Posts

Showing posts from May, 2013

Shadow Copies on deployed file cluster

can 1 share how to enable shadow copies on deployed cluster.   scenario have few shared folders on cluster volume. want enable shadow copies volume out loosing data.   thanks in advance help.   rrv if go windows explorer, , right click on volume => properties, there tab shadow copy. can configure volume shadow copy there. hth. Windows Server  >  File Services and Storage

obtain S/MIME certificate from Enterprise CA

hello all! i have question: how can obtain certificate non-domain, non-exchange user secure e-mail my enterprise certification authority? i want secure e-mail between domain users (exchange 2007) and external users. want provide them certificates enterprise ca. anton   hi,   we can submit user certificate request via web . please note, need set certification authority web enrollment support on ca first.   after certificates, can use @ will. detailed operations exchange configuration, suggest initial new post in exchange forum better support.   there more information reference:   how obtain certificate using enterprise ca in operations manager http://technet.microsoft.com/en-us/library/bb735413.aspx   obtaining certificates ops mgr via command line or script http://blogs.technet.com/momteam/archive/2008/06/02/obtaining-certificates-for-ops-mgr.aspx   thanks. Windows Server

Managing distribution groups with DirSync and Office 365

Image
hi we have office365 , using dirsync. we've set collection of distribution groups. i've managed configure moderation etc changing attributes in ad of groups required. we've set msexchrequireauthtosendto=true ensure external users cannot send email these groups. however, in circumstances need ensure members of distribution group can send email it... not within organisation. possible? attribute modify implement this? i haven't been able find solution far ideas appreciated. shane however, in circumstances need ensure members of distribution group can send email it... not within organisation. possible? attribute modify implement this? i haven't been able find solution far ideas appreciated. from exchange , ad perspective done using 'recipient filtering' in exchange can define accept emails selected groups or users. believe can implement in office 365. take @ below article. might give general view not complete solution, hope helps.

HyperV server 2008 R2 - enabling/managing clustering

i have reviewed following article:   http://social.technet.microsoft.com/forums/en/winserverhyperv/thread/32eac569-f1e6-4415-b552-1c42e3cab865?prof=required&ppud=4     after reading i'm still not clear need enable , manage clustering on hyperv server 2008 r2.  will 2008 r2 standard 2008 r2 enterprise far clustering of hyperv servers? hi, you cannot failover cluster using windows server 2008 r2 standard edition. no failover cluster roles available on standard edition operating system. need use either enterprise or datacenter edition. pls refer http://www.microsoft.com/windowsserver2008/en/us/r2-compare-specs.aspx laiys Windows Server  >  Hyper-V

Regarding Data type syntax

hi all, i want store floating (decimal points) values in active directory on can perform search filter. there datatype  syntax provide support store values? if know how can achieve functionality? active directory not have syntax floating point numbers. closest syntax numericstring. see reference: http://msdn.microsoft.com/en-us/library/system.directoryservices.activedirectory.activedirectorysyntax(v=vs.110).aspx i not know how numericstring differs directorystring, used string attributes. also see: http://msdn.microsoft.com/en-us/library/ms684439(v=vs.85).aspx richard mueller - mvp directory services Windows Server  >  Directory Services

Start Windows Services

hello all, newbie here. i trying write powershell script start number of windows services , notify me status of services. here steps , descriptions: 1) start multiple windows services (service1, service2, service3, service4) case 1) if start , enter "running" status, notify me via email status of above services in format: service1 - running service2 - running service3 - running service4 - running case2 ) if or of services fail start or throw errors, notify me via email status/errors of above services in format: service1 - running service2 - error (whatever error powershell gets) service3 - error service4 - stopped ================== i can status of each of service doing: get-service -name "service1","service2","service3","service4" which return: status,name,displayname stopped,service1,service1 stopped,service2,service2 running,service3,service3 running,service3,service3 i can start se

Windows 2003 Storage Server and SIS problem

hello, i need issue. run grovel in foreground mode froce full scan volume. after few hours got error in eventlog: grovel (3396) version store instance (0) has reached maximum size of 2mb. long-running transaction preventing cleanup of version store , causing build in size. updates rejected until long-running transaction has been committed or rolled back. possible long-running transaction:  sessionid: 0x0000000012c90800  session-context: 0x00000000  session-context threadid: 0x00000000000009c0  cleanup: 1 , database.mdb completly cleared. rerun full scan (sisadmin /r f:) error again. how fix problem ? regards, radek ambrozkiewicz hi, this issue occurs because ris groveler service tries perform cleanup work on transaction large process. hotfix described in "resolution" section breaks single large transaction several smaller transactions. "esent" , "groveler" events logged in application log when use remote installation

Problem with Windows update server

Image
i have à problem when installing wsus on win 2003. connection server not established. have proxy firewell internet. if problem caused proxy, please, how may solve problem. thanks! hi, i can't see pics.if have proxy server, need configure proxy setting in option | update source , proxy server. enter fqdn name of server name,port number , check correct user credential. best regards, clarence please remember click “mark answer” on post helps you, , click “unmark answer” if marked post not answer question. can beneficial other community members reading thread. Windows Server  >  WSUS

Logon audit failure with 0xC0000064 (The account does not exist) when account exists!

hi microsoft we have issue on our server, there's audit trail every day keeps saying user login has failed server$ our dc. here log: an account failed log on. subject:     security id:        system     account name:        server$     account domain:        pcl     logon id:        0x3e7 logon type:            3 account logon failed:     security id:        null sid     account name:             account domain:         failure information:     failure reason:        unknown user name or bad password.     status:            0xc000006d     sub status:        0xc0000064 process information:     caller process id:    0x3cc     caller process name:    c:\windows\system32\lsass.exe network information:     workstation name:    server     source network address:    -     source port:        - detailed authentication information:     logon process:        schannel     authentication package:    kerberos     transited se

Can Photo Story 3 run in TS on Server 2008 R2

i running server 2008 r2 in hyper-v ncomputing's vspace application thin clients.  trying use photo story 3 , have been able application install, having issues when try preview story or record narration.  when trying preview message "photo story cannot start story preview."  have no problems when run program on windows 7 x64 hi,   you can force application running in compatibility mode users in windows server 2008. please refer following steps: 1.        right-click on application , point properties in sql server. open application properties. 2.        click compatibility tab. can find “ change settings users ”, click it. 3.        click run program in compatibility mode for: windows xp sp3…. select operating system installer package supported for, such windows xp (service pack 3). 4.        for privilege level, check run program administrator. 5.        click ok.   with manual installations, in order terminal services repl

invoke-sqlcmd not outputting result of select query

this driving me nuts, possibly make invoke-sqlcmd not output result of simple select statement ?  <# repli rowguid renum via bcp ############################ # must run @ subscriber # ############################ -extrait les donnees des tables xxl pour la replication, -zippe et envoye par bcp au subscriber -importe dans ds tables temp et update les rowguid des tables (join par pk ) historique 2013-02-05 mbear created #> ############################################## # update/check following vars before running # ############################################## $local_path = "d:\temp" ; # local path storing bcp files $dbn_pub ="arizona" #publisher dbname $dbn_sub = "arizona" ; # subscriber db name $script = "\\pp-sf1\devteam\dba\px428.replication\repli rowguid renum xxl\repli rowguid renum xxl.sql" $publisher = "srv-ocmr\rec1ocm" ; $xxl_tables = "supplier;journal;"#item_link;addres

certificate issue essenials 2012r2

Image
i tring create domain certifiacte in iis i going server certificates then create comain certificate on next page of gui but cant "select browse"  it gray out i have installed certificate services , config certificate what may problem? please :) thank alot http://titlerequired.com/2013/02/06/manually-creating-a-certificate-request-windows-server-essentials-sbs/ robert pearman sbs mvp itauthority.co.uk | title(required) facebook | twitter | linked in | google+ Windows Server  >  Windows Server 2012 Essentials

Secure LDAPS & Smartcard

hi, is there way of switching off mutual authentication ldaps on windows 2003 domain controller or on xp client? i have switched using a smartcard for logon , every ldaps session (from third party sso app) requesting pin. believe app still using kerberos authenticate session, not need mutual authentication , annoying pin request pop ups. thanks, dave hi,   according following article:   using ssl/tls http://msdn.microsoft.com/en-us/library/cc223502.aspx    “the dc request (but not require) client's certificate part of ssl/tls handshake [rfc2246]. if client presents valid certificate dc @ time, can used dc authenticate (bind) connection credentials represented certificate”, afraid expected behavior based on specification of rfc2246. thank understanding Windows Server  >  Director

HELP

hi guys,   im confused , need understand technology im hoping sum1 can please me.   ok if u implement ipsec hra nap , and clients not part of active directory domain how certificate???     hi,   thank post here.   yes, nap clients can members of active directory domain or can non-domain-joined computers. non-domain-joined computers, have manually request computer certificate ca through ca web enrollment page. steps on how use ca web enrollment page, please refer to:     using web enrollment support pages http://technet.microsoft.com/en-us/library/cc962073.aspx   appendix a: nap requirements http://technet.microsoft.com/en-us/library/dd125301(ws.10).aspx       Windows Server  >  Network Access Protection

Help with Conditional if then script

i new powershell. have written basic scripts use backup , restores of data local ftp server. first 4 lines of script follow. between lines 2 , 3 need conditional checks see if directory called \\192.168.0.1\backup\$name exists. if stops script running further , shows error saying directory exists. , if directory doesn't exist finish running rest of script. if can great. echo "please make sure outlook closed before continuing" $name = read-host "enter customers email address" new-item -path $("\\192.168.0.1\backup\"+$name+"\pstfiles") -itemtype directory -force new-item -path $("\\192.168.0.1\backup\"+$name+"\cdrive") -itemtype directory -force you need use test-path see if directory exists. test-path returns $true or $false result.. if(test-path 'my path' -eq $true){<code execute if condition true>} inspired heineken.

smigdeploy

i have server migration tools install on server 2012 , trying server 2008 different computer , net share successful cant file computer need done. when try c:\users\administrator\smigdeploy.exe not valid win32 application. hi, based on research, error “ .exe not valid win32 application” commonly caused by a damaged or corrupted installation file. please make sure smigdeploy.exe file use. i recommend brand new smigdeploy.exe sharing. here links below helpful you: not valid application ... http://social.technet.microsoft.com/forums/windows/en-us/5e328f41-1cff-4222-89b7-a1e7cee603c2/not-a-valid-application- .exe not valid win32 application http://en.kioskea.net/faq/1591-exe-is-not-a-valid-win32-application#file-system-corrupt please note: since web site not hosted microsoft, link may change without notice. microsoft not guarantee accuracy of information. if method above not fix problem, mr x mentioned, please refer microsoft windows server migration forum to more

RDGateway Clients connect to RDG server without checking whether RDG server's certificate has been revoked.

hi all about win 2008 r2 rdgateway, clients (os=win 2008 r2 )  connect rdg server without checking whether rdg server's certificate has been revoked. how can force rdgateway client check rdg server's certificate revocation ? thanks alot john, you need google first, ask question after google attempt. http://blogs.msdn.com/b/rds/archive/2011/04/11/how-to-enable-certificate-revocation-checking-on-a-remote-desktop-gateway-client.aspx brian Windows Server  >  Security

Client backup to Windows Server 2012 Essentials slow

i'm test-driving windows server 2012 essentials r2 installation, , primary intended use backup client pcs. i'm having issue initial client backup taking long time.  both client pc (windows 7 pro) , server connected gigabit, have plenty of available resources (ram, cpu, hard drive space).  nothing getting taxed or maxed out on either computer. i began backup of client pc (2.5 tb total) 9 hours ago, , i'm @ 3% now.  one thing interesting, though, client computer backups folder on server has grown 250 gb since time... which, doing math, make me think backup 10% done. network bandwidth usage tops out @ around 14% of 1 gbps.  regular file-copying on network pc server fast, though -- pretty maxes out 1 gbps network connection on both sides. things have tried: changing client backup destination storage space usb 3.0 external hard drive disabled smb signing (per http://support.exinda.com/topic/how-to-disable-smb-signing-on-windows-servers-to-improve-smb-performance)

Service pack 2 on Windows 2008 Domain controller issues?

good day, i have 10 windows 2008 (non-r2) dc's need update service pack 2.  i doing manual install, there issues this?  anything special needs done pre-req?  seems should pretty straight forward.  thanks in advance. straight forward far know, sp2 contain bug fixes adds. enfo zipper christoffer andersson – principal advisor http://blogs.chrisse.se - directory services blog Windows Server  >  Directory Services

Group-script and missing details

hi, used script  which useful. i'd add 2 new columns final result: - "hide group exchange addess lists" - if group hidden gal or not - e-mail address (default smtp address) - e-mail address of group found. how put these 2 parameters script or use result , put script? thnaks! hi,   as issue related scripting, suggest discussing in our msdn forum. best resource troubleshoot issue.   http://social.msdn.microsoft.com/forums/en/categories/   tim quan   Windows Server  >  Windows Server General Forum

VAMT 3.0 question - I have 60 clients online with microsoft office installed, tool only picks up 31, why?

all, i installed vamt 3.0 switch 1 of sister companies on mak keys. works great when scan windows installations, finds of clients. when try discover office on computers, 31 out of 60 clients showing there. need update keys on other 29. how can see why happening? clients in same subnet, same firewall rules , same ou in ad. can me? hi, firstly, please make sure network discovery enabled on each client. before adding computers, please ensure windows management instrumentation (wmi) firewall exception required vamt has been enabled on target computers. for more information, please refer links below: configure client computers how add , remove computers best regards, susie Windows Server  >  Windows Server General Forum

Connect Mac OS X 10.8 to Server 2003 R2

Image
what proper way connect mac os x 10.8 server 2003 r2? i've googled , tried. not working.  missing obvious.  can't hard or there issue 10.8? thanks george it's in security settings > local policies > security options > network security:  lan manager authentication level.  setting should help, know make work printer "scan folder" too.  mcp | mcts 70-236: exchange server 2007, configuring want follow me ?   |  blog: http://www.jabea.net  |  http://blogs.technet.com/b/wikininjas/ Windows Server  >  Windows Server General Forum

2003 Enterprise Shadow Copy Limitations

defining shadow copy (in computer management not dpm) limitation of versions kept available user? hello,   based on research, the limitation in number of shadow copies version per volume 64.   when shadow copies limitation reached, older versions of shadow copies deleted , cannot restored. there 64 shadow copies per volume can stored. when limit reached, oldest shadow copy deleted , cannot retrieved.   how shadow copies shared folders work http://technet.microsoft.com/en-us/library/cc775919.aspx hope can helpful. this posting provided "as is" no warranties, , confers no rights. Windows Server  >  File Services and Storage

College Student Laptop Decision

  im new forum , hi everyone.  studying , semester cover windows server 2008.  question is...what best run os.  should buy desktop or laptop?  there ad/disadvantage buying either?  brands , specs should being striving for?  budget around 750-800.  thx help! hi, it depends. general speaking, laptop same hardware configuration more expensive desktop. laptop portable, can take anywhere. desktop powerfull(most of time), , can add other devices such additonal network adapters, hard disks , etc. easily. by way, if want learn windows server 2008, run windows server 2008 operating system. Windows Server  >  Windows Server General Forum

Systems Administrator

  are there solutions issues? log name:       application source:         sidebyside date:           7/29/2011 10:18:00 am event id:       33 task category: none level:          error keywords:       classic user:           n/a computer:       c3patchtest2.c3po description: activation context generation failed "c:\windows\system32\conhost.exe". dependent assembly microsoft.windows.systemcompatible,processorarchitecture="amd64",publickeytoken="6595b64144ccf1df",type="win32",version="6.0.7600.16816" not found. please use sxstrace.exe detailed diagnosis. leonard edwards found somewhere else...   sidebyside errors typically caused current microsoft visual c++ version not being backward compatible application failed. event id 33 error message typically: activation context generation failed “program name”..please use sxstrace.exe detailed diagnosis. there other similar sidebyside errors same problem

urgent help: cluster name is not online

hi all, we have 1 hyper-v cluster 4 nodes(node , disk quorum): live migration; csv enabled after switched new network switch, now, cluster network name offline , can not bring online.  cluster ip online , quorum disk online too.  tried bring online , can not. how bring cluster name online? hi, so after replaced network switch cluster down. then not cluster issue hardware issue. check switch configurations if match old config. greetings, robert smit [mvp] http://robertsmit.wordpress.com/ “please click "vote helpful" if helpful , proposed answer” Windows Server  >  High Availability (Clustering)

Firewall GPO on Domain Controllers

hi, i going through security audit.  it kind of unexpected told particular lan wouldn't tested in audit. of course changed week before audit, tasked locking down domain quickly.  one thing think i'm starting regret applying firewall gpo domain controllers.  for won't go detail.  i removed firewall configuration after suspecting replication issues. 2 of 3 dcs looked fine, 1 having problem has 2 of fsmo roles. before noticed issue, added win2k8 server core environment, did necessary stuff update schema etc. in past few days started getting "rpc endpoint mapper errors" on 1 server. again in interest in trying keep short: when run netsh firewall netsh firewall>show opmode domain profile configuration: ------------------------------------------------------------------- operational mode = enable exception mode = enable standard profile configuration (current): -------------------------------------------------------------------

Add Win 2008 32-bit DC to a Win 2008 64-bit domain

hi, we have windows 64-bits dc, virtualized on hyper-v environment , add dc not virtualized; however, server have 3 years old , doesnt support 64 bits thinking on installing windows 2008 32 bits on server , promoting dc. i know ideally best solution buy new server , install windows 2008 64 bits dont have money in budget @ moment next best choice rebuild 1 of older servers dc. is possible? thanks help, rosa     hello, there no problem mixing os architectures in domain, can still use older machine if capable of windows server 2008. best regards meinolf weber disclaimer: posting provided "as is" no warranties or guarantees , , confers no rights. Windows Server  >  Windows Server General Forum

IPv6 router advertisement not configurable on Windows 2008 and 2008 R2 servers.

hello networking experts, i want configure windows server act publisher ipv6 domain prefix. according article configuring ipv6 windows vista  it should easy. if have choosen prefix  fd43:b2bc:bc95::/64 (generated based on computers mac address see  http://www.kame.net/~suz/gen-ula.html ). on server configured network this: netsh interface ipv6 add address interface="local area connection" address=fd43:b2bc:bc95::1 netsh interface ipv6 set interface interface="local area connection" advertise=enabled netsh interface ipv6 add route prefix=::/0 interface="local area connection" nexthop=:: publish=yes netsh interface ipv6 add route interface="local area connection" prefix=fd43:b2bc:bc95::/64 publish=yes on test machine work pretty well. if try adapt configuration to our domain have problem router advertising remains disabled. tried on domain server (no other role installed) , on other server role installed "network policy , access

TLS 1.2 and ECDSA with RD Gateway

hi all, i managed enable , use tls 1.2 , ecdsa certs normal, direct rdp connections. question is: can done rd gateway, too? can import ecdsa cert iis, can't choose rd gateway. says "cert not supported" on 2012r2. apparently, rsa certs can chosen rd gateway. so, how can use ecdsa cert rd gateway? thanks martin hi martin, please ensure certificate has met following requirements @ least: the certificate computer certificate. the certificate's intened purpose server authentication. the certificate has private key. more information you: rds: rd gateway must configured use ssl certificate signed trusted certification authority https://technet.microsoft.com/en-us/library/dd320345(v=ws.10).aspx best regards, amy please remember mark replies answers if , un-mark them if provide no help. if have feedback technet subscriber support, contact tnmff@microsoft.com. Windows Server

Direct Access with http to windows server 2003

dears, finally have finished implementing direct access succesfully most of my environment is windows server 2003, installing tcp/ip v6 on servers have iis installed some server works  and can access http but other servers not working direct access after install ipv6 i can ping direct access client , can't telnet port 80 can't browse them but other servers can browse them & telnet port 80 i have checked both have same configuration , have isatap adapter installed , have ip formula as 2002:5b93:bff7:1:0:5efe:ipv4  so missing ? it looks not creating tunnel servers . please advice how can check this thanks & regards,   hi,, are sure iis web sites listening on isatap interfaces. after, can use uag in order use dns64/nat64 protocol. avoid ipv6 deployment on windows 2003.     benoits - simple design http://danstoncloud.com/blogs/simplebydesign/default.aspx Windows Server

New RD Client - Universal Issue

so pc updated windows store version of rdp client. cannot connect number of servers previous version. connect, 'welcome' screen , disconnect , there wrong network. thing is, can remote in using old old rdp client (mstsc) , works fine. anyone know solution this? prefer windows 10 client gives me preview , tiled. hi, please check whether more clues can found under event viewer on both remote , local systems, terminal services related logs can found under: event viewer -> applications , services logs\ microsoft\ windows. best regards, amy please remember mark replies answers if , un-mark them if provide no help. if have feedback technet subscriber support, contact tnmff@microsoft.com. Windows Server  >  Remote Desktop clients

¿It is possible to change the quorum disk without recreating the cluster?

hello everyone, i have shared space array disk, disk have 2 partition see , share 2 nodes (ms cluster) read in somewhere microsoft recommends quorum disk have work in different disk not in same data partition. have quorum , data partition same disk in 2 partition. my question is: ¿if have disk available 2 nodes, can change quorum disk without recreate cluster again? ¿does have tried this? the os windows 2003 enterprise 32bits 2 nodes, configuration active-passive. array disk ds4800 connected via hba's. i hope guys understand im trying say. thanks. roberto.   hi, i haven't tried this.. but refernce below article : can change quorum disk without recreate cluster again? yes http://support.microsoft.com/kb/280353/en-us http://support.microsoft.com/kb/305793/en-us refer article step step: http://networkadminkb.com/kb/a12/how-to-change-the-quorum-disk-resource-in-mscs.aspx there tool called cluster server recovery utility (clusterrecovery.exe)to chan

Windows 2003 Active Directory doesn't work after reboot of all the DCs

hi all, have active directory based on windows server 2003. 2 dcs vms, running on vmware esx. recently, had shutdown vms, physically upgrade storage, among other things. however, when booted 2 dcs, ad isn't working anymore... dcs take long time boot (on "preparing network connections", take around 10 minutes), , can log in administrator account. if try other account, windows gives error, saying domain not available. machines have network connectivity, can ping , remote desktop them. after log in, checked services (dns, netlogon, kerberos, server, etc), , running. however, when go dns console, can't reach own server, says can't contact dns server (which machine itself). late , tired, weren't able think straight, bit clueless what's problem. tried restarting dcs few times, restart services, etc, no luck. event logs have couple of errors , warnings, related fact either dns down, or domain unavailable, , can't seem find event might point root

Forest & AD Domain Name Change

hi all, i have 1 on hands. created domain in uppercase, e.g. contoso.com. management wants me change lowercase, e.g. contoso.com. idea how out screwing ad completely? thanks, vincent presogna this might help: http://www.rebeladmin.com/2015/05/step-by-step-guide-to-rename-active-directory-domain-name/ does seem bit risky though sake of lowercase! Windows Server  >  Directory Services

Forest Trust

hi, i have created forest trust between 2 windows server 2008r2. here setup. forest1 bmw.com child domain us.bmw.com.forest2 bigbang.com. trying login credentials (which created on forest1) in forest2 dc , giving error "the logon method u r using not allowed on computer". there needs done locally like  secpol.msc on each severs.  note : have selected below options while creating forest trust. forest wide authentication,two way trust. please out.   thanks, venkatesh. if trying logon locally dc check these settings:   allow logon locally 1. run gpedit.msc. 2. expand windows settings\security settings\local policies 3. click on user rights assignment 4. ensure "allow log on locally" includes administrators, backup operators, domain users or users. Windows Server  > 

The Clients did not Synced with WSUS!

hi all, i have installed wsus  but there no client synced wsus server , found no computer in unassigned computer on wsus application did following deploy group policy redirect client wsus server , using port# 8530 ; enable automatic update , enable detection options , bypass proxy internal wsus server mentioned port therefore all mentioned policies applied (i checked rsop,msc) and  run below command line to detect updates ( wuauclt.exe /detectnow (client side) then got below error in windowsupdate.log , not found computer name in wsus side warning: send failed hr = 80072efd. 2012-08-11 17:55:59:606  500 14a0 misc warning: sendrequest failed hr = 80072efd. proxy list used: <(null)> bypass list used : <(null)> auth schemes used : <> 2012-08-11 17:55:59:606  500 14a0 misc warning: winhttp: sendrequestusingproxy failed < http://wsus:8530/selfupdate/wuident.cab >. error 0x80072efd 2012-08-11 17:55:59:606  500 14a0 misc warning: winhttp: sendrequest

user lockouts

i have frequent problems users accounts locked out after changing passwords. know users have set scheduled task or mapped drive or such. users quite bit of hot desking, possible tell pc or ip address locking account out can identify problem? below simple way check computer account getting locked 1. download microsoft lockout status tool below link   http://www.microsoft.com/en-us/download/details.aspx?id=15201 2. install on domain controller 3. put target name (user account getting locked) on target tab 4.it list out date/time , dc on account lock out events happening 5.check latest date , time , dc name,. login dc evet getting generated. 6.go security event------>search 644 (microsoft server 203) or 4740 (w2k8)----->open event 7.it list account information , computer name account gettng locked 8.login computer , check services or schduled task hope information helps regards, _prashant_ mcsa|mcitp sa|microsoft exchange 2003 blog - http://prashant198

adfs

hi, we planning implement adfs web application located on vendor's end. need know pre requisite , other requirements this. have domain 2003 currently.  please suggest , help. mcse certified as mx suggested better post in adfs forum for better assistance. http://social.msdn.microsoft.com/forums/en/geneva/ active directory port requirements http://blogs.technet.com/b/activedirectoryua/archive/2009/06/24/active-directory-port-requirements.aspx best regards, sandesh dubey. mcse|mcsa:messaging|mcts|mcitp:enterprise adminitrator | blog disclaimer: posting provided "as is" no warranties or guarantees , , confers no rights. Windows Server  >  Directory Services

undetect USB Drive on Windows 2008 R2 Server

dear , i attached ext. usb 2.0-300gb drive long time ago. functionable e: letter before. nowaday, find this usb drive no longer exist, 1- disk management cannot detect usb. so, no conflict letter drive problem.! 2- tested h/w usb ports, both workable. so, no h/w ports failure problem.! 3 - tested usb 2.0 hdd already., attach win7 pc. usb work. so, no h/w usb hdd failure problem.! 4- checked win08r2 registry, hkey_local_machine\system\currentcontrolset\services\usbstor , dword "3" already. and following steps still not work: 5. reboot server many time , detect in device manager again , again, no work! 6. try uninstall usb universal host controller , , reboot. auto re-install host ctrl drive again. find no work. still undect usb drive. what can now? german lam @hk hi german, we don’t need reboot server after editing in registry. you did following mistakes: not taken registry backup before editing reboot server after editing (which not required