Quantcast
Channel: Remote Desktop Services (Terminal Services) forum
Viewing all 25525 articles
Browse latest View live

Basics of RD licensing count, windows server 2012, 10 unused licenses, 13 issued to Built-In Overused?

$
0
0

I have a server that showed these counts in the RD Licensing Manager list (ignoring windows 2000 entry):

Windows Server 2012 - Installed RDS per User CAL Program: Open Total Licenses: 5 Available: 0 Issued: 0 keypack id: 7

Windows Server 2012 - Installed RDS per User CAL Program: Open Total Licenses: 5 Available: 0 Issued: 0 keypack id: 4

Windows Server 2012 - Installed RDS per User CAL Program: Built-in Overused Total Licenses: 0 Available: 0 Issued 13

The firm that set this server up (long gone) probably bought ten licenses, is that how I interpret?

Does built in overused count 13 mean that the normal licenses are not being used, and up to 13 sort of temporary licenses have been issued? The license server and the rd host are both o windows 2012.

The site has at most 10-12 users active at any time. The other day a person could not log on;  I think there were ten listed users at the time; and after I logged off a disconnected user he was able to log on. I might guess that we need to buy some additional licenses...but, does server 2012 rd license server stop issuing licenses after it exceeds 10 in our case? I just want to make sure that is the reason he was able to log on after I dumped an inactive user.

I don't understand about the overused licenses and why the two sets of 5 don't seem to be used?



problem with participating 2nd RDSH server in my deployment in RDS 2012R2

$
0
0

Hello

in my test 2012R2 lab, i have deployed these servers:

VM1(2012R2)= DC + DNS (2012R2)

VM2 (2012R2) = RD session Host 1 (RDWeb + RDCB + RDSH installed)

vm3 (2012R2)

i haven't deployed any RD Licensing server in this test Lab.

all VMs are joined to domain

from server manager console in VM2, i added a 3rd server (VM3) in the server pool and added it as 2nd RDSH server, so system automatically installed solely the RDSH role service on it.

now 2 problem:

problem1:

in RDS 2008, RD connection broker duty was redirecting disconnected RDP clients to the previous RDSH server when we have multiple RDSH servers.

from a windows 8.1 client, i establish a full desktop RDP to RDSH1 (10.1.1.2) and open a notepad and then i close the windows (disconnect the session) and again run mstsc and this type i connect to RDSH2 (10.1.1.3), but RD connection broker doesn't operate its duty and i am not redirected back to RDSH1 which is was connected to. 

i have done this in RDS 2008 R2 and there it worked perfectly

problem 2: although i have deployed 2 RD session host server, but

  • in previously created session collection, in load balancing node, i don't see my 2nd RDSH server.
  • when in RDSH1 , i create a new session collection, system doesn't show me RDSH1 and only shows RDSH 2

have a missed any step in the entire configuration?

should i manually add RDSH 2 in any group on RDSH 1 machine ? or any other configurations?

thanks in advanced



RDP connection takes about 20 seconds after RD session Host role installed in server 2012R2

$
0
0

Hello

by default, when we want to establish RDP to a windows server 2012R2 system, session takes approximately 20 seconds to be established and be logged in.

i always reduce this time and make it establish very fast by configuring this policy to"low level"

Group policy / administrative templates / windows components / remote desktop services / remote desktop session host / security ---> set client connection encryption level ----> "low level"

but after i install RDSH (which also installs RDCB + RD web) on this server, again RDP sessions take long showing "securing remote connection" and takes approximately 20 minutes to establish.

i guest it is because of certificates (edit deployment properties. certificates)

how can we solve it?

thanks in advanced



Network Load Balancing and RD Connection Broker

$
0
0

I have a Dell VRTX server with 2 blades. Each blade has 2 hyperV VMs running on them consisting of - 1xDC, 1xFile/Print, 2xTerminal Servers.

The terminal servers are running Windows Server 2008 R2.

I have setup network load balancing and rd connection broker.

The problem I have is when I connect via my NLB IP it goes in fine, if I disconnect the session and try and connect again via NLB IP it might reconnect me to the same TS again or if it tries to connect to the other TS it times out. I thought this should redirect to the disconnected TS session? This is a problem as I don't want users repeatedly trying to login until it tries to connect them to the TS they had the disconnected session on.

Any help will be greatly appreciated.

RD connection broker settings in server 2012 R2

$
0
0

Hello

in server 2008 R2, there was a tsconfig.msc console via which we created an RD connection broker farm

and also via this console we made another server member of an RDCB farm.

but in server 2012R2, i didn't find any console that let me create a farm or make a server member of RDCB farm.

has this concept changed in server 2012 R2 ?

i've find RDCB setting only in group policy :

Gpedit.msc/...../ remote desktop services/RD Connection broker / which contains the following ACEs

  • Join RD connection broker
  • configure RD connection broker farm name
  • etc

when we configure these policies in server 2012 R2 ?

RD connection broker and its related settings have been confusing in server 2012R2 in comparision with what was in server 2008 R2  :-(

Change expired passwords on an RDS environment

$
0
0

Our company just set up a new Windows 2008R2 RDS environment (Gateway/Broker/Host all 2k8R2) and we ran into "cannot change expired or first login passwords" issue.

We have 400+ users who run our app over remoteapp and our "old" environment was a straightforward remoteapp to a single server and changing expired passwords was allowed. Now, with the RDS Gateway in between the client and the host server, changing passwords is disabled.

Is there an option, group policy setting or something that can be adjusted to allow password changing??

I know about the RDWeb hot fix and i'm aware of the 3rd party solutions but i would like to know is there anything that can be done without those workarounds?

Thank you very much.


NTbackup Fails if Terminal Connection exceeded

$
0
0

Hi,

I am facing an issue,like in 2003 server i am using NT backup is scheduled for night and at the same 2 different scheduled is also running with 2 different user name and password,  now what i have observed is my nt backup is failed. i am suspecting the its because of the terminal connection exceed the limits, now i need a clarification of related proof to confirm the same. 

My Hyper-v Virtual Machine wont remote in a different times.

$
0
0
There is random times that it won't remote in. I'v been trying to figure it out for over a week now. The router is setup properly with port forwarding. Any ideas?

2012 R2 Load-Balanced RDS farm

Is it possible to configure a web version of remote desktop published with a console icon.

$
0
0

Is it possible to configure a web version of remote desktop published with a console icon?

Wondering if when adding remove desktop services role if it is possible to create a web page console and publish a console.

The server is running the application that has the console.


dsk

Windows Server 2012 VDI: view and manage personal desktop assignments

$
0
0

I've deployed Windows Server 2012 VDI in my test lab. I can create a collection of personal desktops and give users access to it. However, I cannot find a way to see how many desktops in the pool were already assigned. I also cannot find a way to find which users were already assigned a personal desktop, and I cannot remove assignments that already exist.

In Windows Server 2008 R2 it was possible to look at msTSPrimaryDesktop attribute of AD user account to find whether the user has a personal desktop assigned, as well as clear it to remove the assignment. However, in Windows Server 2012 this attribute is not populated. In addition, I cannot find 'Personal Virtual Desktop' tab in AD account properties which is mentioned in several TechNet articles.

How should I manage personal desktop assignments in Windows Server 2012?

Licensing applications on RDS 2012: user doesn't see shortcut, will he need a license?

$
0
0

Hi,

We currently deploy software to users on RDS 2012 but are thinking to publish to computers (the server itself), then hiding the shortcut for users who should not see the software:

https://msfreaks.wordpress.com/2014/04/17/step-by-step-redirecting-and-managing-the-modern-start-menu-in-windows-2012r2-rds/

License wise the application, if the user can't see it, we should not consider it as a license cost, right?
F.e. we have 3 users who use Visio on RDS, but 100 users can access the RDS servers. We can't pay for those 100 users.

I guess the same is done on Citrix installs, we would like to apply to same logic.

Could you refer to an official document?

Thanks.
J.


Jan Hoedt

VDI - DHCP best practices

$
0
0

Good Morning,

I currently have a pooled VDI on Windows Server 2012. I have been reading up on DHCP and best practices as I am having some issues with IP addressing in my VDI Collection. The lease has been set to 1 hour.

When a new VM is created a DHCP address is issued. This address 'for some reason' will not consistently keep this IP address associated with my VM. After an undetermined amount of time a VM that was previously assigned a DHCP address simply becomes disconnected and the VM shows as 'limited'. To repair the VM we have to disable/enable the NIC on the individual VM. Once this happens DHCP assigns a new IP with my VM.

I am wondering is there is any sort of remediation I can attempt in this situation. Ideally the DHCP address 'should' stay with the VM until its lease is renewed (logon/logoff) but this does not seem to be the case. I am unsure as to why this is happening but it is causing my users to lose their connection to their VDI pooled VM.

Any Thoughts would be extremely helpful.

Antony Nolan

RDP Settings When Connecting To Server 2012 Broker Server

$
0
0

I am setting up an RDP connection for a Windows CE 6.0 Scanner.  I'm trying to connect to an RDP Broker, we have a Term/App server that we need to be hitting, with connections passing through the Windows Broker/Load Balancing server to determine which server has the best connections.  As of right now the servers are using Server 2012, and the scanners (the devices that need to connect to the Broker) use Windows CE 6.0.

As of right now, I can remote into any server without issues, including the broker.  But by my understanding, when I hit the Broker and try to pass the connection from the broker to one of the App servers... the connection usually brakes.  The issue appears to be related to a field called, "signature!"  It's suppose to basically be a key (in this case I'm using a master key of sorts) to allow access to the server.  However RDP doesn't allow a connection with this field, reporting,"The file is corrupted".  In doing research, I have read that this field is only allowed on RDP 6.1 or higher and I believe CE 6.0 only allows RDP 6.0.  Though I am not sure.

If you can provide any help I would appreciate it.  I've included the relevant code in a pastebin link, with any hostname, server, and ip information removed from the Post.  As well as the possible offender (the signature field) removed from the link.  Thank you for the assistance, I greatly appreciate it:

Jeff F.

http://pastebin.com/2imqhf6Y

RDS and Windows Explorer Question.

$
0
0

Hi everyone,

I have a multiple collection on my Windows server 2012 R2 RDS.

Well, Windows explorer are deployed in one collection called A and Office are deployed on Colletion B, the question is:

When I open windows explorer and ry to open an office document, the file assosiation dont exist. I try various searchs on web and cannot find a answer to my question.

How to configure the server to use windows explorer on collection A open office document with double click and run the office on collection B?

Regards,



Dependency on backend session host server to run gateway farm

$
0
0

Hi,

Environment.

  1. 2x RDG Servers with WebApp role installed
  2. 2012 R2 SERVER01.domain.local - 1x Server with Connection Broker, Session host and WebApp - 2012 R2
  3. SERVER02.domain.local - 1x Server with Connection Broker, Session host and Web Access - 2008 R2

We had an issue with SERVER01 at the weekend and while it was offline, noone could access the gateway servers at all, coming up with an error "there is a problem connecting to the gateway server". It didnt matter what resource they connected to through the gateway, the message was the same.

I want the people to be able to use the gateway servers independently of any other servers in the environment. Have I set things up wrong or is there a problem here?

Thanks a lot, Brendan

"The connection was denied because the user account is not authorized for remote login"

$
0
0
We have RDS 2012 R2 that consist of;
- 3 RDS Session Host 2012 R2 (rds01.contoso.com, rds02.contoso.com, rds03.contoso.com)
- 2 HA RDS Session Brokers (rdsbroker01.contoso.com, rdsbroker02.contoso.com, HA name = rdsbroker.contoso.com)
- 2 HA RDS Web Access (rdswa01.contoso.com, rdswa02.contoso.com, HA = rdswa.contoso.com)

We create a session collection "remoteapplications" 
HA DNS round robin name = rdsbroker.contoso.com
Trusted 3rd party certificate (*.contoso.com)
No gateway
User Group = Domain Users
Security Settings = Negotiate & Client Compatible
Client settings = no redirection
No User Profile Disk

We configured SSO for domain joined machines as per "http://www.rdsgurus.com/ssl-certificates/windows-2012-r2-how-to-create-a-mostly-seamless-logon-experience-for-your-remote-desktop-services-environment/"
So the GPO's for 
Delegate credentials
SHA1 for rdp file sign
Editted web.config/authentication for the Remote Web Access Server

So SSO is working we start the IE goto rdswa.contoso.com and start the remote app and get the application
But when we login with 6 users we start the IE goto rdswa.contoso.com and start the remote app but most users get the application.
Some users get error "The connection was denied because the user account is not authorized for remote login"

I've checked and the "domain users" is member of the local remote desktop users on all RDS Session Host.
Also this error is not consistent received on the same workstation or for the same user it's at random, so it cannot be a user or workstation problem.
Next to this we drained RDS Session Host server leaving 1 RDS Session Host and same problem occurs for some random user. 
We drained this 1 RDS Sessions Host and enabled another one and exact same issue for another random users.



Seeking to find Powershell / Registry settings to install and configure License Server

$
0
0

In order to create idempotent systems than can operate in the cloud, am seeking scripts that will install and configure different components of remote desktop services such that they can operate in the cloud. As I have reviewed many of the tools from Microsoft, they all seem to require input (i.e. cmdlets) to interact with. I am seeking to find an ability to NOT have this, such that it can be automated w/o any intervention.

Is this possible?

Automatic Logon in Windows Server 2003 Terminal Services is not working.

$
0
0

Users are accessing through MSTSC and they have saved the .RDP file with credentials but is still asking for credentials when they clicking on connect button on MSTSC window and after that it is again asking for the credentials at the login screen  of TS server. 

RDP client version 6.0.6001

TS server 2003.

we have tried below things.

1) "Always prompt client for password upon connection" this policy is already disabled as it should be.

2) followed below article .

https://support.microsoft.com/en-us/kb/324737

Thanks, Sajjan T

The trust relationship between the primary domain and the trusted domain failed.

$
0
0

Hi,

I am getting this message in the application event log ( relating to IIS) when trying to connectusers to our RDS environment from a trusted domain. It was working earlier in the day and the domain trust is working fine on all servers as I can add and remove users from file shares to test, as well as search the trusted domain list.

A work around seems to be an IISreset on the gateway server, but that is not good as it kicks existing connections off.

Is there anything else I can check on why the trust fails after a period of time? I am running RDS GW on 2012 R2, with 3 x 2012 R2 session servers, and both AD's are 2008 R2 in different forests.

DNS forwarding is setup and both domains can ping eachother servers without any problem.

Thanks

Viewing all 25525 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>