Failure to synchronize error on BigFix logs

Hi,

I have a particular endpoint whose logs have been giving this error message “FAILED to Synchronize - General transport failure. - 'http://xxxxxxx' http failure code 404 - gather url https://relay4. xxx””

When i search for this endpoint on the console, it shows up but the last report time is 3 months ago even when my settings on BigFix is supposed to remove all endpoints that haven’t reported in 30days. The endpoint shows on the console but has 0 relevant fixlets.

So far, I have uninstalled the BigFix agent, deleted the endpoint it from the console, reinstalled the agent again. I can ping all the bigfix relays successfully from this endpoint and I also used powershell to reach all the relays successfully through the 52311 port.

Please help.

It looks most likely to be a communication issue.

When you say the relay is pingable, do you also mean that a telnet test to the relay port is successful?

If telnet works, I would still recommend validating the full communication path with your network team. In several cases, we’ve seen issues where the relay is reachable via ping and telnet, but the TLS/handshake is broken or partially blocked, which can still cause failures.

Thank you vk.

Yes, the test to the relay is successful although I used powershell “Test-NetConnection -ComputerName -Port ”

Thanks again

I had a similar issue with one of the BigFIx client and performed BES agent reset post that it worked fine.
Open regedit and navigate to HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\BigFix\EnterpriseClient\GlobalOptions.
Delete the following values: ComputerID, RegCount, and ReportSequenceNumber.
Clear Data: Navigate to the installation directory (usually C:\Program Files (x86)\BigFix Enterprise\BES Client) and delete the __BESData

1 Like

Thank you ersaumitra10.

I will try this today. Please do in need to uninstall the agent at any point?

Uninstall is last resort. Once time permits see if client reset can fix it

1 Like

Http error 404 - can mean lot of things - the actual line can help.

For example - What does the error 'http failure code 404' from the Client log for an opsite mean? - Customer Support

I can share you a can where clients reported 404 on some op sites - after restarting the Relay and it's Parent Relay the errors which showed on the Relay Diagnostics on the Relay resolved and everything was resolved

Hi Vk,

TLS handshake isn’t blocked. I tested and everything seems fine but it still shows us that error. SO frustrating at the point.

Hi ersaumitra10,

I have gone through this step by step process and it is showing up the errors and nothing changed at all.

Hi @orbiton
Thank you for your response. Do you mean I should restart the Relay and Parent Relay?

@olu_bandzz - yes and not, every case can be different, I mean if you can provide the actual log file, and make sure to sendor all of the sensitive information - we can help more
And if you can do that please open a support case.

@olu_bandzz Are you certain your agent is using port 52311? The URL in your original post appears to show the agent trying to use port 52411 and the URL failing is to custom site.

Side note, you may want to edit your post to remove any sensitive and host specific information :wink:

1 Like

@SLB Thank you for the advice. Yes, we use 52411 instead of the default 52311 port.

@orbiton Here you go.

Thanks

At 14:26:02 -0500 -
Starting client version 10.0.8.37
FIPS mode disabled by default.
Cryptographic module initialized successfully.
Using crypto library libBEScrypto - OpenSSL 1.0.2zd 15 Mar 2022
At 14:26:03 -0500 -
Initializing Site: actionsite
Restricted mode
Initializing Site: CustomSite_xxx-2dSite
Initializing Site: CustomSite_xxx
Initializing Site: mailboxsite
Processing Download plugins
Setting _BESClient_Download_FastHashVerify enabled: Off
Beginning Relay Select
At 14:26:04 -0500 -
RegisterOnce: Attempting secure registration with 'http://relay4'
Unrestricted mode
Configuring listener without wake-on-lan
Registered with url 'http://relay4'
Registration Server version 10.0.0.133 , Relay version 10.0.0.133
Relay does not require authentication.
Client has an AuthenticationCertificate
Relay selected: relay4. at: x.x.x.x:52311 on: IPV4 (Using setting IPV4ThenIPV6)
At 14:26:07 -0500 -
PollForCommands: Requesting commands
PollForCommands: commands to process: 3
At 14:26:08 -0500 -
Entering Service Loop.
Starting Service Loop.
A2AServer::Start().
PollForCommands: Requesting commands
PollForCommands: commands to process: 0
At 14:26:08 -0500 - actionsite (http://server)
Failed downloading 'http://main-server' as '__TempUpdateFilename'
At 14:26:08 -0500 -
FAILED to Synchronize - General transport failure. - 'http://main-server' http failure code 404 - gather url - http://relay4-server
Successful Synchronization with site 'mailboxsite' (version 38) - 'http://main-server'
At 14:26:08 -0500 - CustomSite_xxx-2dSite (http://main-server)
Failed downloading 'http://main-server' as '__TempUpdateFilename'
At 14:26:08 -0500 -
FAILED to Synchronize - General transport failure. - 'http://main-server' http failure code 404 - gather url - http://relay-server
At 14:26:08 -0500 - CustomSite_xxx (http://main-server)
Failed downloading 'http://main-server' as '__TempUpdateFilename'
At 14:26:08 -0500 -
FAILED to Synchronize - General transport failure. - 'http://main-server' http failure code 404 - gather url - http://relay-server
ActiveDirectory: Refreshed Computer Information - Domain: (N/A)
At 14:26:09 -0500 -
User interface process started for user 'xxx'
User interface process started for user 'xxx'
Encryption: optional encryption with no certificate; reports in cleartext
Error building or posting report.
At 14:26:11 -0500 -
[ThreadTime:14:26:08] SetupListener success: IPV4/6
GatherHashMV command received.
At 14:26:12 -0500 - CustomSite_xxx-2dSite (http://main-server)
Failed downloading 'http://main-server' as '__TempUpdateFilename'
At 14:26:12 -0500 -
FAILED to Synchronize - General transport failure. - 'http://main-server' http failure code 404 - gather url - http://realy-server
Processing fixlet site.
At 14:26:15 -0500 -
GatherHashMV command received.
At 14:26:16 -0500 - CustomSite_xxx (http://main-server)
Failed downloading 'http://main-server' as '__TempUpdateFilename'
At 14:26:16 -0500 -
FAILED to Synchronize - General transport failure. - 'http://main-server' http failure code 404 - gather url - http://realy-server
Processing fixlet site.
At 14:26:19 -0500 -
GatherHashMV command received.
At 14:26:22 -0500 - actionsite (http://server)
Failed downloading 'http://main-server' as '__TempUpdateFilename'
At 14:26:22 -0500 -
FAILED to Synchronize - General transport failure. - 'http://main-server' http failure code 404 - gather url - http://realy-server
Processing action site.
At 14:27:27 -0500 - actionsite (http://server)
Failed downloading 'http://main-server' as '__TempUpdateFilename'
At 14:27:28 -0500 -
FAILED to Synchronize - General transport failure. - 'http://main-server' http failure code 404 - gather url - http://realy-server
At 14:27:29 -0500 - CustomSite_xxx-2dSite (http://main-server)
Failed downloading 'http://main-server' as '__TempUpdateFilename'
At 14:27:29 -0500 -
FAILED to Synchronize - General transport failure. - 'http://main-server' http failure code 404 - gather url - http://realy-server
At 14:27:30 -0500 - CustomSite_xxx (http://main-server)
Failed downloading 'http://main-server' as '__TempUpdateFilename'
At 14:27:30 -0500 -
FAILED to Synchronize - General transport failure. - 'http://main-server' http failure code 404 - gather url - http://realy-server
At 14:28:46 -0500 -
Client shutdown (Service manager stop request)

It's seems relay itself has likely failed to gather the latest site versions from its parent (or the Main Server), so when the client requests them, the relay returns "Not Found." Client is able to authenticate with relay server as per logs. Seems problem is with relay server and not with the client. Could you validate besrelay.log and see if there are any errors.

1 Like

@olu_bandzz - please read similar situation - Large amount of network traffic noted while __diffsite fails to be downloaded - Customer Support

So it looks like the Client can not download some site content from the Relay - you will need check if there are issues with synching on the Relay

Are those messages showing on other BES Clients which are registered with that Relay?

If it's possible for you restart the Relay and the Parent Relay and check on the BESRelay.log if there are connectivity issues

Hi @ersaumitra10 I have so many besrealy.log files and the most recent one was last modified in 2025. i don’t know if this is normal.

And I see a lot of “Message {HTTP Error 60: SSL peer certificate or SSH remote key was not OK: SSL certificate problem: unable to get local issuer certificate}; retrying using HTTP” on that but they are all 2025 dates.

Hi @orbiton No, other clients reporting to this relay are reporting fine.

I can’t seem to find any recent besrelay.log files on my server.

Do i have to delete some old ones?

Relay logs rotate once they reach 50MB so the one to focus on is BESRelay.log. You may want to enable relay diagnostics on that relay then hit it via its URL to see if the diags yield anything. Could well be the relay has stopped communication to its parent so it out of sync and may not be relaying on client data to the infra.

Be sure to disable diagnostics afterwards if the relay is internet facing