Name:      Operations Manager
    Source:        HealthService
    Date:          5/26/2014 5:14:21 AM
    Event ID:      1206
    Task Category: Health Service
    Description:
    Rule/Monitor "Microsoft.Windows.Server.2008.LogicalDisk.FreeSpace", running for instance "F:" with id:"{36ED7395-3798-A361-5017-327F6FA50030}" failed,
    got unloaded and reached the failure limit that prevents automatic reload. Management group "XXXXXXXXX".
    Please let me if what we need to do here.
    Thanks.

    Do this
    Change startup type to Window Management Instrumentation (WMI) Service to disabled
    Stop the WMI Service; you may need to stop IP Helper Service first or other dependent services before it allows you to stop WMI Service
    Rename the repository folder:  C:\WINDOWS\system32\wbem\Repository to Repository.old
    Open a CMD Prompt with elevated privileges
    CD windows\system32\wbem
    for /f %%s in ('dir /b /s *.dll') do regsvr32 /s %%s
    Set the WMI Service type back to Automatic and start WMI Service
    cd /d c:\  ((go to the root of the c drive, this is important))
    for /f %%s in ('dir /s /b *.mof *.mfl') do mofcomp %%s
    Reboot the server
    Blog: http://theinfraguys.com
    Follow me at Facebook
    The Infra Guys Facebook Page
    Please remember to click Mark as Answer on the answer if it helps you in anyway

  • SCOM 2012R2 - Is there a way to alert when subscriptions have stopped

    Hi,
    I have had subscriptions stop in the middle of the day for no apparent reason.
    Rebooting the SCOM boxes fixes it (not good I know).
    Is there a way for SCOM to alert if subscriptions (emails) are not working, even though alerts are being generated?
    Thx,
    John Bradshaw

    Thx SK
    All the above were fine....Eventually I rebooted everything and emails flooded in,
    but my question is, how to monitor when emails are not sending/coming in?
    As an example: Is there a way to monitor if an email has not been received in an Outlook folder from a certain sender for say 60 minutes? If an alert can be figured out for that, then, since SCOM sends so many (and I get them all), then a blank period of
    60 mins in my Outlook SCOM folder would tell me something is not right.
    Ta,
    JB

  • SQL 2012 DB Engine [Login failed: Account locked out] alerts not received from SCOM 2007 R2

    Dear Experts,
    In our SCOM 2007 R2 environment SQL 2012 DB Engine [Login failed: Account locked out] alerts not received but we are receiving the following alerts fr the DB instance.
    1. Database Backup Failed To Complete
    2. Login failed: Password expired
    3. Log Backup Failed to Complete
    4. Login failed: Password cannot be used at this time
    5. Login failed: Password must be changed
    6. IS Package Failed.
    Why we are not receiving the "Login failed: Account locked out" ? Customers are asking the notification email alert for this Rule even I have checked the override settings everything is enabled by default same as above rules.
    What can be the issue here ?
    Thanks,
    Saravana
    Saravana Raja

    Hi,
    Could you please check the Windows security log for (MSSQLSERVER) event ID 18486? The rule should rely on this event.
    Regards,
    Yan Li
    Please remember to mark the replies as answers if they help and unmark them if they provide no help.

  • Only Alert Data is not being inserted in SCOM 2012 Data Warehouse database

    Hi All,
    Alert data is not getting inserted into SCOM Data Warehouse database since 10 days though I could see latest Performance data in DW DB.  No changes were made as far I know on SCOM servers or DB's. I had this issue few months back
    and got resolved by executing a qiery to create an entry for Data Warehouse Synchronisation server entry.
    Now I have checked the discovered inventory and could see an entry present and it is healthy. Still, latest Alert data is not getting inserted into DW DB. Please help me out.
    http://social.technet.microsoft.com/Forums/en-US/2dac4f45-4911-40dc-a220-702993188832/alert-data-is-not-present-in-scom-2012-data-warehouse-database-since-two-weeks?forum=operationsmanagergeneral
    Regards, Suresh

    Hi,
    Generally, data warehouse store a long-term data, and by default, it would keep 400 days data, I suggest check your configuration:
    How to Configure Grooming Settings for the Reporting Data Warehouse Database
    http://technet.microsoft.com/en-us/library/hh212806.aspx
    Alex Zhao
    TechNet Community Support

  • SNMP SCOM 2012R2 Troubleshooting...... Any Tips?

    Hi all,
    So I'm trying to get my UPS trap alerts in SCOM 2012R2 to work. They work in my SCOM 2007R2 environment but I get nothing in SCOM 2012R2. In SCOM 2012R2 I have also been able to receive traps from our Bluecoat so the rule looks to be working.
    Device has been configured to point to the SCOM 2012R2 MS used to manage Network devices
    I have discovered the device and it is Healthy
    I have created a Rule targeted to Node and no OID specified and Rule Cat: Alert
    So i really need to know how I can see why the UPS traps are ignored in SCOM 2012R2. I have also used Wireshark to confirm the trap is reaching the server.
    SCOM is just not processing the trap. I think it has to do with the targeting but I need to know what to target. I also tried creating a rule targeted to Host and still no luck.
    Between SCOM 2012R2 and SCOM 2007R2 the targeting has changed so I can't even replicate the existing setup.
    How can i best see why SCOM is failing to alert on these traps?
    Just some additional information the UPS is listed as certified in SCOM 2012R2. Sadly the Bluecoat is not certified and its the only one working.
    Thanks
    Mike

    Thanks Roger,
    The SNMP traps are are working for the Bluecoat, so SNMP traps are being received and generating alerts but the traps for the UPS fail to generate alerts on the rule I created. The device was discovered as a SNMP V2 device and Wireshark shows the traps are
    delivered to the MS as SNMP v2 traps.
    Reading this blog, they use a different method and suggest using an collection based SNMP trap Event. So I guess the SNMP service generates an event on the MS and this rule alerts on that event. Is this correct?
    I find it strange that the bluecoat will generate an alert but the UPS won't. The only thing I could see that was different was if I checked the members of the SNMP group the Bluecoat type is listed as a Node and the UPS type is listed as a Host. 
    I was really hoping to find a way to check a log file or run a trace or something to see why the Rule is not alerting when a SNMP trap is received to the MS.
    Thanks for the reply
    Mike

  • Migration from SCOM 2007R2 to SCOM 2012R2

       Hello to all. I have a SCOM 2007R2 environment with 3 servers:
       1- SRV #1 has RMS and WebConsole roles.
       2- SRV #2 has Gateway role.
       3- SRV #3 is Shared SQL Server with SCOM DB + Reporting roles.
       This deplyoment monitors ~600 and I´m planning to take it to SCOM 2012 R2.
       Question 1:
       I already read several articles but for me is not clear if I can just insert SCOM 2012 R2 Management Server and Gateway on a existing 2007R2 Management Group (of course that it already has a RMS), begin migrating agents to it
    and at the end  decomission SCOM 2007 R2 Servers. All articles that I read mention just two options:
    a) Side-by-Side migration (install SCOM 2012R2 on a NEW Management Group and begin agent migration to this NEW Management Group) and
    b) Upgrade (run in-place upgrade to SCOM 2012 R2 if current SCOM 2007R2 attend SCOM 2012 R2 requirements - if not, install new SCOM 2007R2 servers with supported requirements and run upgrade in-place). Considering this info.,
    is it possible to run SCOM 2007 R2 --> 2012 R2 migration as I previously mentioned?
       Question 2:
       Does SCOM 2007R2 agent reports to SCOM 2012R2 Management Servers?
       Question 3:
       Is it possible to run direct migration (not pass through SCOM 2012 - withouy R2) using the path SCOM 2007 R2 --> SCOM 2012 R2 path?
       Regards, EEOC.

    Hi,
    Q1:
    It is suggested to do side by side migration, and for upgrading from System Center Operations Manager 2007 R2, please refer to the below link:
    http://technet.microsoft.com/en-us/library/hh476934.aspx
    Q2:
    You can multi-home the clients to both SCOM 2007R2 & 2012, but 2007 agent can’t communicate with a SCOM2012 MS.
    Q3:
    If we use side by side migration, then we don't need to pass through SCOM 2012, but if we use in-place-upgrade, then we must follow the below path:
    SCOM 2007R2 CU4+ >
    SCOM 2012 RTM > SCOM 2012 SP1 > SCOM 2012 R2
    More details:
    http://blogs.technet.com/b/kevinholman/archive/2014/01/20/do-i-need-a-specific-cumulative-update-release-ur-in-order-to-upgrade-to-scom-2012-or-2012-sp1-or-2012-r2.aspx
    Regards,
    Yan Li
    Regards, Yan Li

  • SCOM 2012 - Event ID 6024 (Launching Restart Health Service. Health Service exceeded Process\Handle Count or Private Bytes threshhold.)

    I am getting event ID 6024 (LaunchRestartHealthService.js : Launching Restart Health Service. Health Service exceeded Process\Handle Count or Private Bytes threshhold.) within an interval ranging from 12-17 minutes.
    I am using SCOM (2012 SP1 and 2012 R2) on Windows Server (2008 R2 / 2012 / 2012 R2).
    This issue is occurring only on agent managed computer (acting as proxy and discover managed objects on other computers setting is enabled) which i am using for monitoring my device. All discovery scripts (powershell) and monitors are targeted on this agent
    managed computer.
    There are total 80 discoveries and 900 monitors. 55 discoveries and 550 monitors are enabled by default and rest all are disabled.
    I am seeing event id 6024 frequently only on agent managed computer. Can anyone help me to resolve this issue.
    Thanks,
    Mukul

    To fix issue 6024, you can follow below steps:
    1. Open SCOM console. Go to Monitors -> Agent -> Entity Health -> Performance -> Health Service Performance -> Health Service State.
    2. Double click Health Service Handle Count Threshold monitor and go to Overrides page.
    3. Click Override -> For a specific object of Class: Agent. Select the affected SCOM agent QMXServer.
    4. Check on the parameter Agent Performance Monitor Type - Threshold. Change the default value 2000 to an appropriate value, like 4000. You can check the Health service handle count alert in SCOM console to get the value when the alert is generated. You
    can also launch the health explorer against QMXServer to check the value when the monitor state is changed from healthy to critical.
    Also you can refer below links
    http://blogs.technet.com/b/omx/archive/2013/10/17/health-service-restarts-on-service-manager-servers-with-scom-agents.aspx
    Please remember, if you see a post that helped you please click "Vote As Helpful" and if it answered your question, please click "Mark As Answer"
    Mai Ali | My blog: Technical | Twitter:
    Mai Ali

  • Could not generate stub object - The element type "META" must be terminated by the matching end-tag "".

    I am getting the following error message when I try invoking
    a webservice.
    Could not generate stub objects for web service invocation.
    Name: ProgrammePrivilege. WSDL:
    https://clientaccweb.reseaudistinction.com/CardHolderInfo.asmx?WSDL.
    org.xml.sax.SAXException: Fatal Error: URI=null Line=11: The
    element type "META" must be terminated by the matching end-tag "".
    It is recommended that you use a web browser to retrieve and
    examine the requested WSDL document for correctness. If the
    requested WSDL document can't be retrieved or it is dynamically
    generated, it is likely that the target web service has programming
    errors.
    The problem is, the webservice is working fine, the
    application was working yesterday, the error message just appears
    after a couple of days and I have to refresh the service in the CF
    Administrator. Once I refresh it, everything starts working again.
    Anyone else got this problem? ANY help would be appreciated!
    If you guys need my code anyway, I can attach it but like I
    said, everything works for a couple of days, then, out of the blue,
    it stops working so I doubt that it's my CFINVOKE that's the
    problem...

    Similar kind of problems here - reported back to Adobe a
    couple of months ago, so let's wait and hope for the best. My
    problems have related to registering multiple web services and
    executing them. One problem is that, If I register two identical
    (and quite complex) web services, I can only execute either of
    them. After CF restart, either of them works, but invoking the
    other doesn't work.
    For example; CF_Restart -> Try A first, A works -> B
    doesn't. Also, CF_Restart -> Try B first, B works -> A
    doesn't.
    CFMX7.0.2, Apache 2.2, WinXP

  • NImax.exe has generated errors. You must restart the program, a log file is being created.

    NImax.exe has generated errors. You must restart the program, a log file is
    being created.
    This error occurs just after bootup, no programs started except windows..
    Running Windows 2000 latest version on a brand new computer.
    (pent 4 3.0 ghz 500MB ram).
    Can anyone help me with this problem? Happened after install Labview 7.0
    express. Installed twice and same problem occured with both installs.
    Labview 7.0 is the only thing installed right now. Also selected "Visual
    Basic Support" install from driver cd's.
    One other thing I just noticed. System info reports 2 processors and I
    think I only have one.
    TIA

    Happy update.
    After ignoring this problem for awhile and installing some NI DAQ boards,
    this problem is not happening anymore.
    Would urge NI to investigate further though. Messed me up for a couple of
    days, and still don't know why it happened.
    Much thanks to those who helped.
    JJ
    "JJF" wrote in message
    news:qB6Hb.48702$VB2.90660@attbi_s51...
    > One other point, I found out this is a message generated by drwtsn32. Can
    > get rid of the error by unchecking "show visual feedback on errors" box,
    but
    > don't like that fix. Still need help.
    >
    > Thanks,
    >
    > JJ
    >
    > "JJF" wrote in message
    > news:%JRGb.138921$8y1.419649@attbi_s52...
    > > Hi Nirmal and all,
    > >
    > > Happy Holidays to you too, and thanks for the reply.
    > >
    > > Making progress. Did all the uninstalling and registry editing as you
    > > suggested. Also, updated Win2K at Microsoft.com as suggested.
    > > Re-installed with default settings of LV express 7.0. Now I only get
    > the
    > > error when I exit NImax.
    > >
    > > Also, my p2p home network is not that hot. Have it set up as a
    workgroup.
    > > Sometimes when I boot up I have file access between the two computers
    and
    > > sometimes windows explorer can't find the workgroup network path
    (between
    > > the two computers). Both computers can always access the internet
    though.
    > > Using a 4 port Linksys cable/dsl router on a cable modem. Using XP
    home
    > > edition on base computer (the one set up for the isp) and Win2K on the
    > other
    > > computer.
    > >
    > > Also, any idea where this log file is going? Thought it was part of the
    > > event viewer but the errors in the event viewer don't seem to correspond
    > to
    > > the NImax.exe logging event now. There is a file in
    > > "winnt\sytem32\config\software.log" that seems to change at about the
    same
    > > time but I can't access the file because it is in use by the system.
    > >
    > > Using NImax ver 3.02.3005. Do you know if I can download "NI
    measurement
    > > and automation explorer" and/or the driver cd's from NI.com? Maybe I
    have
    > a
    > > flaky disk or something. I have a feeling it may also have to do with
    the
    > > "on again/off again" network neighborhood connection problem.
    > >
    > >
    > > Thanks again,
    > >
    > > JJ
    > >
    > >
    > >
    > > "Nirmal Sharma" wrote in message
    > > news:506500000005000000AE470100-1068850981000@exch​ange.ni.com...
    > > > Hi,
    > > > Happy cristmas & new year for you & ur brand new pc...
    > > >
    > > > How are you uninstalling & then installing LV in your pc ?
    > > >
    > > > I suggest to remove complete LV (Remove All option) from your
    > > > computer. Once uninstallation is completed, go to windows registry -
    > > > by windows start -> run -> regedit -> Enter
    > > >
    > > > Goto HKEY_LOCAL_MACHINE-> SOFTWARE -> National Instruments - Delete
    > > > this folder (National Instruments folder)
    > > >
    > > > Remove any other foloder/file related to NI's software. Be very
    > > > cautious while deleting files from windows registry bcoz wrong file
    > > > deletion may hang your whole system.
    > > >
    > > > Restart your computer..hope it should bootup without any errors.
    > > >
    > > > Now as answered by Alexander, update windows.
    > > >
    > > > After updating, bootup your system. If it boots up without any error
    > > > message, install LV with the typical (default installation).
    > > >
    > > > Hope this helps. Your feedbacks are welcome.
    > > >
    > > > Best Regards,
    > > > Nirmal Sharma
    > > > India
    > >
    > >
    >
    >

  • SCOM 2012R2 – Issues with Chained Gateways

    We recently migrated from our SCOM 2012 SP1 to 2012R2.  In both versions of SCOM, we have set up designated chained gateway servers, whose sole purpose is to communicate between untrusted forests and the RMS.  It goes as follows:  Untrusted
    Forest (AD Server) -> Chained SCOM Gateway -> RMS.  For example, ACLOUD -> SCOMGW01 -> SCOM01 
    We recently added new site and duplicated the gateway installation process from our current site to our new site.  From the example above, rather than reporting upstream to the chained site gateway (SCOMGW01), ACLOUD
    attempts to reach RMS server directly (SCOM01), which it has no route to resulting to the error event below:
    “The OpsMgr Connector could not connect to [RMS Server]:5723.  The error code is 10061L (No connection could be made because the target machine actively refused it).”

    That was a great post, thanks!  Unfortunately, because we are using 2012 R2 and no longer 2012, I saw some noticeable differences in the cmdlets.  All else equal, I think this is the part of our script that is the issue.  Because this exact
    same part worked with our 2012 configurations.  Do you see anything here that may be the problem, or anything new/replaced for 2012 R2?
    $CAName = "CA01.xxxxx.LOCAL\xxxxx-ROOTCA"
    $SCOMApprovalToolPath = "C:\Program Files\Microsoft System Center 2012 R2\Operations               Manager\Server\Microsoft.EnterpriseManagement.GatewayApprovalTool.exe"
    $SCOMGatewayInstallFilesPath = "C:\SCOMGatewayInstallationFiles"
    $SCOMDefaultManagementServer = "SCOMGW01.xxxxx.LOCAL"
    $SCOMFailoverServer = ”SCOMGW02.xxxxx.LOCAL”
    Our management server (RMS) is SCOM01.xxxxx.local (xxxxx changed, of course) with SCOM02.xxxxx.local as the failover MS.  SCOMGW01 & SCOMGW02 are our chained gateways.

Maybe you are looking for