Windows Server 2008 Service Pack 2 Windows Server 2008 Enterprise Windows Server 2008 Enterprise without Hyper-V Windows Server 2008 Datacenter Windows Server 2008 Datacenter without Hyper-V Windows Server 2008 for Itanium-Based Systems Windows Server 2008 Foundation Windows Server 2008 Standard Windows Server 2008 Standard without Hyper-V Windows Server 2008 Web Edition Еще…Меньше
Симптомы
Когда клиентское приложение пытается подключиться к Windows Server 2008 Пакет обновления 2 (SP2)-не на основе сервера во время процесса распределения динамических портов, подключения и приложение не работает должным образом. Кроме того на сервере регистрируется событие с кодом 4227 и клиентское приложение получает ошибку WinSock 10048 (WSAEADDRINUSE).
Notes
-
Эта проблема возникает, даже если существуют доступные динамические порты на сервере.
-
Дополнительные сведения о событии ID 4227 и ошибка WinSock 10048 посетите следующие веб-узлы корпорации Майкрософт:
Событие с кодом 4227 — Подключения сети TCP/IP
Коды ошибок Winsock
Причина
Эта проблема возникает, поскольку выделяется новый динамический порт со статусом «Закрытие». Затем драйвер Tcpip.sys регистрирует событие ID 4227 на сервере.
Решение
Сведения об исправлении
Существует исправление от корпорации Майкрософт. Однако данное исправление предназначено для устранения только проблемы, описанной в этой статье. Применяйте это исправление только в тех случаях, когда наблюдается проблема, описанная в данной статье. Это исправление может проходить дополнительное тестирование. Таким образом если вы не подвержены серьезно этой проблеме, рекомендуется дождаться следующего пакета обновления, содержащего это исправление.
Если исправление доступно для скачивания, имеется раздел «Пакет исправлений доступен для скачивания» в верхней части этой статьи базы знаний. Если этот раздел не отображается, обратитесь в службу поддержки для получения исправления.
Примечание. Если наблюдаются другие проблемы или необходимо устранить неполадки, вам может понадобиться создать отдельный запрос на обслуживание. Стандартная оплата за поддержку будет взиматься только за дополнительные вопросы и проблемы, которые не соответствуют требованиям конкретного исправления. Для получения полного списка телефонов поддержки и обслуживания клиентов корпорации Майкрософт, или для создания отдельного запроса на обслуживание, посетите следующий веб-сайт Майкрософт:
http://support.microsoft.com/contactus/?ws=supportПримечание. В форме «Пакет исправлений доступен для скачивания» отображаются языки, для которых доступно исправление. Если нужный язык не отображается, значит исправление для данного языка отсутствует.
Предварительные условия
Для установки этого исправления необходимо наличие Windows Server 2008 SP2.
Дополнительные сведения о том, как получить пакет обновления для Windows Server 2008, щелкните следующий номер статьи базы знаний Майкрософт:
968849 Как получить последний пакет обновления для Windows Server 2008
Сведения о реестре
Для установки этого исправления нет необходимости вносить изменения в реестр.
Необходимость перезагрузки
После установки исправления компьютер необходимо перезагрузить.
Сведения о замене исправлений
Это исправление не заменяет ранее выпущенные исправления.
Глобальная версия этого исправления устанавливает файлы с атрибутами, указанными в приведенных ниже таблицах. Дата и время для файлов указаны в формате UTC. Дата и время для файлов на локальном компьютере отображаются в местном времени с вашим текущим смещением летнего времени (DST). Кроме того, при выполнении определенных операций с файлами, даты и время могут изменяться.
Примечания к сведениям о файле Windows Server 2008Важно. Исправления для Windows Server 2008 и Windows Vista исправления включены в те же пакеты. Однако только «Windows Vista» отображается на странице запрос исправления. Для получения пакета исправлений, который применяется к одной или обеих операционных систем, установите исправления, перечисленные в разделе «Windows Vista» на странице. Всегда смотрите раздел «Информация в данной статье относится к следующим продуктам» статьи для определения фактических операционных систем, к которым применяется каждое исправление.
-
Файлы, относящиеся к определенному продукту, этапу разработки (RTM, SPn) и направлению поддержки (LDR, GDR) можно определить путем проверки номера версий файлов, как показано в следующей таблице.
Версия
Продукт
SR_Level
Направление поддержки
6.0.600
2.
23 xxxWindows Server 2008
SP2
LDR
-
Файлы МАНИФЕСТА (.manifest) и MUM (.mum), устанавливаемые для каждой среды
указаны отдельно в разделе «сведения о дополнительных файлах для Windows Server 2008». MUM файлы и файлы МАНИФЕСТА и связанные файлы каталога безопасности (.cat), очень важны для поддержания состояния обновляемого компонента. Файлы каталога безопасности, для которых не перечислены атрибуты, подписаны цифровой подписью корпорации Майкрософт.
Для всех поддерживаемых версий Windows Server 2008 для систем на базе x86
|
Имя файла |
Версия файла |
Размер файла |
Дата |
Время |
Платформа |
|---|---|---|---|---|---|
|
Tcpipreg.sys |
6.0.6002.23264 |
31,232 |
02-Nov-2013 |
11:42 |
x86 |
|
Tcpip.sys |
6.0.6002.23264 |
915,392 |
02-Nov-2013 |
13:24 |
x86 |
Для всех поддерживаемых версий Windows Server 2008 для систем на базе x64
|
Имя файла |
Версия файла |
Размер файла |
Дата |
Время |
Платформа |
|---|---|---|---|---|---|
|
Tcpipreg.sys |
6.0.6002.23264 |
40,448 |
02-Nov-2013 |
12:23 |
x64 |
|
Tcpip.sys |
6.0.6002.23264 |
1,417,152 |
02-Nov-2013 |
14:15 |
x64 |
Для всех поддерживаемых IA-64-разрядных версий Windows Server 2008
|
Имя файла |
Версия файла |
Размер файла |
Дата |
Время |
Платформа |
|---|---|---|---|---|---|
|
Tcpipreg.sys |
6.0.6002.23264 |
80,896 |
02-Nov-2013 |
11:29 |
IA-64 |
|
Tcpip.sys |
6.0.6002.23264 |
2,976,192 |
02-Nov-2013 |
13:11 |
IA-64 |
Статус
Корпорация Майкрософт подтверждает, что это проблема продуктов Майкрософт, перечисленных в разделе «Относится к».
Дополнительные сведения
Для получения дополнительных сведений о терминологии обновлений программного обеспечения щелкните следующий номер статьи базы знаний Майкрософт:
824684 Описание стандартной терминологии, используемой для описания обновлений программных продуктов Майкрософт
Сведения о дополнительных файлах для Windows Server 2008
Дополнительные файлы для всех поддерживаемых версий Windows Server 2008 для систем на базе x86
|
Свойства файла |
Значение |
|---|---|
|
Имя файла |
X86_07d832875b515e11fe3999cc548cc028_31bf3856ad364e35_6.0.6002.23264_none_2b23f4283c15afe6.manifest |
|
Версия файла |
Неприменимо |
|
Размер файла |
717 |
|
Дата (UTC) |
05-Nov-2013 |
|
Время (UTC) |
07:09 |
|
Имя файла |
X86_3b48f9f8dc57d913deb2d9f72b6317af_31bf3856ad364e35_6.0.6002.23264_none_815b028d63e6b50b.manifest |
|
Версия файла |
Неприменимо |
|
Размер файла |
702 |
|
Дата (UTC) |
05-Nov-2013 |
|
Время (UTC) |
07:09 |
|
Имя файла |
X86_microsoft-windows-l..istry-support-tcpip_31bf3856ad364e35_6.0.6002.23264_none_8850572a1bde0ab9.manifest |
|
Версия файла |
Неприменимо |
|
Размер файла |
4,845 |
|
Дата (UTC) |
02-Nov-2013 |
|
Время (UTC) |
13:40 |
|
Имя файла |
X86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.23264_none_b55133757cd75123.manifest |
|
Версия файла |
Неприменимо |
|
Размер файла |
6,400 |
|
Дата (UTC) |
02-Nov-2013 |
|
Время (UTC) |
13:41 |
Дополнительные файлы для всех поддерживаемых 64-разрядных версий Windows Server 2008
|
Свойства файла |
Значение |
|---|---|
|
Имя файла |
Amd64_e3bf7d0554c2c36ba963d571463e64b6_31bf3856ad364e35_6.0.6002.23264_none_bea0c8227a5202a0.manifest |
|
Версия файла |
Неприменимо |
|
Размер файла |
706 |
|
Дата (UTC) |
05-Nov-2013 |
|
Время (UTC) |
07:09 |
|
Имя файла |
Amd64_e441d8f93eea3011129e54d91e13e6b5_31bf3856ad364e35_6.0.6002.23264_none_c487551864b86765.manifest |
|
Версия файла |
Неприменимо |
|
Размер файла |
721 |
|
Дата (UTC) |
05-Nov-2013 |
|
Время (UTC) |
07:09 |
|
Имя файла |
Amd64_microsoft-windows-l..istry-support-tcpip_31bf3856ad364e35_6.0.6002.23264_none_e46ef2add43b7bef.manifest |
|
Версия файла |
Неприменимо |
|
Размер файла |
5,122 |
|
Дата (UTC) |
02-Nov-2013 |
|
Время (UTC) |
14:33 |
|
Имя файла |
Amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.23264_none_116fcef93534c259.manifest |
|
Версия файла |
Неприменимо |
|
Размер файла |
6,422 |
|
Дата (UTC) |
02-Nov-2013 |
|
Время (UTC) |
14:34 |
Дополнительные файлы для всех поддерживаемых версий Windows Server 2008 на базе процессоров IA-64
|
Свойства файла |
Значение |
|---|---|
|
Имя файла |
Ia64_1eea6fd3c7b4167e49b833da130dd1b0_31bf3856ad364e35_6.0.6002.23264_none_88cab8bbb592f16f.manifest |
|
Версия файла |
Неприменимо |
|
Размер файла |
1,066 |
|
Дата (UTC) |
05-Nov-2013 |
|
Время (UTC) |
07:09 |
|
Имя файла |
Ia64_microsoft-windows-l..istry-support-tcpip_31bf3856ad364e35_6.0.6002.23264_none_8851fb201bdc13b5.manifest |
|
Версия файла |
Неприменимо |
|
Размер файла |
5,118 |
|
Дата (UTC) |
02-Nov-2013 |
|
Время (UTC) |
13:29 |
|
Имя файла |
Ia64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6002.23264_none_b552d76b7cd55a1f.manifest |
|
Версия файла |
Неприменимо |
|
Размер файла |
6,411 |
|
Дата (UTC) |
02-Nov-2013 |
|
Время (UTC) |
13:29 |
Нужна дополнительная помощь?
- Remove From My Forums
-
Question
-
I am seeing this error in the event logs on a number of our w2012r2 servers. These servers are barely being utilized because they are not production yet. I find it hard to believe that the server is running out of ports. I did a netstat on a few
servers and there are very few ports that are in use. Are there any other reasons why we would be getting this warning? Is there any other ways to troubleshoot this issue? When I do the netstat command it may be an hour after the error is logged. Its
hard to catch the error and do the netstat at the same time the error is logged.TCP/IP failed to establish an outgoing connection because the selected local endpoint was recently used to connect to the same remote endpoint. This error typically occurs when outgoing connections are opened and closed at a high rate, causing all available
local ports to be used and forcing TCP/IP to reuse a local port for an outgoing connection. To minimize the risk of data corruption, the TCP/IP standard requires a minimum time period to elapse between successive connections from a given local endpoint to
a given remote endpoint.Any help is appreciated.
Thanks
Answers
-
Hi missyz21,
Check if decrease TcpTimeWaitDelay and increase MaxUserPort could help to solve the issue.
1. The location of the TcpTimeWaitDelay is:
HKEY_LOCAL-MACHINESystemCurrentControlSetServicesTcpipParameters. Add REG_DWORD named TcpTimedWaitDelay, we may set the value to 30 seconds, by default, the value is 4 minutes.
Here is the detailed information about TcpTimedWaitDelay:
https://technet.microsoft.com/en-us/library/cc938217.aspx
2. Then we may use command netsh int ipv4 set dynamicport tcp start=10000 num=20000 to expand dynamic port range.
Best Regards,
Anne
Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Support, contact tnmff@microsoft.com.
-
Proposed as answer by
Tuesday, December 29, 2015 9:07 AM
-
Marked as answer by
Anne HeMicrosoft contingent staff
Wednesday, January 6, 2016 1:52 AM
-
Proposed as answer by
Hello,
I started receiving TCPIP Event ID 4227 on two
servers. One server is an SBS 2011 domain controller and the other one
is a Server 2016 Standard virtual machine on completely different
hardware that only hosts a reporting software program. These errors
will occur at completely different times on each server so they don’t
seem to be related to one another at all. The SBS 2011 server is
running on it’s own physical hardware, and the Server 2016 server is a
virtual machine on a Hyper-V host which also has 6 other server virtual
machines that are not experiencing this problem.
For troubleshooting, I have set the
‘TcpTimedWaitDelay’ to 30 in the registry on both servers and that did
not fix the error. I have also set up a script to run a netstat and
get-process capture exactly when the error is logged in Event Viewer and
I have collected the logs which are attached (the second server is listed at the bottom of the same file). When looking through
those logs I cannot determine what the issue really is since it doesn’t
seem to be related to the ‘TcpTimedWaitDelay’ setting.
At this time the error doesn’t seem to be
affecting any functionality on either server so I’m not sure how
concerning this really is.
Any information is appreciated and if you need
any further clarification on anything please let me know.
Thank you
attach_file
Attachment
netstat_results.txt
1000 KB
I did a search and found a recent posting on EE here, but there was little information other than running a malware scan: https://www.experts-exchange.com/Networking/Network_Management/Network_Analysis/Q_28273755.html
I also have responded to this same issue over on the Windows 8 forums: http://www.eightforums.com/network-sharing/28502-windows-8-stops-allowing-new-connections-3.html#post306663
Here is the issue: About every 4-6 days I start getting the ‘error 4227’ in my Windows Event log: ‘Warning, TCP/IP, Event 4227: TCP/IP failed to establish an outgoing connection because the selected local endpoint was recently used to connect to the same remote endpoint‘.
I can always tell when the issue starts because I can no longer remote into my home computer from work using LogMeIn. After I found this thread, I decided before I did anything else, to close Chrome, and the ~25 tabs I had open at the time. Within just a few moments, all my internet connections, and other network connections started coming back online. I didn’t reboot or anything, I simply closed Chrome and left Chrome closed.
I have been chasing this problem for a while now, trying to narrow down what was using all my TCP/IP ports up. When I would reboot my computer, the first thing I would do was reopen all the windows I previously had open, including all the tabs I was in while using Chrome. I figured this must be when the countdown to all my TCP/IP ports being used up starts, so when I get to 4-6 days in, I start having network/internet port issues. I never realized leaving my internet browser (Chrome) open with several tabs would cause this problem.
Although many of my local network services restored themselves after closing Chrome, it appears my Internet is still not fully functional. It looks like I will still have to either bounce my NIC, or reboot my machine to fully restore functionality. So, although closing Chrome helped, it was not the the only culprit. Something else is still not releasing all my TCP/IP ports.
After I got home I still had to reboot my computer to fully regain Internet connectivity, so all the ports were not released. I still would like to figure out what is doing this, since I run with a ton of stuff open on my work computer, including ~30 open tabs in Chrome, and my computer stays up for a month or more before I reboot it for security updates. My work computer (also Windows 8.1) never has any issues, so the problem on my home computer must be larger than just leaving Chrome open for a few days with a bunch of tabs. My wife’s computer (Windows 8.1) is up for weeks at a time with several things open too, yet she never has the issue of running out of TCP/IP ports either.
In all my research I have also read the problem could be attributed to either a bad NIC card, bad network cable, or a need for upgraded NIC drivers on my current NIC. Anyone want to weigh in on this perspective? I don’t want to go buy a new NIC arbitrarily without having a better idea of what my issue may be.
To summarize, I am running Windows 8.1 Pro, with all the latest Windows updates. This is my gaming rig, but I also have other things running on it like Steam, Mumble, Trillian Pro, Argus Monitor, Moo0 system monitor, eMClient (email), Chrome, Internet Explorer (Work OWA email), Logitech Gaming Software (keyboard and mouse config software).
I have MalwareBytes Pro loaded with ‘real time’ protection running. I have run several FULL system scans on my computer, always coming back clean. I have tried three different versions of NIC drivers for my Broadcom NetLink Gigabit Ethernet adapter, and the problem continues to persist.
My next step is to buy a new Intel NIC and install it to see if that stops my issue, unless there is more info I can provide here to assist with a solid diagnosis.
Thanks in advance for any suggestions or feedback.