Quantcast
Channel: THWACK: Popular Discussions - Patch Manager
Viewing all 3086 articles
Browse latest View live

Getting error - unable to connect using account ...

$
0
0

We are new to Solarwinds patch manager tool. In our environment, we installed the PAS and 3 automation role servers. We have added the Solarwinds id to the local admin group on all client systems.

 

About 1800 client servers are reporting to the patch manager console. Out of these 1800 systems, 330 systems are reporting the WMI Connect as "NO". I picked 1 client system that has the WMI issue, the Computer details on the console reported the following error:

The following errors were detected or one or more datasources have exceptions:  
Exception occurred at 9/24/2013 1:44:21 AM: Unable to resolve the MAC address. Message: Retrieved MAC address for IP Address: 151.149.58.172 MAC Address: 00-50-56-9F-29-A1
ICMP Ping succeeded.
Unable to retrieve MAC address of 151.149.58.172. Error Code: 0x80004005 Message: GetMACAddress()::Error retrieving MAC address for 151.149.58.172. Error Code: 67
Unable to connect to target using WMI. Message:
The RPC server is unavailable
COM Exception: Error Code: 0x800706BA .
Unable to connect using account Domain\Id

 

I reviewed the article - SolarWinds Knowledge Base :: Troubleshooting "Access Denied" Errors in Patch Manager and followed the below steps to troubleshoot that 1 client system -

 

  • Verify you can ping the remote computer by name from the Patch Manager server. - YES
  • Verify the account specified in the error is a local administrator on the remote computer. - YES
  • Verify that you can connect to the remote computer's admin$ share with the account specified in the error: - The command completed successfully. I see a mapped drive.
  • Verify that you can make a WMI connection to the remote computer using wbemtest - From the PAS server, I ran the wbemtest and got the following error. "The RPC server is unavailable."

 

  • I was able to RDP and login to the client system using the Solarwinds id that is added to the local admin group on the client system.

 

Not sure what to do next ... Also, how do I troubleshoot 300 systems? Is there anything that I can try on all of them and reduce the numbers to more manageable size where I can get to individual systems?

 

Thanks


Upgrade existing IE versions to IE 11 via WSUS/Patch Manager

$
0
0

Hi guys,

 

I have a need to upgrade internet explorer on all Windows workstations and servers.


Is there a CAB file or package for IE 11 that I can import into patch manager and approve as part of the familiar patch cycle which will upgrade all existing versions?


I believe tthe IE 11 update was released by Microsoft a while back but its not appearing in my WSUS.


Thanks

Why do all Java Runtime packages point to packageboot?

$
0
0

Going back through 1.8.131, all JRE packages point to packageboot.exe instead of the corresponding java .exe.

And I don't see any reasoning or explanation anywhere. Can anyone explain?

Just a view questions how to use solarwinds in a correct way

$
0
0

Hi,

 

Just a view questions how to use solarwinds in a correct way:

  1. I want to remove old packages from solarwinds server to reclaim disk space.
    Is it enough to select the packages under "Administration and Reporting"/"Software Publishing"/"All Packages" and delete them?
  2. I want to clean up my WSUS Servers from formerly published packages
    I decline old packages. But it seems that they are not removed by the cleanup wizzard. Do I have to expire them per hand additionally?
  3. I want automate some of the following tasks:
    - I have to download the update files (Flash player, Adobe Reader DC and so on) in browser (out of patchmanager - so I cannot automate using patchmanager)
    - I have to mark all needed new packages under "Administration and Reporting"/"Software Publishing"/"All Packages", right click and select "Download Content"
    - For every WSUS in our environment: I have to mark all needed new packages under "Administration and Reporting"/"Software Publishing"/"All Packages" again, right click, select "Publish Packages" and hope that all packages are published successfully.

- For every WSUS in our environment: I have to mark the all new packages under Update view: "Third party updates", right click, select approve and then select the computer groups where all updates have to be deployed. If there are groups with only some of the packages they have to be approved separately - on every new update.

 

Additionally, after clicking on "Administration and Reporting"/"Software Publishing"/"All Packages" I have to wait some minutes (around 3 to 5 min) until the Package list is shown.

 

Is there something I can do more better, more efficient?

Getting error - unable to connect using account ...

$
0
0

We are new to Solarwinds patch manager tool. In our environment, we installed the PAS and 3 automation role servers. We have added the Solarwinds id to the local admin group on all client systems.

 

About 1800 client servers are reporting to the patch manager console. Out of these 1800 systems, 330 systems are reporting the WMI Connect as "NO". I picked 1 client system that has the WMI issue, the Computer details on the console reported the following error:

The following errors were detected or one or more datasources have exceptions:  
Exception occurred at 9/24/2013 1:44:21 AM: Unable to resolve the MAC address. Message: Retrieved MAC address for IP Address: 151.149.58.172 MAC Address: 00-50-56-9F-29-A1
ICMP Ping succeeded.
Unable to retrieve MAC address of 151.149.58.172. Error Code: 0x80004005 Message: GetMACAddress()::Error retrieving MAC address for 151.149.58.172. Error Code: 67
Unable to connect to target using WMI. Message:
The RPC server is unavailable
COM Exception: Error Code: 0x800706BA .
Unable to connect using account Domain\Id

 

I reviewed the article - SolarWinds Knowledge Base :: Troubleshooting "Access Denied" Errors in Patch Manager and followed the below steps to troubleshoot that 1 client system -

 

  • Verify you can ping the remote computer by name from the Patch Manager server. - YES
  • Verify the account specified in the error is a local administrator on the remote computer. - YES
  • Verify that you can connect to the remote computer's admin$ share with the account specified in the error: - The command completed successfully. I see a mapped drive.
  • Verify that you can make a WMI connection to the remote computer using wbemtest - From the PAS server, I ran the wbemtest and got the following error. "The RPC server is unavailable."

 

  • I was able to RDP and login to the client system using the Solarwinds id that is added to the local admin group on the client system.

 

Not sure what to do next ... Also, how do I troubleshoot 300 systems? Is there anything that I can try on all of them and reduce the numbers to more manageable size where I can get to individual systems?

 

Thanks

.Net Framework 4.6.2

$
0
0

I would like to install NDP462-KB3151800-X86-64-ALLOS-ENU using patch manager.   I have read the custom page installl Deploying Custom Packages with Patch Manager

 

but this deal with a .MSI install.  Does any one have any suggestions for a .exe install i would be to refer too?

 

Thank you in advance,

 

Charles

Patch Manager task stalled

$
0
0

I scheduled a patch deployment task for 23 computers to run over the weekend. It started on time and patched 17 of the 23 and then seemed to stall. I let it run for almost 5 hours but the last 3 hours it didn't make any progress. I wound up stopping the task since it seemed it would never end.

 

Has anybody run into this? What is the cause and is there any way to prevent this from happening?

 

Related, is there a way to schedule a task to start at a particular time but stop either at a certain time or after it's been running for an amount of time? For some servers we have a 3 hour patch window from midnight to 3 AM, I don't want to have to babysit the tasks to make sure they don't run longer than 3 hours.

 

Thanks.

Patch Manager errors - what do these mean?

$
0
0

This past weekend I tried to patch around 700 servers, most reported errors and failed. Are these WSUS or Patch Manager errors? Can somebody tell me what these errors mean and what needs to be done to correct them?

 

- "InvalidNamespace Invalid namespace"

- "Server execution failed COM Exception: Error Code: 0x80080005"

- "Already installed. install is not needed because the update is either not applicable or already installed"

- "Column 'taskid, devicekey, jobid, objectkey, operationname' is constrained to be unique. Value '32f07a7d-b519-45de-a70c-332b94bec811, 0c3c9b69-57ee-4b63-9d35-49559e2c5b3c, 54, xxxxxxx, Pre-Reboot' is already present."

- "Install failed. Fatal error during installation HRESULT: 0x80070643"

- "Install failed. The system cannot find the file specified HRESULT: 0x80070002"

- "Install failed. Unknown error (0x800f0902) HRESULT: 0x800F0902"

- "Install may have failed. Unable to create install session. The caller attempted to perform an operation on an interface while another operation was in progress."

- "The task and operation were aborted."

- "The update failed to download and an install will not be attempted. Download failed. Http status 408 - server timed out waiting for request Error Code: 0x8024401C"

- "The update failed to download and an install will not be attempted. Download failed. Server execution failed Error Code: 0x80080005"

- "Thread was being aborted."

- "Unknown error (0x80240438)"

- "InvalidNamespace Invalid namespace"

- "InvalidProviderRegistration Invalid provider registration"

- "ProviderLoadFailure Provider load failure"

- "Winhttp SendRequest/ReceiveResponse failed with 0x2ee7 error. Either the proxy server or target server name can not be resolved. Corresponding to ERROR_WINHTTP_NAME_NOT_RESOLVED. Stop/Restart service or reboot the machine if you see this error frequently."


Copying files after applying package

$
0
0

Hi

 

I tring to copy xml files to the following locations

 

%MODULEPATH%\Applications.xml "C\ProgramData\RBRO Solutions\Link2DMS\"

%MODULEPATH%\AppSettings.xml "C:\ProgramData\RBRO Solutions\Link2DMS\"

%MODULEPATH%\Connections.xml "C:\Users\%username%\AppData\Roaming\RBRO Solutions\Link2DMS\"

%MODULEPATH%\Link2Dms.lic "C:\Program Files (x86)\RBRO Solutions\Link2DMS\"

 

When i run the package the application installs and i can see that the xml files get downloaded to the Software Distribution directory but they don't get copied to thier final destination

Any help would be appreciated

Intel Advisory

$
0
0

With Intel announcing a whole bunch of vulnerabilities yesterday I was wondering. Once Dell releases a firmware update to patch it, is it possible for SPM to,

a. Deploy a Dell firmware patch?

b. Target machines by model?

 

Thanks and Happy Thanksgiving.

Using a WSUS certificate signed by a root CA

$
0
0

From time to time, we get inquires about whether the WSUS server certificate has to be self-signed in order for 3rd party updates to work.  A number of organizations already have a CA, and would like to utilize it.  The EminentWare product can only be used to generate self-signed WSUS certificates, but here are some steps on how to link up with your internal CA.

 

The WSUS server is the entity that is required to generate a keypair, a Certificate Signing Request Message (CSR), and get a signed cert back from the CA.  To get a CA-signed certificate, you will have to generate the keypair and CSR for the WSUS server using your CA’s enrollment process (note that this must be a code-signing certificate).  If you go this route, you will need to ensure that the CA-signed certificate is properly installed on the WSUS server – here are some details: http://msdn.microsoft.com/en-us/library/bb902479(VS.85).aspx.

 

Alternatively, you can generate a keypair and CSR, get a signed certificate from the CA in return, and then export the keypair (including the private key) to a PKCS#12 file.  You can then manually import the keypair and certificate, or use one of our free utilities to install it on the WSUS server: http://downloads.solarwinds.com/solarwinds/Release/SupportTools/WSUSSigningCertManagement.zip

 

Once the certificate is installed on the WSUS server, the EminentWare product can help you deploy the certificate (sans private key, obviously) to the downstream WSUS servers, the EminentWare servers, and the clients that will be receiving 3rd Party Updates (that are signed by the WSUS server).

How to run a script after installation?

$
0
0

I have created a custom package with the latest version of VMware Horizon View client. I will at the same time run a script after the installation that create a icon that is configured for our Company. I have tried with Package Boot Helper but the script never run. I have uploaded the script to the package. If I run the script manually it works fine.

 

 

 

Package Boot Helper.JPG

 

 

Package Boot Helper2.JPG

Package Boot Helper3.JPG

Patch Manager errors - what do these mean?

$
0
0

This past weekend I tried to patch around 700 servers, most reported errors and failed. Are these WSUS or Patch Manager errors? Can somebody tell me what these errors mean and what needs to be done to correct them?

 

- "InvalidNamespace Invalid namespace"

- "Server execution failed COM Exception: Error Code: 0x80080005"

- "Already installed. install is not needed because the update is either not applicable or already installed"

- "Column 'taskid, devicekey, jobid, objectkey, operationname' is constrained to be unique. Value '32f07a7d-b519-45de-a70c-332b94bec811, 0c3c9b69-57ee-4b63-9d35-49559e2c5b3c, 54, xxxxxxx, Pre-Reboot' is already present."

- "Install failed. Fatal error during installation HRESULT: 0x80070643"

- "Install failed. The system cannot find the file specified HRESULT: 0x80070002"

- "Install failed. Unknown error (0x800f0902) HRESULT: 0x800F0902"

- "Install may have failed. Unable to create install session. The caller attempted to perform an operation on an interface while another operation was in progress."

- "The task and operation were aborted."

- "The update failed to download and an install will not be attempted. Download failed. Http status 408 - server timed out waiting for request Error Code: 0x8024401C"

- "The update failed to download and an install will not be attempted. Download failed. Server execution failed Error Code: 0x80080005"

- "Thread was being aborted."

- "Unknown error (0x80240438)"

- "InvalidNamespace Invalid namespace"

- "InvalidProviderRegistration Invalid provider registration"

- "ProviderLoadFailure Provider load failure"

- "Winhttp SendRequest/ReceiveResponse failed with 0x2ee7 error. Either the proxy server or target server name can not be resolved. Corresponding to ERROR_WINHTTP_NAME_NOT_RESOLVED. Stop/Restart service or reboot the machine if you see this error frequently."

Java 8u25 Security Setting

$
0
0

We are using patch manager in conjunction with ConfigMgr 2007 to deploy Java updates.  As I just found out that Java 8 does not have the option to change the setting to Medium.  But it has an "Exception Site List" that we can add sites to allowed to run.

Solarwind.JPG

Is there a way to add site lists as part of that Java 8 package in patch manager?

 

Thanks for your time.

Java updates - is it 3 packages to maintain? x86, x64, x86 for x64?

$
0
0

Hello,

 

Curious how you maintain Java updates.

 

Do you publish, use the package boot manager to uninstall old versions and maintain 3 different Java applications?

 

Like right now I'm going through and publishing these:

Java Runtime Environment 8u152 (x86 for x64) (Upgrade)

Java Runtime Environment 8u152 (x64) (Upgrade)

Java Runtime Environment 8u152 (x86) (Upgrade)

 

So is that correct?  Every time there is a java update you have to maintain 3 packages?  Can Oracle get a clue?


Windows 10 1703 Clients Showing Zero Updates

$
0
0

Looking into finding a resolution for an issue where some machines are reporting zero updates installed / needed for Windows updates but are showing installed third party packages and nothing else.

 

Steps i have tried

 

Repaired / Reinstalled the Client Components and then ran a Detect Now ( waited about 5 min ) then ran Report Now and waited for machine to refresh

 

Removed the Client Components and deleted the machine from list. Forced the machine to restart and download the client via a Group Policy that is in place. Verified software installed then ran a Detect Now ( waited about 5 min ) then ran Report Now and waited for machine to refresh.

 

Tried both options above with no luck whatsoever getting them to report.

 

Screenshots of machines not reporting

 

Solar Winds Patch Manager

 

Screenshot Powershell command showing highlighted machine with updated windows updates.

powershell verify

 

Any help would be greatly appreciated in getting this issue resolved.

 

Thank  you.

Patch Manager false reporting... How do I update the Needed status?

$
0
0

Patch manager status for Java Runtime Environment 8u152 updates needed when software does not exist on endpoint.  How do I update/clear the Neededstatus? 

Reports not including clients from Downstream servers.

$
0
0

I have a few report we run monthly for QC. Recently I set up a few downstream servers and while they do show on the console I cannot get them to show in reports. The filter on the reports is set to "Workstation" but I am only getting a report of clients on my main WSUS server. Am I missing something simple?

Update Errors Windows Server 2016

$
0
0

Hi,

 

Today we created multiple new virtual Servers with Windows Server 2016. But they doesn't show up in WSUS console. This WSUS is also on server 2016.

- One Server showed up in console (and was moved in correct wsus group) only once but it's wuauclt stated Errors 0x80072EFD and 0x80240438. In eventviewer between the errors Informational events are logged: successful: "0 updates were found" - but this is simply wrong because this server isn't up to date. A rename of SoftwareDistribution folder and /resetauthorization were no Solutions.

 

- Other new installed Servers loaded and installed updates from this wsus (configured in GPO) but doesn't Show up in the WSUS console. They have no Internet Connection. The Updates only could be downloaded from this wsus.

 

What can I do?

 

- I can open and show the IIS Default Website of the IIS on the WSUS.

- 4 Win10 Clients are already connected to the wsus and are updating well.

- The WSUS itself (Client component) updates from itself well too.

 

Thanks.

Updates not downloading to WSUS

$
0
0

What would keep updates that have been approved for install from downloading to WSUS? I have a couple machines that can't get their updates simply because it can't be downloaded. Says it could be a permissions issue but I don't see the update on the harddrive of WSUS. Could this be related to my recently added Automation server and group management changes?

Viewing all 3086 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>