Windows Update检查/下载新更新会挂起安装了TMG的Windows 2008 R2 Enterprise

安装Windows 2008R2和TMG 2010时出现奇怪的情况。 它已经在本月的第二个星期二发生了两次Windows丢弃所有连接(VPN,路由等),并试图远程/本地login时,你只能看到欢迎屏幕,它永远不会login你(我甚至等待30分钟)。 只有硬重置是一个选项(它是运行在Hyper-V R2上的虚拟机)。 我们追踪到可能的Windows Update problem... we always had option Download new updates and let me decide what to do with them turned on这似乎是挂起的原因。

应用程序/系统日志中没有关于挂起的任何内容,而在WindowsUpdate日志中有:

 2011-06-07 16:55:04:976 824 11f0 Agent WARNING: WU client failed Searching for update with error 0x80072ee2 2011-06-07 16:55:04:992 2904 67c COMAPI >>-- RESUMED -- COMAPI: Search [ClientId = Forefront TMG] 2011-06-07 16:55:04:992 2904 67c COMAPI - Updates found = 0 2011-06-07 16:55:04:992 2904 67c COMAPI - WARNING: Exit code = 0x00000000, Result code = 0x80072EE2 2011-06-07 16:55:04:992 2904 67c COMAPI --------- 2011-06-07 16:55:04:992 2904 67c COMAPI -- END -- COMAPI: Search [ClientId = Forefront TMG] 2011-06-07 16:55:04:992 2904 67c COMAPI ------------- 2011-06-07 16:55:04:992 2904 ba8 COMAPI WARNING: Operation failed due to earlier error, hr=80072EE2 2011-06-07 16:55:04:992 2904 ba8 COMAPI FATAL: Unable to complete asynchronous search. (hr=80072EE2) 2011-06-07 16:55:09:976 824 11f0 Report REPORT EVENT: {273DB494-865D-4394-A017-8A1290FF7763} 2011-06-07 16:55:04:976+0200 1 148 101 {00000000-0000-0000-0000-000000000000} 0 80072ee2 Forefront TMG Failure Software Synchronization Windows Update Client failed to detect with error 0x80072ee2. 2011-06-07 16:55:10:195 824 11f0 Report CWERReporter::HandleEvents - WER report upload completed with status 0x8 2011-06-07 16:55:10:195 824 11f0 Report WER Report sent: 7.5.7601.17514 0x80072ee2 00000000-0000-0000-0000-000000000000 Scan 101 Unmanaged 2011-06-07 16:55:10:195 824 11f0 Report CWERReporter finishing event handling. (00000000) ` 

我们已经禁用自动下载的更新,但将是可爱的find一个解决scheme。

这似乎与AD和TMG之间的Time Difference有关。 每当AD时钟和TMG时钟相差5分钟(Kerberos设置可以改变以允许更多时间差异)时,TMG将不响应。 花了我们一些时间,“挂”出来!

希望这可以帮助别人:-)

类似的问题在某些时候回到了这里。 Windows更新错误0x80072EE2

这有帮助吗?