Posts

Showing posts from February, 2015

Query AD, export user info to excel

i to able run script excel query ou within active directory, , report each user their: username firstname surname display name employee id many thanks you can use tons of script below link. http://gallery.technet.microsoft.com/scriptcenter/4d192f4d-2830-4a3e-9352-64a7e696a36e http://gallery.technet.microsoft.com/scriptcenter/   regards awinish vishwakarma my blog:   http://awinish.wordpress.com Windows Server  >  Directory Services

Windows Update error codes 800F0826 and 80070005. What´s the solution?

hi, i´m running win7 ultimate. system continues failures while installing below update files. i´ve copied error codes can´t find solution.  security update windows 7 ( kb979687 ) installation date: 21.10.2010 1:49 installation status: failed error details: code 800f0826 update type: important cumulative security update internet explorer 8 windows 7 ( kb2360131 ) installation date: 21.10.2010 1:49 installation status: failed error details: code 800f0826 update type: important security update windows 7 ( kb982132 ) installation date: 21.10.2010 1:49 installation status: failed error details: code 800f0826 update type: important security update windows 7 ( kb2207566 ) installation date: 21.10.?2010 1:49 installation status: failed error details: code 800f0826 update type: important security update windows 7 ( kb2296011 ) installation date: 21.10.2010 1:49 installation status: failed error details: code 800f0826

moving dhcp from 2003 standard to 2008r2

i have moved dhcp 2003 2008r2, not assign addresses. have followed http://support.microsoft.com/kb/962355/en-us move. question need unauthorize and remove dhcp/ or shut down the 2003 server first before import database , authorize new 2008r2 server. after i imported database i left 2003 server authorized , short time (about 15 20 min) both servers running, but shut down old server. ip address need same on new server old 1 or matter? thank you, mark mark thank responses. needed assign ip address of old server new one. after more research and reading blog site: http://social.technet.microsoft.com/forums/en-us/a8a33ca9-3a7b-4831-bd2d-db5b7a688b93/dhcp-moved-from-windows-server-2000-to-2008r2?forum=winservermigration , the reply elie barbour: "its common issue, since dhcp broadcast stopped layer 3 switches in network, if have cisco switches, have specify " ip helper-address " , point new dhcp." instead of changing config in switches, added

GPO Security filtering issue

Image
i have issue security filtering when applying wsus gpo. in gpresult, computer gpo applied when authenticated users group  added security filtering along wsus_servers_restart group (see pic). problems: 1. if authenticated users group not added security filtering, computer gpo not applied (filtering denied). why? 2. when authenticated users group added wsus_servers_restart group, , gpo applied, computers group not listed under "this computer part of following security group" in gpresult. why? do others have add authenticated users group in security filtering in order apply gpo computer group?   "when hit wrong note it's next note makes or bad". miles davis let want apply wsus gpo ou contains security group "wsus_computers". my action: i link gpo ou , in securtiy filtering add security group "wsus_computers"   gpo apply objects ( users , computers ),not apply groups.you can't linked gpo contains security group

Work Folders - only allow domain computers to synch

for security reasons want allow computers joined our domain use work folders.  not want allow ipad/iphone apps use work folders. we have work folders setup , working our firewall.  trying figure out disallow use of devices ipads. are missing set-syncshare command lock down work folders domain computers? there few options that: 1) allow kerberos auth - way domain joined devices on corp next can sync. workfolders hosts it's own copy of iis webcore component , uses standard web.config file. it's called syncsharesvc.config , it's under windows or windows\system32. want remove digest auth module , potentially remove ntlm well. need restart syncsharesvc service changes picked up 2) adfs auth - there ways can configure device policies , should allowed authenticate. may need intune integration making work way it. i'm not expert in field can't include exact step step guide unfortunately.

WSUS Step by Step.

hello. i have windows server clients use download update , not internet. antivirus server clients use server update not internet. how can it? thank you. hi, warning first need looooottt of space in server storage de updates , kb several microsoft applications , os. you can follow these instructions: deploy windows server update services in organization https://technet.microsoft.com/en-us/library/hh852344(v=ws.11).aspx step step : installing & configuring wsus in server 2012 r2 https://mizitechinfo.wordpress.com/2013/08/19/step-by-step-installing-configuring-wsus-in-server-2012-r2/ if answer please mark answer :) thanks, ricardo cabral se essa resposta ajuda por favor, marque-o como uma resposta :) obrigado, ricardo cabral Windows Server  >  WSUS

List group members from different Domain with directory searcher

hi, trying users belong specific group in different domain cmdlet get-adgroupmember has bug , can't see them.. so thinking of using directoy searcher alternative creds not sure how proceed.. the original script goes as: $username= "domain\user" $passwd= "password" $securepassword = convertto-securestring $passwd -asplaintext -force $creds= new-object system.management.automation.pscredential $username, $securepassword  $domain = "contoso.com" $admin= get-adgroupmember "administrators" -server $domain-credential $creds with directorysearcher have tried... $dn = new-object system.directoryservices.directoryentry ("ldap://contoso.com:389/","domain\username","password") # here user $search= new-object system.directoryservices.directorysearcher($dn) $search.filter = "(&(objectcategory=group)(name=administrators))" $search.searchscope = "subtree" $search.prope

How to resize a partition on Windows 7?

after receiving low disk space notice, have tried extend partition space in disk management. but, extend option grayed out. cannot extend partition? have suggestion me? appreciate idea. thanks! hi, you can refer following similar thread more detail help. how extend system drive partition (c:) more capacity http://answers.microsoft.com/en-us/windows/forum/windows_7-performance/how-to-extend-system-drive-partition-c-to-get-more/6acd8697-4292-4280-8270-049691d14598 more information: extend basic volume http://technet.microsoft.com/zh-cn/library/cc771473.aspx hope helps. we trying better understand customer views on social support experience, participation in interview project appreciated if have time. helping make community forums great place. Windows Server  >  Windows Serve

Script behaves differently outside of script editor.

good morning technet, i’m seeing odd behavior powershell script have written , hoping more experienced can share insights.   through magic of copy pasta have developed following script monitor folder new file writes, , send notification email.   when run script using script editor (power gui) script runs no errors, , when write folder receive email notifications normally.   however, if close script editor, or if run script using powershell executable, not receive notifications @ when files written folder – it’s script not running correctly / not persisting same way when run outside script editor.   am missing switch when running script, or there else need consider in terms of how script should behave?   any thoughts appreciated.   here script: #unregister-event -sourceidentifier filecreated   #<--use if running second time. $folder = 'e:\temp'                         #<----set folder path monitored. $filter = '*.*'                             #<

shutdown computer

how remotely shutdown computer in domain using command prompt if have admin privilege on computer can use shutdown.exe command. santhosh sivarajan | mcts, mcse (w2k3/w2k/nt4), mcsa (w2k3/w2k/msg), ccna, network+ houston, tx blogs - http://blogs.sivarajan.com/ articles - http://www.sivarajan.com/publications.html twitter: @santhosh_sivara - http://twitter.com/santhosh_sivara posting provided no warranties, , confers no rights. Windows Server  >  Directory Services

Set Download headers then full items via GPO or GPP on Windows for Outlook 2010

i looking way set laptop users default send , receive settings download headers full items via gpo. have found way grey options on under user config/admin templates/msft office 2010/accounts settings/exchange/cached exchange mode, have not found way specify default is. did find ways via .msp or .oct, wondering if there anyway via gpo or gpp. please advise. thanks http://www.addictivetips.com/windows-tips/is-outlook-2010-slow-download-email-header-only/ answered own question. click on cached exchange mode , chose cached exchange mode want new files. thanks Windows Server  >  Group Policy

Store a text in encrypted form and use in powershell script without compromising it to other users?

i want encrypt text want use in different powershell script without compromising security other user using scripts contain text. want conceal text , use without hassle powershell scripts using particular text. text can stored in file used in different scripts. have tried basic things : $text = read-host "enter text" -assecurestring $bstr = [system.runtime.interopservices.marshal]::securestringtobstr($text) $plaintext = [system.runtime.interopservices.marshal]::ptrtostringauto($bstr) write-host "text is: " $plaintext but thing can found if in same computer. need foolproof method if any. first question please ignore mistakes, if any. please visit below link more details stackoverflow.com/questions/42801713/store-a-text-in-encrypted-form-and-use-in-powershell-script-without-compromising hi ankit, you can store encrypted password in text file or in registry too. take @ below urls https://gallery.technet.microsoft.com/scriptc

Logon failure: unknown user name or bad password" when trying to join domain. Windows Server 2008 R2 and windows 7 professional as client computer

hello, i have been trying set server ad dns , dhcp client along application server. have set when trying connect clients computer, unknown username or bad password error. know credentials correct. upgraded functional level 2008 domain , forest similar results. dhcp , dns servers running fine. need help a thought... have client machine dns entry in network properties pointing the dc\dns server correct?  when prompted credentials, changing providing netbios domain \ domain account rights? corp\administrator , password?  meaning, might default local account unless place netbios name of domain first. if still doesn't work...  can go dc , active directory users , computers snapin , prestage computer account, create it.  attempt join. dave guenthner [msft] posting provided "as is" no warranties, , confers no rights. http://blogs.technet.com/b/davguents_blog Windows Server

Robocopy newer/changed files

hello i'm using robocopy copy files between servers.  correct default robocopy copy newer or changed files default? or need add additional switches? i 1 large copy , later copy files have changes since full copy. thank you hi, /mir copy empty folders destination , remove folders not exist in source side. and default robocopy copy changed files - not newer if there no other parameters, copy old files overwrite newer ones in destination folder. "parameters" here including:        /xc :: exclude changed files.        /xn :: exclude newer files.        /xo :: exclude older files.        /xx :: exclude files , directories.        /xl :: exclude lonely files , directories.        /is :: include same files.        /it :: include tweaked files.     /max:n :: maximum file size - exclude files bigger n bytes.     /min:n :: minimum file size - exclude files smaller n bytes.  /maxage:n :: maximum file age - exclude files older n days/date.  /

Protect internal servers

Image
hi, i'm looking secure access internal servers single user access, want accomplish access desktop requires user & b put in ad user credentials @ logon time. is there way accomplish this? hi marcus, reply. however, far know, windows server not have feature. may need other solutions protect servers, such server isolation. server , domain isolation http://technet.microsoft.com/en-us/network/bb545651.aspx server isolation microsoft windows explained http://technet.microsoft.com/en-us/library/cc770626(v=ws.10).aspx understanding. jeremy wu technet community support Windows Server  >  Network Access Protection

Lost with windows server 2008!

 hi all, i'm moving sbs2003 windows server 2008. decide start scratch server, installed datacenter 64 dc, dns , dhcp. after created zone, settled several reservation in dhcp. clients (vista or xp) gave me error, because unable receive dhcp address. same happened laser printer, , switch. it seems dhcp not receiveng requests. on server side seems running fine. have got suggestion? tia paolo    if running domain, must authorize dhcp in active directory before work.    http://technet.microsoft.com/en-us/library/cc781697.aspx bill Windows Server  >  Network Infrastructure Servers

IAS: "use-windows-logon" fails authentication; Fully-Qualified-User-Name issue?

i've got weird issue. i've set 802.1x wireless network points windows ias radius server authentication. the radius client/authenticator aruba wlan controller. supplicant standard win 7 machines when set wireless profile proper settings , "use windows logon" enabled authentication fails. when uncheck "use windows logon"-checkbox, presented systray-popup enter user, passwd , domain. when enter windows logon details there.. authentication works. obvious difference between granted , denied access in radius logs fully-qualified-user-name. not sure why though. user enters same info in windows logon box in 802.1x authentication box. got idea why happening? i've been stuck on weeks , ready give on damn checkbox. ################################################################################ access denied (use windows logon checked) ------- event type: warning event source: ias event category: none event id: 2 date: 29/06/2011 t

Share map issue

hi, i have windows 2008 server , linux server running cifs protocol file sharing. in windows 2008 server when try map share located in linux server using it's hostname i'm prompt credentials, if try map same share in linux server using ip i'm not prompt credentials.   i'd know why can map without credentials using ip , why i'm prompt credentials using hostname.   any appreciated.   ricardo hi ricardo,   so there issue access if input credentials? have deployed dns name resolution in environment ? linux host correctly resolve hostname of windows server 2008 ? have checked store credential on windows server host?   meanwhile ,please try restrict widows server 2008 uses smb1.0 protocol file sharing modify registry vale . please refer “more information” paragraph in kb article 281308:   http://support.microsoft.com/kb/281308   thanks.   tiger li please remember click “mark answer” on post helps you, , click “unmark answe

Can't remove SCSI VHD from a guest using PSHyperV

ws2008 r2 sp1 core hv host, pshyperv r2 gold. posted pshyperv board few weeks ago, appears nobody's home. have pshyperv experts here. trying script removing scsi vhd's guest. scsi disk has been "safely removed" vm before running ps commands. i've tried 2 methods (to remove disks "backup" in names): get - vmdisk | { $_ .diskpath -match "backup" } | foreach {remove - vmdrive - diskonly - vm $_ .vmelementname - controllerid $_ .controllerid - l $_ .drivelun} there no error posted, , get-vmdisk no longer lists disk. disk still present in vm, , visible in hyper-v console. i've tried using menu. worked through selections until asked confirm removal of disk, @ point failed report: remove - vmrasd : failed remove hard drive from 01infr001: result '01infr001' failed remove device 'microsoft synthetic disk drive' : generic failure (0x80041001) (virtual machine id 4b24032c - f48b - 420a - a409 - 662078a3c69

Can RRAS implement port farwording using one net card?

Image
now can use netsh implement portfarwording. source ip port:59.*.*.* 15000---->des ip :114.*.*.* 14330 but want know how implement rras. in computer ip 59.*.*.* ,i have 1 netcard. i config follows: 1.start rras 2.select "custom" 3.nat , basic firwall 4.ip routing ->nat , basic firewall->add interface->local interface 5. on nat basic firewall tab,i select " public interface , connect internet"--> "use nat on interface" 6.on address pool tab,i add 1 ip address 59.*.*.* and subnet mask 7.on services , ports tab,i add "incoming port" 15000;privae address 114.*.*.* ;outgoing port:14330 8.finish 9.when connect 59.*.*.* ,15000,i can see mapping. but connect not success.(telnet 59.*.*.* 15000 fail) i not know wrong. , use netsh success. hi, thanks question. based on experience, nat port farwarding needs 2 nics , used external machine send packet machine on internal network because nat allows request

DNS Issue

Image
i’ve been asked modify existing dns record. needed change ip address associated record xyz.com   from 72.45.12.173 150.12.172.9. made change when attempt test name resolution workstation, xyz.com  is still resolving 72.45.12.173. a. reason condition might exist? b. change make local workstation work around issue? c. how keep problem happening next time if need make similar dns change?     hello, normally change ip address on computer new 1 , run ipconfig /flushdns , ipconfig /registerdns. that's it. so why did change record manually instead? best regards meinolf weber mvp, mcp, mcts microsoft mvp - directory services my blog: http://blogs.msmvps.com/mweber disclaimer: posting provided no warranties or guarantees , confers no rights. twitter:   Windows Server  > 

How to send email msg if a windows service stops?

Image
how send email msg if windows service stops? i have sample 1 can use , modify needs.  stand-alone script need adjustment accept parameters if want reuse different services. send email message using vbscript http://www.anitkb.com/2010/03/send-email-message-using-vbscript.html i have example on how pass parameters vbscript. how pass parameters vbscript http://www.anitkb.com/2010/10/how-to-pass-parameters-to-vbscript.html   hope helps...   visit anitkb.com , knowledge base. follow me on facebook. Windows Server  >  Windows Server General Forum

Generally what are the dhcp problems we get and how to troubleshoot those problems

plz  answer me muppuri hi,   here articles dhcp troubleshooting:   http://technet.microsoft.com/en-us/library/cc958915.aspx   if encounter specific dhcp problem, you’re welcomed post in forum.   regards, bruce Windows Server  >  Group Policy

lastlogontimestamp showing next year

hi i have around 250 users , computers account in ad. when pulling users , computers last logon time stamp ad, its showing me 2014 unbelievable. how can users , computers last logon time stamp of next year has not come.. please advice , provide solution. the date on dc's might correct have been incorrect when user logged on ans lastlogondate updated. i see else has run similar issue here: http://social.technet.microsoft.com/forums/windowsserver/en-us/c5d31855-e4db-477a-89e5-ea5948bd9dab/how-can-last-logon-timestamps-showing-2015-year-for-20-users -- paul bergson mvp - directory services mcitp: enterprise administrator mcts, mct, mcse, mcsa, security+, bs csci 2008, vista, 2003, 2000 (early achiever), nt4 twitter @pbbergs http://blogs.dirteam.com/blogs/paulbergson please no e-mails, questions should posted in newsgroup. posting provided "as is" no warranties, , confers no rights.

Set Regional settings

is possible set regional settings including date/time etc using gpo? if find setting change pcs default country/keyboard layout (mixture of win xp, vista, 7) thanks check article.   for gpo help, post here. http://social.technet.microsoft.com/forums/en-us/winservergp/threads/     thanks Windows Server  >  Windows Server General Forum

MMC has stopped working

description:   stopped working problem signature:   problem event name: clr20r3   problem signature 01: mmc.exe   problem signature 02: 6.1.7600.16385   problem signature 03: 4a5bc808   problem signature 04: microsoft.windows.servermanager   problem signature 05: 6.1.0.0   problem signature 06: 4ce7c964   problem signature 07: 1446   problem signature 08: 54   problem signature 09: system.badimageformatexception   os version: 6.1.7601.2.1.0.272.7   locale id: 1033 hi, according description, understanding mmc stops working on windows server 2008 r2. please try rename “mmc” folder, then, open mmc , confirm result: c:\users\ %username% \appdata\roaming\microsoft\mmc besides, please open cmd , using “ sfc /scannow ” check/repair system files. if problem persists, want confirm you: 1. is there change before problem happens, such new software installation, file deleting. 2. will problem happens when doing specific operation?

Deploying Office 2007 and 2010 Through Group Policy

hello,   i having big problems deploying office 2007 or 2010 through group policy software installation – won’t deploy. read thread , followed technet links having no luck, wondering if missing here. ill explain steps have taken below:   1.        i have created share office folder (both 2007 , 2010) , correctly accessible, have tested putting adobe reader folder , deploying know not share permissions 2.        copied entire contents of 2007 , 2010 dvd’s respective share folder 3.        launched oct both 2007 , 2010 , configured msp file. msp file contains installation information such product key, show ui set none, , i’ve configured exchange profile settings outlook 4.        placed office.msp file in updates folder (separate 1 2007 , 2010) 5.        created gpo   for both 2007 , 2010 , configured scope, assigned correct ou etc 6.        added enterpriseww.msi , proplusww.msi files respective gpo (computer level) 7.        restarted client machine (windows 7) 8.

Could not read from the registry sub-key

hi all, since yesterday on after upgrading 1 of dc windows 2008 r2 getting lots of below given error. log name:      system source:        foundation agents date:          12/17/2010 2:59:33 pm event id:      3072 task category: software version level:         warning keywords:      classic user:          n/a computer:      dc2.prod.com description: component: software version agent  error: not read registry sub-key.  cause: error can caused corrupt registry or low memory condition.  rebooting server may correct error. event xml: <event xmlns=" http://schemas.microsoft.com/win/2004/08/events/event ">   <system>     <provider name="foundation agents" />     <eventid qualifiers="33845">3072</eventid>     <level>3</level>     <task>12</task>     <keywords>0x80000000000000</keywords>     <timecreated systemtime="2010-12-17t09:29:33.000000000z

Is new server software required for migration to a new box?

i cannot find answers question. can install copy of current server 2008 r2 on new box , perform migration using same license? is there procedure deactivating license on old box? should ok long volume license (no oem) may need contact them regarding activation. https://www.microsoft.com/licensing/existing-customers/activation-centers.aspx       regards, dave patrick .... microsoft certified professional microsoft mvp [windows] disclaimer: posting provided "as is" no warranties or guarantees , , confers no rights. Windows Server  >  Migration

printer pooling

i trying setup printer pooling on windows 2003 server. configuring 2 ip ports 1 printer, and found doing following in test. i unplugged lan cord 1 of printers , sent job. job placed in queue printer port had removed lan connection. queue, expected, shortly reflected error document failed print. subsequent jobs routed other device. reinstalling lan allowed first job finish. am i missing something? ultimate goal have immediate failover in event 1 printer offline. if port marked offline before job scheduled job cannot scheduled port (snmp enabled , device not on network).  port first in list  (abc port appear in list before port lmn) will get of jobs.  if printer on port abc cannot schedule job (busy or dead), job scheduled on next port in list. alan morris windows printing team; search microsoft knowledge base here: http://support.microsoft.com/search/default.aspx?adv=1 Windows Server

WIndows 7 and Server2008 machines will not remember network discovery preferences, requires setting every start up or wake up.

hello i wondered if here kind me solve situation i have 2 windows 7 machines , server2008 machines not remember network discovery preferences, i running software on windows server machine collects data , serves information 2 windows 7 machines, , network discovery required purpose these machines configured in local stand alone network configured workgroup other items on network none pc based equipment server happily communicates , reads data from once network discovery set network system runs expected on every start-up (or wake up) network discovery lost , need re allowed. case in both windows server 20008 r2 , windows 7 how make these preferences permanent. restart , re establish communication self without intervention am missing setting or if not  there way can script the selection of preference on each start(/wake)up. the final user need able turn system on/restart , use out having have it/networking knowledge system running. thank taking time re

On Manual Start Microsoft Software Shadow Copy Provider Service on Manual Start fails with Error 1053 on server 2003

hi all, tsm client configured on server. working fine. as checked backup failed on server. everything has been checked , ok. able run local backup (c: d: drives) fails when all local drive system state backup selected. on checking found vss error problem. have rebooted server, facing same issue. on further investigation found reason of failing of backup microsoft software shadow copy provider service. set manual. setting ok. on manually starting it's failing microsoft software shadow copy provider fails start error 1053. thanks in advance. vijay Windows Server  >  File Services and Storage

WMIC returning printer port

hi, is possible in port printers installed (in computer) wmic tool? thanks lot. regards. > please, how can achieve this?   start using google/bing/xyz...   wmic printer name,portname   martin mal ein gutes buch über gpos lesen? no not evil, if know doing: or bad gpos? , if bothers me - coke bottle design refreshment :)) Windows Server  >  Directory Services

NIC resetting on a multi-site Hyper-V cluster

i have customer reporting when move hyper-v virtual machine resource 1 site using wsfc, protected vm detecting new nic card upon switchover , requesting vm rebooted in order complete installation of new hardware.  when switchback primary site, vm once again detects new nic card , requesting reboot once again. does have idea might going on here? dave bermingham hi dave, is configuration wsfc same hardware , compatible fccp . , version running greetings, robert smit http://fiberman.spaces.live.com/ Windows Server  >  High Availability (Clustering)

[Forum FAQ] How to set NOOP I/O scheduler for Linux Virtual Machines on Hyper-V

Image
as know, there 4 i/o schedulers linux kernel reorder requests different algorithms: noop scheduler anticipatory i/o scheduler (as) deadline scheduler complete fair queuing scheduler (cfq) it recommended use noop scheduler linux virtual machines on hyper-v obtain better i/o performance. in article, introduce how turn on noop i/o scheduler linux virtual machines on hyper-v , can follow steps below:   1. check current-selected i/o scheduler a. switch root account switching root account necessary many tasks in linux root user account set aside administrative access. can access command line on linux virtual machine , enter su or su root switch root account. (figure 1) figure 1. b. confirm currently-selected i/o scheduler the name of file controls scheduler block device is: /sys/block/ device-name /queue/scheduler assuming have disk named /dev/sda, can use command below view contents of virtual file , show currently-selected scheduler surrounded square b

NIC info lost in reinstallation... will export fix this?

earlier year when updated hardware in hp dl580 g5 using hp's systems management tool, (os on mirrored drives on 1 controller, vms on raid 5 on second controller), killed windows 2008 os. did not export vms... when ready update hardware, just shut down server , pulled drives in data array. when new os installed hyperv , updates, etc, shut down server , plugged in drives. the new installation saw drive, and all right world, realized every vm had lost nic information... had log each 1 and manually enter static ip information for every server. i'm planning upgrade firmware again, , install server 2008 r2. currernt plan export vms external drive backup strategy in case, , pull drives again prior hardware updates , os installation. i'd save time take import vms, they'll still right prior rebuild, don't want go through manual nic configuration on these vms again either. will exporting importing vms retain nic configuration when imported and brought in new os? hi,   bas