对 Azure 备份服务器进行故障排除Troubleshoot Azure Backup Server

请参考下表中的信息,排查使用 Azure 备份服务器时遇到的错误。Use the information in the following tables to troubleshoot errors that you encounter while using Azure Backup Server.

基本故障排除Basic troubleshooting

我们建议你在开始对 Microsoft Azure 备份服务器 (MABS) 进行故障排除之前执行以下验证:We recommend you perform the below validation, before you start troubleshooting Microsoft Azure Backup Server (MABS):

提供的保管库凭据无效Invalid vault credentials provided

操作Operation 错误详细信息Error details 解决方法Workaround
注册到保管库Registering to a vault 提供的保管库凭据无效。Invalid vault credentials provided. 该文件已损坏,或者没有与恢复服务关联的最新凭据。The file is corrupted or does not have the latest credentials associated with the recovery service. 建议的操作:Recommended action:
  • 从保管库中下载最新的凭据文件,并重试。Download the latest credentials file from the vault and try again.
    (或者)(OR)
  • 如果上述操作不起作用,请尝试将凭据下载到其他本地目录,或创建新的保管库。If the previous action didn't work, try downloading the credentials to a different local directory or create a new vault.
    (或者)(OR)
  • 根据此博客中所述,尝试更新日期和时间设置。Try updating the date and time settings as described in this blog.
    (或者)(OR)
  • 检查 C:\windows\temp 中的文件数是否超过 65000。Check to see if c:\windows\temp has more than 65000 files. 将过时文件移到另一位置,或者删除 Temp 文件夹中的项。Move stale files to another location or delete the items in the Temp folder.
    (或者)(OR)
  • 检查证书的状态。Check the status of certificates.
    a.a. 打开“管理计算机证书”(在控制面板中)。 Open Manage Computer Certificates (in Control Panel).
    b.b. 展开“个人”节点及其子节点“证书”。 Expand the Personal node and its child node Certificates.
    c.c. 删除证书“Windows Azure Tools”。 Remove the certificate Windows Azure Tools.
    d.d. 重试在 Azure 备份客户端中注册。Retry the registration in the Azure Backup client.
    (或者)(OR)
  • 检查是否部署了任何组策略。Check to see if any group policy is in place.

副本不一致Replica is inconsistent

操作Operation 错误详细信息Error details 解决方法Workaround
BackupBackup 副本不一致Replica is inconsistent 检查是否已在保护组向导中启用自动一致性检查选项。Verify that the automatic consistency check option in the Protection Group Wizard is turned on. 有关副本不一致的原因和相关建议的详细信息,请参阅 Microsoft TechNet 文章副本不一致For more information about the causes of replica inconsistency and relevant suggestions, see the Microsoft TechNet article Replica is inconsistent.
  1. 对于系统状态/BMR 备份,请检查是否已在受保护服务器上安装 Windows Server 备份。In case of System State/BMR backup, verify that Windows Server Backup is installed on the protected server.
  2. 检查 DPM/Microsoft Azure 备份服务器上的 DPM 存储池中是否存在空间相关的问题,并根据需要分配存储。Check for space-related issues in the DPM storage pool on the DPM/Microsoft Azure Backup Server, and allocate storage as required.
  3. 检查受保护服务器上卷影复制服务的状态。Check the state of the Volume Shadow Copy Service on the protected server. 如果该服务处于禁用状态,请将其设置为手动启动。If it is in a disabled state, set it to start manually. 在服务器上启动该服务。Start the service on the server. 然后返回到 DPM/Microsoft Azure 备份服务器控制台,开始与一致性检查作业同步。Then go back to the DPM/Microsoft Azure Backup Server console, and start the sync with the consistency check job.

在线恢复点创建失败Online recovery point creation failed

操作Operation 错误详细信息Error details 解决方法Workaround
BackupBackup 在线恢复点创建失败Online recovery point creation failed 错误消息:Windows Azure Backup Agent was unable to create a snapshot of the selected volume.(Windows Azure 备份代理无法创建选定卷的快照。)Error Message: Windows Azure Backup Agent was unable to create a snapshot of the selected volume.
解决方法:请尝试增加副本和恢复点卷中的空间。Workaround: Try increasing the space in replica and recovery point volume.

错误消息:The Windows Azure Backup Agent cannot connect to the OBEngine service(Windows Azure 备份代理无法连接到 OBEngine 服务)Error Message: The Windows Azure Backup Agent cannot connect to the OBEngine service
解决方法:请验证并确保 OBEngine 存在于计算机上正在运行的服务的列表中。Workaround: verify that the OBEngine exists in the list of running services on the computer. 如果未运行 OBEngine 服务,请使用“net start OBEngine”命令启动 OBEngine 服务。If the OBEngine service is not running, use the "net start OBEngine" command to start the OBEngine service.

错误消息:The encryption passphrase for this server is not set.Error Message: The encryption passphrase for this server is not set. Please configure an encryption passphrase.(未设置此服务器的加密通行短语。请配置加密通行短语。)Please configure an encryption passphrase.
解决方法:请尝试配置加密通行短语。Workaround: Try configuring an encryption passphrase. 如果此方法不起作用,请执行以下步骤:If it fails, take the following steps:
  1. 检查是否存在暂存位置。Verify that the scratch location exists. 注册表项 HKEY_LOCAL_MACHINE\Software\Microsoft\Windows Azure Backup\Config 中提到的名为 ScratchLocation 的位置应该存在。This is the location that's mentioned in the registry HKEY_LOCAL_MACHINE\Software\Microsoft\Windows Azure Backup\Config, with the name ScratchLocation should exist.
  2. 如果暂存位置存在,请尝试使用旧通行短语重新注册。If the scratch location exists, try re-registering by using the old passphrase. 配置加密通行短语时,请将其保存在安全的位置。Whenever you configure an encryption passphrase, save it in a secure location.

    原始和外部 DPM 服务器必须注册到同一保管库The original and external DPM servers must be registered to the same vault

    操作Operation 错误详细信息Error details 解决方法Workaround
    还原Restore 错误代码:CBPServerRegisteredVaultDontMatchWithCurrent/保管库凭据错误:100110Error code: CBPServerRegisteredVaultDontMatchWithCurrent/Vault Credentials Error: 100110

    错误消息:The vault credentials provided are different from the vault the server is registered(提供的保管库凭据不同于服务器所注册到的保管库)Error message: The vault credentials provided are different from the vault the server is registered
    原因: 此问题在以下情况中发生:尝试使用外部 DPM 恢复选项将文件从原始服务器还原到备用服务器,且要恢复的服务器和从中备份数据的原始服务器没有与同一恢复服务保管库关联。Cause: This issue occurs when you are trying to restore files to the alternate server from the original server using External DPM recovery option and if the server which is being recovered and the original server from where the data is backed-up are not associated with the same Recovery Service vault.

    解决方法:若要解决此问题,请确保将原始服务器和备用服务器注册到同一保管库。Workaround To resolve this issue ensure both the original and alternate server are registered to the same vault.

    VMware VM 的联机恢复点创建作业失败Online recovery point creation jobs for VMware VM fail

    操作Operation 错误详细信息Error details 解决方法Workaround
    BackupBackup VMware VM 的联机恢复点创建作业失败。Online recovery point creation jobs for VMware VM fail. DPM 在尝试获取 ChangeTracking 信息时遇到 VMware 错误。DPM encountered an error from VMware while trying to get ChangeTracking information. ErrorCode - FileFaultFault (ID 33621 )ErrorCode - FileFaultFault (ID 33621 )
    1. 在 VMware 上对受影响的 VM 重置 CTK。Reset the CTK on VMware for the affected VMs.
    2. 检查 VMware 上是否未部署独立磁盘。Check that independent disk is not in place on VMware.
    3. 停止对受影响 VM 的保护,然后使用“刷新”按钮重新保护。Stop protection for the affected VMs and re-protect with the Refresh button.
    4. 对受影响的 VM 运行 CC(一致性检查)。Run a CC for the affected VMs.

    代理操作失败,因为服务器上的 DPM 代理协调器服务出现通信错误The agent operation failed because of a communication error with the DPM agent coordinator service on the server

    操作Operation 错误详细信息Error details 解决方法Workaround
    将代理推送到受保护的服务器Pushing agent(s) to protected servers 代理操作失败,因为 <ServerName> 上的 DPM 代理协调器服务出现通信错误。The agent operation failed because of a communication error with the DPM Agent Coordinator service on <ServerName>. 如果产品中显示的建议操作不起作用,请执行以下步骤If the recommended action shown in the product doesn't work, then perform the following steps:
    • 如果是从不可信域附加计算机,请执行这些步骤If you are attaching a computer from an untrusted domain, follow these steps.
      (或者)(OR)
    • 如果是从可信域附加计算机,则可通过此博客中所述的步骤进行故障排除。If you are attaching a computer from a trusted domain, troubleshoot using the steps outlined in this blog.
      (或者)(OR)
    • 尝试禁用防病毒软件以进行故障排除。Try disabling antivirus as a troubleshooting step. 如果解决了问题,可根据此文中的建议修改防病毒软件设置。If it resolves the issue, modify the antivirus settings as suggested in this article.

    安装程序无法更新注册表元数据Setup could not update registry metadata

    操作Operation 错误详细信息Error details 解决方法Workaround
    安装Installation 安装程序无法更新注册表元数据。Setup could not update registry metadata. 此更新失败可能导致存储占用过高。This update failure could lead to overusage of storage consumption. 为避免发生这种情况,请更新 ReFS Trimming 注册表项。To avoid this, update the ReFS Trimming registry entry. 调整注册表项 SYSTEM\CurrentControlSet\Control\FileSystem\RefsEnableInlineTrimAdjust the registry key SYSTEM\CurrentControlSet\Control\FileSystem\RefsEnableInlineTrim. 将 Dword 值设置为 1。Set the value Dword to 1.
    安装Installation 安装程序无法更新注册表元数据。Setup could not update registry metadata. 此更新失败可能导致存储占用过高。This update failure could lead to overusage of storage consumption. 为避免发生这种情况,请更新 Volume SnapOptimization 注册表项。To avoid this, update the Volume SnapOptimization registry entry. 使用空字符串值创建注册表项 SOFTWARE\Microsoft Data Protection Manager\Configuration\VolSnapOptimization\WriteIdsCreate the registry key SOFTWARE\Microsoft Data Protection Manager\Configuration\VolSnapOptimization\WriteIds with an empty string value.
    操作Operation 错误详细信息Error details 解决方法Workaround
    将代理推送到受保护的服务器Pushing agent(s) to protected servers 为服务器指定的凭据无效。The credentials that are specified for the server are invalid. 如果产品中显示的建议操作不起作用,请执行以下步骤If the recommended action that's shown in the product doesn't work, take the following steps:
    尝试根据此文中的说明,在生产服务器上手动安装保护代理。Try to install the protection agent manually on the production server as specified in this article.
    Azure 备份代理无法连接到 Azure 备份服务 (ID: 100050)Azure Backup Agent was unable to connect to the Azure Backup service (ID: 100050) Azure 备份代理无法连接到 Azure 备份服务。The Azure Backup Agent was unable to connect to the Azure Backup service. 如果产品中显示的建议操作不起作用,请执行以下步骤If the recommended action that's shown in the product doesn't work, take the following steps:
    1.在权限提升的提示符下运行以下命令:psexec -i -s "c:\Program Files\Internet Explorer\iexplore.exe1. Run the following command from an elevated prompt: psexec -i -s "c:\Program Files\Internet Explorer\iexplore.exe. 此命令会打开 Internet Explorer 窗口。This opens the Internet Explorer window.
    2.转到“工具” > “Internet 选项” > “连接” > “局域网设置” 。2. Go to Tools > Internet Options > Connections > LAN settings.
    3.更改设置以使用代理服务器。3. Change the settings to use a proxy server. 然后提供代理服务器详细信息。Then provide the proxy server details.
    4.如果计算机的 Internet 访问受限,请确保计算机或代理上的防火墙设置允许这些 URLIP 地址4. If your machine has limited internet access, ensure that firewall settings on the machine or proxy allow these URLs and IP address.
    Azure 备份代理安装失败Azure Backup Agent installation failed Azure 恢复服务安装失败。The Azure Recovery Services installation failed. 通过 Azure 恢复服务安装对系统所做的所有更改都已回滚。All changes that were made to the system by the Azure Recovery Services installation were rolled back. (ID:4024)(ID: 4024) 手动安装 Azure 代理。Manually install Azure Agent.

    配置保护组Configuring protection group

    操作Operation 错误详细信息Error details 解决方法Workaround
    配置保护组Configuring protection groups DPM 无法枚举受保护计算机(受保护计算机名称)上的应用程序组件。DPM could not enumerate the application component on the protected computer (protected computer name). 在相关数据源/组件级别的“配置保护组”UI 屏幕上选择“刷新”。Select Refresh on the configure protection group UI screen at the relevant datasource/component level.
    配置保护组Configuring protection groups 无法配置保护Unable to configure protection 如果受保护的服务器是 SQL Server,请根据此文中所述,检查是否已在受保护计算机上将 sysadmin 角色权限提供给系统帐户 (NTAuthority\System)。If the protected server is a SQL server, verify that the sysadmin role permissions have been provided to the system account (NTAuthority\System) on the protected computer as described in this article.
    配置保护组Configuring protection groups 此保护组的存储池中没有足够的可用空间。There is insufficient free space in the storage pool for this protection group. 添加到存储池的磁盘不应包含分区The disks that are added to the storage pool should not contain a partition. 删除磁盘上的所有现有卷。Delete any existing volumes on the disks. 然后将磁盘添加到存储池。Then add them to the storage pool.
    策略更改Policy change 无法修改备份策略。The backup policy could not be modified. 错误:由于内部服务错误 [0x29834],当前操作失败。Error: The current operation failed due to an internal service error [0x29834]. 请在一段时间后重试操作。Please retry the operation after some time has passed. 如果问题持续出现,请联系 Azure 支持部门。If the issue persists, contact Azure support. 原因:Cause:
    在以下三种情况下会发生此错误:启用安全设置、尝试缩短保留期至低于前面指定的最小值,以及使用不受支持的版本。This error occurs under three conditions: when security settings are enabled, when you try to reduce retention range below the minimum values specified previously, and when you are on an unsupported version. (不受支持的版本包括低于 Azure 备份服务器版本 2.0.9052 和 Azure 备份服务器 Update 1 的版本。)(Unsupported versions are those below Azure Backup Server version 2.0.9052 and Azure Backup Server update 1.)
    建议的操作:Recommended action:
    若要继续执行策略相关的更新,请将保留期时段设置为高于指定的最短保留期。To proceed with policy-related udpates, set the retention period above the minimum retention period specified. (每日、每周、每月和每年备份的最短保留期分别为 7 天、4 周、3 个月和 1 年)。(The minimum retention period is seven days for daily, four weeks for weekly, three weeks for monthly or one year for yearly.)

    (可选)另一种首选方法是更新备份代理和 Azure 备份服务器,以利用所有安全更新。Optionally, another preferred approach is to update the backup agent and Azure Backup Server to leverage all the security updates.

    BackupBackup

    操作Operation 错误详细信息Error details 解决方法Workaround
    BackupBackup 运行作业时发生意外错误。An unexpected error occurred while the job was running. 设备未准备就绪。The device is not ready. 如果产品中显示的建议操作不起作用,请执行以下步骤:If the recommended action that's shown in the product doesn't work, take the following steps:
    • 将卷影副本存储空间设置为不对保护组中的项进行限制,然后运行一致性检查。Set the Shadow Copy Storage space to unlimited on the items in the protection group, and then run the consistency check.
    • (或者)(OR)
    • 尝试删除现有的保护组,并创建多个新组。Try deleting the existing protection group and creating multiple new groups. 每个新保护组应包含单个项。Each new protection group should have an individual item in it.
    BackupBackup 如果只备份系统状态,请验证受保护计算机上是否有足够的可用空间来存储系统状态备份。If you are backing up only system state, verify that there is enough free space on the protected computer to store the system state backup.
    1. 检查是否已在受保护计算机上安装 Windows Server 备份。Verify that Windows Server Backup is installed on the protected machine.
    2. 检查受保护计算机上是否存在用于系统状态的足够空间。Verify that there is enough space on the protected computer for the system state. 执行此项检查的最简单方法是转到受保护的计算机,打开“Windows Server 备份”并单击相关选项,然后选择“BMR”。The easiest way to verify this is to go to the protected computer, open Windows Server Backup, click through the selections, and then select BMR. UI 会告知需要多少空间。The UI then tells you how much space is required. 打开“WSB” > “本地备份” > “备份计划” > “选择备份配置” > “完整服务器”(大小已显示)。Open WSB > Local backup > Backup schedule > Select Backup Configuration > Full server (size is displayed). 使用该大小进行验证。Use this size for verification.
    BackupBackup BMR 备份失败Backup failure for BMR 如果 BMR 很大,可将某些应用程序文件移到 OS 驱动器,并重试。If the BMR size is large, move some application files to the OS drive and retry.
    BackupBackup 在新的 Azure 备份服务器上重新保护 VMware VM 的选项未显示为可添加。The option to re-protect a VMware VM on a new Azure Backup Server does not show as available to add. VMware 属性指向已停用的旧 Azure 备份服务器实例。VMware properties are pointed at an old, retired instance of Azure Backup Server. 若要解决此问题,请执行以下操作:To resolve this issue:
    1. 在 VCenter(类似的程序为 SC-VMM)中,转到“摘要”选项卡,然后选择“自定义属性”。In VCenter (SC-VMM equivalent), go to the Summary tab, and then to Custom Attributes.
    2. DPMServer 值中删除旧的 Azure 备份服务器名称。Delete the old Azure Backup Server name from the DPMServer value.
    3. 返回到新的 Azure 备份服务器并修改 PG。Go back to the new Azure Backup Server and modify the PG. 选择“刷新”按钮后,将显示带有复选框的 VM,可将其添加到保护列表。After you select the Refresh button, the VM appears with a check box as available to add to protection.
    BackupBackup 访问文件/共享文件夹时出错Error while accessing files/shared folders 尝试根据 TechNet 文章在 DPM 服务器上运行防病毒软件中的建议修改防病毒软件设置。Try modifying the antivirus settings as suggested in the TechNet article Run antivirus software on the DPM server.

    更改通行短语Change passphrase

    操作Operation 错误详细信息Error details 解决方法Workaround
    更改通行短语Change passphrase 输入的安全 PIN 不正确。The security PIN that was entered is incorrect. 提供正确的安全 PIN 来完成此操作。Provide the correct security PIN to complete this operation. 原因:Cause:
    如果在执行关键操作(例如更改通行短语)时输入无效或已过期的安全 PIN,则会出现此错误。This error occurs when you enter an invalid or expired security PIN while you are performing a critical operation (such as changing a passphrase).
    建议的操作:Recommended action:
    若要完成该操作,必须输入有效的安全 PIN。To complete the operation, you must enter a valid security PIN. 若要获取 PIN,请登录到 Azure 门户并转到“恢复服务保管库”。To get the PIN, sign in to the Azure portal and go to the Recovery Services vault. 然后转到“设置” > “属性” > “生成安全 PIN” 。Then go to Settings > Properties > Generate Security PIN. 使用此 PIN 更改通行短语。Use this PIN to change the passphrase.
    更改通行短语Change passphrase 操作失败。Operation failed. ID:120002ID: 120002 原因:Cause:
    启用安全设置、尝试更改通行短语和使用不受支持的版本时,会出现此错误。This error occurs when security settings are enabled, or when you try to change the passphrase when you're using an unsupported version.
    建议的操作:Recommended action:
    若要更改通行短语,必须先将备份代理更新到最低版本 2.0.9052。To change the passphrase, you must first update the backup agent to the minimum version, which is 2.0.9052. 此外,还需要将 Azure 备份服务器更新到最低的 Update 1 版本,并输入有效的安全 PIN。You also need to update Azure Backup Server to the minimum of update 1, and then enter a valid security PIN. 若要获取 PIN,请登录到 Azure 门户并转到“恢复服务保管库”。To get the PIN, sign into the Azure portal and go to the Recovery Services vault. 然后转到“设置” > “属性” > “生成安全 PIN” 。Then go to Settings > Properties > Generate Security PIN. 使用此 PIN 更改通行短语。Use this PIN to change the passphrase.

    配置电子邮件通知Configure email notifications

    操作Operation 错误详细信息Error details 解决方法Workaround
    使用 Office 365 帐户设置电子邮件通知Setting up email notifications using an Office 365 account 错误 ID:2013Error ID: 2013 原因:Cause:
    尝试使用 Office 365 帐户Trying to use Office 365 account
    建议的操作:Recommended action:
    1. 首先确保 Exchange 上已设置用于 DPM 服务器的“在接收连接器上允许匿名中继”。The first thing to ensure is that “Allow Anonymous Relay on a Receive Connector” for your DPM server is set up on Exchange. 有关如何配置此功能的详细信息,请参阅在接收连接器上允许匿名中继For more information about how to configure this, see Allow Anonymous Relay on a Receive Connector.
    2. 如果无法使用内部 SMTP 中继并需要使用 Office 365 服务器进行设置,可将 IIS 设置为中继。If you can't use an internal SMTP relay and need to set up by using your Office 365 server, you can set up IIS to be a relay. 将 DPM 服务器配置为使用 IIS 将 SMTP 中继到 O365Configure the DPM server to relay the SMTP to O365 using IIS).

      请务必使用 user*domain.com 格式,而不要使用“域\用户”格式。 Be sure to use the user@domain.com format and not domain\user.

    3. 指示 DPM 将本地服务器名用作 SMTP 服务器,并使用端口 587。Point DPM to use the local server name as SMTP server, port 587. 然后将它指向于应从中发送电子邮件的用户电子邮件地址。Then point it to the user email that the emails should come from.
    4. DPM SMTP 设置页上的用户名和密码应属于 DPM 所在域中的域帐户。The username and password on the DPM SMTP setup page should be for a domain account in the domain that DPM is on.

    5. 更改 SMTP 服务器地址时,请对新设置进行更改,关闭设置框,然后重新打开它以确保反映新值。When you are changing the SMTP server address, make the change to the new settings, close the settings box, and then reopen it to be sure it reflects the new value. 只是进行更改和测试可能不一定总能让新设置生效,因此最佳做法是通过此方法进行测试。Simply changing and testing might not always cause the new settings to take effect, so testing it this way is a best practice.

      在此过程期间,可随时清除这些设置,方法是关闭 DPM 控制台,然后编辑以下注册表项:HKLM\SOFTWARE\Microsoft\Microsoft Data Protection Manager\Notification\
      删除 SMTPPassword 和 SMTPUserName 项
      At any time during this process, you can clear these settings by closing the DPM console and editing the following registry keys: HKLM\SOFTWARE\Microsoft\Microsoft Data Protection Manager\Notification\
      Delete SMTPPassword and SMTPUserName keys
      .
      重新启动 UI 时,可将这些设置添加回到 UI。You can add them back to the UI when you launch it again.