Quantcast
Channel: Remote Desktop Services (Terminal Services) forum
Viewing all 25525 articles
Browse latest View live

RDS 2012 R2 Farm problem with Remoteapp MMC comsoles

$
0
0

Hello,

i have new 2012 R2 RDS RemoteApp farm with Web Access (latest updates). 

I published there several application, but currently i have problem with mmc consoles(F-O console and hyper-v manager,DNS) and i don't know where is the catch.

I publishing the application classical way: tasks->publish RemoteApp programs -> choose Failover cluster manager (Hyper-V manager,DNS) -> next -> publish

The app is visible on the Web access with correct icon.

I can start it, but instead of hyper-v,F-O or DNS console starts only empty MMC console.

And on the task-bar has standard RDP icon.

Funny thing is, that the Server Manager, Active Directory Administrative console, and other apps behavior correctly. The starting correctly, and have their app specific icons in the task-bar. 

Do you have any idea what to do with that? 


WIndows Server 2008 R2 RemoteApp Gateway

$
0
0

Hi Guys,

I just have a question on something I would like to implement in my environment.

I have about 200 users and 1x RDWEB server publishing numerous RemoteApps being used by the users in the company currently. I done some research on a broker server and load balancing but don't think this is the whole solution i will need.

What I need is one gateway server https://start@mydomain.com/Rdweb the users will access and 2x RDWEB hosts "Farm1 and Farm2". I would like to group the users between Farm1 and Farm2 for example "Domainuser1 is in Domaingroup Farm1 and Domainuser2 is in Domiangroup Farm2, if Domainuser1 logon and access a RemoteApp he will automatically be redirected to the Farm1 Host and if Domainuser2 login and access a RemoteApp he will then be redirected to Farm2 Host" Instead of the system to load balance the connections I want the system to redirect the connection to where it is configured to go.

Then I can group my high resource applications on one host and the other host the low resource applications and one gatewayhttps://start.mydomain.com/Rdweb for ease of access for the users.

Will really appreciate it if there is someone that can assist me on this.

Thank you

Cloning RDSH servers - once loaded with apps

$
0
0

Hi All

What's best practice when cloning app loaded servers?  For example, one of my collections will be hosting the Office suite + several MS tools.  To avoid all the install I would like to use VMware to clone, change the name and voila add it to the collection.  Obviously I need to ensure the apps are all happy with this especially as we know of a few which require attention post cloning (Symantec Endpoint, WSUS etc), but what's the situation with Sysprep on 2012R2 these days?  A while back practice would be to simply use NewSID, but maybe Syspre /generalize now does the trick?

I see this page indicates RDSH servers can be cloned and Syspreped...but it this pre app loading?

Thanks

Lea

Roaming profile weird naming

$
0
0

Hello and please help me solve this mystery of the universe.

We have a citrix farm we recently upgraded from win2003 to win2012r2.  First time they logged on to new server, they'd get a new roaming profile with the format "username.V2".  So far so good.

In an attempt to troubleshoot intermittent reports of profile permission issues, I deleted all the old win2003 "username" profiles from the roaming profile server.  For some reason, this caused new profiles to be created for subsequent logons, and after logout a 3rd roaming profile "username.domainname.V2" was created on the roaming profile server. 

In every case, "username.V2" still has the correct permissions, so I have no idea why a 3rd one is being created.  And it makes no sense that deleting the win2003 profs is the thing that caused it.  Any theories?

 - Jaime

Add virtual desktop to existing RDS VDI collection

$
0
0

Hi there,

A customer has removed a virtual machine out from the VDI Collection. The VM is still available on Hyper-V. For some reason I'm not able to re-add the VM back to the pool. I tried PoSh with the following command:

Add-RDVirtualDesktopToCollection -CollectionName "Name" -VirtualDesktopName "V10015" -ConnectionBroker "Broker FQDN"

The output is:

Add-RDVirtualDesktopToCollection : Cannot add an existing virtual desktop to a managed virtual desktop collection.  Instead, specify how many virtual desktops to add for each server by using the VirtualDesktopAllocation parameter.

Does anyoune have a short feedback on that?

Cheers,
Al

Unable to install or uninstall applications

$
0
0

Hi

After installing Windows Updates in August 2015 on to our Windows 2012R2 Remote Desktop Server, we are no longer able to install or uninstall programs. This was first noted when further Windows updates were available but would not install. The issue is also effecting other applications such as Java.

The following entry appears in the Event Viewer:

The installer has encountered an unexpected error installing this package. This may indicate a problem with this package. The error code is 2203. The arguments are C:\Windowa\Installer\inprogressinfo.ipi, -2147287035

Has anyone else come across this and does anyone know the solution?


Find applications installed without Install Mode on Windows 2012 R2 RDS

$
0
0
We installed several applications on Windows 2012 R2 RDS servers and forgot to change the mode to Install mode with "change user /install" or using the Control Panel wizard.

My understanding is that any app that uses Windows Installer will do the mode switch automatically.  Therefore, is there any method or tool to list applications that ended up installing in execute mode (i.e. NOT in install mode), presumably because it didn't use Windows Installer?  

Alternatively, is there any method or tool to detect if an application's setup program uses Windows Installer?

It would be very helpful if we can limit the number of applications needing uninstall/reinstall.

group policy for profile path will work for *existing* users??

$
0
0

We plan to implement the profile path in group policy for all users who log into our RDS hosts.

It will be done by enabling and configuring the group policy setting in the evening after people have logged off for the night, then there will be more than 4 hours for the policy to properly propagate to all the servers in the cluster.

Will the policy work on already existing users when they log in for the first time in the morning?? -- or would I be better off manually configuring everyone's profile path??

Also, if I've configured the profile path already, can I remove the setting after I've configured group policy?? -- this would have the effect of creating a new username.v2 folder, or the server would see the already existing username.v2 folder?? (This only applies to two users at the moment.)

Thank you, Tom


Windows Server 2012 RD Connection Broker Installation

$
0
0

I am unable to install RD Connection Broker in Windows Server 2012 Physical machine, I have tried many different resources and techniques, yet cannot find a solution, may be this is happening only to me.  I have even tried to install all components on a single server but it fails again, there are no failure logs nor setup related logs under c:\windows\logs .  I have read somewhere about SQL requirement and did install SQL on the server I am trying to install RD, please help me with a step by step (though some online resources talk this as a straightforward installation), for me this has not been so straight.




Syed Saleem, PMP

RDP via Hostname Fine, Via IP Slow..

$
0
0

Hello,

On a Dell Server running 2012 R2 within a Domain if I RDP to it via IP address the session will login normal but it is very slow. We have to RDP to the server by IP address in the initial instance which why I can't use FQDN to start with.

If I do however RDP to a 2003 r2 Server in the Domain via IP (which is fine by the way) and then RDP to the 2012 R2 Server using FQNDN it is fine.

Any other servers are fine.

Cheers

Ryan

Configure Remote Desktop Services (RDP) on Server 2008R2 to accept TLS1.2 only

$
0
0
I am currently struggeling to get the RDP Connections working with TLS1.2 on Server 2008R2 SP1

Initially my RDP Service (out of the box), allowed Connections no better than TLS1.0
I am verifying this with an "openssl s_client" Connection

For example, a Server 2012R2 offers TLS1.2, if I check against its RDP port. Its RDP Version is 6.3


So I started with installing the Remote Desktop Packages Version 6.2+6.3 on my Server 2008R2
openssl s_client still connects with TLS1.0 at its best.

Next i tried to configure the Schannel Registry to support TLS 1.0, 1.1 and 1.2 via
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\SCHANNEL\Protocols\TLS 1.2]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\SCHANNEL\Protocols\TLS 1.2\Client]
"Enabled"=dword:00000001
"DisabledByDefault "=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\SCHANNEL\Protocols\TLS 1.2\Server]
"Enabled"=dword:00000001
"DisabledByDefault "=dword:00000000
and so on for TLS1.1, but still only offers TLS1.0 on RDP port


I restricted the ciphers via GPO "Computer../Administrative.../Network/SSL Configuration.../SSL Cipher Suite Order" to be
TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384_P521,TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384_P384,TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256_P521,TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256_P384,TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256_P256,TLS_RSA_WITH_NULL_SHA256,TLS_DHE_DSS_WITH_AES_256_CBC_SHA256,TLS_DHE_DSS_WITH_AES_128_CBC_SHA256,TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384_P521,TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384_P384,TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256_P521,TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256_P384,TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256_P256,TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P521,TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P384,TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256,TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256_P521,TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256_P384,TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256_P256,TLS_RSA_WITH_AES_256_CBC_SHA256,TLS_RSA_WITH_AES_128_CBC_SHA256

Which IMO should only allow TLS 1.2 implicitly.

But afterwards the RDP session totally refuses ANY connections. I had to log on to the console and Switch off that GPO again.

I read many articles on the net where others hat similar Problems getting this configuration to work.
Some of them have pretty current postings (2015-AUG)

Whats the trick with activating this? It seems to work perfect on the same RDP Version in 2012R2 Servers.

Microsoft Edge browser in RDSH

$
0
0

Hi all,

I have tried implementing RDSH for Edge browser as it is supported in 2016 TP3 according to the post: http://blogs.msdn.com/b/rds/archive/2015/08/19/remote-desktop-services-in-windows-server-2016-technical-preview-3.aspx

But there is no how to...

So fully patched 2016 TP3, single server deployment, quickwizzard for RDSH.

There is no easy way to simply publish "Edge Browser" in RDSH. So I have tried publishing Explorer.exe and changing parameters to "microsoft-edge:" which launches the browser when logged on locally.

 

However when tried launching the app from via RDP (RDWeb) Win8.1U1 all I get is full white screen with: "you’ll need a new app to open this microsoft-edge"

So the questions is how exactly is Edge browser supported? And how exactly are we supposed to configure it?

Thank you very much for any ideas

RDS Virtual Desktop Collection showing unknown status.

$
0
0

Hi Everyone,

I got a strange issue with RDS environment, On one fine morning , we are not able to view the pooled managed collections under collections tree, however if we click on collection you can see it as unknown( below screenshot ). I am able to manage other pooled collection apart from one with 140 VMs with the help of PowerShell. Apart from this everything is running as it should be , however now we are not able to manage it and this is major problem that we are not able to manage settings. 

This checked till now.

1.       All Pooled Managed VDIs are showing unknown.

2.       Only  One Pooled Managed Collection having issue.

3.       Collections are working and behaving normally, Only one Collection with 140 VMs having issue while updating the collection and rest of the collection are accessible and working fine from command line.

4.       No changes in RDSCB SQL database, no job are pending to execute in DB as well.

5.       No Major events related to VDI connection broker.

Getting Below error while managing with powershell.

New-Object : Cannot convert argument "2", with value: "", for "RDVirtualDesktopCollectionJobStatus" to type "System.DateTime": "Canno
t convert null to type "System.DateTime"."
At C:\Windows\system32\WindowsPowerShell\v1.0\Modules\RemoteDesktop\VirtualDesktopCollection.psm1:2167 char:22
+         $jobStatus = New-Object  Microsoft.RemoteDesktopServices.Management.RDVi ...
+ ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    + CategoryInfo          : InvalidOperation: (:) [New-Object], MethodException
    + FullyQualifiedErrorId : ConstructorInvokedThrowException,Microsoft.PowerShell.Commands.NewObjectCommand


RDS Licensing

$
0
0

Hi Team

Whether we can install the same RDS license key in two jump servers? Please I request you team to have valuable answers.

Remote desktop clients over internet

$
0
0
Good morning. I´m new in windows server. I have a computer with windows 7 and I need connect this with the server 2012 r2 over internet in order to have full access to directories, files and programs. How does the computer dial to the server? Where can I find a tutorial which explain me step by step. Thanks for the attention.

RDS Collection Status Unknown

$
0
0

I realize that there is a similar thread in the forums about this already, but I have tried recreating the collections as suggested in that thread and it didn't solve the issue, so I'm asking the question again. I had one of my connection brokers crash today and since that time, all of my collections are showing an unknown status:

I am able to interact with the collections through PowerShell and the desktops appear to be functioning correctly, insomuch as users can connect to them without issue. However, they aren't listed under the Collections node in Server Manager and I can't manage them from Server Manager. This is a production system so I can do anything too crazy to test or fix it without some planning, but I was hoping that someone has experienced this issue (apart from the person in the aforementioned thread) and has a good solution for me.

My environment is Windows 2012 R2.

Event ID 7011 then 6161 printers gone

$
0
0

I wonder if you can help us out, we have multiple Windows 2008 servers running as Terminal Servers that clients connect to and print using Easy Print, every now and again the printers all disappear and the only way to get it back working is to reboot the server.  The only event logs that are listed are:

A timeout (60000 milliseconds) was reached while waiting for a transaction response from the UmRdpService service.
A timeout (60000 milliseconds) was reached while waiting for a transaction response from the UxSms service.
A timeout (60000 milliseconds) was reached while waiting for a transaction response from the AudioEndpointBuilder service.
A timeout (60000 milliseconds) was reached while waiting for a transaction response from the Netman service.

Then EventID 6161:

The document %document%, owned by %user%, failed to print on printer Preview. Try to print the document again, or restart the print spooler.

Data type: NT EMF 1.008. Size of the spool file in bytes: 0. Number of bytes printed: 0. Total number of pages in the document: 0. Number of pages printed: 0. Client computer:%computername%. Win32 error code returned by the print processor: 259. No more data is available.

The server itself is running on HP hardware using vmWARE with multiple virtual servers on them.  They are all up to date with service packs etc and are running .Net 4

Any help that you can offer would be appreciated as this is happening more and more.

Regards

Peter

RDWeb Connect to a Remote PC

$
0
0

I would like to get rid of the secondary popup shown above when a user chooses to connect to a Remote PC.   If I can't get rid of it I would like to have it default to enable all of the redirection check boxes.  I have already enabled these in IIS \ Application settings and they are showing enabled n the Connect to a Remote PC screen as shown, the secondary popup is redundant.

Windows Server 2008 SP2 stops responding as multiple services timeout

$
0
0

There is another thread open under the "General" section. I was asked to post it here. I have left the other thread open because I believe this is not just applicable to the Remote Desktop Services Role. (http://social.technet.microsoft.com/Forums/en-US/winservergen/thread/94b0d7f7-6a26-4795-8c1f-ffee1ac309aa/)

Hey everyone,

I have now seen this issue happen on multiple Windows Server 2008 Terminal server setups. The services that time out are not exactly the same across all the servers, but a number of them are the same on all of them.

Here are the lists of services that timed out on one of these servers, along with the time it happened.

  • 80237AM - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the AudioEndpointBuilder service.
  • 80307AM - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the BITS service.
  • 80237AM - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the CertPropSvc service.
  • 80407AM - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the CryptSvc service.
  • 80437AM - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the Netman service.
  • 80507AM - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the NlaSvc service.
  • 80537AM - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the RasMan service.
  • 80607AM - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the Schedule service.
  • 80637AM - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the seclogon service.
  • 80707AM - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the ShellHWDetection service.
  • 80737AM - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the UmRdpService service.
  • 80807AM - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the UxSms service.
  • 80837AM - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the WinVNC4 service.
  • 80851AM - The Terminal Server security layer detected an error in the protocol stream and has disconnected the client.
  • 80907AM - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the WPDBusEnum service.
  • 80938AM - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the wuauserv service.
  • 81008AM - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the ShellHWDetection service.

In the end, the server has to be restarted for us to access it and for users to connect to it.

Doing some research, I cam across this KB article (http://support.microsoft.com/kb/972596/), but not sure if it applies to this situation. I have seen other people post about this issue, but haven't come across anything that states the cause and resolution.

Has anyone else faced this or is facing it at the moment?

Any tips or suggestions would be great!

Thanks a lot!

Warm regards,
Sri

Server 2012 r2 SSO

$
0
0
I am running two servers for my rdp services. Both are running server 2012 r2. The license server is a domain controller. The other services are all on a virtual server using hyper-v. I tried every configuration I could find to get sso working correctly, but nothing seems to be successful. Right now, you are prompted to log in to the web page and then you are presented with the remote apps. Once you click on connect to a remote computer and enter a computer name, you are again prompted for credentials. For some reason though you are prompted a second time and after entering your credentials a second time, you will be connected. What might be causing this? Sorry, if I haven't given enough information. I can provide further details if needed.
Viewing all 25525 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>