SCOM agent install in DMZ workstation:21016,21007

Problem:

SCOMAgentinstalledinworkstationinDMZ,buttheconnectionwithSCOMMScannotbecreatedwiththeerrorbelow:

LogName:OperationsManager

Source:OpsMgrConnector

Date:9/20/20135:58:29PM

EventID:21016

TaskCategory:None

Level:Error

Keywords:Classic

User:N/A

Computer:LSEG01.it.com

Description:

OpsMgrwasunabletosetupacommunicationschanneltoscom01.it.comandtherearenofailoverhosts.Communicationwillresumewhenscom01.it.comisavailableandcommunicationfromthiscomputerisallowed.

LogName:OperationsManager

Source:OpsMgrConnector

Date:9/20/20135:58:25PM

EventID:21007

TaskCategory:None

Level:Error

Keywords:Classic

User:N/A

Computer:LSEG01.it.com

Description:

TheOpsMgrConnectorcannotcreateamutuallyauthenticatedconnectiontoscom01.it.combecauseitisnotinatrusteddomain.

Solution:

1.DownloadthetrustedRootandintermediationCACertificateintothelocalserverfromMSserverwhichreportto.(MakesurealloftheRoot/Intermediationcertbetweenthemareimportedtoeachother)

2.Installtheagentontheworkstation.

3.ApplythecertificatebasedontheSCOMtemplatefortheworkstation.Don’tmarkincludeallcertificatesitthecertificationpathifpossible,Themomcertimporttoolwillnotbeabletoimportthecertificate

4.PutthecertificatetothepersonalfolderintheCertificatecontainer,andthenexportthecertwiththeprivatekeytothe.PFXformat.

5.Importthecertificatebythetoolmomcertimport:momcertimport“Cert.PFX”/passwordpassword

6.Wewilldealwiththerootcaneededintheworkgroup/DMZserverinaminute

7.Restartthehealthserviceandchecktheeventlogs.

你可能感兴趣的:(agent,DMZ,SCOM)