Posts

Showing posts from February, 2011

WSUS server displays its IPv6 address in the consle

i set new server running server 2008 r2 foundation. installed wsus , working fine. i've run i've not run before. wsus server displaying it's ipv6 address in wsus console instead of ipv4 address. didn't different in setting server or wsus. how console display server's ipv4 address? disabling ipv6 not option because i've been warned many times not 2008 r2.. jonathan i set new server running server 2008 r2 foundation. installed wsus , working fine. i've run i've not run before. wsus server displaying it's ipv6 address in wsus console instead of ipv4 address. this natural artifact of installing wsus on win2008r2. how console display server's ipv4 address? disabling ipv6 not option because i've been warned many times not 2008 r2.. not sure warnings, disabling ipv6 how achieve stated objective. unless you're using ipv6, disabling should insignificant. have x86 wsus installed on win2008sp2 x86 and disabled ipv6 day put on

Extended Downtime for Windows Server 2003 AD

hi, i need find out if there issues or problems caused shutting down domain controllers in organisation while mass move of servers new server room accross road.  the maximum down time worst case scenario 48 hours.  if servers , domain controllers shut down @ same soft of time , brought , similar time 48 hours later, there major issues caused down time? thanks andy no - there shouldn't issues. they'll fine. i'd take extra-time ensure cabling , addressing correct connections between dcs , running @ new location replication , stuff runs smoothly again. also -- i'd check dcs have fsmo roles configured.. can with netdom query fsmo and boot dcs before other dcs. you need aware of fact clients won't able authenticate , access resources (exchange, file services, ..) during dc downtime. cheers, florian microsoft mvp - group policy -- blog: http://www.frickelsoft.net/blog Windows Server

Exchange 2010 - certificate issue

hi, have issue go daddy issued certificate exchange 2010 server, server called: exch2010.company.local. certificate has following subject alterneate names: webmail.company.co.uk, legacy.comapny.co.uk, autodiscover.company.co.uk services of iis,pop,imap , smtp assigned new certificate, owa works expected. migrated outlook clients pop every time launch outlook stating certificate name different server name [i.e. webmail.company.co.uk not exch2010.company.local]. go daddy can add additional name of: exch2010.company.local, revoking current certificate , issuing new 1 [same thumbprint] however can import new certificate [via mmc | certificates | local computer | personal | certificates] on existing one? concerned original cert request had 3 names , cert contain 4 [or certificate not care?] did start query in exchange 2010 secure messaging asked post in "security" when asking certificate questions. thanks, fizzmo   this because certificate san extension don

70-643 Training kit

hi, don't know if right forum try. im reading training kit exam 70-643 , in chapter 1 lesson 2 review , question 2 asks following: you want use wds deploy windows vista rtm 50 pxe-enabled client computers. have therfore installed wds role , performed following configuration tasks: a. created path/remoteinstall folder on disk volume formatted using fat32 b. configured pxe server initial settings allow both known , unknown client computers. c. added boot.wim file path/sources folder of windows vista rtm media image store. d. added install.wim file path/sources folder of windows vista rtm media image store. my answer question c, when in aswers correct answer , c. this has wrong!! correct? patrik hi,   i think incorrect because volume should created in ntfs instead of fat32. need configure security permissions on , subfolders.   for mcitp or related trainings, suggest discussing them in our training , certification forum.   http://social.microsoft.com/f

Do i need to be a technology expert in order to secure it?

hello everyone, i received offer 1 of top oil & gas employers in gulf region. responsible server & desktop systems hardening, network security hardnening, , other security related tasks. 1 of critical server systems going harden exchange 2010 server. don't have experience in exchange except basic installation , creating couple of mailbox-enabled users. question is, need know how e-mail system works in order secure it? mean job going pure security job , not configure smtp, pop3, connectors,..etc. same applies other technologies, example, need know how lync, hyper-v, system center servers work first prior securing them? appreciate prompt response. hi david, probably basic understanding of exchange databases, exchange services, exchange certficates, monitoring queues, backing databases, restoring db enought think. there alot hyper-v , best practice practically. Windows Server

Is there any way to change the Windows Server 2012 Essentials SSL\TLS cert from powershell?

Image
is there way change windows server 2012 essentials ssl\tls cert powershell? i thinking using lets encrypt automate whole process have no idea how change certificate. ie same using following dialog: stream videos windows server 2012 essentials windows phone 8 -> http://goo.gl/8tc04o hi, i did research requirement cannot find powershell/script solution complete task. if need regarding powershell/scripting, can seek in our powershell/scripting forum: the official scripting guys forum https://social.technet.microsoft.com/forums/windowsserver/en-us/home?forum=itcg&filter=alltypes&sort=lastpostdesc windows powershell forum https://social.technet.microsoft.com/forums/windowsserver/en-us/home?forum=winserverpowershell the reason why recommend posting appropriately qualified pool of respondents, , other partners read forums regularly can either share knowledge or learn interaction us.  thank understanding. best regards, alvin wang please re

Seagate external hard disk RAW file system error

have ever got raw file system problem seagate external hard disk? in fact, couple days ago, encountered problem , asked format before accessing inside. however, last week, had transferred many videos, files , pictures of favorite animated satires hard disk , had not found time upload them online storage. don’t want search , gather these stuffs 1 one again. have way me rescue them drive? have format disk fix raw problem? answer here appreciated!  have restored lost drive data success? if not, may try ways: step1 . add no more stuff on seagate external hard drive , doing nothing else drive. step2 . insert computer , download raw drive data recovery software rescue back. step3 . restore wanted data , transfer them storage device. read more detailed steps of data recovery here: http://www.ucfix.com/data-recovery/seagate-external-disk-raw-file-system-data-recovery.html note : make hard drive data backups on. 

ADCS Web Enrollment for Non-Windows Clients

is there way configure adcs web enrollment so not rely on activex generate private key , csr? i've seen certificate authorities issue pfx bundle through custom web enrollment sites , to know if possible our macintosh , linux clients can register certificates. it works fine if not doing advanced requests need use drop-down lists. we developing mac enrollment client in next few months use cep/ces services windows server 2008 r2. for now, long requesting certificates signing certs no key archival, can add certificates follows (also publish user cert: modify certrqpt.inc file follows: 1) define display text web page   const l_usertemplatecert_text="user certificate" 'note: should match localized name of 'user' template , certrqma.asp's localized string l_templatecert_text change (or add line)   const l_macauthtemplatecert_text="mac authentication certificate" 2) define table of entries manual requests. default.   rgavailreqtypes

KMS Server Remaining App rearm count -1. What does -1 means? Is this a problem?

Image
hi, installed new kms server on new windows 2012 server.  we used have 1 in windows 2008.  i have no problem activating office 2010. that's use kms for.  number incrementing ok.  i test new machine, , activates fine. question is:  when slmgr.vbs /dlv bfe7a195-4f8f-4f0b-a622-cf13c7d16864 on kms server to  check count level  i remaining app rearm count -1,  sku  rearm count -1 mean?  is problem? thanks! it's normal/expected. it's not problem. you can't rearm kmshost. (why ever need such thing anyway??) don [doesn't work msft, , they're glad ;] Windows Server  >  Windows Server General Forum

Connection Refused in Remote Desktop on IOS Yosemite

i no longer able connect remote desktop ios.  i able open pc located on same network.  however need able connect through internet. when use original ip address in ios app, work long on same network.  i have forwarded port in router local address router address , ios app not longer connect host pc. what needs occur make possible? hi matt, firstly through remote connection internet need have rd port (3389) need open @ our server side connection port. might possible router has not been able connect external connection. please make sure rdp port has forwarded through router become connection point. check there no firewall or antivirus blockage related setting provide connection internet. can ping server outside network other system? try please directly check newly ip address have assigned , see whether can make successful connection. can more information beneath article. remote desktop client on mac: faq http://technet.microsoft.com/en-us/library/dn473006.aspx h

SQL Server Setup on Hyper-v

two questions: 1. if have primary , secondary server i'd enable replication on, looks have setup active directory can use http. please confirm.   2. scenario follows.  have server acts file server, domain controller, , sql server.  configured 16gm ram.  has c: drive set on raid1 partition, d: (data drive) setup on raid 10 partition has sql data files, , l:drive setup on raid 10 partition has user files , sql log files.      trying figure out how set server virtual server.  use 1 large virtual drive os , data or should creating different drives?     advice or direction appreciated two questions: 1. if have primary , secondary server i'd enable replication on, looks have setup active directory can use http. please confirm.   2. scenario follows.  have server acts file server, domain controller, , sql server.  configured 16gm ram.  has c: drive set on raid1 partition, d: (data drive) setup on raid 10 partition has sql dat

Restaurar el sistema operativo windows server a un estado anterior

buen dia, quisiera saber si en windows server 2008 standar puedo utilizar algo parecido al restaurar sistema de windows 7 o xp, sucede que instala la consola del antivirus de avast y raiz de esto se genero un problema, la conexion con internet es intermitente, ya revisamos con el ips y directamente del modem no hay problema de conexion, el problema es en el servidor que pierde la conexion con el servidor dns (el servidor es el mismo dns) y por consiguiente los equipos clientes no salen internet. ya desinstale la consola pero sigue igual, reinicie en modo prueba de fallos, desactive el firewall, pero la conexion sigue lo mismo se pierde la conexion con el dns. el servidor tiene los siguientes servicios, proxy, dns, controlador de dominio, file server.... la conexión sirve por un momento, y se cae ....  en el centro de redes y recursos compartidos muestra identificando red !! cuando hago ping www.google.com -t, funciona por un momento y despues sale host inaccesible o error g

Can I specify alternative port for TS gateway server

hi, incoming https not allowed home , have use alternative port. possible specifiy alternative port in rdp client gateway server address? it's impossible via gui hoped there option via manually editing rdp file? thanks, g no, gateway server listens on port 443 , not possible specify alternate port number.   thanks, vikash   Windows Server  >  Remote Desktop Services (Terminal Services)

SBS 2008 R2: "access denied" when trying to add some network printers

we have brand new sbs 2008 r2 server , trying add company's ricoh mp 4500 multifunction printer default printer. first problem ricoh not listed "printer" in network listing, instead seen "other devices". second problem when try add via control panel wizard ->printers->"add printer"->"the printer want isn't listed"->"add printer using tcp/ip address or hostname"-> using ip address returns "access denied". same response hp laserjet p2015dn, hp 2430tn, , few other printers on network, too. but, able add hp 2025n no problem. no other pc or server in our network has access problems them. i can add ricoh shared printer via computer on network, , works direct printing, our erp printing server software(liason messenger) returns errors in configuration. my questions are: 1) why not seen printer in network listing? because multi-function device? 2) there way add printer through different method? 3)

PowerShell List

hello everyone, i'm trying list vms in scvmm i'm using get-vm -vmmserver vmm01.mydomain.tld | export-csv c:\listvm.csv but returns info each vm, return properties want, way (that know) properties using: get-vm -vmmserver vmm01.mydomain.tld | format-list -property name, owner, description, operatingsystem, cpucount, memory, virtualizationplatform, hostname, status but if add get-vm -vmmserver vmm01.mydomain.tld | format-list -property name, owner, description, operatingsystem, cpucount, memory, virtualizationplatform, hostname, status | export-csv c:\listvm.csv now have mess... any way working nice , clean? thank you ok, found solution get-vm -vmmserver vmm01.mydomain.tld | select name, owner, description, operatingsystem, cpucount, memory, virtualizationplatform, hostname, status | export-csv c:\listvm.csv thank you. Windows Server  > 

Restore deleted items (recover section) of another user to a specific folder by powershell command

Image
hello i have windows 8 @ laptop , installed powershell required. i need command restore emails @ recover section of deleted items of user specific folder. i tried read couldn't find command that. knows exact command? thx in advance. hi, if using exchange, hope below blog helpful: powershell: script recover deleted items in mailbox http://blogs.msdn.com/b/emeamsgdev/archive/2012/04/27/powershell-script-to-recover-all-deleted-items-in-a-mailbox.aspx another similar thread: http://serverfault.com/questions/383426/powershell-undelete-messages-removed-by-recipient-policy regards, yan li cataleya li technet community support Windows Server  >  Windows PowerShell

Need help with PS Script to add Computers to Groups based on Computer Description

hi all, i'm looking alternative way write script add computer matching filter, adding computer based on it's description, security group. computers start ws being filtered. i'd grab ad description field , add computer ad group based on description. heres have far , works, if statement nesting nasty. in advance! import-module activedirectory add-pssnapin quest.activeroles.admanagement -ea silentlycontinue $erroractionpreference="silentlycontinue" $workstations = get-adcomputer -filter {(name -like "ws*")} -properties description | select-object name, description | sort-object name foreach ($workstation in $workstations){ if ($workstation.description -like "5icu-rmc-5"){add-adprincipalgroupmembership -identity ($workstation.name + "$") -memberof "sg.5icu.rmc"} elseif ($workstation.description -like "mhu-adlt-rmc2"){add-adprincipalgroupmembership -identity ($workstation.name + "$") -memberof "sg.m

Windows cannot find C:\Users\%username%\Local\Temp\Low

hi all, i have rds environment folders redirected. but when user wants save file windows reports dialog saying "windows cannot find c:\users\%username%\local\temp\low". at same time users not able print - ie in protected mode saves temp folder before printing. when check path - none of users have local folder under c:\users\%username% do of guys have idea how make automatically create folder, or redirect properly? thank guys. //potestas microsoft: mcp, mcts, mcitp: sa, mcitp: ea || ciw: associate, security professional || comptia: a+, server+, linux+ || citrix: cca on xenapp || hp: asp, asp:smb || astaro: aca, ace i ran same issue.  way found fix issue have logon script create folder , set correct permissions.  here vbs code used: set objfilesys = createobject( "scripting.filesystemobject" ) set objwshshell = createobject( "wscript.shell" ) if not objfilesys.folderexists(objwshshell.expandenvironmentstrings("%temp%") &&quo

SSTP VPN Has Packed up.

hi again. at point in past have had a windows 2008 server running sstp vpn gateway. then after working, added ipsec/l2tp functionality same server. now, several weeks later, go test sstp froma brace of new windows machiens , get very misleading error messages on client when trying connect server, nothing on server itself. the error i'm getting is: "the specified network name no longer available".  ambiguous, , wrong same computer can connect using l2tp/ipsec fine. can provide assistance debugging or resolving matter? thanks in advance. martin christopher hi again. i've jsut demolished domain, rebuilt teh ca scratch, re-issued certificates, , re-joined server domain, reinstalled rras and... still getting same errors.  client 2 errors.  1. rasclient error code -2147024832 2. rassstp no error code stating: "the initial secure socket tunneling protocol request not sucessfully sent server.  can due network connectivity issues or certificate (trust) issues.  detaile

Need help with Windows Server 2008 R2 security Updates

:backstory: i in ccdc @ ivy tech community college , responsible managing windows server 2008 r2 build our active directory. i swamped research need prepare competition. :question: i trying locate critical security updates , realize may not need of them. issue have limited bandwidth work , cannot use windows update latest security updates , cannot take in software or electronic devices means cannot pre-download aid in competition. cannot download isn't available public nor can use file hosting sites disqualified. my question simple.... can point me script can intelligently identify security updates service pack 1 , single sources not have download entire service pack. said take bandwidth , have considerate of fellow teammates going doing updates well. the script has relatively easy find , available on internet , not require online subscription or account access? thank help! for security updates the tool use purpose microsoft baseline security a

Can't communicate with RRAS VPN clients

hello, i stumped issue i'm having in rras.  i've setup successful vpn server using l2tp.  network setup contains few different subnets: 172.16.2.0/24 - servers 172.16.3.0/24 - wired clients 172.16.4.0/24 - wireless clients i have setup rras use static pool of 172.16.5.150 - 172.16.5.159.  ip address of rras server 172.16.2.85.  internal address of rras 172.16.5.150.  problem is, lan clients cannot communicate internal address of rras, or vpn clients.  example, if vpn client connects, , given 172.16.5.153 address, absolutely no lan clients (servers, wired, wireless,e tc) ping 172.16.5.150 or 172.16.5.153.  times out.  have ipv4 routing enabled.  also, in registry have ipenablerouter set 1.  have checked everything.  in main cisco router, have added: ip route 172.16.5.0 255.255.255.0 172.16.2.85 i have played firewall settings on both clients , rras server.  don't know else can do.  i've searched forum after forum, , @ dead end.  basically....if vpn clie

TCP/IP Settings for DC

i've transitioned 2003r2 forest 2008r2 adprep successfully.  added new 2008r2 dc/dns , demoted old 2003r2 server. before dcpromo, set ipv4 address static address didn't make changes to ipv6.  dcpromo went fine... my question also need set static ip ipv6 or ok ipv4 address? nslookup , other name resolutions seem working fine.  dcdiag shows no issues. thanks. probably not yet. article may help. http://blogs.msdn.com/mthree/archive/2009/03/27/ipv6-032709.aspx regards, dave patrick .... microsoft certified professional microsoft mvp [windows] Windows Server  >  Setup Deployment

Wserver 2008 Printing problem

kinda hard describe issue. have offices both database , print server, people 3 different cities access both services. network has been years, have been @ company couple of months. so, did not activated printers, couple. print server intel xeon x3430 windows server 2008 standard service pack 2, 64 bits. problem spooler crashes , no one/several users cant print until service rebooted (on configuration set autorestart if fails, doesnt it). once restarted, clients can print, except few, have common history of being unable print regularly since forever. (3 samsungs ml-2160) 1 of users informing me when printing (around 1 page every 4-5 minutes, dont mean printer slow, thats normal rate of sending documents print) terminal service gets stuck time after 20 or minutes of use, ts freeze around 1 minute 10 or so, varies.. after that, ts back, printer wont appear online, appears offline ghost printer.  unplug-plug wont thing. installed printer personally, native os c

Microsoft Planning & Toolkit Result Question (Server 2003 - 2008 Upgrade)

over weekend ran microsoft planning , assessment toolkit on our fileserver preparing perform upgrade server 2003 enterprise r2 server 2008 enterprise r2. however, did not go ahead upgrade message appeared stating following "number of devices sql server cannot placed host = 1" our network running stable, did not want go ahead upgrade in case of issues affect working week. confirm whether message stating serious or whether upgrade should go ahead planned no further actions required? and has wsus? lawrence garvin, m.s., mcitp:ea, mcdba, mcsa microsoft mvp - software distribution (2005-2012) mvp profile: http://mvp.support.microsoft.com/profile/lawrence.garvin Windows Server  >  WSUS

Move Folder Redirection to Users Share

in windows server 2012 r2 essentials, when enable folder redirection, wse group policy folder redirection gpo created server enables folder redirection \\server\folder redirection\%username% path. works okay, path not exposed via remote access website. what better have folders redirected \\server\users\%username% folder folder available via remote access website. has here changed path folder redirection on servers users path accessible via web interface or know of issues occur if moved? i've checked default permissions on users share , although differs folder redirection share, permissions used prevent users accessing each others content , grant owner user full control of own content. richard green | mcsa 2012, mcse 2003, mcts desktop virtualization, vcp5-dv http://richardjgreen.net -->has here changed path folder redirection on servers users path accessible via web interface or know of issues occur if moved? seems no... on sbs 2011, it's possible cust

LDAPS from a remote server (non-trusted)

hello everyone, we using software platform (citrix xenmobile), allows use ldap authenticate web console. we can setup ldaps, prefer, requires certificate import. we have internal ca not accessible externally. is normal/standard setup external path our internal ca, configure our ca use external fqdn in crl, issue certificates external clients? or security hole? i believe our ca standalone internal ca signs our internal ad domain, , @ moment using internal fqdn crl. this easier using internal ca: how enable ldap on ssl third-party certification authority http://support.microsoft.com/kb/321051/en-us Windows Server  >  Security

5 sites and 1 datacentre - will 1 DC in each site be enough

hi everyone, just want ask how other people doing , see if complete no go!! title says have 5 office sites , 1 data centre. have 2 dc's in datacentre , 2 dc's in each office site. each office site connected in hub , spoke network datacentre minimum 50mbps lines. i looking @ upgrading our domain controllers windows server 2012 r2 , in same instance playing thought of removing 1 dc each office site. still keep 2 in datacentre. on client side use dhcp point local dns first , different office secondary dns server. i going view if local dc down office available , 50 , 100 mbps mpls connectivity between sites should enough not noticing long logon delays. any advice ? regards ronnie.jorgensen systems engineer my blog hiya, it depends on size of site(number of users). if not looking @ thousands of users per site, should fine 1 dc @ site. multiple dc's primarily; 1: fault tolerance, 2: load of users. as domain has multiple dc's fault tolerance fine. if

German Office 2010 hyphentation error after Office 2010 Service Pack 2

hello everybody, office 2010 service pack 2 x86 on windows server 2008 r2 terminal server displays error message "c:\program files\microsoft office\office14\proof\mshy7ge.lex für deutsch (deutschland) kann von word nicht geöffnet werden." (translated in own words: "word cannot open c:\program files\microsoft office\office14\proof\mshy7ge.lex german (germany)." this works fine when logon administrator, fails normal user. however, process monitor trace shows word open file without error , creates memory mapped file it. especially, there no "access denied" error in process monitor log. the issue has startet appearing after office 2010 service pack 2 had been rolled out wsus. does have clue going on here? in advance. best regards, stefan falk best regards, stefan falk hello everybody, thanks tipps. problem solved, root cause totally different expected. couple of .lex files had length of 0 (zero!) bytes. after repairing office, not of th

Enabling Password Complexity - when will it take effect?

hello, we support on 5000 users , wanting turn on password complexity requirements in gpo. i have found posting related this: http://social.technet.microsoft.com/forums/en-us/winservergp/thread/77caac39-4207-44d3-8da9-7f68567ce02f however, see documented microsoft if turned feature on, not immeditatly affect these 5000 users immediately, when passwords due change.  can here? alan   > however, see documented microsoft > if turned feature on, not immeditatly > affect these 5000 users immediately, when passwords due > change.  can here?   http://technet.microsoft.com/en-us/library/cc875814.aspx   "these complexity requirements enforced upon password change or creation of new passwords."     no not evil, if know doing: or bad gpos? wenn meine antwort hilfreich war, freue ich mich über eine bewertung! if answer helpful, i'm glad rating! Windows Serv

Cortana disabled in build 10166

hello, i had fresh install of windows 10 pro build 10161 (from iso files). during installation i enabled authentication against our windows azure active directory service (which provided our office 365 e1 subscription). everything worked , cortana enabled. during weekend, pc has been updated build 10166 (i on fast ring), , noticed cortana disabled. in settings can not enable option grayed , mentioned : "cortana disabled enterprise policy" but there not enterprise policy in our windows azure ad service... how can re-enable cortana ? thanks help antoine. i have exact same issue. frustrating short before official release of os. Windows 10 Insider Preview  >  Windows 10 Insider Preview Setup and Installation

Goup Polacy

Image
hi, i have windows server 2003, i need implemented in group policy in domain my question is,i need set screen saver in server 2003 , reflected in client systems kindly me how can able set these policy regards audi hello reddy, i have not tested forcing screen saver in windows 2003 active directory environment can refer link below: set default forced screen saver in group policy – logon.scr in windows 7 , window xp regards. mahdi tehrani   |     |   www.mahditehrani.ir please click on propose answer or mark post , helpful other people. posting provided as-is no warranties, , confers no rights. how query members of 'local administrators' group in computers? Windows Server  >  Group Policy

Subscriptions Runtime Status - access denied

i've been troubleshooting access denied problem day.  i've gone on settings , recomendations , nothing worked.  accidentally, i used different setting "event delivery optimization" , started working. normal setting works; minimize latency fails access denied errors.  understand why? hi,   minimize latency option ensures events delivered minimal delay. needs higher bandwidth normal option. if bandwidth limitation reached, may cause errors.   normal option appropriate choice unless need tighter control on bandwidth usage or need forwarded events delivered possible.   regards, bruce Windows Server  >  Management

Importing ECC private keys is unsupported under Windows 2008

hi, i'm working on open source implementation of jwt - signed token format use oauth2 - , have come unstuck trying implement elliptic curve message signing cryptography next generation apis.  i able generate ecdsa key pairs, unable import private keys on windows 2008 machines. doubly odd because able generate persistent keys, means key storage must supported. able import ecdsa public keys: private key blobs affected. i *am* able import private key pairs under windows 7, , use them validating signatures. can tell me if there workaround, or @ least give me sensible reason why key import not supported? i include code snippet reproduces issue   class program     {         static void main(string[] args)         {             var p = new cngkeycreationparameters { exportpolicy = cngexportpolicies.allowplaintextexport };             var originalkey = cngkey.create(cngalgorithm.ecdsap256, null, p);             // cngkeyblobformat.eccpublicblob *is* supporte

nested query based distribution groups?

i've been working on creating query based distribution groups our organization. i've created dynamic groups users ous. we have number of locations, multiple divisions spread amongst them. my first groups set like: division1userslocation1 , division2userslocation1 , division1userslocation2 , etc, etc. i wanted create "normal" distribution groups contained subsets of these dynamic groups. allusers@locations1 , allusers@division1 , etc. all going until went add the query-based distro group. in "select users , groups" dialog unable search of these query-based groups. if add regular group or user searching returned normaly? is not supported? thanks -ryan unless changed, no sorry, adding query based distribution group non-query based distribution group not supported. unless end result requirement security group in order apply permissions, can create query group search filter global or universal groups want in group. ace ace fekay

DNS,CNAME question...

i have sbs 2008 server name sbsserver01. want add alias server short sbs01 or s01. add cname (sbs01) in dns server. when ping sbs01 reply. when type sbs01 in ie iis default web page. but when type \\sbs01\ in explorer no results, computer name can't found. shall make work? please give me tip... wrong! no not solution. the real solution - http://support.microsoft.com/kb/281308/en-us Windows Server  >  Directory Services

How do I install programs if I'm not the administrator ?

hello everyone i have server ( window server 2008 r2 ) , 40 computers. upgrated dc ( domain controller) , 40 computer joined dc. i created 40 user each of computer ex: computer 1 -  name: may01  have user :m01 on computer 1 . when install anysoftware have log on admin. when log on user : m01 can't install software. why ? how install programs if i'm not administrator ? the user(s) have local admin can install software. domain admins have right, normal domain users not. an example how add domain users/groups local admin can found here: https://social.technet.microsoft.com/wiki/contents/articles/7833.how-to-make-a-domain-user-the-local-administrator-for-all-pcs.aspx keep in mind security risk however, sure want them able install software rather doply domain admin or via solution. Windows Server  > 

Word tricks

i opened word file,made changes,saved , closed file. how view changes made next time open same file. enable track changes feature, example clicking ctrl+shift+e. more on track changes, see http://www.shaunakelly.com/word/sharing/howtrackchangesworks.html . stefan blom, microsoft word mvp Microsoft Office  >  Word IT Pro Discussions

0x8007007e (win32/http: 126 ERROR_MOD_NOT_FOUND): certadm.dll

hi, i have issue in windows 2012 r2 subordinate ca if run command example certutil -getkey serial number outputblob , command , work see errors on output like: 0x8007007e (win32/http: 126 error_mod_not_found): certadm.dll 0x8007007e (win32/http: 126 error_mod_not_found): certenroll.dll now if run same command client machine not see such errors, suspect 2 files: certadm.dll , certenroll.dll are corrupted on ca, how can replace them healthy files copied from windows 10 machine? tried copy , replace did not allow me although admin solved! once deleted the registry key "debug" value 0xffffffff located in ca configuration in below path, not receive more these errors in output: hklm/system/cu rrentcontrolset/services/certsvc/configuration/ ca server name Windows Server  >  Se

Event ID 502 Access is Denied

i have 2 users had there work laptops stolen.  i gave them replacement laptops , set joined them domain using windows connector software(http://server-name/connect/).  they have windows 7 laptops , connecting 2012 r2 server.  after computer restarts , sign in laptop un , passwords, desktop not load.  there notification being on temporary profile.  this has never happened before.  below event log on client computer: log name:      application source:        microsoft-windows-folder redirection date:          1/7/2015 12:10:43 pm event id:      502 task category: none level:         error keywords:       user:          server\username computer:      server-19.server.local description: failed apply policy , redirect folder "desktop" "\\server-name\folder redirection\username\desktop".  redirection options=0x80001021.  the following error occurred: "can not create folder "\\server-name\folder redirection\username\desktop"