Quantcast
Channel: Remote Desktop Services (Terminal Services) Forumu
Viewing all 27533 articles
Browse latest View live

Weird Issue (redirection)

$
0
0

RDS 2012 R2 using 1 gateway, 2 session hosts and (right now) 1 connection broker. If i use RDC (on the local LAN) to remote to session host 1, somehow i end up on session host 2? Because i am using the private ip of session host 1, i am presented with a certificate error that tells me sessionhost1.domain.local. I click Yes and then i am presented with another certificate fromsessionhost2.domain.local. I go ahead and click Yes to verify that i am landing on sessionhost2 and sure enough, computer name of the server is sessionhost2, not sessionhost1.I typed in the private ip of sessionhost1! What is redirecting the RDC to sessionhost2? This happens on both the local administrator and the domain users.

When i RDC to sessionhost2, that one does NOT redirect me to sessionhost1. These are "load balanced" in the collection


Scheduled Revert for Virtual Desktops

$
0
0
Is there a way to force a scheduled revert to the checkpoint on pooled virtual desktop collection in 2012 R2? I'm aware that when a user logs off they desktop should automatically revert but there are times when I would like this to happen automatically.

Remote Desktop Services Disconnects when trying to RDP to server

$
0
0

I am a system administrator and I have just ran into a problem when I try to RDP into one of my servers. The error that has just started states the following:

"The remote session was disconnected because there are no Remote Desktop client access licenses available for this computer".

I can RDP from any other PC with my credentials but not from my own MAC address. How do I troubleshoot this?

BJ

Incorrect Idle time in Server Manager

$
0
0

Hi.

I have notice that Server Manager\Remote Desktop Services\Collections\CollectionName\Connections 

shows incorrect Idle time. It begins count Idle time only for disconnected sessions. 

Even when session was reconnected it continues counting Idle time, ignoring user activity.

Powershell cmdlet Get-RDUserSession returns the same incorrect Idle time.

Only "query user" command returns correct information.

Has anyone else seen this problem? 

P.S. Reproduced on Windows Server 2012 R2 with latest updates.

Terminal Server no longer accepts new users, neither local or domain

$
0
0

Our terminal server is using Windows 2008 R2 and has been online for several years. We have a by per user CAL type license and we have 100 licenses. When we run a report it states that we have 53 licenses available. When we create a new user in active directory, that user can log into the domain from their computer and the group policies for them are in affect. When they try to log into the terminal server the get the message " The user profile service service failed the logon. User profile cannot be loaded." All of the users that have been in the system can still log in but no new users created can log in.  

We have searched for answers for the last few days and nothing is working. Since the last "good" account was created we did several things that might have affected our system.

1. We changed the domain administrative password.

2. We made a change to our group policy. 

I ran Wireshark while trying to log in with this new account and I get a [Malformed Packet: COTP]. We replaced the default profile. We appreciate any input. 


UVA_SAlex

An authentication error has occurred (Code: 0x607)

$
0
0

I've set up an RDS 2012 R2 host farm, but have problems.

When I try to log on from an outside client, then I get this error...

"An authentication error has occurred (Code: 0x607)"

I've tried google it, but without any result.

Any idea how to fix this?

An authentication error has occured (Code: 0x607)

$
0
0

Hi all,

This one is driving me NUTS! The problem itself is when I go to connect to a session host using a web access server I get the error in the title.  This is only happening to some of my session hosts and not all.  I have compared them and can't find a single difference.  I also cant find anything useful in the event logs about this.  Below is my setup.

A full RDS environment using all Windows Server 2012 Data Center.  Nothing 2008 R2.  All Clean installs.

I have 6 servers a VM's split evenly between 2 ESXi 5.1 Hosts.
1. MP-RDP-CB1.inucoda.net (Connection Broker 1)
2. MP-RDP-CB2.inucoda.net (Connection Broker 2)
3. MP-RDP-GW1.inucoda.net (Gateway Server 1)
4. MP-RDP-GW2.inucoda.net (Gateway Server 2)
5. MP-RDP-WA1.inucoda.net (Web Access Server 1)
6. MP-RDP-WA2.inucoda.net (Web Access Server 2)

inucoda.net is an network that is the Domain that all servers are joined to via 2 Domain Controllers splits between each ESXi Host.
My outside domain that you can get to from the web is ucoda.net

The connection brokers have all servers used including session hosts added to the server pool and are configured in HA mode. They use a SQL Server 2012 Fail-over cluster that is on a separate set of VMs for their database and the DNS is configured as round robin. MP-RDP-CB.inucoda.net.  There are two entries of this each with one of the two IPs of the CB1 and CB2 servers.

On each CB server there is a RDS License server role installed with CALs installed and activated/registered. Both LIC servers have been added to the RDS deployment properties.

The GW servers each have the NLB role installed with an extra network adepter for NLB use. There is a DNS name of MP-RDP-GW.inucoda.net that points to the NLB IP of the GW Cluster.  Also both GW servers were added to the GW Server Farm part of the the GW properties.  

The WA servers are also in a NLB Cluster with an extra adapter and a DNS of MP-RDP-WA.inucoda.net pointing to the NLB IP.

Up steam from our inside Windows Domain at our ISP level there is a DNS entry of MP-RDP-WA.ucdoa.net and it points to the NLB IP of the WA NLB Cluster.  (This is not a public IP, we require you be on our VPN to be able to access the IP).

For certificates we have a Comodo issued wildcard of *.ucoda.net with the corresponding Comodo Root Trust and Intermediate Certs. We also have a wildcard *.inucoda.net created by our inside CA.

The *.inucoda.net cert is used for the CB SSO, CB Publishing, and GW while the *.ucoda.net cert is used for the WA.

All session hosts have been configured to use the *.inucoda.net for their RDP sessions.

I can confirm that the *ucoda.net cert is used for the WA part and all other parts are reporting the *inucoda.net, all with no errors or warnings.

For each session collection only one session host is used with no apps, (just RDP).  Security is set to only use NLA, SSL 1.0, High.

On each session host I have verified that the *inucoda and *ucoda certs are installed and the internal CA and Comodo CA/Intermediate CA is installed in the correct stores.  I have also verified that COM Security has the domain\TS Web Access group set with full perms for the Access and Launch/Activation. Also for WMI  Root\CMIV2\TermicalServcies Security has the domain\Ts Web Access group set with full perms. Lastly each group/user that has access to RDS is listed in the Remote Desktop users.

I've checked that both WA servers are listed in the TS Web Access group.

The GW servers RAS/RAP policies are set to be pretty open for testing with using any port, any network resource, and Domain Users and Domain Admins listed.

I have been trying to connect with Windows 8 and Windows 7 clients as the domain\administrator account.  Some of my session hosts connect fine and other don't .  It's always the same ones that connect and don't connect.  I can't find any difference  between the.   I've also blown away my entire RDS and started over with just a 3 server single node model with no NLB or RR DNS and the same exact error happens on certain servers.  I have sense gone back to the 6 server setup described here and again the same error on the same session hosts.

I have also tried Negotiate and RDS Compatible and disabling NLA only for security.  No change.  Now here is the interesting part. If I remove GW servers from RDS by just saying not to use them (not actually uninstalling them or anything), all session hosts connect just fine every time.  When I first did my RDS setup I got he same error with code 0x607 for every connection attempt and found i had to set the RAS/RAP to use any network resource instead of Domain Computers.  However, it is currently set like that and some still don't connect.   So it works with out the GW servers just fine.  It also works without them in the 6 node setup as well as the 3 node setup. 

I don't want to use it without the GW servers because since I am using all inside subnets with a VPN I have to add the CB IP/Name to my host file or it will not resolve and give an error about reaching the Connection Broker. Because I want to use a HA setup this is no good as there are two servers for it.  That's why I use the NLB IP of the WA and publish it with outside DNS with our ISP. 

Any ideas at all??

Thanks,
Chris

Applied a public cert to RD Gateway but I'm getting a local server name conflict

$
0
0

Hi All,

I've applied a wildcard cert (from Godaddy) to my RD Gateway and I can connect through fine but I get an error when connecting:

The server name on the certificate is incorrect.

I get that this is because I'm using the local server name when connecting through the RDGW, but the RDGW name is correct and the cert should work.

So by that I mean: 

server.local is the local server name I'm using in the RD Client
RDGW.publicdomain.com is what I'm using for the RD Gateway

The error shows:

REquested remote computer: server.local
Name in the cert: *.publicdomain.com

Any ideas why it's mismatching?

Thanks,

Tom


Tom


Can't copy and paste files using RDP session in server 2012

$
0
0

I am not able to copy file to or from RDP session on WS 2012 R2 Remote Desktop Session Host server.

I read the following blog, however I don't think its a solution to an issue:

https://social.technet.microsoft.com/Forums/windowsserver/en-US/9c4eae05-b477-4c2d-8743-56508e870128/cant-copy-and-paste-files-using-rdp-session-in-server-2012?forum=winserver8gen

To me its a workaround. What If I don't want to redirect my User drives in a session and only wants to provide clipboard services in a session.

I tried solution mentioned in an above blog and it dint work:

Solution: set "Do not allow Clipboard Redirection" to Disabled and "Do not allow Drive Redirection" to Not Configured.

Please Help!!


Raman Singh


Printers not autocreating on Remote Desktop 2012 R2

$
0
0

We have a Remote Desktop server running 2012 R2 and we don't want to use Easy Print. I've Disabled the Easy Print option in Group Policy in Computer and Users and added the drivers to the server. When I login, nothing gets created and I see lots of Event 603 in the PrintService Logs

The print spooler failed to reopen an existing printer connection because it could not read the configuration information from the registry key S-1-5-21-834351874-1802768738-1501187911-33228\Printers\Connections. The print spooler could not open the registry key. This can occur if the registry key is corrupt or missing, or if the registry recently became unavailable.

Orange County District Attorney


Thin Clients that work with Windows 2012 Remote Desktop Services

$
0
0
I have successfully set up Windows 2012 with Hyper-V running RDS and have connected several windows clients to the virtual desktop session.  I have not been so successful with several other devices including a wyse device from a simular Citrix solution and both Android and Apple tablets.  My question has two parts.  Is there documentation that describes the interaction between the client and the server during the connection process and is there a list of thin client devices that are supported....

User Profile Disks are breaking IE Trusted Sites GPO settings

$
0
0

Hello all,

I'm experiencing a weird problem that I can't wrap my mind around. I have a Session Collection with 10 servers, all running Server 2012 (not R2). This collection has been setup with User Profile Disks, stored on a central file server. I am storing ONLY the roaming profile settings and user registry data, as shown below.

We also use Group Policy to set IE trusted sites (Computer Configuration > Administrative Tools > Windows Components > Internet Explorer > Internet Control Panel > Security Page > Site to Zone Assignment List).

Occassionaly, a user's Trusted Sites will not work correctly. No sites are populated in IE. I can resolve the issue for that user by deleting their profile disk and allowing RDS to create a new one.

I don't understand why a User Profile Disk would be affecting the IE Trusted Sites list, especially considering we are using aComputer Configuration GPO setting, not a User Configuration setting. Does anyone know where I can look to understand what is happening?

Exchange Server Issues

$
0
0

Hello Everyone,


I have a user that is receiving and error saying this, "The destination folder has exceeded its storage quota. The rule will not work until you you delete some items from the destination folder." 


Now my question is this only happens when they are setting up and new rule and all there other rules are working just fine. 


Back ground on the system:


RDS environment.

Exchange server 2012 R2

Outlook 2013


Please let me know if anyone can help with this. 


Thank you. 

How do I kill a process in task manager when using RemoteApp published apps from RDS

$
0
0
I have my users using RemoteApp published apps via an RDS farm.  Issue we run into is, if they have a program not responding they can't End Task on it.  It will keep the process running on the RDSH server and still show in a "not responding" state when they relaunch the app.  This is creating a large amount of IT requests for a task that a user would normally resolve themselve.  Anyone else had this issue or know of a solution?

how to remote desktop to the domain user's session without disconnecting him

$
0
0

hi ...

I have a AD in windows server 2012 r2 , I need to remote desktop the user's session from AD to troubleshooting there problems , but without logoff the user . Can I do this ? How ?


Terminal Server Licensing Service won't stay running

$
0
0

Good Afternoon:

I am having some difficulties with the Terminal Server Licensing Service in my environment.  The problem is that the service crashes every time it starts.  Sometimes it will run for a few minutes, sometimes a few seconds.

As I could not resolve this issue, I built a new server, activated it, installed my licensing and let it sit for a half hour.  The service never crashed.  I then pointed my RDS servers at this new server and things seemed to go well until a few hours ago.  The service began crashing on this new server, too!

The License Server is a fully patched Server 2008 R2 box service ~ 150 RDS hosts.  I can see that it's working while it's up -- lots of events in the Terminal Server Licensing Event log.  But it just crashes with the error below in the Application Log.

I cannot find much information on this error, but the one promising thing I found was to grant Network Service access to C:\programdata\microsoft\crypto\RSA\MachineKeys.  I did this, and restarted the service, and I'm still having problems.

Any help would be greatly appreciated!

ERROR:

Faulting application name: svchost.exe_TermServLicensing, version: 6.1.7601.22137, time stamp: 0x5080442a
Faulting module name: tls236.dll, version: 6.1.7601.17514, time stamp: 0x4ce7c9d9
Exception code: 0xc0000005
Fault offset: 0x0000000000002c5d
Faulting process id: 0xf1c

Faulting application start time: 0x01d0a2c3be224474
Faulting application path: C:\Windows\system32\svchost.exe
Faulting module path: C:\Windows\system32\tls236.dll
Report Id: 15647152-0eb7-11e5-a687-00155d971957

XML:

-<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
-<System>
 <ProviderName="Application Error" />
 <EventID Qualifiers="0">1000</EventID>
 <Level>2</Level>
 <Task>100</Task>
 <Keywords>0x80000000000000</Keywords>
 <TimeCreated SystemTime="2015-06-09T14:52:01.000000000Z" />
 <EventRecordID>65393</EventRecordID>
 <Channel>Application</Channel>
 <Computer><computerfqdn></Computer>
 <Security/>
 </System>
-<EventData>
 <Data>svchost.exe_TermServLicensing</Data>
 <Data>6.1.7601.22137</Data>
 <Data>5080442a</Data>
 <Data>tls236.dll</Data>
 <Data>6.1.7601.17514</Data>
 <Data>4ce7c9d9</Data>
 <Data>c0000005</Data>
 <Data>0000000000002c5d</Data>
 <Data>f1c</Data>
 <Data>01d0a2c3be224474</Data>
 <Data>C:\Windows\system32\svchost.exe</Data>
 <Data>C:\Windows\system32\tls236.dll</Data>
 <Data>15647152-0eb7-11e5-a687-00155d971957</Data>
 </EventData>
 </Event>

Remote Desktop can't connect to VM

$
0
0

We started using Hyper-V a few months ago. Until a few days ago, everything is working great. We have 2 physical hosts running Windows Server 2012. Each physical host has been running one VM (Windows Server 2008 R2) which is replicating to the other host.

We have added another virtual machine. It works great except Remote Desktop Connection cannot connect to it. When I try, I get the standard message:

Remote Desktop can't connect to the remote computer for one of these reasons:
1) Remote access to the server is not enabled
2) The remote computer is turned off
3) The remote computer is not available on the network

I've checked everything I can think of including:

  • VM is allowing remote access. To be sure, I even turned it off and back on.
  • There is no firewall blocking anything. To be sure, Windows firewall is turned off.
  • Remote Desktop CAN connect to the other VMs including the one running on the same physical host.
  • Everything else on the VM seems to be working. IIS is running there and web pages come up nicely. File access is good too.

There are 2 differences between this new VM and the other ones:

  • This OS is Windows Server 2008 (not R2). The other VMs are R2.
  • This VM was not created from scratch. I used Sysinternals Disk2vhd to generate a VHD from an existing physical machine and then configured a new VM to use that VHD.

I'd be very grateful for advice on how to get RDC working.

Cam

RDS 2012R2 - Licensing server SPF?

$
0
0

Hi All

Am I correct in thinking if the TS licensing server cannot be reached, RDS will utilise some type of temporary license?  

If so for how long?

Thanks
Lea

Disable IE Enhanced Security does not work RDS-Session Host 2008 R2

$
0
0

Hi there,

we have a problem with disabling the IE ESC on Server 2008 R2. It's a fully patched Server 2008 R2 Standard english. When installing the RDS-Session Host Role the IE ESC for Users was enabled. After adding the role IE ESC was automatically disabled.

When a new user logs on to the system, IE ESC is still enabled. When we Reset the IE (Advanced Tab, Reset) IE ESC is disabled for the users. But that's nothing we can deal with.

After searching the web, I found a similar Thread here: http://social.technet.microsoft.com/Forums/en/windowsserver2008r2rds/thread/5bd202d3-7f77-4631-9afc-d6a8a7821c42

What I figured out:

1. When RDS-Session Host Role is enabled, IE ESC for Users is automatically disabled. Why?

2. When enabling it for users, IE ESC is still disabled. When we Reset IE, IE ESC is enabled.

3. When disabling it for users, IE ESC is still enabled. When we Reset IE, IE ESC is disabled.

I have also reproduced this on a test machine (this machine is not patched)

Any suggestions how to disable IE ESC for all users without resetting IE first?


Peter Forster, MVP Virtual Machine, Austria http://www.base-it.at

Licencing issue on RD 2012 svr

$
0
0

Hi All,

We have a dedicated 2012 R2 Remote Desktop server in a domain environment, and we have 2 users who connect in and 2 user-cal licences.

We have installed RD connection broker, Session Host, Licencing and web access, although we only want Remote desktop so the users can run sage and outlook.

Basically, we are getting the xxx days grace period notice, although there is an RD licencing server configured on the server. Upon running the RD licensing diagnoser we get the image below and the other image is from the licensing manager.

It is bizarre, not sure on where to go, help appreciated - thanks

** Apparently I can't post the images as MS need to verify my account.

Viewing all 27533 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>