Posts

Showing posts from July, 2012

Convert Word to PDF fails - Normal.dotm problem

hello, we having problem converting word documents pdf.  the error following:  "unable open document:  \\server\file path.... please check see if have read permission above file." the reason posting office technet forums because have narrowed down problem our normal.dotm file.  if remove our normal.dotm file our templates directory, adobe conversion works fine every time.  as put normal.dotm back, error.  i domain admin , have full permissions directory , file trying convert.  any idea why normal.dotm file prevent adobe converting word doc pdf?  any ideas appreciated have spent alot of time troubleshooting.  thanks david warren  here update:   i have narrowed down problem further.  currently, have gpo changes user templates path network drive.  if remove gpo, sets templates folder on local machine default normal, problem doesn't happen. in short, if normal.dotm on network drive, problem happens....

Which edition of Windows 2008 Server is needed for running DTM tests

hi, we want our virtual miniport driver digitally signed microsoft. our aim driver digitally signed on following platforms : 1) windows 2008 server standard edition 2)  windows 2008 server standard edition - 64 bit how many dtm client machines need, getting digital signature on both mentioned platforms? which editons of windows 2008 server should install on dtm client machines, in order run dtm tests? thanks in advacnce, indrani. hi, try dedicated whck forum here: http://social.msdn.microsoft.com/forums/en-us/whck/threads don (please take moment "vote helpful" and/or "mark answer", applicable. helps community, keeps forums tidy, , recognises useful contributions. thanks!) Windows Server  >  Windows Server General Forum ...

Windows Server NAS - Free Disk being consumed - rogue process?

hi, i have hp1200s nas - running windows storage server 2003, eating space on system disk. i noticed system had couple of random reboots , when looked closer, there issue running out of disk space on c:. nas setup using hp system restore disk sets partition sizes etc. not easy reconfigure system disk size. however, don't think changing system disk size help, issue appears rogue process using of available disk space. system disk small (~9gb) has been running quite happily around 3-4 gb free ages. i thought may virus/spyware problem, spybot s&d , av programs report system clean. using mcafee virusscan 8.5 enterprise have loaded symantec 2011 , system behaviour same no virus reported. i deleted or moved stuff , got around 2.5gb of free disk. however, system eats disk space until gets close 0 free space @ point free space comes ~2.5gb level before starting reduce again. system hp nas1200s os windows storage server 2003 sp2 hp nas service release 6.4 (the latest ...

DFS and Mandatory profiles

Image
hello!!!    when give direct path \\jkr527\profiles\student\profile, works gold!!! when give profile \\warstar.com\profiles\student\profile, saves changes. not it!!! whether warstar.com or <g class="gr_ gr_119 gr-alert gr_spell gr_run_anim contextualspelling ins-del multireplace" data-gr-id="119" id="119">warstar</g> it keeps changes. dfs working fine. should load new profile regardless jkr527 (direct server) or warstar (dfs). here pictures show talking about: does not work--> does work --> hi jkr527 thanks post. may ask set dfs namespace on profile path. far know, need enter  path file share want store user’s roaming user profile. it's real location. , in fact domain based dfs namespace referral. it's more link. couldn't enter in profile path. please refer article more details https://technet.microsoft.com/en-sg/library/jj649079.aspx if want use dfs namespace user profile, please ref...

Cross Domain authentication between Windows 2012 R2 domains

hello, i trying figure out if possible. we have 2 companies have vpn between them. i can ping pcs , access servers name no issues. what trying setup cross domain authentication. so credentials can authenticated without creating account them on local network. (and vise versa) this way on our domain can create share , able access without needing logon without different credentials. thank you. hi, simply creating trust between 2 forests allow users authenticate , access external resources, if proper permissions in place. https://technet.microsoft.com/en-us/library/cc780479(v=ws.10).aspx best regards, jesper vindum, denmark systems administrator help forum: monitor(alert) threads , vote helpful replies or mark them answer, if helps solving problem. Windows Server  >  ...

Exclude Control pannel item

hi configure group policy block control panel users ,now exclude 2 items control panel ,one configure odbc connection , other email exchange configuration ,i have found exclude odbc connection still unable exclude mail setup configure,can budy help me please out how that...thanks hi you can use gpo control items visible or hidden please follow below 1.        open gpo , go user configuration section   2.        administrative templates , chose control panel 3.        at right pane find (show specified control panel applets   & hide specified control panel applets   )   thanks Windows Server  >  Directory Services ...

Tool to edit GPO massively?

hello, i have problem in company webapp, causes crash when try print. after deep research, have identified cause of crash policy applied in gpo. the computers , users affected 3 gpo objects. in everyone, there computer , user config, , literally thousands of policies each one: internet explorer settings, registry entries... this configuration has been inherited other company, starting scratch impossible.  its easy isolate gpo causing crash, if in computer part or in user part. but, once identified in part cause of problem, can imagine 1 way find policy causing crash: dividing halfs. configure half of policy: if crash doesn't happen, apply other half. once identified half causing problem, divide in halfs again, , on until find exact configuration. but unabordable hand. , here need help. there way or tool can export gpo, edit text editor easyly (to erase half), , import again group policy object? thank much. hi frank, thank asking. have found policy caused problem: ...

Creating user from template in powershell - Server 2012 R2

i've been research online how create user template in powershell , far can't work. here i'm using: $instance = get-aduser –identity template_user new-aduser –samaccountname test_scripts –instance $instance –name “test scripts” –enabled:$false i'm getting error saying operation failed because upn value not unique.  this strange error me, because saying "-instance" account.  but of course 1 isn't unique.  that's template.   if remove "-instance $instance" code, works fine , creates account, not template, obviously. any ideas?  below entire pasted error. new-aduser : operation failed because upn value provided addition/modification not unique forest-wide @ line:1 char:1 + new-aduser –samaccountname test_scripts –instance $instance –name “test scripts” ... + ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~     + categoryinfo          : notspecified...

File Type Associations Error on RDS 2012

Image
hi, i've published whole office 2010 pro suite. i can associate file types but, after association, have error message: idea? hi, thanks post. please check following article troubleshoot issue. hope helps. adobe reder x file type association issue on app-v 4.6 sp1 http://social.technet.microsoft.com/forums/en-us/appvclients/thread/9ad05524-4d03-4f1f-9151-83fdacbc8daa in addition, can use powershell create file type association. using powershell control rds in windows server 2012 (part 2) http://www.virtualizationadmin.com/articles-tutorials/vdi-articles/general/using-powershell-control-rds-windows-server-2012-part2.html best regards, aiden aiden cao technet community support Windows Server  >  Remote Desktop Services (Terminal Services) ...

Win 2008 R2 DC: - adprop /rodcprep

Image
hi- after running "adprep /rodcprep" - ran issues... 1. found these links - not sure if can - worried running vb script , causing issues here: http://support.microsoft.com/kb/949257 2. but, not sure type pf partitionto create here: http://technet.microsoft.com/en-us/library/cc730970(ws.10).aspx   example: create nc dc=apppartition,dc=contoso,dc=com dc1.contoso.com ---------------   --> really input "apppartition"?   details of issue... d:\support\adprep>adprep /rodcprep adprep connected domain fsmo: dc.contoso.local. ============================================================================== adprep found partition dc=domaindnszones,dc=contoso,dc=local, , date permissions. adprep not contact replica partition dc=domaindnszones,dc=contoso,dc =local. adprep encountered ldap error. error code: 0x0. server extended error code: 0x0, server error message: (null).   adprep failed operation o...

Server 2012 Sharing Configuration.

we deployed server 2012 domain. has 6 shares has access to. want create group read only. have lot of dwg,excel don't want group able modify view? easiest way without doing thousands of files manually? have created group called read , put users in group , applied file permissions group still no luck? ideas? hi, if want group read shared folds, need give read permission group on 6 shares. default, permissions inherited parent object, files in shared folders have read permission of group. file , folder permissions http://technet.microsoft.com/en-us/library/bb727008.aspx regards, mandy we trying better understand customer views on social support experience, participation in interview project appreciated if have time. helping make community forums great place. Windows Server  >  ...

2008 Enterprise & 2008 R2 as domain controllers

i have domain controllers in our domain , 1 2008 enterprise 23-bit, second 2008 64-bit r2.. i need upgrade domain level in our domain either 2008 r2, or 2008.... should go with?... matter? thanks rob davis the operation carried out on 1 hosts the pdc emulator role, long using standard ad tools, location invoke change not matter... note not able raise functional level 2008 r2 though long have windows server 2008 dc - @ point, need go windows server 2008 functional level... hth marcin Windows Server  >  Directory Services

Storage validation error 0x80070022

i error during storage > list potential cluster disks test: failed find or allocate arbitration sectors physical disk {263c99e5-545c-42a6-b540-a3835cda60c8} node xx.xx.com...please ensure gpt disks have microsoft reserved partition (msr) present. error: 0x80070022. i know how fix due forum post: http://tinyurl.com/mvkkuxv while in diskpart, disk returning above error, has 0 free space, unable create msr partition. (the partition empty don't know why diskpart thinks has 0 free space.) how resolve cluster can pass of validation tests? from 1 node should connect disk , initialize , format disk.  if cannot that, sounds might have hardware error. . : | : . : | : . tim Windows Server  >  High Availability (Clustering) ...

user's roaming profile loaded correctly on one server, but not on another

i have 2 vmware virtual servers 2008 r2 sp1 in farm given user end on when logging in farm.  on server 1 specific user, not load roaming profile, loads them temp profile , gives error messages in event log of id 1511 , 1515.  on server 2 loads roaming profile seemingly , works fine.  when try fix profile user removing , recreating it, make sure there nothing left in registry @ hklm\software\microsoft\windows nt\currentversion\profilelist\ pertaining user profile.  clean out roaming profile roaming profile share, clean out local profile directory, , make sure there no *.bak registry profile entries pertaining user profile.  yet issue keeps occurring everytime.  users have roaming profiles created no matter server go on first time, , profiles continue work no matter server connect to. any suggestions why keeps happening on server 1 , how fix it?  thanks. hi, by referring event id 1511 , according kb 940453 it states account use log on comp...

Error Starting Certificate Authority after upgrading in place from Server 2003 Enterprise (32 bit) to Server 2008 Enterprise (32 bit).

hope place seek active directory certificate services.  upgraded in place issuing ca in our lab 2003 2008 , upgrade of os successful ca service not start.  the error is: error 0xc8000222 (ese: -546) more info.  did stop ca service prior doing upgrade. answering own question hopes else.  the problem has logs certificate database.  there sort of format conflict after upgrading 2008. to around error, , certificate authority service start, remove logs from c:\windows\system32\certlog directory should .edb database file lives, leave database file there this worked on 3 of 4 of our ca servers, other 1 had database went down in dirty state, had use eseutil utility fix database. note: there no eseutil utility on ca servers, had copy our database exchange server in our test lab, run eseutil /mh see status is, may dirty or clean, ran eseutil / p (p repair, go figure know right) anyway fixed database, copied on ca , started service hope hel...

Minimum hardware requirement for Windows 2008 Active Directory

how calculate hardware requirement new windows 2008 ad setup 500 users ? i know there not specific hardware requirement stated in ms website. how setup ad not overkill , on budget ? i need setup hyper-v host 3 vm machine. 2 domain controller and 1 tmg vm. for number of users, 1 domain controller minimum 1 gb of ram suffice. recommended not have 1 dc, don't lose yor ad databse in case fails. if using virtualization recommentd install dc on physical box can install additional controller vm. asses hardware requirements http://technet.microsoft.com/en-us/library/cc739022(v=ws.10).aspx adrian costea - mcp, mcts, mcsa 2003, mcitp: windows 7 my blog: www.vkernel.ro/blog Windows Server  >  Hyper-V ...

Rouing netween networks. Only works one-way.

Image
i can ping home network labnet without problem. i cant ping labnet home network . machine can achive windows 2012 router. asus router. network: 10.10.0.0 mask: 255.255.0.0 gateway: 192.168.1.4 metric:0 interface: lan windows 2012 router ras . network: 192.168.1.0 mask: 255.255.0.0 gateway: 192.168.1.1 metric: 256 (default) interface: wan my network looks ilke this. , yes, knooow! need learn visio. :-) the switches "wan" , "internal" vswitches in hyper-v server. i have no idea why dont work. im sure there reason. can me out? tired of negative ping responses..   default gateway of 10.0.0.0 network 10.0.0.1 router interface in 192.168.1.0 , can deliver packets in 192.168.1.0  .   going other way, default gateway of 192.168.1.0 network router @ 192.168.1.1 , other interface public , default route out internet. cannot deliver packets in 10.0.0.0 ! (they dropped because private traffic cannot routed through publi...

The file or directory is corrupted and un-readable

what causes file become corrupt. error "the file or directory corrupted , un-readable.  have 2 files , 1 directory error. how resolve this? server windows 2003 r2 dell t-300   hello,  if want check errors on drive run in command prompt: chkdsk c: (or other drive letter).  you can try run check disk utility on mentioned drive, parameter /f = force, which fixes errors on disk. aware, if non-system disk, can unmount drive temporarly. if affected files on sytem drive, need reboot server , right after reboot, check disk check disk , fix errors. (from time time neccessarily run in twice). best regards, peter rajcinov Windows Server  >  File Services and Storage

Windows Time Service registry entries

i've browsed around number of blogs , posts setting time service in windows ad domain  checking through current settings  (forest level w2k3, dcs w2k8r2): w32tm /dumpreg /subkey:parameters /computer: memberservername i entries: type: nt5ds ntpserver: time.windows.com question:  if "type" set nt5ds, "ntpserver" entry not used, or irrelevant?  or should entry match time source our pdc using? our pdc pointing time source listed in registry entry. thanks hi, based on research, value nt5ds means time service synchronizes domain hierarchy, normal way see it. domain computers other pdc root domain should be synchronizing time domain hierarchy. in addition, value of registry entry above should not match 1 pdc of root domain. more information you: windows time service https://technet.microsoft.com/en-us/library/bb490845.aspx registry entries w32time service https://support.microsoft.com/kb/223184/en-us best regar...

Adding AD Integrated DNS role on 'one' W2K8R2 DC (2008R2 FFL/DFL domain) breaks LDAP (port 389).

Image
hello, we have had issue when attempting migrate/test ad integrated dns on 1 of our dcs. our environment: 1 parent domain (2 x w2k8r2 dc) 1 child domain (3 x w2k8r2 dc) as add dns service 1 of dcs, kaboom!  ldap 389 not longer able used of our enterprise apps.  we've tried same thing when adding additional dc (promoting new/additional dc) role installed.  same exact global effect!  any microsoft engineer out there knows (in depth) dns & ad ldap architecture able answer question.  btw, way roll following:  1)  remove dns role dc 2)  delete guid (using adsi edit) from:  configuration -> cn=configuration... -> cn=partitions... as step 2 completed, ldap on 389 working ok.  what's happening? 389 accepting connections unable bind (authentication on 389 broken?) unfortunately did not chance test ldap on ssl (port 636) while had issue.  nor did chance test 389 basic bind & test using ldp.exe....

Delayed Write Failed Error on Windows 2003 Server during Backup

hello, i running issue running ntbackup on win 2003 server. have 3 backup jobs scheduled run everyday , 3 failing. few hundred mb copied backup shared drive. the error message appears in events>systems listed below. event id: 50  event source: mrxsmb details: delayed write failed} windows unable save data file \device\lanmanredirector. data has been lost. error may caused failure of computer hardware or network connection. please try save file elsewhere. the above error followed error below. event id: 26 source: application popup details: application popup: windows - delayed write failed: windows unable save data file \\server1\shared_backup\backup1\backup.bkf. data has been lost. error may caused failure of computer hardware or network connection. please try save file elsewhere.   the backup being copied shred usb drive connected server. backup jobs have been running without problems past 2 years.   i tried install hotfix link bel...

High CPU utlization on my Windows server 2008

high cpu utlization on windows server 2008. in server have configured 15 printers , configuration is  sever 2008 std 32bit sp2 2 gb ram and vmware server , the cpu thread of  "wmiprsvse.exe" 13  the cpu high, please me on this hi you can @ thread well: http://social.technet.microsoft.com/forums/windowsserver/en-us/0b0d0f2c-3a1b-4959-a557-b44d1612b6bb/wmiprvseexe-cpu-consumption hotfix: http://support.microsoft.com/kb/970067/en-us Windows Server  >  Windows Server General Forum

Any value in a contractor only container?

we have quite few contractors in our organization.  there best practice way should manage contractors in active directory environment?  there value in contractor container or additional qualifier in login name? hope correct area post , thank feedback. the way contractors handled in organization , needs of organization. if need different policies applied accounts, should in own organizational units (group policies cannot applies containers). makes them easier find. contractors can have different permissions, should have own groups. name groups clear groups contractors, avoid confusion. however, see less reason to give account names qualifier if in own ou's. richard mueller - mvp directory services Windows Server  >  Directory Services ...

wpeinit error queryadapterstatus: no adapters found

hi, i'm trying diagnose wpeinit error (from wpeinit.log): "error     queryadapterstatus: no adapters found" mean boot image doesn't have appropriate drivers available network cards?  or else? thanks! martin hi martin,   yes, error indicates winpe lack of network card driver or network card driver added not appropriate one. please add latest network card driver corresponding operating system winpe.   hope helps.   tim quan - msft Windows Server  >  Setup Deployment

2003 server is restarted

Image
dear friends, server got rebooted automatically, found event. plese find below... a critical system process, c:\windows\system32\lsass.exe, failed status code c0000005.  machine must restarted. thanks gajanan best regards, gajanan profile : http://social.technet.microsoft.com/profile/gajanan.nashipudi/?type=forum hi, below 2 ms kb related error “c:\windows\system32\lsass.exe, failed status code c0000005”, try hotfixes mentioned in each kb. a windows server 2003-based domain controller may restart unexpectedly when handles ldap query http://support.microsoft.com/kb/927342 this problem occurs if domain controller incorrectly manages search duplicate buffer. in situation, lsass.exe process may stop unexpectedly. a memory leak occurs every time use smart card authenticate against windows server 2003-based domain controller http://support.microsoft.com/kb/955410 if issue persists, afraid need capture dump identify cause of issue. unfortunately, cannot a...

DHCP snap in

server 2003  everytime launch applet..it say  disconnected......but click on left hand pane active   is normal tosay disconnected till clik on server ?? or service down when says disconnected ? hi,   what result after creating new dhcp snap-in? when did issue begin occur? have made changes recently, adding reservation? please write down exact error message received when attempting launch snap-in? have checked event log? clues?   please check whether following links help:   the "lease duration dhcp clients" option set 0 , dhcp scope options disappear on windows server 2003-based dhcp server http://support.microsoft.com/default.aspx?scid=kb;en-us;936009   the dhcp scope settings periodically disappear on windows server 2003-based computer http://support.microsoft.com/default.aspx?scid=kb;en-us;922835   you may receive "snap-in failed initialize" error message when try view dhcp scope reservati...

2008 R2 NPS log parsing

hi, we have migrated our ias server 2003 2008 r2 (nps). using iasparse.exe parse ias logs. however, iasparse not working nps logs (legacy format). have scripts parse nps logs? thanks, dilip hi, try search event logs security or system. example: $filterxpath = "*[system[provider[@name='microsoft-windows-security-auditing'] , task = 12552]]" get - winevent - filterxpath $filterxpath | % {( [ xml ] $_ .toxml()).event.eventdata. data }   Windows Server  >  Windows PowerShell

Accesing internet in Vitual Machine fom windows server 2008R2

i have windows server 2008 r2 machine 1 network adapter. using hyper v , have installed 2 vms 2003 server. my dilemma how access internet in vms. kindly help. in hyper-v need create external virtual switch , on each of vm's add network card using virtual switch. vm's able access host machines network card connect internet. how setup network cards depends on how network's setup. if server using dhcp vm's can assignment same way, otherwise you'll want assign them ip's in same range host machine. Windows Server  >  Hyper-V

Cannot Delete Shadow Copy Path on Windows Server 2008 R2

Image
testing out use of shadow copy shared folders , went except when accident, removed folder had shadow copies enabled on before removing shadow copies first. when got configuration shadow copies, see 2 drives on server c: , e: there 3rd 1 didn't exist before happened. volume path shows this: \\?\volume{guid} went registry , found , deleted every single guid matched, restarted server, , still no go. actual guid comes different number every time.  i found solution, partition set "active", had startup repair via windows server 2008 r2 command prompt using dvd fix c: partition active instead.  i able delete partition via disk management in os. Windows Server  >  Windows Server 2012 General ...

Replication Problem

hello,   i trying organize domain organizational units, using windows server 2003. frirst, i created ou hierarchy , global groups secnd, after created user templates specific ous facilitate standardized settings in domain controller dc1, trried replicate changes dc2 gave me following erroe message: " following error occur during attempt synchronize naming context region.local domain controller dc1 dc2.  source server rejecting replication requests.  operation not continue."   can me resolve replication problem?       thanks,   halima   halima njie wrote:  the following error occur during attempt synchronize naming context region.local domain controller dc1 dc2.  source server rejecting replication requests.  operation not continue.   there's microsoft technet article on troubleshooting active directory replication problems . Windows Server ...

Permissions for group policy in multi-tenant environment?

Image
what exact permissions have applied ou computer object group policies? basically when remove authenticated users rights ou computer in can't gpo. i'm trying lock down environment using ad list object mode (which enabled) not finding comptuer objects (i see tons of stuff user objects). basically layout: - hosting --> reseller ---> company a -----> computers -----> users ---> company b and on... under each computer created allusers group has read access company ou's , child ou's. pretty security group layout: - hosting (gpoaccess@hosting) -- reseller (gpoaccess@reseller1) [member of gpoaccess@hosting] --- company (allusers@company) [member of gpoaccess@reseller1] then gpoaccess has list object permissions , such on appropriate ou's. however.. do computer objects? here picture of cc ou complaining having access. 2 on top of picture showing memberships , bottom permissions of cc try with: read properties;lis...

Specify Drive Letter and Disk size using Powershell

i trying create simple volume on disk number 3 , assign drive letter (g) , disk size (10gb).  -assigndriveletter command won't take g , -size command isn't taking 10gb. any ideas?  thank you! new_partition -disknumber 3 -assigndriveletter g -size 10gb        not working also, -assigndriveletter switch parameter, doesn't take argument.  there second parameter, -driveletter, used specify drive letter.  try this: new-partition -disknumber 3 -assigndriveletter -driveletter g -size 10gb Windows Server  >  Windows PowerShell

when i try to set my printer as default printer i keep getting(error 0x00000709) what do i need to do to resolve this issue?

what need resolve problem? hello, need more information solve problem. can print documents printer? local printer or network shared printer? if it’s network shared, acting print server? in active directory environment? have tried modify registry set default printer? if not, let’s try below instructions. backup below key first. hkey_current_user\software\microsoft\windows nt\currentversion\windows\devices check device, in name column, has printername,winspool,ne0%, under data column. (where printername name of printer device, , % order number). thanks zhang Windows Server  >  Print/Fax

1 Way Trust, Nested Groups & GPO's

i have 1 way external non transitive trust between 2 different forrests. domaina trusted domainb. servers windows 2003 , domain , forest functional level 2003 i can assign permissions folder in domainb giving ther pernmission domain local group (dl-group) in domainb. inside group have universal group domainma contains global group domaina contains users domaina want grant permissions to. works fine. i have gpo in domainb adds dl-group above to local admin group on member servers when try log in servers using domaina account cannot. if add global group domaina in directly can access servers without issue. can tell me if possible nest groups have done above or there step required on order nesting work regards local admin accounts. thanks. hi all, fyi issue related firewall configuration. the member servers in domainb need access on ports dc's on domaina in order group nesting work across different forests. the ports are: tcp 135 445 88 389 1025 ...

WinRS running as 'NT AUTHORITY\ANONYMOUS LOGON' instead of passed in user

i trying run remote batch file using local environment variables.  so, calling cmd.exe within cmd.exe evaluate local environment variable within command string. for example: winrs -r:dev002 cmd.exe /c "cmd /c "^%epdir^%\tags\2.3.0\utils\batch\epsetup.bat" -r machine " when runs, calls correct batch file, fails with: unhandled exception: system.data.entityexception: underlying provider failed on open. ---> system.data.sqlclient.sqlexception: login failed user ' nt authority\anonymous logon'.    @ system.data.sqlclient.sqlinternalconnection.onerror(sqlexception exception, boolean breakconnection) ...   is there approach can take execute batch file under correct impersonated credentials?   thank you, michael     msdn premium subscriber i have simplified command line to: winrs -r:dev002 -d:^%epdir^%\tags\2.3.0\utils\trna\epsetup\bin\debug epsetup.exe -r machine this fails same error.  injecting user...

Matching group membership from user list

hi all, i have list of samaccountnames , trying figure out if list of user objects members of set of security groups. there 2 apps have sets of groups assigning permissions. want find out if in list provisioned either app @ level. here have far: $users = get-content c:\users\hcsjcl\desktop\list.csv foreach($user in $users){ $object = get-qaduser $user $groups = get-qadmemberof $object if($groups -match 'app1'){ } if($groups -match 'app2'){ } } i have tried capturing result of regex havent had luck. if try , output $matches null array errors. approaching right? use comma operator append each result 1 combined result. tested (using domain users , domain admins group here) , works (just changed out 2 usernames; of course change $applist, etc.): add-pssnapin quest.activeroles.admanagement $allresults = $null $applist = @("domain users", "domain admins") $users = @("user1", "user2") #get-content c:\u...

How to get local user rights?

i need test local user accounts user rights applied @ local computer level.  there way short of exporting current local security policy? i've seen some scripts use secedit /export /areas user_rights /cfg to export settings, update these settings, , re-import them.  appears way modify local user rights. is there way simply inspect them -- without using secedit?  i can list of accounts in local admins group get-cimassociatedinstance: $localadmins = @(get-cimassociatedinstance -inputobject $(get-ciminstance -classname win32_group -filter "name = 'administrators'") -resultclassname win32_useraccount | select -expandproperty caption) is possible to enumerate user rights way? cf: technet.microsoft.com/en-us/library/hh875542.aspx even easier: ps c:\scripts> $privs=whoami /priv /fo csv | convertfrom-csv ps c:\scripts> $privs privilege name description state -------------- --------...

wbadmin - System State backups fail

windows server 2008 x64 exchange 2007 installed.  not dc. have symantec backupexec 12 fails on system state.  microsoft issue wbadmin command line tool not backup system state either. below returned.  cannot find other instance of issue.  log files referred empty. has ideas???? c:\users\administrator.fmr>wbadmin start systemstatebackup -backuptarget:e: wbadmin 1.0 - backup command-line tool (c) copyright 2004 microsoft corp. starting system state backup [21/08/2008 9:47 a.m.] retrieving volume information... this backup system state volume(s) system(c:) e:. do want start backup operation? [y] yes [n] no y creating shadow copy of volumes requested backup. creating shadow copy of volumes requested backup. identifying system state files backup (this may take few minutes)... found (393) files found (1028) files found (1726) files found (2601) files found (3763) files found (5199) files found (7106) files found (9105) files found (10608) files found (12510) files summary of backup: -----...

How to tell if function/cmdlet is last in Pipeline

i writing logging wrapper outputs file , output object.  since output matters if object last in pipeline want run test @ command invocation see if command last in pipeline.  if is, let code run is.  if it's not, want kill write-output line.  any suggestions?  here snippet: function utility.writeto - outputandhost { param ( [ parameter(mandatory=$true,valuefrompipeline=$true) ] [ string ] $inputobject ) write - host $inputobject ; write - output $inputobject } hi will, $myinvocation has pipelineposition and pipelinelength properties; compare them in function's begin block determine whether or not function's position in pipeline last. function x {   param ( [ parameter ( valuefrompipeline = $true ) ] $x )   begin {   if ( $myinvocation . pipelineposition -ne $myinvocation . pipelinelength ) {    break   }   }  ...

VPN user don't have access to shared folder

Image
hi, i need set vpn server have problems it. when user connect via vpn don’t have access vpn server shared folder , can’t ping/access others user’s pc or server, got internet my setup: 2 nic, 1-rst connected directly wan (have ips-given ip/mask/gateway/dns) 2-nd not connected (even local lan) (have 10.0.2.1 255.0.0.0) (i need standalone server don’t have access local lan) windows server 2008 r2 standard   no domain   only role installed rras rras configured vpn+nat (custom configuration button), in ipv4 section i’m add 2 interfaces, wan click button user nat , 2<sup>nd</sup> pick use local i set ip pools manual (not using dhcp) 10.0.2.2 10.0.2.10 when user connects via vpn, ip 10.0.2.3 255.255.255.255 , dns entered @ wan interface user have internet can’t server shared folder or other user using vpn i trying uncheck "use default gateway on remote network". don’t helps can't setup wrong , how put things work w...

configuring wireless connection WS 2K8 R2 Server core ???

i installed   ws   2008 r2   server core   in a   notebook.(to practice)   how can   configure the   wireless  network   by   command line ?  interfaces   that appear   only show   your lan.   help me.   thanks hi, no, on windows server 2008 r2 server core, need use wired network adapter instead of wireless network adapter. by way, able find description “per pg, reduce footprint decision made require wired networks infrastructure roles available on server core” in following link. http://connect.microsoft.com/windowsserverfeedback/feedback/details/334023/wireless-lan-service-w-core-install Windows Server  >  Server Core ...