Exchangemaster GmbH company logo

Exchangemaster GmbH - A Swiss IT Consultancy
Services
References
Partners
Contact
Getting Started
FAQs
Presentations
Articles
Community
Search
Popular
Tell-a-Friend
Follow Me

Follow exchangemaster on Twitter

Who's Online
We have 121 guests online
Syndicate
FAQ 000076 - Error when establishing a DAG in Exchange 2010 PDF Print E-mail
User Rating: / 37
PoorBest 
Written by Dejan Foro   
Jan 13, 2010 at 01:13 AM

This article applies to:
Exchange 2010
ISA Server 2006

PROBLEM
When you try to establish a Database Availability Group in Exchange 2010 you receive error similar to the one below: 


EXCHANGE03
Failed
 
Error:
A server-side database availability group administrative operation failed. Error: The operation failed with message: Windows Failover Clustering timed out while trying to validate server 'exchange03'. If this is in a disjoint DNS namespace, the DNS suffixes for all servers in the database availability group must be present on every server. [Server: exchange01.exchangemaster.net]
 
A server-side database availability group administrative operation failed. Error: Windows Failover Clustering timed out while trying to validate server 'exchange03'. If this is in a disjoint DNS namespace, the DNS suffixes for all servers in the database availability group must be present on every server.
 
Warning:
The operation wasn't successful because an error was encountered. You may find more details in log file "C:\ExchangeSetupLogs\DagTasks\dagtask_2009-08-21_13-09-24.185_add-databaseavailabiltygroupserver.log".
  
Exchange Management Shell command attempted:
Add-DatabaseAvailabilityGroupServer -Identity 'DAG01' -MailboxServer 'EXCHANGE03'


CAUSE
This can happen if your DAG nodes are located in different subnets and you have an ISA 2006 Server in between.

Although you may have defined that all traffic between the network segments is allowed, ISA Server by the default has a RPC compliance policy turned on, which will filter certain RPC packet and can cause you problems when you try to establish an Exchange 2010 DAG.

SOLUTION
Turn off the Enforce Strict RPC compliance option in ISA Server. 

This option can be found in 2 places: 
1) On the firewall rule properties.
2) In the ISA System Policy. This policy is applied to new rules when you create them.

1) To disable the Enforce Strict RPC Compliance option on the firewall rule, right click the firewall rule and selelct Configure RPC Protocol.

 

 

Clear the Enforce Strict RPC compliance option.

 

 

2) To disable this option in ISA Server System Policy, select Edit System Policy from the task pane on the right, select Authentication Services, Active Directory. Clear the Enforce Strict RPC compliance.

 

 

Last Updated ( Jan 12, 2010 at 11:05 PM )
<Previous   Next>