TSGateway connections result in repeated requests for credentials.
hello,
all 2k8 r2 servers with tsgateway on iis server. attempts connect tsserver through gateway end in repeated requests credentials no errors. logs indicate tsgateway passed request on tsserver. tsserver logs indicate accepted credentials. still credential requests.
it looks server accepting credentials hanging up. next credential request shows in logs reconnect.
i have attempted connect tsfarm and/or management server. both results same.
internal , external requests have same results. no change fqdn vs. netbios names or ips.
no change if tsserver requires ssl (tls) or not.
no certificate errors. no popup errors.
i can connect directly any domain servers through 3389. internally , externally.
any idea why terminal servers hang after authentication?
thanks again,
robert
ok here answer?
2k8r2 , iis7
tsgateway repeatedly asks credentials not log in...
turns out tsgateway doesn’t connection , authentication, iis does. surprise, ya know….
tsgateway filters , routes.
so, now, part of iis connection , authentication tsgateway? don’t know. , apparently, no 1 else either. if mess authentication settings of rdweb, rpc, rpcwcert, default web site, authdiscover, can make work…
this article. see, it’s shot in dark them also.
http://serverfault.com/questions/8597/ts-rd-gateway-authentication-problem-the-logon-attempt-failed
note: apparently, redirection of default web site breaks communication rdweb , therefore tsgateway.
http – https redirection…
it looks default web site came https wanted reachable http users.
so created redirection web site redirect http requests default web site https. works great stopped tsgateway authentication. (i think because port 80 being used redirection web site. , reason, rdweb uses port 80 443 communications…)
by way, if turn off require ssl in ssl settings on default web site in iis, work correctly , same thing…
anyhow, start getting rdweb working correctly then, work on tsgateway.
rdweb should have only: anonymous authentication enabled
autodiscovery should have anonymous, basic , windows authentication enabled.
owa: basic only.
rpc: should have: basic , windows authentication.
rpcwcert: should not have enabled.
at lease settings in setup…
good luck.
robert
Windows Server > Remote Desktop Services (Terminal Services)
Comments
Post a Comment