Quantcast
Channel: Configuration Manager 2007 Software Updates Management forum
Viewing all 700 articles
Browse latest View live

SCCM 2012 Secondary site Client Communication for SUP

$
0
0

 Hi,

We have an SCCM 2012 Setup and here is the design CAS-->Primary-->Secondary site servers.

SUP is configured for Secondary site too. Boundaries are defined with IP Address Range and is proper.

Some clients are comminicating to Secondary site for updates. Downloading successfully and installing the software.

But some of the clients are communicating to primary site for updates and retain with the status "Downloading update"

I have checked the locationservices.log and it is fluctuating between Primary and secondary MP.

2 proxy MP errors in the last 10 minutes, threshold is 5. LocationServices 4/5/2013 11:35:59 AM 768 (0x0300)
Executing Task LSSiteRoleCycleTask LocationServices 4/5/2013 11:51:59 AM 4200 (0x1068)
1 proxy MP errors in the last 10 minutes, threshold is 5. LocationServices 4/5/2013 11:51:59 AM 4200 (0x1068)
Executing Task LSSiteRoleCycleTask LocationServices 4/5/2013 11:51:59 AM 5648 (0x1610)
2 proxy MP errors in the last 10 minutes, threshold is 5. LocationServices 4/5/2013 11:51:59 AM 5648 (0x1610)

I have also checed "DataTransferService.log" and found more errors.

Error retrieving manifest (0x800704cf).  Will attempt retry 7 in 1920 seconds. DataTransferService 4/5/2013 11:51:59 AM 5576 (0x15C8)
DTSJob {141CB5AE-8EF2-464D-8D8C-68B868EE7F7B} in state 'DownloadingManifest'. DataTransferService 4/5/2013 11:51:59 AM 4200 (0x1068)
Failed to send request to /SMS_DP_SMSPKG$/1fd86ee1-ece0-41ae-a2b8-5a2b305746d4 at host xxxxxxxx.xxxxxxx.com, error 0x2efe DataTransferService 4/5/2013 11:51:59 AM 4200 (0x1068)
[CCMHTTP] ERROR: URL=https://xxxxxxxx.xxxxxxx.com:443/SMS_DP_SMSPKG$/1fd86ee1-ece0-41ae-a2b8-5a2b305746d4, Port=443, Options=192, Code=12030, Text=ERROR_WINHTTP_CONNECTION_ERROR DataTransferService 4/5/2013 11:51:59 AM 4200 (0x1068)
Raising event:

instance of CCM_CcmHttp_Status
{
 ClientID = "GUID:0DA907D5-1709-4B10-B627-61E289FD7149";
 DateTime = "20130405062159.643000+000";
 HostName = "xxxxxxxx.xxxxxxx.com";
 HRESULT = "0x80072efe";
 ProcessID = 4260;
 StatusCode = 600;
 ThreadID = 4200;
};
 DataTransferService 4/5/2013 11:51:59 AM 4200 (0x1068)
Successfully sent location services HTTPS failure message. DataTransferService 4/5/2013 11:51:59 AM 4200 (0x1068)
Error sending DAV request. HTTP code 600, status '' DataTransferService 4/5/2013 11:51:59 AM 4200 (0x1068)
GetDirectoryList_HTTP mapping original error 0x80072efe to 0x800704cf. DataTransferService 4/5/2013 11:51:59 AM 4200 (0x1068)
GetDirectoryList_HTTP('https://xxxxxxxx.xxxxxxx.com:443/SMS_DP_SMSPKG$/1fd86ee1-ece0-41ae-a2b8-5a2b305746d4') failed with code 0x800704cf. DataTransferService 4/5/2013 11:51:59 AM 4200 (0x1068)
Error retrieving manifest (0x800704cf).  Will attempt retry 7 in 1920 seconds. DataTransferService 4/5/2013 11:51:59 AM 4200 (0x1068)

my query is how some of the clients are communicating primary site server for updates even though the boundary details are properly configured and Secondary site is configured with sup. Also need to know (as per the log "DataTransferService.log")how come the clients are communicating SSL port for updates. Plz help in resolving the issue.


Trying to deploy MS14-051/KB 2976627, SCCM reporting 'Update is not required'?

$
0
0

hey all,

i'm trying to deploy MS14-051/KB 2976627 as part of our August Windows updates, and i've noticed that over 90% of our computers have not installed the update yet, SCCM report shows 'Update is not required'.

if i dig through the links in the report to any computers that are affected, i get a blank page with no details where there should be a description/reason outlining why the update is not required.

from what i've read, there aren't any other updates required for this to be installed, and it's a critical update so i'm confused as to why it isn't installing.  we're running IE 9 on Windows 7 x64 for most of our computers.

i reviewed the other August updates that are part of this deployment, and they appear to be installing fine.

any help is greatly appreciated!

SUP Updates Failed on Client - ISusInternal::GetEulaText failed, hr=80240033

$
0
0

Hi

We have deployed SCCM 2007 SP2 R3 in Native Mode, after deploying the SCCM clients we tried pushing some sample updates to test machies (2 systems, 1 Win XP and 1 Win 7). After the scan that happens automatically on schedule or when initiated manually from client's control panel (Software Update Cycle) the following error is logged:

 

WUAHandler.log:

Async searching of updates using WUAgent started.  WUAHandler 11/16/2010 6:49:48 PM 4056 (0x0FD8)

Async searching completed. WUAHandler 11/16/2010 6:49:51 PM 3364 (0x0D24)

Received 'SucceededWithErrors' code from WUA during search. Check WindowsUpdate.log in Windows directory. WUAHandler 11/16/2010 6:49:51 PM 4056 (0x0FD8)

WU Agent reported the following 1 warning messages: WUAHandler 11/16/2010 6:49:51 PM 4056 (0x0FD8)

HResult: 0x80240033 Context: uecGeneral Msg: The license terms of one or more updates are unavailable.. WUAHandler 11/16/2010 6:49:51 PM 4056 (0x0FD8)

 

WindowsUpdate.log:

2010-11-16 18:49:51:651 1832 d24 COMAPI WARNING: ISusInternal::GetEulaText failed, hr=80240033

 

I can see the EULA in the WSUSContent directory on SUP Server, can also open https://<SUP_Server>/WSUSContent:8531 from clients and can browse the contents listed upto the EULA.

Also ran WSUSUtil reset and initiated Synchronization manually on SUP but still the clients show same error.

 

Kindly help.

Regards

Taranjeet Singh


zamn

Failed to download updates to the WUAgent datastore (error = 0x8009000 / -2146893815)

$
0
0
We have a central site (SRVSC00) and two primary child sites (SRVSC01/02) in our SCCM structure. All clients (3700) are connected to the child sites and reports to central site. All SU deployments are being deployed from central site. WSUS server (3.0 Sp2) is installed on each site (port 8530).

I've deployed a patch (for the first time to all workstations) and over 130 clients failes.

WUAHandler.log:
"Failed to download updates to the WUAgent datastore (error = 0x8009000)"

windowsupdate.log:
.
.
.
2010-02-26 10:19:28:571 2304 b90 COMAPI WARNING: ISusInternal::GetEulaText failed, hr=80240033
2010-02-26 10:19:28:571 2304 b90 COMAPI WARNING: ISusInternal::GetEulaText failed, hr=80240033
2010-02-26 10:19:28:571 2304 b90 COMAPI WARNING: ISusInternal::GetEulaText failed, hr=80240033
2010-02-26 10:19:28:571 2304 b90 COMAPI WARNING: ISusInternal::GetEulaText failed, hr=80240033
2010-02-26 10:19:28:571 2304 b90 COMAPI WARNING: ISusInternal::GetEulaText failed, hr=80240033
2010-02-26 10:19:28:571 2304 b90 COMAPI WARNING: ISusInternal::GetEulaText failed, hr=80240033
2010-02-26 10:19:28:571 2304 b90 COMAPI WARNING: ISusInternal::GetEulaText failed, hr=80240033
2010-02-26 10:19:28:571 2304 b90 COMAPI WARNING: ISusInternal::GetEulaText failed, hr=80240033
2010-02-26 10:19:28:571 2304 b90 COMAPI WARNING: ISusInternal::GetEulaText failed, hr=80240033
2010-02-26 10:19:28:586 2304 b90 COMAPI WARNING: ISusInternal::GetEulaText failed, hr=80240033
2010-02-26 10:19:28:586 2304 b90 COMAPI WARNING: ISusInternal::GetEulaText failed, hr=80240033
2010-02-26 10:19:30:086 1816 1494 DnldMgr ***********  DnldMgr: Copy update to cache [UpdateId = {A9E325EF-3002-4D74-9CC4-2CE1967678FB}.104]  ***********
2010-02-26 10:19:30:086 1816 1494 DnldMgr WARNING: CryptAcquireContext failed with 0x80090009.
2010-02-26 10:19:30:086 1816 1494 DnldMgr WARNING: GenerateHash failed with 0x80090009.
2010-02-26 10:19:30:086 1816 1494 DnldMgr WARNING: GenerateDownloadDirName failed with 0x80090009.
2010-02-26 10:19:30:086 1816 1494 DnldMgr   * WARNING: Copy update to cache failed with exit code = 0x80090009
2010-02-26 10:19:30:086 2304 45c COMAPI WARNING: ISusInternal::CopyUpdateToCache2 failed, hr=80090009

2010-02-26 10:19:30:196 2304 45c COMAPI -------------
2010-02-26 10:19:30:196 2304 45c COMAPI -- START --  COMAPI: Search [ClientId = CcmExec]
2010-02-26 10:19:30:196 2304 45c COMAPI ---------
2010-02-26 10:19:30:196 1816 173c Agent *************
2010-02-26 10:19:30:196 1816 173c Agent ** START **  Agent: Finding updates [CallerId = CcmExec]
2010-02-26 10:19:30:196 1816 173c Agent *********
2010-02-26 10:19:30:196 1816 173c Agent   * Include potentially superseded updates
2010-02-26 10:19:30:196 2304 45c COMAPI <<-- SUBMITTED -- COMAPI: Search [ClientId = CcmExec]
2010-02-26 10:19:30:196 1816 173c Agent   * Online = No; Ignore download priority = Yes
2010-02-26 10:19:30:196 1816 173c Agent   * Criteria = "UpdateID = '0848ac63-ce07-4477-bc79-dae121d6bdda' AND DeploymentAction = *"
2010-02-26 10:19:30:196 1816 173c Agent   * ServiceID = {3DA21691-E39D-4DA6-8A4B-B43877BCB1B7} Managed
2010-02-26 10:19:30:196 1816 173c Agent   * Search Scope = {Machine}
2010-02-26 10:19:33:446 1816 173c Agent   * Added update {0848AC63-CE07-4477-BC79-DAE121D6BDDA}.104 to search result
2010-02-26 10:19:33:446 1816 173c Agent   * Found 1 updates and 48 categories in search; evaluated appl. rules of 167 out of 2088 deployed entities
2010-02-26 10:19:33:602 1816 173c Agent *********
.
.
.

I've tried wsusutil reset in case the problem was eula. But this doesn't seem to have resolved the problem - if I did it correct :)

Can anyone help me?

Preferred SUM in SCCM?

$
0
0

I was wondering how and what others are doing. My preference was always on single package with multiple Deployment Groups or ADR,  since this way I never got duplicate updates reusing the same package and starting fresh every year.
What are others doing?

Enforcement State Unknown but updates visible on clients?

$
0
0

Hi all. A strange issue has just appeared in one of our environments with software update deployments. It would appear the report "Enforcement States for a Deployment" is stuck showing clients as "Enforcement State Unknown".

The clients can see updates no problem at all, so functionally I have no issue. Updates are available and install correctly, but my issue is my deployments are now completely blind in that I have no status updates at all - 4+ days now and the status hasn't changed. I can't see any issue on the client side - StateMessage.log indicates it can successfully forward messages.

Weirdly, this issue only seems to be affecting Software Update Deployments as software distribution reports are updating their statuses as expected.

I've checked inboxes for blacklogs and can't see anything too out-of-the-ordinary, and I've also tried the "force state refresh" VBS that's doing the rounds on these boards. I've even tried reinstalling the client and recreating the deployments, but all these actions have me believe the issue is with my SCCM server only.

Can anyone help me?

EDIT - The plot thickens somewhat. The report "Evaluation states for a deployment" has just changed to "Evaluation Succeeded", but  "Enforcement States for a Deployment" remains at "Enforcement State Unknown". HELP!


Cannot Download Updates In SCCM: There was an error downloading the update (16389)

$
0
0

When trying to download and deploy updates using SCCM we receive this error message everytime.  Despite that, the patches always seem to download to the specified folder.

I have searched the forums, this is not due to an expired update and a reboot has not fixed it (in fact we had the exact same error message with the previous site installation).

waiting for another installation to complete

$
0
0

Hello,

Microsoft security updates are deployed using Deployment Management. We do not see any process or SCCM jobs running in the particular client. But still many workstations are falling in the same state.

Please let me know how this can be solved.

Regards,

Boopathi S


waiting for content

$
0
0

Hello,

Security updates are deployed by deployment management. I see machiens which are under "Downloading Updates" are still in the same state for more number of days.

I have restarted the smsagent service and observed that it is still under same "waiting for content" state in SCCM Client Center->Running Executions -> SMS/SCCM Jobs.

Please let me know how this can be resolved.

Regards,

Boopathi S

KB2597166 - Issues with Excel Security Update

$
0
0

We have found problem in excel file (2007 or 2010 version) when we sort the data of 10000 or more row in excel faced below error: 
"Excel cannot complete this task with available resources. Choose less data or close other applications".
The issue is resolving after uninstalling the KB2597166 patch. The problem is how to Silently uninstall the patch
We got two ways to manually uninstall (Add/remove programs and Uninstall string from Regedit), but didnt get luck on the silent switch with the string. Please help on this.


scorpITs | http://scorpITs.blogspot.com

SCUP2011 file cert error

$
0
0
You cannot vote on your own post
0

Hi,

I am facing problem regarding SCUP deployment .. Would like to know if there is any possibilities that it is caused by the self-signed certificate itself or anything along the line.

below is the error list extracted from logfile.

CabUtilities.CheckCertificateSignature    File cert verification failed for c:\Program Files\Update Services\autest.cab with 2147942402

WsusTestKeys.AreTestKeysAllowed    Server test key check: test keys are NOT allowed

CabUtilities.CheckCertificateSignature    File cert verification failed for \\...

 

Publisher.PublishPackage    PublishPackage(): Operation Failed with Error: Verification of file signature failed for file: \\....


PublishItem: InvalidException occurred during publishing: Verification of file signature failed for file: \\...cab
Publish: A fatal error occurred during publishing :Signature verification exception during publish, verify the WSUS certificates and advanced timestamp setting are properly configured.

 

Greatly appreciate if anyone could help on this. Thanks in advance!!

WARNING: Failed to evaluate Installed rule, updateId = {189A8F50-0C3A-4FDF-8BC2-BC23A3EB11FB}.101, hr = 80242013

$
0
0

Hello all,

I've been looking everywhere to resolve this issue.

Anyone know how should I progress resolving this error on WindowsUpdate.log :

WARNING: Failed to evaluate Installed rule, updateId = {189A8F50-0C3A-4FDF-8BC2-BC23A3EB11FB}.101, hr = 80242013
We have this same error on hundreds of clients.

ConfigMgr 2007 SP2 R2, Windows Server 2008 R2.

I've checked methods here http://social.technet.microsoft.com/Forums/en-US/e50748c4-945d-4813-8099-9acc9b78f612/warning-failed-to-evaluate-installed-rule-updateid-2bb8f7bcd043419eb1d3337501fb7bb7101?forum=w7itproinstall but it does not help.


---Pat

KB2984972,KB2952664 Issues

$
0
0

Hello All,

We are using SCCM 2007t install the security updates on our environment.

In few machines the KB2984972,KB2952664 are keep on prompting to install throgh CM client and getting failed every time .Though it is showing installed in the control panell

Requesting help from you guys

Thanks

Joe

Patched Deployments issue: "waiting for another installation to complete"

$
0
0

I have some percent of computers which runs into above state in monthly patch deployments. I could minimal information from execmgmr, udpatesdeployment.log, CliSpy and Client Center etc tools but that doesn’t offer much help to nail down the issue completely. Have any of you dealt to resolve such issue successfully ? Is there any efficient way to handle this ?

 

It seems I haveDeploymentA, waiting for the completion of DeploymentB, which in turn waiting for the completion ofDeploymentC. Is there any better approach I could take to nail down and resolve the issue. One of my finding is,  KB articles installs (SCCM R3, SCCM Asset Intelligence) causes these issue as they restart (upgrade sort of execution) the agent during the execution, I need to confirm these


Vasu

Download failed for content under context System, error 0x800705b4

$
0
0

Hi,

many Windows 7 32 bit Entterprise endion systems are fall under "Failed to install Update" state. Found the below errors in the below logs.

CAS.log

Download failed for content 1815dc40-9065-4184-926f-b03ebb4430c8.1 under context System, error 0x800705b4

Download failed for download request {4DDF6527-434D-4B39-8269-8B0B0C8A4AAD}

CDownloadManager::OnDownloadFailed

Update Deployment.log

Failed to load Assignment ({54F48F2B-4838-4E79-8C15-FAED2504CC4D}) during update (Site_C9BB3A37-DC2B-45B0-8C17-1AC05207AC2A/SUM_3f05d6eb-dcb7-4f53-aa72-cd299d817e40) properties resolution.

Failed to open to WMI namespace '\\.\root\CCM\SoftwareUpdates\DeploymentAgent' (8007045b)

CTargetedUpdate::Save - Failed to open \\.\root\CCM\SoftwareUpdates\DeploymentAgent namespace, error 8007045b

Failed to resolve time properties on system time change, error = 0x8007045b

Failed to open to WMI namespace '\\.\root\ccm\Policy\Machine' (8007045b)

CUpdatesAssignmentPolicy - spPolicyAgent->ConnectSettings failed, error 8007045b

What will be the error. Please help me

Regards,

Boopathi S


SCUP - unable to download the catalogue giving the below error

$
0
0

Download file:   failed with message "The remote server returned an error: (404) Not Found.

We are getting the above error.

SCCM - software updates

$
0
0

Hi All,

Did anyone face an issue that all the software updates are showing as expired in the console, in SCCM 2012 R2?.

If yes than can some-one share the information what can be the remedy for the same.

Rgs,

Windows 2008 not installing all approved updates

$
0
0

Hi All,

I'm using SCCM 2007 SP2 and WSUS for patch management. I have a issue when deploying security updates to Windows 2008 R2 servers. The server identifies all patches approved in SCCM but does not install it. If I deploy the patches using WSUS only the server detects and install all the missing patches. Help please.

scheduling options for software updates

$
0
0

hey all,

hopefully i have the right forum for this question.

i've been managing the deployment of Windows updates to company computers for about a year now, and haven't run into any scheduling issues until recently (that i'm aware of, anyways).

it came to my attention that the updates i began deploying for this month have been installing on client computers earlier than they should be; in other words, the updates are installing before the installation deadline set in SCCM.

i did some reading about the available scheduling options for software updates:

http://technet.microsoft.com/en-ca/library/bb693997.aspx

from reading this, and the walk through i was given when i started with sccm, my understanding is that the first option is for scheduling the download of updates (provided the second option is set), and the second option is for scheduling the installation of the updates.  is this correct?

i've been setting the first option to ASAP so that the updates can be downloaded to the client computers, and i set the second option to the desired time so that the updates will be installed no earlier than that time.

so far i've seen a few computers installing the updates before the time that i've set, so i've set the first option to a specific time to make sure the updates don't get installed as soon as the update gets deployed.

can anyone clarify these options?  just want to make sure i'm not misunderstanding their functions.

thanks!

SCUP 2011 publishing updates with incorrect source path

$
0
0

I'm encountering an issue where scup is publishing the incorrect Source Path for updates it publishes to CM/WSUS.  When I import an update the Source Path will be a location on one of the 5 CM site server's Wsus instances (iehttp://{siteserver}:8530/12/{longguid}.cab) Which server is chosen of the 5 seems to be random.  If I get lucky and it picks the #2 server I will be able to download the package.  If it picks one of the other site servers the download fails.  I'm verifying the source path by right clicking on an update --> properties --> Content Information --> source path.

I have some workarounds for now but am looking for a permanent fix. 

Here's some details regarding our environment:

Server 1:  Primary, hosts the CM db and WSUS db, has WSUS management components installed

Server 2:  CM Site server running the DP, MP, and SUP roles.  Full WSUS install, this server is the main wsus server acting as the upstream source for the other 4 site servers.  Has rights/access to the internet.

Servers 3-6:  CM Site server running the DP, MP, and SUP roles.  Full WSUS install.  No access to the internet.

All servers run Server 2012 R2

CM version:  2012 R2

SCUP version: 2011

Viewing all 700 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>