Posts

Showing posts from March, 2015

Having problem of remote connection between the server2008r2 and clients.

i have server machine on win server 2008r2 running tmg running in envireonment i haqve 2 network internal network having address(10.0.0.1) , external network(192.168.1.2). have machine on same network of (192.168.1.1) ip (192.168.1.3).problem when trying ping (192.168.1.2) from (192.168.1.3) "request time out" message occur. ping (192.168.1.3) (10.0.0.1) working.due cant make remote connection. kindly me out. electrifying does firewall allow type of traffic external internal network? did try using traffic analyzer? Windows Server  >  Remote Desktop clients

After Win2k3 Server DHCP move to new Win2k3 Server it will not assign IP's to any clients.

i looked on net docs on moving , chose 1 moving our older 2k3 server (server a) newer server (server b).  both servers updated , running of latest service packs.  both machines domain controller in our domain also. http://support.microsoft.com/default.aspx/kb/325473 finished instructions no errors, completed successfully.  (which have done 3 times previously, no go...) i unable ip assigned machines on network.  if stop service on newly installed server b , restart server services go working fine.  have tried installing different server (server c) using same instructions , still no go... is there simple may missing?   thanks in advance!!! in addition authorizing server, make sure dhcp server service bound correct nic.  if server has more 1 nic may bound incorrect one.  open dhcp admin console.  depending on version of adminpak/rsat running, different properties screen.  in case, need see nic bound service.  if server authorized, on same subnet, , binding correct, there nothing else ne

users able to write user object memberOf without explicit permissions to do so

i in process of delegating ability support user edit membership of groups. not matters, did adding entry acl of ou gave them (a group they're member of) read\write member descendant group objects in ou. anyway, noticed without doing more delegation support user able add users , groups in ou. how possible without me giving support user other half of needed delegated rights read\write memberof on users? a few notes: my support user member of domain users , group mentioned in acl statement. i understand read on either side of delegation not necessary doesn't hurt (or think). the users support user able add in varying other ous based on note 3 seems user can add user in domain group has write member to. based on note 4, i've looked @ acl on root of domain entries applied descendant user objects , can't find has write member checked.  this little concerning… help. you can delegate right add members or remove members groups. in other words delegate right r

Hyper-V switch jumbo frames

hi,  i have dell server win 2012 , hyper-v server role installed. enable jumbo frames in guest machines(2012 , 2008 r2) can send frame mtu 2002 bytes max, wireshark analysis seems frames dont pass hyper-v switch reason. nic broadcom nextreme mtu 9000(hyper- v machines have 9014 taught issue problem occurs lower mtu in guests). have setup other servers (ibm , dell intel nic) , work fine(have mtu 9014). can encountered issue? thanks. pete sfs on broadcom card have set jumbo frames , mtu in 2 different places using broadcom advanced control suite - can't set through device manager alone. open bacs, drill down ndis vbd client, hit configuration tab , set jumbo packet. hit iscsi adapter, configuration tab, , set mtu. then open properties of hyper-v virtual switch adapter , set jumbo packet there too. my broadcom cards set follows: mtu: 9600 jumbo packet: 9614 my hyper-v switch virtual adapter (vethernet) set to: jumbo packet: 9014

Can Only Access PCs on VPN by IP Address

hello, i've configured windows server 2008 r2 server work vpn i might access home network whilst i'm away home. i've forwareded proper ports, , setup correctly. when use windows 7 laptop connecto vpn, can access computers on home network remotely, via internal ip addresses; nor able use homegroup... looked wrong , turns out needed dns server. so, installed windows server 2008 r2 on separate physical server, , configured it. however, it's still not resovling internal ip addresses. supposed configure vpn server (with rras) work in concert dns server or something? if so, how do that? computer   no, not need change in rras. need make sure vpn client using correct dns server.   vpn client inherit dns server rras server configured use. if not 1 want use, manually configure dns address in properties of vpn client. bill Windows Server

Roaming profiles access %AppData% directly from DC (profile storage)

hello! about 2 weeks ago our lab meet problem roaming profiles started access application data folders directly profile storage server. causes bunch of lags in work of many programs (mozilla, skype, ms office, etc). first of found activesync running on several domain machines, synchronising profile folder offline work. disabling (even througth gpo) not make weather fine. it access remote appdata folder told system use local copy of profile. echo %appdata% says that  c:\users\13p_bat>echo %appdata% \\green\profile\appdata\13p_bat\appdata\roaming where green profile storage (and dc) can help? p.s. problem started 2 or 3 weeks ago, might update package broken system gpo appdata redirection folder parameter empty (by default) the problem has 2 sources. 1. damned active sync. started automatically use appdata offline folder , continuosly sync it 2. second group policy, redirects appdata but resolving problems not fix users` problems. of users continued expir

WSUS Storage path change to NAS

hi, i change wsus installation  path , storage path nas drive. present installation path c:\wsus , preferred path \\nas server\data storage nfs-31\wsus kindly suggest me how change , suggest me wsus updates store path  this article may helpfull: wsus content should installed on nonsystem drive regards, thennet Windows Server  >  WSUS

The remote computer <server> that you are trying to connect to is redirecting you to the remote computer <server>. Remote Desktop Connection cannot verify that the two remote computers belong to the same farm. ...

hi, we have rd farm consisting of 3 rd session hosts (windows 2008 r2) , server running connection broker service. using dns round-robin connect farm e.g. server1, server2, server3 have additional record of farm1. session broker seems load balancing fine several days, 1 or more client calling receiving following message when attempting connect farm1.domain.com: - "the remote computer ******.*****.com trying connect redirecting remote computer ******.*****.com remote desktop connection cannot verify 2 remote computers belong same farm. can occur if there computer on network same name computer trying connect to." this can totally random when happens. restarting client machine can in cases resolve issue, guess same running ipconfig /flushdns (as have seen on other posts i've read). there several articles seem think relates credssp support, know have affect on vista business machines, of our clients either windows xp or windows 7 users. i seem going around in ci

VSS Failures on Windows Server 2003 Standard

i have been wrestling issue more week , running out of ideas.  run 2 windows server 2003 r2 standard sp2 boxes; 1 hosts ad , other member server.  member server has not been able create shadow copies more week, causing cascade of issues suspect relate it. this server controller in older domain, demoted before new domain added.  suspect may permissions issues, can't explain why , don't know how have happened (all running smoothly until 3 weeks ago). the os on raid-1 scsi array; data partitions on raid-5 scsi array. apart from being member server and hosting exchange 2003, server in question file server (we plan migrate sql box first need backups functioning again). in nutshell, here have tried: - when try re-registering dll files vss, appears go smoothly , services start, no shadow copies result. - have deleted ms provider key @ hklm\system\currentcontrolset\services\vss\providers\ , rebooted, re-registered no avail. - had been running backup exec 12.5 on both boxes in course of

Single Sign-on PPTP VPN

we in process of creating vpn using windows server 2003.  using pptp provide access our vpn.  have installed ias well.  my question is, possible use single sign-on client through our vpn gain access our network?  if there special needs done.  documentation great. steve shepard hi steve- yes, possible this. if credentials used vpn client connection are same as the credentials logged on with (or want use sso), work. for example: if i'm a remote user with laptop joined mydomain.example.com domain, can establish a vpn connection credentials mydomain\samirj , sso work  authentication requests example domain. the way works: after vpn connection established, ras puts vpn credentials in credman (credentials manager). later authentication requests matched against credman. please let know if have further questions! cheers, ian Windows Server  > 

WSUS settings are correct, clients + server its installed on can't get updates

hi guys, 2011 sbs machine. noticed updates last installed in feb 2013. wsus settings correct, clients + server installed on can't updates. it's synchronizing correctly, logs show wsus database running correctly. the weird bit in regards "windows update screen". you'll see little box on computer saying "you're set automatically download updates", "no updates available" etc. wish see error code! but alas, all see is grey box "some settings managed systems administrator" check updates responds following: "windows update cannot check updates, because updates on computer controlled system administrator." i have reinstalled wsus 3.0 sp2 , configured. no solution. thing can think of there issue iis, or firewall issue port 8530 (allowed through firewall). client accessing , having issue weird though! no errors in log. hints or suggestions appreciated. turned out administrator before me (muppet). had dis

2008 Windows Server backup allow for incremental/differential and cleanup

was wondering if there's way specify in windows backup we'd incremental backup, , how long should increments kept for. option? this new version of server backup (08 vs 03) allows simple "backup" - nothing else. may incrementals, how specify how long keep increments? same goes full server images (bare metal recoveries) how specify how many server instances save? thanks hi, by default incremental backup. , old backups delete if there no enough disk space. windows server backup delete oldest ones release disk space new backups. you run vssadmin manage shadow copies: vssadmin list shadows /for=x: – listing snapshots on x: x: backup location vssadmin delete shadows /for=x:  /oldest – delete oldest shadow copy. can called multiple times in case there need delete multiple older backups.   technet subscriber support in forum |if have feedback on our support, please contact tnmff@microsoft.com.

Hyper-V 2012 Virtual Machine Management Service stops for no apparent reason

starting initial testing migration hyper-v 2012 (or referred v3.0?). out of box install of server 2012 data center rtm (full), hyper-v role enabled. day after initial setup. opened hyper-v console remote computer start testing , unable connect hyper-v management service. logging in server directly see hyper-v virtual machine management services has stopped (kudos ms making easy see!). after spending awhile in event log , finding no reason (i see service stop no errors associated it) chalk fluke of previous days initial install. next day same thing. except 2 other services have stopped. more event log research no trail follow. it’s if service being commanded stop?? possible connection see configmgr 2012 client activity near same time frame service stopping.   obviously can’t move forward further testing , migration until sort out. sure can set services restart not ideal option.   any ideas? or 2012 new consider production? i’ve included couple of eve

ADSI Searcher takes way too long

i have function tests see if email address exists anywhere in active directory using proxyaddresses attrubute each users. function works, directory size of 5000 users, query takes several minutes. in exchange environment, when setting email address, management console tests if address valid , returns in couple of seconds, there must way optimize function. ideas? function testproxy{ param ($newemail) $global:emailclear = $true $searcher = [adsisearcher]"(&(objectcategory=person)(objectclass=user)(proxyaddresses=*))" $results = $searcher.findall() foreach ($result in $results){ $addresses = $result.properties.item("proxyaddresses") foreach ($address in $addresses){ if ($address.contains(":") -eq $true){ $email = ($address -split ":")[1] } else{ $email = $address } if ($newemail.toupper() -eq $email.toupper()){ $global:emailclear = $false }

Hyper-V with Seagate BlackArmor NAS 400 unit

i looking setup test environment using equipment have pieced on years. have couple of dell poweredge 1950 servers , 2 seagate blackarmor nas 400 units. dell servers running server 2012 r2 , nas units have raid 5 volumes setup. my goal setup hyper-v virtual machine environment machines hard drives run off of seagate nas units. i wanted input best practices , how should setup. research says hyper-v on smb requires smb 3.0 , cannot find documentation states whether seagate nas units capable of or not. i familiar hyper-v have never run machine network share before. best way of setting up? hi jeenz, iscsi disk still can used hyper-v . it seems storage supports iscsi target : http://www.seagate.com/external-hard-drives/network-storage/business/blackarmor-nas-400/ also : http://www.abhijitdalvi.com/2012/01/29/setting-up-an-iscsi-target-and-device-for-windows-for-seagate-blackarmor-nas/ best regards elton ji we trying better understand customer views on social support

delete log file

what log file (windows) can delete on server tse 2008   thanks hi,   you can clear events in event log using event viewer or using wevtutil command on command line. to clear event log using event viewer 1.        start event viewer. 2.        in console tree, navigate event log want clear. 3.        on action menu, click clear log . 4.        you can either clear event log or save copy of event log , clear it. ·          to clear event log without saving: click clear . ·          to clear event log after saving: click save , clear , type name saved file in file name on save as dialog box , click save .   to clear event log using command line to open command prompt, click start , type cmd in start search box, , press enter . type following command: wevtutil cl <logname> [/bu: <backup_file_name>] learn more clear log option of wevtutil command-line tool, type following command @ command prompt: wevtutil cl -?  

routing IP traffic between two NIC's installed in the same server

  ok, know simple question have mental block , cannot figure out or find answer. i want run packet sniffer on network traffic.   i want examine traffic before leaves , enters internal network. i have windows 2003 machine 2 nic ‘s installed life of me cannot think of how route traffic between them , out network firewall. i want pass traffic network 1 nic fixed internal ip address 192.168.10.x second nic fixed internal ip address 192.168.10.x. within same machine , out gateway. not interested in filtering functions, want gateway firewall retain function interest in examining traffic. lan > nic  > nic > gateway > internet how setup routing , remote access accomplish this.  sorry dense can point me in right direction.  greatful.    can route traffic 1 subnet another. if both nics in same ip subnet can bridge them cannot route between them.   want need make internal nic of rras server default gateway lan, set rras route traffic firewall. router-to-firewall segment (

Error - The imported certificate does not match the chosen CA type and will not be used. However, the imported key can still be used

after completing installation of adcs role , features on node 1,  i trying install adcs role , features on node 2 (node 1 , node 2 in cluster) while configuring role on node 2, @ step of selecting private key, using option "use existing private key".  there 2 options under , using "select certificate , use associated private key". , after importing .pfx certificate generated @ node 1, getting below error. "the imported certificate not match chosen ca type , not used. however, imported key can still used." why getting error, selecting same ca type selected @ node 1. hi, was ca type standalone or enterprise, root or subordinate? here related step step article below: installing , configuring ca cluster https://technet.microsoft.com/en-us/library/cc742450(v=ws.10).aspx best regards, amy please remember mark replies answers if , unmark them if provide no help. if have feedback technet subscriber support, contact tnmff@microsoft.com .

Window server 2012 DFS Replication services could not be started. unexpected error 1067

after add role , configure dfsr. dfs replication not strated. here error: windows not start dfs replication services on local computer. error 1067: process terminate unexpectedly. see event viewe log name:      system source:        service control manager date:          4/25/2016 9:48:43 am event id:      7023 task category: none level:         error keywords:      classic user:          n/a computer:  .......................     description: dfs replication service terminated following error:  process terminated unexpectedly. event xml: <event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">   <system>     <provider name="service control manager" guid="{555908d1-a6d7-4695-8e1e-26931d2012f4}" eventsourcename="service control manager" />     <eventid qualifiers="49152">7023</eventid>     <version>0</version>     <level>2</lev

Machine Account Can Access the Network. Why?

 this started when notice able sql server databases network shares on different servers even though sql server services logging in "local system", aka "nt authority\system". looked @ login information on destination machine while backup occurring , saw domain\mahinename$ accessing share. have done on @ least 2 separate servers, although servers in same domain. i not understand why happening for two reasons. first, "local system" account not supposed able access network resources, , second, have not granted machine account access of shares have backed sql server. understanding of situation sql server must running under domain account in order have access network resources, , account must have thr proper rights on network resource in order use it. the network admin here is stumped, , several people on various sql server forums stumped. i ears ideas on situation. can post more information requested. thanks, chris stamey,   following msdn article quite clea

Server 2012R2 WSUS change database

wsus installed on server , busy downloading files the latest synch, clients have connected. i can find plenty of posts changing windows internal database sql server, want go other way. we trying retire sql server due licencing costs/concerns want have wsus uses wid database. i have tried uninstalling role server reinstall correct database selection broke server badly had go bare-metal restore. any pointers on how go changing database option wsus ? regards, brett i can find plenty of posts changing windows internal database sql server, want go other way. the process fundamentally same, bit tricker because wid not yet installed. reliable way instance of wid installed use wsus let wsus installation. uninstall wsus keeping database, content, , logs. reinstall new instance of wsus using wid (which create new database). stop wsusservice. detach new database wid. detach old database sql server. attach old database wid. start wsusservice. uninstall sql server. lawrenc

Server 2012 print spooler keeps stopping.

i have 2012 print server in print spooler keeps stopping. the event viewer shows this: faulting application name: spoolsv.exe, version: 6.3.9600.16384, time stamp: 0x5215d570 faulting module name: ssi5mlf.dll, version: 0.0.0.0, time stamp: 0x4689aeea exception code: 0xc0000005 fault offset: 0x0000000000001e90 faulting process id: 0x1738 faulting application start time: 0x01d060127fa33f19 faulting application path: c:\windows\system32\spoolsv.exe faulting module path: c:\windows\system32\spool\drivers\x64\3\ssi5mlf.dll report id: d74c7dce-cc09-11e4-80dd-00155d005074 faulting package full name:  faulting package-relative application id:  i can't find info on dll. any appreciated. thank you, steve stephen hathaway critical systems integrator i i can running again deleting files in spool\printers folder , start service, happens again. i have seen suggestion before remove drivers , start adding them again. i have 85 or printers q

Directory Services & Exchange 2010 - Organization Configuration

i involved in exchange 2010 lab test email services group.  please review 2 problems seem have in regards way exchange appears enumerate forest in background part of gui setup these errors come from.  same question has been posted email services group exchange forums.  listing directory services in effort see if may relates interaction between 2 , may have setup incorrectly.  thanks. ===================================== empty root domain it has 2 child domains of qa-eu , qa-na all our servers, service accounts, , user accounts setup in containers in qa-2 child domain, prepped. so here 3 problems.... 1) cannot add new mailbox users. error --> not find available domain controller in domain dc=qa-eu,dc=qa-intranet,dc=msd. running command 'get-organizationalunit -includecontainers'. 2) cannot modify domain controller configuration document because won't past root domain , gives error when try browse qa-na.qa-intranet.msd child domain --> not find domain controlle

FYI: Storage Spaces - No handling of ambiguity in pool names (Unique?)? A storage pool named i.e. MyPool on disk 1 will hide MyPool' on i.e. an imported disk 2

there bug here storage manager ui. the same state is reflected in powershell. guess storage manager ui need interpretate uniqueid rather friendlyname of pool when renders presentation (it allowed have pools same friendly names). in case migrating data legacy disk - had former instance of (formal) pool on it. however, hidden new , actual instance of formal name ... because apparently storage manager ui in case fails use uniqueid. ( b tw must storage manager ui has many problems should consider rewriting or major fix of misses in it. powershell has full reflection. storage manager ui has not ... it inferior state of reflection in powershell . that's bad ... because ui overall report view). where qa storage manager ui? test: 1) create a pool named mypool on disk 1 in system 1 2) create pool named mypool on disk 2 in system 2 ... drives , stuff 3) move disk in system 2 system 1. 4) mypool on disk 2 not show on system 1 in storage manager ui. get-storagepool mypo

Project on Virtual Server

hi all,  i have project working on , hoping outside experience , suggestions still in learning stages of server. , , suggetsions appreciated!!! these requirements project. 8 servers total - minimum of 4 (2each) physical windows 2012 ad servers (vpn, administration,application server , student server) each of following can physical or virtual - external/internal curriculum (lms) server, email server, dns/web server, content filtering server my servers follows - dell t320 powerdege, 1.8 ghz xeon, raid 5, 48 gb memory, 3- 1 tb sata, win 2012 server std.  have 5 of them. thinking 4 physical , 1 virtual. serving around 170 optiplex 7020 small form factor pc's , 10 laptops. they need office 2013 pro campus wide. put office on virtual , lms,email,dns , content filtering. wondering else need besides windows server 2012 accomplish of this? i have read alot do, other input if possible make educated decision. thanks in advance your question broad question cannot

2008 server won't join NT4 domain

got 2008 server standard , tried add domain. have nt4 sp6 dc , no bdc @ moment. keep getting unkown user , password no matter what. tried answer has worked other people isn't working me. doesn't matter if add computer dc server list or not. 1. srvmgr.exe on pdc , add computer name of vista pc. 2. on vista pc run, secpol.msc under local policies > security options, 3. change following - domain member: digitally encrypt or sign secure channel data (always) - change disabled - network security: lan manager authentication level - change "send lm , ntlm - use ntlmv2 session security if negoitated" logging in domain\user username. checked event log - don't know if means event id 4648 - logon success audit using process svchost.exe - event details... this event generated when process attempts log on account explicitly specifying account’s credentials. commonly occurs in batch-type configurations such scheduled tasks, or when using runas command. any ideas? thank yo

Can't install MBCA on Windows 7 Pro and got error "Failed to configure the event manifest"

hi support team, sql server forum support team asked me submit question in team. here original link: http://social.technet.microsoft.com/forums/en-us/sqldatabaseengine/thread/6782a54f-ef75-407c-a89f-40d025830332 problem: i can't install mbca (mbca_setup64) on windows 7 pro , got error "failed configure event manifest". tool requirement for using sql server 2008 r2 best practices analyzer. tried reboot server , ran administrative account. still failed. following error id 1013 in application event log. *************************************** log name:      application source:        msiinstaller date:          7/24/2012 9:18:13 am event id:      1013 task category: none level:         error keywords:      classic user:          xxxxxxxxxxx computer:      xxxxxxxxxxxxxxxxxxx description: product: microsoft baseline configuration analyzer 2.0 -- failed configure event manifest. **************************************** objective: operating

How can i filter two data extension?

hello together, unfortunately code bellow didnt work ... dir c:\users\whitehouse_obama\ -filter *.exe *.docx | foreach-object { copy-item -path $_.fullname -destination \\hyperv1\shared\scripts } greets dir c : \users\whitehouse_obama\* -include *. exe, *. docx | copy - item - destination \\hyperv1\shared\scripts or copy-item c : \users\whitehouse_obama\ * -destination \\hyperv1\shared\scripts -include *. exe, *. docx Windows Server  >  Windows PowerShell

Group Policy Printers - Event 4098

Image
hello , in advance, we rolled out printers via gpp, server using server 2008 r2 , functions domain controller. the clients receiving printers without issues, however, server recording warnings.. the user "printer" preference in "ou" .... group policy did not apply because failed error code 0x8007007b, filename, directory name or volume label syntax incorrectly, error suppressed. we rolling out printers shared printers 'update' option , not 'create' any appreciated, cu hi, thanks posting. this issue record in ms kb 973356. error message when create 1 or more network printers in windows server 2008-based terminal server session: "printers cannot installed" http://support.microsoft.com/kb/973356 but article and hotfix is applied windows server 2008. for windows server 2008 r2, don’t find such hotfix , article. may try hotfix , workaround in above article check whether fix issue. meanwhile, please check article: even