System State Restore of Windows 2008 Domain Controller Fails with Error 0xe000fe29 - Authentication failed on connection to the server. Make sure that the user account has the appropriate permissions

Article:TECH62761  |  Created: 2008-01-24  |  Updated: 2013-12-19  |  Article URL http://www.symantec.com/docs/TECH62761
Article Type
Technical Solution


Issue



System State Restore of Windows 2008 Domain Controller Fails with Error 0xe000fe29 - Authentication failed on connection to the server. Make sure that the user account has the appropriate permissions


Error



Final error: 0xe000fe29 - Authentication failed on connection to the server. Make sure that the user account has the appropriate permissions
Final error category: Security Errors
For additional information regarding this error refer to link V-79-57344-65065

System State Restore of a Remote Windows 2008 Domain Controller in Directory Service Restore Mode (DSRM) fails with the following Error

 

In addition running test on Resource Credentials in Restore job properties will show "Access is Denied" to remote server.

The Excertps from Remote Agent debug on Windows 2008 Server show

BELogonUser: beclass::IsThisMe() returned error: 87
LogonType set = [LOGON32_LOGON_BATCH][0x4]
LogonUser failed: Logon failure: the user has not been granted the requested logon type at this computer.
LogonUser failed for user: Administrator

 


Solution





1. Makes sure Local Admin Account is used for Restore Purpose i.e DSRM account.
2. Assign the Backup Exec Service Account "Logon As a Batch Job" Rights in Default Domain Controller's Policy on Windows 2008 server as per following Document
 
3. Make sure that the account is NOT listed under "Deny logon as a batch job" because the Deny will take precedence over allow.

 
 

Supplemental Materials

SourceError Code
Value0xe000fe29

SourceUMI
ValueV-79-57344-65065


Legacy ID



307795


Article URL http://www.symantec.com/docs/TECH62761


Terms of use for this information are found in Legal Notices