Answered by:
Configuring Service Manager Management Pack

Question
-
I'm trying to configure the SCSM management pack on SCOM 2012 R2.
I'm going through the documentation and have imported the MP.
It says that I need to create a run as account and associate the account with the following profile 'Service Manager Database Account' - This is fine, I have done this with no issue. The account I have added to the profile has Administrator credentials to my Service Manager Servers.
It then says to associate the run as account with the Service Manager computers - this is something I am unable to do. I have added the Servers to my SCOM system (Agentless only) but when I try to link the account to the agentless managed systems they don't show up allow me to configure this. - How can I do this?
I am also looking in the Event Viewer on my SCOM Management Server and im seeing the following events in the Operations Manager log.
Log Name: Operations Manager
Source: Health Service Modules
Date: 15/04/2016 09:11:54
Event ID: 26004
Task Category: None
Level: Error
Keywords: Classic
User: N/A
Computer: SCOM MANAGEMENT SERVER NAME
Description:
The Windows Event Log Provider is still unable to open the System event log on computer 'SERVICE MANAGER SERVER'. The Provider has been unable to open the System event log for 720 seconds.Most recent error details: Access is denied.
One or more workflows were affected by this.
Workflow name: MomUIGeneratedRulec2767b3ff8554297a15a639940699fe9
Instance name: SERVICE MANAGER SERVER
Instance ID: {7235767C-5854-2969-C465-1211161CAEBB}
Management group: MANAGEMENT GROUP NAME
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Health Service Modules" />
<EventID Qualifiers="0">26004</EventID>
<Level>2</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2016-04-15T08:11:54.000000000Z" />
<EventRecordID>13877</EventRecordID>
<Channel>Operations Manager</Channel>
<Computer>SCOM MANAGEMENT SERVER</Computer>
<Security />
</System>
<EventData>
<Data>SCOM DEV</Data>
<Data>MomUIGeneratedRulec2767b3ff8554297a15a639940699fe9</Data>
<Data>SERVICE MANAGER SERVER</Data>
<Data>{7235767C-5854-2969-C465-1211161CAEBB}</Data>
<Data>System</Data>
<Data>720</Data>
<Data>Access is denied.
</Data>
<Data>SERVICE MANAGER SERVER</Data>
<Data>
</Data>
</EventData>
</Event>I'm also seeing this Warning in Event Viewer
Log Name: Operations Manager
Source: Health Service Modules
Date: 15/04/2016 09:03:02
Event ID: 10401
Task Category: None
Level: Warning
Keywords: Classic
User: N/A
Computer: SCOM Management Server
Description:
Module was unable to connect to namespace '\\SERVICE MANAGER SERVER NAME\ROOT\CIMV2'This has happened 1 times since this instance was loaded.
HRESULT: 0x80070005 Details: Access is denied.
One or more workflows were affected by this.
Workflow name: Microsoft.SystemCenter.DiscoverWindowsClientComputer
Instance name: SERVICE MANAGER SERVER NAME
Instance ID: {9C430E63-431B-F4E5-5B22-10E3B5114279}
Management group: SCOM MANAGEMENT GROUP NAME
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Health Service Modules" />
<EventID Qualifiers="49152">10401</EventID>
<Level>3</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2016-04-15T08:03:02.000000000Z" />
<EventRecordID>13834</EventRecordID>
<Channel>Operations Manager</Channel>
<Computer>SCOM MANAGEMENT SERVER</Computer>
<Security />
</System>
<EventData>
<Data>SCOM DEV</Data>
<Data>Microsoft.SystemCenter.DiscoverWindowsClientComputer</Data>
<Data>SERVICE MANAGER SERVER NAME</Data>
<Data>{9C430E63-431B-F4E5-5B22-10E3B5114279}</Data>
<Data>\\SERVICE MANAGER SERVER NAME\ROOT\CIMV2</Data>
<Data>1</Data>
<Data>0x80070005</Data>
<Data>Access is denied.
</Data>
</EventData>
</Event>Hopefully someone can help me with this.
thanks
Friday, April 15, 2016 8:28 AM
Answers
-
Hi James,
please ensure that:
- Your SCSM servers are configured for Agentless Monitoring as per:
How to Configure a Computer for Agentless Management
- WMI Permissions in regards to the account in question are configured on your SCSM servers as per:
Authorize WMI users and set permissions
From the guide:
"In low-privilege environments, it might not be desirable to grant these accounts full administrative access on Service Manager systems. For these environments, follow the instructions in Authorize WMI users and set permissions to allow the accounts the following permissions on the WMI Default namespace:
- Enable Account
- Remote Enable
- Execute Methods
For more information about managing WMI security, see Managing WMI Security."
- your remote management configuration on the targeted servers (SCSM) allows the access for the account in question:
Configure Remote Management in Server Manager
- Please take this also into consideration (section "Mandatory Configuration" from the guide)
"Before you import the monitoring pack for System Center 2012 - Service Manager, you must update the Service Manager Database Account Run As profile that is provided in this monitoring pack. For information about this update, see the “Security Configuration” section in Configuring the System Center Monitoring Pack for System Center 2012 - Service Manager."
Hope this helps. Regards,
Stoyan (Please take a moment to "Vote as Helpful" and/or "Mark as Answer" where applicable. This helps the community, keeps the forums tidy, and recognizes useful contributions. Thanks!)
Friday, April 15, 2016 9:23 AM