How can I troubleshoot RMS server?

DP 1 Reputation point
2020-11-12T22:29:47.613+00:00

Hello,

We are configuring an AD LAB following Cloud Exit procedures. We have imported keys into the HSM and the TPD seems to be imported correctly.

I am encountering an error while attempting to access a protected file and would like to know how to begin troubleshooting.

I have heard mentions of an RMS Analyzer that I would like to try but the download appears to be removed.

How can I begin troubleshooting?

Thank you.

39376-unprotectrmserrorcapture.png

Azure Information Protection
Azure Information Protection
An Azure service that is used to control and help secure email, documents, and sensitive data that are shared outside the company.
518 questions
{count} votes

1 answer

Sort by: Most helpful
  1. JamesTran-MSFT 36,376 Reputation points Microsoft Employee
    2020-11-17T19:05:27.12+00:00

    @DP
    Thank your for your time and patience throughout this issue. I received an update from our engineering team and will post their troubleshooting steps below.

    Troubleshooting in order to narrow down the issue:

    1. Verify that the HSM-based key is working properly on AD RMS by creating an AD RMS template on the AD RMS server.
    2. Double check the imported TPD is marked as the active key in AIP, using the command Get-AipServiceKeys, also take note of the KeyIdentifier of the active key.
    3. Reset a new client that does not have registry redirections configured, protect a Word document. Open the Word document with Notepad and search the KeyIdentifer found in the previous step.
    4. Retry unprotecting the protected document on the client with AD RMS redirections.

    If you have any other questions, please let me know.
    Thank you for your time and patience throughout this issue.