Quantcast
Channel: Remote Desktop Services (Terminal Services) forum
Viewing all 25525 articles
Browse latest View live

Migrating roaming profile from Windows 2000 TS to Windows 2008 R2 RDS

$
0
0

We have one TS running on Windows 2000. There are over 200 TS users. We are planning to migrate it to Windows 2008 R2. What's the easy way to migrate the roaming profile? Base on this article

Generally, user profiles that you create for users in Windows 2000, ... Server  2003 roaming user profile on Windows Vista or on Windows Server2008. ...  These methods migrate the roaming profile data to the new Version 2 user profile  format ...
support.microsoft.com
support.microsoft.com/kb/947025

There are two methods to migrate roaming profile. "Method 2: Use the Folder Redirection feature to share data between Version 1 and Version 2 user profiles" doesn't "migrate the desktop settings and preferences such as wallpaper because of the differences in the operating systems". That isn't for us.

"Method 1: Use the User State Migration Tool to migrate profile data to the new format (Windows Vista Only)" is recommend that you the User State Migration Tool (USMT) to migrate profile data in the following scenarios:

  • You do not use roaming user profiles or folder redirection.
  • You want to enable a more full-featured migration of user profile data from Windows 2000-based or from Windows XP-based systems to Windows Vista-based systems.

Note The User State Migraton Tool will not function on Windows Server 2008. 

So the method 1 doesn't work. Any suggestions?


Bob Lin, MCSE & CNE Networking, Internet, Routing, VPN Networking, Internet, Routing, VPN Troubleshooting on http://www.ChicagoTech.net How to Install and Configure Windows, VMware, Virtualization and Cisco on http://www.HowToNetworking.com


How to set up an clasic TS-desktop with Windows 2012 (R2)?

$
0
0

Hi,

How to set up an clasic TS-desktop with Windows 2012 (R2)?

Witch Roles and Features do I need, RD Session Host, RD Connection Broker, RD Licensing?


/SaiTech

Remote Desktop only works from Intranet

$
0
0
I am having a devil of a time getting Remote Desktop to work from the internet.

I have a Windows 2008 R2 machine configured as a web server, dns server, active directory server, print server, file server and remote application server (don't really need that last one, just hoped it would make a difference - it didn't).

I have a fixed IP address.  The IIS home page comes up when I go to the fixed IP address.  The HTTP, HTTPS and Remote Desktop 3389 ports are open and forwarded by the router.  When I log into the 192.168.1.3 (fixed IP of the server on the LAN), it works no problem with administrator or any of the remote desktop users I configured (I had to much with the remote desktop group because some permission it needed had been disabled because the machine was also a DNS server).  I get access denied after logging in - it looks like it's working; the screen comes up with the remote desktop widget at the top and then it says access is denied and kicks me out.

I tried changing the port, no dice.  I tried turning off the firewall entirely, no dice.  I read online again and again, no dice.  The log files are unenlightening, something about lsass.exe the login service not having some permission.

I don't think it's my ISP (embarq), or the firewall.  I think its some esoteric windows 2008 r2 security permission thing, or some registry setting.

Tracking Logins, and Logouts

$
0
0
I am looking for a way to track logins and outs on our RDP servers. The security log will show the Logins for sure, but are hard to find. I can even have an app record something in the background on login via app or scheduled app etc. The problem comes with logoff. There does not seem to be a clean way if the user never actually logs out of the machine i.e. is disconnected and terminated because of session inactivity. Anyone know a way to trap these?

Lee

Remote Desktop Print Sessions

$
0
0

Hi,

I migrate from Windows 2003 Terminal Server to Windows 2012 R2 RDS.  Before we had the option to login as an administrator and see the redirected printers from all the remote sessions, and even print to them.  I haven't found how to do that in WS2012 R2 RDS.  Any suggestions?

Thanks in advance...

Danny

RDS VM's crashing 0x50 PAGE_FAULT_IN_NONPAGED_AREA

$
0
0

Hi,

We have a new Dell R820 running Server 2012 Std as a Hyper V host, with 6 Server 2008 R2 Std VMs. 2 of the VM's are RDS servers, one with 25 users (RDS1) and the other with 10 users (RDS2). Since go live approx 3 weeks ago, the 2 RDS VM's have been crashing. RDS1 approx once a week and RDS2 approx 2or 3 times a week. Some crashes will leave a dump file, other crashes will not. From initial look at the dumpfiles, I have the following info:

PAGE_FAULT_IN_NONPAGED_AREA (50)
Invalid system memory was referenced.  This cannot be protected by try-except,
it must be protected by a Probe.  Typically the address is just plain bad or it
is pointing at freed memory.
Arguments:
Arg1: fffff680003b9268, memory referenced.
Arg2: 0000000000000000, value 0 = read operation, 1 = write operation.
Arg3: fffff800016f2dbc, If non-zero, the instruction address which referenced the bad memory
 address.
Arg4: 0000000000000002, (reserved)

They have referenced aAcentral.exe (a program from our Practice Management software APS), chrome.exe twice, and iexplore.exe.

None of the other VM's (2008 DC, file/print, mailserver, sql server) are crashing, just the 2 RDS VM's, which restart themselves, then users log back in, obiously losing any work they had open.

Can anyone help me out as to the cause and how to stop it?

Remote-App lost focus / Screen/Window jumping

$
0
0

Hi everybody,

we have a new Terminal Server with Remote-Apps and a very interesting problem.

 

Host: ESXi 5.5

Guest: Windows Server 2012 R2

Remoteapp: CAS (not importend, all Remote-Apps have the problem)

Client-OS: Win7 and Win 8.1

 

Now the problem:

 

A Remote-App is started on a client - this works fine. The Remote-App opens a lot of windows (new mail, customer informations and so on) and it happens that the active windows lost the focus and jumps into the background and another windows is in front with the focus.

The problem is not reproducible and with this caution it is not possible to work with the Remote-App.

I found following hotfix (http://support.micro...b/2964832/en-us) but it is not applicable to the clients.


If somebody needs additional information, i will be available.

Thanks for your help and time!

Kind regards

srkonus

Session 0 desktop closes rdp session

$
0
0

hi everyone, 

I have a problem while using the session 0 desktop on a cloud server based on windows 2008 server via RDP.

The rdp session to the server is canceled while being in the session 0 desktop and do not work actively at the system. I have some services runing, which display many cmds and sometimes i need to watch them while they are working. But after about 1 minute without using the mouse in the rdp session,  the rdp session is closed. But when I am at the session 1 layer, this do not happen. I need the conf.ini or something similar where i can administrate the "no working" time before the system is kicking me from the server.

Thanks 



RDS 2008 R2 Session Host config in DNS

$
0
0

I've got 3 session hosts and 1 GW/broker/all in one 2008 r2 RDS server farm.  Their only purpose is to allow clients to RDS into our environment. No virt desktops, no RemoteApp just sessions.  We do redirect several folders via GPO, but not full profile - so, I'm thinking we say we don't use roaming profiles.  The folders we do redirect SHOULD all land in a Users share on the GW server.  and, their user profile SHOULD disappear from the SH when they log off (fail).

My first question is regarding how I set these boxes up in my AD DNS.  Currently, I have the IP of the GW and SH servers in DNS all directed to our RDS address, call it RDS.company.com.  I have none of the servers added to DNS otherwise.  Is this correct?  All servers are in the AD Domain, just not in DNS.

Which leads to my 2nd question, RD Connection Broker Config.  If I want the RD Conn broker to be managing the connections, wouldn't I want ALL connection attempts to use the GW server?  As it is now, if I ping RDS.company.com I will get back one of the four IP's.  Doesn't that mean when a user opens an RDP session, types in RDS.company.com they will log into any one of the four IP's associated with that addy?

I'll probably have more ?'s later but my head hurts now.  Thanks for any guidance.

 

Clear / Remove User Enabled RemoteApp 'Hot Key' Settings?

$
0
0

We seem to be having a somewhat *strange* user issue [Windows 7 Professional, SP1] with a RemoteApp application [RemoteApp 6.1]; when the user (and only this user) is in the application, presses the 'u' character on his keyboard (not CTRL-U, SHIFT-U, WINDOWS-U, or ALT-U) the 'Ease of Access Center' window pops up preventing the user from typing anything?

I'm guessing the user may have (likely by accident) held down the CTRL key (or some other key), initiating a user defined keyboard mapping?  Does this sound like a possibility?  More importantly, any suggestions on how to correct this issue?

Thanks for reading...

Server: Windows 2008 R2, RemoteApp 6.1




how do you remove a 2012R2 RDS Deployment?

$
0
0

Hi,

I have an RDS Deployment (2012R2), which I would like to remove. However, I can't find any info on how to do this, any ideas?

Cheers


Chris Gibson

Major Delay due to cert mis-match

$
0
0

I have a problem that is plaguing us and wonder if anyone here is an RD Services expert. 

We have Two Server 2012 R2 RDP Servers. The setup is this:

Server 1:

    RD Gateway

    RD Connection Broker
    RD Session Host
    RDP1.domain.local
    External Host name: rdp.mydomain.com (NAT through firewall)

Server 2:
    RD Connection Host
    RDP2.domain.local
    No external ip.

On Both servers we put our wildcard certificate: *.mydomain.com.

When we connect using https://rdp.mydomain.com/RDWeb we get the prompt that *.mydomain.com certificate doesn't match rdp(1|2).domain.local do you want to continue or not.

When continuing, it takes a full 25-30 seconds hanging on "Securing remote connection" If we're redirected to the RDP2 server by the connection broker then the delay is nearly THREE MINUTES.

I know it has to do with this certificate mis-match. but I don't know how to get over it. I can't create a self-signed certificate for domain.local because that would not work for our clients at all. I can't get an externally signed domain.local certificate since it's an internal domain.

I tried once using Set-RDPublishedName  to set the published name on the server but it caused more problems (I can't remember now what they were.)

How do I get over this problem?

Connecting a WTOS client to a RD Collection

$
0
0

I may be overthinking this(or completely lost). So we have our Server 2012 R2 hyper-v hosting a few VMs. One VM is the Remote Desktop Server(Has web access, gateway, connection broker. Licensing is on the DC). Everything works fine and from a domain joined thick client running windows 7 I can open IE and navigate to https://gateway.it-test.local/rdweb . I am prompted for the RD Web Access login then can launch my desktop collection we created.

I want to connect a thin client running WTOS 8 now. Is there anything additional to configure besides just pointing it at the RDS server? Or is it as simple as dropping in the server for the RDP. (In the connection settings just enter host name or IP, username, password, and domain name.

Does this utilize the collection created or is this just going to just be a generic RDP connection to the RDS server? How does it know to use what collection since you can have multiple ones? In my instance it will only be one collection though.

Thanks,




Active Window is Hidden Behind other windows

$
0
0

I'm running IE 10. When I log into my domain there are some AD policies in place for IE 10. The intranet web address is listed in trusted intranet site in our AD GPO. The server is w2k8 r2. It is a RDS server for Xenapp 6.5. When I open the application (Crystal Reports) in IE 10 and select print. The application calls for the Crystal Report Print Control downloaded add on module for IE 10 which opens the MS Windows Print Setup Window. However, the window opens behind IE so you cannot see it unless you click IE  in the taskbar. When I log on locally to the w2k8 r2 server which does has the local Group policy disabled this does not occur.  

Any help on where to start would be appreciated. I tried the registry change and that didn't work. FYI I've noticed this with other published apps as well.

Virutal Desktop Infrastructure RDS Pooled - Profile Disks

$
0
0

Hello,

I believe this is a bug within the profile directory.  We have an RDS farm using profile disk.  We use Google apps for education as our email service.  When trying to use Apps shortcut it asking you to log in even when you are logged in.  When trying to install in App we receive an error "Could not install package: 'COULD_NOT_GET_TEMP_DIRECTORY'".  This happens for all users, even Enterprise Admins.  It seems like a permissions issue with in the profile.  Tried assigning full permissions to the C:\Users\UserName\AppData\Local\Google\Chrome\User Data folder with no joy.  

Any advise would be helpful.  Thank you.


RDS published apps for audio and video redirection like Lync / Sip phones, etc

$
0
0

Hey guys!

Just looking for some advice, opinions on publishing apps with 2013 RDS (without App-v) just straight up app publishing over RDP,

So far it all works quite good with office applications, our incident management apps etc, but one type of application that seems to be a bit of a headache are ones that do audio redirection, for us that's Microsoft Lync2013 and some sip phone clients

And what i mean by headache is that even with all the remote fx and audio redirection enabled it seems that headset / usb audio and whatever we have plugged in seems a bit, well not smooth, you can hear usb audio devices for remote desktop popping an and out when the apps launch, it messes with the local audio profile and affects apps running locally that are using those audio devices etc

Just wondering if anyone has run into the same stuff with 2012 RDS and what maybe youve done to get around it, does anyone know that enabling full App-v with local binaries installed etc might help leverage the local audio on something like Lync2013 client a little better?

thanks guys look forward to hearing from you and getting some of your experiences

Cheers!

2012 RDS and VDI users unable to connect

$
0
0

environment:  2 2012 Hosts, connection broker + rdweb (same vm), no gateway, all 2012 OS.

I have a 2012 RDS installation of personal VDI.  Users connect to the RDweb server and launch their assigned VDI from there.  Users are experiencing random connection issues when connecting to their VDI via the RDWeb portal.  Here are some events in the logs:

Event 8964 Remote Desktop Virtualization Host failed to process the orchestration request because virtual desktop [VM7REMSBUCJ] is busy processing cleanup from previous logoff event.

Event 8467 Remote Desktop Virtualization Host failed to get redirection authentication information from the virtual machine [VM7REMSBUCJ] .

The events above correspond with a remote users attempting to login in the morning to a VDI with a state of shutdown.

MS Remote App Inverted colors

$
0
0

Using Remote App on Server 2012. When the client connects from a Windows 7 or 8 computer certain screens show inverted colors. Happens most often for scroll bars and file manager screens (as seen below).

Tried setting the registry value Software\Microsoft\Terminal Server Client\bitmapCacheSize to false, this improved a few screens but not all. Any other ideas? Using remote desktop does not have this problem, but not a solution for the client.

RDS - Access is Denied for non-admin users. Multi-tenant Active Directory

$
0
0

Hi all,

We have plans to provide VDI to multiple organisations in the same Active Directory, separated by Organisational Units. As nothing stops users to install LDAP tools we would like to hide all containers which are not supposed to see. To do so I enabled "List Object" mode with dSHeuristics value 007.

So far everything fine but... when I untick "List contents" on a root of domain.local for Authenticated Users, Remote Desktop does not work for non-admin users anymore. Nothing in logs and all I get is "Access is Denied" when I RDP to Remote Desktop Server.

As it is my test environment I tried the following:

  • Set Read for Authenticated Users on System container, as well with inheritance
  • Set Full control except List contents on domain.local applied to this object only

No luck and it works only when List contents is ticked.

Please help.

Matt


Celox Group - Cloud Provider

RD Gateway and a challenge/response SMS OTP

$
0
0

I'm trying to publish a Windows 2012r2 RDweb and RD gateway server in such a way that in order to use the rd gateway you need to provide your normal AD credentials followed by a prompt for a one-time-password that gets sent to the user by SMS

according to this article:

https://code.msdn.microsoft.com/Remote-Desktop-Gateway-517d6273/view/Reviews

this should be possible using a Pluggable Authentication Module on the gateway server - does anyone know of a product that uses these APIs? or some other method to achieve it?

Note that I can put it behind a (sadly deprecated) TMG server (or a citrix netscaler) and do the sms auth there by radius on the https://server/rdweb interface, but as it is handed off to the mstsc.exe client which tries to tunnel through https://server/rdweb interface, it needs to re-auth, so fails (the above article suggests the cookie can be transferred into the *.rdp file, but it doesn't appear to happen)

the MS Azure MFA service (and a few other 'cloud' auth products I've seen) is a radius server that expects a response to the SMS, via SMS - this is not the solution we're aiming for

Similarly, installing a 3rd party GINA on every host accessible via the gateway is also not an acceptable solution.

logically, the functionality should live at the gateway or the reverse proxy, but I cant find a way of doing it in the reverse proxy, and I cant find a product that uses the API MS provide for it - can someone steer me in the right direction?

 



Viewing all 25525 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>