MOM 2005, ahem, features

<originally posted on MSN Spaces blog on April 30, 2005>

Since I have been doing some work with MOM 2005, I thought I would share a couple things that I have noticed that might bite you in the butt.

  • MOM 2005 requires Windows authentication to the SQL server.  This can be a big problem in environments where your MOM server doesn't have a trust path to the SQL server.  This becomes a security issue when you have to located SQL servers in the DMZ simply because you have to locate a MOM server in the DMZ
  • If you are monitoring servers on the other side of a firewall (port 1270 tcp/udp) from the MOM server, you install MOM servers in a mode that does not allow the MOM server to "probe" for changes.  Not all information is pushed from clients, some things are probed by the MOM server across the network using apporpriate tursts.  This includes domain membership and DC status.  Meaning that clients on the other side of a firewall (and no trusts) will never have their domain membership updated if promoted to a member server or DC.