Posts

Showing posts from April, 2012

PowerShell 2.0 issues with DB Artisan

does have issues powershell 2.0 not loading db artisan 8.15, 8.55  or 912? after installing powershell not open db artisan, getting below error message.  hi, your error message didn't appear, you'll need repost it. if don't response familiar product (i'm not, sorry), can try contacting embarcadero support here: http://www.embarcadero.com/support don't retire technet! Windows Server  >  Windows PowerShell

Domain Admin

hi, we have 10 desktop engineers, having domain admin right. because, daily need join/dis-join desktop/laptop pc's domain. is there anyway can restrict these engineers join/dis-join , nothing else.i don't want give other rights, because know domain admin can in domain. we using windows server 2008 r2. clients xp , window7 you can delegate control to join/unjoin pc domain. http://robiulislam.wordpress.com/2012/02/07/delegate-non-admin-account-to-add-workstations-to-domain/ how delegate basic server administration junior administrators  http://support.microsoft.com/kb/555986 best practices delegating active directory administration  http://www.microsoft.com/en-us/download/details.aspx ? hope helps best regards, sandesh dubey. mcse|mcsa:messaging|mcts|mcitp:enterprise adminitrator | blog disclaimer: posting provided "as is" no warranties or guarantees , , confers no rights. ...

2008 Cluster

i encountered issue today while trying check available disks cluster storage doing add disk, after verifying disks killed add disk window in cluster instead of clicking cancel button. after add disk window killed still added available disks cluster , removed newly added disks cluster caused cluster disks go offline , come online 1 of disks added had binary files of sql server. did encounter kind of situation in past? until today thinking killing window closing surprised see killing window in fact did should doing when accept clicking ok button. this windows 2008 cluster windows 2008 os , sql 2008 r2. hi sqldbakm, did same issue everytime close window? i performed test in lab didn't same issue, disks remain online. have run cluster validation , how result? are there other applications running on node? besides, there other related events? best regards, leo please remember mark replies answers if , unmark them if provide no help. if have feedback technet suppor...

Applocker/ SRP for domain controllers

i wondering if has references on configuring applocker/ srp settings domain controllers. task prevent .exe being installed on dc's and java/ activex being installed , ran. any design recommendations great. hi, please take @ following articles regarding applocker/ srp, , see if help: applocker step-by-step guide https://technet.microsoft.com/en-us/library/dd723686(v=ws.10).aspx using software restriction policies protect against unauthorized software https://technet.microsoft.com/en-us/library/bb457006.aspx best regards, wendy please remember mark replies answers if , un-mark them if provide no help. if have feedback technet subscriber support, contact tnmff@microsoft.com. Windows Server  >  Group Policy ...

Hardening UNC Paths Breaks GPO Access

hello, i attempting utilize group policy harden unc paths on 2 domain controllers.  have followed along steps create central gpo store, , have created object in accord ms15-011. i have following settings: status:  enabled paths <values> \\dc1 < requiremutualauthentication=1,requireintegrity=1,requireprivacy=1> \\dc2 < requiremutualauthentication=1,requireintegrity=1,requireprivacy=1> once apply dc ou, things rapidly go downhill.  specifically, no longer able view settings on appears already-in-place gpos.  further, when attempt edit gpo, claims don't have permission so. when remove harden unc path gpo domain controller ou, appears restore either right away or after gpupdate /force. i theory in order @ shares on these machines (which include policies), i'd need better proof of am.  well, accessing dc1 via remote desktop (to virtual host) , hyper-v domain admin.  didn't bother test dc2 since dc1 broke. the t...

DC Promotion - Setting up Network card

i planning put adc in ad infra. want know exact nic card setup. os windows 2012 std what have done a. put ipv4 address , default gateway , pointed primary , alternative dc ipa existing dns servers. b. in advanced -> dns settings  c. append primary , connection specific dns suffixes - radio button on d. append parent suffixes of primary dns suffix - check box marked e. register connection's addresse's in dns - check box marked f. use connection's dns suffix in dns registration - check box not marked. i want know if above settings ok, option (f) - mean - need check this?  hi, typically these default settings.make sure point primary dns different domain controller (in case have additonal ones) , can put loopback or secondary ones. f) means if have filled dns suffix in dns suffix thiws connexion , checked f) use dns zone name dynamiclaly register record in dns. assuming have single ad domain , dns internal zone not have check have more ,...

Indexing options parity between different versions of Windows and different areas of UI

in different areas of ui can see quite different settings regarding indexing. unfortunately there's no offisial documentation on how differ 1 another. here list of settings in question , assumptions. there questions can't answer to. “index drive faster searching”. setting appears on “general” tab of logical drive (volume) properties. can see on windows vista, windows server 2008 , earlier windows versions. assumption setting affects old-style idexing service-based search has effect on modern windows search. question how manage setting on windows 7 , windows server 2008 r2 (in case install indexing service explicitly)? problem last generation of windows not show option used before. “allow files on drive have contents indexed in addition file properties”. in windows 7 , windows server 2008 r2 setting has replaced previous 1 , located on “general” tab of volume properties. assumption setting only affects windows search-based...

File server File security

so have been tasked logging our file server. i using microsoft built-in tools. gpo turn on "audit detailed file share" success/failure using forwarded events log server.  my real issue generating on 1gb of logs every 10 minutes.  doing simple refresh on folder generates dozens of entries. there formula missing here make read or write not spam much... i have played "audit file system" , turned on auditing of read , writes spammed much.... it after 'detailed' audit. on large fileserver generate large amount of data Windows Server  >  Windows Server General Forum

Can't create file in EFS network folder

Image
i have 2 windows 7 pro sp1 pcs connected on network @ home, 1 workstation, other used file-server. on file-server have shared folder efs encrypted. i can connect , view folder workstation (and see encrypted files in too). but when try , create / save / move files folder windows explorer on workstation permission denied error , can't it. i checked permissions in sharing settings on folder on server tick , other users. both machines have got efs certificates , keys installed (shown fact can see other files in folder). it must efs because can create / save / move files other folders on file-server workstation. what's going on? permission missing , there log of @ in event manager can debug cause of it? hi, firstly, please check ntfs permission settings. ensure user has modify permission of folder. read (r) - view attributes, contents, , permissions. can synchronize. write (w) - can change attributes, , file contents. can create files or folders. can synch...

Microsoft Word on Windows XP system does not load from VB6 program and errors off with below error. It loads fine on Windows 7 systems.

Image
<object height="1" id="plugin0" style=";z-index:1000;" type="application/x-dgnria" width="1"><param name="tabid" value="{b4e8b217-bcfa-4a20-8a5e-5726729c1aea}" /></object> this third attempt @ trying to fix problem using microsoft forum.  since new person forum , don't know microsoft fixes, hope can tell me must done in plain english.  error receive when client trys open word file on xp system following: <?xml version="1.0" encoding="utf-16"?> <database> <exe name="pbs2001v1d.exe" filter="grabmi_filter_privacy">     <matching_file name="pbs2001v1d.exe" size="3317760" checksum="0xa4fa9965" bin_file_version="1.0.0.2" bin_product_version="1.0.0.2" product_version="1.00.0002" company_name="phymd" product_name="pbs2001v1d" fil...

2008 Clustering and SAN Volumes

running 2 node cluster on 2008. failovers working, san volumes going write protected state on second node. fail them original node, , stay in write protected state. take disks offline , online fixes until fail over. using diskpart clear readonly attrib fixes well, until fail over. if fail disks 2nd node, both offline/online , diskpart fixes work there well, until fail over. fun begins on again. thoughts, opinions? open command prompt (ie. start > run > cmd) administrative privledges type in command:  diskpart run command:  list disk look disk number that’s having the  problem .  in case have a  system  drive, raid 5 configuration (1 logical drive) , new drive, disk 2.  continue use in example note yours may differ. select disk using following command:  sel disk 2 enter following command:  attributes disk clear readonly exit diskpart command:  exit then test copying file or folder drive.  should instantaneous, wor...

Server 2012 Backup issue

Image
in our office i purchased windows server 2012 r2 standard edition. i want take backup using tape drive  default windows backup software in server 2012 tape drive option not shown. pls tell option take backup via tape drive without 3rd third party software. kindly needful asap. hello, tape drive not supported within windows server since longer times. see http://social.technet.microsoft.com/forums/windowsserver/en-us/6c2ec5d0-e50e-4471-b727-cb1f26ccdcbd/windows-server-2012-backup-tape-drive?forum=winserver8gen best regards meinolf weber mvp, mcp, mcts microsoft mvp - directory services my blog: http://blogs.msmvps.com/mweber disclaimer: posting provided no warranties or guarantees , confers no rights. twitter:   Windows Server  >  Windows Serv...

Windows Server 2012 Hangs After a While

good day, my server hangs after while have hard boot it. error 'online data retrieval occurs under roles. once reboot error disappears. please help!! thanks, mao first of all, need make sure server meets hardware requirements run windows server 2012 + applications use. for windows server 2012 system requirements, can refer that: https://technet.microsoft.com/en-us/library/dn303418.aspx you can proceed following: install available windows updates (to tested first) install recent versions of drivers, firmware , bios uninstall unused programs run chkdsk /r /f and sfc /scannow do clean boot if not can temporary disable security software in use , try again. this posting provided no warranties or guarantees , , confers no rights. ahmed malek my website link my linkedin profile my mvp profile Windows Server  >...

trying to change MASTER NIS server in Win 2008 DCs

 i have inherited set of 2 dcs 1 2008 r2 domain. dc1 running ms identity management unix works perfect. however, need move identity mamngt masgter nis unix second dc. have installed role in dc2, added dc2 nis subordiate, when dc2 shows unix server , unable access promote - it's grayed out.   i appreciate thouths on issue. thnx mariachi hello, please see http://technet.microsoft.com/en-us/library/cc754408.aspx  to change subordinate server master. best regards meinolf weber mvp, mcp, mcts microsoft mvp - directory services my blog : http://msmvps.com/blogs/mweber/ disclaimer: posting provided "as is" no warranties or guarantees , , confers no rights. Windows Server  >  Directory Services ...

Troubleshooting Distribution DCOM errors

hi there, can tell me how go troubleshooting distribution dcom errors on sbs 2011 server domain controller? i.e. start off simplest methods of troubleshooting before going onto advanced methods of troubleshooting. have noticed there various methods of fixing these distribution dcom errors online want ensure none of our systems not impacted changes distribution dcom simplicity of troubleshooting these errors i.e. cause systems crash, stopping responding etc. keep getting lots of these in event viewer on daily basis , want resolve them once , in order reduce number of event viewer logs. we’ve got 21x windows 7 pcs, 32x windows xp pcs, 4x windows 2003 servers, 3x windows 2008 servers, 1x windows sbs 2011 servers , 1x windows 2012 servers. performed reboots on servers few days ago i.e. shutting them down , booting them ensuring out of systems before doing maintenance work, included archiving of event viewer logs sorting out services weren’t needed stopping , disabling them , sett...

NAP DHCP Enforcement - Group Membership condition?

hello, i've got following setup on network: - wireless access points 802.1x (wpa enterprise) authentication uses nap server radius server authenticates ad. - nap ipsec using hra enterprise ca appropiate ipsec rules applied via group policy (domain isolation requirement of health certificate authenticate computer in ipsec negotiations) - nap dhcp enforcement  (nap, dc , hra servers running windows server 2008) however, network has number of wireless non-nap capable clients (e.g smartphones, tablets, etc.) want allow trusted users ignore dhcp enforcement when connecting non-nap capable clients.  how go setting policy allow domain users belong specific group not subject dhcp enforcement? thanks :) hi, nap dhcp enforcement supports computer groups, not user groups. in other words, there no user authentication done in access request. cannot configure group of users have special rules dhcp enforcement. requires eap based method such 802.1x or vpn. -greg ...

EventID 4625 (NULL SID) when trying to establish RDP connection over port forwarding firewall

Image
hi, i created environment ipcop firewall. goal establish rdp connection terminal server (ip 192.168.70.12) on (green) side of firewall client on bad (red) side of firewall. make possible create port forwarding rule in firewall, forwards port 7012 port 3389. now try build connection client terminal server mstsc , address 10.0.14.118:7012 (10.0.14.118 red ip address of firewall). when try this, following message: " login failure: user account restriction. possible reasons blank passwords not allowed, logon hour restrictions, or policy restriction has been enforced ". in eventlog of terminal server following event: an account failed log on. subject:  security id:  null sid  account name:  -  account domain:  -  logon id:  0x0 logon type:   3 account logon failed:  security id:  null sid  account name:  dkoenig_adm  account dom...

cannot change static ip address

Image
i have been asked part of network migration  change existing static ip address of server 2005 new static ip every time go in change it, reverts original static ip. server part of domain , have tried taking out of domain in event policies coming down might have affect on rights available me local admin no avail. found interesting file under system32/drivers/etc called gm.dl have no idea is.. can please provide me suggestions? help! hi, to set server static ip address at command prompt, type following show interfaces: netsh interface ipv4 show interfaces add ip address netsh interface ipv4 set address name=”local area connection” source=static address=192.168.0.10 mask=255.255.255.0 gateway=192.1.0.1 dns server netsh interface ipv4 add dnsserver name=”local area connection” address=192.168.0.15 index=1 netsh interface ipv4 add dnsserver name=”local area connection” address=192.168.0.15 index=2 and try free tools core configurator 2.0 (x64)...

ADFS, UPN, and public DNS namespaces

for adfs, if have multiple upn namespaces same root namespace, of dns namespaces match upn namespaces need publicly available in dns?   or root namespace? do need own root namespace? can 2 different organizations utilize separate adfs , utilize same root namespace? we want our users able log cloud services upns match email addresses, can remember logon id. have 5 e-mail domains (and lot of users) although share same root, not own root namespace, affiliate does. there namespace own root of potentially use, root domain publicly available, child domains behind firewalls.  bit less desireable, because users need remember additional information. want have set 1 highly available adfs/adfs proxy farm. example: root.com (the domain not own, have affiliate does) agency1.root.com (email domain 1) agency2.root.com (email domain 2) agency3.root.com (email domain 3) agency4.root.com (email domain 4) agency5.root.com (email domain 5) ourforest.root...

USB ports not working

during install of server 2k8 used flash drive install raid drivers. have installed exchange 07 on server cannot use usb devices. have tried flash drives, mice, , hard drives. checked in device manager , drivers showing functioning usb. thoughts?   hi,   i suggest trying following steps troubleshoot issue.   step 1: reinstall usb controllers ==================== 1. click "start", type in "devmgmt.msc" (without quotation marks) in start search bar , press enter. 2. in device manager, double click expand "universal serial bus controllers", right click on "host controller", click "uninstall" , click "ok". 3. repeat step 2 uninstall items under "universal serial bus controllers".   then, please restart computer , windows server 2008 reinstall usb controllers automatically.   note: if using usb mouse, please follow "use keyboard" steps reinstall usb controllers.   use keyboard -...

Server 2016 in-mem app

hi, is there way run application in memory, including it's iops? and overflow disk. thanks. hi fbifido, thanks post. i'm not sure run application in memory. but  you can use task manager allocate memory specific processes in order increase performance. you check "set priority" option. default option normal, , selected. select "above normal" or "high" allocate additional memory process. http://mywindowshub.com/set-cpu-priority-level-processes-windows-8-1/ please note: since web site not hosted microsoft, link may change without notice. microsoft not guarantee accuracy of information. best regards, mary please remember mark replies answers if , unmark them if provide no help. if have feedback technet subscriber support, contact tnmff@microsoft.com. Windows Server  >  ...

Windows cediatail lost after restarting

hai...  we using windows server 2008 servers , added credential(windows & generic) in credential manager, reason if restart server credential lost... how store credential by statically if restoring occur?   hi poobi, if backed current credentials can restore credentials credential manager. more information: credentials manager forgets windows credentials https://social.technet.microsoft.com/forums/windows/en-us/803dde98-1ee3-415c-9726-d1132372504e/credentials-manager-forgets-windows-credentials cached , stored credentials technical overview http://technet.microsoft.com/en-us/library/hh994565.aspx i’m glad of you! please remember mark replies answers if , unmark them if provide no help. if have feedback technet support, contact tnmff@microsoft.com Windows Server  >  ...

win 8.1 install on HP ProLiant ML10 server

Image
if want install win 8.1 proff on hp proliant ml10 server ( xeon 3.1 ghz processor ) can work or not ??????? please ..... hi, for proliant ml10, can following information in link: http://www.windowsservercatalog.com/item.aspx?iditem=3d94ac2f-058b-25af-7225-f6119e3c25f9&bcatid=1282 regarding install windows 8.1, please refer system requirement of windows 8.1 , , check if hp proliant ml10 server meets system requirement of windows 8.1. in addition, suggest can post question in windows 8.1 forum , or contact hardware vendor confirm issue. hope helps. best regards, justin gu Windows Server  >  Windows Server General Forum

Tombstone Lifetime

we have situation additional domain controller , few member systems of domain offline more 6 months. running on 2008 r2 os. problems occur if power on additional domain controller, other member servers & how can resolve issues? can increase lifetime on primary dc , power on additional dc, member servers? hi   we have situation additional domain controller , few member systems of domain offline more 6 months they become orphaned situation... can increase lifetime on primary dc , power on additional dc, member servers? you can set tombstone lifetime attribute,check articles; modifying tombstone lifetime domain https://technet.microsoft.com/en-us/library/dd378821(v=ws.10).aspx changing tombstone lifetime attribute in active directory https://www.petri.com/changing_the_tombstone_lifetime_windows_ad but that's not recommended method,so should demote orphaned dc's domain,then metadata cleanup.then can add domain controller them again. check metadata cl...

certificate autoenrollment Settings with citrix and certificate-based authentication

i have citrix environment serious lag time citrix logon. in citrix forums (thread http://forums.citrix.com/thread.jspa?threadid=252740  ), there has been discussion regarding computer config\windows settings\security settings\public key policies\autoenrollment settings.  appears if setting edited, whether enable or disable it, add the citrix logon time. it has been demonstrated if policy recreated without editing setting, logon time drops 35 plus around 10 seconds. question affect have on certificate-based authentication wireless , e-mail encryption capabilities may using int future if not actively enable setting?   karon w karon,  the implication of not using autoenrollment require method of enrolling certificates on users, such manual enrollment using ca web console or certificates mmc snap in.  i don't have answer of how avoid logon delay while allowing auto enrollment (since manual enrollment pretty cumbersome). however, auto enrollment required enroll certificate. once ...

DriveNotFound, when its clearly there...Set-Location failure

Image
so have reproducable, yet inconsistent, error. i have open powershell prompt, have usb drives inserted (for example lets drive mapped g: drive), i remove drive ... overnight, including lock & unlocking machine ...  try access drive (without plugging in) - expected drivenotfound error set-location then put usb drive in ...wait computer "register"/"auto-mount" it...(i.e. show in windows explorer) try set-location drive (i.e. type "g:") i still drivenotfound error. funny thing is, can see drive when run get-psdrive can run set-alias executable on drive...and run executable, can't change drive. it seems happening during step #4 or cache isn't getting reset/updated. thanks,  hi, please first make sure see drive under computer, , open powershell set location. or, please first run: get-psdrive make sure inserted drive read out. then set-location. regards, yan li if have feedback on our support, ...

Creating a scheduled batch job to force replication

hello, i checked on synchronization health today , in critical state replication.   hadn't synced since last server reboot.   clicked on synchronize force , did - no problem.   didn't have go services , restart - clicked on replicate in hyper-v manager.  don't want have check on replication , manually replicate after every reboot.   there batch file can run force replication did manually? the error got after reboot until manually forced replication - hyper-v failed enable replication virtual machine operation aborted (0x80004004).    didn't need delete replication or make replication work - had resume it.   not using certificates replicate isn't bad cert. i think found answer here. notice issue occurs on sundays after scheduled reboot @ 5am updates. i think i'll have put in script this  courtesy of jeremy houp http://community.spiceworks.com/scripts/show/2565-resume-vmreplication ...

Reset Blank Document Settings

somehow blank document settings in microsoft word have been changed. when in print layout view editing characters displayed, first paragraph marker @ top of page. although top margin set 1", there no top margin. styles appear accurate. hi taktumi,   this forum outlook related issues. questions “word” please use following links relevant forum question.   word pro discussions   http://social.technet.microsoft.com/forums/en-us/word/threads   thanks,   evan       Microsoft Office  >  Word IT Pro Discussions

ADFS 2.0 configuration with internal non routable domains.

dear all, i have planned deploy ad fs 2.0 in organization but do not have knowledge impliment internal non routeable domains. scenerio is with following specifications. 1)    2 seprate forests 2)    abc.local in forest a  , zyz.local in forest b 3)    have external routeable domains names     cde.com , fgh.com 4)    web server claim aware application in xyz.local domain  i want install ad federation server in each abc.local , xyz.local domains. dont know how configure external domains settings in federations server ad fs 2.0 settings want use internal ca's certificates. please me resolve issue have never seen any deployment scenerio along non routeable internal domain routable external domains.  please me in detail configuration of ad fs 2.0 , how certificates internal ca's deployment of above mentioned scenerio. regads, nadeem hi, as always, ...

Added list style does not show in the Styles pane while available in the Manage Styles dialog; how to unhide the style?

Image
howdy, i have created a custom style defines numbering list. however, list not show in styles pane. in style pane options dialog in shows: select styles show: styles select how list sorted: alphabetical however, list not show in style pane. if click manage styles @ bottom of styles pane , navigate in list of styles on edit tab of manage styles dialog box, list shows in list. , shows in black color must enabled. on recommend tab of manage styles dialog box added 'hidden' list shows in as: last mixed list if select it, cannot change style priority, move / move down , make last / assign value... buttons appear unavailable selected style. however, if select style shows in styles pane, these move / move down , make last / assign value... buttons become available. a custom style not appear in styles pane a custom style shows in styles pane the styles pane: adding new style: could please explain, problem? how unhide , use created ...

Migration of SBS 2003 Network to Server 2008 Std

i looking migrate server 2008 network.  right main server sbs 2003.  domain controller on network.  serves files on network.  have second server running 2003 std that exchange server running exchange 2003.  system serves website iis.  my primary concern @ time migrate sbs 2003 system on server 2008 std.  put new server alongside existing.  i have done many times server 2003 std adding new domain controller , replicating data , demoting old server.  since sbs 2003 needs @ top of forest procedure moving master roles same?  can away sbs 2003.  secondly since has first exchange server part server 2003 sbs, i want make sure don't break actual exchange on member server.  looking proper migration path adjustment.  or direction great. hi,   thanks post.   from description, understand migrate sbs2003 system on windows server 2008.   as know, exchange server installed on dc machine part of sbs2003; however, mention have second server running windows server 2003 std exchange server ru...

Windows Storage Server 2008 Basic DFS Replication

Image
hi, i find out windows storage 2008 basic support dfs replication. have done reading , 1 particular article says not. if regards kaylin hello,  dfs replication not supported on fail-over clusters, , not available on windows storage server 2008 basic edition. the same can find in technet guide well. please refer a  note in http://technet.microsoft.com/en-us/library/dd573324(v=ws.10).aspx please see below snap-shot know more window storage server 2008 editions , features :  the same details find in  storage server blog . regards, ravikumar p Windows Server  >  File Services and Storage

DNS Queries fail

i have sbs 2003 server that’s unable perform dns queries. i’m mentioning it’s sbs (dc) server, fails query when configuring server use public (4.2.2.2) dns server. clients able use server dns resolution, @ same time, server fails query either or pubic. nslookup work. did packet capture , did not see dns traffic coming server (when pinging yahoo.com), clients server. able telnet 53 server dns server. any failures on dns system of server? logged dns failures in event logs? you may need temporary disable security software in use on server troubleshooting. please make server point private ip address primary dns server , 127.0.0.1 secondary one. public dns resolution, recommend using isp public dns server ip address instead of 4.2.2.2 security reasons. should configured forwarder. more details if ask them in sbs forums. this posting provided "as is" no warranties or guarantees , , confers no rights. ...