<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>microsoftNOW &#187; DCOM</title>
	<atom:link href="http://www.microsoftnow.com/tag/dcom/feed" rel="self" type="application/rss+xml" />
	<link>http://www.microsoftnow.com</link>
	<description></description>
	<lastBuildDate>Wed, 18 Jan 2012 05:17:50 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.2</generator>
		<item>
		<title>&#8220;RPC Server is unavailable&#8221; error when requesting a certificate</title>
		<link>http://www.microsoftnow.com/2010/02/rpc-server-is-unavailable-error-when-requesting-a-certificate.html</link>
		<comments>http://www.microsoftnow.com/2010/02/rpc-server-is-unavailable-error-when-requesting-a-certificate.html#comments</comments>
		<pubDate>Fri, 05 Feb 2010 21:29:15 +0000</pubDate>
		<dc:creator>Shijaz Abdulla</dc:creator>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[certificate]]></category>
		<category><![CDATA[DCOM]]></category>
		<category><![CDATA[firewall]]></category>
		<category><![CDATA[forefront]]></category>
		<category><![CDATA[ISA server]]></category>
		<category><![CDATA[Threat Management Gateway]]></category>

		<guid isPermaLink="false">http://www.microsoftnow.com/2010/02/rpc-server-is-unavailable-error-when-requesting-a-certificate.html</guid>
		<description><![CDATA[While trying to request a certificate using the Certificates MMC snap-in on a computer running ISA Server, Threat Management Gateway (TMG) or Unified Access Gateway (UAG), you may encounter the following error: “The RPC Server is unavailable” This may be caused due to the RPC Filter in ISA Server/TMG. The RPC filter ensures security by [...]]]></description>
			<content:encoded><![CDATA[<div class='wb_fb_top'><div style="float:right;"></div></div>
<div class="topsy_widget_data topsy_theme_blue" style="float: right;margin-left: 0.75em; background: url(data:,%7B%20%22url%22%3A%20%22http%253A%252F%252Fwww.microsoftnow.com%252F2010%252F02%252Frpc-server-is-unavailable-error-when-requesting-a-certificate.html%22%2C%20%22style%22%3A%20%22big%22%2C%20%22title%22%3A%20%22%26%238220%3BRPC%20Server%20is%20unavailable%26%238221%3B%20error%20when%20requesting%20a%20certificate%22%20%7D);"></div>
<p>While trying to request a certificate using the Certificates MMC snap-in on a computer running ISA Server, Threat Management Gateway (TMG) or Unified Access Gateway (UAG), you may encounter the following error:</p>
<p>“The RPC Server is unavailable”</p>
<p><a href="http://www.microsoftnow.com/wp-content/uploads/2010/02/image.png"><img style="display: inline; border: 0px;" title="image" src="http://www.microsoftnow.com/wp-content/uploads/2010/02/image_thumb.png" border="0" alt="image" width="554" height="389" /></a></p>
<p>This may be caused due to the RPC Filter in ISA Server/TMG. The RPC filter ensures security by monitoring RPC traffic flowing through the firewall. DCOM traffic is also dropped by this filter. However, DCOM is required to request a certificate.</p>
<p>To workaround this problem, disable strict RPC compliance setting on ISA Server/TMG. Here’s how to do it:</p>
<ul>
<li>Right click on Firewall Policy and choose <strong>Edit System Policy </strong>.</li>
<li>Under <strong>Authentication</strong>, select <strong>Active Directory</strong> configuration group</li>
<li>Uncheck the <strong>Enforce Strict RPC Compliance</strong> option.</li>
</ul>
<p><a href="http://www.microsoftnow.com/wp-content/uploads/2010/02/image1.png"><img style="display: inline; border: 0px;" title="image" src="http://www.microsoftnow.com/wp-content/uploads/2010/02/image_thumb1.png" border="0" alt="image" width="454" height="352" /></a></p>
<ul>
<li>Click <strong>OK</strong> and apply your changes.</li>
</ul>
<p>Of course, you will also need to create a firewall policy rule to allow all traffic from Localhost to Internal. Once you have requested the certificate you can revert these changes.</p>
<p><a href="http://www.microsoftnow.com/wp-content/uploads/2010/02/image2.png"><img style="display: inline; border: 0px;" title="image" src="http://www.microsoftnow.com/wp-content/uploads/2010/02/image_thumb2.png" border="0" alt="image" width="454" height="318" /></a></p>
<p>You can now request certificates from your ISA Server/TMG computer!</p>

]]></content:encoded>
			<wfw:commentRss>http://www.microsoftnow.com/2010/02/rpc-server-is-unavailable-error-when-requesting-a-certificate.html/feed</wfw:commentRss>
		<slash:comments>7</slash:comments>
		</item>
	</channel>
</rss>

