Showing posts with label Windows Server 2008 R2. Show all posts
Showing posts with label Windows Server 2008 R2. Show all posts

Wednesday, March 1, 2017

Net use error 64 and 53

From Server A to Server B (Different subnet)
error 64
clip_image001


From Server B to Server B net use locally and Server B to Server C (Same Subnet)
error 53
clip_image002

Since those new Server are domain member server, it is using DNS/WINS service for network resource resolution. And also, user account "user" which is a local account, we need to use <server name>\user for connection.

Resolved:
clip_image003


Reference:
http://garclak-kb.blogspot.hk/2009/12/smb-error-codes.html
http://www.howtonetworking.com/systemerrors.htm#System error 53 - The network path was not found.
https://www.bleepingcomputer.com/forums/t/449159/win-7-pro-x64-group-policy-error-mapped-drives-not-connectable-after-a-while/
https://www.veeam.com/kb1230
http://www-01.ibm.com/support/docview.wss?uid=swg21505912
http://support.dameware.com/kb/article.aspx?ID=300059
http://superuser.com/questions/971542/why-am-i-getting-error-53-network-path-not-found-after-net-use-delete
http://superuser.com/questions/583868/windows-7-cannot-access-samba-share-error-53-and-network-path-was-not-found
https://technet.microsoft.com/en-us/library/cc940100.aspx

Print Friendly and PDF
Share/Bookmark

Sunday, November 6, 2016

Access Denied when using a new create local administrators account to Connect to Administrative Shares C$

Access Denied when using a new create local administrators account to Connect to Administrative Shares C$, D$

Problem:

When using a new create local administrators account to Connect to Administrative Shares C$, D$

You receive the following error:

clip_image001

But you able to use default local administrator account (administrator) to access C$ successfully

Reason:

UAC enabled

clip_image003

Solution:

Disable the UAC remote restrictions by adding the registry value (REG_DWORD) HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System “LocalAccountTokenFilterPolicy” to 1

No Reboot is required

Test on Windows Server 2008 R2 SP1 and Windows Server 2012 R2

Reference:

https://helgeklein.com/blog/2011/08/access-denied-trying-to-connect-to-administrative-shares-on-windows-7/ Print Friendly and PDF
Share/Bookmark

Sunday, October 18, 2015

How to allow Windows 7 to save RDP password and also remote to Windows Server 2008 or above server?

1. On your Windows 7 client, click Start, input gpedit.msc in search bar, press Enter.

2. Navigate to Computer Configuration\Administrative Templates\System\Credentials Delegation.

3. On the right pane, double click “Allow Saved Credentials with NTLM-only Server Authentication”.

4. Click Enable. In the Show contents dialog box, click Add, type the name of remote computer(server) in this format: TERMSRV/*, then click OK.
image 

5. On Server, go to Computer Configuration\Policies\Administrative Templates\Windows Components\Terminal Services\Remote Desktop Connection Client

  • Prompt for credentials on the client computer – Disabled
  • Do not allow passwords to be saved – Disabled

image

6. Run “gpupdate /force” on both side (Server and client)

 

Reference:

http://www.experts-exchange.com/OS/Microsoft_Operating_Systems/Server/Q_26363489.html

http://www.remkoweijnen.nl/blog/2007/10/18/how-rdp-passwords-are-encrypted/

http://www.nirsoft.net/utils/remote_desktop_password.html

http://www.oxid.it/ca_um/topics/remote_desktop_password_decoder.htm

http://superuser.com/questions/307776/are-saved-remote-desktop-credentials-secure-on-the-local-machine

https://naveensnayak.wordpress.com/2011/08/17/windows-7-remote-desktop-connection-save-credentials-not-working/

https://social.technet.microsoft.com/Forums/windows/en-US/475ec46d-aafe-4040-a345-3dbcffeb9345/remote-desktop-wont-remember-credentials-on-windows-7

http://answers.microsoft.com/en-us/windows/forum/windows_7-security/remote-desktop-connection-not-using-saved/13a17d84-b008-4767-95fb-b891e9e6bc66?auth=1

http://superuser.com/questions/604483/windows-7-remote-desktop-connection-save-credentials-not-working

Print Friendly and PDF
Share/Bookmark

Monday, July 21, 2014

How to solve the IE 11 connect to Windows Server 2008 R2 Internet printing – the “connect” buttom is missing and cannot install printer via IPP

Solution: Put the website to compatibility mode and also into intranet zone.

Reference:
http://social.msdn.microsoft.com/Forums/ie/en-US/3aa9d115-d17e-4e37-8660-c46c312bc3d0/connect-link-does-not-present-for-ipp-connection-for-metro-ie10-in-windows-8-os?forum=ieextensiondevelopment


http://social.technet.microsoft.com/Forums/windowsserver/en-US/3b305511-f6d6-417b-b765-11bc9e4e195b/connect-link-is-missing-under-printer-action-on-internate-printing-web-page-on-win-2008-r2?forum=winserverprint

Print Friendly and PDF
Share/Bookmark

Sunday, June 1, 2014

How to install a certificate to a Windows Server 2008 R2 SP1 from a Windows Server 2003 R2 SP1 Standalone CA which is the certificate enrollment Web pages is not patch

How to install a certificate to a Windows Server 2008 R2 SP1 from a Windows Server 2003 R2 SP1 Standalone CA which is the certificate enrollment Web pages is not patch (http://support.microsoft.com/kb/922706/en-us)

Since the Windows Server 2008 R2 cannot download and install the Root CA certificates and also request a client certificates from a Windows Server 2003 R2 SP1 Standalone CA which is the certificate enrollment Web pages is not patched.

We will need a Windows XP (Or Windows Server 2003) machine to complete the task.

Download the Root CA certificates

1: On a Windows XPstart the Internet Explorer
2. Go to the certificate server website (in our case http://abc....../certsrv)
3. Click on Download CA certificate, certificate chain, or CRL
4. Click Download CA Certificate chain and save it on the machine.
5. Once the certificate is downloaded, copy it to the unmanaged Windows Server 2008 R2 (Our target monitored server)

6. Login the unmanaged Windows Server 2008 R2

7. Open an MMC connect to Local Computer and load the certificates snap-in (Local Computer)
8. Go to Trusted Root Certification Authorities right click, all tasks, import and import the Root CA.

Request the unmanaged Windows Server client certificates and installation

1. start the Internet Explorer
2. Go to the certificate server website (in our case http://demo-dc01/certsrv)
3. Click on Request a certificate, choose Advanced certificate request next click

Create and submit a request to this CA

On the Advanced Certificate Request page, do the following:

  1. Under Identifying Information, in the Name field, enter a unique name, for example, the fully qualified domain name (FQDN) of the computer you are requesting the certificate for. For the remaining fields, enter the appropriate information.

clip_image001Note

Event ID 20052 of type Error is generated if the FQDN entered into the Name field does not match the computer name.

 

  1. Under Type of Certificate Needed:
    Click the list, and then select Other.
    In the OID field, enter 1.3.6.1.5.5.7.3.1,1.3.6.1.5.5.7.3.2
  2. Under Key Options, make the following selections:
    Click Create a new key set
    In the CSP field, select Microsoft Enhanced Cryptographic Provider v1.0
    Under Key Usage, select Both
    Under Key Size, select 1024
    Select Automatic key container name
    Select Mark keys as exportable
    Clear Export keys to file (not required for Windows Server 2008 AD CS)
    Clear Enable strong private key protection
    Click Store certificate in the local computer certificate store.
  3. Under Additional Options:
    Under Request Format, select CMC
    In the Hash Algorithm list, select SHA-1
    Clear Save request to a file
    In the Friendly Name field, enter the FQDN of the computer that you are requesting the certificate for.
  4. Click Submit.
  5. If a Potential Security Violation dialog box is displayed, click Yes.
  6. When a Certificate Pending page displays, close the browser.

To approve the pending certificate request

  1. Log on to the computer hosting Certificate Services as a certification authority administrator.
  2. On the Windows desktop, click Start, point to Programs, point to Administrative Tools, and then click Certification Authority.
  3. In Certification Authority, expand the node for your certification authority name, and then click Pending Requests.
  4. In the results pane, right-click the pending request from the previous procedure, point to All Tasks, and then click Issue.
  5. Click Issued Certificates, and confirm the certificate you just issued is listed.
  6. Close Certification Authority.

To retrieve the certificate

  1. Log on to the computer where you want to install a certificate (for example, the gateway server or management server).
  2. Start Internet Explorer, and connect to the computer hosting Certificate Services (for example, http://<servername>/certsrv).
  3. On the Microsoft Certificate Services Welcome page, click View the status of a pending certificate request.
  4. On the View the Status of a Pending Certificate Request page, click the certificate you requested.
  5. On the Certificate Issued page, click Install this certificate.
  6. In the Potential Scripting Violation dialog box, click Yes.
  7. On the Certificate Installed page, after you see the message that Your new certificate has been successfully installed, close the browser.

On Windows XP

Step 4: Open an MMC connect to Local Computer and load the certificates snap-in (Local Computer)

Step 5: Go to Personal, select the client certificate which is you just installed right click, all tasks, export -> “Personal Information Exchange - PKCS #12 (.PFX)

  1. In the new wizard kill “Next”
  2. Select “Yes , Export the private key”
  3. Click “Next”
  4. Select “Personal Information Exchange – PKCS #12 Certificates (PFX)”
  5. Select “Enable Strong protection (requires IE5.0, NT4 SP4 or above)”
  6. Click “Next”
  7. Type a password for the certificate twice and kill “Next”
  8. Select “Browse” c:\serverFQDN.pfx”
  9. Click “Next”
  10. Check the export information and if correct kill “Finish”
  11. Click “OK” to finish the export

Save the .pfx on desktop and copy it to the unmanaged Windows Server 2008 R2

Install the Client certificates on unmanaged Windows Server 2008 R2

  1. Login the Windows Server 2008 R2
  2. On the start menu kill “Start” and “Run”

  3. Type “cmd”

  4. Navigate to > cd “program files\System Center Operations Manager 2007\Supportools\i386”

  5. Type >MOMcertimport.exe “c\:servername.domain.com.pfx” or “c:\servername.pfx”

  6. Type the asked password for the certificate import and press “Enter”.

  7. The certificate is now imported in OpsMgr 2007.

  8. Restart the “OpsMgr Health Service” on the server.

Reference:

How to Obtain a Certificate Using Windows Server 2003 Stand-Alone CA in Operations Manager 2007

http://technet.microsoft.com/en-us/library/bb735417.aspx

How to use Certificate Services Web enrollment pages together with Windows Vista or Windows Server 2008

http://support.microsoft.com/kb/922706/en-us

Update for Windows Server 2003 (KB922706)

http://www.microsoft.com/en-us/download/details.aspx?id=4758

http://www.toolzz.com/?p=279

http://blogs.technet.com/b/operationsmgr/archive/2009/09/10/step-by-step-for-using-certificates-to-communicate-between-agents-and-the-opsmgr-2007-server.aspx Print Friendly and PDF
Share/Bookmark

Thursday, August 22, 2013

Remote Desktop Services Uses the wrong Certificate - You receive various certificate related error messages when connecting to a Terminal server that is running Windows Server 2008 or Windows Server 2008 R2

When you try to connect to Windows Server 2008/2008 R2, you receive the following errors:

Name in the certificate from the remote computer:
 
<Not match>
 
The solution is login into this server and follow the following procedure:

1. go to Run and enter "mmc.exe"
2. add the add-in - certificates (for the computer account) (and select local computer)
3. navigate to the remote desktop folder -> certificates
4. delete the certificate for the name of the server and close the mmc instance
5. go to: administrative tools -> remote desktop services -> remote desktop session host configuration
6. select the instance in the main window - rdp -tcp -> right click and select properties
7. on the window that pops up, select default
8. restart the remote desktop service

Reference:

http://rivald.blogspot.com/2011/06/replacing-self-signed-remote-desktop.html

http://support.microsoft.com/kb/2000960

Print Friendly and PDF
Share/Bookmark

Monday, August 12, 2013

HP ProLiant Server shutdown show “The system has halted” when it is install Dialogic Brooktrout Fax card

When a HP ProLiant Server shutdown and show “The system has halted” like the following:

image

It will be happen if the server is install a Windows Server 2008 R2 and also a Dialogic Brooktrout Fax card have been installed.

The issue is caused by the way in which the board is put into a low power state before the operating system shutdown.

Solution:

1. Change/Add the following registry:

image

2. Change BIOS setting:

The Minimum Processor Idle Power State has been configured for "No C-states" or "C1E State."

And/OR

The Intel QPI Link Power Management is set to "Disabled."

And/OR

The HP Power Profile is configured for "Maximum Performance."

Print Friendly and PDF
Share/Bookmark

Tuesday, January 8, 2013

Windows Server 2008 R2 Rebuild Mirror (Windows build-in software RAID 1)

<You must backup all the data before to rebuild mirror>

There are mirror volume (RAID 1) have been created by two physical disk (Disk 1 and Disk 2)

The Disk 2 volume is become missing and it is become “Foreign Disk” like the following:

1

The solution is the following:

1. Full backup the disk 1 (The disk and volume is still healthy).

2. Select Disk 1, right click, “Remove Mirror ….”

2

3. Select the “Missing” disk and Remove mirror.

3

4. Click “Yes”

4

5. Select the “Foreign Disk” and right click, then “Import Foreign Disk……”

5

6. Press “OK”

6 

7. Press “OK”

7

8. You will got a new volume like the following disk 2:

8

9. Select disk 2 (which is you just import) and delete the volume.

9

10. Press “Yes” (Check the selected volume very carefully, do not select the wrong volume, otherwise all data will be deleted)

10

11. Select disk 2, right click and select “Convert to Dynamic Disk….”

11

12. Press “OK”

12

13. Select disk 1 and right click “Add Mirror….”

13

14. Click “Add Mirror”

14

15. The mirror have been start to rebuild now. (Remark: I also change the drive letter for identify only)

15

Print Friendly and PDF
Share/Bookmark

Thursday, November 8, 2012

Printing slow on old machine after Printer server have been migrate to Windows Server 2008 R2

The printing slow on old machine after Printer server have been migrate to Windows Server 2008 R2, it is because those machine is not fast enough to do the render print job. In previously, all the print job rendering will be handle by Print server. Start from Windows Server 2008, all the print job rendering will be handle by default for client. It is because it will helping to reduce the workload on the print service (printer spool) on the server. It is helping to prevent the service overload, and then this service down, all user cannot print.

The workaround solution is disable the print job rendering on the client side:

image

Print Friendly and PDF
Share/Bookmark

Sunday, June 10, 2012

Different between remove mirror and break the mirror in Windows Server 2008 R2

(For your reference only, I only try in a VM one time to do the “remove mirror” and “break mirror”).

Remove mirror will also remove all the data on the designated mirror disk. (Disk A will keep current data, but Disk B will remove all the data and volume)

image

Break mirror will stop the mirroring of the volume, but it will keep the data in both disk. (Disk A and Disk B which creates two separate and independent volumes containing identical data)

image
Please do not try the “Remove mirror” or “Break mirror” in your production system unless you have full data backup and well prepare disaster recovery of your system. (Take your own risk)

Print Friendly and PDF
Share/Bookmark

How to setup the software RAID 1 on Window Server 2008 R2?

Step 1: Open the “Server Manager” -> Storage -> Disk Management

clip_image002

Step 2: Select the “System Reserved” volume

clip_image002[5]

Step 3: Right click on “System Reserved” volume and select “Add Mirror…”

clip_image002

Step 4: Press “Yes” to start the disk conversion and mirroring.

clip_image002[7]

After the mirroring of the “System Reserved” volume is complete, you will see the Disk Management like the following:

clip_image002[9]

Step 5: Select the “Volume C:” and “Add Mirror….”

clip_image002[11]

Step 6: Select the disk you want to form mirror with your selected volume.

clip_image002[13]

Then wait for few hours until the mirror is complete. The following screen is the disk starting to form mirroring. There are yellow alert on Disk 1 since the mirroring is not complete.

clip_image002[15]

When the mirroring is complete, you will the Disk Management like the following:

clip_image002[17]

 

How to boot into Windows if the Disk 0 is fail?

In the boot menu, select “Windows Server 2008 R2 – secondary plex”

clip_image002[19]

Remark: Since this is a software RAID, please do not use this setup for the mission critical system. (Use this setup for your own risk)

Print Friendly and PDF
Share/Bookmark

Sunday, July 3, 2011

How to use Broadcom NetXtreme 10/100/1000 PCIe (1x) (Broadcom 5722 Gigabit Ethernet Controller) to create teaming (load balance and failover) on Windows Server 2008 R2?

How to use Broadcom NetXtreme 10/100/1000 PCIe (1x) (Broadcom 5722 Gigabit Ethernet Controller) to create teaming (load balance and failover) on Windows Server 2008 R2?

Go to download BACS

http://www.broadcom.com/support/ethernet_nic/netxtremeii.php#mgmt_apps

Since the Windows Server 2008 R2 is 64bit, you need to download the BACS (x64):

Broadcom Management Applications Installer (x64)

After the installation complete, you will see an icon like the following:

Step 1: Double click it to open the BACS console.

clip_image002

 

Step 2: Click the “Team Management”

clip_image002[5]

Step 3: When you in the “Team Management” menu, you will see there are two “Unassigned Adapters”.

clip_image002[7]

Step 4: Select a “Unassigned Adapters” and right click to select “Create a Team”

clip_image002[9]

Step 5: There is Wizard will be come out, just run the “Next” to start the Wizard.

clip_image002[11]

Step 6: Enter the name for the teaming group and then press “Next”

clip_image002[13]

Step 7: Press “Next” to continuous, if you want to use the load balancing and failover.

clip_image002[15]

Step 8: “Add” the two Available Adapters to the team, like the following. Then press “Next”

clip_image002[17]

Step 9: Since we want to use load balance and failover, do not configure a standby member unless you have more than two LAN card.

clip_image002[19]

Step 10: Select “No” of LiveLink, press “Next”

clip_image002[21]

Step 11: Select “Skip manage VLAN”, press “Next”

clip_image002[23]

Step 12: Select “Commit changes to system and Exit the wizard”, press Finish.

clip_image002[25]

Step 13: Press “Yes”.

clip_image002[27]

Step 14: You will see the BASP Virtual Adapters have been created.

clip_image002[29]

Step 15: Go to the “Network Connections” and select the BASP Virtual Adapter which is you just created.

clip_image002[31]

Step 16: Configurate the fixed IP address on it.

clip_image002[33]

Done!!!

 

Reference:

NIC Teaming - Broadcom network interface card (NIC) teaming fails.

http://alessandroworldblog.blogspot.com/2009/12/nic-teaming-broadcom-network-interface.html

 

Using Broadcom Advanced Control Suite 3: Broadcom NetXtreme II™ Network Adapter User Guide

http://maben.homeip.net/static/computers/pc/IBM/Bladecentre/broadcom%20ethernet/Manuals/English/bacs.htm

 

Teaming: Broadcom NetXtreme 57XX User Guide

http://public.support.unisys.com/pcproducts/esx/docs/DellDocs5.4/en/Broadcom/NetXtreme/teaming.htm

http://www.alliedtelesis.com/media/datasheets/guides/broadcom_ug.pdf

 

使用 Broadcom Advanced Control Suite 3Broadcom NetLink®/NetXtreme® 57XX 使用手冊

https://www.ltu.se/webbarkiv/ITS/download/hp/broadcom/Manuals/TradChin/bacs.htm

 

Print Friendly and PDF
Share/Bookmark