none
Win server 2012 - duplicitni DNS servery na jednom DNS

    Dotaz

  • Zdravim,

    mam opet dotaz na Win Server 2012. Na serveru je DC a DNS, DHCP atd.

    Dnes jsem zjistil ze v konzoli DNS vidim duplicitni DNS servery, resp mam tam dve polozky jedna se jmenuje server a druha server.domena.cz, pod obema je uplne stejne nastaveni DNS vcetne zon atd. Vubec netusim kde se tam druha polozka vzala. Plus pri pingu na plose tohoto serveru mi vraci nesmyslnou adresu kterou jsem nikde nenastavoval a nikde ji ani v nastaveni nemohu najit. Jedine co vidim je virtualni sitovka iDrac virtual nic usb device ktera mela na sobe adresu ze stejneho rozsahu a nastavene DHCP. Tato sitovka patri pod DELL iDRAC service module, coz jsem si dohledal na netu. Tento modul chci odinstalovat a sitovku take, toto by pak mohlo vyresit s problemem pri lokalnim pingu na serveru. Po siti mi server odpovida spravnou IP. 

    Nejake rady? Mohu jednu polozku v tom DNS smazat? Doufam ze pri odinstalaci modulu a virtual sitovky zustane DNS funkcni.

    Diky. 

    Honza


    Šerý

    29. března 2014 21:05

Odpovědi

Všechny reakce

  • 1. Kartu pro management serveru byste mel mit na jinem subnetu, s pevnou IP adresou a dostupnou z vnejsku. Odstrizenim karty si berete moznost dalkove spravy. Nezapomente ale pred vystavenim karty ven na zmenu hesla (ucet:root heslo:calvin)

    2. Mate-li pochybnosti o zdravi AD, pouzijte diagnosticke nastroje, zacit muzete treba s dcdiag. Rovnez se podivejte do protokolu udalosti

    http://technet.microsoft.com/cs-cz/library/cc776854(v=ws.10).aspx

    M.

    30. března 2014 8:02
    Moderátor
  • Karty mam na stejnem subnetu, coz se da tedy snadno zmenit primo z OS, mam tam nainstalovany Dell OpenManage. Nicmene mi neni uplne jasne jak se tam bude z venku pristupovat, pres nejaky port ktery bude smerovany na https na kazdem serveru?

    dcdiag jsem spustil.

    Directory Server Diagnosis


    Performing initial setup:

       Trying to find home server...

       Home Server = Exchange2013

       * Identified AD Forest. 
       Done gathering initial info.


    Doing initial required tests

       
       Testing server: Default-First-Site-Name\EXCHANGE2013

          Starting test: Connectivity

             ......................... EXCHANGE2013 passed test Connectivity



    Doing primary tests

       
       Testing server: Default-First-Site-Name\EXCHANGE2013

          Starting test: Advertising

             ......................... EXCHANGE2013 passed test Advertising

          Starting test: FrsEvent

             ......................... EXCHANGE2013 passed test FrsEvent

          Starting test: DFSREvent

             ......................... EXCHANGE2013 passed test DFSREvent

          Starting test: SysVolCheck

             ......................... EXCHANGE2013 passed test SysVolCheck

          Starting test: KccEvent

             A warning event occurred.  EventID: 0x80000B46

                Time Generated: 03/29/2014   08:48:35

                Event String:

                The security of this directory server can be significantly enhanced by configuring the server to reject SASL (Negotiate,  Kerberos, NTLM, or Digest) LDAP binds that do not request signing (integrity verification) and LDAP simple binds that  are performed on a cleartext (non-SSL/TLS-encrypted) connection.  Even if no clients are using such binds, configuring the server to reject them will improve the security of this server. 


             ......................... EXCHANGE2013 passed test KccEvent

          Starting test: KnowsOfRoleHolders

             ......................... EXCHANGE2013 passed test KnowsOfRoleHolders

          Starting test: MachineAccount

             ......................... EXCHANGE2013 passed test MachineAccount

          Starting test: NCSecDesc

             ......................... EXCHANGE2013 passed test NCSecDesc

          Starting test: NetLogons

             ......................... EXCHANGE2013 passed test NetLogons

          Starting test: ObjectsReplicated

             ......................... EXCHANGE2013 passed test ObjectsReplicated

          Starting test: Replications

             ......................... EXCHANGE2013 passed test Replications

          Starting test: RidManager

             ......................... EXCHANGE2013 passed test RidManager

          Starting test: Services

             ......................... EXCHANGE2013 passed test Services

          Starting test: SystemLog

             A warning event occurred.  EventID: 0x00002002

                Time Generated: 03/29/2014   08:14:34

                Event String:

                ISM0007: The iDRAC Service Module communication with iDRAC has ended.

             A warning event occurred.  EventID: 0x00002002

                Time Generated: 03/29/2014   08:32:25

                Event String:

                ISM0007: The iDRAC Service Module communication with iDRAC has ended.

             An error event occurred.  EventID: 0x00002001

                Time Generated: 03/29/2014   08:34:07

                Event String:

                ISM0006: The iDRAC Service Module is unable to communicate with iDRAC using the OS to iDRAC Pass-through channel.

             A warning event occurred.  EventID: 0x00000420

                Time Generated: 03/29/2014   08:34:09

                Event String:

                The DHCP service has detected that it is running on a DC and has no credentials configured for use with Dynamic DNS registrations initiated by the DHCP service.   This is not a recommended security configuration.  Credentials for Dynamic DNS registrations may be configured using the command line "netsh dhcp server set dnscredentials" or via the DHCP Administrative tool.

             A warning event occurred.  EventID: 0x00002724

                Time Generated: 03/29/2014   08:34:13

                Event String:

                This computer has at least one dynamically assigned IPv6 address.For reliable DHCPv6 server operation, you should use only static IPv6 addresses.

             An error event occurred.  EventID: 0xC0001B59

                Time Generated: 03/29/2014   08:34:35

                Event String:

                The Network Location Awareness service depends on the DHCP Client service which failed to start because of the following error: 


             An error event occurred.  EventID: 0xC0001B59

                Time Generated: 03/29/2014   08:34:35

                Event String:

                The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: 


             An error event occurred.  EventID: 0x00002715

                Time Generated: 03/29/2014   08:34:35

                Event String:

                DCOM got error "1068" attempting to start the service netprofm with arguments "Unavailable" in order to run the server:


             An error event occurred.  EventID: 0xC0001B59

                Time Generated: 03/29/2014   08:34:38

                Event String:

                The Network Location Awareness service depends on the DHCP Client service which failed to start because of the following error: 


             An error event occurred.  EventID: 0xC0001B59

                Time Generated: 03/29/2014   08:34:38

                Event String:

                The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: 


             An error event occurred.  EventID: 0x00002715

                Time Generated: 03/29/2014   08:34:38

                Event String:

                DCOM got error "1068" attempting to start the service netprofm with arguments "Unavailable" in order to run the server:


             An error event occurred.  EventID: 0x00002001

                Time Generated: 03/29/2014   08:35:46

                Event String:

                ISM0006: The iDRAC Service Module is unable to communicate with iDRAC using the OS to iDRAC Pass-through channel.

             An error event occurred.  EventID: 0x00002001

                Time Generated: 03/29/2014   08:37:25

                Event String:

                ISM0006: The iDRAC Service Module is unable to communicate with iDRAC using the OS to iDRAC Pass-through channel.

             An error event occurred.  EventID: 0x00002001

                Time Generated: 03/29/2014   08:39:04

                Event String:

                ISM0006: The iDRAC Service Module is unable to communicate with iDRAC using the OS to iDRAC Pass-through channel.

             An error event occurred.  EventID: 0x00002001

                Time Generated: 03/29/2014   08:40:43

                Event String:

                ISM0006: The iDRAC Service Module is unable to communicate with iDRAC using the OS to iDRAC Pass-through channel.

             An error event occurred.  EventID: 0x00002001

                Time Generated: 03/29/2014   08:42:22

                Event String:

                ISM0006: The iDRAC Service Module is unable to communicate with iDRAC using the OS to iDRAC Pass-through channel.

             An error event occurred.  EventID: 0x00002001

                Time Generated: 03/29/2014   08:44:01

                Event String:

                ISM0006: The iDRAC Service Module is unable to communicate with iDRAC using the OS to iDRAC Pass-through channel.

             An error event occurred.  EventID: 0x00002001

                Time Generated: 03/29/2014   08:45:41

                Event String:

                ISM0006: The iDRAC Service Module is unable to communicate with iDRAC using the OS to iDRAC Pass-through channel.

             An error event occurred.  EventID: 0xC0001B5E

                Time Generated: 03/29/2014   08:45:53

                Event String:

                The ScRegSetValueExW call failed for FailureActions with the following error: 


             A warning event occurred.  EventID: 0x000727A5

                Time Generated: 03/29/2014   08:46:02

                Event String:

                The WinRM service is not listening for WS-Management requests. 


             A warning event occurred.  EventID: 0x80050004

                Time Generated: 03/29/2014   08:48:11

                Event String:

                Broadcom NetXtreme Gigabit Ethernet #3: The network link is down.  Check to make sure the network cable is properly connected.

             A warning event occurred.  EventID: 0x80050004

                Time Generated: 03/29/2014   08:48:11

                Event String:

                Broadcom NetXtreme Gigabit Ethernet #4: The network link is down.  Check to make sure the network cable is properly connected.

             A warning event occurred.  EventID: 0x80050004

                Time Generated: 03/29/2014   08:48:11

                Event String:

                Broadcom NetXtreme Gigabit Ethernet #2: The network link is down.  Check to make sure the network cable is properly connected.

             A warning event occurred.  EventID: 0x000003F6

                Time Generated: 03/29/2014   08:48:38

                Event String:

                Name resolution for the name _ldap._tcp.dc._msdcs.domena.cz. timed out after none of the configured DNS servers responded.

             A warning event occurred.  EventID: 0x0000A000

                Time Generated: 03/29/2014   08:49:05

                Event String:

                The Security System detected an authentication error for the server ldap/Exchange2013.domena.cz. The failure code from authentication protocol Kerberos was "An attempt was made to logon, but the netlogon service was not started.


             A warning event occurred.  EventID: 0x0000A000

                Time Generated: 03/29/2014   08:49:05

                Event String:

                The Security System detected an authentication error for the server LDAP/EXCHANGE2013. The failure code from authentication protocol Kerberos was "An attempt was made to logon, but the netlogon service was not started.


             A warning event occurred.  EventID: 0x0000A000

                Time Generated: 03/29/2014   08:49:06

                Event String:

                The Security System detected an authentication error for the server ldap/Exchange2013.domena.cz/domena.cz@domena.CZ. The failure code from authentication protocol Kerberos was "An attempt was made to logon, but the netlogon service was not started.


             An error event occurred.  EventID: 0x00002004

                Time Generated: 03/29/2014   08:49:09

                Event String:

                ISM0003: The iDRAC Service Module is unable to discover iDRAC from the operating system of the server.

             A warning event occurred.  EventID: 0x0000000C

                Time Generated: 03/29/2014   08:49:11

                Event String:

                Time Provider NtpClient: This machine is configured to use the domain hierarchy to determine its time source, but it is the AD PDC emulator for the domain at the root of the forest, so there is no machine above it in the domain hierarchy to use as a time source. It is recommended that you either configure a reliable time service in the root domain, or manually configure the AD PDC to synchronize with an external time source. Otherwise, this machine will function as the authoritative time source in the domain hierarchy. If an external time source is not configured or used for this computer, you may choose to disable the NtpClient.

             A warning event occurred.  EventID: 0x00000420

                Time Generated: 03/29/2014   08:49:14

                Event String:

                The DHCP service has detected that it is running on a DC and has no credentials configured for use with Dynamic DNS registrations initiated by the DHCP service.   This is not a recommended security configuration.  Credentials for Dynamic DNS registrations may be configured using the command line "netsh dhcp server set dnscredentials" or via the DHCP Administrative tool.

             A warning event occurred.  EventID: 0x00001796

                Time Generated: 03/29/2014   08:49:18

                Event String:

                Microsoft Windows Server has detected that NTLM authentication is presently being used between clients and this server. This event occurs once per boot of the server on the first time a client uses NTLM with this server.


             A warning event occurred.  EventID: 0x00002724

                Time Generated: 03/29/2014   08:49:18

                Event String:

                This computer has at least one dynamically assigned IPv6 address.For reliable DHCPv6 server operation, you should use only static IPv6 addresses.

             A warning event occurred.  EventID: 0x000000DB

                Time Generated: 03/29/2014   08:50:28

                Event String:

                The driver \Driver\WudfRd failed to load for the device WpdBusEnumRoot\UMB\2&37c186b&0&STORAGE#VOLUME#_??_USBSTOR#DISK&VEN_IDRAC&PROD_SECUPD&REV_0329#20120919&0#.

             An error event occurred.  EventID: 0x00002001

                Time Generated: 03/29/2014   08:50:49

                Event String:

                ISM0006: The iDRAC Service Module is unable to communicate with iDRAC using the OS to iDRAC Pass-through channel.

             A warning event occurred.  EventID: 0x000727AA

                Time Generated: 03/29/2014   08:52:24

                Event String:

                The WinRM service failed to create the following SPNs: WSMAN/Exchange2013.domena.cz; WSMAN/Exchange2013. 


             An error event occurred.  EventID: 0x00002001

                Time Generated: 03/29/2014   08:52:28

                Event String:

                ISM0006: The iDRAC Service Module is unable to communicate with iDRAC using the OS to iDRAC Pass-through channel.

             An error event occurred.  EventID: 0x00002001

                Time Generated: 03/29/2014   08:54:07

                Event String:

                ISM0006: The iDRAC Service Module is unable to communicate with iDRAC using the OS to iDRAC Pass-through channel.

             An error event occurred.  EventID: 0x00000457

                Time Generated: 03/29/2014   08:54:13

                Event String:

                Driver Send to Microsoft OneNote 15 Driver required for printer Odeslat do OneNotu 2013 is unknown. Contact the administrator to install the driver before you log in again.

             An error event occurred.  EventID: 0x00000457

                Time Generated: 03/29/2014   08:54:14

                Event String:

                Driver HP LaserJet 3390 / 3392 PCL5 required for printer HP LaserJet 3390 / 3392 PCL5 is unknown. Contact the administrator to install the driver before you log in again.

             An error event occurred.  EventID: 0x00000457

                Time Generated: 03/29/2014   08:54:14

                Event String:

                Driver Microsoft XPS Document Writer required for printer Microsoft XPS Document Writer is unknown. Contact the administrator to install the driver before you log in again.

             An error event occurred.  EventID: 0x00002001

                Time Generated: 03/29/2014   08:55:46

                Event String:

                ISM0006: The iDRAC Service Module is unable to communicate with iDRAC using the OS to iDRAC Pass-through channel.

             An error event occurred.  EventID: 0x00002001

                Time Generated: 03/29/2014   08:57:25

                Event String:

                ISM0006: The iDRAC Service Module is unable to communicate with iDRAC using the OS to iDRAC Pass-through channel.

             ......................... EXCHANGE2013 failed test SystemLog

          Starting test: VerifyReferences

             ......................... EXCHANGE2013 passed test VerifyReferences

       
       
       Running partition tests on : ForestDnsZones

          Starting test: CheckSDRefDom

             ......................... ForestDnsZones passed test CheckSDRefDom

          Starting test: CrossRefValidation

             ......................... ForestDnsZones passed test

             CrossRefValidation

       
       Running partition tests on : DomainDnsZones

          Starting test: CheckSDRefDom

             ......................... DomainDnsZones passed test CheckSDRefDom

          Starting test: CrossRefValidation

             ......................... DomainDnsZones passed test

             CrossRefValidation

       
       Running partition tests on : Schema

          Starting test: CheckSDRefDom

             ......................... Schema passed test CheckSDRefDom

          Starting test: CrossRefValidation

             ......................... Schema passed test CrossRefValidation

       
       Running partition tests on : Configuration

          Starting test: CheckSDRefDom

             ......................... Configuration passed test CheckSDRefDom

          Starting test: CrossRefValidation

             ......................... Configuration passed test CrossRefValidation

       
       Running partition tests on : domena

          Starting test: CheckSDRefDom

             ......................... domena passed test CheckSDRefDom

          Starting test: CrossRefValidation

             ......................... domena passed test CrossRefValidation

       
       Running enterprise tests on : domena.cz

          Starting test: LocatorCheck

             ......................... domena.cz passed test LocatorCheck

          Starting test: Intersite

             ......................... domena.cz passed test Intersite


    Šerý

    30. března 2014 8:31
  • Management serverů (nejen DELL) má svoje vlastní rozhraní zcela nezávislé na zbytku serveru nebo použitém operačním systému. Bývá to web, SSH a telnet. Různí výrobci to mají různě a pro některé vlastnosti vyžadují dokoupení management licence (například HP). Doporučuji nastudovat manuál k serveru, kde tohle bude popsané. Pak možná zjistíš všechny výhody a možnosti tohoto rozhraní, protože to je věc k nezaplacení.

    Pokud chceš management zakázat, pak v BIOS bude nastavení iDRAC rozhraní, kde půjde vybrat i chování vybraného síťového portu. V tuto chvíli to vypadá, že máš port nastavený jako shared, tedy pro klasické síťové připojení i pro management dohromady.

    A jak již bylo výše napsáno, doporučuji nastudovat možnosti a využívat, DELL to má velmi vymakané (imho nejlépe ze všech výrobců, se kterými jsem se setkal). A pro management serverů si vyhradit vlastní oddělenou lokální síť, nepouštět to do internetu a nedávat to do běžné sítě, kde jsou PC a servery.

    30. března 2014 16:38
  • Dekuji za odpoved Lukasi, nicmene ja toto vim. Ovsem o co mi jde je to ze tento modul neni k iDrac potreba, je to je propojovaci modul do OS, na druhem serveru toho nemam nainstalovano a iDrac normalne funguje. Takze tento modul odinstaluji a doufam ze tim zmizi ta nesmyslna IP adresa kterou mi server odpovida.

    A co s tim DNS? Je normalni mit v konzoli na jednom serveru 2 stejne DNS servery? Mohu ten jeden smazat?

    Diky.


    Šerý

    30. března 2014 17:44
  • 1. V uvodnim dotazu je uvedeny problem s jednou kartou. Dostupnost vice karet se neresila. Je dobre uvest vse podstatne. V dotazu nejsou informace o dalsich serverech v AD a aplikacich, ktere s AD souvisi. "Problem" s DNS se replikoval i na dalsi DC (pokud tam nejake jsou)?

    2. V prvni rade bych vyradil kartu pro dalkovou spravu. V situaci, kdy resite problem s AD/DNS, musite nepodstatne soucasti vyloucit. Po vyreseni muzete kartu opet "aktivovat".

    3. DHCP by mel byt spravne nainstalovany, nejlepe s rezervaci IP (pokud to jde) a AD by mela o nem vedet.

    4. Ve vypisu mate dost chyb. Mne pripada, ze problemu je mnohem vice, nez unese jedno vlakno tohoto fora.

    5. Jak jsou (ne)nakonfigurovane sitove karty? To je multihome server?

    M.

    30. března 2014 19:17
    Moderátor
  • Omlouvam se - jedna se o server Win Server 2012 Standart a na nem je DC s DNS, DHCP plus navic Exchange 2013. Vim neni to stastne reseni ale jinak to neslo. V siti je pouze jeden DC a tedy i jen jedno AD a DHCP a DNS. Tento modul se da odinstalovat, tim padem by se mela odinstalovat i tato virtualni karta, nebo ji mohu zakazat.

    Na serveru je nastavena pouze jedna sitovka, ostatni jsou zakazane, resp jedna pro LAN a druha je primo iDrac. IP - 192.168.1.10, 255.255.255.0, GW 192.168.1.100 a DNS 192.168.1.10.

    Pri instalaci serveru a tedy i DNS se v DNS konzoli vytvoril pouze server, pak tam pribyl i server.domena.cz aniz bych tam cokoliv instaloval.


    Šerý

    30. března 2014 20:05
  • V testovacim DC/DNS mam dve vetve (ve forward zone)

    _msdcs.TEST.LOCAL

    TEST.LOCAL

    M.

    PS: Tohle si nejak nedovedu predstavit "Pri instalaci serveru a tedy i DNS se v DNS konzoli vytvoril pouze server, pak tam pribyl i server.domena.cz aniz bych tam cokoliv instaloval". Muzete to specifikovat. Kdyz to neni mozne videt in natura, mohu si pod popisem predstavit cokoliv.

    30. března 2014 21:55
    Moderátor
  • Dobry den,

    ja to take vidim poprve v zivote. Kdyz otevru DNS konzolu tak pod ni vidim server - Exchange2013 a od nim klasicke vetve - Forward lookup zone, Reverse Lookup zone, Trust points, Conditional Providers a Global Logs coz je ok, pak ale vidim druhy server - Exchange2013.domena.cz a pod nim stejne vetve jako vyse.

    Proc jsem to vse zacal zkoumat - protoze mi uzivatele hlasi tento problem - již několik dní pozorujeme krátkodobé výpadky spojení k internetu. Projevují se tak, že na první požadavek se stránka/služba neotevře/nespojí a je nutné dlouho vyčkat nebo zopakovat požadavek (refresh stránky apod.). Výpadky se neprojevují na sestaveném spojení - streamy, atp.

    Kdyz jsem to na stanici v siti kontroloval (stanice nejsou clenem domeny) tak ping na server s DNS byl ok, ale ping ven napr na seznam.cz skoncil timeoutem, kdyz jsem to zkusil podruhe ci potreti tak pak mi adresu prelozil a pingnul na ni.



    Šerý

    31. března 2014 6:13
  • 1. Jak maji pocitace uzivatelu nastavene parametry site? Berou je jen pres DHCP? Muzete ukazat vypis nastaveni?

    ipconfig /all

    2. Muzete jeste na pocitaci uzivatele otestovat DNS pres nslookup.

    M.

    31. března 2014 7:39
    Moderátor
  • Jeste muze byt server tak zamestnany, ze je "poznamenana" jeho odezva.

    MS nedoporucuje instalaci Exchange na DC, to uz ale asi vite

    http://technet.microsoft.com/en-us/library/ms.exch.setupreadiness.warninginstallexchangerolesondomaincontroller(v=exchg.150).aspx

    M.

    31. března 2014 7:58
    Moderátor
  • Musite se podivat, proc nektere sluzby nestartuji .... (netlogon, DHCP client,...) a resit DCOM chyby (1068).

    M.

    31. března 2014 8:18
    Moderátor
  • Oni ty sluzby startuji, maximalne maji zpozdeny start.

    To ze Exchange na DC nepatri vim, ale bohuzel se s tim nedalo nic delat. A odezva serveru na ping je pod 1ms.

    To lokalni nastaveni poslu odpoledne kdy budu na miste, kazdopadne vsechny stanice obsluhuje DHCP.


    Šerý

    31. března 2014 9:17
  • Vypis dcdiag mozna ukazuje na neco jineho. To by bylo dobre proverit. Po odblokovani dracu udelejte diagnostiku znova a porovnejte vypisy.

    Pokud nemate rychly pristup k serveru (tedy na dosah ruky), pak by bylo dobre si nainstalovat priblizne totez u sebe a situaci analyzovat.

    Odezvou jsem mel na mysli reakci DNS a rychlost poskytnuti IP. Muzete DNS obejit a prekontrolovat, zda neni problem jeste nekde jinde. Treba pres

    http://77.75.72.3

    DHCP nastaveni muze byt ruzne a podstatny bude vysledek, tedy vlastnosti TCP/IP.

    Podivejte se take do protokolu udalosti.

    M.

    31. března 2014 12:28
    Moderátor
  • Zde jsou pozadovane informace:

    nslookup na www.seznam.cz - Nelze najit nazev serveru pro adresu 192.168.1.10:Non-existed domain
    Vychozi servery nejsou k dispozici.

    Server:  UnKnown
    Address:  192.168.1.10

    N˙zev:   www.seznam.cz
    Address:  77.75.76.3

    A ipconfig ze stanice:



    Konfigurace protokolu IP systému Windows



            Název hostitele . . . . . . . . . : PCZZS003

            Primární přípona DNS. . . . . . . : 

            Typ uzlu  . . . . . . . . . . . . : neznámý

            Povoleno směrování IP . . . . . . : Ne

            WINS Proxy povoleno . . . . . . . : Ne

            Prohledávací seznam přípon DNS. . : domena



    Adaptér sítě Ethernet Připojení k místní síti:



            Přípona DNS podle připojení . . . : domena

            Popis . . . . . . . . . . . . . . : Realtek PCIe GBE Family Controller

            Fyzická Adresa. . . . . . . . . . : 40-61-86-C6-E0-4F

            Protokol DHCP povolen . . . . . . : Ano

            Automatická konfigurace povolena  : Ano

            Adresa IP . . . . . . . . . . . . : 192.168.1.64

            Maska podsítě . . . . . . . . . . : 255.255.255.0

            Výchozí brána . . . . . . . . . . : 192.168.1.100

            Server DHCP . . . . . . . . . . . : 192.168.1.10

            Servery DNS . . . . . . . . . . . : 192.168.1.10

            Zapůjčeno . . . . . . . . . . . . : 31. března 2014 14:22:09

            Zápůjčka vyprší . . . . . . . . . : 8. dubna 2014 14:22:09



    Adaptér sítě Ethernet {AD664603-F540-4052-8BB4-C8A6151F27A9}:



            Přípona DNS podle připojení . . . : 

            Popis . . . . . . . . . . . . . . : Nortel IPSECSHM Adapter - Packet Scheduler Miniport

            Fyzická Adresa. . . . . . . . . . : 44-45-53-54-42-00

            Protokol DHCP povolen . . . . . . : Ne

            Adresa IP . . . . . . . . . . . . : 0.0.0.0

            Maska podsítě . . . . . . . . . . : 0.0.0.0

            Výchozí brána . . . . . . . . . . : 


    Šerý

    31. března 2014 12:52
  • Dobry den,

    po povoleni service modulu pro iDrac vypisuje dcdiag jiz jen tyto chyby:

     An error event occurred.  EventID: 0x00002001

                Time Generated: 04/01/2014   09:09:07

                Event String:

                ISM0006: The iDRAC Service Module is unable to communicate with iDRAC using the OS to iDRAC Pass-through channel.

             An error event occurred.  EventID: 0x00009018

                Time Generated: 04/01/2014   09:10:45

                Event String:

                A fatal alert was generated and sent to the remote endpoint. This may result in termination of the connection. The TLS protocol defined fatal error code is 10. The Windows SChannel error state is 1203.

             An error event occurred.  EventID: 0x00002001

                Time Generated: 04/01/2014   09:10:46

                Event String:

                ISM0006: The iDRAC Service Module is unable to communicate with iDRAC using the OS to iDRAC Pass-through channel.


    Šerý

    1. dubna 2014 8:48
  • To uz bude zalezitost Dellu a prislusneho nastaveni. Info by melo byt v User Guide (vybral jsem posledni verzi, budete muset vzit tu verzi, ktera prislusi konkretni karte):

    ftp://ftp.dell.com/Manuals/all-products/esuprt_electronics/esuprt_software/esuprt_remote_ent_sys_mgmt/integrated-dell-remote-access-cntrllr-6-for-monolithic-srvr-v1.95_User's%20Guide_en-us.pdf

    ftp://ftp.dell.com/Manuals/all-products/esuprt_electronics/esuprt_software/esuprt_remote_ent_sys_mgmt/integrated-dell-remote-access-cntrllr-7-v1.30.30_User's%20Guide_en-us.pdf

    Doporucuji take support Dellu. Poslou malou utilitku, ktera udela audit a vygeneruje soubor, ktery se posle zpet na support. Na zaklade rozboru pak support navrhne reseni.

    Zrejme pujde o problem s certifikatem (ulozeni c., duveryhodny c.,aj....)

    M.


    1. dubna 2014 10:45
    Moderátor
  • 1. DCDIAG udava Event ID v hexadecimalnim tvaru. Pro hledani informaci je dobre pouzivat decimalni hodnotu. Zde jsou dve chyby 8193 a 36888.

    2. Pro nastaveni TLS zkuste nastroj https://www.nartac.com/Products/IISCrypto/Default.aspx

    M.

    11. dubna 2014 9:05
    Moderátor