locked
RegisterGatewayAsync failed trying to install lightweight gateway RRS feed

  • Question

  • I uninstalled ATA lightweight gateway from one of my DCs (running Server 2012 R2), and now it won't re-install. It gets almost to the end, then rolls everything back.

    The error code displayed at the end of the failed setup is 0x80070643 but i've not found anything useful (so far) by searching for that.

    Within the Microsoft Advanced Threat Analytics Gateway_20170418121254_002_MsiPackage log the relevant bits seem to be:

    Action start 12:13:33: InstallFinalize.
    MSI (s) (48:D4) [12:13:33:464]: Note: 1: 2265 2:  3: -2147287035 
    MSI (s) (48:D4) [12:13:33:480]: Note: 1: 2318 2:  
    MSI (s) (48:D4) [12:13:33:480]: No System Restore sequence number for this installation.
    MSI (s) (48:D4) [12:13:33:480]: Unlocking Server
    MSI (s) (48:D4) [12:13:33:480]: PROPERTY CHANGE: Deleting UpdateStarted property. Its current value is '1'.
    MSI (s) (48:D4) [12:13:33:480]: Doing action: InstallFinalizeCustomAction
    MSI (s) (48:D4) [12:13:33:480]: Note: 1: 2205 2:  3: ActionText 
    Action ended 12:13:33: InstallFinalize. Return value 1.
    MSI (s) (48:44) [12:13:33:480]: Invoking remote custom action. DLL: C:\Windows\Installer\MSI9C7B.tmp, Entrypoint: InstallFinalize
    Action start 12:13:33: InstallFinalizeCustomAction.
    SFXCA: Extracting custom action to temporary directory: C:\Windows\Installer\MSI9C7B.tmp-\
    SFXCA: Binding to CLR version v4.0.30319
    Calling custom action Microsoft.Tri.Gateway.Deployment.Package.Actions!Microsoft.Tri.Gateway.Deployment.Package.Actions.CustomActions.InstallFinalize
    2017-04-18 11:13:35.1501 4408 1   Debug [CustomActions] InstallFinalize started
    2017-04-18 11:13:35.1970 4408 1   Debug [DataCollectorSetActions] DataCollectorSetActions Uninstall succeeded
    2017-04-18 11:13:35.7561 4408 1   Debug [DataCollectorSetActions] DataCollectorSetActions Install succeeded
    2017-04-18 11:13:36.7047 4408 1   Debug [CustomActions] Certificate retrieved or created
    2017-04-18 11:13:37.6568 4408 11  Error [HttpResponseMessage] System.Net.Http.HttpRequestException: Response status code does not indicate success: 401 (Unauthorized).
       at System.Net.Http.HttpResponseMessage.EnsureSuccessStatusCode()
       at Microsoft.Tri.Infrastructure.HttpClientExtension.<PostAsync>d__2`1.MoveNext()
    --- End of stack trace from previous location where exception was thrown ---
       at System.Runtime.CompilerServices.TaskAwaiter.ThrowForNonSuccess(Task task)
       at System.Runtime.CompilerServices.TaskAwaiter.HandleNonSuccessAndDebuggerNotification(Task task)
       at Microsoft.Tri.Common.Management.ManagementClient.<>c__DisplayClass10_0.<<RegisterGatewayAsync>b__0>d.MoveNext()
    2017-04-18 11:13:37.6568 4408 1   Debug [CustomActions] RegisterGatewayAsync failed
    CustomAction InstallFinalizeCustomAction returned actual error code 1603 (note this may not be 100% accurate if translation happened inside sandbox)
    Action ended 12:13:37: InstallFinalizeCustomAction. Return value 3.
    Action ended 12:13:37: INSTALL. Return value 3.
    Property(S): UpgradeCode = {4D47BEF4-D75A-4CE9-9CD0-B186E2811553}
    Property(S): InstallationPath = C:\Program Files\Microsoft Advanced Threat Analytics\Gateway\
    Property(S): dir32B6C64C429323C527E88AFC321E25B9 = C:\Program Files\Microsoft Advanced Threat Analytics\Gateway\de\
    Property(S): dir0D2522131EAB2F374B5A5BA75A8C42CE = C:\Program Files\Microsoft Advanced Threat Analytics\Gateway\es\
    Property(S): dirE0DD863C8526EB3FF6D2A3E935DEB67E = C:\Program Files\Microsoft Advanced Threat Analytics\Gateway\fr\
    Property(S): dir4F6D598E355BD4F87992B7AB3025C239 = C:\Program Files\Microsoft Advanced Threat Analytics\Gateway\ja\
    Property(S): dir1009F065F0C609D5631BDE3B00ACFDFB = C:\Program Files\Microsoft Advanced Threat Analytics\Gateway\Pef\
    Property(S): dir8E987C120ABBEA8ACB398CF5590BFA3E = C:\Program Files\Microsoft Advanced Threat Analytics\Gateway\Pef\Extensions\
    Property(S): dir2592A87C52B655378D8BA172003D6E7F = C:\Program Files\Microsoft Advanced Threat Analytics\Gateway\Pef\Models\
    Property(S): dirCFC8A01DC2448BE747F4ECDE74A3F17B = C:\Program Files\Microsoft Advanced Threat Analytics\Gateway\Pef\Models\CoreNetworking\
    Property(S): dirF12008D78CFA7D7E4EFAA3A806ACBFEA = C:\Program Files\Microsoft Advanced Threat Analytics\Gateway\Pef\Models\Infrastructure\
    Property(S): dir74CE95EFB3C43F1AB556A48B4BF7E891 = C:\Program Files\Microsoft Advanced Threat Analytics\Gateway\Pef\Models\Microsoft\MicrosoftCommon\
    Property(S): dirEF21B4F792C1CCB27E3D605C69B2AEC8 = C:\Program Files\Microsoft Advanced Threat Analytics\Gateway\Pef\Models\Microsoft\Windows\FileSharing\
    Property(S): dir7B873B162C6E4DEA85F5C7971DA018D4 = C:\Program Files\Microsoft Advanced Threat Analytics\Gateway\Pef\Models\Microsoft\Windows\IdentityAndSecurity\
    Property(S): dirFB75C1011B230B385AA0DA5BBFADE7AC = C:\Program Files\Microsoft Advanced Threat Analytics\Gateway\Pef\Models\Public\
    Property(S): ExecServiceConfig = SchedServiceConfig€ATAGateway€1€restart€restart€restart€1€5€€€ATAGatewayUpdater€1€restart€restart€restart€1€5€€
    Property(S): RollbackServiceConfig = SchedServiceConfig
    Property(S): dirC14DFF180648E323983D75D39BF4178F = C:\Program Files\Microsoft Advanced Threat Analytics\Gateway\Pef\Models\Microsoft\
    Property(S): dir1F6922A221973E1F2ECF6CB8CB25F97B = C:\Program Files\Microsoft Advanced Threat Analytics\Gateway\Pef\Models\Microsoft\Windows\
    Property(S): INSTALLATIONPATH = C:\Program Files\Microsoft Advanced Threat Analytics\Gateway\
    Property(S): TARGETDIR = C:\
    Property(S): SourceDir = C:\ProgramData\Package Cache\{17A474D5-9D32-4BD6-B838-87F2DD2380E8}v1.7.5757.57477\
    Property(S): VersionNT = 603
    Property(S): ALLUSERS = 1
    Property(S): DataCollectorSetName = Microsoft ATA Gateway
    Property(S): DataCollectorSetPerformanceCounterCategoryNames = Microsoft ATA Gateway;Microsoft ATA Gateway Updater
    Property(S): DataCollectorSetProcessNames = Microsoft.Tri.Gateway;Microsoft.Tri.Gateway.Updater;lsass
    Property(S): Manufacturer = Microsoft Corporation
    Property(S): ProductCode = {17A474D5-9D32-4BD6-B838-87F2DD2380E8}
    Property(S): ProductLanguage = 0
    Property(S): ProductName = Microsoft Advanced Threat Analytics Gateway
    Property(S): ProductVersion = 1.7.5757.57477
    Property(S): SecureCustomProperties = WIX_DOWNGRADE_DETECTED;WIX_UPGRADE_DETECTED
    Property(S): MsiHiddenProperties = MANAGEMENTACCOUNTPASSWORD
    Property(S): MsiLogFileLocation = C:\Users\myuser\AppData\Local\Temp\Microsoft Advanced Threat Analytics Gateway_20170418121254_002_MsiPackage.log
    Property(S): PackageCode = {7065AD0A-9964-4F73-978B-43324D78F5EB}
    Property(S): ProductState = -1
    Property(S): PackagecodeChanging = 1
    Property(S): ARPSYSTEMCOMPONENT = 1
    Property(S): MSIFASTINSTALL = 7
    Property(S): INSTALLATIONCONFIGURATIONFILEPATH = C:\Users\myuser\Downloads\\GatewayInstallationConfiguration.json
    Property(S): MANAGEMENTAUTHENTICATIONTOKEN = AQAAANCMnd8BFdERjHoAwE_Cl-sBAAAAn_qy4EI-1kewUN7uWZULyQAAAAACAAAAAAAQZgAAAAEAACAAAACSLvjZ6kMZNOFBj23lH9Hbw-7JpEZIrlIRSq0J4wv-twAAAAAOgAAAAAIAACAAAAAibrlrhRjTOsgzSQtq0Y2c1rh82M4x-aUPH3di8UFD6cAAAAB3GReGbob3lChMIZ7r68oxGumz6UQ5aNXC0Oeo4gCgwcTtRRKV4DR72ZD7Dq7C10lQ4xrC1Xdm1lFErH_U6-CNuWj60ZVe8yTs-VUBZo6mUfIxGqGaIZVp68cfJle8Bj-ZTkN-RhrrVlcZppBdxyuQbH_9nGyQR3nevJJix81RCF2o-VfuNsOcp58LvTIn64AQb5FM1GA_JHi-tmEhIUJVI0AphzXBRGKKUM3B1uY72fzEeL--ReDEUXNA9EzWoalAAAAASDs5yqZTLchE6eJ9DDKv3ZNVlkt3j7gbcOo_rLSkC4rwdaPuURn_QZ4kwmCdv10H6DiFp2hXP8FvkR5ta_Km5Q
    Property(S): REBOOT = ReallySuppress
    Property(S): CURRENTDIRECTORY = C:\Users\myuser\Downloads
    Property(S): CLIENTUILEVEL = 3
    Property(S): MSICLIENTUSESEXTERNALUI = 1
    Property(S): CLIENTPROCESSID = 5008
    Property(S): MsiSystemRebootPending = 1
    Property(S): VersionDatabase = 500
    Property(S): VersionMsi = 5.00
    Property(S): VersionNT64 = 603
    Property(S): WindowsBuild = 9600
    Property(S): ServicePackLevel = 0
    Property(S): ServicePackLevelMinor = 0
    Property(S): MsiNTProductType = 2
    Property(S): MsiNTSuiteDataCenter = 1
    Property(S): WindowsFolder = C:\Windows\
    Property(S): WindowsVolume = C:\
    Property(S): System64Folder = C:\Windows\system32\
    Property(S): SystemFolder = C:\Windows\SysWOW64\
    Property(S): RemoteAdminTS = 1
    Property(S): TempFolder = C:\Users\myuser\AppData\Local\Temp\
    Property(S): ProgramFilesFolder = C:\Program Files (x86)\
    Property(S): CommonFilesFolder = C:\Program Files (x86)\Common Files\
    Property(S): ProgramFiles64Folder = C:\Program Files\
    Property(S): CommonFiles64Folder = C:\Program Files\Common Files\
    Property(S): AppDataFolder = C:\Users\myuser\AppData\Roaming\
    Property(S): FavoritesFolder = C:\Users\myuser\Favorites\
    Property(S): NetHoodFolder = C:\Users\myuser\AppData\Roaming\Microsoft\Windows\Network Shortcuts\
    Property(S): PersonalFolder = C:\Users\myuser\Documents\
    Property(S): PrintHoodFolder = C:\Users\myuser\AppData\Roaming\Microsoft\Windows\Printer Shortcuts\
    Property(S): RecentFolder = C:\Users\myuser\AppData\Roaming\Microsoft\Windows\Recent\
    Property(S): SendToFolder = C:\Users\myuser\AppData\Roaming\Microsoft\Windows\SendTo\
    Property(S): TemplateFolder = C:\ProgramData\Microsoft\Windows\Templates\
    Property(S): CommonAppDataFolder = C:\ProgramData\
    Property(S): LocalAppDataFolder = C:\Users\myuser\AppData\Local\
    Property(S): MyPicturesFolder = C:\Users\myuser\Pictures\
    Property(S): AdminToolsFolder = C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\
    Property(S): StartupFolder = C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\
    Property(S): ProgramMenuFolder = C:\ProgramData\Microsoft\Windows\Start Menu\Programs\
    Property(S): StartMenuFolder = C:\ProgramData\Microsoft\Windows\Start Menu\
    Property(S): DesktopFolder = C:\Users\Public\Desktop\
    Property(S): FontsFolder = C:\Windows\Fonts\
    Property(S): GPTSupport = 1
    Property(S): OLEAdvtSupport = 1
    Property(S): ShellAdvtSupport = 1
    Property(S): MsiAMD64 = 6
    Property(S): Msix64 = 6
    Property(S): Intel = 6
    Property(S): PhysicalMemory = 6997
    Property(S): VirtualMemory = 6279
    Property(S): AdminUser = 1
    Property(S): MsiTrueAdminUser = 1
    Property(S): LogonUser = myuser
    Property(S): UserSID = S-1-5-21-3833186754-2954248107-4167955477-7177
    Property(S): UserLanguageID = 2057
    Property(S): ComputerName = PGIDC02
    Property(S): SystemLanguageID = 2057
    Property(S): ScreenX = 1024
    Property(S): ScreenY = 768
    Property(S): CaptionHeight = 23
    Property(S): BorderTop = 1
    Property(S): BorderSide = 1
    Property(S): TextHeight = 16
    Property(S): TextInternalLeading = 3
    Property(S): ColorBits = 32
    Property(S): TTCSupport = 1
    Property(S): Time = 12:13:37
    Property(S): Date = 18/04/2017
    Property(S): MsiNetAssemblySupport = 4.0.30319.33440
    Property(S): MsiWin32AssemblySupport = 6.3.9600.17415
    Property(S): RedirectedDllSupport = 2
    Property(S): MsiRunningElevated = 1
    Property(S): Privileged = 1
    Property(S): USERNAME = Windows User
    Property(S): DATABASE = C:\Windows\Installer\1e57cc2c.msi
    Property(S): OriginalDatabase = C:\ProgramData\Package Cache\{17A474D5-9D32-4BD6-B838-87F2DD2380E8}v1.7.5757.57477\Microsoft.Tri.Gateway.Deployment.Package.msi
    Property(S): UILevel = 2
    Property(S): MsiUISourceResOnly = 1
    Property(S): ACTION = INSTALL
    Property(S): ROOTDRIVE = C:\
    Property(S): CostingComplete = 1
    Property(S): OutOfDiskSpace = 0
    Property(S): OutOfNoRbDiskSpace = 0
    Property(S): PrimaryVolumeSpaceAvailable = 0
    Property(S): PrimaryVolumeSpaceRequired = 0
    Property(S): PrimaryVolumeSpaceRemaining = 0
    Property(S): INSTALLLEVEL = 1
    Property(S): SOURCEDIR = C:\ProgramData\Package Cache\{17A474D5-9D32-4BD6-B838-87F2DD2380E8}v1.7.5757.57477\
    Property(S): SourcedirProduct = {17A474D5-9D32-4BD6-B838-87F2DD2380E8}
    Property(S): ProductToBeRegistered = 1
    MSI (s) (48:D4) [12:13:37:735]: Note: 1: 1708 
    MSI (s) (48:D4) [12:13:37:735]: Note: 1: 2205 2:  3: Error 
    MSI (s) (48:D4) [12:13:37:735]: Note: 1: 2228 2:  3: Error 4: SELECT `Message` FROM `Error` WHERE `Error` = 1708 
    MSI (s) (48:D4) [12:13:37:735]: Note: 1: 2205 2:  3: Error 
    MSI (s) (48:D4) [12:13:37:735]: Note: 1: 2228 2:  3: Error 4: SELECT `Message` FROM `Error` WHERE `Error` = 1709 
    MSI (s) (48:D4) [12:13:37:735]: Product: Microsoft Advanced Threat Analytics Gateway -- Installation failed.

    MSI (s) (48:D4) [12:13:37:735]: Windows Installer installed the product. Product Name: Microsoft Advanced Threat Analytics Gateway. Product Version: 1.7.5757.57477. Product Language: 0. Manufacturer: Microsoft Corporation. Installation success or error status: 1603.

    MSI (s) (48:D4) [12:13:37:766]: Deferring clean up of packages/files, if any exist
    MSI (s) (48:D4) [12:13:37:766]: MainEngineThread is returning 1603
    MSI (s) (48:BC) [12:13:37:766]: RESTART MANAGER: Session closed.
    MSI (s) (48:BC) [12:13:37:766]: No System Restore sequence number for this installation.
    === Logging stopped: 18/04/2017  12:13:37 ===
    MSI (s) (48:BC) [12:13:37:781]: User policy value 'DisableRollback' is 0
    MSI (s) (48:BC) [12:13:37:781]: Machine policy value 'DisableRollback' is 0
    MSI (s) (48:BC) [12:13:37:781]: Incrementing counter to disable shutdown. Counter after increment: 0
    MSI (s) (48:BC) [12:13:37:781]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Rollback\Scripts 3: 2 
    MSI (s) (48:BC) [12:13:37:781]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Rollback\Scripts 3: 2 
    MSI (s) (48:BC) [12:13:37:781]: Decrementing counter to disable shutdown. If counter >= 0, shutdown will be denied.  Counter after decrement: -1
    MSI (s) (48:BC) [12:13:37:781]: Destroying RemoteAPI object.
    MSI (s) (48:0C) [12:13:37:781]: Custom Action Manager thread ending.
    MSI (c) (90:F0) [12:13:37:781]: Decrementing counter to disable shutdown. If counter >= 0, shutdown will be denied.  Counter after decrement: -1
    MSI (c) (90:F0) [12:13:37:781]: MainEngineThread is returning 1603
    === Verbose logging stopped: 18/04/2017  12:13:37 ===

    I have other lightweight gateways running fine, and "full" gateways too. Any ideas/suggestions?

    Tuesday, April 18, 2017 11:48 AM

All replies

  • Hello,

    You may re-download the ATA gateway package from ATA Console, and then try to install it again.

    By the way, what's the version for removed ATA Gateway? Is it same as the new installing one?


    Best regards,
    Andy Liu

    Please remember to mark the replies as answers if they help.
    If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com.

    Wednesday, April 19, 2017 8:52 AM
  • Hi Andy,

    I've tried downloading the package several times, no change.

    Yes, the version removed was the same version as I'm trying to re-install.

    Thanks.

    Wednesday, April 19, 2017 9:16 AM
  • Hello,

    After you uninstalled the ATA Gateway previously, have you ever installed other software, such as anti-virus software.

    If so, as a recommendation, you may try to remove the newly installed programs, and re-install ATA Gateway.

    Best regards,

    Andy Liu


    Please remember to mark the replies as answers if they help.
    If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com.

    Wednesday, April 19, 2017 10:10 AM
  • No, nothing else on the box has changed, aside from renewing some certificates.

    Wednesday, April 19, 2017 10:47 AM
  • Hello,

    You may repair the corrupted system files by following the steps in the article below.

    If it doesn't fix, I would recommend to open a ticket to Microsoft.

    https://support.microsoft.com/en-us/help/929833/use-the-system-file-checker-tool-to-repair-missing-or-corrupted-system-files

    Best regards,

    Andy Liu


    Please remember to mark the replies as answers if they help.
    If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com.

    Wednesday, April 26, 2017 6:47 AM
  • Finally got back to this. Gave up trying to install a lightweight gateway due to the above error.

    Thought I'd build a full gateway server instead. However I'm getting the same thing on this clean install of Server 2012 R2 (plus all updates).

    Clearly the problem lies with the ATA server itself, not the gateway installer (or both!).

    Wednesday, June 7, 2017 12:32 PM
  • Hello,

    Is there any error in the log file on ATA Center?  You can find the log file at location: C:\Program Files\Microsoft Advanced Threat Analytics\Center\Logs.

    Also, you can restart the service for ATA Center, and to see if this issue can be solved.

    Best regards,

    Andy Liu


    Please remember to mark the replies as answers if they help.
    If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com.

    Tuesday, July 4, 2017 9:12 AM
  • Are you able to browse the ATA Center console from this machine using the same credentials you are putting into the setup wizard?
    Monday, July 10, 2017 8:15 AM