(cross-post added to ISA server and private.security.spyware.general)
"Neil Jordan" <> wrote in message
news:%23Hew5%...
> Oops - posted before I was ready -
>
> Also this site:
> wustat.windows.com
>
> I have also run "Proxycfg -u" on all the workstations
>
> Tried tracing it from ISA without success.
That sounds like a reasonable tack though. Try looking for ISA expertise
to help you do that?
Are you allowing *anonymous* access for the sites you have "enabled"?
An old reply which elaborates on that:
http://www.microsoft.com/communities...662&sloc=en-us
Since your agent is Windows Defender and since it probably didn't exist
when the articles I cited were referenced it could be that it has the same
issue involving a different service and different anonymous "user".
Unfortunately I can't see that product's newsgroup too from this server
but since we can access it through the web interface to newsgroups
I'm adding it to my cross-post too. E.g., perhaps you can cross-link to it
at least via the web interface? BTW in the newsgroup hierarchy provided
by the portal for the link below you will find it cryptically hidden labeled as:
[-] English
[-] Security
[-] Anti-Spyware
[-] General Discussion
Good luck
Robert Aldwinckle
---
Full thread available here:
http://www.microsoft.com/communities...b-5ebe387611ff
remainder of OP included for new readers
>
> The following is the extract from my windowsupdate.log from yesterday - it is set to automatically update at 13:00
>
> 2006-11-20 12:00:10 1244 904 AU Forced install timer expired for scheduled install
> 2006-11-20 13:00:01 5488 13a4 Misc =========== Logging initialized (build: 5.8.0.2469, tz: -0000) ===========
> 2006-11-20 13:00:01 5488 13a4 Misc = Process: C:\Program Files\Windows Defender\MpCmdRun.exe
> 2006-11-20 13:00:01 5488 13a4 Misc = Module: C:\WINDOWS\system32\wuapi.dll
> 2006-11-20 13:00:01 5488 13a4 COMAPI -------------
> 2006-11-20 13:00:01 5488 13a4 COMAPI -- START -- COMAPI: Search [ClientId = Windows Defender]
> 2006-11-20 13:00:01 5488 13a4 COMAPI ---------
> 2006-11-20 13:00:01 5488 13a4 COMAPI - Online = Yes; Ignore download priority = No
> 2006-11-20 13:00:01 5488 13a4 COMAPI - Criteria = "(IsInstalled = 0 and IsHidden = 0 and CategoryIDs contains
> '0a487050-8b0f-4f81-b401-be4ceacd61cd') or (IsInstalled = 0 and IsHidden = 0 and CategoryIDs contains
> '8c3fcc84-7410-4a95-8b89-a166a0190486')"
> 2006-11-20 13:00:01 5488 13a4 COMAPI - ServiceID = {00000000-0000-0000-0000-000000000000}
> 2006-11-20 13:00:02 5488 13a4 COMAPI <<-- SUBMITTED -- COMAPI: Search [ClientId = Windows Defender]
> 2006-11-20 13:00:02 1244 1fc Agent *************
> 2006-11-20 13:00:02 1244 1fc Agent ** START ** Agent: Finding updates [CallerId = Windows Defender]
> 2006-11-20 13:00:02 1244 1fc Agent *********
> 2006-11-20 13:00:05 1244 1fc PT +++++++++++ PT: Synchronizing server updates +++++++++++
> 2006-11-20 13:00:05 1244 1fc PT + ServiceId = {7971F918-A847-4430-9279-4A52D1EFE18D}, Server URL =
> https://update.microsoft.com/v6/Clie...ce/client.asmx
> 2006-11-20 13:00:48 1244 1fc PT WARNING: SyncUpdates failure, error = 0x8024400D, soap client error = 7, soap error code = 300,
> HTTP status code = 200
> 2006-11-20 13:00:48 1244 1fc PT WARNING: SOAP Fault: 0x00012c
> 2006-11-20 13:00:48 1244 1fc PT WARNING: faultstring:Fault occurred
> 2006-11-20 13:00:48 1244 1fc PT WARNING: ErrorCode:CookieExpired(6)
> 2006-11-20 13:00:48 1244 1fc PT WARNING: Message:
>
> 2006-11-20 13:00:48 1244 1fc PT WARNING:
> Method:"http://www.microsoft.com/SoftwareDistribution/Server/ClientWebService/SyncUpdates"
> 2006-11-20 13:00:48 1244 1fc PT WARNING: ID:9786c480-dfe2-4456-aff8-0698fd8c2f83
> 2006-11-20 13:00:48 1244 1fc PT WARNING: GetCookie failure, error = 0x8024400D, soap client error = 7, soap error code = 300, HTTP
> status code = 200
> 2006-11-20 13:00:48 1244 1fc PT WARNING: SOAP Fault: 0x00012c
> 2006-11-20 13:00:48 1244 1fc PT WARNING: faultstring:Fault occurred
> 2006-11-20 13:00:48 1244 1fc PT WARNING: ErrorCode:ConfigChanged(2)
> 2006-11-20 13:00:48 1244 1fc PT WARNING: Message:
>
> 2006-11-20 13:00:48 1244 1fc PT WARNING: Method:"http://www.microsoft.com/SoftwareDistribution/Server/ClientWebService/GetCookie"
> 2006-11-20 13:00:48 1244 1fc PT WARNING: ID:eec5dcea-b998-45f1-b0fc-82b8a4936a5d
> 2006-11-20 13:00:54 1244 1fc PT +++++++++++ PT: Synchronizing extended update info +++++++++++
> 2006-11-20 13:00:54 1244 1fc PT + ServiceId = {7971F918-A847-4430-9279-4A52D1EFE18D}, Server URL =
> https://update.microsoft.com/v6/Clie...ce/client.asmx
> 2006-11-20 13:00:57 1244 1fc Agent * Found 0 updates and 23 categories in search
> 2006-11-20 13:00:58 1244 1fc Agent *********
> 2006-11-20 13:00:58 1244 1fc Agent ** END ** Agent: Finding updates [CallerId = Windows Defender]
> 2006-11-20 13:00:58 1244 1fc Agent *************
> 2006-11-20 13:00:58 5488 175c COMAPI >>-- RESUMED -- COMAPI: Search [ClientId = Windows Defender]
> 2006-11-20 13:00:58 5488 175c COMAPI - Updates found = 0
> 2006-11-20 13:00:58 5488 175c COMAPI ---------
> 2006-11-20 13:00:58 5488 175c COMAPI -- END -- COMAPI: Search [ClientId = Windows Defender]
> 2006-11-20 13:00:58 5488 175c COMAPI -------------
> 2006-11-20 13:01:02 1244 1fc Report REPORT EVENT: {C3BB3AC0-F419-4EC3-9B81-5D842EB6BB42} 2006-11-20 13:00:57-0000 1 147 101
> {00000000-0000-0000-0000-000000000000} 0 0 Windows Defender Success Software Synchronization Agent has finished detecting items.
>
> Any ideas anyone, PLEASE?????
>
>
> "Neil Jordan" <> wrote in message news:%...
>>I am REALLY fed up with this. I just can't get the automatic ones to work.
>>
>> They always fail with 0x8024401B error.
>>
>> I have enabled all the following domains as access, and even on my machine, where I have administrative rights to the network, it
>> fails!
>>
>> *.download.microsoft.com
>> *.download.windowsupdate.com
>> *.microsoft.com
>> *.update.microsoft.com
>> *.webtrends.com
>> *.windowsupdate.com
>> *.windowsupdate.microsoft.com
>> download.microsoft.com
>> download.windowsupdate.com
>> ntservicepack.microsoft.com
>> update.microsoft.com
>> windowsupdate.com
>> windowsupdate.microsoft.com
>>
>>
>
>