Skip to main content
This forum is closed to new posts and responses. Individual names altered for privacy purposes. The information contained in this website is provided for informational purposes only and should not be construed as a forum for customer support requests. Any customer support requests should be directed to the official HCL customer support channels below:

HCL Software Customer Support Portal for U.S. Federal Government clients
HCL Software Customer Support Portal

HCL Notes/Domino 8.5 Forum (includes Notes Traveler)

HCL Notes/Domino 8.5 Forum (includes Notes Traveler)

Previous Next
Subject: Faulting application NSD.exe, Server crashes
Feedback Type: Problem
Product Area: Domino Server
Technical Area: Crash
Platform: Windows
Release: 8.5.1
Reproducible: Always

Installed: Domino 8.5.1FP2 on a Windows 2008 server.

The server crashes regularly, with the message in the Windows Event log:

Faulting application nsd.exe, version 8.5.10.9271, faulting module 4ac1b094, version nsd.exe, fault address 0x8.5.10.9271.

When I examine the sysinfo log, the following message comes up over and over again:



Recovering from exception but the issue needs to be researched
The Windows Filtering Platform has blocked a connection. Application Information: Process ID: 4 Application Name: System Network Information: Direction: %%14593 Source Address: xx.xx.xx.xx Source Port: 52683 Destination Address: xx.xx.xx.xx Destination Port: 445 Protocol: 6 Œ

Date/Time: 09/30/2010 07:33:01 PM; Source: "Microsoft-Windows-Security-Auditing"; Severity: "Audit Failure"; Event ID: 5157; User: ""; Computer: "computername.domain.com"

ERROR (0): NSD thread e14 got system exception: ACCESS_VIOLATION (3221225477)
### INTERNAL STACK DUMP BEGIN [ nsd: 0e10: 0e14]
### @[ 1] 0x004af9c6 nsd.MEMHDR_T::IsAllocated+18 (42D6E755220723D,1b99ea0,41001ba,11cbd8)
### @[ 2] 0x004b119c nsd.memw_free+92 (42D6E7552207265,0,0,0)
### @[ 3] 0x004b12cb nsd.operator delete+31 (42D6E7552207265,603dfc,250,5c7c9f)
### @[ 4] 0x004aecc4 nsd.SYSLOG_T::GetDescription+2044 (12d958,40eb268,0,11ce28)
### @[ 5] 0x004ad6b5 nsd.SYSLOG_T::DumpSysLog+1805 (12d958,870c08,530304100000004,30303000000011)
### @[ 6] 0x004417c1 nsd.NSDPARSER_T::SYSLOGSECSEC_T::GetData+149 (322c088,870c08,0,322bf48)
### @[ 7] 0x0041d1a5 nsd.NSDPARSER_T::SECINFO_T::WriteData+137 (322c088,0,100000000,1)
### @[ 8] 0x00441840 nsd.NSDPARSER_T::SYSLOGSECSEC_T::DumpSysLog+48 (322c088,400,a,94)
### @[ 9] 0x00479b04 nsd.NSD_T::ShowSysInfo+3760 (870660,0,0,0)
### @[10] 0x00475f61 nsd.NSD_T::MainWrapped+5701 (870660,870c00,0,870e50)
### @[11] 0x00473df8 nsd.NSD_T::Main+6820 (870660,8,225b10,5b855c)
### @[12] 0x00470adc nsd.main+188 (8,225b10,0,0)
### @[13] 0x005c21d8 nsd.mainCRTStartup+568 (0,0,0,0)
### [14] 0x76cdf56d kernel32.BaseThreadInitThunk+13 (0,0,0,0)
### [15] 0x76f13021 ntdll.RtlUserThreadStart+33 (0,0,0,0)
### INTERNAL STACK DUMP END
ERROR: GetDescription failed to delete argArray 42D6E7552207265; pointer is bad
Buffer "The Windows Filtering Platform has blocked a connection.

Application Information:
Process ID: 3068
Application Name: \device\harddiskvolume3\lotus\domino\nrouter.exe


Later on in the log the application name is no longer nrouter.exe but lsass.exe, it keep on being an Access Violation though.

We already checked the Virus scanner but all needed exceptions have been made regarding directories.


Feedback number MHOG89TFC8 created by ~Joseph Fezponelylen on 10/01/2010

Status: Open
Comments:





Printer-friendly

Search this forum

Member Tools


RSS Feeds

 RSS feedsRSS
All forum posts RSS
All main topics RSS