david_griswold
asked on
Windows Server 2008 R2 Distributed File System issues
OK, I will make this short and provide details as requested, and it may just be a silly question.
I have two Server 2K8 R2 SP1 servers running DFS replication. I have verified that this works as expected. But, when I try to use the 'Diagnostic Reports' in the DFS management MMC, it fails every time with a DCOM issue:
Cannot connect to reporting DCOM server.
Description: The RPC server is unavailable.
Last occurred: Tuesday, April 26, 2011 at 2:18:43 PM (GMT-6:00)
Suggested action: Verify that the DFS Replication Service is installed on the server and that RPC traffic is not blocked by firewalls or port filtering. For information about troubleshooting RPC issues see RPC KB 839880.
The firewall is not blocking this traffic, so I am at a loss why the actual replication works but not the test?
David Griswold
I have two Server 2K8 R2 SP1 servers running DFS replication. I have verified that this works as expected. But, when I try to use the 'Diagnostic Reports' in the DFS management MMC, it fails every time with a DCOM issue:
Cannot connect to reporting DCOM server.
Description: The RPC server is unavailable.
Last occurred: Tuesday, April 26, 2011 at 2:18:43 PM (GMT-6:00)
Suggested action: Verify that the DFS Replication Service is installed on the server and that RPC traffic is not blocked by firewalls or port filtering. For information about troubleshooting RPC issues see RPC KB 839880.
The firewall is not blocking this traffic, so I am at a loss why the actual replication works but not the test?
David Griswold
ASKER
The "DFSCMD /view <share> /full" command returns what is expected without errors.
Here is the event error when running the report:
Log Name: System
Source: Microsoft-Windows-Distribu tedCOM
Date: 4/27/2011 10:56:56 AM
Event ID: 10009
Task Category: None
Level: Error
Keywords: Classic
User: N/A
Computer: OW-FS03.domain.local
Description:
DCOM was unable to communicate with the computer ow-fs01.domain.local using any of the configured protocols.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Di stributedC OM" Guid="{1B562E86-B7AA-4131- BADC-B6F3A 001407E}" EventSourceName="DCOM" />
<EventID Qualifiers="49152">10009</ EventID>
<Version>0</Version>
<Level>2</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000 </Keywords >
<TimeCreated SystemTime="2011-04-27T15: 56:56.0000 00000Z" />
<EventRecordID>1913</Event RecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>OW-FS03.domain.l ocal</Comp uter>
<Security />
</System>
<EventData>
<Data Name="param1">ow-fs01.doma in.local</ Data>
<Binary>3C5265636F72642331 3A20436F6D 7075746572 3D286E756C 6C293B5069 643D363536 3B342F3237 2F32303131 2031353A35 363A35363A 3233343B53 7461747573 3D31373237 3B47656E63 6F6D703D32 3B4465746C 6F633D3137 31303B466C 6167733D30 3B50617261 6D733D313B 7B50617261 6D23303A30 7D3E3C5265 636F726423 323A20436F 6D70757465 723D286E75 6C6C293B50 69643D3635 363B342F32 372F323031 312031353A 35363A3536 3A3233343B 5374617475 733D2D3130 3733363036 3634373B47 656E636F6D 703D323B44 65746C6F63 3D31343634 3B466C6167 733D303B50 6172616D73 3D303B3E3C 5265636F72 6423333A20 436F6D7075 7465723D28 6E756C6C29 3B5069643D 3635363B34 2F32372F32 3031312031 353A35363A 35363A3233 343B537461 7475733D2D 3130373336 3036363437 3B47656E63 6F6D703D31 383B446574 6C6F633D32 39323B466C 6167733D30 3B50617261 6D733D303B 3E3C526563 6F72642334 3A20436F6D 7075746572 3D286E756C 6C293B5069 643D363536 3B342F3237 2F32303131 2031353A35 363A35363A 3233343B53 7461747573 3D36343B47 656E636F6D 703D31383B 4465746C6F 633D323930 3B466C6167 733D303B50 6172616D73 3D313B7B50 6172616D23 303A307D3E </Binary>
</EventData>
</Event>
Here is the event error when running the report:
Log Name: System
Source: Microsoft-Windows-Distribu
Date: 4/27/2011 10:56:56 AM
Event ID: 10009
Task Category: None
Level: Error
Keywords: Classic
User: N/A
Computer: OW-FS03.domain.local
Description:
DCOM was unable to communicate with the computer ow-fs01.domain.local using any of the configured protocols.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Di
<EventID Qualifiers="49152">10009</
<Version>0</Version>
<Level>2</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000
<TimeCreated SystemTime="2011-04-27T15:
<EventRecordID>1913</Event
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>OW-FS03.domain.l
<Security />
</System>
<EventData>
<Data Name="param1">ow-fs01.doma
<Binary>3C5265636F72642331
</EventData>
</Event>
10009 is a pretty generic error and can be caused by a host of different things, from drivers to peripheral hardware to viruses to misconfiguration in the system. Can you give us a little more info on what is on that server, what it does other than DFS, etc.?
DrUltima
DrUltima
ASKER
I think I have discovered the issue. It is a firewall issue, but not blocking - NATting. I will have to wait until tonight to push out the updated policy.
David
David
That would definitely be problematic. I will continue to monitor and wait for your update.
DrUltima
DrUltima
ASKER
OK, so the NATting issue was a non-issue. Traffic is going through - there is no blocking of ports 135 or 445 or any other ports. I have TCPDUMPs from my firewall that shows the traffic. I am at a loss now. Let me know if you would like to see that TCPDUMP file.
David
David
ASKER
Well, I think I found the solution and it is the firewall if this is correct.
https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk33371
I will push policy tonight and test and update the question tomorrow.
David
https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk33371
I will push policy tonight and test and update the question tomorrow.
David
Thanks for the update! I will continue to monitor....
DrUltima
DrUltima
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER
I was able to find an answer to my own issues. In hindsight, this was as much a Checkpoint firewall issue as it was a MS Server issue, so I should have put it in that category as well.
DrUltima