 |
|
 |
Subject: Faulting application NSD.exe, Server crashes |
 |
 |
 |
Product Area: Domino Server |
 |
Technical Area: Crash |
 |
Platform: Windows |
 |
Release: 8.5.1 |
 |
Reproducible: Always |
 |
 |
 |
 |
Installed: Domino 8.5.1FP2 on a Windows 2008 server.
The server crashes regularly, with the message in the Windows Event log:
Faulting application nsd.exe, version 8.5.10.9271, faulting module 4ac1b094, version nsd.exe, fault address 0x8.5.10.9271.
When I examine the sysinfo log, the following message comes up over and over again:
Recovering from exception but the issue needs to be researched
The Windows Filtering Platform has blocked a connection. Application Information: Process ID: 4 Application Name: System Network Information: Direction: %%14593 Source Address: xx.xx.xx.xx Source Port: 52683 Destination Address: xx.xx.xx.xx Destination Port: 445 Protocol: 6 Œ
Date/Time: 09/30/2010 07:33:01 PM; Source: "Microsoft-Windows-Security-Auditing"; Severity: "Audit Failure"; Event ID: 5157; User: ""; Computer: "computername.domain.com"
ERROR (0): NSD thread e14 got system exception: ACCESS_VIOLATION (3221225477)
### INTERNAL STACK DUMP BEGIN [ nsd: 0e10: 0e14]
### @[ 1] 0x004af9c6 nsd.MEMHDR_T::IsAllocated+18 (42D6E755220723D,1b99ea0,41001ba,11cbd8)
### @[ 2] 0x004b119c nsd.memw_free+92 (42D6E7552207265,0,0,0)
### @[ 3] 0x004b12cb nsd.operator delete+31 (42D6E7552207265,603dfc,250,5c7c9f)
### @[ 4] 0x004aecc4 nsd.SYSLOG_T::GetDescription+2044 (12d958,40eb268,0,11ce28)
### @[ 5] 0x004ad6b5 nsd.SYSLOG_T::DumpSysLog+1805 (12d958,870c08,530304100000004,30303000000011)
### @[ 6] 0x004417c1 nsd.NSDPARSER_T::SYSLOGSECSEC_T::GetData+149 (322c088,870c08,0,322bf48)
### @[ 7] 0x0041d1a5 nsd.NSDPARSER_T::SECINFO_T::WriteData+137 (322c088,0,100000000,1)
### @[ 8] 0x00441840 nsd.NSDPARSER_T::SYSLOGSECSEC_T::DumpSysLog+48 (322c088,400,a,94)
### @[ 9] 0x00479b04 nsd.NSD_T::ShowSysInfo+3760 (870660,0,0,0)
### @[10] 0x00475f61 nsd.NSD_T::MainWrapped+5701 (870660,870c00,0,870e50)
### @[11] 0x00473df8 nsd.NSD_T::Main+6820 (870660,8,225b10,5b855c)
### @[12] 0x00470adc nsd.main+188 (8,225b10,0,0)
### @[13] 0x005c21d8 nsd.mainCRTStartup+568 (0,0,0,0)
### [14] 0x76cdf56d kernel32.BaseThreadInitThunk+13 (0,0,0,0)
### [15] 0x76f13021 ntdll.RtlUserThreadStart+33 (0,0,0,0)
### INTERNAL STACK DUMP END
ERROR: GetDescription failed to delete argArray 42D6E7552207265; pointer is bad
Buffer "The Windows Filtering Platform has blocked a connection.
Application Information:
Process ID: 3068
Application Name: \device\harddiskvolume3\lotus\domino\nrouter.exe
Later on in the log the application name is no longer nrouter.exe but lsass.exe, it keep on being an Access Violation though.
We already checked the Virus scanner but all needed exceptions have been made regarding directories.
 
Feedback number MHOG89TFC8 created by ~Joseph Fezponelylen on 10/01/2010

Status: Open
Comments:

|
|  |
|