Evidence of a certificate problem can manifest very early in the PXE process while "looking for policy"; it hangs at "Waiting for Approval". MP/Notification server communication errors can be noted in the log. Records details about the software update point configuration and connections to the WSUS server for subscribed update categories, classifications, and languages. In the BGBSERVER.log I am seeing errors like this sometimes: --ERROR: Expecting more data from client [::ffff:10.10.160.137]:64623 Any help would be appreciated because I have no clue where to go from here. Records the registration of the management point. Records the outcome of task sequence dependencies before starting a task sequence. So I looked at the bgmgr.log file on the site and we are seeing this: --Begin to process file C:\Program Files\Microsoft Configuration Manager\inboxes\bgb.box\cbo4hxcv.BOS SMS_NOTIFICATION_MANAGER 10/3/2017 4:28:10 PM 43056 (0xA830) --ERROR: Failed to parse online status file SMS_NOTIFICATION_MANAGER 10/3/2017 4:28:10 PM 43056 (0xA830) --ERROR: Failed to execute task class OnlineStatusParser SMS_NOTIFICATION_MANAGER 10/3/2017 4:28:10 PM 43056 (0xA830) --ERROR: Failed to parse file SMS_NOTIFICATION_MANAGER 10/3/2017 4:28:10 PM 43056 (0xA830) --ERROR: Failed to execute task class OnlineStatusProcessTask SMS_NOTIFICATION_MANAGER 10/3/2017 4:28:10 PM 43056 (0xA830) --WARNING: Failed to process file cbo4hxcv.BOS, move it to bad inbox SMS_NOTIFICATION_MANAGER 10/3/2017 4:28:10 PM 43056 (0xA830). If you have issues viewing the tenant attach details in the Microsoft Intune admin center, it may be because of an issue with the hierarchy onboarding configuration. Records details about the site backup activity. Records details about the discovery or detection of applications on client computers. Records Component Status Summarizer tasks. Records the availability of the management point every 10 minutes. Records the processing of metering files and settings. Maintains the local package cache on the client. Records information about the activity and status of the reporting services point. Parameters: D:\Program Files\Microsoft Configuration Manager\bin\x64\rolesetup.exe /install /siteserver:NDC3CWNPSCMAP01 SMSBGB 0 by Tim DK. Once the message is sent to the SMS_NOTIFICATION_SERVER, a task is sent from the management point to the corresponding client. Log file for component that synchronizes apps from the Microsoft Store for Business. Edited by David Baur Jr Monday, December 12, 2016 8:56 PM more detail add. Records the activity of when Configuration Manager scripts run on the client. In Configuration Manager, client and site server components record process information in individual log files. Records information that is related to client operations, including user sign in and sign out operations, and Mac computer activity. and. Records management point responses to Auto Apply Driver task sequence action requests. Records details about power management activities on the client computer, including monitoring and the enforcement of settings by the Power Management Client Agent. Records details about the installation of the Endpoint Protection client and the application of antimalware policy to that client. The following table lists the log files that contain information related to the fallback status point. Records information about configuration items, such as compliance settings, software updates, and applications. Records information about BitLocker management policies. It's possible that specific devices, which are Configuration Manager clients, won't be uploaded to the service. This log file also includes information about enabling and disabling wake-up proxy. C:\Program Files\Microsoft Configuration Manager\inboxes\bgb.box\Bgb7cbzg.BOS. For example, run scripts and CMPivot. Records details about the use of the ExtractContent.exe tool on a remote, prestaged distribution point. SCCM CB Notification Server/Manager. Use the following logs located on the service connection point: Use the following logs located on the management point: Use the following logs located on the client: When an action is initiated from the Microsoft Intune admin center, CMGatewayNotificationWorker.log processes the request. Reviewing logs on the management point server, the BGB Server Log bgbserver.log showed: Expecting More Data From Client. Client state system inbox backlog: Checks the backlog for the inbox auth\statesys.box\incoming. The following table lists the log files that contain information related to discovery. Hi for windows firewall is the port 10123 to be opened on the management point or the client? For example, CMG-ServiceName-RoleInstanceID-CMGSetup.log. If your client doesn't show "online", it may be caused by it not working properly. document.getElementById( "ak_js_1" ).setAttribute( "value", ( new Date() ).getTime() ); This site uses Akismet to reduce spam. Records activities of the discovery data manager. Records client setup data for mobile device legacy clients. Records information for clients in a virtual desktop infrastructure (VDI). Records information for the co-management workload for compliance policies. Records all the discovery data from the mobile device legacy clients on the management point that is enabled for mobile devices. Records use of the Configuration Manager client in Control Panel. The following table lists logs that contain information related to mobile device enrollment. This log is typically only used when you enable debug logging, or there's a problem with the component. The following table lists the log files that are on the Configuration Manager site server and site system servers. I logged a case for this with Microsoft (ID 3141726) which changed status to Resolved just now. You'll receive error code 403, forbidden. The following sections list log files related to Configuration Manager functions. Records output from the site backup process. Reviewing the logs on the client machines, the CCM Notification logCCMNotificationAgent.log showed: Server Certificate Retrieved in TLS is Not an Exact Match of the Current MP Encryption Certificate0x80004005. Subsequent sync cycles are delta synchronizations. Waiting for clients to connect~~, lt;SMS_NOTIFICATION_SERVER><08-15-2017 01:16:02.051-330> STATMSG: ID=9807 SEV=I LEV=M SOURCE=SMS Server COMP=SMS_NOTIFICATION_SERVER SYS=SCCMTP1.INTUNE.COM SITE=TP1 PID=3280 TID=1968 GMTDATE=Mon Aug 14 19:46:02.059 2017 ISTR0=SCCMTP1.INTUNE.COM ISTR1=10123 ISTR2= ISTR3= ISTR4= ISTR5= ISTR6= ISTR7= ISTR8= ISTR9= NUMATTRS=0, lt;SMS_NOTIFICATION_SERVER><08-15-2017 01:16:02.061-330> WARNING: Notification Server (%systemroot%\system32\dllhost.exe) with TCP port 10123 is NOT allowed by Windows Firewall on all interfaces.~~, lt;SMS_NOTIFICATION_SERVER><08-15-2017 01:16:02.062-330> Total online clients: 0 (TCP: 0 HTTP: 0)~~, lt;SMS_NOTIFICATION_SERVER><08-15-2017 01:21:02.039-330> Generated BGB online status FULL report C:\Program Files\Microsoft Configuration Manager\inboxes\bgb.box\Bgb72ul2.BOS (version: 0) at 08/15/2017 01:21:02~~, lt;SMS_NOTIFICATION_SERVER><08-15-2017 01:21:02.055-330> WARNING: Notification Server (%systemroot%\system32\dllhost.exe) with TCP port 10123 is NOT allowed by Windows Firewall on all interfaces.~~, lt;SMS_NOTIFICATION_SERVER><08-15-2017 01:21:02.067-330> Wait 300 seconds for notifications, lt;SMS_NOTIFICATION_SERVER><08-15-2017 01:21:02.276-330>, lt;SMS_NOTIFICATION_SERVER><08-24-2017 12:07:50.411-330> Retrieving push tasks from database~~, lt;SMS_NOTIFICATION_SERVER><08-24-2017 12:07:50.412-330> Retrieving online resync flag from database~~, lt;SMS_NOTIFICATION_SERVER><08-24-2017 12:11:50.914-330> Total online clients: 1 (TCP: 1 HTTP: 0)~~, lt;SMS_NOTIFICATION_SERVER><08-24-2017 12:11:50.916-330> Online/Offline clients since last successful report: 1~~, lt;SMS_NOTIFICATION_SERVER><08-24-2017 12:11:50.919-330> Generated BGB online status DELTA report C:\Program Files\Microsoft Configuration Manager\inboxes\bgb.box\Bgb7cbzg.BOS (version: 18) at 08/24/2017 12:11:50~~, lt;SMS_NOTIFICATION_SERVER><08-24-2017 12:11:50.940-330> Get one push message from database.~~, lt;SMS_NOTIFICATION_SERVER><08-24-2017 12:11:52.184-330> Starting to send push task (PushID: 1 TaskID: 3 TaskGUID: 3700E17A-4BDC-45C7-990E-EA26FF92E5BF TaskType: 4 TaskParam: ) to 1 clients with throttling (strategy: 1 param: 42)~~, lt;SMS_NOTIFICATION_SERVER><08-24-2017 12:11:52.209-330> Finished sending push task (PushID: 1 TaskID: 3) to 1 clients~~, lt;SMS_NOTIFICATION_SERVER><08-24-2017 12:11:52.214-330> Starting to send push task (PushID: 1 TaskID: 4 TaskGUID: FD80647D-9748-4C96-AFC8-8BC71E00C235 TaskType: 1 TaskParam: ) to 1 clients with throttling (strategy: 1 param: 42)~~, lt;SMS_NOTIFICATION_SERVER><08-24-2017 12:11:52.216-330> Finished sending push task (PushID: 1 TaskID: 4) to 1 clients~~, lt;SMS_NOTIFICATION_SERVER><08-24-2017 12:11:52.237-330> Starting to send push task (PushID: 1 TaskID: 5 TaskGUID: 9D2B274B-F6E3-452F-A1C3-C1C166523EC8 TaskType: 1 TaskParam: ) to 1 clients with throttling (strategy: 1 param: 42)~~, lt;SMS_NOTIFICATION_SERVER><08-24-2017 12:11:52.238-330> Finished sending push task (PushID: 1 TaskID: 5) to 1 clients~~, lt;SMS_NOTIFICATION_SERVER><08-24-2017 12:11:52.261-330> Starting to send push task (PushID: 1 TaskID: 6 TaskGUID: CFB76FC4-BCC5-4525-AA53-80BCD4393E46 TaskType: 1 TaskParam: ) to 1 clients with throttling (strategy: 1 param: 42)~~, lt;SMS_NOTIFICATION_SERVER><08-24-2017 12:11:52.262-330> Finished sending push task (PushID: 1 TaskID: 6) to 1 clients~~, lt;SMS_NOTIFICATION_SERVER><08-24-2017 12:11:52.285-330> Starting to send push task (PushID: 1 TaskID: 7 TaskGUID: 1ED88E07-5E52-44FD-AF07-73769EDD7FA6 TaskType: 1 TaskParam: ) to 1 clients with throttling (strategy: 1 param: 42)~~, lt;SMS_NOTIFICATION_SERVER><08-24-2017 12:11:52.286-330> Finished sending push task (PushID: 1 TaskID: 7) to 1 clients~~, lt;SMS_NOTIFICATION_SERVER><08-24-2017 12:11:52.309-330>, Fast Channel Client Notification in SCCM , Fast channel notification and MP replica issues , Whats New With ConfigMgrs Client Notification Feature . ERROR: Don't have SQL connection when get client certificate for client Now everything is configured over http, but apparently somewhere there is a connection over https. First, you need to ensure all the notification components are installed correctly on the server and client sides. Records the historical activity in Software Center for the specified user on the client computer. Logging improvements in future releases should fix this and avoid BgbServer.log from turning red. Use to troubleshoot co-management on the client. CMGatewaySyncUploadWorker.log; CMGatewayNotificationWorker.log; Use the following logs located on the management point: BgbServer.log; Use the following logs located on the client: CcmNotificationAgent.log; Review your upload. Records installation and configuration details about the state migration point. Quick Question. Records messages generated by the installation of a data warehouse service point. Records the activities and the status of the Exchange Server connector. Records details about scan requests for software updates, the WSUS location, and related actions. The following table lists the log files that contain information related to client notification. Records the details about the use of the ExtractContent.exe tool on a remote, prestaged distribution point. Records information about reporting policy platform results into state messages for configuration items. The notification agent was running. For Automatic Deployment Rules, this log file is located on the site server in %windir%\CCM\Logs, if the ConfigMgr client is installed on the site server. smscliui.log: Records use of the Configuration Manager client in Control Panel. This will receive the PUSH messages from MP. Records communication between mobile devices and the enrollment proxy point. Servicing uses the same infrastructure and process as software updates. Records the status of the Endpoint Protection site system role. Records the installation activities of the enrollment website. Records the client registration activity processed by the management point. Records health check, namespace, session creation, and certificate check actions. The, Microsoft has just released more information and a resolution for a problem scenario in an SP1 CU2 or, Microsoft has released a new hotfix which you will most likely want to install if you are using, Beginning of August Microsoft has announced their new cumulative update servicing model for System Center 2012 Configuration Manager., Last week Microsoft has released Cumulative Update 2 (CU2) for Configuration Manager (Article ID: 2780664). BGBSERVER.LOG Shows. Records details about the smsdpusage.exe that runs and gathers data for the distribution point usage summary report. One of the errors gave a very clear indication that there could be a communication issue between server and client. This communication channel used for SCCM client fast notification is via TCP (port 10123) or HTTP (port 80). Records details about deploying the cloud management gateway service, ongoing service status, and use data associated with the service. After upgrading a Configuration Manager Current Branch environment to 1706 you may notice a lot of Expecting more data from client errors in the BgbServer.log . Records details about wake-up procedures, such as when to wake up deployments that are configured for Wake On LAN. Records account creation and security group details in Active Directory. Records all BITS communication for policy or package access. Records information about uninstalling wake-up proxy when clients receive the client setting option to turn off wake-up proxy, if wake-up proxy was previously turned on. Records the activity of the WMI provider for the endpoint analytics sensor. Records activities related to client notification operations. Records information about the processing of MIF files and hardware inventory in the Configuration Manager database. Records high-level information about the evaluation, conflict reporting, and remediation of configuration items and applications. SCCM CB 1706 introduced the RUN Script option through the fast channel push notification. I am an active member of the IT Pro community and a Microsoft MVP in Enterprise Mobility. The following table lists the log files that contain information related to the Windows Update Agent. Records software distribution data from mobile device legacy clients on a management point that is enabled for mobile devices. It generates push messages for clients and sends notifications to the BGB server (MP), and stores the results. Records details about when the Windows Update Agent connects to the WSUS server and retrieves the software updates for compliance assessment, and whether there are updates to the agent components. This can be confirmed using the following log files. You'll see something reported back in the smspxe.log like "RequestMpKeyInformation . BGBAgent component log :-. Records the status of client diagnostic actions. The client health task (ccmeval) usually self-corrects problems with this component. Records the replication of files between the site server components and the Scheduler component. Records information for multicast package transfer and client request responses. Records activities related to client registration, such as validating certificates, CRL, and tokens. We are currently on 1706 and recently we noticed most of the devices are showing the Offline icon. The following table lists the Configuration Manager log files that contain information related to certificate enrollment. I checked the software and hardware firewalls on the server-side and discovered that Windows Firewall was blocking the port communication 10123. Records detail related to checks for important internet endpoints. Records information about the download of extensions from Microsoft, and the installation and uninstallation of all extensions. When the action is performed, you'll see a confirmation message: If the admin doesn't have the required permissions in Configuration Manager, you'll see an Unauthorized response in the CMGatewayNotificationWorker.log. Can't find corresponding certificate used in client registration for client (Type: SCCM ID: GUID DB58FB0-B5DE-4942-A02B-49E3C8F7E57D) Can't do post authentication without client certificate stored in registration. When you supplement Wake On LAN by using wake-up proxy, this activity is logged on the client. then the time starts to extend to almost 2-3 minutes between the client jobs on the devices. The following table lists the log files that contain information related to remote control. Use the following log files to help troubleshoot issues with Desktop Analytics integrated with Configuration Manager. This data is logged in Mtrmgr.log. 3. Records information about data synchronization between the site database and the data warehouse database. Some client actions can be run from the Microsoft Intune admin center on the synchronized clients. September 29, 2017. CTool::RegisterComPlusService: run command line: C:\Windows\Microsoft.NET\Framework64\v4.0.30319\RegSvcs.exe /u D:\Program Files\Microsoft Configuration Manager\bin\x64\BGBServer\microsoft.configurationmanager.bgbserverchannel.dll Records multicast provider interaction with Windows Deployment Services (WDS). The log file is located in the %windir%$Windows.~BT\sources\panther folder. Upgrade to Microsoft Edge to take advantage of the latest features, security updates, and technical support. Records changes in state for configuration items, such as compliance settings, software updates, and applications. The next sync time is noted by log entries . Records the Windows Installer data for the configuration of a management point that is enabled for mobile devices. Records information about the processing of MIF files. Records requests for policies made by using the Data Transfer Service. Records the GUIDs of all mobile device legacy clients that communicate with the management point that is enabled for mobile devices. Records certificate activities for intrasite communication. Top-level site in the Configuration Manager hierarchy, Service health state for the SMS Provider administration service REST API, including certificate information. It may not display this or other websites correctly. The following table lists the log files that contain information related to Endpoint Protection. Records all actions using DISM. Records details about packages and task sequences that run on the client. In a weeks time we had 10 gigs of .BOS files in the bgb.box\bad folder. On all supported versions of Windows, the provider enumerates the current settings on computers during hardware inventory and applies power plan settings. Log file for Azure Active Directory (Azure AD) user and user group discovery. Records Active Directory User Discovery actions. Maintains certificates for Active Directory Domain Services and management points. Records the installation of the Configuration Manager console. Can you also attach CcmNotificationAgent.log ?. Records information about the processing of software inventory data to the site database. This issue can be caused by onboarding a hierarchy that's already onboarded. This tool extracts content that has been exported to a file. Records details about setting up connections between the cloud management gateway service and the cloud management gateway connection point. I checked the log files on my primary and MP (both are on the same server), andBGBServer.log shows a warning all the time WARNING: Notification Server (%systemroot%\system32\dllhost. Configuration Manager Policy Module and the Network Device Enrollment Service. DeleteBgbServerApplication: failed to get all applications with the error 0x80070422. Configuration Manager 2012 - General https: . Verbose logging shows additional information about the interaction with the client user interface. Overview of Client Online Status in SCCM Console Configuration Manager ConfigMgr 9. SCCM Fast channel notification is a "PUSH" method of notifying clients about the new policies. His main focus is on Device Management technologies like SCCM 2012, Current Branch, and Intune. In the BGBSERVER.log I am seeing errors like this sometimes: --ERROR: Expecting more data from client [::ffff:10.10.160.137]:64623. Records activities of the SMS Provider. Records details about discovering software with an associated software identification tag. This helped to resolve the fast channel notification issue with the SCCM CB environment. Checking the bgbserver.log and bgbmgr.log files revealed many errors such as: ERROR:Filed to encode Microsoft.ConfigurationManager.BgbServerChannel.BgbSignInConfirmMessage message. Records information for Background Intelligent Transfer Service (BITS) jobs on the device. This is a minor upgrade. Computer that is configured as a pull-distribution point. In the Secondary Site BgbServer.log, I see the following errors: Failed to authenticate with client [::ffff:10.55.52.119]:65118. Records messages generated by the installation of a fallback status point. This issue occurs in Configuration Manager environments where support for express installation files (express updates) is enabled, and the BITS job to download associated content times out continuously. The client and MP communicate through it using "TCP (port 10123) or HTTP (port 80)" every fifteen minutes. Top-level site in the Configuration Manager hierarchy, and each child primary site. Also records activities related to hardware inventory. Records status messages that are created by the client components. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register. Records Active Directory Forest Discovery actions. Records the repair activities of the client agent. ccmnotificationagent.log shows "BGBAgent disabled", Did not find anything on BgbServer.log & bgbisapiMSI.log. Records details about the conversion of XML.svf status message files from clients and the copy of those files to the site server. The download link,, Yesterday Microsoft has released Version 5.00.2053.0000 of the Configuration Manager SDK. SrcUpdateMgr.log: Records activity for installed Windows Installer applications that are updated with current distribution point source locations. Records details about the processing of imported licensing files. Information about the Desktop Analytics settings policy. The following table lists the log files that contain information related to software metering. The Domain does have PKI certs, but we are using Self-signed.</p> <p>The BGBServer.log keeps repeating the following errors and the client side does not appear to have any corresponding certificate errors occurring at this time either.</p> <p>BGBSERVER.LOG</p> <p>ERROR: Expecting more data from client [::ffff:12.50.70.244]:60653&nbsp;SMS . Configuration Manager (Current Branch) - Site and Client Deployment Post questions here that are appropriate for the installation and setup of Configuration Manager Current Branch updates, sites and clients. But for completeness: all environments I have seen this occurring so far were HTTP. Records the activity for general maintenance tasks for the client. Records activities that are related to Configuration Manager notifications displayed on the Mac computer. Records details about the scan process for the Inventory Tool for Microsoft Updates. Check out the firewall that is located between that client and SCCM server. Monitors the status of the Endpoint Protection site system role. Records results of the reporting services point installation process. Records information about migration actions that involve migration jobs, shared distribution points, and distribution point upgrades. Records the files that are moved from the management point to the corresponding INBOXES folder on the site server. Records Active Directory Security Group Discovery actions. Records certificate and proxy account information. Records the processing of policy and assignment. The following sections list the log files that contain information related to managing mobile devices. It was noticed today that every single PC in org is now showing as offline. To configure the logging level, edit the, Records details about the second phase of the cloud management gateway deployment (local deployment in Azure). The following table lists the log files that contain information related to processing inventory data. Server Log - BgbServer.log. Records details about enhanced detection methods that are used when verbose or debug logging is turned on. Records location request and reply activity from clients. Records details about configuration item definition downloads. This release supports System Center 2012 R2. Files in the "\CCM\Temp" folder on a Configuration Manager client may fill all available hard disk space. After upgrading a Configuration Manager Current Branch environment to 1706 you may notice a lot of Expecting more data from client errors in the BgbServer.log . The log files on the Configuration Manager client are in the following directory: %WinDir%\CCM\logs. Records information for the remote control service. Client computer configured as the sync host for the Inventory Tool for Microsoft Updates. Records the conversion of XML.ddr records from clients, and then copies them to the site server. For details, check the management point's ccmexec.log, bgbsetup.log, and bgbserver.log. (provider: SSL Provider, error: 0 - The target principal name is incorrect.) Can be used to troubleshoot client installation problems. AnoopisMicrosoft MVP! Records details about the service connection point installer service. Distribution point computer that isn't colocated with the site server. For installation issues troubleshooting. ERROR: Expecting more data from client [::ffff:192.168.3.203]:49247 *** Update 20/10 *** Whats the alternate port for TCP HTTP 10123 over HTTPS? Records the execution of endpoint analytics policy and upload of client data to the site server. The following table lists the log files that contain information related to application management. Records the processing of all site server component threads. Records client transfer data for mobile device legacy clients and for ActiveSync deployments. Records mobile device legacy client communication with a management point that is enabled for mobile devices. Records the HTML response from the certificate server when the mobile device legacy client enroller program requests a PKI certificate.

Ahmed Hamdy Santa Cruz, Blake Slatkin Bio, Articles S