Management Points on All Sites Constantntly Fail
Good Afternoon! I've had an SCCM enviroment set up on my company's network for about 6 months now. It consists of 1 primary SCCM server + 1 local DP and 3 remote sites all over the world. This totals 5 site servers. Each of these remote site servers have dedicated VMs which are set up as secondary sites. Each one of these 5 servers has the management point role installed with the primary SCCM server being the default. The issue I'm having is that almost every day, I have a management point that fails on one or more of the sites (including primary.) From what I'v read about it, most people say to just uninstall/reinstall the MP which I do and it works - but - it's short lived. Below are the errors that I receive when I decide to reinstall the role: MP Control Manager detected management point is not responding to HTTP requests. The HTTP status code and text is 401, Unauthorized. Possible cause: Management point encountered an error when connecting to SQL Server. Solution: Verify that the SQL server is properly configured to allow Management Point access. Verify that management point computer account or the Management Point Database Connection Account is a member of SMS Management Point Role (msdbrole_MP) in the SQL Server database. Possible cause: The SQL Server Service Principal Names (SPNs) are not registered correctly in Active Directory Solution: Ensure SQL server SPNs are correctly registered. Review Q829868. Possible cause: Internet Information Services (IIS) isn't configured to listen on the ports over which SMS is configured to communicate. Solution: Verify that the designated Web Site is configured to use the same ports which SMS is configured to use. Possible cause: The designated Web Site is disabled in IIS. Solution: Verify that the designated Web Site is enabled, and functioning properly. Possible cause: The SMS ISAPI Application Identity does not have the requisite logon privileges. Solution: Verify that the account that the SMS ISAPI is configured to run under has not been denied batch logon rights through group policy. For more information, refer to Microsoft Knowledge Base article 838891. Any ideas? Thanks! Ben K.
July 10th, 2011 12:50pm

Is the SQL service account running under the local system or a user account?Kent Agerlund | My blogs: http://blog.coretech.dk/author/kea/ and http://scug.dk/ | Twitter @Agerlund | Linkedin: /kentagerlund
Free Windows Admin Tool Kit Click here and download it now
July 10th, 2011 1:30pm

Have you run the MP-Troubleshooter from the ConfigMgr toolkit V2?http://www.sccm-tools.com http://sms-hints-tricks.blogspot.com
July 12th, 2011 3:02pm

Hi, You can read the following documents to help you to troubleshoot MP issue: http://support.microsoft.com/kb/829868 try this to set the SPN attribute. http://technet.microsoft.com/en-us/library/cc431377.aspx#IIS check whether your IIS is correctly configured Verify your MP isntallation: http://<management point name>/sms_mp/.sms_aut?mplist. If you see a blank screen instead of an error message, the request is successful. http://<management point name>/sms_mp/.sms_aut?mpcert. If the request is successful, you will see a long list of numbers and letters. For more information, read this technet MP troubleshooting article: http://technet.microsoft.com/en-us/library/bb932118.aspx Hope this is helpful to you. Thanks
Free Windows Admin Tool Kit Click here and download it now
July 13th, 2011 4:09am

This topic is archived. No further replies will be accepted.

Other recent topics Other recent topics