Thursday, March 10, 2011

SCOM: "Event Log ID 20070" on managed Computers

Today I manually installed SCOM agent on one of my remote servers. After installation when i checked the status of that server it shown me unmanaged. I wait for 1 hours (i thought it may be a communication problem) but the the status was same.

Then i checked the EventLog of managed server and it showing me Event ID 20070  and 21016

which pointing to check the Event Log of the SCOM server and check for Event ID 20000

According to Event ID 20000 , A device which is not a part of this management group has attempted to assess this Health Service .... But this is not true , all my setting , including Management Group Name, Server name is correct.

At this point I have no idea what to do ... Then i did the following ..
I restarted the core services of SCOM server

And after restarting, everything seems fine :)

I hope this helps :)


Take care

Aman Dhally 

Thursday, March 3, 2011

SCOM: "Failed Accessing Windows Event Log" Error

 Hi All,

Few days back I imported the DHCP Management Pack for SCOM. After importing I start getting Failed "Accessing windows Event Log" errors on Alert View of SCOM.

I Google and search internet and found that this is a BUG in DHCP Management Pack. In Monitored computer it shows the event ID 25002 and 25004

Thanks to Kevins Post who guide us what to monitor and what not to monitor on DHCP Servers
: Kevin Holman

To stop these error you need to Disable this alert using overrides.

To Override:  Right Click the Monitor, click on Properties .
click on Overrides and select "For all objects of class: health Service"

Choose Destination Management Pack. and change the value from "True" to override value "False"

and click on APPLY

Now you can see that it disabled the monitoring of the Windows Event Log.

I hope this Helps

Aman Dhally

SCOM: "DNS 2003 Monitor Zone Resolution Alert" Error

Hi All,

Few days back i imported the DNS Server management pack for SCOM 2007 , The version of DNS Server management pack is 6.0.6480.0

After importing DNS Management Pack after few days i got Alerts regrading "DNS 2003 Monitor Zone Alert" for one of my "Reverse Lookup Zone" subnet.

and when i check using Health Explorer it shows the following.

The DNS 2003 Zone monitor use the following command to check the working of reverse zone.

NslookUp -QueryType=ns nameofzone dnsserver
for example
Nslookup -querytype=ns

The default timeout of 360 seconds.

So troubleshoot the problem i did the following .

  • Login to my DNS Server.
  • Open DNS Console
  • Expand Reverse Lookup Zone
  • Right click on my Subnet for which SCOM was giving me the alert.

  • Right Click on the subnet and click on Properties and then click on the NameServer tab
  • Note: please note that how much time it take to load, in my environment it takes half an hour to load the name of name servers.

So in My Environment the culprit was "MY old removed domain controllers whose entries still not get removed"

And after cleaning my DNS entries, everything seems well :)

Hope this helps

Aman Dhally