Skip to main content
Solved

Active directory restore fails.

  • 20 September 2023
  • 6 replies
  • 415 views

Forum|alt.badge.img+3

Active directory object restore fails with below error. While trying to restore a deleted OU, USERS etc. 

 

Backup is successfull and I am able to browse the objects. 

 

Error Code: [72:106]
Description: Failed to restore "OU=,OU=,OU=,DC=,DC=,DC=local". Error:32
Source: , Process: adRestore

 

logs I see AdRestore::OnBufferPlFsHdr() - Error retrieving current set of attributes for the    DN OU=Users,OU=Site,OU=AM,DC=asdf,DC=fdsa,DC=local

Best answer by Damian Andre

Can you double check the account associated with the AD agent is a domain admin?

https://documentation.commvault.com/2023e/essential/136769_updating_active_directory_credentials.html

 

The log may provide more information above or below that line to help diagnose further - however this issue could be related to the user not having the right permissions

View original
Did this answer your question?

6 replies

Forum|alt.badge.img+14

Hi @ameersyed ,

Can you confirm the version you are using?

The error 32 here cites that the object is in use by another process while in AD restore terms, it means the object is still in the AD Recycle Bin.

Can you double check if it still present in AD recycle?

Best Regards,

Sebastien


Damian Andre
Vaulter
Forum|alt.badge.img+23
  • Vaulter
  • 1229 replies
  • Answer
  • September 20, 2023

Can you double check the account associated with the AD agent is a domain admin?

https://documentation.commvault.com/2023e/essential/136769_updating_active_directory_credentials.html

 

The log may provide more information above or below that line to help diagnose further - however this issue could be related to the user not having the right permissions


Forum|alt.badge.img+3
  • Author
  • Byte
  • 12 replies
  • September 21, 2023

The account updated on AD agent is Domain admin. We are able to backup successfully. 

 

We have cleared the objects on AD recycle bin, still the restore fails. 

 

 

7848  83c   09/21 09:22:46 6359049 SdtTailSrvPool::AddClnt: Did not find srv for clnt [SDTPipe_testserver__6359049_1695280966_7848_2108_0000023B8FB64ED0], Id [0], SrvCount [0] RCId [6]

7848  83c   09/21 09:22:46 6359049 SdtTailSrvPool::AddClnt: Submitted client [SDTPipe___6359049_1695280966_7848_2108_0000023B8FB64ED0], Id [916] to srv [0]. Total Clients [1], Tail=0000023B8FBC4F80 RCId [6]

7848  83c   09/21 09:22:46 6359049 InitializePerfCounters() - Initializing Perf counters message[Pipeline-ID - 6] [Starttime - 1695280966] [Starttime UTC - 1695277366]

7848  83c   09/21 09:22:46 6359049 Received Head Name: FSR_HEAD_1208_3380_14 with ports [61827/0]

7848  83c   09/21 09:22:46 6359049 Initializing a session with pipeline head [FSR_HEAD_1208_3380_14:61827:0] on [.]...

7848  83c   09/21 09:22:46 6359049 Nagle is turned off on control channel.

7848  83c   09/21 09:22:46 6359049 CVArchive::FwdRstMsg() - Restore Head Msg Logging = [0]

7848  83c   09/21 09:22:46 6359049 FclRestore::OnMsgOpenArchive() - Launching the readPipeline thread...

7848  1ac   09/21 09:22:46 6359049 FclRestore::AFileReadTimeMonitor() - Starting

7848  83c   09/21 09:22:46 6359049 FClRestore::ProcessRestoreMessage() - Processing FSR_MSG_CLOSE_ARCHIVE

7848  83c   09/21 09:22:46 6359049 FclRestore::OnMsgCloseArchive() - Waiting for readPipeline thread to exit...

7848  1c98  09/21 09:22:`6359049 SdtEncDec::processSetEncProps: [0000023B8FBC4F80] AfIds [16398811 ]

7848  1c98  09/21 09:22:46 6359049 CArchFileKeysCache::Init() - CipherCacheSingleton object pointer [0000023B8F14CAB0] Using KeyId [T]

7848  12c8  09/21 09:22:46 6359049 SdtBase::SetNwCrcProps: Enabled n/w crc on SdtTail. [Using slice-by-8] RCId [6]

7848  1c98  09/21 09:22:46 6359049 CArchFileKeysCache::Init() - ArchFileKeys inited with CopyId [1152] CcId [2] sizeof(AFileInfo) [232]

7848  19f8  09/21 09:22:46 6359049 CVArchive::ReadBuffer() - PL_SET_NETWORK_CRC_PROPS (2, 1124, 16398811)

7848  19f8  09/21 09:22:46 6359049 CVArchive::ReadBuffer() - PL_SET_ENC_PROPS(2, 1124, 16398811)

7848  19f8  09/21 09:22:46 6359049 CVArchive::ReadBuffer() - PL_FS_OPEN_AFILE(2, 1124, 16398811)

7848  19f8  09/21 09:22:47 6359049  GetPresentListOfAttributes () - Error searching No Such Object

7848  19f8  09/21 09:22:47 6359049 AdRestore::OnBufferPlFsHdr() - Error retrieving current set of attributes for the            DN CN=,OU=,OU=,OU=,DC=,DC=,DC=local

7848  19f8  09/21 09:22:47 6359049 AdRestore::OnBufferPlFsHdr() - creating CvLdapEntryEx CN=,OU=,OU=,OU=,DC=,DC=,DC=local

7848  19f8  09/21 09:22:47 6359049 cvldap() - ldap_undeleteObject(207): -Debug-: ldap_modify_ext_sW ([<GUID=4B3522B9-2412-44FA-B0D9-083D637B1C96>] => [CN=,OU=,OU=,OU=,DC=,DC=,DC=local]) ... 0x20

7848  19f8  09/21 09:22:47 6359049 cvldap() - CvLdapEntry::setMandatoryAttributesW(6207): -Debug-: ldap_undeleteObject(CN=,OU=,OU=,OU=,DC=,DC=,DC=local, <GUID=4B3522B9-2412-44FA-B0D9-083D637B1C96>) failed - Error:32

7848  19f8  09/21 09:22:47 6359049 cvldap() - CvLdapEntry::setMandatoryAttributesW(6259): -Debug-: ldap_add_sW (CN=,OU=,OU=,OU=,DC=,DC=,DC=local) failed - Error:32

7848  19f8  09/21 09:22:47 6359049 Sending FAILED complete message to JM,

7848  19f8  09/21 09:22:47 6359049 FclRestore::terminateOnFatalError()() - Sending FSR_MSG_STOP

7848  19f8  09/21 09:22:47 6359049 FclRestore::readPipeline() - Exiting the thread...


Forum|alt.badge.img+14

Hi @ameersyed ,

Can you confirm the version you are using?

ldap_add_sW - Windows API.

Error:32 - “For an add request, it means that the immediate parent of the entry to be added does not exist and that the DN of the entry to be added does not match any of the configured naming contexts.”

Can you check that OU=,OU=,OU=,DC=,DC=,DC=local does exist?

Or can you log a case so we can check?


Forum|alt.badge.img+3
  • Author
  • Byte
  • 12 replies
  • September 21, 2023

I have already created a case 230920-449. 

 

 Does it mean, commvault cannot create OU?  What if  there are child OUs within Parent.  If I have to restore parent OU, we need to create the child structure manually. 

 

As per doc, we can restore OU, then it should create the structure within in the OU. 

 

https://documentation.commvault.com/v11/expert/14412_restore_active_directory_idataagent.html#restoring-user-accounts-and-passwords


Forum|alt.badge.img+3
  • Author
  • Byte
  • 12 replies
  • September 26, 2023

It was issue with the account updated on Active directory agent.  We just had to update domain\administrator, which was domain.local.com\administrator earlier. 

 

We were able to restore OU and child OUs within with no issues.


Cookie policy

We use cookies to enhance and personalize your experience. If you accept you agree to our full cookie policy. Learn more about our cookies.

 
Cookie settings