Posts

Showing posts from January, 2013

Install Certificate on non-domain member

hello all, hoping can me query. have setup l2tp/ipsec vpn our corporate network (all windows 7 & 2008 r2) , works fine. if use auto enrollment policy install machine certificate on domain member has no issues connecting network through vpn. i need allow users connect home pc's. these pc's not on domain , therfore cannot use autoenrollment process. can allow them connect via pptp in order certificate when use web enrollment normal user templates available user , basic efs. i have installed root ca on home clients. can please point me in right direction install machine certificate on pc not part of domain. alternatively possible use user certificates instead of machine certificates ipsec connection? thanks in advance. regards, john paul yes, possible use user certificates instead of computer certificates ipsec connection. using web enrollment pages, generate user certificate on non domain member , make sure select "mark keys exportable". export

Convert 2TB from Basic disk to Dynamic than span with another 2TB Dynamic disk

the server physical server running windows 2003, standard edition, 32 bit the server has fc san connectivity. one of luns presented 1.9 tb in size , formatted basic disk.  the disk near full , needs additional 1.9 tb. windows disk size limits show basic disk cannot exceed 2 tb.  if reading correctly,  a dynamic disk can spanned across multiple dynamic disks, 32 disks or 64tb.  i not find states data loss occur when disk converted basic dynamic, (nor can find says data safe). i did testing on virtual server , appears work (unfortunately not have sufficient storage space use 1.9 tb disks 50 gb used) created vm , added 50gb disk set basic disk. copied 10 gb data disk. added 50 gb disk set dynamic disk. converted original basic dynamic (volume dismounted, disk converted, volume mounted) , data still there , accessible. from original disk, spanned volume include additional disk. the volume became 100 gb , data still there , accessible. i need know if correct in being able

Fault Bucket

Image
i have 23 fault buckets system info found.  let's start first ten same code , please me fix or identify these: 1076429709 pnp device problem hi, firstly, please let know edition of operating system. appreciated if can provide screenshots of errors. meanwhile, regarding issue, please check if following articles you. explanation of error codes generated device manager in windows xp professional http://support.microsoft.com/kb/310123 tips solving problems usb devices http://windows.microsoft.com/en-us/windows-vista/tips-for-solving-problems-with-usb-devices hope helps. jeremy wu technet community support Windows Server  >  Network Infrastructure Servers

Interpreting ISA 407 Error

hi, i'm troubleshooting piece of e-learning seems problematic when launched within our client's network due proxy server configuration. application flash-based calls various asp pages , put in error handling script based on http status of these asp pages when they're loaded. attached below log got fiddler (i have changed domain name). have minimal networking knowledge i'm hoping understanding in: 1) why proxy server allow these asp pages load (returning 200 ok) doesn't (returning 407 proxy authentication required) 2) seems 407 event followed success event (200), , reason flash thinks it's ok , never picks 407 issue. why case? 3) if needed speak network engineer, there specific settings should mention them rectify issue? appreciated! thank you. log: http://temp.somedomain.com/myfolder/data/20100516_002250_8809/learning/checkobjstatus.asp?onhttpstatus=%5btype%20function%5d&tempnumber=595159 407 proxy authentication requi

Server 2016 dhcp failover synchronization and auto config sync tool

recently have migrated our dhcp 2012 2016. i have tried installing dhcp failover auto config sync tool no longer works. in set guide says user must member of winrmremotewmiusers_ group.  group on 2012 servers b ut on 2016 servers, group not exist.  i'm guessing why tool not work. has managed tool work on 2016? is there way automatically sync servers when reservation added or properties of scope changed? we have more 1 person enters reservations having manually not best option. thanks, w hi, there method to auto replication  reservations using powershell and  schedule task, refer link below: http://britv8.com/dhcp-2012-r2-static-reservations-replication-not-working/ please note: since web site not hosted microsoft, link may change without notice. microsoft not guarantee accuracy of information. best regards, frank please remember mark replies answers if , unmark them if provide no help. if have feedback technet subscriber support,

Windows Server 2012 Essentials shuts itself down after some days

hi, i have "windows server 2012 essentials x64 english" installation and as have samba 3.6 pdc in our company, i removed ad stuff , joined win2012 server as member samba domain because windows server just needs run ms-sql , sybase database server. that worked fine within 180 days of evaluation period, but activated purchased license started shutting down itself after days following entry in eventlog "the root domain check detected condition in environment out of compliance with licensing policy. server automatically shut down if issue not corrected in 5 day(s) 4 hour(s) 30 minute(s). please additional events root domain check troubleshoot." of course can't check root domain because of samba pdc, please, shutting down whole machine unacceptable. this causes serious damage in company because people can't work then. is there hotfix or registry change disable stupid behaviour? nope. essentials must domain controller. uninstalling ad, broke ess

Executing a Windows Service Utility in PowerShell

hey powershell guru’s --       i have task invoke local windows service , have lot of examples on how web service cannot find on calling windows service tcp/ip.  can guide me right direction, examples?    realistically shouldn’t hard j . thanks what attempting exactly? i'm confused. :) karl http://unlockpowershell.wordpress.com co-author, windows powershell 2.0 bible -join("6b61726c6d69747363686b65406d742e6e6574"-split"(?<=\g.{2})",19|%{[char][int]"0x$_"}) Windows Server  >  Windows PowerShell

How can I downgrade 2012 RDP Device CALs to 2008 R2

Image
hi, i have purchased rdp device cals under open license.  need downgrade them 2012 version 2008. we have 45 installed , purchased 5.  time round 2012 version, ingram told call microsoft , have them downgraded 2008.     sound easy.  i've spent 8 hours on 2 days being bounced around 1 department regarding this.   must have made 10 calls , given out details 10 times. i got close when contacted clearing house, , said yes can you, find out deal retail licenses , not open licenses , put me main support number.    after speaking various people there, 1 of whom told me rudely need reinstall os , contact professional, last person spoke said open a  support ticket @ cost of $390.00 or post technet free.  here am. i need downgrade rdp 2012 licenses 2008 r2, purchased under open licenses without software assurance.   in australia.  how do please. thanks. steve hi, please try below link might helpful in case. https://activate.microsoft.com/ thanks. dhar

How to turn net framework 4.5 feature on in windows server 2012????

i concerned!!! i remove net framework 4.5 through server manager, after server reboots, can not gui cmd window..... i can not open server manager or control panel through cmd dialogue. after download new net framework 4.5 try install, shows me turned off!!! hi, the gui in windows server 2012 based off of .net framework 4.5. if role removed need reinstall feature , add "user interfaces , infrastructure" feature including "graphical management tools , infrastructure" & "server graphical shell".  "desktop experience" part of group, not requirement. if have windows server 2012 machine on same network can use server manager server add features otherwise need install features powershell. installing .net framework 4.5 install-windowsfeature net-framework-45-core installing server gui enable-windowsoptionalfeature –online -featurename servercore-fullserver,server-gui-shell,server-gui-mgmt regards, yan li

PKCS#10 Certificate Requests in Web Enrollment; Information on Additional Attributes field is lacking

hello, there plenty of information on how add san names via "additional attributes" box request unauthenticated san names. however, there no information how format requests other attributes, country code in san name. lot of certificate requests request "uk" country code, when should "gb". know doesn't matter in grand scheme of things, want know how format subject information submit in additional attributes, , other information can requested there.  did lot of searching can see how add in san names. example:   san:dns=mywebserver.domain.local&rfcsomething=192.168.1.50&dns=stuffandthings.domain.local is there information or documentation out there has syntax other attributes request (like subject field or eku).  thanks all.   san attributes shall not used , ca shall refuse them. instead, certificate request should contain signed san extension: https://technet.microsoft.com/en-us/library/ff625722(v=ws.10).aspx vadims podāns,

Suppose a client connects using VPN. Is the VPN connection's profile private or domain?

thanks. hi, if mean windows firewall profiles, domain profile active when domain controller can contacted client machine: http://msdn.microsoft.com/en-us/library/windows/desktop/bb736287(v=vs.85).aspx http://blogs.technet.com/b/networking/archive/2010/09/08/network-location-awareness-nla-and-how-it-relates-to-windows-firewall-profiles.aspx don Windows Server  >  Windows Server General Forum

DNS sever anonymous packets

Image
hi forum, i have configured dns sever(10.100.1.16) on server 2012 vm lab. noticed in firewall dns server automatically sending packets public ip's. can me figure out. first want whois on destination ip addresses isp or dns forwarder have configured. i not panic every little packet goes unknown destinations drive crazy, if it's test machine i'd less concerned. if don't want connect internet @ change gateway or remove entirely nic configuration. Windows Server  >  Windows Server 2012 General

Join two parts of a single domain across a hardware VPN over Internet

hi, i have 2 physically separate small (5 node) networks, wish run them 1 single network. have established hardware vpn tunnel using pair of linksys nat boxes between 2 lans. i'm trying figure out dns settings etc.. i have w2k3server box on each lan (i created them on same lan , after adding ad second 1 moved physically second lan) ad "the same". i want browse 1 lan node to other lan i want internet traffic each lan go thru own gateway i trust both lans (i not want create 2 separate domains , establish trust relationship.) any suggestions?   thank in advance   k hello k, it seems you've taken care of major portions of setting up. assume if you've configured vpn tunnel in linksys boxes, automatically route internet traffic using own isp connection, unless changed default force use other end of tunnel such traffic. if no, you'll ok. you not need 2 domains or forests. tunnel connect 2 subnets/offices seamlessly. configuration: la

Using KB125996 to move shares from Server 2003 to 2008R2

hello, i aware of fsmt, hoping simpler method of moving windows shares 2003 server 2008r2 server. both servers virtualized , using san.    can move san volume 2003 server 2008r2 server. my question moving file share information.   kb125996 provides instructions on how save , restore existing windows shares.   article applies versions of windows using. however, article not clear if method can used save shares 2003 server , restore shares 2008r2 share. can create new 2008r2 file server, move ntfs volumes 2003 server 2008r2 server , use instructions in kb recreate shares on 2008r2 server? hi, start windows 2000 windows 2008 r2, location of registry key store sharing settings not changed, migration. detailed steps are: 1. export key , import windows 2008 r2. 2. disconnect lun , connect windows 2008 r2. 3. make sure drive letter not changed, or modify key change drive letter before import in step 1. technet subscriber support in forum |if have feedback on our suppor

Policy Consistency

i have configured group policy , 1 of setting enables classic theme be used. have 2 test pcs running windows 7, 1 virtual pc , hp. challenge iam finding physical pc not using classic theme virtual pc works fine. both pcs belong same ou , 1 test user member of ou being used. how possible virtual pc able use classic theme while physical cannot. physical pc did log failures in tthe eventlog.     regards zizebra http://auction.joyoustimes.net howdie!   am 13.09.2010 09:45, schrieb zizebra: > have configured group policy , 1 of setting enables classic > theme be used. have 2 test pcs running windows 7, 1 a > virtual pc , hp. challenge iam finding the > physical pc not using classic theme virtual pc works > fine. both pcs belong same ou , 1 test user member of > ou being used. how possible virtual pc able to > use classic theme while physical cannot. physical pc did log > failures in tthe eventlog.   what settings's scope (user or

WSUS Breaks after KB3159706, released 5/5/2016

hey all, installed kb3159706 on ws 2012 r2 wsus server @ 2pm on 5/5/2016.  supposed fix/issues when kb3148812 released few weeks ago.  don't install kb3159706, breaks wsus. c'mon microsoft, stuff together.  i'm tired of amateur hour bs. hey all, installed kb3159706 on ws 2012 r2 wsus server @ 2pm on 5/5/2016.  supposed fix/issues when kb3148812 released few weeks ago.  don't install kb3159706, breaks wsus. c'mon microsoft, stuff together.  i'm tired of amateur hour bs. shane - did manual post installation steps after installing kb3159706? manual steps required complete installation of update open elevated command prompt window, , run "c:\program files\update services\tools\wsusutil.exe postinstall /servicing" (case sensitive, assume c: system volume). select  http activation under .net framework 4.5 features  in server manager add roles , features wizard. restart wsus service.

Managed software installation hangs after imaging (sysprep)

hello- i have created sysprepped laptop images deployed wds, winpe, , ghost. use mini-setup allows me rename machines manually need before automatically adding domain. first boot , group policy application successful. have disabled fast logon optimization , set scripts run synchronously @ startup. upon rebooting machines, software installation task starts shockwave , flash install hanging on activex package. i out of office not sure if this last client i imaged will timeout @ point did hard reset of 1 of machines , noticed in application log event id's 101 , 103 having 2 reboots software packages installed due fast logon optimization being disabled. not every client in domain has software install policy applied , have 0 problem administering these installs machines on domain. seems happen these newly imaged , added clients upon first reboot. software installs fine after hard reset , nothing funky in event log.  edit: xp sp3 clients on w2k3 domain ok, can't tell when timeout h

how i can config recovery agent for efs in DOMAIN??

i have windows 2003 server . want to  administrator users in domain , can open files users encrypt. reed article . not work correct can config in workgroup .but not in domain. plese me step step , work please me soon hi, thats great! worked you. for recovery agent ca not necessary if in domain ca necessary security perspective. user wants dra must efs recovery agent ceritificate ca. yes need import certificate client computer decrypting file. client computer can't access dra's private key stored in private location enrolls certificate. need import private keys client client can use decrypting file.   regards.. himanshu rana mcts|mcse|mcsa:messaging|ccna f found post helpful, please "vote helpful". if answered question, remember "mark answer". Windows Server  > 

Moving users from standalone PCs to clients

i have connected pcs server 2008 , domain members. how data of local users go server users? bryan you users logon , copy paste there files , folders local profile domain profile. the far more complicated ways of transfering custom settings etc.. starting fresh nice , smaller deployments simplest answer easiest, quickest and best impliment. if want little more in depth pretty sure "windows user state migration tool" can it, have never had nessecity use it http://www.microsoft.com/download/en/details.aspx?displaylang=en&id=10837 Windows Server  >  Windows Server General Forum

Clustering : Data Mirroring

hi,   i have 2 2008 r2 servers clustered. need install software produce data. my questions : data produced software available 2 servers ? need install software on both servers ?   in fact, need have whole disk mirroring, , not software mirroring...   any useful.   thanks in advance. q.   what cluster aware application? a.   a cluster-aware application application calls cluster apis determine context under running (such virtual server name etc.) , can failover between nodes high availability. can applications not written cluster made highly available? yes, server clusters provide plug-in environment allows resource dlls provide necessary control , health monitoring functions make existing applications highly available. server clusters provide set of generic resource types can used make existing applications failover in cluster. in windows 2000 there 2 generic resource types:   generic application allows application started, stopp

How can I change a clustered disk Volume Id

hi, prior clustering have been rapid provisioning virtual machines using san disk cloning tools. as disks cloned same master disk, volumes on disk will share same volumeid. wasn't problem windows automatically detect duplicate disk , leave in offline. when disk brought online volumeid changed automatically. however cluster, clashing volume might owned node in cluster , windows not detect duplicate volumeid. the duplicate picked however, when try import disk cluster , disk remain in "failed" state. the way fix locate node owns volume identical volume id , bring online on node prior importing disk cluster. force volumeid change. i have tried change win32_volume deviceid property in powershell it's read only. how can change volumeid using powershell. there app available mark russinovich change volumeid need disk have drive letter , don't mount volumes thanks daniel         in dataontap powershell toolkit v1.5, added cmdlets change signat

Choosing hardware for a virtual mashine

hi guys... i have been searching net articles on should consider when making hardware choice virtual mashine in hyper-v allso been looking advanced features hyper-v offer in regards hardware choice , utilization of host hardware. like vmware has sort of deduplication going on on ram not same information written twice on host ram... stuff that... can point me in right direction such dokumentation? or elaborate here if :) thanks in advanced is there official list of motherboards tested hyper-v? i'm interested in these ones: asustek m4a785t-m am3 asustek m4a785td-m evo asustek m4a785td-v evo gigabyte ga-ma785gmt-ud2h Windows Server  >  Hyper-V

VDI "personal desktop" trusted domains/forest

hello, we have following scenario: one win2008r2 forest (forest a) with hyper-v servers , on. 3 addition forests (forest b, forest c , d) , windows 2003 level. users belongs these domains. now want toimplement vdi forest , hyper-v server. there way use pooled , personal desktops users, forest b, c or d? regards marc hi, the personal virtual desktop works based on testing. please check ad requirement: http://blogs.msdn.com/b/rds/archive/2010/03/04/active-directory-schema-requirements-for-personal-virtual-desktops.aspx this posting provided "as is" no warranties, , confers no rights. please remember click “mark answer” on post helps you, , click “unmark answer” if marked post not answer question. can beneficial other community members reading thread. Windows Server  > 

Can not edit group policy

here's scenario, at beginning there windows server 2003 a dc, later on company required new server so previous staff installed windows server 2012 r2 on new server machine. he make windows server 2012 pdc , windows server 2003 secondary. i didn't know how accomplished process. but when tried edit group policy got these errors: 1. group policy management "a processing error occured collecting data using base domain controller. please change base domain controller , try again" 2. group policy error "failed open group policy object" might not have appropriate rights. details: network name cannot found. *i logged on server administrator. here's tried after googled: 1. perform non-authorative restore sysvol change registry. 2. checked content in sysvol under domain folder empty in both dc and checked whether sysvol folder shared or not typed "net share" in cmd, it's shared. 3. did metadata cleanup. here's

Hyper-v: Delay the poping up of the connection bar of Hyper-v when running in full screen.

hi everyone:         there way this? every time moved mouse top of vm, connection bar pop hidden state. bothered me.        thank much... hi woods, as far know, behavior design.  i'm afraid the action can't changed. best regards, leo please remember mark replies answers if , unmark them if provide no help. if have feedback technet support, contact tnmff@microsoft.com. Windows Server  >  Hyper-V

Granting domain-user local power user or administrator

hi i've got user have laptop can take home. i want give user local power user / administrator tho logged in domain-user credentials thanks. you add domain user account local power users group or administrators group on laptop, depending on kind of rights , permissions want user have while logged on laptop.   once add user administrators group, there no need add user power users group. visit: anitkb.com , knowledge base. Windows Server  >  Windows Server General Forum

PHP not sending mail with local SMTP

hi, hope can help i have set iis server on 2008r2, , included standard smtp (with iis6) and php well. the php works, beautifully. smtp works, beautifully. however, don't seem work together. i able use smtp server send mail office mfp scanning ms outlook 2010 no trouble @ all. php works, i have accessing odbc databases , no apparent issues there. on basic webpage, set following: <html> <body> <?php if (mail("me@example.com","test subject","test body")) {echo "success";} else {echo "failed";} ?> </body> <html> all end "failed" on page. i have added following php.ini found in "c:\program files (x86)\php\v5.3\" [mail function] smtp = localhost smtp_port = 25 sendmail_from = no-reply@example.com i have no idea go hunting php logs find out happened , why. any appreciated imho problem in initial configuration of install process o

How to remove the permission to delete a GPO for Domain Admins

Image
hi there, i able set deny delete statement in group policies domain admins not able delete them. when try in environment using gpmc domain admin account able remove policy. environment windows 2008 r2 the aim prevent accidental deletion of few key policies allowing small group access. know limitation security here - want reduce possibility of accidents rather secure policies against domain admins. thanks in advance, goldstien hello, here go: can use "active directory users , computers" snap-in. ensure have "view - advanced features" enabled. goto "system". browse gpo. edit properties: you can in gpmc. add "everyone" , deny "delete" , "delete subtree". mvp group policy - mythen, insiderinfos und troubleshooting zum thema gpos: let's go, use gpo! Windows Server

Windows server 2012 essentials errors

i 2 errors in email since turned on windows 2012 essentials server can not resolve. 1 related router setup , other media server. have not found solutions either of these problems , router setup show on dash board. anywhere access working fine show error below. cannot media services except try restarting server , run setup again.   ccs-server: router not configured correctly     the router not configured correctly anywhere access. must configure router remotely access network.     12/7/2014 12:49:39 am existing alerts:   ccs-server: 1 or more services not running     the following important windows services not running: windows server media streaming service (wssmss) note: services can stopped when software updates applied.     11/13/2014 7:18:27 pm any appreciated. hi, à the router not configured correctly please open dashboard, click settings . in settings panel, navigate anywhere access tab, did find “ issues detected. click repair attempt resolving

How to block renamed video/Jpeg files getting copied to FSRM filtered folders

we have implemented file screening on particular folder in windows server 2008 std edition using fsrm. right users not able copy new jpeg , audio video files in folder. but there are few clever users changing extension of image file on desktop and copying same file folder applied filtering. means, if user renaming *.jpeg *.doc he able copy file. want stop user copying image or audio video files in folder after renaming also.  how that.  please help. sorry there no solution this. hard confirm whether files business related or not (and pictures can stored in doc files). company policy should needed work computer policy. for issue can find workarounds such set policy clear files older days (so server folder not place save personal files), set quota (so large files not stored , save network resourse) etc. shaon shan |technet subscriber support in forum |if have feedback on our support, please contact tngfb@microsoft.com

Folder Permissions

hi, here problem: have parent folder multiple sub-folders. need give access "group a" specific folders , restrict access rights rest of folders. how can achieve that? have tried setting group on parent folder level deny permissions, un-ticking "inherit parent permissions" option on child folder, still got no access child folder. other option go through each child folder , add group deny permissions group, not preferable, since have lot of child folders. appreciated. thanks you should grant group traverse folder permission on parrent folder , enable folder scope. , explicity add necessary access permissions required folders. http://www.sysadmins.lv Windows Server  >  Security

Does Update-Help actually run only once a day unless the -force switch is used?

from get-help update-help "you can automate running of update-help adding update-help command windows powershell profile. default, update-help runs once per day on each computer. override once-per-day limit, use force parameter." in spite of that, i'm seeing update-help show progress bar text on each subsequent run.  i did not expect that. so concern still updating every time in spite of said?  playing around suppressing progress bar , figured best way change context.  should keep having wait updates needs do: start-job -scriptblock {update-help} when retrieve job you'll still see progress bar.  send straight remove-job , don't have worry producing output.  that's pretty weird command. hope helps! jason Windows Server  >  Windows PowerShell

can't open 'start' menu in the task bar and Project Spartan is not opening - Build 10074

Image
when clicking on 'start' button, nothing happening... working fine till yesterday .. also unable open 'project spartan'... open , automatically close. kindly help. i can't access cortna unable open/click on start menu. start menu not open after 2-3 minutes... wrong somewhere.. kindly help re : cortana don't need use start button access cortana. can click open long rectangular box next start button ? re : start menu not open on bottom right corner, there notification icon right next time. can click open it. if yes, , select settings > go recovery & updates > click check updates. see if there updates ready installed. Windows 10 Insider Preview  >  Windows 10 Insider Preview General

Net Pro Admin Logs

can tell me netpro adminlog. use perticular database store logs, file formats support, how filters log information, can export compressed log file or compresses logs save disk space, stores compressed logs ( on file system or in database). please reply....... thanks.. hi,   could please let know full name of “net pro admin logs”?   where did obtain tool?   is manufactured microsoft or third-party company?   tim quan - msft Windows Server  >  Management

COM Port redirection on Server 2012 R2 Remote Desktop

i have windows 2012 r2 standard server acting application server. it's running on vmware 5.5. there's 2012 r2 server instance-domain controller-running vm. users connect using rdp windows 7 pcs. one user has a debit card pinpad connects 1 of pcs via com1 serial port. pinpad used pass-through old terminal server, new server not see on of com ports. on server have made sure ou containing terminal server has of "disable redirection..." settings disabled, , set on default domain policy. the client has appropriate boxes checked forward local devices in rdp session shortcut. this system has credit card swiper connects via usb , works properly. i did searching , found few articles related on 2008 didn't directly help. thanks in advance help! -greg c greg charland charland technology - business tech experts 888-928-3336 gregc @ charlandtech dot com this did not work. have decided give trying make com port redirect , use usb-to-com adapter, pass thr

Unable to install KB2847204 & KB2829530 in windows 2008 R2 Enterprise with IE 8.

os: windows 2008 r2 ee total 3 server. having same patch set. unable install  kb2847204 & kb2829530 on 3rd server please run the system update readiness tool. http://windows.microsoft.com/en-us/windows7/what-is-the-system-update-readiness-tool?signedin=1 then post contents of; %systemroot%\logs\cbs\ checksur .log       regards, dave patrick .... microsoft certified professional microsoft mvp [windows] disclaimer: posting provided "as is" no warranties or guarantees , , confers no rights. Windows Server  >  Windows Server General Forum

2012 IIS Configuration / Administrators Group

Image
hello, getting access denied errors when trying configure iis in 2012 domain administrator account.  i have domain admin in domain admins group , explicitly put them in servers administrators group.  i running scripts use microsoft.web.administration.servermanager library configure settings in iis (i.e. manipulate config files).  i getting access denied due lack of privileges.  if run true .\administrator account works fine script @ point connects out database won't able use machine administrator account.  anyone know of security change cause or how fix / around it? hi, domain admin should local admins group member. suggest turn off uac , try again. in addition, please run powershell administrator. regards, yan li yan li technet community support Windows Server  >  Windows Ser

File Services Resource Manager & DISM Failure

hello community i @ small/medium business , took on previous coordinator recently, in making few changes added features our 2012 server. last feature add vpn client third party solutions expensive our requirements. not sure if causing issue or not feature want add part of rsat. employees have personal home folders department share access. there never policy file types or quotas set home folders. wanted implement using fs-resouce-manager. when trying install using gui fails error dism session not opened. access denied error 0x80070005. when attempting using powershell same error  using dism /online /enable-feature /feature /featurename:fs-resourcemanger  starts dism fails access c:\ can elaborate on why having problem?  solved this, installed roles associated not default roles. using gui. Windows Server  > 

Restrict how many applications can run in a single user session

client: windows xp sp3 server: windows server 2003 i doubt possible, figured i'd ask in case... is there way restrict how many active windows user can have opened during session?  have several users open upwards 30 e-mails in 1 sitting, along 10-20 presentations and/or spreadsheets (ms office 2007). they on vms (vmware esx 3.5 vdi), not on terminal services.  rdp vms though.  thank you, fernando howdie!   am 20.05.2010 17:58, schrieb fernando chanco: > there way restrict how many active windows user can have > opened during session? have several users open upwards 30 > e-mails in 1 sitting, along 10-20 presentations and/or > spreadsheets (ms office 2007).   no can't. restrict applications not number a user can run.   cheers, florian   microsoft mvp - group policy (http://www.frickelsoft.net/blog) Windows Server

Active Directory Replication/Validation

Image
i have 2 servers @ client site. both windows 2008 r2, both domain controllers, , global catalog servers. replicating ok (or @ least appears have), idea if 1 goes down business isn't impacted in way. yesterday of internal machines couldn't internet , many of internal mappings new server wasn't listed main dns server. have since corrected that, , pointed new server first dns , older server second.i disabled ip-v6 (for now) , nslookup shows new server. prior said unknown , pointed ::1. the problem having firewall pointing new server remote access (rdp), relying on old server active directory validation. if try log vpn ethernet old server unplugged, validation error. none of remote users if old server gets interrupted, i.t. staff here supports them. happened couple of nights ago, how stumbled on this. way force validation @ new server? kaleb jacob hi jacob, thank question.  i trying involve more familiar topic further @ issue. sometime delay might expected

WSUS 3.0 SP2 on a SQL Shared Cluster

can database of wsus 3.0 sp2 installed on sql shared cluster? can database of wsus 3.0 sp2 installed on sql shared cluster? yes. there no special considerations doing sql cluster appear wsus single-node/standalone sql server would. lawrence garvin, m.s., mcitp:ea, mcdba, mcsa principal/cto, onsite technology solutions, houston, texas microsoft mvp - software distribution (2005-2010) mvp profile: http://mvp.support.microsoft.com/profile/lawrence.garvin blog: http://onsitechsolutions.spaces.live.com Windows Server  >  WSUS

Rebuild WSUS

is ok rebuild wsus? is ok rebuild wsus? there more question appears be? answer did expect: "no, it's not okay rebuild wsus. can ever install once in lifetime right first time , if breaks... oh sorry, bad, can never use again?" truly, not understand question. lawrence garvin, m.s., mcitp:ea, mcdba, mcsa principal/cto, onsite technology solutions, houston, texas microsoft mvp - software distribution (2005-2010) mvp profile: http://mvp.support.microsoft.com/profile/lawrence.garvin blog: http://onsitechsolutions.spaces.live.com Windows Server  >  WSUS

File Sharing: Restrict share access based on COMPUTER account, not USER account

Image
is possible grant computer account access share?  have modified share , ntfs acls include computer account.  can "net use" map drive share.  when try access mapped drive, os returns access denied error. i cannot use domain user account purpose.  need lock down share users logged specific computers can access share. the other workaround create dozens of user accounts, restrict accounts can logon specific computers, , grant domain accounts access share. yes, it's possile grant computer account access share, because computers actual principals users. modify permissions of shared file, when add permissions, choose object type computers, , add computer accounts list. refer this: managing permissions shared folders regards, miya miya yao technet community support Windows Server  > 

Getting Volume Shadow copy information on Multiple servers

hi, i beginner in power shell , trying write power shell script shadow copy drive space information on list of servers. need output in csv format servername, drive info free space , used. tried writing below script not giving me desired output. logdate = get-date -f ddmmyyyy $servers = get-content -path "c:\temp\machinelist.txt" foreach ($server in $servers) {vssadmin list shadowstorage}  i tried below get-wmiobject command not giving me desired output either. get-wmiobject win32_shadowstorage | select-object @{n=’usedspacegb’;e={[math]::round([double]$_.usedspace/1gb,3)}}, volume any appreciated. thanks manish msharma get-wmiobject win32_shadowstorage -computername ws701 | select pscomputername, maxspace, usedspace, allocatedspace must run elevated when querying local computer. windows 7 client , windows server 2003 minimum. \_(ツ)_/ Windows Serv

Direct Access NLB and self-signed certificate

can advise if server 2012 direct access cluster using windows nlb work self-signed certificate ip-https? of documentation advises must public certificate others have working fine using self-signed certificate. has got working self-signed certificate? know production should public cert. thanks alistair hi, according article below, seem the self-signed certificate not work if nlb directaccess server. how configure directaccess in windows server 2012 work external hardware load balancer best regards, susie Windows Server  >  Windows Server 2012 General

How to Sum the cost of similar products in Powershell2.0

hi, i have text file below entries:- product                  cost television                  500 laptop                       300 modem                      25 television                    100 modem                       35 laptop                        700 how sum cost of similar products , write text file below? (should display product name along sum) product               cost television              600         laptop                   1000 modem                  60 tried “measure-object execcount –sum” gives sum of products. want individual sum of similar products.  looks there no easy way in powershell. thanks, does any? $hash = @{} get-content file.txt | foreach { if ($_ -match '(^.+?)\s+(\d+)'){ $hash[$matches[1]] += [int]$matches[2] } } $hash update: had edit (replaced last line $hash) the cold meds staring kick in, better quit now. [string](0..33|%{[char][int](46+("6865524953516366525562621853556

Certificate Enrollment - The RPC Server is unavailable

hi all, i have got issue no server / workstation can renew certificate. found link  that joson did mentioned way fix it, unable add "authenticated users" group "certsvc_dcom_access". when add authenticated users member of "certsvc_dcom_access" group, pop error: following active directory error occurred: new member not added local group because member has wrong account type. can guys please suggest ways fix issue? thanks in advance, gary hi gary, would tell os of system trying add members "certsvc_dcom_access" group? i suggest try use command below see whether works. net localgroup "<localgoupname>" "nt authority\authenticated users" /add in addition, please check on ca itself, whether local group "certsvc_dcom_access" has authenticated users group member. if has, please try disable firewall on ca temporarily test enroll certificates. best regards, amy please remember mark re

I encounter a bluescreen error when installing Windows server 2003 Standard edition on HP ML370 G6 server,

hi all,   i  encountered bluescreen error when installing windows server 2003 standard edition on hp ml370 g6 server, upon installation of different os win2k8 , win 2k8 enterprise installation process okay. how do i properly install ml370 g6 server windows 2003 standard os?   tnx.     installation of windows server 2003 standard successful after doing cpu configuration on bios settings.                   on bios settings                 cpu configuration: “set single core” (prior installation of server 2003 os)   then after installation of os, install windows server 2003 service pack 2, , return cpu configuration on default config, maximize cpu usage.   Windows Server  >  Windows Server General Forum