Posts

Showing posts from March, 2014

Can I use Group Policy to remove KB 2823324

as may (or not) know, kb 2823324 ms pushed out couple of days ago, causing alot of system keep running chkdsk everytime turned on or rebooted. is possible uninstall patch using group policy? and if can detail steps expect flurry of helpdesk calls on monday. cheers reading on kb specified turns following resources: option 1: manually uninstall security update    1.in control panel, open programs, , click view installed updates.    2.select security update microsoft windows (kb2823324), , click uninstall uninstall security update. option 2: incorporate command line uninstall in custom script if multiple computers affected, , want run script remotely remove update, can use following command remove security update silently: wusa.exe /uninstall /kb:2823324 /quiet /norestart option 3: run removal script remotely using psexec if multiple computers affected, , want run script remotely remove update, can use following command remove security update silently: psexec

Brand new password fails to work

Image
i created word 2010 document copying text lync 2010 window (need save conversation). @ point of saving document, selected "general options" , applied open password.  first typed password in text file see typing. copied (ctrl-c) password text file , pasted (ctrl-v) in dialog box , in confirmation dialog box. i closed document , re-opened it, pasted password in dialog box , got dialog telling me password no good. i suppose serves me right not saving first in unprotected fashion i'd @ least have backup, that's hindsight. short of having grind document through brute-force hack, how recover document word 2010 has handily locked up? hi, we can use docrecrypt tool remove or reset password on password protected documents. to unlock document, open command line docrecrypt tool, , faster can say: docrecrypt -p <newpassword> -i <lockedfilename> -o <newfilename> for more information, please read following article: now can reset or remo

GPO's to Manage Windows 10 in WSE2012R2E ?

i need able create gpo lockdown new win10 stations, in particular, ms edge , windows store. i can't find relating on server 2012 r2 essentials. is update going rolled out support ? hi, administrative templates (.admx) windows 10: https://www.microsoft.com/en-us/download/details.aspx?id=48257 windows 10 group policy (.admx) templates available download: https://blogs.technet.microsoft.com/askds/2015/08/07/windows-10-group-policy-admx-templates-now-available-for-download/ best regards, eve wang please remember mark replies answers if , unmark them if provide no help. if have feedback technet support, contact tnmff@microsoft.com. Windows Server  >  Windows Server 2012 Essentials

Please help with VPN

hello, i have questions regarding company network doing work on , wondering if may of assistance. here basic rundown of architecture. there vmware esxi hypervisor several vm's running various servers. ill explain ones seem important issue. there ms windows server 2008r2 dc active directory and there is ms windows server 2008r2 terminal server. there remote location several users connect main office terminal server rdp client. questions begin. the remote location uses a cisco firewall/router (cant remember model) , main location uses same appliance. the user turns his/her machine on in morning and at windows desktop user is connected to the internet. these machines have only 3 basic functions, anti-virus application, cisco vpn client , rdp shortcut on desktop. i told users turned pc on ->clicked on vpn client -> put in password and establish tunnel. the user -> double clicks rdp client , logs terminal server. ready work. after going out visit 1 of remote

Unexpected Reboot in windows Server

hi, i having many windows server 2003 servers, on daily basis we receives server got rebooted unexpectedly. when check these situation, in server find 1 event 6008 says server got reboot unexpected on time. not find exact reason why server got unexpected reboot. it must there 1 reason, due application, or drivers, or memory or thing.. dont know how identify that. i recommended enable complete memory dump in servers. how view complete memory dump log?? any tools available?? will log provide cause of unexpected reason??? please assist me. thanks in advance  please remember click “mark answer” on post helps you, , click “unmark answer” if marked post not answer question. can beneficial other community members reading thread. chandru ct-hcl thanks chandru ct. mcitp hi chandru, 1. check whether server configured dump file or not? if so, check path , minidump file (file name can *.dmp). also thread you:  http://social.technet.microsoft.com/forums/en-us/winserverge

Folders and Files Ownership automatically changed. Unable to display the Owner - Windows 2012 R2 Fileserver

dear team, suddenly my file server folders , files permissions changed unable display current owner. there many files , folders if retake ownership , user level security . please find attached screenshot , hope better answer. hi, thanks post. is there 3rd part software installed recently? since many files affected, suspect if there's lock programs operation. please try booting safe mode , check again. if after that, still no clue. i'm afraid use  takeown assigne ownership administrators group , operation. in addition, if know how happened,  please also enable auditing. may know change folder next time. best regards, mary please remember mark replies answers if help. if have feedback technet subscriber support, contact tnmff@microsoft.com . Windows Server  >  F

Latest WSUS version for Server 2008R2 Enterprise?

hi all, i having issues downstreams sbs servers not synhronising master wsus on server 2008r2. of them come "error connecting datastore".  have gone through forums , tried every suggestion without luck. of server 2012 downstream servers working upstream 2008r2. my next step make sure upstream , sbs downstreams date ( currenlty on  3.2.7600.226). which latest version , can find update download? possible run wsus 6 on previous server version or compatable 2012? thanks! hi all, i having issues downstreams sbs servers not synhronising master wsus on server 2008r2. of them come "error connecting datastore".  have gone through forums , tried every suggestion without luck. of server 2012 downstream servers working upstream 2008r2. my next step make sure upstream , sbs downstreams date ( currenlty on  3.2.7600.226). which latest version , can find update download? possible run wsus 6 on previous server version or compatable 2012? thanks!

Windows 2008 R2 Failover Clusters with no shared storage

we have external print system our sap instance.  it's running on 64-bit windows 2008 r2.  uses local configuration , local mysql (for configuration). we want higher availability , starting work f5 try , failover (primary secondary) if determine primary isn't working properly. we have no need concurrent access configuration , not want have shared storage.  outstanding print requests can discarded , we'd rather have simplicity of system configuration , operation on no data loss.  can reprint or print document after primary up. we're looking inforomation on how configuration failover scenario , aren't haven't luck.  seems focus on having form of shared storage. can't done without shared storage? hello, for clustering please use http://social.technet.microsoft.com/forums/en-us/winserverclustering/threads , there experts. best regards meinolf weber mvp, mcp, mcts microsoft mvp - directory services my blog : http://msmvps.com/blogs/mweber/

How to create Windows 7 Firewall rule for javaw.exe?

Image
hi all, how create windows 7 firewall rule javaw.exe? application path differed new versions , user profiles. windows 7 workstation pop-up when i run one application installation:   windows security alert windows firewall has blocked features of program your network administrator can unblock program you. name: java(tm) 2 platform standard edition binary publisher: sun microsystems, inc. path: c:\users\xxxxxxx\appdata\local\temp\orainstall2012-08-17_02-31-17pm\jdk\jre\bin\javaw.exe i need create firewall rule in windows 7 firewall group policy. can create normal firewall rules by gpo but can't create firewall rule if application path variable e.g. c:\users\xxxxxxx\appdata\local\temp\orainstall2012-08-17_02-31-17pm\jdk\jre\bin\javaw.exe do know wildcard symbols allowed (e.g. asterisk)?   all replies  hi, you can check following settings. if want set group policy windows firewall, suggest posing in group policy foru

Whitelisting folders for roaming profiles

Image
hello, we have been using roaming profiles few weeks now, getting more , more bloat applications in %appdata% , further. have blacklisted many folders keep coming. there way make whitelist instead of blacklist , select want sync rather not want sync? or have suggestions getting rid of bloat? (even ms office copies stock templates , other files every user profile.) also, more files longer (much, longer) takes log in (1500 files equals few minutes of logon times!) thanks in advance, regards, ondra moravek from experience on years customers moving using roaming profiles because of problems mention. recently (well quite compared how long roaming profiles has been around) microsoft offering new profile tool called user experience virtualization (ue-v). ue-v light weight profile roaming technology. the limitations of roaming profiles can exclude folders not aware of whitelisting. ue-v on other hand deal whitelisting in detail want include, in terms of files, folders or

Migrating WSD printer ports between print servers

i have old print server (windows server 2012 rtm) many connected network printers. want replace new print server running windows server 2012 r2. played exporting , importing print server configuration , discovered although wsd ports information included in exported file, isn't imported on same server, printer redirected predefined file: port. there no problem importing standard tcp/ip ports. it happened many connected printers (hp, canon , on) use wsd network ports. possible migrate new print server without reconnecting printers standard tcp/ip ports? "hkey_local_machine\system\currentcontrolset\control\print\monitors\wsd port" key doesn't contain subkeys related printer ports. evgeniy lotosh // mcse: server infrastructure, mcse: messaging hi evgeniy, >> is possible migrate new print server without reconnecting printers standard tcp/ip ports? only tcp/ip, wsd, , lpr ports migrated. the printer migration wizard not migrate printers attached

parsing a firewall log file

i need writing powershell script i saved firewall log text file on c:\temp\fw-log. i need script parse text file , export information need csv file. csv file should contain following information.... date , time, action, protocol, src-ip, dst-ip, , port 445. here example of information need. date time action protocol src-ip dst-ip src-port dst-port size tcpflags tcpsyn tcpack tcpwin icmptype icmpcode info path 2013-02-08 08:30:48 allow tcp 113.525.68.124 113.525.018.22 50427 445 0 - 0 0 0 - - - send rick try this: $firewalllog=get-content 'c:\temp\fw-log.txt' $result=@() foreach($logline in $firewalllog){ $logline=$logline -split ' ' if($logline[7] -eq '445'){ $result+=new-object psobject -property @{ 'date'=$logline[0]; 'time'=$logline[1]; 'action'=$logline[2]; 'protocol'=$logline[3]; 'src-ip'=$logline[4]; &#

How to display "Manager" field in ADUC View?

Image
hi, i want view manager field in aduc (win2008 r2), please suggest. regards, maqsood maqsood mohammed senior systems engineer mcitp-enterprise admin & itilv3 foundation certified the attributes can used columns in aduc determined/controled displayspecifers in active directory, can use script wrote in 2004 change default ones: http://www.chrisse.se/maqb.asp?id=72 note: script intended fix bug live communications server 2005 broke default ones, can use add own attributes possible columns. enfo zipper christoffer andersson – principal advisor http://blogs.chrisse.se - directory services blog Windows Server  >  Directory Services

DNS Error and Reverse Delegation

Image
hello.   i have customer seeing error generated in dns event logs , has asked me take @ it.     this error occurs every time dns started 34 computer records.   these 34 computers in reverse lookup zone different 1 error stating trying write to.   the error follows…. “log name:       dns server source:         microsoft-windows-dns-server-service date:           11/4/2011 3:24:21 pm event id:       4010 task category: none level:          error keywords:       classic user:           n/a computer:       xxx.xxxxxxx.xxx description: the dns server unable create resource record for   134.100.16.172.in-addr.arpa. in zone 16.172.in-addr.arpa. active directory definition of resource record corrupt or contains invalid dns name. event data contains error.”   looking @ customer’s reverse lookup zones,   they have… 100.16.172.in-addr.arpa – contains 34 records, dynamic updates (no), ad integrated, dns servers in domain (these match 34 errors being genera

Interforest 2003 to 2008 migration - Security Translation issue

in trying follow admt documentation “t,” first migrate users , disable account in target domain.   ·          our test users migrate on initial except “homemdb” , “homemta” properties expect.   ·          testing security translation wizard found reading additional accounts database.   translate user profiles: yes perform pre-check only: no   [agent dispatch section] 2009-02-10 12:36:56 read 18 accounts from database migrated domain ' subdomain.domain.com' domain 'testad.domain.com'. 2009-02-10 12:36:56 created account input file remote agents: accounts000040.txt 2009-02-10 12:36:57 installing agent on 1 servers                                                  2009-02-10 12:36:57 active directory migration tool agent installed on test-xp-vm01.subdomain.domain.com 2009-02-10 12:37:26 started job:   test-xp-vm01 000040_test-xp-vm01 {c824d615-030a-4c7d-8da0-2cb14cbf24bf}               but on local machine it’s not translating user profile

Error en w2k3 interprise server

hola, revizando el visor de sucesos en la rama de aplicaciones me encontré con el siguiente error: en el origendice  msdtc en la categoría dice tm en la descripción dice: ms dtc inicio con la siguiente configuración(desactivado = 0 y activado = 1) configuración de seguridad: administración de transacciones de red = 0 clientes de red = 0 transacciones distribuidas entrantes que utilizan el protocolo msdtc nativo = 0 transacciones distribuidas salientes que utilizan el protocolo msdtc nativo = 0 protocolo de transacciones en internet (tip = 0) transacciones xa = 0 filtro de sucesos duplicados = 1 les comento que el servidor no es controlador de dominio, lo que tiene instalado es un server mdeamon, kerio winroute firewall. bueno cualquier comentario va ser bien recibido. saludos. Windows Server  > 

Deserialized object not the same as the one I serialized

hi, i attempting use import-clixml , export-clixml save dataset disk retrieval later. object returned when import of type "deserialized.system.data.dataset". suppose not concern me, unable access datatable name in "deseriaized" returned object. this command on returned object gives expected results: $ds.tables[0] this 1 not: $ds.tables["mytable"]   (this appears empty) furthermore $ds.tables[0].tablename returns "mytable" is bug? there way convert "deserialized" object normal dataset? other suggestions? i don't think possible convert deserialized object original dataset. instead should prepare data , serialize data after that.   there maybe 1 more possible solution - use .net serialization/deserializaton. maybe serialization xml (class xmlserializer), or maybe binary serialization work (http://msdn.microsoft.com/en-us/library/4abbf6k0%28vs.71%29.aspx)

UNC path not accessible

Image
below subnets are behind firewall. inside interface 10.x.x.x windows 2012 r2 outside interface 192.168.x.x windows 7 professional from outside can unc inside network \\serverip\ from outside can unc inside network \\serverip\c$ from inside cannot unc outside network \\serverip\c$ error message from inside cannot unc outside network \\serverip\ error message:- i can ping both site. can access ftp services. muhammad mehdi hi muhammad mehdi, thanks post. in general, can use domain credentials provided workgroup clients has relevant communication dns, wins ( netbios ) , ad infra. for error prompt, please make sure subnet mask , default gateway same computers. if these not same, have issues connecting computers on network. please check   firewall (ports 138 , 139 need opened). here article more details. take look. http://www.online-tech-tips.com/computer-tips/troubleshoot-file-sharing-peer-to-peer-network/ please note: since web site not hos

Security Package Error using Server 2012 R2 RDS/RDP

hi, we're experiencing below error when trying use rdp via rd web access (server 2012 r2). has else been able resolve or know issue might lie? thanks! "your computer can't connect remote computer because security package error occurred in transport layer. retry connection or contact network administrator assistance." our current rds architecture includes following: - rd gateway server - rd web server - rd broker server - rd session host server (x3) we can access internally fine (when bypassing gateway local addresses) not externally. rd machines have wildcard cert godaddy (ex. *.domain.net). clarity, can rd web access externally, issue occurs after login when trying run rdp connection. hi, what’s operating system remote desktop client running on? please ensure latest version of remote desktop client installed. if issue persists, please check event logs on rd gateway server, terminal services related logs under: event viewer ->

Windows Server 2008 R2 NLA stops after restart/update

recently have upgraded server windows server 2008 r2 , have done updates on past day, had rdp setup use nla enforced , worked fine.  it appeared after sp1 update round went through, machine restarted , on remote pc (windows 8.1) message remote machine's identity not verified.  do want connect anyways?  i select yes, denied (due nla being on enforced on remote machine), of way can connect having nla set not enforced on remote machine.  this seems solely isolated windows server 2008 r2 sp1 updates, second install has occured.  please note:  my client pc support nla, not signed certificate error (certificate used show upon connection, no longer does). attached image of error: http://cobaltsoftware.cf/img/no_connect.png hi, thanks post. if try disabling nla on both remote desktop [rdc] host machine , client, work, right? similar thread has been discussed, use reference. https://social.technet.microsoft.com/forums/en-us/bb527fb4-fa41-48c7-8e64-4e58eef79c88/network-le

I can't add Kerberos Authentication Template on CA (new template to issue - I dont see it on Enterprise Subordinate CA )

hello, i have enterprise subordinate ca on windows 2008 standard r2 edition. when try "new tempalte issue" dont see certificates dc. (kerberos authentication template, custom templates etc. - dont see). think see 1 year ago. becouse know added kerberos authentication template. but year ago did restore ca (restore on same os). period didnt use (checked :( ) custom templates, , kerberos certificates on dcs valid - didnt expire ..)  thank time, keli     keli hi keli, posting in microsoft technet forums. please check information in thread below see if can helpful in situation. certificate authority problem - template information not loaded. http://social.technet.microsoft.com/forums/en-us/winserversecurity/thread/34869142-7dd9-4ced-ab73-664f2b9992e3/ have nice day. regards kevin Windows Server  > 

How to use Remote Control under user properties?

i newbie active directory. want know remote control , how use it? i have 2 dcs' , client machine. 1 of dcs additional dc in have installed remote desktop services role. have user called ruser. using user test out settings in user properties. @ remote control tab , have no idea does? so, want know how test out settings under remote control tab of user properties. please give me step-by-step information on how can this. for example, can use ruser login dc rds installed. once logged in how remotely control user session? thanks , regards, radhakrishnan hi, 1. log on server ruser using remote desktop 2. log on same server administrator using remote desktop 3. open remote desktop services manager in administrator's session 4. in middle pane, user tab, right-click on ruser's session , choose remote control, click ok 5. switch ruser session still have open on machine , agree remote control request 6. remote controlling (aka shadowing) session.  swi

Powershell Web Scipt Freezes when ShowDialog() Window Opens - Does not execute further script

good day, i using powershell wasp commands login website click on upload, code works , click upload select file script freezes on showdialog winodw select file $ie.document.getelementbyid("form:filesfield:files:file").click()  #upload button , dialog popsup select-window -class 'modal' | set-windowactive | send-keys 'c:\temp\20161215.csv~' the script not second line of code unable set focus when run second line in powershell_ise window while dialog open sets focus , works tried running powershell_ise before or after click showdialog before freezes. invoke-expression "c:\temp\test.ps1" file test.ps1: start-sleep -seconds 15 import-module wasp -force add-pssnapin wasp select-window -class 'modal' | set-windowactive | send-keys 'c:\temp\20161215.csv~' but before or after not work or execute still freezes, please regards you have post wasp questions in wasp forum.  forum not support non-ms apps. \

2008 Print Server - Client Side Rendering

we have 2008 r2 rds farm 4 session hosts , 2008 print server.  having numerous print spooler crashes on each host and i see lot of  'hku\default\software\sharp\csr\my.print.server\guid' registry entries when view procmonitor when user signing on sharp printer located on our network.  can see same entries when add sharp printer admin session too.  tends lean me towards believing csr enabled.  however, if check registry key hklm\software\policies\microsoft\windows nt\printers , forcecsremfdespooling, it's set 1.  have render print jobs on server set enabled on session hosts. my question why seeing a registry key indicating csr entries in registry?  need enable render print jobs on print server? as side note, i'm building new print 2008 r2 print server, recommendations....(hope isn't loaded question)? the csr in registry not going change whether server rendering forced or not.  print drivers cannot perform ssr (server side rendering) render on client.

Unable to clear UPnP error when setting up anywhere access

Image
alert me | edit | change type 0 i hope simple configuration problem i struggling finish wizard configure anywhere access the wizard fails @ router settings i have cisco rv325 router if enable upnp anywhere access fails configure router if disable upnp , manualy configure port fowarding , firewall settings anywhere access fails @ upnp not enabled on router this gives link open router configuration am missing past error message  i have tried repair , cofigure options  regards tony finally sorted after head scratching lol Windows Server  >  Windows Server 2012 Essentials

Server Manager crashes on startup

hello, if run oobe.exe cmd, initial configuration tasks opens , crashes. have disabled startup programs services , upon restart it's still crashing. after crashes, when goto administrative tools >> server manager - opens computer manager instead. error: description: stopped working problem signature: problem event name: clr20r3 problem signature 01: oobe.exe problem signature 02: 6.0.6001.18000 problem signature 03: 47917825 problem signature 04: microsoft.windows.servermanager problem signature 05: 6.0.0.0 problem signature 06: 4791a748 problem signature 07: 1f26 problem signature 08: 0 problem signature 09: system.nullreferenceexception os version: 6.0.6001.2.1.0.256.1 locale id: 1033 hello, please try instruction santosh provided , let know if works. if no luck, have try general troubleshooting steps following. after each step, please reboot server , check result. 1. run system update readiness t

Windows server 2008 R2 shown Evaluation copy

hi,   i have windows server 2008 r2, activated, , shown genuine in control panel- system ,   but current server background shown evaluation copy,   any ideas , should gone automatically ,and don’t have change current background, tamer tawfik almoayyed computers if evluation copy, need reinstall using rtm version of windows server 2008 r2. please remember click “mark answer” on post helps you, , click “unmark answer” if marked post not answer question. can beneficial other community members reading thread. ” Windows Server  >  Windows Server General Forum

Absolute Turn Off - Reset

why aren't turn off or reset absolute actions hyper-v manager? after receiving error messages, have had stop hyper-v services several times kill hung vm's and twice had reboot host server itself. not sure mean "absolute actions".  turn off vm pushing power button on physical server.  turns off machine without graceful shutdown.  reset gracefully shutdown vm , restart it, sort of 'shutdown -r' does.  both these commands act on vms , have nothing host. maybe if gave error messages receiving, , event log entries getting on host server, might able provide insight. tim Windows Server  >  Hyper-V

sqlmangr.exe complainig unable to locate component

fter upgrading symantec besr 8.5 ssr2011  sqlmangr.exe complainig unable locate component (msvcr71.dll) the original message   "this application has failed start because msvcr71.dll not found. re-installing application may fix problem. if copy dll from  other  servers fix problem , want know whether symantec doing  disaster ? how know  when deleted 1. unless have had enabled auditing harly trace deletition back. 2. copy&register dll may trick in same way reinstalling runtime . 3. faster solution refer symantec forum . expect not alone experiencing phenomenon: http://www.symantec.com/connect/backup-and-archiving/forums regards milos Windows Server  >  Windows Server General Forum

package discarded

hi, windows server 2012 r2 std we have system uses video stream application, servers streaming video. lot of udp packages, , have receiving rate around 100-180mbit/s. after couple of days these servers starting have problems, can see on images on screens, if loosing packages. images pixel problems.... can see on counter called "discarded packages" counting, , when counter counting 5000-10000 each day need restart server , problem gone couple of days again. to wrap things here of things have tested. - have tried 3 different network cards - drivers updated, windows update updated - have tried 2 different vendors of servers - tried , without teaming - tried tcp traffic, no re transmission, no dup ack`s, time delta healthy - tried different settings related chimney , rss on nic - there no high load on cpu, disk or mem - have tried reinstall server, application - have tried cisco switch i guess there else have tried dont remember everything. t

VPN without SSL certificate

i have server essentials r2 2012 there way set vpn did in rras on sbs 2003 don't need certificates? certificates expensive! if there's no way around can set self-signed certificate? there article? hi, agree gleb. also, l2tp/ipsec able use pre-shared key instead of certificate. note: if select eap authentication method, require certificate finish authentication. best regards. steven lee please remember mark replies answers if , unmark them if provide no help. if have feedback technet support, contact tnmff@microsoft.com. Windows Server  >  Platform Networking

change to only check one folder and record double

 i run code on multiple folders , works. if check single share 2 differnt files on share it doubles output file. it's processing found files twice. want supply folder (parm) , 2 csv files combine single output file.  thanks. function search-files{ param([string[]]$locations,[string[]]$searchfor, $appendto) begin { if(-not (test-path $appendto)){new-item $appendto -itemtype file -force} } process { foreach($location in $locations) { $files = get-childitem -path $location -filter $searchfor -recurse foreach($file in $files) { get-content -path $files.fullname | out-file $appendto -append } } } end{} } search-files -locations "\\servera\public\t1\usa\saleshist\", \\serverb\public\t2\usa\saleshist\ -searchfor "dodetail-cm.txt","somstr.txt" -appendto "\\virt1\saleshist_data_load_files\