ADAP配置服务器或者域控时显示error code:6ba,怎么解决?

ADAP配置服务器或者域控时显示error code:6ba,怎么解决?

1.一般使用以下方法可以解决问题(大部分客户已经成功解决)

The "RPC server unavailable Error code: 6ba " occurs when the software is unable to connect to the machines for collecting event logs. Please ensure the communication between ADAudit Plus and the concerned Member Server is proper and make sure that the " Windows Event Log " service and " TCP/IP Helper " service is running on the corresponding servers.

Please ensure, these ports are not blocked by any firewall (Interrupting the communication between ADAudit Plus & Servers).

* Port "389" to communicate with the LDAP Protocol.
* Port "135" to communicate with RPC.
* Port "445" to communicate with NetBIOS Session Service.
* Port "49153" - Inbound rule for the RPCSS service to allow RPC/TCP traffic for the local Event Log Service.(this is the default event collection method)
* Port "49155" - If WMI based event log collection is enabled(this is not the default)

Enabling Remote Event log Management:
Open the Windows Firewall with Advanced Security snap-in.

Server Manager -> Local Server -> Properties Page -> Click the link for the Windows Firewall -> Click on 'Advanced Settings' ( or )

Start -> Run -> WF.msc -> Click 'Inbound Rules' (left hand side tree)

Verify that exceptions to the following firewall rules are enabled, and have not been disabled by Group Policy settings. If any are not enabled, go on to the next step.

COM+ Network Access (DCOM-In)
Remote Event Log Management (NP-In)
Remote Event Log Management (RPC)
Remote Event Log Management (RPC-EPMAP)

Right-click the rules that are not enabled, and then click Enable Rule on the context menu.

Close the Windows Firewall with Advanced Security snap-in.

2.如果以上都确认好,但还是无法收集数据,可以尝试在安装ADA的服务器添加host解析,有一个客户已经成功解决问题。

    • Related Articles

    • ADM NTFS权限有些账号名显示为SID,怎么解决?

      问题描述:NTFS权限报表有些账号正常显示,有些直接显示为SID,如下图: 解决方案如下: 1. 验证 SID 值是否存储在 SID 表中,方法如下: 1)打开命令提示符(以管理员身份运行)—>将其重定向到安装目录>\ADManager Plus\bin 执行:ConnectDB.bat 弹出输入密码:AdmanUser@123$ 2)select * from <domain_com_sids> where sid_string like '%<sidvalue>%'; ...
    • TFA采用短信方式收不到短信怎么解决?

      浏览到配置界面--多重身份验证,选择SMS验证,将其它中文字段删除,只留下%confirmCode%,如下图所示:
    • Log360中无法访问ELA,怎么解决?

      1.首先查看ELA可否单独访问,排除是否因为没有启动导致,如没有启动,请启动ELA。 2.查看Log360中的集成配置,是否启用https,或者是否配置通过服务器名称访问,并更新集成时输入的凭证。 3.可能原因3:启用https,但是没有通过域名访问,导致从Log360中无法跳转到ELA中。通过域名访问Log360后,即可正常访问其组件。
    • EXRP无法安装为服务,怎么解决?

      1.如果以控制台方式开启了EXRP,请先将产品关闭。 2.以管理员身份运行产品安装目录bin文件夹下的:InstallService.exe 3.弹出输入credential的框,直接点击install即可安装为服务
    • ADSSP的机器登录MFA报错:MFA-041,怎么解决?

      报错截图: 解决思路: 1.看下安装ADSSP的服务器时间和GINA客户端的时间有没有差异,如有,同步一下. 2.看下注册表里面的这个access key和ADSSP服务器的安装密钥是否一致 注册表位置:HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\ZOHO Corp\ADSelfService Plus Client Software ADSSP位置: