Posts

Showing posts from July, 2012

How to revoke a certificate which is created using makecert.exe ?

have created certificate using makecert.exe testing purpose. however, testing requirement need revoke 1 client certificate. how can revoke certificate created using makecert?   tried using certutil.exe, giving error certificate not issued ca.   can create certificate revocation list (crl) using makecert -crl command.   how revoke certificate ? thanks help. to revoke certificate, certificate must issued ca , include @ least 1 cdp url that. self signed certificates generated using makecert can not revoked unless used makecert create ca certificate, created crl , created user certificates described in example  http://msdn.microsoft.com/en-us/library/ff648732.aspx it is probably easier to install , configure temporary adcs ca above! /hasain  Windows Server  >  Security

Server 2012 Storage Spaces Parity - not calculating correctly?

i created volume using 4x 2tb hdds. hdds 1.81tb formatted. when put 4 in volume, show total 7.82tb - if create storage space of drives size 4.83tb. have expected parity raid5 - should yield 5.43tb. happening drive space? type of parity being used? you using gui. gui uses ratio of 1:3 column space, there 1 parity stripe for every 2 data stripes. there no way control the column space gui, use powershell make parity space have 4 columns. have 1 parity stripe every 3 data stripes, have 5.4 tb. note if have 4x2tb drives should give total space of 7.2 tb not 7.8 tb , yes? Windows Server  >  Windows Server 2012 General

How do i transfer the users and OU in a domain .com to another .local

my boss had me create company's domain .com before typing browser. found out domain resolvable online  told change .local. he'll have me change .ng when md arrives i'd appreciate if shows me how transfer ou's , users( i've typed phone numbers , email addresses 50 people) file b4 dcpromo , create .local domain or is possible change domain .local hello, if forest/domain functional level windows servre 2003 or higher can use domain rename procedure or create complete new forest , use admt: http://technet.microsoft.com/en-us/library/cc781575(ws.10).aspx http://technet.microsoft.com/en-us/library/cc738208(ws.10).aspx http://technet.microsoft.com/en-us/magazine/2005.05.domainrename.aspx admt: http://msmvps.com/blogs/mweber/archive/2010/03/25/migrating-active-directory-to-a-new-forest.aspx if use exchange higher 2003 domain rename not supported. please give information installed services/applications in domain maybe have influence on this. best regard

Semaphore Timeout Error When Trying to Join Domain

i have small network. 1 dc running server 2003 sbs. server on domain. want replace new server essentials 2012 r2 server. when try join new server 2012 r2 essentials server domain gives me following error: the following error occurred attempting join domain "domainname": the semaphore timeout period has expired. i have looked @ following: https://social.technet.microsoft.com/forums/windowsserver/en-us/a7ee957e-5b0d-4865-ba24-c371e67ef8c6/semaphore-timeout-error-when-trying-to-join-domain and doesn't seem have helpful information. the new server not image. fresh build. virtual machine running on server 2012 r2 essentials hyper-v physical box. all updates current on old , new servers. i found problem. had smb 1.0 turned off on new server 2012 r2 server. after turning on can join domain fine. thank trying though! went add roles , features, added smb 1.0 role. restarted. working fine. buddy

get error when install printer driver on a fresh install Windows server 2008

i've following error "printer driver not installed. operation not completed" in x86 windows server 2008, login domain administrator , have tried different brands, different models , 2003, 2008 version driver of printer still got problem. there no problem when install other device driver. thank you. hi,   thanks post.   please first check following points.   1. try install printer driver local administrator account. 2. issue occur when installing other printer on windows server 2008? please install printer build-in driver isolate 3rd party printer driver issue. 3. try install driver in clean boot mode prevent third party program conflict issue. 4. when issue began occur. did coincide special events, such installation of printer drivers or printers? did work before?  clean boot ============= let's disable startup items , third party services when booting. method determine if issue caused loading program or service. please perform following steps:   1. clic

Comples licensing question

hi there, i maintain system has following configuration: 1. windows server 2003 terminal server 2. citrix presentation server v4.0 3. solaris 10 - sunray server 4. file/print server i have office applications installed on terminal server. users have sunray 2 thinclients used connect unix desktop on sunray server. there, use citrix ica client connect windows desktop. once on windows desktop, can use various windows programs including office 2003. there around 200 users in total. use per device licensing. have 200 citrix licenses installed , working. licenses need make legal? im guessing there may licenses required on unix side of house too? regards, ciscab hi, since question license issue, can call 1-800-426-9400 , monday through friday, 6:00 a.m. 6:00 p.m. (pacific time) speak directly microsoft licensing specialist, , can more detail information there. worldwide customers can use guide worldwide microsoft licensing sites find contact information

Required Permissions/User Rights for File Expiration on Server 2008 R2

i creating file expiration task on server 2008 r2 machine. expiration directory on same logical disk data being expired. configured expiration task folders need have data moved expiration directory. however, data not being moved expiration folder (criteria expiration met, using days sincethe file created, create date being used). configured file expiration tasks account has local administrative credentials. administrators local group has full control required folders. i not sure if there specific user right needs configured, or if permission issue. should noted uac being forced on via gpo. on windows 2008 r2, stupid popup evertime want move files, or delete files administrator. any appreciated , greatfully accepted.   ccp as mentioned uac, have try add account full control permission separately onto source , target folders. if still not work, please have @ event viewer see whether there error message occurs when running file expiration tast. technet subscriber suppo

Orphan Snapshots

i running server 2008 r2 , on last 9 months have had 2 of vms crash , have rebuilt. set new vm same configuration , attached old hard drive. have 2 snapshots, 1 each of vms crashed, haven't been accessed in months , not show in hyper v manager. safe delete these files since don't seem used @ or there method merge these? the action of creating new configuration causes system lose track of snapshot - knowledge there one. the action of linking virtual disk loses changes contained in snapshot disk. at point in time, attempting merge snapshot disk data system cause far more harm (to system in vm).  in end wasted effort , great deal of frustration , panic. brian ehlert http://itproctology.blogspot.com learn. apply. repeat. disclaimer: attempting change of own free will. Windows Server  > 

Lost Host Share After Installing Build 9860

Image
i have windows 10 preview installed on vmware virtual desktop.  had folder on host shared windows 10 guest machine prior build working but share gone , can't access share.  have similar problem , able correct it? lujan hi lujan, i have upgraded 9860 build 9879 build, host share still remains in windows 10 technical preview. in current situation, simple method re-share network folder guest machines. if there misunderstand, pleaes feel free let me know. alex zhao technet community support Windows 10 Insider Preview  >  Windows 10 Insider Preview General

Broken WSUS (2012 R2) - Downloads stuck

hi all, i’m struggling wsus server work after moving server 2008 box. suggestions appreciated. this project have had put on hold last week or two, due feature updates windows 10 push forward , iron out these issues. what i’ve done        deployed wsus roles on server 2012        configured wsus same our previous system        resolved issue network service permissions within wsus content drive        resolved update file download issue changing port 8530 80        identified client updates fail since port change made        removed wsus server role , reinstalled *(maybe should cleanly install server??)* i not have permission re-deploy server until supervisor returns.        re-installed wsus, reconfigured, left on port 8530 installed applicable windows updates manual steps completed: open elevated command prompt window, , run "c:\program files\update services\tools\wsusutil.exe postinstall /servicing" (case sensitive, assume c: system

Powershell Command to get computer status in a target group

hi , trying build powershell script find out computer status in target group in how many ok, error, or needing updates etc. so far able select target group , total computer count in not able count of computer need updates , other status. any appreciated. hi lawrence, i creating powershell script pass on info inhouse nagios server display wsus status on monitoring tool. gotcha! this can done public_views , sql. as powershell, note relationships may help. approvals assigned group. a group contains members (read: computers) a computer has status count updates (notapplicable, needed, installed) an update has status count computers (notapplicable, needed, installed) so, status report target group requires navigating through couple of pathways. you can query target group approved updates, , query each of updates status counts of computers. give number of computers need each update. you can query target group members, , query each of members status coun

DFS Access Denied

hi everyone, hope can me :) i have windows 2003 domain , have domain dfs root , single dfs replica, works fine , accessable. however, recently, im no longer able create new dfs links, "unable create dfs link access denied" ive tried know, share , ntfs permissions full control still doesnt allow me create new link. ive tried create links pointing number of servers no avail. not network problem either. tried dfscmd aswell still access denied. tried few accounts domain admins , enterprise enterprise admins , still no go !! anyone have ideas ? hi, please have of the root of drive hidden folder "frs-staging" folder created. . check if accounts tried have correct permission. write permissions are needed. also check delegation of dfs root see if settings correct. shaon shan| technet subscriber support in forum| if have feedback on our support, please contact tngfb@microsoft.com Windows

WSUS and Laptops

i have set wsus update server , using group policy push various desktop pcs ms updates. have question though... if laptops forced gp update it, - when out of office connected in via vpn - download updates server rather (ideally) wait or ms direct? don't fancy hosting xp sp3 sales staff on road if case. there way can avoid situation? thanks this, calum hi calum, after using group policy configure windows update setting, related key in registry modified on client. when laptop connected office via vpn, automatically synchronize wsus server , update. -------------------- regards, eric

How to Create a Backup Domain Controller in 2008 R2 for a Primary Domain Controller in 2012 R2

i have server running 2012 r2 foundation domain controller. have available server running 2008 r2 foundation, no longer needed original purpose. i'd use second server backup domain controller redundancy and fault tolerance etc., but i don't know how go that. have demoted '08 r2 server it's previous use , joined the '12 r2's domain, that's far i can go. i've searched far , wide - both in my '08 r2 , '12 r2 books (by mark minasi) that have, , online - for help, have come empty.  find lots of descriptions nt, 2000 , 2003, nothing versions have, , none of books nor articles tell me  h o w to accomplish this. describe purpose and that it can be done, but not how it.  i'm frustrated , befuddled. i'd grateful if point me someplace has step-by-step instructions setting up.   capt. dinosaur i did not think possible, found blog post: http://blogs.technet.com/b/aman/archive/2012/12/29/step-by-step-guide-to-lower-active-directory-f

Packet forwarding / router with one NIC

hello all, my question this... unfortunately have 2 routers in network, 1 connects server , misc computers internet, , 1 other. furthermore, both routers have wireless networks different settings/security, disconnecting 1 not option! now, being 2 routers, naturally on different subnets. alas, both routers not have setting static routes, getting subnets communicate proving difficult. question this: possible configure server act router? job forward packets subnet b ip assigned wan port on second router, , other packets first router internet. , if possible, how? remember server has 1 network card! any advice appreciated. i know how things work under hood, how taught. any packet coming subnet b it's coming 192.168.0.3 device in subnet a, it's possible router forward packet 192.168.0.3, ie subnet b. way can see nat/router on b able deliver packet destination host on subnet have routing table entry subnet id nat/router aware of. nat in nat/router not &qu

Windows 2003 cluster quorum/shared disk configuration

greetings, i'm trying understand how configure "quorum" disk , "shared" disk in windows server 2003 enterprise r2 cluster 2 nodes.  i've read many docs , uncertain how should best configure drives cluster environment.  here's have: a. server single built-in drive windows server 2003 enterprise r2 raid card (matching server b) 2 external scsi connections. b. server b 3 built-in drives in raid 5 configuration windows server 2003 enterprise r2 raid card (matching server a) 2 external scsi connections. c. scsi drive array multiple 73 gb drives d. scsi drive array b multiple 146 gb drives goal: 1. take advantage possible of hardware , software possible create clustered file server (eventually clustered print services) 2. follow best practices high availability , recovery in case of failure of node *or* drive array primary questions are: 1. quorum disk supposed common resource between 2 nodes in cluster? 2. if not supposed shared resource, can se

Impact of HYPER V

hello, i have physical server,which shows 6 processor while opening task manager,but shows 3 core,6 logical processor using command msinfo32.this shows hyper -v enabled.a sql server hosted on machine.the dba asking me how many "physical core" , "physical processor" machine has.what should answer? thanks debasis the definitive answer @ specifications of particular processor have in system.  single physical processor can have multiple cores.  example, intel e5-2660 v3 processor (http://ark.intel.com/products/81706/intel-xeon-processor-e5-2660-v3-25m-cache-2_60-ghz) has 10 cores.  however, has called hyperthreading gives each core the ability execute two instructions @ same time, meaning there 20 logical processors, or execution threads, in environment. so in case, single processor 3 cores , hyperthreading enabled gives 6 logical processors - 6 different execution threads can operational @ same time.  answer specific question, you have 3 physical cores

Scripts needed

hi, need script these below 1.export services in html format 2.export ipconfig/all details in html format 3.get physical network card details speed, coonection status in html format can 1 me this? hi tamizhezham, if want whole script written recommend contact consulting firm. however if want write here hints: 1. get-help get-service give details of how export information services. 2 & 3. there are whole bunch of options information similar 1 given ipconfig or run ipconfig problem ipconfig returns result text hard handle. powershell cmdlets returns objects can further sort/format/select. try following command list of options: get-command -module nettcpip -verb get to convert html can use cmdlet convertto-html, again use get-help convertto-html details. Windows Server  > 

C# application - Virtual View List with DirectoryVirtualListView - "The server does not support the requested critical extension"

  hi, c# application implementing virtual view list directoryvirtuallistview on ad/ windows 2008 r2. following piece of code: public class directoryitem { public string dislayname { get; set; } public string cn { get; set; } public string firstname { ; set;} public string lastname { get; set; } } public class ldapsearcher { string adspath = "ldap://dc=capulet,dc=com"; string username = "capulet\\administrator"; string password = "1111"; int offset = 5; public int total = 0; directoryentry searchroot=null; public ldapsearcher() { searchroot = new directoryentry( adspath, username, password, authenticationtypes.secure ); } public ldapsearcher(string adspath, string username, string password) { this.adspath = adspath; this.username = username; this.password

NTBACKUP - Los backups se hacen y tienen un peso de 2 KB

buenas días todos/as les cuento basicamente, tengo un esquema de backup para los controladores de dominio y para los servidores en general. a nivel controlador de dominio, backupeo los siguientes elementos: - system state (creo una tarea programada mediante ntbackup y luego creo otra tarea programada que ejecuta un batch el cual llama un script en powershell que mueve el backup de system state una ubicación especifica en otro servidor en el cual se realizan los backus cinta) - directorio dns en system32 (dado que tengo zonas primarias no integradas en active directory) (creo una tarea programada mediante ntbackup y luego creo otra tarea programada que ejecuta un batch el cual llama un script en powershell que mueve el backup de dns una ubicación especifica en otro servidor en el cual se realizan los backus cinta) - directorio wins en system32 (creo una tarea programada mediante ntbackup y luego creo otra tarea programada que ejecuta un batch el cual llama un script en pow

active directory 2008 R2 -> Design , max query ...

hello, i have cisco call manager, ldap query, each phone can consult directory (my windows 2008 server). i use windows 2008 r2 active directory 250 000 users phone (no other application). what maximun simultanous ldap query support ? if have 6000 people ask query in ldap directory, it's works fine ?  it depend hardware serveur? where can find somes design guide or best bratice hadware serveur ? need serveur 6000 ldap simultanous query thank advice , help. regards   hello,   by default maxvalrange value 5000 on windows server 2008 r2. can use ntdsutil , change value. please, read links: windows server 2008 r2 or windows server 2008 domain controller returns 5000 attributes in ldap response ldap policies override hardcoded ldap query limits introduced in windows server 2008 , windows server 2008 r2   regards Windows Server

Problem with Windows and Hyper-V

hi, everione i've had problem. after installed hyper-v iso on windows 8.1 don't know how enter windows. is possible having installed hyper-v deleted windows computer? please, know how log in windows 8. thanks! if windows.old folder still there, can recover original os. might try asking in windows 8 forums though, have people experienced in doing this. eric siron altaro hyper-v blog independent blog contributor, not altaro employee. solely responsible content of posts. Windows Server  >  Hyper-V

Folder Redirection via Group Policy: Potential Network Problems with DFS. (Maybe WINS?)

Image
we have 8 buildings. each building had own file server , dc. buildings connected 1 gb fiber loop. users had "my documents" folders redirected building's file server via group policy. use windows xp. . in effort consolidate, deployed new file server @ main building. using migration tools microsoft , dfs, migrated servers in each of branch buildings new main server. unc paths old servers preserved. group policy objects each building still redirect users' "my documents" files old unc paths. . for majority of users working fine. example, in building1 logs in, "my docs" folder redirected "\\wsfile1\staffdata\username" , goes across fiber wan new file server's dfs share building. however, there users having problems. when log in see following error message: . . at first thought user didn't have access share reason, whether network or permissions. other users in same building have access , operating normally. tried fo

Diagnostic Tool for Identifing Hardware related Issues on Windows 2008 server

team, first have in-built diagnostic tool available on windows 2008 server. could please let me know how run diagnostic tool identifying issues on windows server 2008. thanks in advance. karthick.p india. don’t know looking for.   some built-in hardware diagnostic tools far know:   windows memory diagnostic http://oca.microsoft.com/en/windiag.asp   windows memory diagnostics tool in windows server 2008 http://www.itechtalk.com/thread2230.html   check disk tool in windows server http://technet.microsoft.com/en-us/library/8f7ffab9-a5e7-4de9-907a-0f172b5a6a4e.aspx   thanks Windows Server  >  Server Manager

Active Directory Question

Image
hi all! all domain controllers have migrated new corporate forest, i'll call domain name "s". the admin has created many individual ou within domain s. (sg1, sg2, sg3 etc) i belong ou sg1 , i'm looking after ou sg2. the problem notice here is, when have new pc has joined domain s, when still sitting in ou s > computer container. the computers there have no problem accessing internal web services in ou sg1 & ou sg2. however, when admin starts put pcs in respectively ou (sg1 instance), able ping web server of sg2, unable access them. have request admin put in computer container until have solution this. does know can in own ou, such able access web servers in both sg1 , sg2? hope explained. thanks in advance! check gpo getting issue. run rsop.msc system. also open gmpc.msc & check respective gpos. regards, biswajit mcts, mcp 2003,mcsa 2003, mcsa:m 2003, ccna, enterprise admin, itil f 2011 blog:   script gallary:

Unable to promote server to Domain Controller

i have installed windows server 2012r2 core , want promote first domain controller. intended server manager installed on client computer. i connected server server manager , able install ad ds role , dns role. after installation when want deploy domain controller error: an unexpected error occured while trying configure ad ds. error encountered while trying domain information. access denied this happens while using same user used install roles. the server ip has been set static, dns server points itself, client , server part of same workgroup. tried rsat tools in both windows 8.1 , 10. as stop gap (and troubleshooting) installed server manager on server , there can deploy domain controller. however, understand why not working remote system. hi  please check article question https://www.microsoftpressstore.com/articles/article.aspx?p=2216997&seqnum=4 this posting provided no warranties or guarantees,and confers no rights. best regards burak uÄŸur

High network i/o spike when opening network folder with certain exe file and...

i have application opened network share , worked fine years. until several months ago started notice icon the exe file not displaying right away when browsing folder. there lag right clicking file , again opening properties. the exe file 118mb , signed sha256 signature developer.  what i´m seeing in explorer.exe spiking in network i/o several seconds. i´m on gigabit network , network i/o goes 750mbps 5-8 seconds. thats longer takes copy file over. this happens said, when browsing folder, again when right clicking , when pressing properties. if repeat process again, same thing happens.  tested on windows 7, 8, 10, server 2012, different network folders on different file servers. when file unsigned, not happen. hi, thanks post. please try logon domain new account see if works please disable av software check issue. if problem still there, personal view is possible signed may slower unsigned. the if signed sha-256 certificate, may cause latency issues. i suggest

Change Active directory login name SID

hi we going merge ad company , have inherited new policies. use (lastname)(initial-firstname).local ie smithj@domain.com use email our primary email. we going moving exchange online , have new domain name instead of domain.com.au using domain.com with new policy states users emails , logins change firstname.lastname.com ie john.smith.com what best approach change users upn name smithj@local  to john.smith.domain.com upn spafco you can use script or tool change upn name in bulk. how can assign new upn users?   http://blogs.technet.com/b/heyscriptingguy/archive/2004/12/06/how-can-i-assign-a-new-upn-to-all-my-users.aspx admodify.net tool   http://admodify.codeplex.com/ awinish vishwakarma - mvp my blog: awinish.wordpress.com disclaimer posting provided as-is no warranties/guarantees , confers no rights. Windows Server  >

Server 2008 Failover Cluster (SQL) to Server 2008 R2 Failover Cluster Migration

i've got few physical 2008 (non-r2) servers running number of different versions of sql in failover cluster configuration. i've got 3 new servers 2008 r2 installed want migrate of clustered sql instances to. i've found article on microsoft's website, sql migration information limited sql version upgrades. need create new cluster, , run migration wizard. between these 2 tasks believe need install sql. however, install options selecting don't want setup new local instance or new clustered instance , appears need sql installed before running failover cluster migration wizard. in advanced can provide. if want run sql on new cluster, need install on new cluster.  cluster migration wizard not install it.  download documentation cluster migration wizard , find instructions there. .:|:.:|:. tim Windows Server  > 

How to setup Integrated Authentication on LAN

i have rds farm connection broker , rd web access. solution internal domain users. if can use integrated windows authentication access application in rd web access , not prompted credentials when launching remoteapps. possible? users on internal lan on same domain , client os xp sp3. thanks in advance.  microsoft partner hi, work have have windows server 2008 r2 , rdp 7 client xp machines. please read article: http://blogs.msdn.com/b/rds/archive/2009/08/11/introducing-web-single-sign-on-for-remoteapp-and-desktop-connections.aspx     pubforum.net founder , ts training in europe! love microsoft &its people bits! Windows Server  >  Remote Desktop Services (Terminal Services)

Issue about license cal-or other thing- server 2008 Standard- problem.

hi, name jorge zamit uruguay , wanna ask windows server 2008 installed windows server , active directory have doubts because have aprox. 8 clients win xp sp2 , sudenly 1 winxp lost conection database sql2005 express edition, have crm - erp application hosted in server , when machine logs on says conection lost database , need toy advc reconnect de database without need logoff or nothing. have feeling may license problem because didn t add more user cal nor device when installing , after searching , searching couldn t find license manager use have w2k3 in administrative tools. couldn t find way add or view licenses installed , or used in w2k8. i check event log in server , didn t appear nothing related licenses. (this encourage me thinks isn t related license issue) the other thing see developer of crm-erp use administrator user/password al winxp boxes, issue too, know security flaws cause teach him not anymore, keeps working account until correct erp-crm, application uses sa account sq

Windows Server 2008R2 crash, 0x50 (0x461f20c, 0x0, 0x77446b59, 0x8)

as title states, had crash following stop code message: "the computer has rebooted bugcheck.  bugcheck was: 0x00000050 (0x000000000461f20c, 0x0000000000000000, 0x0000000077446b59, 0x0000000000000008). dump saved in: c:\windows\memory.dmp. report id: 081610-34257-01." the server has hyper-v installed , hosting 1 server 03 vm @ time.  third party known software installed symantec endpoint protection, though has scom/dpm/sccm agent installed.  no sccm deployment running or @ deadline, nor time dpm backup.  found couple of different hotfixes may or may not relevant , have bugcheck report below.  on figuring out needed appreciated.  of there has been 1 failure, server hosts production, , part of set of identical servers, pretty nervous.   hotfixes: http://support.microsoft.com/kb/951418 http://support.microsoft.com/kb/976527   bugcheck: microsoft (r) windows debugger version 6.11.0001.404 amd64 copyright (c) microsoft corporation. rights reserved. l