Posts

Showing posts from April, 2014

Event Log Readers

we want provide second line capability troubleshoot lockout events in ad. added second line support group (global group), builtin\event log readers in should access security log on domain controllers. we noticed second line did not have access although should. inspected default domain controller policy , saw tempered previous administrator. therefore decided reset default domain controller policy defaults (dcgpofix -target:dc). after resetting domain controller policy, second line support able access event log on domain controllers when open local event viewer on local computers. eventcombmt still fails.  in troubleshooting saw error when applying security client side extension of domain controller policy. after enabling advance logging, see following problem:   ----configure user rights... configure s-1-5-32-544. configure s-1-5-20. configure s-1-5-19. configure s-1-5-32-551. configure s-1-5-32-549. configure s-1-5-32-559. configure s-1-5-21-3044489760-29764

SChannel: How can I add custom cryptographic functions?

i want add additional cryptographic function utilized schannel, let's call tls_dhe_rsa_with_aes_128_cbc_sha. how that? still people out there alive using keyboard? working sql server/office/windows , poor keyboard support seem extinct... what windows os before? reg key path schannel below. below links go little more in-depth. can microsofts security advisory board releases of cipher updates , forth. hkey_local_machine\system\currentcontrolset\control\securityproviders\schannel http://blogs.technet.com/b/askds/archive/2011/05/04/speaking-in-ciphers-and-other-enigmatic-tongues.aspx https://support.microsoft.com/en-us/kb/245030 https://msdn.microsoft.com/en-us/library/windows/desktop/aa380512%28v=vs.85%29.aspx?f=255&mspperror=-2147217396 https://technet.microsoft.com/en-us/library/cc766285(v=ws.10).aspx https://support.microsoft.com/en-us/kb/948963 Windows Server

[Solved] NisSvc Fails to Start, Error 126

so have been trying move ad our physical win2k8r2 machine virtual one. has been going fine except nissvc service won't start, , error dialog box when try start manually in services interface saying "error 126: specified module cannot found". there nothing in event viewer error , trying start though ad snap in says couldn't started. information find on srvsvc.dll in c:/windows/system32 might missing or corrupt , copy working 1 machine. checked , nissvc.ddl file exists in c:/windows/idmu/nix exists , read 1 corrupt. cannot overwrite files since whole directory owned trustedinstaller , else has read access , don't want try , move files while offline since don't know sure problem is. can confirm fix or has more information it? if helps need service access unix attributes tab in user properties, if knows work around can give me without affecting functionality i'll take it. i forgot mention checked registry , paths correct , did try sfc no avail, hav

iSCSI Initiator & Target

is possible storage server 2008 r2 use iscsi initiator point isci target on same server?   tom mason hi,   the iscsi initiator cannot connect microsoft iscsi software target runs on same computer.   for more information, can refer to:   http://technet.microsoft.com/en-us/library/dd573325(ws.10).aspx     best regards, vincent hu     Windows Server  >  File Services and Storage

Need NIC to work with Hyper V

i have loaded server 2003 x64 , can not connect internet. have server 2003 x86 32bit working legacy network. 64 bit server 2003 not work legacy network. have intel dual port nic not work on guest operating system side. when dual port assigned external virtual switch guest os not ip address. there error in device manager network nic. think intel problem.   i want buy nic work without problems. recommend? the gui doesn't have on same machine. can install hyper-v manager on machine , remotely connect hyper-v server , use virtual machine connection connect virtual machines. search hyper-v server vmguest.iso. file contains need install integration services. need either attach iso running virtual machine or copy contents of virtual machine. once have files accessible running vm, run setup.exe install. Windows Server  > 

Windows 2016 Failover Cluster Storage options

i have failover cluster of 3 hyper-v servers using fourth windows server iscsi target storage. 2016, options have use 2 windows servers storage target in failover design?  can cluster 2 boxes , use replication? both storage servers have large sas arrays attached raid controllers. not know if can use storage spaces raid controllers. dell r710 servers dell perc h800 controllers.  both servers configured same.  windows server 2016 datacenter. windows server 2016 introduced storage spaces direct (s2d). s2d enables use internal storage replicated between nodes. check link more information's , requirements.  mcse, mcsa, ms, mcp, mcts, system engineer Windows Server  >  Windows Server 2016 General

How I can maintain separate TCP virtual circuit per each user accessing a remote share ?

i have 30 users on terminal server windows 2008 r2. users have access folder shared on remote server, example \\server1\documents at beginning users able access remote share after variable time share desappears , impossible contact remote share until restart terminal server. i know terminal server relies on underlying windows operating system establish transport client pool, , windows issue one   tcp/ip connection remote server – results in virtual client sessions , share mounts being multiplexed on single tcp/ip transport pipe remote server (server1) on `windows server 2008 r2 rds server` i'm trying maintain separate `tcp` virtual circuit per each user - allow separate connections remote \\server1\documents share per each user. on old windows server, can allow each terminal server client maintain separate virtual circuit using `regedt32`, navigate to: `hkey_local_machine\system\currentcontrolset\services\rdr\parameters` , adding value named `multipleusersonconnecti

Is there a way to add specific extension to the certificate template

Image
hi, working in specific sphere - "military messaging". in order assured security militaries need sign messages electronic certificate issued ms ca (2003 or 2008). in order level of access classified information determined - add pending certificate specific extension using certutil -setextension command. diffical military personel. prefer use card management system them. cms cannot invocate certutil command automaticaly. if can me, can show me way add extension certificate template, or other way add extension certificate automaticaly (before issuing of certificate or during request process) extremely grateful. in advance  hi, please refer following article administering certificate template: administering certificate templates http://technet.microsoft.com/en-us/library/cc725621(v=ws.10).aspx hope helps! best regards elytis cheng elytis cheng technet community support

WIndows Server 2008 R2

hi, want start learning windows server 2008 beginner. i'm planning buy several pcs to make home base network implement server. 1 of desktop computer serve server pc , rest client computers. need computer buying advice network. looking self learning materials configure server , later on go microsoft certificate exams windows server 2008. therefore expect advice buying appropriate learning materials me. came across list of books @ http://learning.microsoft.com/manager/browseresults.aspx?nav=trainingtype%3abook&nav=productandtechnology%3aserver+technologies%2f&nav=productandtechnology%3aserver+technologies%2fmicrosoft+windows+server%2f&nav=productandtechnology%3aproducts+and+technologies%2fserver+technologies%2fmicrosoft+windows+server%2fwindows+server+2008&btn=1&qry=windows+server+2008&navclicked=1 many malshan might read here. http://social.technet.microsoft.com/forums/en-us/winservergen/thread/1fe6c2a2-c3b8-40a5-a9c9-a4e2f2ae8c03       re

PowerShell w/ Citrix

all- i working on 6.5 xenapp farm , have been trying powershell working on xenapp server.  have downloaded xenapp 6.5 sdk citrix , installed it.  have tried on numerous servers run get-xafarm , have not been successful.  windows firewall disabled.  xenapp installed , handing out sessions on server working off of. thanks in advance. br please post citrix questions  in citrix forum. ¯\_(ツ)_/¯ Windows Server  >  Windows PowerShell

manage users traffic

dears, is there away on windows server 2008 allows me monitor end users network traffic (i.e. download speed). or other software's. preferred not installing on each client . thanks hi, with scom can achieve goal. think used in large circumstance. , deploy scom lot of work. on client side, can use source monitor or process monitor. cannot real-time monitor. for now, think can do. hope information valuable you. Windows Server  >  Platform Networking

Perfmon on Win2008 vs Win2003

looking explanation on - we're undergoing load testing our application (vs2008 c++ 32-bit, unmanaged) , seeing considerable difference in private bytes reading between win2003 , win2008 i.e. 25% more in win2008 (r1 sp2).  we're running 2 environments on identical hardware. also, if there memory leak (still investigating on but so far we've come empty with purify and umdh) when running on win2008 since private bytes graph seems going up, level off, again, level off, and not seem stabilize. the perfmon on win2003 (same binary) not see behaviour. erfmon graph on win2003 shows oscillation i.e. goes , down while in win2008 graph goes up, levels off, again, levels off etc.    are there changes in perfmon between win2008 or need adjust same setting of win2003?  or os memory management behaviour in win2008 ? example understand on servers supports power management,  the power management setting in windows2008 influences perfmon cpu reading. hopefully can give same insight on memory

Where is the correct location for unattend.xml?

i have been through many documents getting crosseyed! deploy windows 2008 image, correct location put answer file unattend.xml at? c:\sysprep ? c:\windows\panther ? c:\windows\system32\panther ? ? does image need both sysprep.xml , unattend.xml? guess yes because of different phases of install. btw - not using wds. still using ads product since on special network no active directory thanks in advance. -cybercoaster out no right or wrong... setup searches answer files in different locations... check "implicit answer file search order" section in article: http://technet.microsoft.com/en-us/library/cc749415.aspx there no sysprep.xml file per say, renamed unattend.xml, named anything... sysprep using different configuration passes (sections) in answer file... i haven't tried pxe booting winpe 2.x ads pxe server, scenarios where i couldn't use wds, have used jounin pxe server (doesn't require active directory). se below article... booting winpe 2.0 third party pxe

Remoteapp through a standard NATing firewal

i'm attempting setup simple remoteapp environment client needs remote access program. here's have: 1. server 2012 standard active directory dc (server12)   - has program installed on there   - rd session host   - rd gateway   - has rd web access   - has rd licensing 2. virtual hyper-v server 2012 standard connection broker (rdbroker) if i'm in building on intranet, or connected vpn, can access perfectly. however, remoteapp rdc connections looking connect rdbroker, instead of rd gateway. there way fix this? -nate for remote apps work via rdweb site need port 443 , port 3389 forwarded rds server, because works internally or via vpn sounds firewall need configured properly.  some people saying 3389 not required if not forwarded , doen't work solution. Windows Server  > 

Roaming profile help

hi all, i have set folder redirection on laptops , pc running mixture of win 7 , 8. when logon user none of backgrounds same nor of documents. how set in office whatever pc logon same files , settings? folder redirection not same roaming profiles.  never see need roaming profiles, users don't move between computers often.  however, if have need can add desktops , such "redirection" wizards. larry struckmeyer[sbs-mvp] Windows Server  >  Windows Server 2012 Essentials

WSB cmdlets don't work in WinPE

i built custom winpe disk , included powershell. one of scripts reads value "$var = get-wbjob....." initially windowsserverbackup module not included managed imported using "import-module" , visible under "get-command" it's associated cmdlets. problem is, none of cmdlets work. "add-pssnapin" returns "no snap-ins have been registered powershell version 4.0" "get-wbjob" returns "class not registered" ideas? profil sygnatura hi, as far know, not powershell commands used under winpe. we find more details optional components of powershell used under winpe, please go through below link: http://technet.microsoft.com/library/hh824926.aspx regards, yan li we trying better understand customer views on social support experience, participation in interview project appreciated if have time. helping make community forums great place.

migrate windows 2008 RDS licensing to Window 2012 server

i want migrate w2k8 rds user cal licenses want split in half , migrate 2 new w2k12r2 servers.  know if user cals purchased microsoft can split , move 2 separate servers?  also, if migrate rds licenses w2k8 server w2k12 r2 box, deactivate licenses on w2k8r server?  reason ask because want of backout plan in case new license server migration fails.  if not, can install licensing role on server , use grace period.  if goes wrong w2k12r2 server, licenses on old w2k8 server still work? see mixed results on different forums read wanted see if definite answer based on everyone's experience on forum. in advance! hi, for non-retail pack (open, select, enterprise, campus, spla, etc.) rds cals, yes, can split licenses up , install them on multiple rd licensing servers.  example, if have purchased 100 per user rds cals via open business, install 50 on 1 rd licensing server , 50 on second rd licensing server.  retail rds cals more difficult--one technique install pack on 1 se

WMI Filters not found problem

i installed new 2008 r1 server child domain, , created number of wmi filters, copied other child domains. today when went @ wmi filters, dialogue box titled "group policy management" text "not found". message gpmc (on 2k8 server) regardless of dc connect (2003 or 2008). the event errors teh group policy 7017 , 7006 (cannot access specified gpo). behavior appears whichever dc connect & persists beyond reboot of new server.   7017 , 7006 error seemed go away after reboot, , gpo's still being filtered out wmi filters, cannot see linked, or wmi filters still exist. ? symptom: in gpmc, when wmi filters selected, dialogue box titled "group policy management" text "not found" results, no wmi filters showing. problem: there replication conflict policy, causing corrupted policy & gpmc console not process wmi filters. the problem can seen using aduc on problem domain, , advanced features on ( under view menu): browse domain s

shutdown 2003 domain controller, Used new different name; same IP address on new 2012 DC - can I delete the old name object?

greetings, i promoted 2012 domain controller, with new name , ip,   shutdown old dc , re-ip'ed new dc old ip address. after reboot working fine.  deleted old dc object name ad.  can without interruption? thank you demotion using dcpromo have been preferred way go.  you should able away deleting computer object old dc using ad users , computers.  metadata cleanup included in modern ui, shouldn't need use ntdsutil cleanup of references old dc. i manually remove ns record old dc dns zone(s) not handled object deletion.  also, have through dns records anyway , see if there references old name (a, srv records) , delete them manually if find some. alexei Windows Server  >  Directory Services

Server 2003 subfolders premission

hi all, good day you, i have shared folder projects in windows server 2003 , projects folder contain client folder a,b,c,d,e......... on each client folder a,b,c..... has estimation folder(in folders). i want  restrictions on  only estimation folder (which belong client folders) all users except admin. please help! regards shabir                                     hi, can copy below commands notepad , save batch file (filename.bat) set permission " estimation " folder inside shared folder. @echo off set count=1  for /f "tokens=*" %%g in ('dir /ad /b "estimation" /s') ( cacls "%%g" /e /g "level 3":r ) steps execute above batch file - login in file server " main " administrator. - place above batch file in root of shared folder , run there.    in case under path, g:\landscape project . regards, gopi jiji technologies

Error trying to download hot fix

hi, i'm trying download these 2 hotfixes: https://support.microsoft.com/en-us/kb/968730/ https://support.microsoft.com/en-us/kb/938397/ after entering email address email link download  ( http://hotfixv4.microsoft.com/windows%20server%202003/sp3/fix262679/3790/free/375531_enu_x64_zip.exe ) said link returns server error. can guys fix it? cheers comes right down no problem here. try different pc       regards, dave patrick .... microsoft certified professional microsoft mvp [windows] disclaimer: posting provided "as is" no warranties or guarantees , , confers no rights. Windows Server  >  Windows Server General Forum

Hyper-V and creating trust beetwen domains

hi, i have created tvo virtual machines (2003 sp2 -  forest level 2003 , 2008sp1 - forest level 2008) on hyper-v. both machines dcs each 1 in different forests, on same subnet, without firewalls beetwen them (internal firewalls disabled). dns configured on both machines conditional forwarding other domain. dns resolution working fine both domains on both servers. but when want create 1 way outgoing trust (2008 domain trust users in 2003 domain) error: "the local security authority unable obtain rpc connection domain controller" when use same password administator account on both dcs, trust created , validated no problems, , works fine. i read same issue on wmware component named "shared folders"... is possible simmilas issue hapening here? any ideas? greetings form slovenia ok, problem solved. i created trust using "netdom trust" command... and if delete trust , recreate using mmc console "ad sites , trusts" works, dosn't error ena more?! :

recommended backup methods for virtual servers

  hi   what best software or method backing virtual server images? have 2tb nas want use backing images, assume normal backup software wont work files in use. the way backup running vm type of vss aware backup solution @ host or backup solution agent within guest itself.   any of vss aware agents @ host backup @ volume level (not vm level) - mean backup volume (or folder) vm in.  therefore snapshots, saved states, etc.   to configuration of vm along that, need store configuration vm (on same volume).   an easy way fix (if didn't store configuration vm @ time created vm) export vm desired lun (any desired volume run from) import @ volume.   the export process gathers , parts of vm , neatly puts them in 1 place.  backup volume vss product.  btw, windows server backup vss aware product , works fine (if have  small budget) , can pump backup across network share. the end result of wsbackup vhd (yes, can mount , copy out vm later)   i not sure of integrati

MIGRATING FROM NETWARE TO WINDOWS ANY FREE HELP IF IM AN ENTERPRISE AGREEMENT MEMBER IN STATE OF CA

does ms provide free services if i'm migrating netware windows?  ea agreement member in state of ca....just asking. hi roy,   yes. have free service (microsoft windows services netware 5.03) migrate netware windows.   how migrate or deploy novell netware environment windows http://support.microsoft.com/kb/274279/en-us   resources interoperability , migration of netware , windows http://www.microsoft.com/technet/interopmigration/netware.mspx   netware windows server 2003 migration planning guide http://www.microsoft.com/windowsserver2003/techinfo/overview/sfnmig.mspx   the netware migration issue not simple project needs careful planning. if more detailed plans or solutions, recommend contact microsoft product support service solution. dedicated engineer can provide suggestions on kind of issue.   to obtain phone numbers specific technology request please take @ web site listed below.   http://support.microsoft.com/default.aspx?scid=fh;en-us;phonenumbers   if out

What is the best way for communication to be trusted between a domain server and workgroup server (not in domain)?

what best way communication trusted between domain server , workgroup server (not in domain)? we want set dmz server(in workgroup) to communicate internal domain server. dmz server have ssl cert(external ca-3rd party) and external domain name. internal domain server have ssl cert internal ca. unable to internal ca communicate 3rd party ca. (we thinking difficult this.) traffic following:  domain server>tcp 2001-unidirectional> dmz server; domain server<https 443-bidirectional> dmz server; dmz server>tcp 2010-bidirectional>domain server there way have certs trust each other? is there way have certs trust each other? to trust certificates, can use certificates snap-in on servers , certificates trusted ones. example shared here: http://blogs.technet.com/b/sbs/archive/2007/04/10/installing-a-self-signed-certificate-as-a-trusted-root-ca-in-windows-vista.aspx this posting provided no warranties or guarantees , , confers no rights. ahmed malek my webs

Install Exchange Server 2003 on Windows server 2008

hallo,   i'm running windows server 2008 standard edition (32-bit) , want install exchange 2003 server (32-bit). every time run forestprep process terminates 80 % error-message "module not found - retry or abort?" --> clicking on rety same mesage comes again , clicking abort process termintes failure.     does know, how solve problem?   thx oh no, that's bad, quick answear!   but read on internet, exchange server 2003 sp 2 can executed on windows server 2008, when it's intalled on server 2003 r2 und updated. true or there no possibility run echange 2003 on windows server 2008??? Windows Server  >  Windows Server General Forum

clients require activation?

does copy of windows need activated if want to get updates (drivers) from wsus?  does copy of windows need activated if want to get updates (drivers) from wsus?  answer actual question . . .  unactivated copy of windows scan, detect, download , install updates wsus server. given not activating new method implementing "evaluation" of software, it's legitimate question want know if can patch "evaluation" copy of windows. lawrence garvin, m.s., mcitp:ea, mcdba, mcsa principal/cto, onsite technology solutions, houston, texas microsoft mvp - software distribution (2005-2011) mvp profile: http://mvp.support.microsoft.com/profile/lawrence.garvin blog: http://onsitechsolutions.spaces.live.com Windows Server  >  WSUS

Can't create W2K8R2 client VMs on Windows Server 2012 Hyper-V

i have windows server 2012 server. supermicro superserver 6037r-73rf 128gb ram, dual xeon e5-2620 processors , 2tb of sas rad 10 using on-board lsi 2208 controller. have installed windows server 2012 data center , of went fine. enabled hyper-v role , went without error. however, have been trying create windows server 2008r2 sp2 virtual machine , keep getting error "a required cd/dvd drive device missing" right after click on "install now" button. researched error , every 1 found on google referred having mad install media. however, have tried using iso microsoft, cd different iso had used several times before standard w2k8 server installs , still getting same problem. doesn't seem problem install media. 1 thing want note when installed host server 2102 os, right after initial install, checked device manager , there no exclamation marks on of devices didn't run chipset , device installs form cd provided supermicro motherboard. cause kind of is

Request Certificate

hi is´t possibly request computer , root certificate public microsoft windows server 2008 r2 ca with script? best regards andreas sure, have @ certreq.exe if console commands option. request certificate with certreq.exe -submit which gives request id back, results with certreq.exe -retrieve and use request id parameter. install certificate store with: certreq.exe -accept you'll need the particular options use needs, call certreq -h gives descent help. here's few links: http://technet.microsoft.com/en-us/library/cc736326(v=ws.10).aspx http://technet.microsoft.com/en-us/library/cc725793(v=ws.10).aspx Windows Server  >  Security

Candid talk from another Forum

Image
i have read of thread & really, tried keep tabs on continues have additions.  w/out bothering w/ whether an original key lost or replaced, whether an original recovery partition lost or replaced when production os overwritten beta os, i'm going suggest not nor should be @ issue.  4th operating system have beta tested microsoft.  if, 1 goes past precedent, not go production os beta os , not go beta os rtm or ga.  have not read or heard suggest being different w/ windows 10.  going have some builds of win10 tech preview. then, around april 2015, there be windows 10 consumer preview , maybe, more 1 build of it; all of betas !   until we see rtm & ga sometime, maybe mid-2015. now, read, "i swapped out os windows 10, do , now?" or "can revert whatever os had?" or "how go back?" or "what confronts me when ga arrives?" or "i'll able go beta ga, right?"... it reminds me of many years ago when sp1 arrived xp.

How to automatically populate the "Connect To" dialog box with my farm name in RD Web Access

in remote desktop section of rd web access site, managed rid of pre-populated "computer name" typed out when click in box, need box have farm's fqdn in there users can go remote desktop tab , click 'connect'.   my users not using remote desktop function on web access computers in our local network, serve web portal remote desktop our rds farm. essentially want the page load connect to: [rdfarm.mydomain.com] there. i tried enter rdpfarm.mynetwork.com value same section "computer name" once in .aspx file, , doesn't work, though text there.  i have manually enter work properly. nevermind, figured out.  you can make change modifying following line in desktops.aspx type=”text” onkeydown=”javascript checkkey(this);” onkeyup=”javascript checklen(this, 1);” />      , change to:       type=”text” onkeydown=”javascript checkkey(this);” onkeyup=”javascript checklen(this, 1);” value=” servernamehere ” />

AD Configuration Backup using Windows Server 2012

has confirmed if windows server 2012 native backup tool can gpo configuration , other settings applied machine (client) joined domain controller? i'm looking disaster recovery plan. any suggestions appreciated. regards, -t.s thuan soldier 23-year-old man loving microsoft technologies , making crazy ideas on business journey. sharepoint vietnam | blog | twitter depends on gpos talking about.  can have local group policies defined on , applied machine on configured.  can have group policies defined within domain applied when machine joined domain.  latter category not backed when client backed because not reside on client - have been applied client.  if take backup of client, the centralized group policies changed, , client restored, client reflect changed group policies when machine logs onto domain. . : | : . : | : . tim Windows Server

Multiple problems in 2003R2 DC

from days ago single server has been experiencing multitude of problems tht can't track, example: 1) works ok ~4 hrs, users start losing ability access productivity program on server, file access(does weird thing, allows 1 user , others time out), rdp access, point server unusable , needs either remote reboot using pstools or hard reboot. local console "hangs", takes minutes respond clicks , keyboard, etc, 0% cpu usage , 1.5gb free ram , ~50mb free kernel, also, no hdd activity(and no errors or warning logged in event log) 2) after restarts, checking event logs(and not making sense of errors logged keep changing) , following support site articles don't solve them or break more stuff entire domain unaccesible, sysvol , netlogon shares missing journal wrap errors(i enabled wrap automatic restore , deleted contents of sysvol folder...), cannot open policy, etc. what's weird logs dns errors(when checking support event indicated pte exhaustion, i'm not

How can I delete a copy of Default Domain Policy?

Image
i created copy of default domain policy , can't delete it. copy exhibits message: "access denied" when try delete it. i did procedures reset default domain policy, example: "dcgpofix [/target: domain], link original (31b2f340-016d-11d2-945f-00c04fb984f9) domain, modify ntfs permissions, didn't solved.  please, save me... hi, basically, cannot delete default domain controllers policy gpo or default domain policy gpo. delete group policy object https://technet.microsoft.com/en-us/library/cc770893(v=ws.11).aspx how did copy default domain policy object? the default policies created system should be: default domain policy {31b2f340-016d-11d2-945f-00c04fb984f9} default domain controllers policy {6ac1786c-016f-11d2-945f-00c04fb984f9} these 2 policies built-in policies define default settings applies domain users , computers. regarding issue, please check /%sysroot%/sysvol/policies  and confirm permissions correct , check delegation ta

what things do i need to consider

Image
ok fixed ad issue. want update server domain controller , put desktop pc,s on domain laptops.  desktops on workgroups laptop on same workgroup when join domain have redo profiles on pc's laptops, copying , overwriting new user accounts, things need consider before upgrade domain server, since desktops , laptops using dns provided isp hints!! create new ad domain.   create ad user accounts.   join computers domain. then can copy user profile new ad user account. santhosh sivarajan | mcts, mcse (w2k3/w2k/nt4), mcsa (w2k3/w2k/msg), ccna, network+| houston, tx blogs - http://blogs.sivarajan.com/ posting provided no warranties,and confers no rights. Windows Server  >  Directory Services

Wrong credentials when logging in to DC using local administrator account (not domain admin)

hello, have windows server 2008 joined domain dc. trying log in server using local administrator account unable , error (wrong credentials) means wrong user-name/password or policies (or coz credentials can mean anything). have tried resetting dsrm password (i under impression same local administrator account), no success. have tried set domain group policy allow local admin (<servername>/administrator) log in using terminal services, no success ><. can me in succeeding log in machine using local admin? reason need want install recording software records user sessions, software creates group , user (which used run program , record sessions) during installation process. when installing on 1 machine, create group , user on domain level, not problem @ all. problem when installing software on different machines in domain, installation fails when trying create user , group because exist on domain level. that's why need use local admin install software locally ,

infrastructure master not updating domain references

a user account created in parent domain member of universal , local admin groups in both parent , child domains. deleted parent domain , allowed update reflect across domains. expected, membership removed groups other domains on domain controllers. restored user object using recycle bin feature. i've observed group memberships restored in parent domain successfully, when comes child domain, global catalog server has group memberships restored, , dc group membership not restored infra master , not gc. what reason? are compliant mentioned here: http://www.windowsdevcenter.com/pub/a/windows/2004/06/15/fsmo.html rule 2: infrastructure master should not placed on gc. tip:  make sure infrastructure master has gc in same site direct replication partner. exception 1:  it's ok put infrastructure master on gc if forest has 1 domain. exception 2:  it's ok put infrastructure master on gc if every dc in forest has gc. this posting provided no warranties or guaran

File Server Resource Manager help

hello, i'm using fsrm first time on our windows 2008 r2 clustered file server.  i have 2 issues , wondered if possible do: 1.) how can alerted if file added our on 1gb?  my email alert test works, need set scenario somehow. 2.) have folder share called 'users' , within have 100's of users home network drives, easiest way set soft quotes on these folders , not have individually? thanks 1.) confused, if you're testing works files >1gb alerting, then what issue? 2. open group policy object editor (gpedit.msc) , navigate computer configuration > administrative templates > system > disk quotas. on right hand pane see list of policies can applied. double click “default quota limit , warning level properties” setting. Windows Server  >  File Services and Stora

Copy file dialog box stays open

when using microsoft remote desktop client mac (v. 8.0.41), if open windows explorer remote resource , copy , paste file on terminal server, file copy dialog box stays open.   there isn't file shown.  nothing doing.  trying close results in familiar "cancel copy?" box.  answer either yes or no there doesn't anything.  opening same session in windows system closes box immediately. this stays open in mac.  i'm pretty sure issue microsoft remote desktop client mac.  anyone else seen , know how fix it? hi james! we couldn't reproduce issue internally. release remote resources on beta channel shortly please stay tuned , come again when see issue there well. Windows Server  >  Remote Desktop clients

IIS on Windows 10 Technical Preview

hi, before delving windows 10, let me ask fellow users installed it. iis available , working in technical preview, or more focused in end-user? imagine in technical preview enterprises, asking before install , test wrong version. i imagine visual studio no biggie in current release well? kind regards, roger i have completed install , have inetpub folder on c drive, same have on win 2008 servers. being didnt have inetpub folder or iis installed before install i'm gonna assume iis installed. Windows 10 Insider Preview  >  Windows 10 Insider Preview General

Active Directory permissions

hi, is possible set permissions active directory service itself, no 3rd party scripts [powershell scripts] should able collect ad info ?? is there provision disable read permissions active directory ??   no. acls don't include stipulation regarding way individual objects accessed - consist of entries identify security principals , corresponding permissions each. if given user able read given attribute, applicable regardless of method used read it. as far "hiding" individual objects/attributes in ad, possible - need proceed (and perform lot of testing) ensure not cause negative implications. more @ http://social.technet.microsoft.com/forums/en-us/winserverds/thread/b62dc2d1-3145-4a82-a7e7-58646253919e/ hth marcin Windows Server  >  Directory Services

Window Server 2008 DNS

hi all,          i have windows server 2008 dc, named isbf.ac.in. i want block website dc dns therefore have created new forward zone named facebook.com , user unable open facebook website on it. but want when user try open facebook.com redirect website www.isbf.edu.in automatically.  thanks, anshul anshul tyagi hi, to forward create alias (cname) record in facebook.com no "alias" hostname pointing hostname of website. http://technet.microsoft.com/en-us/library/cc772053.aspx mcp/mcsa/mcts/mcitp Windows Server  >  Windows Server General Forum

Enable schedule task using GPO

i want enable following schedule task on machines in network (ad rms rights policy template management (automated)")   . considering gpo preference need enable task once , not every time machine started. any clue?   ammarhasayen hello ammar, check microsoft article: http://technet.microsoft.com/fr-fr/library/dd996658(ws.10).aspx hope 1 need.   this posting provided "as is" no warranties or guarantees , , confers no rights. microsoft student partner microsoft certified professional microsoft certified systems administrator: security microsoft certified systems engineer: security microsoft certified technology specialist: windows server 2008 active directory, configuration microsoft certified technology specialist: windows server 2008 network infrastructure, configuration   Windows Server  > 

Changing the product key on Window Server 2003 R2 Standard Edition

i have bought new server came new product key windows server 2003 r2 standard edition. created , installed image of server want duplicate on new server. on new server want change product key match new product key received. i have followed instructions in article, , not working. after modifying registry, when launch wizard tells me windows activated. how change volume licensing product key on windows xp-based or windows server 2003-based computer how can change product key on server? hello, with windows server 2003, product key using has match media installed. the article mention applies volume licensing media , volume licensing product keys. what pid of computer?  properties of computer product id : <number> i suspect oem if came machine. where did buy new product key?  type of key it?  ( oem, retail, volume, other,etc) thanks, darrell gorter [msft] posting provided &quot;as is&quot; no warranties, , confers no rights.

RDP iOS connection problem

hello! cannot rid of 0x03000008 error while connecting ipad pc running win 10 pro (the same issue win 8 pro). android phone 4g connection going well, need larger screen. ipad connection through local wi-fi network going well, however, 4g connection, provided above-mentioned android phone ipad, returns 0x03000008 error. fix, proposed specialists (http://blog.thesysadmins.co.uk/remote-desktop-ios-8-1-0-error-0x03000008.html) not applicable pc since not running server os. i've done: bought public ip, forwarded rdp port, allowed users connect through rdp, enabled rdp connection in firewall. how can fix connection? in advance. sergey, you may check blog below , see if help: new update remote desktop on ios available now! quoted: important update 10/8 : we’ve had number of users report they’ve been unable connect via rdp gateway error code 0x03000008 since 8.1.0 update. actively working on resolving error , pinpointing issue find resolution. in meantim