Why am I seeing lots of Event ID 131 - DeviceSetupManager - Metadata staging failed errors?

Anonymous
2024-01-21T21:01:31+00:00

In Event Viewer I am seeing lots of errors and warning related to DeviceSetupManager problems. Judging from other questions, this is happening widely. I have been investigating this issue and believe I have some information which may be useful to Microsoft engineers. I have included a lot of data, so this is a long post.

First, here is a list of event entries which appear to all be related to this issue.

Event ID 200 - Warning - DeviceSetupManager - "A connection to the Windows Update service could not be established." 1/19/2024

Event ID 201 - Warning - DeviceSetupManager - "A connection to the Windows Metadata and Internet Services (WMIS) could not be established." 1/19/2024

Event ID 202 - Warning - DeviceSetupManager - "The Network List Manager reports no connectivity to the internet." 1/19/2024

Event ID 131 - Error - DeviceSetupManager - "Metadata staging failed, result=0x80072EFE for container '{936BBD1F-3F6B-11ED-882B-A4BB6DC6CC51}'" 1/19/2024

Event ID 131 - Error - DeviceSetupManager - "Metadata staging failed, result=0x80072F78 for container '{936BB9A3-3F6B-11ED-882B-806E6F6E6963}'" 1/19/2024

Event ID 131 - Error - DeviceSetupManager - "Metadata staging failed, result=0x80070490 for container '{003D2803-8A03-55FA-AACE-E0FC0D0FF0DB}'" 1/10/2024

There are a total of 198 of these events between 1/13/2024 and 1/19/2024 on my system.

I often see a cluster of 2-4 Event ID 202 items, separated by 1 millisecond or less. They nearly always occur during times

when I am actively using the system, and there was no noticeable loss of internet access as seen at the user level.

For event ID 131, using Microsoft's Err_6.4.5, here are possible meanings of the result codes:

0x80072EFE

C:\home\wjhb> err 0x80072EFE

for hex 0x80072efe / decimal -2147012866

WININET_E_CONNECTION_ABORTED winerror.h

The connection with the server was terminated abnormally

1 matches found for "0x80072EFE"

0x80072F78

C:\home\wjhb> err 0x80072F78

for hex 0x80072f78 / decimal -2147012744

WININET_E_INVALID_SERVER_RESPONSE winerror.h

The server returned an invalid or unrecognized response

1 matches found for "0x80072F78"

0x80070490

C:\home\wjhb> err 0x80070490

for hex 0x80070490 / decimal -2147023728

PEER_E_NOT_FOUND p2p.h

E_PROP_ID_UNSUPPORTED vfwmsgs.h

The specified property ID is not supported for the

specified property set.%0

WER_E_NOT_FOUND werapi.h

DRM_E_NOT_FOUND windowsplayready.h

as an HRESULT: Severity: FAILURE (1), FACILITY_WIN32 (0x7), Code 0x490

for hex 0x490 / decimal 1168

ERROR_NOT_FOUND winerror.h

Element not found.

5 matches found for "0x80070490"

These all look like HRESULT values:

0x80000000 = severity of warning (or failure if a COM HRESULT - see winerror.h)

0x00070000 = facility of Win32

0x00002efe, 0x00002f78, 0x00000490 are the facility's status codes

As such, the values in winerror.h are most likely to be the correct interpretation in this context.

In another question thread we learned that periodic checks for updated device metadata use values in the registry key HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Device Metadata. The value of DeviceMetadataServiceURL under that key contains "http://go.microsoft.com/fwlink/?LinkID=252669&clcid=0x409".  This URL produces a redirect URL of <http://dmd.metaservices.microsoft.com/metadata.svc>.

I used the wget program to see what happens when the base URL is accessed. Here is a series of examples.

C:\home\wjhb\tmp>wget -nd "http://go.microsoft.com/fwlink/?LinkID=252669&clcid=0x409"

--2024-01-11 21:19:34-- http://go.microsoft.com/fwlink/?LinkID=252669&clcid=0x409

Resolving go.microsoft.com... 69.192.109.165

Connecting to go.microsoft.com|69.192.109.165|:80... connected. HTTP request sent, awaiting response... 302 Moved Temporarily

Location: http://dmd.metaservices.microsoft.com/metadata.svc [following]

--2024-01-11 21:19:34-- http://dmd.metaservices.microsoft.com/metadata.svc

Resolving dmd.metaservices.microsoft.com... 138.91.171.81

Connecting to dmd.metaservices.microsoft.com|138.91.171.81|:80... failed: Connection timed out.

Retrying.

--2024-01-11 21:19:56-- (try: 2) http://dmd.metaservices.microsoft.com/metadata.svc

Connecting to dmd.metaservices.microsoft.com|138.91.171.81|:80... connected.

HTTP request sent, awaiting response... Read error (Connection reset by peer) in headers.

Retrying.

--2024-01-11 21:21:55-- (try: 3) http://dmd.metaservices.microsoft.com/metadata.svc

Connecting to dmd.metaservices.microsoft.com|138.91.171.81|:80... connected.

HTTP request sent, awaiting response... 502 Bad Gateway

2024-01-11 21:24:42 ERROR 502: Bad Gateway.

================================================================================

C:\home\wjhb\tmp>ucrt wget -nd "http://go.microsoft.com/fwlink/?LinkID=252669&clcid=0x409" --2024-01-19 16:39:29-- http://go.microsoft.com/fwlink/?LinkID=252669&clcid=0x409 Resolving go.microsoft.com (go.microsoft.com)... 2600:1402:b800:686::2c1a, 2600:1402:b800:682::2c1a, 23.54.202.151 Connecting to go.microsoft.com (go.microsoft.com)|2600:1402:b800:686::2c1a|:80... connected. HTTP request sent, awaiting response... 302 Moved Temporarily Location: http://dmd.metaservices.microsoft.com/metadata.svc [following] --2024-01-19 16:39:29-- http://dmd.metaservices.microsoft.com/metadata.svc Resolving dmd.metaservices.microsoft.com (dmd.metaservices.microsoft.com)... 138.91.171.81 Connecting to dmd.metaservices.microsoft.com (dmd.metaservices.microsoft.com)|138.91.171.81|:80... failed: timed out. Retrying.

--2024-01-19 16:39:51-- (try: 2) http://dmd.metaservices.microsoft.com/metadata.svc Connecting to dmd.metaservices.microsoft.com (dmd.metaservices.microsoft.com)|138.91.171.81|:80... failed: timed out. Retrying.

--2024-01-19 16:40:14-- (try: 3) http://dmd.metaservices.microsoft.com/metadata.svc Connecting to dmd.metaservices.microsoft.com (dmd.metaservices.microsoft.com)|138.91.171.81|:80... failed: timed out. Retrying.

--2024-01-19 16:40:38-- (try: 4) http://dmd.metaservices.microsoft.com/metadata.svc Connecting to dmd.metaservices.microsoft.com (dmd.metaservices.microsoft.com)|138.91.171.81|:80... connected. HTTP request sent, awaiting response... No data received. Retrying.

--2024-01-19 16:40:48-- (try: 5) http://dmd.metaservices.microsoft.com/metadata.svc Connecting to dmd.metaservices.microsoft.com (dmd.metaservices.microsoft.com)|138.91.171.81|:80... connected. HTTP request sent, awaiting response... 502 Bad Gateway 2024-01-19 16:41:28 ERROR 502: Bad Gateway.

================================================================================

C:\home\wjhb\tmp>ucrt wget -nd "http://go.microsoft.com/fwlink/?LinkID=252669&clcid=0x409" --2024-01-20 15:27:33-- http://go.microsoft.com/fwlink/?LinkID=252669&clcid=0x409 Resolving go.microsoft.com (go.microsoft.com)... 2600:1402:3800:297::2c1a, 2600:1402:3800:2ad::2c1a, 23.36.70.120 Connecting to go.microsoft.com (go.microsoft.com)|2600:1402:3800:297::2c1a|:80... connected. HTTP request sent, awaiting response... 302 Moved Temporarily Location: http://dmd.metaservices.microsoft.com/metadata.svc [following] --2024-01-20 15:27:33-- http://dmd.metaservices.microsoft.com/metadata.svc Resolving dmd.metaservices.microsoft.com (dmd.metaservices.microsoft.com)... 20.231.121.79 Connecting to dmd.metaservices.microsoft.com (dmd.metaservices.microsoft.com)|20.231.121.79|:80... failed: timed out. Retrying.

--2024-01-20 15:27:55-- (try: 2) http://dmd.metaservices.microsoft.com/metadata.svc Connecting to dmd.metaservices.microsoft.com (dmd.metaservices.microsoft.com)|20.231.121.79|:80... failed: timed out. Retrying.

--2024-01-20 15:28:18-- (try: 3) http://dmd.metaservices.microsoft.com/metadata.svc Connecting to dmd.metaservices.microsoft.com (dmd.metaservices.microsoft.com)|20.231.121.79|:80... connected. HTTP request sent, awaiting response... 502 Bad Gateway 2024-01-20 15:28:20 ERROR 502: Bad Gateway.

================================================================================

So, in recent days, I see lots of connection attempts timing out, one case of "connection reset by peer", one case of "no data received" and many "502 Bad Gateway" errors.

Resolving dmd.metaservices.microsoft.com in DNS returns a series of IP addresses, no doubt for load balancing. Earlier today it started returning 52.142.223.178, which appears to be in Amsterdam. Each server is giving the same results, mostly "502 Bad Gateway" errors.

I believe my results readily tie back to the HRESULT values seen in the Event ID 131 entries, especially WININET_E_CONNECTION_ABORTED and WININET_E_INVALID_SERVER_RESPONSE.

Whatever program lurks behind <http://dmd.metaservices.microsoft.com/metadata.svc&gt; is obviously having a lot of problems. With tens (or hundreds) of millions of Windows systems doing periodic checks for updated device metadata, any slowdown or hang in the program behind the gateway will cause the server's listening socket's queue to fill up, probably resulting in those connection timeouts. The other results likely follow from the same problem. Whatever the cause, this has been happening for quite a while now so I hope that the underlying problem can be corrected, thus allowing checks for updated device metadata to succeed again.

In the interest of providing complete information about the Event Log entries, and at the risk of extending an already long post, here is one full example of each event ID, as provided by the Event Viewer. (Edit: this editor strips out all of the XML tags in the XML data part of the export, rendering it unusable. Therefore, I am only including the text part of the entries.)

================================================================================

Log Name: Microsoft-Windows-DeviceSetupManager/Admin

Source: Microsoft-Windows-DeviceSetupManager

Date: 1/19/2024 5:08:44 PM

Event ID: 131

Task Category: None

Level: Error

Keywords:

User: SYSTEM

Computer: D***MI

Description:

Metadata staging failed, result=0x80072EFE for container '{936BBD1F-3F6B-11ED-882B-A4BB6DC6CC51}'

===================================================================================================

Log Name: Microsoft-Windows-DeviceSetupManager/Admin

Source: Microsoft-Windows-DeviceSetupManager

Date: 1/19/2024 8:49:11 PM

Event ID: 131

Task Category: None

Level: Error

Keywords:

User: SYSTEM

Computer: D***6MI

Description:

Metadata staging failed, result=0x80072F78 for container '{00000000-0000-0000-FFFF-FFFFFFFFFFFF}'

===================================================================================================

Log Name: Microsoft-Windows-DeviceSetupManager/Admin

Source: Microsoft-Windows-DeviceSetupManager

Date: 1/10/2024 4:50:07 AM

Event ID: 131

Task Category: None

Level: Error

Keywords:

User: SYSTEM

Computer: DE***6MI

Description:

Metadata staging failed, result=0x80070490 for container '{003D2803-8A03-55FA-AACE-E0FC0D0FF0DB}'

===================================================================================================

Log Name: Microsoft-Windows-DeviceSetupManager/Admin

Source: Microsoft-Windows-DeviceSetupManager

Date: 1/19/2024 8:47:15 PM

Event ID: 200

Task Category: None

Level: Warning

Keywords:

User: SYSTEM

Computer: DE***MI

Description:

A connection to the Windows Update service could not be established.

===================================================================================================

Log Name: Microsoft-Windows-DeviceSetupManager/Admin

Source: Microsoft-Windows-DeviceSetupManager

Date: 1/19/2024 8:48:06 PM

Event ID: 201

Task Category: None

Level: Warning

Keywords:

User: SYSTEM

Computer: DES***6MI

Description:

A connection to the Windows Metadata and Internet Services (WMIS) could not be established.

===================================================================================================

Log Name: Microsoft-Windows-DeviceSetupManager/Admin

Source: Microsoft-Windows-DeviceSetupManager

Date: 1/19/2024 8:47:15 PM

Event ID: 202

Task Category: None

Level: Warning

Keywords:

User: SYSTEM

Computer: DE***6MI

Description:

The Network List Manager reports no connectivity to the internet.

===================================================================================================

Note: I am not aware that I am having any difficulties with internet connectivity. I believe the descriptions in the events are responding to various error codes and making an assumption about possible causes. Connection failures to Microsoft servers are generally expected to be due to network problems, not server problems, so this is perhaps an understandable way to summarize a variety of error codes.

Also, I recently ran DISM to look for corrupted system files and SFC to correct any problems. Neither tool found any issues. The above evidence clearly shows that the underlying problem is not on my system, but on the servers responding to the <http://dmd.metaservices.microsoft.com/metadata.svc&gt; URL.

Thoughts, ideas, suggestions gratefully accepted.

Windows for home | Windows 11 | Devices and drivers

Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question.

0 comments No comments
Answer accepted by question author
Anonymous
2024-01-23T10:08:01+00:00

Hi, William Bresler

Welcome to the Microsoft Community.

I have seen this problem reported by other members of the community and the reason for this error is the registry key: 

   HKLM/SOFTWARE\Microsoft\Windows\CurrentVersion\Device Metadata\DeviceMetaDataServiceURL 

Point to this URL: [http://go.microsoft.com/fwlink/?LinkID=252669&clcid=0x409](http://go.microsoft.com/fwlink/?LinkID=252669&amp;clcid=0x409 "go.microsoft.com")  

Then redirects to the following URL: [https://devicemetadataservice.trafficmanager.net/dms/metadata.svc](https://devicemetadataservice.trafficmanager.net/dms/metadata.svc "devicemetadataservice.trafficmanager.net") 

The 2nd URL is broken. (as you guessed at the end of your post) 

Here are two things you can try:

1. Disable metadata staging:  
  • Windows Settings > System > About > Advanced System Settings > Select the Hardware tab > Click the Device Installation Settings button.
  • In the pop-up box that appears, you can change it from Yes (recommended) to No (device may not function as expected).
    1. Edit the registry:
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WINEVT\Channels\Microsoft-Windows-DeviceSetupManager/Admin "Enabled"=dword:00000000 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Device Metadata

"PreventDeviceMetadataFromNetwork"=dword:00000001

This issue should be solved temporarily by the above method, if you want to completely solve this issue, it may require the development team to fix it, you can submit your ideas and suggestions through the [Feedback Hub](https://support.microsoft.com/en-in/help/4021566/windows-10-send-feedback-to-microsoft-with-feedback-hub-app "support.microsoft.com"), and the development team will regularly review submissions for ideas or fixes. Please share the feedback link here after submitting as it will allow others on the forum to vote for your submission, including me. More votes will lead to more visibility and higher priority to the development team. 

Best Regards

Martin | Microsoft Community Support Specialist

Was this answer helpful?

100+ people found this answer helpful.
0 comments No comments

46 additional answers

Sort by: Oldest
  1. Anonymous
    2024-04-15T12:22:57+00:00

    Thank you, you have done your homework on this for sure. I for one am still flooded with the 131 errors 20 within one minute this morning. Microsoft are obviously aware of the problem, but it appears they are unable to do anything about it.

    Was this answer helpful?

    5 people found this answer helpful.
    0 comments No comments
  2. Anonymous
    2024-04-16T22:58:03+00:00

    I first noticed this problem on my system (Windows 11 Home ) last October. I was using Event Viewer to investigate a different issue and noticed all those EventID 131 entries, and the other ones I noted above. I figured I would give Microsoft a few months to correct whatever the underlying problem was before posting here. I have wondered whether this has anything to do with the issue of lots of printers suddenly getting updated with HP drivers. It turned out to be the result of someone erroneously updating some metadata files.

    In any case, the suggestion from this thread's January 23, 2024 post by Martin, about temporarily disabling device metadata updates, will stop your system from carrying out these periodic checks. Your Event Log will no longer be flooded with all of those errors related to this function.

    I made the indicated modifications to my system and have not noticed any adverse effects. If you are running Windows 11 you can follow Martin's suggestion 1 to go through Settings to make the changes. Afterwards, I ran regedit and verified that the registry values Martin indicated in his suggestion 2 matched the values on my system. In other words, the two suggestions are equivalent means of achieving the same result.

    I don't think it is necessary to restart your system after changing these registry values, but if you continue to see these Event Log entries, try restarting your system. Of course, when Microsoft does get around to fixing this it will be necessary to switch the Device Installation Setting back on.

    In the meantime, try Martin's suggestion - you can easily revert the change if it does not meet your needs. Good luck.

    Was this answer helpful?

    3 people found this answer helpful.
    0 comments No comments
  3. Anonymous
    2024-05-06T23:05:45+00:00

    This is a still on-going major issue and so far, I've found nothing to fix the problems. This absolutely needs to be addressed by Microsoft but considering this has been a known off and on issue since as far back as 2015 I doubt they'll do anything.

    Was this answer helpful?

    7 people found this answer helpful.
    0 comments No comments
  4. Anonymous
    2024-05-13T15:21:07+00:00

    so windows broke their stuff and offers zero fix... cool.. haven't been able to use my pc for a whole month now. so go figure microsoft is slow to do anything.

    Was this answer helpful?

    10 people found this answer helpful.
    0 comments No comments