Posts

Showing posts from January, 2014

Run As Administrator is blocked by taskbar

Image
i think title says all.  but when right click item in task par, right click on item in jump list, context menu shows behind taskbar, making hard click on menu items.  see attached screenshot.   there nothing wrong taskbar. you don't see run admin because item not have option. take conemu64 example...... if click @ the down pointer on right of open, see unpin taskbar , properties. not items have run admin option. here screenshot of snagit9.............. and windows live mail...... Windows 10 Insider Preview  >  Windows 10 Insider Preview Feedback

group membership

hello, in order automate tha user management activity in company requested our internal development department application sincronyze hr department database active directory; at same time requested application able make user member of security , distribution group based on conditions; what did not mention developer should able implement reversed membership rule when condition false remove user groups; the application received works this: pharse users in hr database , execute syncronization conditions make; developer advice first condition 1 remove users groups member of , following conditions make him member of grups witch condition true (no mater if user new or existent); can syncronization process messup active directory unjoining , joining 3.000 usesrs 100 groups once day ? thanks. rid not wasted joining & disjoing users or group related creation of objects. http://social.technet.microsoft.com/wiki/contents/articles/648.how-do-i-synchronize-users-from-active-

PC logs into Domain Controller in wrong site

i have pc logging in our higher headquarters taking insanely long logon times. under assumption pc logged in dc associated site in.   subnets our site are correct in active directory sites , services shouldn't pc pick our 2 dc's first logon? what can i do ensure pc never logs on incorrect dc? howdie!   on 04.10.2010 23:14, defense backups wrote: > have pc logging in our higher headquarters taking > insanely long logon times. under assumption pc > logged in dc associated site in. the > subnets our site correct in active directory sites , services > shouldn't pc pick our 2 dc's first logon?   can perform following commands client (you need install support tools this):   nltest /dsgetdc:<domain>   and within nslookup: set q=srv _ldap._tcp.<site name>._sites.dc._msdcs.<domain name>   what domain controllers returned? if it's both _wrong_ dc different site, there's trouble dns , you'll h

MS 2008 R2 Drops Remote Desktop Sessions in 10 seconds or less every time

  i'm adding new 64-bit server our domain. seems fine except when accessing machine using remote desktop, after few seconds connection lost. error message "this computer can't connect remote computer." "try connecting again. if problem continues, contact owner of remote computer or network administrator." a similar result telnet on port 3389. able connect if hit key connection host lost. the event log shows successful login. no errors. can please make sure remote desktop enabled on server. control panel -> system -> remote settings -> allow connections computers ... enabled. please can verify there no 3rd party firewall installed , blocking port 3389. Windows Server  >  Remote Desktop Services (Terminal Services)

Off Topic: Windows Search 4.0 find folders matching string

apologies off-topic post ... have spent unproductive 1/2 hour trying work out how make windows search 4.0 (the desktop version running on vista client) allow me to: -- find folders (only folders, not files) ---- in current directory (lets c:\ not including sub-directories) ------ match string *jan* (i.e. have "jan" somewhere in folder name) i'm string myself in frustration.  can save me? hi, better understand windows search, please refer following articles: windows search videos http://www.microsoft.com/windows/products/winfamily/desktopsearch/overview/videos.mspx windows search asked questions http://www.microsoft.com/windows/products/winfamily/desktopsearch/technicalresources/techfaq.mspx windows search 4.0 administrator's guide http://technet.microsoft.com/en-us/library/cc772446(ws.10).aspx thanks. this posting provided "as is" no warranties, , confers no rights. Wi

Automatically create ODBC DSN connection with special port and password. Add-OdbcDsn cmdlet

hi, i first posted question in sql forum i'm posting here instead because powershell question. in non-persitent vdi enviroment trying automatically create odbc dsn connection sql server. we using windows 8.1 have powershell 4 add-odbcdsn cmdlet.  but when trying add set -setpropertyvalue network port different default , password error. here command: add-odbcdsn -name test -drivername "sql server" -dsntype user -setpropertyvalue @("pwd=test", "server=10.0.0.1") and here error message: add-odbcdsn : attempt set {uid or pwd} key of dsn. these keys should not stored in registry securit y reason. provide credential information @ runtime via sqldriverconnect, sqlconnect or sqlbrowseconnect. @ line:1 char:1 + add-odbcdsn -name test -drivername "sql server" -dsntype user -setpropertyvalue @ ... + ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ + categoryinfo : invalidargument: (msft

Added new server - GPMC can't see it

ok, so, i've setup new server running 2008 r2, , it's going new wsus server workplace. now, in order work, have exclude couple of rules in gpo. (it's complicated, i'm new here.) i've logged domain, , it's visible in active directory, when try add exception gpo in group policy management console, doesn't come when search it. every other machine naming prefix does, though. i logged domain 4 hours ago. ideas? hi, first of all, please check replication health of domain running repadmin /showrepl on each domain controller in domain and force run replication and try again exclude. https://technet.microsoft.com/en-us/library/cc794749(v=ws.10).aspx in addition, here step-by-step article exclude individual users or computers group policy object, follow , have try: http://www.grouppolicy.biz/2010/05/how-to-exclude-individual-users-or-computers-from-a-group-policy-object/ please note: since web site not hosted microsoft, link may change without notic

unable to successfully cleanup cluster in windows 2012

hi, i unable create failover cluster on windows 2012r2. receiving error message "unable cleanup cluster in windows 2012". i have performed following steps still getting error: step-1: prestage computer account name of new cluster account , disabled (the account must disabled when create cluster wizard run, can confirm account use cluster not in use existing computer or cluster in domain). step-2: active directory users , computers , right click properties of prestaged cluster account. click on security tab , click advanced button of accounts. clear checkbox allow inheritable permissions parent propagate object , child objects . select remove when security dialogue box opens. step-3: replicated changes other domain controllers step-4: create cluster , validate please guide regards sajid sajid cluster account have created? create clusters in powershell , if watch first 2 minutes of video can watch me create cluster 3 x laptops (one domain co

What CAL's are needed

ok confused cal's need. here situation. 5 users each own laptops running windows 7 connected windows server 2003 terminal.  i trying upgrade new 2008 sr1 sp2 server terminal.  i have been reading on client access licencing surprisingly enough cal's never discussed in server college course, uncertain need , devices running on new server.  any appreciated! hi, please call licensing service @ microsoft questions. (in united states, call (800) 426-9400) at first need 5 cal because connect windows 2008, 2003 cal no longer valide. connect via terminal server ? need ts-cal too. thanks Windows Server  >  Windows Server General Forum

DHCP-NAP Enforcement- DHCP Scope with reservation.

hi , is possible configure dhcp-nap enforcement dhcp scope have reservation. because found dhcp-enforcement not working dhcp reservation scope, clients being quantine not getting static route of remedy servers , once client quantine , become out of network. the same configuration woking fine dhcp scope have no reservation. is there option use dhcp nap reservation. thanks & regards, anil a singh no, drawback dhcp-nap when ip reserved or manually configured.  as of now, nothing cant don't. may opt 802.1x if want authentication of reserved ip's. arnav sharma | facebook | twitter please remember click “mark answer” on post helps you, , click “unmark answer” if marked post not answer question. can beneficial other community members reading thread. Windows Server  > 

need advice on which licensing to buy

i work in pc tech support day, , have supported friend's small business on , off last few years. tasked upgrading aging win 2000 server , thoroughly confused microsoft's new terminology services , licensing windows server 2012. here's exists on site: 2 ms dos pcs (before ask - specialty manufacturing equipment) 4 xp pcs (also manufacturing equipment) 4 windows 7 clients windows 2000 server central repository of programming files manufacturing equipment 5-10 users (employees, including myself maintenance tasks) what i'm adding: new server windows 2012 server. 5 thin clients adobe reader, ms office applications only. i understand rds more or less citirx, , not licensing mechanism controls rdp sessions, thought.  need know minimum (cheapest) amount of licensing required above scenario.  had spec'd out server 2012 standard 10 user cals, i'm seeing if want configure thin clients in way have special access need rds cals well. than

server 2003 lock screen problem

hey we have 2003 server entireprise edition , our clients connecting terminal services rdp working 1 program. problem when connecting our clients or me (local) our server no problem when dont touch 5 min server 2003 asking password screen saver..we dont want asking password want connected...how can ?  thanks..   hi, you can set in group policy. user configuration--administrative teplates--control panel--display--screen saver timeout if set value zero screen saver never kick in. technology changes life…… Windows Server  >  Remote Desktop Services (Terminal Services)

Virtual File Server Disappears after a few hours

hi everyone, not sure if should go here or in file server forum. we migrated our network shares virtual (hyper-v) file server. and randomly after few hours server disappears. (can not access start->run->  \\servername ) however, can still ping server, , remote desktop it. all event logs clean, both on parent server , virtual file server. to fix, restart virtual file server, nothing else. but shares/server disappear anywhere little 2 hours as 12. this brand new dell poweredge 2950-iii 16gb ram , 2 quad-core xeon 2.33 cpus. the parent server running win2008 standard 64bit, and running hyper-v roll, nothing else. the file server running win2008 standard 64bit, and running file server roll dfs (though no replication partners yet) publish share ad. the other software installed on 2 machines symantec endpoint protection 11. and using anti-virus feature (network intrusion, etc... disabled. it did not make difference when trying access via \\servername\sharename or \\domainname.com\shar

Shutdown missing?

on windows 10 enterprise preview, else not getting shutdown option?   "disconnect" , if right-click on start menu, "shutdown options >> logout                                                           >> disconnect this isn't happening on windows 10 preview (non-enterprise).  i checked settings , seems in order.  does local administrators , domain administrators.   unless i'm missing something. i have shutdown option on 2 vms running enterprise preview. know option shutdown not there if connected via rdp. end either creating icon or running shutdown command run prompt. Windows 10 Insider Preview  >  Windows 10 Insider Preview General

SEL Full

my dell poweredge running server 2008 sp2 displays error stating "i1912 sel full" believed due system error log being full having cleared , checked see set overwrite still error. 2 restarts still have not cleared error. hi eph6v14, thanks posting in wndows forums. the event id sel full related lcd status messages and not related windows generic error messages, recommend contact dell further assistance. sel full system event log full of events, , unable log more events. clear log deleting event entries. below link dell explains lcd status messages. http://support.dell.com/support/edocs/systems/pe2900/en/hom/html/about.htm sainath !analyze Windows Server  >  Windows Server General Forum

Unable to access desktop remote in AWS and create WIMP for WP site

hello,  so brand new have created instance in aws , trying access remote desktop set lambda db , php login , having trouble connecting remote desktop. please advise.  thanks,  rachel w.  415-748-9773 hi, thanks post. since query involves aws environment, think better of start following article:  connecting windows instance using rdp http://docs.aws.amazon.com/awsec2/latest/windowsguide/connecting_to_windows_instance.html please note: since web site not hosted microsoft, link may change without notice. microsoft not guarantee accuracy of information. and contact aws support further help. if have further questions or encounter issues microsoft remote desktop, please feel free tell us, try our best you. best regards, alvin wang please remember mark replies answers if , unmark them if provide no help. if have feedback technet subscriber support, contact tnmff@microsoft.com . Wind

Certificate issues

i have problem can't seem resolve. here set up. have sbs 2008 , sql-srv 2005. program remote pc connects sql server. problem started when certificate expired. (for love of things ever why wouldn't self signed certificate not expire or @ least auto renew). @ point remote pc getting "expired cert..." error anyway, renewed certificate through "sbs console\network\connectivity tab\certificate..." , instead of getting expired message, getting following. "remote desktop server address requested & certificate subject name not match." there easy way fix this? haven't dealt certificates , struggling here. remote machine not on domain. 1. how, specifically, tell remote desktop gateway server address is, , 2. how determine remote workstation thinks should be. think 1. in ts gateway manager \ "view ts gateway farm members" \ ssl certificate tab. however, viewing on server1 (the sbs2008). 2.

Linux Redhat and Live Migration Problem

hi all, we've set simple hyper-v farm made of 2 server 2008 datacenter hosts - hv1 , hv2. we've got live migration working seamlessly our windows hosts - drop 2 ping responses , carry on if nothing ever happened. however, when linux redhat 5 guest (installed integration components per ms documentation) live migrated it's network seems stop working. when happened tried ping both guest , out of guest no luck when ping ip address guest network becomes active again externally , internally. has ideas why happen? many thanks, tim hi tim you need set mac (ethernet) address of virtual machine static. vmm makes quite easy.  failing set mac static can cause issues vm appears go offline.  there example of on ms support site (kb976724) .  in scenario, sles 10 sp2 live migrates, changes mac address on new host , loses it’s ip configuration.  because linux distro binds ip configuration mac address.   if post helpful, please mark such _________________________

DFS wrong active target

hey, i'm having problems dfs namespace not connect correct dfs target.  following setup have: two sites bruxelles , houston (correct ip ranges have been assigned) houston site connected checkpoint vpn gateway bruxelles site bruxelles have domain controller , houston not have domain controller locally dfs namespace \\domain.com \ deployment one dfs target in houston (\\server02 \ deployment) , have primary dns setting dns server in bruxelles  one dfs target in bruxelles (\\server01 \ deployment) when an houston user try access dfs namespace connect dfs target in bruxelles. knowns problem could be? when configure the dfs target folder   “exclude targets outside of client's site.” . if check properties of folder in dfs namespace , go tab dfs see bruxelles target folder , not houston target folder. is because there no domain controller in houston , no dns server available? suggestions appreciated! thanks! hi, i believe, yes, reason being, there no dns/dc av

Microsoft Word won't open at all.

Image
when click on word shortcut in toolbar @ bottom of screen, little animation before opens. nothing happens. i've tried opening start menu same thing. tried going programs , repair, option uninstall (and part of 2010 package.) help!? hi, how other applications? try start word in safe mode check issue: http://office.microsoft.com/en-us/excel-help/work-with-office-safe-modes-hp010354300.aspx jaynet zhang technet community support Microsoft Office  >  Word IT Pro Discussions

Password Policy Requirements - Show Complexity Rules When Changing Password

hello, we have complexity requirements enabled on our default domain policy , show rules when users required change password. best method so? at time, see "unable update password. value provided new password not meeti length, complexity, or history requirements of domain." expand message show rules. thanks in advance. hi, far know, there no built-in function/feature show password complexity rules when changing password. have 2 workaround: 1.    customize gina. how change windows change password dialog reflect our custom password policy http://blogs.msdn.com/alejacma/archive/2008/11/11/how-to-change-windows-change-password-dialog-to-reflect-our-custom-password-policy.aspx 2.    create changing password script. create script display password complexity rules before prompt user change password. deploy or copy script every user’s desktop. reference: how can change user’s password? http://www.microsoft.com/technet/scriptcenter/resources/qanda/oct04/hey1015.mspx i

Cannot access RWA, VPN etc over the Internet but RDP OK - Essentials Role on WS2012R2

hello i have hyper-v vm ws2012r2 installed plus essentials experience role rwa , vpn enabled. there 2 virtual nics 1 on lan , 1 on internet. both display rwa logon screen when accessed locally. both allow rdp no problem including on internet. however the rwa logon screen not display when accessed on internet. any ideas? it's driving me crazy! essentials not support running multi-homed (in other words can't have 2 nics) , trying break various features including anywhere access. Windows Server  >  Windows Server 2012 Essentials

IIS7.5 Web print server fails to install HP universal driver 5.1 (June 1)

hello everybody i have issue hp universal driver, , situation specefix , can reproduced. use windows xp sp3, , logged in local administrator. purpose of print server, users, can have http print , pay it. problem. when domain user logs on http://print/printers , connects printer hp universal driver 5.1 (june 1) prompted "a box wpnpinst.exe not exctract specific cabinet file dll file c:\windows\system32\spool\drivers\w32x86\3\hpcpn104.dll - fix install media. error comes domain users , domain admins. but, if \\print (provide credentials, no matter if domain user og domain admin) , install same hp printer, no errors. , if go http://print/printers , install second hp printer installs expteced. error appear everytime go http://print/printers first, , there no error ever if go \\print , http://print/printers have searched of web, , have found microsoft link. http://support.microsoft.com/kb/958910/da errors related? of hardware, use vm, 4

HttpSendRequestA doesnt return 12045 every time when the user is sending request to HTTP server

in our environment, http server having self-signed certificate not installed in client machine. using "httpsendrequesta" function  to send http request client machine http server. got below security warning pop during user authentication in client machine. proceed user authentication pressing “yes” in below pop window. same function "httpsendrequesta" sending request server when client machine coming out of sleep/hibernate, or laptop having wifi connection reconnected server after 1 or 2 hour. in scenario,, dint below security warning. i have few question above situations. is there chance man in middle attack happen here? does untrusted certificate stored in machine temporally when accept below pop-up windows? how below pop window when client network changed? how below pop window every time when user sending http request http server? do have settings in ie below pop window? appreciate help. security warning: this page requires secure connecti

Redirected folders

hello, we manually redirecting "documents" or "my documents" folder our file server. is there dos command run and  see who's folder being redirected file server? thanks, n hi, for each user, can query value of personal data under the "hkcu\software\microsoft\windows\currentversion\explorer\shell folders" registry key. should able accomplish through script. tad more complicated if going query machines remotely need resolve sid of current logged in user able query correct registry key. for scripting questions, please post @ official scripting guys forum. regards, salvador manaois iii mcse mcsa ceh mcitp | enterprise/server admin bytes & badz : http://badzmanaois.blogspot.com scripting, sysadmin way : http://sgwindowsgroup.org/blogs/badz Windows Server  > 

Questions on using FSMT

Image
dears, i migrating file server forest forest environment: source forest: (its windows 2008 server having shared folders , permission users , groups, no file service or dfs installed). target forest: (2 windows 2008 r2 servers running file server role dfs-r, replication server1 drive d server2 drive d) current situation: groups , users migrated using admt 3.2 source forest target forests, users able access files on file server in source forest. my questions: 1-       do have configure dfs conciliation root wizard “which belong fsmt”?? p.s. remember source forest not have dfs, single server no file server role, shared folders. 2-       if yes, in dfs conciliation root wizard page servers consolidate should provide in following fields: original computer name , dns suffix: “is source server name or target root dfs server name? or source dc or target dc?” current name: ““is source server name or target root dfs server name? or source dc or target dc?”” 3-     

IAS radius on windows server 2003 - regex

Image
hey, i working on clearing of duplicated remote access policies vpn gateways (seems admins not able use regex efficiently). i following doc http://technet.microsoft.com/en-us/library/cc737419%28v=ws.10%29.aspx , have couple of questions, can't test anywhere now. when defining nas-ip multiple hosts various subnets. below work ok ? nas-ip =  192.168.2.*|192.168.3.1|192.168.100.2*|192.168.200.* can use pipes indefinately? combination of asterix , pipes work together? need put brackets kind of filter? thanks in advance hi mishaelpl, thank question. trying involve familiar topic further @ issue. there might time delay. appreciate patience. thank understanding , support. jeremy wu technet community support Windows Server  >  Network Infrastructure Servers

Powershell and Set-VHD

so i'm learning powershell amongst other things work.  but 1 thing has caused me grind stop face set-vhd worked me no more week ago. last day or 2 literally stopped working , have no idea why. the error gives me follows: set-vhd : term 'set-vhd' not recognized name of cmdlet, function, script file, or operable program. check spelling of name, or if path included, verify that  the path correct , try again. at path.ps1:20 char:1 + set-vhd -path "path" -parentpa ... + ~~~~~~~     + categoryinfo          : objectnotfound: (set-vhd:string) [], commandnotfoundexception     + fullyqualifiederrorid : commandnotfoundexception file paths are definitely correct. can me understand why stop working out of blue? if don't have hyper-v module it'll fail, or if you're running powershell 2.0 , haven't run: import-module hyper-v before running command. hope helps! jason

RSH

geting following error message rsh on windows server 2008 r2:   rcmd: setuid(1150456): operation not permitted  have no problem using rsh command 2003 & w7. anyone?   hello, what doing? do use runas or elevated command prompt? best regards meinolf weber disclaimer: posting provided "as is" no warranties or guarantees , , confers no rights. Windows Server  >  Windows Server General Forum

updates for phones

hey  i kishan agarwal india have installed windows 10 technical preview on lumia 630 u guide wen next udate wil come.... regards. hey  i kishan agarwal india have installed windows 10 technical preview on lumia 630 u guide wen next udate wil come.... regards. please read windows article........ http://blogs.windows.com/bloggingwindows/2015/02/12/announcing-the-first-build-of-windows-10-technical-preview-for-phones-2/ excerpt: since we’re building windows 10 same core platform pcs, tablets , phones, should no surprise participating in program phones work pretty same way has been working pcs. join windows insider program register device receive builds on air updates builds come automatically ready, after being validated engineers @ microsoft , used on own phones use built-in windows feedback app send problem reports , suggestions updates continue way final build goes out customers you can roll phone previous os time you’d like

Changing Single Label Domain Name Structure with .local and msd.local Child domain to just msd.local.

we have forest root being .local , child domain of msd in forest.  our environment mixed windows server 2003 , 2008 r2 dc's, exchange 2003 server , sql 200 server.  there way using active directory domain rename tool allow merge .local , msd.local 1 root level domain msd.local or better create new domain , migrate it? domain rename tool can used “rename” domain not “merge”.   if goal merge these 2 domains, need perform migration using migration tool.   microsoft has free migration tool called admt: http://www.microsoft.com/download/en/details.aspx?id=8377 santhosh sivarajan | mcts, mcse (w2k3/w2k/nt4), mcsa (w2k3/w2k/msg), ccna, network+ houston, tx blogs - http://blogs.sivarajan.com/ articles - http://www.sivarajan.com/publications.html twitter: @santhosh_sivara - http://twitter.com/santhosh_sivara posting provided no warranties,and confers no rights. Windows Server

Can't join Win 7 PC to domain

Image
my network consists of win 2003 dc win 2008 server , xp client (vm) joined domain. when try add win 7 pc domain error message: dns queried service location (srv) resource record used locate domain controller domain "dbtaylor.dev": query srv record _ldap._tcp.dc._msdcs.dbtaylor.dev following domain controllers identified query: dtserver2.dbtaylor.dev no domain controllers contacted. common causes of error include: - host (a) or (aaaa) records map names of domain controllers ip addresses missing or contain incorrect addresses. - domain controllers registered in dns not connected network or not running.   ========================================== ipconfig/all win 7 client pc   microsoft windows [version 6.1.7601] copyright (c) 2009 microsoft corporation.  all rights reserved.   c:\users\dreddog>ipconfig/all   windows ip configuration      host name . . . . . . . . . . . . : dtws1    primary dns suffix  . . . . . . . :    node typ

Batch file for deleting folder/files from last 7days

i tried execute above script deleting files machine. getting following error. can please check it script tired :  forfiles.exe /p "c:\users\vinay\desktop\" /s /m *.* /d -7 /c "cmd /c del @file getting error -  error : invalid argument/option - '@file' . type "forfiles /?" usage. please let me know how fix it. thanks you have missed closing double quotes @ end of command, try below one forfiles.exe /p "c:\users\vinay\desktop\" /s /m *.* /d -7 /c "cmd /c del @file" regards, mc manikandan Windows Server  >  Windows Server General Forum

Windows server 2008 32bit print spooler

i have print server on windows server 2008 32bit (vm on hyper-v) , managing around 800 printers through it..from last 4-5 months print spooler service in creating problems, gets stop.i have checked event log , found pathern before service stops got warning: unable initialize standard tcp/ip printer port ip_10.1.61.142_. event id 204, source tcpmon can me out. refer kb: event id 204 — standard tcp/ip printer port monitor status http://technet.microsoft.com/en-us/library/cc773877(v=ws.10).aspx to resolve issue, use following procedure: 1.close unecessary programs, , retry printing document. 2.if problems persist, determine whether computer low on system resources such cpu resources, disk i/o performance, or memory.  to identify causing system low on resources, can generate system diagnostics report using reliability , performance monitor, or can use resource monitor determine (in real time) applications or services utilizing many system resources. more informat

Running Invoke-Command scriptblock - strange results

hello. i set bios ad computers. dell pcs there piece of software named cctk, , should when running on  localhost, have strange problems running through invoke-command cmdlet. here's code: function set-adcomputerbios { param ( [parameter( position=0, mandatory=$true, valuefrompipelinebypropertyname=$true ) ] [string]$name ) begin { # basic vars $currentdate = get-date $cd = get-date -date $currentdate -format yyyymmddhhmmss $logfile = "log_$cd.txt" new-item $logfile -type file | out-null # add date log add-content $logfile $currentdate; [scriptblock]$scriptblock = { set-location "c:\cctk" cmd.exe /c "cctk.exe -l c:\cctk.log -i v1.2.p.cctk" return $lastexitcode } } # iterate throu

On Server 2012R2 AD controllers System Center Enpoint Security Update fails to download and install

Image
my servers ad service installed on them fail av def  update system center , when open end point security application , select update tab , click on update button following error message:   this app couldn't check virus , spyware definitions updates. check internet or network connections. at bottom of error message under support additional information:  error code x80248014  (the definition updates could't installed. please try again. ) the servers can check windows updates, download udpates, , install them on internet, can't end point security av program running on server.  we have setup policy in system center correctly, because our windows 7 , 8.1 workstations updates both automatically system center or when opening program , manually running update. servers before installing ad service on them received updates fine workstations.   in ie, under trusted sites, update servers listed. allowed av program through f/w after updates starting failing, wasn'

Adobe Printing From a Mac During the RDP Session - Not Working

hi, thanks in advance. i have rds working on 2012 server. have 4 windows users , 1 mac user. user mac can print afficio copier printer locally mac computer, problem when come printing adobe pdf printer. with adobe acrobat program install on windows server, adobepdf printer object created. can print mac user login , password windows pc, , can print adobe printer redirect locally. however, when user connects rdp session, if selects adobe pdf printer object, says deleted. the mac os, unlike windows os, not create adobe pdf printer object in printers list. please person the mac computer vice president of company!      hi, please ensure corresponding printer driver installed on rds server. you may try find whether related events logged on rds server under event viewer -> applications , services logs\ microsoft\ windows\printservices. best regards, amy please remember mark replies answers if , un-mark them if provide no help. if have feedback technet subscriber

Bulk Changing "Allow Inheritable Permissions..." under Advanced Security Settings of Folders

hello, i have home folder contains hundreds of user home directories on 1 of windows 2003 servers. reason, many of them not have "allow inheritable permissions parent object...." checkbox selected. preventing administrators group being inherited "home" directory, preventing me performing robocopy on of home subfolders. i'm trying figure out way bulk set "allow inheritable permissions" checkbox. cacls doesn't seem have functionality. i've downloaded , tried setacl, can't seem i'm trying accomplish. have other suggestions? thanks. as administrator not have permission on these folders, need take ownership first before change permission settings. please noticed need set ownership orignial user or cause new issue. you can use icacls or takeown job. in addition may need set script this. should able find 1 script forum: the official scripting guys forum! http://social.technet.microsoft.com/forums/en/itcg/threads/ shaon shan

Questions about CA type, best for my environment?

hello,  i need bring ca in customers domain.  they need ldaps, nothing else.  i have been reading , appears easiest way install on dc ldaps ready go.  i have few questions. 1:  does installing on dc in ad mode cause changes should concerned with? can merely installing cause problem? 2: reading says, don't install on dc.  i thinking of installing standalone ca issuing cert dc.  is strategy?  as standalone ca able out if want use ad integrated ca in future?  does installing standalone ca pose problem? 3:  in future, if want whole multi-tier pki, won't hard out of minimal installation right? thanks! with small of need - might easier , less of headache commercial cert. installing own ca possibility, ever time see small requirement this, inevitably gets ignored , forgotten until breaks , causes bigger headache.  mark b. cooper, president , founder of pki solutions inc., former microsoft senior engineer , subject matter expert microsoft active directory certific

Cannot add users to folder permissions

Image
we have file server (server 2003 r2 member of 2003r2 domain) on can no longer add users folder security permissions. when try enter username , click check name says can't found , if click on locations ad tree below domain name won't expand - domain name , + box disappears below. on server in admin tools aduc not work either uninstalled , can't re-install... i able add permissions files , folders on server remotely, i.e. browse admin share relevant drive on server desktop pc , find file / folder , add permissions way. after doing permissions appear on server, can't add them directly?!? i'd considered removing server domain , re-adding server has number of user , application shares lost, i'm concerned might stop working altogether.  i've tried sfc /scannow don't have install disks (as wasn't left them took on from). i'd grateful of diagnostic / suggestions fix issue thanks what have uninstalled - ad? same names different ide

NAP with WSUS Server for Windows Update, how does NPS determine client PC really have latest update installed?

hello, nap wsus server windows update, how does  nps determine client pc have latest update installed? don't see information exchange between wsus server , nps nps knows latest updates. thanks. hi, this  blog entry might explain. see section describing "number of hours since last scanned" , section on remediation. from remediation section: "the wsha on client query windows update agent on client updates upon boot or upon joining network, , every hour thereafter. if windows update agent reports update missing, wsha generate nap message , wshv enforce compliance per nap policy." i think answer question wsha on client computer reports nps after talking windows update agent. -greg Windows Server  >  Network Access Protection

Which server do I need?

im using whs v1 3 desktop, 1 laptop , printer.    want able computers, file share docs , music. files kept , acssed server, programs can run on computers themselves. able accsess them school, library or friends house. i'm confussed on different server software availible. need 1 one need. i start disclaimer:    i haven't worked on of server editions mentioned below ! won't able comment further if have specific questions on versions. you might want review specifications of ws 2008 r2 foundation edition http://www.microsoft.com/en-in/server-cloud/windows-server/2008-r2-foundation.aspx or you might want try windows server 2012 beta essentials http://www.microsoft.com/en-us/server-cloud/windows-server-essentials/default.aspx also, you might want post question in windows home server 2011 forum, might more inputs http://social.microsoft.com/forums/en-us/whs2011/threads windows server 2012 beta essentials general forum here http://social.technet.microsoft.

RODC in DMZ - DNS questions

when rodc put dmz (so other servers in dmz have authenticate with), should have secondary dns zones or stub zones copied it? or neither? if hold zone information, other servers in dmz need have dns settings looking @ rodc lookups? i found article doesn't address question. howdie!   am 22.12.2010 22:23, schrieb jonpants: > when rodc put dmz (so other servers in dmz have to > authenticate with), should have secondary dns zones or stub zones > copied it? or neither?   have replicate domaindnszones forestdnszones. you have dns ad-integrated? if so, let dns server.   > if hold zone information, other servers in dmz need > have dns settings looking @ rodc lookups?   yeah, clients need ask rodc dns advice, i'd put in there. depending on want failover , config looks (firewall restrictions dmz corpnet), might or might not want have clients ask dc server in internal network secondary dns server.   cheers, florian     the

Expired Certificate

hello, receiving event id: 64 stating certificate local system thumbprint <thumbprint id> expire or expired. when accessing certificate , attempting request new certificate receive "enrollment error" "the request contains no certificate template information." the certificate listed follows: issued to                              issued by            expiration date            intended purposes           friendly name            <servername> - server       <servername>   12/31/2016                  <all>                             <none> is certificate necessary? have 1 exchange. any advice appreciated. thank you hi, >>is certificate necessary? have 1 exchange. it hard say,you should check yourself. in eac @ servers > certificates , verify server installed certificate selected. select certificate, , in details pane, verify assigned services property contains services selected. >>when acce

Delegate Report - 'System.OutOfMemoryException'

using script below output publicdelegate , publicdelegatesbl attribute. script working fine using memory available , stops working after processing 300 users.   how can optimize doesn't use memory? error below. '=' operator failed: exception of type 's ystem.outofmemoryexception ' thrown.. @ d:\data\behalf of.ps1:6 char:21 + $publicdelegatesbl = <<<<   $_.publicdelegatesbl | get-qaduser | foreach {$_.name}     + categoryinfo           : invalidoperation: (:) [], runtimeexception     + fullyqualifiederrorid : operatorfailed add-pssnapin quest.activeroles.admanagement $users = get-qaduser -sizelimit 0 -dontusedefaultincludedproperties -includedproperties publicdelegates,publicdelegatesbl -ldapfilter '(publicdelegates=*)(publicdelegatesbl=*)' $users | select * | foreach { $publicdelegates = $_ .publicdelegates | get-qaduser | foreach { $_ .name} $_ .publicdelegates = [ string ]:: join ( ';