Windows 10 computers are not reporting to new WSUS 2012 R2 (error 0x80244017)
hello, working on new wsus server. have 19 client computers windows 10 other pcs (about 250 have no problem). seems pcs win 10 have issues connecting new wsus. configured wsus work on port 8531 (ssl) , using our own ca generate cert distributed on gpo clients. on win10 error 0x80244017 (i tried fixes find on internet) .
here windowsupdate.log:
2016/01/04 15:37:04.7610870 1000 6940 comapi * start * init search clientid = updateorchestrator
2016/01/04 15:37:04.7610982 1000 6940 comapi * start * search clientid = updateorchestrator
2016/01/04 15:37:04.7729608 1000 6940 agent * start * queueing finding updates [callerid = updateorchestrator id = 3]
2016/01/04 15:37:04.7729749 1000 6940 agent removing service 00000000-0000-0000-0000-000000000000 sequential scan list
2016/01/04 15:37:04.7729842 1000 6940 agent added service 00000000-0000-0000-0000-000000000000 sequential scan list
2016/01/04 15:37:04.7730205 1000 6940 comapi search clientid = updateorchestrator
2016/01/04 15:37:04.7743159 1000 7516 agent * end * queueing finding updates [callerid = updateorchestrator id = 3]
2016/01/04 15:37:04.7750530 1000 7516 agent * start * finding updates callerid = updateorchestrator id = 3
2016/01/04 15:37:04.7750546 1000 7516 agent online = yes; ignore download priority = no
2016/01/04 15:37:04.7750562 1000 7516 agent criteria = isinstalled=0 , deploymentaction='installation' or ispresent=1 , deploymentaction='uninstallation' or isinstalled=1 , deploymentaction='installation' , rebootrequired=1 or isinstalled=0 , deploymentaction='uninstallation' , rebootrequired=1""
2016/01/04 15:37:04.7750626 1000 7516 agent serviceid = {00000000-0000-0000-0000-000000000000} third party service
2016/01/04 15:37:04.7750639 1000 7516 agent search scope = {machine}
2016/01/04 15:37:04.7750703 1000 7516 agent caller sid applicability: s-1-5-21-725345543-823518204-682003330-17738
2016/01/04 15:37:04.7750719 1000 7516 agent registerservice set
2016/01/04 15:37:04.7752650 1000 7516 agent unable query isinventoryrequired service property hr=8024043d
2016/01/04 15:37:04.7761255 1000 7516 misc got wsus client/server url:https://sus.wuestenrot.sk:8531/clientwebservice/client.asmx"";
2016/01/04 15:37:04.9150310 1000 7516 protocoltalker serviceid = {3da21691-e39d-4da6-8a4b-b43877bcb1b7}, server url = https://sus.wuestenrot.sk:8531/clientwebservice/client.asmx
2016/01/04 15:37:04.9150332 1000 7516 protocoltalker pt: calling getconfig on server
2016/01/04 15:37:04.9150470 1000 7516 webservices auto proxy settings web service call.
2016/01/04 15:37:04.9198151 1000 7516 webservices ws error: there error communicating endpoint @ 'https://sus.wuestenrot.sk:8531/clientwebservice/client.asmx'.
2016/01/04 15:37:04.9198158 1000 7516 webservices ws error: server returned http status code '403 (0x193)' text 'forbidden'.
2016/01/04 15:37:04.9198161 1000 7516 webservices ws error: server understood request, cannot fulfill it.
2016/01/04 15:37:04.9198190 1000 7516 webservices web service call failed hr = 80244017.
2016/01/04 15:37:04.9198193 1000 7516 webservices current service auth scheme=0.
2016/01/04 15:37:04.9198193 1000 7516 webservices current proxy auth scheme=0.
2016/01/04 15:37:04.9198241 1000 7516 protocoltalker pterror: 0x80244017
2016/01/04 15:37:04.9198244 1000 7516 protocoltalker getconfig_withrecovery failed 0x80244017
2016/01/04 15:37:04.9198244 1000 7516 protocoltalker refreshconfig failed 0x80244017
2016/01/04 15:37:04.9198251 1000 7516 protocoltalker refreshptstate failed 0x80244017
2016/01/04 15:37:04.9198264 1000 7516 protocoltalker syncupdates round trips: 0
2016/01/04 15:37:04.9198270 1000 7516 protocoltalker sync of updates 0x80244017
2016/01/04 15:37:04.9198280 1000 7516 protocoltalker syncserverupdatesinternal failed 0x80244017
2016/01/04 15:37:04.9201070 1000 7516 agent failed synchronize, error = 0x80244017
2016/01/04 15:37:04.9214519 1000 7516 agent exit code = 0x80244017
2016/01/04 15:37:04.9214528 1000 7516 agent * end * finding updates callerid = updateorchestrator id = 3
2016/01/04 15:37:04.9255247 1000 3448 comapi resumed search clientid = updateorchestrator
2016/01/04 15:37:04.9258069 1000 3448 comapi updates found = 0
2016/01/04 15:37:04.9258072 1000 3448 comapi exit code = 0x00000000, result code = 0x80244017
2016/01/04 15:37:04.9258075 1000 3448 comapi * end * search clientid = updateorchestrator
2016/01/04 15:37:04.9260529 1000 6940 comapi isusinternal:: disconnectcall failed, hr=8024000c
----------------------------------------------
have been looking fix 5 days nothing seems work. other clients have no problem connect. win10 pcs on different lan subnets (other pcs same subnets have no problem).
tried reset windows update script updates still failing.
c:\users\name\desktop>clientdiag.exe
wsus client diagnostics tool
checking machine state
checking admin rights run tool . . . . . . . . . pass
automatic updates service running. . . . . . . . . . pass
background intelligent transfer service running. . . pass
getfileversion(szenginedir,&susversion) failed hr=0x80070002
system cannot find file specified.
press enter complete
----------------------------------------------------------------------------
when try browse https://sus.wuestenrot.sk:8531/clientwebservice/client.asmx from 1 of affected machines:
i err_tunnel_connection_failed error. error message 403. issues found windows received http error message: 403 (forbidden) f... detected contact owner of remote site permission completed issues found windows received http error message: 403 (forbidden) "sus.wuestenrot.sk" detected contact owner of remote site permission completed windows can reach site, not have permission access the
hi,
if use http instead of https, client able synchronize wsus server?
if yes, please check certificate trust chain on client.
>>i tried reset windows update script updates still failing.
how did reset "windows update"? can't open link mentioned above.
please try follow the guide below to reset windows update components:
https://support.microsoft.com/en-us/kb/971058#/en-us/kb/971058
best regards.
steven lee please remember mark replies answers if , unmark them if provide no help. if have feedback technet support, contact tnmff@microsoft.com.
Windows Server > WSUS
Comments
Post a Comment