[Okta Webinar] Learn how to a build a cloud-first strategyRegister Now

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 1641
  • Last Modified:

Sharepoint 2010 user profile synchronization is failing (status stuck at "starting")

Hi Experts, Please see if you can help...
Im trying to setup userprofile synchronization services on sharepoint 2010 (end requirement is to have all AD profile informations on sharepoint )
When attempting to start the userprofile synchronization service in sharepoint 2010
(Procedure followed as per http://www.harbar.net/articles/sp2010ups.aspx )
 , the status of the service remains at "starting" and at the same time , FIM (forefront identuty manager) service gives the following error...
The Forefront Identity Manager Service cannot connect to the SQL Database Server.

The SQL Server could not be contacted. The connection failure may be due to a network failure, firewall configuration error, or other connection issue. Additionally, the SQL Server connection information could be configured incorrectly.

Verify that the SQL Server is reachable from the Forefront Identity Manager Service computer. Ensure that SQL Server is running, that the network connection is active, and that the firewall is configured properly. Last, verify the connection information has been configured properly. This configuration is stored in the Windows Registry.

Looks like a permission issue, but all permissions prerequisits are met, like

farm account have local admin and logon locally rights. the userprofileservice application uses the farm acocunt itself and farm account has admin rights and full permission on this userprofile service application. the farm account also has database ownership on DBs like Profile DB, sync DB, social DB etc created by the userprofileServiceApplication!

I tried clearing the timer config files also.
I also verified that security token service has only windows and anonymous  auth enabled

What else can be tried to resolve this issue and achive userprofile synchronization between my AD and Sharepoint 2010?

Thanks,
0
cpcit
Asked:
cpcit
  • 5
  • 4
1 Solution
 
GeorgeGerguesCommented:
have you tried restarting the Timer service along with the SharePoint administration service . ?

that is normally the problem

also try running this at the command prompt where you have stsadm

stsadm -o execadmsvcjobs
0
 
cpcitAuthor Commented:
Restating these services and the stsadm -o execadmsvcjobs  is not making any change? Where else could be the problem?
Could it be a registry corruption / AD permission issue?...  
In my setup, i have the sharepoint farm, all services, IIS running from a single hardware and Database sitting on a MSSQL on a seperate box/hardware.

Any more tips that can be tried?
0
 
GeorgeGerguesCommented:
are you referring to a windows service or a timer job ?

Also are you getting any errors on the windows application log ?
0
Windows Server 2016: All you need to know

Learn about Hyper-V features that increase functionality and usability of Microsoft Windows Server 2016. Also, throughout this eBook, you’ll find some basic PowerShell examples that will help you leverage the scripts in your environments!

 
cpcitAuthor Commented:
What i tried restarting was the sharepoint 2010 Timer and sharepoint 2010 Administration services from 'administrative tools/services'.

windows application log gives errors (mentioned in my 1st post) like "Verify that the SQL Server is reachable from the Forefront Identity Manager Service computer. Ensure that SQL Server is running, that the network connection is active, and that the firewall is configured properly. Last, verify the connection information has been configured properly. This configuration is stored in the Windows Registry.

"

i understand something is stoping the Userprofile synch services on sharepoint/FIM services on windows  from starting (it does not talk to the database, does not create the foldersILMMA and MOSS-guid under Programfiles/Microsoft Office servers/14.0/Synchronization services/MaData

Does FIM services need specific licenses (im not using any Forefront products in my network)

Please advise.

0
 
GeorgeGerguesCommented:
FIM inside SharePoint Server does not require any licenses.

but are you able to start that services under you Central Admin : application services ?
0
 
cpcitAuthor Commented:
No I am not able to.. it keeps saying starting for a while and then status changes to stop !!! cant guess why is it failing
0
 
GeorgeGerguesCommented:
this is a windows service you should be able to see the error generated under the application log on event viewer.
0
 
cpcitAuthor Commented:
yes.. the forefront identity management service gives database connectivity errors, but donot understand why as the farm account has full rights on the database server... Is this forefront identity service a seperate licensed product ? what we have is a sharepoint 2010 Standard .. i hope the profile synchronization service is included in that.
0
 
cpcitAuthor Commented:
Updating sharepoint to latest SP and CU killed the issue
0

Featured Post

Microsoft Certification Exam 74-409

Veeam® is happy to provide the Microsoft community with a study guide prepared by MVP and MCT, Orin Thomas. This guide will take you through each of the exam objectives, helping you to prepare for and pass the examination.

  • 5
  • 4
Tackle projects and never again get stuck behind a technical roadblock.
Join Now