Posts

Showing posts from April, 2011

Prioritizing Group policy application to Windows 7 in a Windows 2008 AD environment

how make sure order gpo's applying on windows 7 workstations. how change order? is order listed in gpresults order applied? -open gp management -click on ou , in right section see "linked group policy objects" -on "link order" tab, last link applied first. kind regards, tim mcitp, mcts http://directoryadmin.blogspot.com this posting provided 'as is' no warranties or guarantees , confers no rights. Windows Server  >  Group Policy

Missing sharing tab on properties dialog

when right click on 1 folder and open properites dialog, there're 4 tabs, general, security, previous versions, customize, no sharing tab.  i have opened file , printer sharing , public folder sharing. run \\servername on local server, shows folder named users share, when run \\servername  (or ip) on remote computer, said "windows cannot access \\servername", , click diagnose, problem "file , print sharing resource (servername) online isn't responding connection attempts." (ping ok). i run "at \\server ip " on remote computer, error returns: network path not found. i run "sc \\server ip query" on remote computer, returns "sc] openscmanager failed 1722:the rpc server unavailable. " firewall checked already. btw, remote desktop doesn't work either. port 3389 listening, cannot telnet server 3389 on remote client. i have spent lot of time on this. thank much!   hi,   please try disable ...

2008 R2 Domain Account Logon/Logoff Events Reporting

i have 2008 r2 domain auditing enabled both account logon/logoof @ defaul domain policy , domain controler policy. i track logon events id 4777. what accout logoff event id , best way track/report account logon/logoff events? hi,   in windows server 2008 r2, log off event id 4634. more information, please refer to:   audit logoff http://technet.microsoft.com/en-us/library/dd941621(ws.10).aspx   description of security events in windows 7 , in windows server 2008 r2 http://support.microsoft.com/kb/977519   hope helps. this posting provided "as is" no warranties, , confers no rights. please remember click "mark answer" on post helps you, , click "unmark answer" if marked post not answer question. can beneficial other community members reading thread. Windows Server  >  ...

Strange svchost crash

i running windows 2008 r2 sp1 64-bit server. , encountering weird error, namely every 1-2 hours svchost crashes following error: "faulting application name: svchost.exe, version: 6.1.7600.16385, time stamp: 0x4a5bc3c1 faulting module name: ntdll.dll, version: 6.1.7601.17725, time stamp: 0x4ec4aa8e exception code: 0xc0000005 fault offset: 0x000000000004e4b4 faulting process id: 0x398 faulting application start time: 0x01cd0089bb8a8f90 faulting application path: c:\windows\system32\svchost.exe faulting module path: c:\windows\system32\ntdll.dll report id: 0fe60889-6cf5-11e1-8ee5-001e67257e05" this crash coensides system account log in (possibly scheduled task, although have not found tasks scheduled run @ these times): an account logged on. "subject: security id: system account name: "servername"$ account domain: ktmk logon id: 0x3e7 logon type: 5 new logon: security id: system account name: ...

Remove and re-add inheritance on file structure.

server 2008r2. somehow, on time, have instances inheritance has been removed, rights screwed with, , have been blocked having rights on files supposed to. suspect sloppy work junior administrators not following proper procedures, beside point. have corrected rights issues via cacls , takeown necessary, want verify , re-set inheritance because broken somewhere in directory structure. unable correct via gui "apply on , subfolders", access denied, though can verify on file complaining not have access (the administrators local group) has full control, owner of file, , can open file. looking scripted way first remove inheritance on every file in given directory , subdirectories, re-apply inheritance , set inherited acl's on files. first, possible, second if so, how? hi, i think possible using command tool such icacls. for example, icacls c:\root\sub /reset /t can reset permission of c:\folder\sub folder inherit permission settings on c:\root. then we can mo...

NO PUEDO ACTIVAR ACTIVE DESKTOP

cada vez que quiero ingresar internet aparce la pagina inicial y los segundos se cierra,configure elsistema, trate de volver cargar windows xp nuevamente pero persiste el problema y la coneccion internet esta activa todo comenzo cuando baje ares y travez de ares puedo acceder internet y la pagina principÀl de google y mis correos, la consulta que debo hacer para ingresar internet desde la pantalla principal y desde los iconos de escritorio hola, lo mas probables es que tengas algun virus o malware, revisa tu computadora con un buen antivirus (como smart security o kaspersky), y correle algunos antispyware (como spybot search , destroy o superantispyware), seguro encontraran algo. saludos edgar lópez r. si la respuesta te fue de utilidad, no olvides marcarla como correcta o útil. Windows Server  >  ...

After changing windows 2003 server IP - I lost the sharing

hello experts,  i have windows server 2003 , workstations (windows 7)  i changed subnet them , changed ips  layer 3 connectivity seems fine ping test  the problem facing devices can't see each other in network , lost file sharing  troubleshooting: - restart devices - made sure network discovery on at minute changed ips previous subnet, worked fine.  can please assist?  many in advanced hi anne, thank reply i tried change subnet previous one. accessing server shared files possible ip (\\serverip) not (\\servername) so restarted dns client, , other network tcp/ ip , peer services on both server , workstations disable, enable adapter , able access server name cheers, nour Windows Server  >  Network Acce...

Some xp pro desktops intermittently cannot access network resources and give event id's 1054, 1053, and 1000

i've got small network of 25 or pc's 2 dcs: 1 win2k3 sbs, 1 win2k3 enterprise. on past few weeks i've been getting intermittent issues 1 or 2 desktops offline after poweron, users not have network drives and/or printers. tried setting policy "always wait network @ computer startup , logon." -no fix i tried registry add disabledhcpmediasense described in http://support.microsoft.com/kb/239924/ tried dependonservice registry edit ( http://support.microsoft.com/kb/938449 ) no fix turned verbose userenv logging on network pc's , have collected log failed startup, paste below. notice first problem ping failed, think test slow link detection. i'm not sure should try rid of slow link detection, because if can't ping, can't else either. yet, once logged on, manually navigating network resources works. problem during startup. here's log: userenv(2a8.1f8) 08:04:24:609 processgpos: userenv(2a8.1f8) 08:04:24:609 processgpos: ...

Moving a .vhd

Image
hi, we have base server 2008r2 server2008 virtual machine running on it. server has c , d partition. when spun virtual server accidentally put .vhd on c drive 75gb instead of 1tb d: can down virtual server , move .vhd other drive?   btw, don't need snapshots moved or that...we don't have any. it's new server, want move virtual hdd c: d: hi clickclack, the best way move vhd drive d: export hole vm. following steps: shut down vm in hyper-v manager couse export , specify path directory export structure placed delete vm or if unsecure rename vmit import vm new path grüße/regards,carsten rachfahl http://www.hyper-v-server.de Windows Server  >  Hyper-V

Getting Error 80070006

when try running wsus.vbs script, says line:61 char:1 handle invalid. code:80070006. can it? the script follows:- set updatesession = createobject("microsoft.update.session") set updatesearcher = updatesession.createupdatesearcher() wscript.echo "searching updates..." & vbcrlf set searchresult = _ updatesearcher.search("isinstalled=0 , type='software'") wscript.echo "list of applicable items on machine:" = 0 searchresult.updates.count-1     set update = searchresult.updates.item(i)     wscript.echo + 1 & "> " & update.title next if searchresult.updates.count = 0 then     wscript.echo "there no applicable updates."     wscript.quit end if wscript.echo vbcrlf & "creating collection of updates download:" set updatestodownload = createobject("microsoft.update.updatecoll") = 0 s...

How to migrate share and share permissions

want migrate exsisting shares (c drive) , share permissions new server with different drive letter (d drive). there posts on forum talking registry export/import applies to migration when destination has same drive letter source.  it seems modify the exported registry reflecting drive change.  anyone know value need modified? or way migrate shares share permssions? thanks. this posting provided as-is no warranties/guarantees , confers no rights. hi you can following articles http://www.petenetlive.com/kb/article/0000427.htm http://social.technet.microsoft.com/wiki/contents/articles/9170.how-to-migrate-file-shares-permissions-and-user-profile-paths-in-a-windows-2003-domain-en-us.aspx in article shown use robocopy migrate permissions. example robocopy.exe  \\serv1\users   \\serv2\users  /copyall /lev:1 /zb /v /fp /w:5 /r:5 /log:copy.log mcse | mcitp [x2] | isms27001 ...

How to access displayName property value in object returned by DirectorySearcher? (newbie question)

hi all i use following snippet loop thru ad , collect information users. $adsearch = new-object system.directoryservices.directorysearcher $adsearch.searchroot = $ad $adsearch.filter = "(&(objectcategory=person)(objectclass=user)(!useraccountcontrol:1.2.840.113556.1.4.803:=2)(mail=*))" $adsearch.searchscope = "subtree" # fields should retrieved foreach ($adprop in "cn","samaccountname","displayname","mail") {  $adsearch.propertiestoload.add($adprop) > $null } $adresult = $adsearch.findall() foreach ($i in $adresult) {  $aduser = $i.properties  $user_list += $aduser.displayname + " (" + $aduser.mail + ") - " + $aduser.adspath + "`n" } unfortunately "displayname" property empty in result list. when using $aduser | fl while debugging can see it's there, can't figure out how it. i assume newbie-question...help ap...

PowerShell to get list of RDS users (not active sessions)

is there way (preferrably powershell) generate list of domain users access various xenservers? have geographically disparate network hundreds of servers trying manage, , need accurate count of users access servers licensing reasons. suggestions? prefer buy software package if not necessary. thanks. hi bobby, as far know, terminal servers don’t keep track of users have logged on before, can find out users logged on. to find out users have logged on, may need collect related logon event messages. find logged on users on remote system/s https://gallery.technet.microsoft.com/scriptcenter/d46b1f3b-36a4-4a56-951b-e37815a2df0c quick-hits: find logged on users http://learn-powershell.net/2010/11/01/quick-hit-find-currently-logged-on-users/ please note: since web site not hosted microsoft, link may change without notice. microsoft not guarantee accuracy of information. in addition, here powershell forum below if there powershell related queries: https://social.technet.mic...

WSUS not Synchronizing MS11-025

a vulnerability scan revealed several windows 7 machines on network needed security update ms11-025 (visual c++ redistributable). in case are: 1. wsus setup synchronize windows updates 2. none of these machines running visual studio (ie vc++ redistributable installed) 3. wsus not show patches security update ms11-025 unless visual studio 2008 synchronized. http://social.technet.microsoft.com/forums/en-us/a1086629-e9c4-4d1d-92b8-e4a236b0c0b8/bulletin-ms11025-updates-2538243-2538242-not-listed-in-wsus?forum=winserverwsus     unfortunately if visual studio 2008 selected synchronization ms11-025 security update wsus imports not 1 applicable windows 7 only install of visual c++. why happening? solution , if update not appear in wsus after synchronization possible manually import , select applicable machines install? but vc++ redistributable can exist without visual studio. yes, can; has absolutely nothing how ...

Using Server 2012 Essentials For Backup

so, here plan. run server 2012 essentials on hyper v along side other instances of server 2012 - 1 ad, 1 sql server. use essentials run backups vms, physical server, , client pcs running windows 8. are there issues doing this?  if not, here questions: 1. possible select disks backups saved to. 1.1.  say have 4 disks storing backups, possible swap them out , stick new 1 in - allow transferring them off site , switching daily or whenever. 2.2 - or have use storage space this?  3. essentials backup sql server, or image of server instance running on? a couple of things: windows server 2012 essentials must pdc in it's domain. not running ad off of server, virtual or physical. the connector windows server 2012 essentials supports windows 7 , windows 8 operating systems. no server operating system supported, unable servers essentials server. see this page in documentation more information. now, questions: yes, whole, i.e. can pick locaito...

SSL handshake using Windows Server 2012 and IIS 8.5

hi, we built an application running on iis 8.5 (windows 2012 server). application require ssl connection , cliente certificate. on iis 7.0 application had a good behavior, after deploy iis 8.5 start have strange behavior. now, application asking pin of smart card randonly. on iis 7.0 application asked pin during initial ssl handshake. the client certificate stored on smart card (x509 certificate). is there parameter adjust on iis 8.5 or tool try understand happening? have tried microsoft monitor, without success because data encrypted (ssl). some advice or explanation appreciated. regards, marcos fogaça hi, did updated smartcard driver ? regards, philippe don't forget mark answer or vote helpful identify information. ( linkedin endorsement never hurt :o) ) answer interesting quest ion ? create wiki article it! Windows Server ...

Microsoft Word Starter Slow

Image
i have microsoft word starter pre installed in acer 5250 lap top, along windows 7 home premium. on selection, word starter pop window comes immediately, page slow load, taking 30 seconds or more. i have done repair control panel without success. is there can speed up? regards melita hi, please try reinstall printer driver test issue. if cannot work, please test new windows profile refer below links: - create user account http://windows.microsoft.com/en-us/windows7/create-a-user-account - fix corrupted user profile http://windows.microsoft.com/en-us/windows7/fix-a-corrupted-user-profile if problem still persists in new profile, should contact computer manufacturer resolve issue, such reinstall word starter. best regards. william zhou technet community support Microsoft Office  >  ...

Need to change product key on W2K12 R2 Data Center?

Image
hi all, a consultant installed several windows server 2012 r2 data center virtual machines on new hardware on behalf of employer. unfortunately did not use iso employers microsoft vlsc (volume license software center) downloads page windows server installations. the result message in windows server follows - worse still when attempt activate windows viable key (which have retrieved vlsc) see message below. it seems isos vlsc intimately linked keys same, or perhaps consultant used boxed disk instead of downloaded iso.  at rate not in position reinstall operating systems (on multiple vms) because doing inhibitively expensive , lead unacceptable business down time. is there way of changing product key such through use of powershell. any here appreciated. kind regards, davo i think if domain controller might response unsupported.     regards, dave patrick .... microsoft certified professional microsoft mvp [windows server] dat...

how do i allow users to access a specific folder in the C drive while hiding other folders?

need give users access 1 folder (out of 19) inside of c: drive , within folder give them access 3 (out of 4) other specific folders have found how deny access whole c: drive using gpo; 1 of co-workers pointed out users need access 1 folder , 3 of folders inside of it. tried using shortcuts these folders access still denied, shortcuts start programs work.  folder has 4 programs installed, why these located in c: drive.  have found following: files or folders in console tree, right-click  file system . where? computer configuration/windows settings/security settings/file system click  add file , in  add file or folder , click file or folder want change, , click  ok . doesn't seem work me because cant find "file system" inside of security settings. server in different language, problem there no option can match one; article server 2003 , 2008, i'm guessing different in 2012....

How to add website port correctly in windows server 2008 R2

hello:           new windows server 2008. set new server , install windows server 2008 r2 , try transfer website located in win 2003 server new 2008 server.           problem is that create new website in 2008 server , try assign 8000 port website.            create port policy in firewall found local view in same machine ok. when try remote connect webserver located in windows 2008 server trouble.            try close firewall remote connect still did not work.            it simple configuration in win server 2003 seems to make headacke in win server 2008.            did know how fix problem? please patient if did not mark reply answered because testing suggestion....

The File Replication Service has detected that the replica set "DOMAIN SYSTEM VOLUME (SYSVOL SHARE)" is in JRNL_WRAP_ERROR

one of our domain controllers has replication errors , reporting “the file replication service has detected replica set "domain system volume (sysvol share)" in jrnl_wrap_error” , g roup policy not being replicated out pdc. noticed error when had group policy related errosr on clients computers.   this server windows 2003 domain controller , has fsmo roles assigned it. problem started when joined additional windows 2008 domain controller.   our network had 2 windows 2003 domain controllers working fine without replication errors, until added additional windows 2008 domain controller.   environment:   server 2003 forest level, server 2003 domain level, single domain/forest, (2) 2003 domain controllers and   (1) 2008 domain controllers.   i have read in forum setting burflags d2 , restarting ntfrs service might resolve problem. have few concerns/questions. 1.        the domain c...

how to add multiple users with passwords and groups

we college adding students 365 education , need add password, license , put them in group. believe can done powershell. have script or how written. we use on live.edu , moved office 365 education. if go admin center portal.microsoftonline.com 365 can add users 1 @ time or use csv file add 250 users @ time. csv file not have parameters inserting password user or put them in group , need functionality add 3000 students per semester. not want sync college ad due if remove student ad removes email account 365. have seen somewhere can install powershell on pc , connect 365 site , run script add users passwords, groups , assigned a2 license office. configuring script powershell appreciated. Windows Server  >  Windows PowerShell ...

AD+.txt related scrypt question

hello, trying figure out how make script that: 1. takes data text file(which contains list of user id's ad) 2. sorts out users, did not log in in 30 days 3. exports file. at moment got: i figured not getting id's .txt xxx path, searching whole ad noticed, , txt document, giving list of inside. $text1 = write-output > random text < $lastdate = ( get-date ) . adddays( -30 ) $filter = { lastlogon -le $lastdate } get-content -path xxxx get-aduser -filter $filter -property lastlogondate | sort-object -property lastlogon -descending | export-csv xxx $text1 hi heim, try this:$date = (get-date).adddays(-30) get-aduser -filter * -properties * | select -property name,lastlogondate | ? {.lastlogondate -le $date} | sort -property lastlogondate -descending | export-csv logon.csv best regards, andy please remember mark replies answers if , unmark them if provide no help. if have feedback technet subs...

Can't ping server, but server can ping me.

hello experts. my windows 2008 r2 can ping client , remote them clients can't. how can solve it? thank you. there multiple reasons be. first lets start firewall on server. test disable , see if client can ping it. or configure icmp rule. as remoting needs configured on server if have not done so. can done under remoting properties. right click computer --> properties --> on left hand pane select remote settings. in there can configure allowing remote connections , can rdp server. if of above has been tested , have more complicated network might want speak network guys , see if there asymmetric routing going on.  Windows Server  >  Network Infrastructure Servers

Pushing (Named Pipes) through Group Policy !!

hi,  i wondering if possible push system dsn config , details through group policy users vs. going on each individual pc , giving user admin rights able change or modify particular system dsn / protocol switching them end-users quite headache 30+ users . in nutshell want default whole group of users use (named pipes instead of tcp/ip) connect sql data achievable if user has admin rights , want avoid. thanks to push out or update data source names (dsn) can use gp preferences, item type "data sources": http://technet.microsoft.com/en-us/library/cc770803.aspx i have not tried deploy 'named pipes' far, if create dsn (temporarily) on gpo management machine, can import dsn settings , necessary attributes should created automatically. concering sql authentication remember  there bug in ui, there workaround: http://www.frickelsoft.net/blog/?p=115 if new gp preferences (gpp), these links it: http://www.microsoft.com/downloads/details.aspx?familyid=42e30e3f-6f01-4610-9d...

Disk Management

on 3 node windows 2008 r2 failover cluster configured volume of 1.7tb ( iscsi san) . later have removed volume csv and  failover cluster . that  lun spilt in san 4 luns , assigned 3 nodes. when run cluster validation test shows list potential cluster shows failed , shows failed attach disk id in nodes. have restarted nodes . disk management shows disk reserved ( 1.7tb) , shows policy set administrator . diskpart shows disk status reserved. physically lun removed. how can remove the disk diskmanagement   regards svs sajeev can run rescan on diskpart , check output? apart luns masked/unmasked in san environment. can check diskraid these luns appearing? Windows Server  >  File Services and Storage ...

Populate Hash Table from a Read-Host input

we have form use collect info new staff. looking way use info collected on feed powershell script automate as possible. today form submits email info collected in body of email. hoping able copy line email , paste in powershell read-host input line in powershell script , load hash table. think can format line needed thinking like name = "lomond, stephen";company = "abc";department = "it" this hoping use cannot see work $newuserline = read-host "enter user info" #i know below line not work trying figure out #$newuser = @{$newuserline} #i know line works cannot seem take input read-host $newuser = @{name = "lomond, stephen";company = "abc";department = "it"} $newuser.name $newuser.company $newuser.department any input welcome. not sure if best way approach this, works $newuserline = read-host "enter user info" $newuserline = $newuserline.split(';') $name = $newuse...

Looking for Hyper-V Customer Reference

i'm microsoft gold partner working on opportunity local bank.  asking reference of bank in new england area has done server consolidation project hyper-v , have not been able find one.  been through case studies , whatnot no help.  know of bank or credit union in nh,vt,ma,ct,me or ri (or ny) has hyper-v in production environment?  i'm against vendor playing vmware game of discredit to win! you might want start here... https://partner.microsoft.com/us/40093364 david a. bermingham, director of product management, steeleye technology Windows Server  >  Hyper-V

adprep.exe is not a valid win32 application windows server 2003 SP2

hi i migrating active directory windows server 2003 windows server 2012. when run command "adprep.exe /forestprep" getting error "adprep.exe not valid win32 application windows server 2003" . so please me out. regards manjesh sharma the behavior design , not have run it. done automatically when promote first windows server 2012 dc. this posting provided no warranties or guarantees , , confers no rights. ahmed malek my website link my linkedin profile my mvp profile Windows Server  >  Directory Services

performance monitor in windows server 2012

Image
hi,  when run performance monitor error "unable add counters" i search internet, there not  post talking win 2012, in other posts saw need replace  perfc009.dat  file , the  perfh009.dat and in <var style="color:#333333;font-family:'segoe ui', arial, verdana, tahoma, sans-serif;font-size:13px;line-height:normal;">driveletter</var> :\i386\ there not i386 folder in windows server 2012 installation. http://support.microsoft.com/kb/300956/en-us need help, thanks lior   i found solution, there regestry key : hkey_local_machine\software\microsoft\windows nt\currentversion\perflib disable performance counters '1' , changed '0' , it's working. Windows Server  >  Windows Server 2012 General ...