Posts

Showing posts from September, 2012

Smart Card Enrollment not showing in CertSrv Windows 2003 Server

ok first of hello all. issue similar post on forum http://social.technet.microsoft.com/forums/en-us/winserversecurity/thread/7a66ad54-63e4-4ee6-aef7-70e3dfcdfc99/  (this problem dealing server 2003 r2 enterprise sp1) in forum link there questions asked didn't seem answered. i set windows server 2003 enterprise server enterprise root ca. (fully patched)  i have installed web enrollment role , verified working can pages , request certificates.  i using gemalto .net 2.0 smart card scm microsystems scrx31 card reader i have installed following certificates on server: enrollment agent, smart card user , smarcard logon.  here main issue but when go http://<server_name>/certsrv, request certificate, advanced not see option "request certificate smart card on behalf of user...".   option won't show on server or client trying request cert on behalf (an xp laptop) i have added few different hotfixes. enabled active x...

Audit Policy Change -- Audit Failure Event

hi,  i configure log audit policy change failure events only. computer configuration -> windows settings -> security settings -> advanced audit policy configuration -> system audit policies -> policy change -> "audit audit policy change" "failure" i need conform failure event logs or not.  after setting policy failure, did't failure logs. in scenario failure log audit policy change. thank you, hi, first of all, before go further, please verify gpo applied clients successfully, run gpresult /r command check that. if gpo not applied, please follow article below troubleshoot it: 10 common problems causing group policy not apply http://social.technet.microsoft.com/wiki/contents/articles/22457.10-common-problems-causing-group-policy-to-not-apply.aspx in addition, in order failure log, must take failure action in following aspects: • permissions , audit settings on audit policy object (by using auditpol /set /sd)...

RDS CALs or WinMultipoint Server 2011

hi forum members, i'm doing consult internship small medical practice has 4 staff in office(melbourne,australia) , several (10+) staff off site (spread around australia). running medical management software on win2008 r2 server hosted local cloud provider. have purchased 5 rds user cals. main office computers not domain based (no domain controllers on site or off site) , remote desktop server use medical app. medical app allows simultaneous logins , use. looking allow remote offsite staff access server , work around purchasing 10+ more cals, have legal , scalable solution this. in australia, set of 5 cals cost ~$1000aud. some of solutions client had asked me analyse teamviewer. rejected $2809 license 3 sessions + $979 per session.  i wondering if implement windows multipoint server 2011 , install medical software on it. presume based on win2008r2. premium version should allow upto 20 simultaneous "stations"- mean 20 users access medical software re...

Mounted drives security access rights

Image
hi! i troubleshooting mounted volume security access issues on server 2012 r2 , created test folder "test adm_fla", , mounted small disk test adding permissions. see image below: (taken security tab on folder "test adm_fla") on other hand, if @ properties of mounted volume (from general tab on test adm_fla folder) , security tab, see: why not tendsign permissions set manually listed here? thought "linked"/added automatically somehow the issue that, according customer, manual tendsign... permissions have specified inhereted on folders, removed, , don't know why. these tendsign volumes replicated server. has had issue before? hi, mounted volume placed in empty folder of host ntfs volume. empty folder inherits permissions root volume. explicit permissions on mounted volume don’t propagate across root volume. more detailed information permissions on root volume, mounted volume, mounted volume link folders, refer article below: ...

Have you fixed this?

my application can't see ink , handwriting services though it's installed. please tell me have fixed office online server sharepoint 2016 needs feature can configure it. please!!!! troy jackson hi, 1.please reboot server after intall services. 2.please run 'sfc /scannow' ,the sfc /scannow command scan protected system files, , replace corrupted files . 3.and post on sharepoint forum other user may encounter similar issue: https://social.technet.microsoft.com/forums/office/en-us/home?category=sharepoint best regards, cartman please remember mark replies answers if , unmark them if provide no help. if have feedback technet subscriber support, contact tnmff@microsoft.com . Windows Server  >  Windows Server Technical Preview ...

How to denied the connection of Anouymous on ISA 2004?

there many allowed connections pass through denied rule. how can happen? anyway block these?  i tried create denied rule user set "anonymous", didn't work. of connections connecting destination ip 443 port. apparently cannot move thread, should in http://social.technet.microsoft.com/forums/en-us/home?forum=forefrontedgegeneral anyways, need @ logs , identify rule allows traffic have rule allows it. important understand isa (or tmg matter) not allow traffic unless explicitly allowed. if there no rules, no traffic allowed (apart allowed , isa host in order function). live logging friend, reproduce traffic should denied , filter source ip , @ rule allows it. some common issues/reasons rules not being processed expected - order of rules (isa/tmg starts rule #1 , moves down list) - incorrect source/destination - incorrect protocol used - incorrect user set specified all of these has match before rule applied, if 1 of elements of rule not apply, rul...

Shadow Copy trigger failover node on Windows 2008 SP2

environment: 1. 3 server 3 nodes 2. 1 san storage , setup 3 volume (quorum, data, shadow copy storage) 3. 3 disk add cluster system: quorum (drive q), data (drive d), shadow copy storage (drive s) 4. drive d dependencies on drive s 5. shadow copy resource dependencies on drive d issue: i created shadow copy service in drive d , shadow copy storage using drive s, every time shadow copy perform task, main cluster node disconnect few minutes (around 1-3 min) , cluster system perform failover other node. sometime shadow copy file created, sometime shadow copy files purge. there wrong setting or there fixed on my issue? your reply appreciated. thank you.   hi rick, devices not certified may have unexpected errors. in case, storage device not certified , considering shadow copy operates on disk, may cause of issue. i suggest consult technical support of storage device. or, open case microsoft more in-depth investigation, , more satisfyi...

Getting a return value from a scriptblock from invoke-Command

i running following commands: $rsession = new-pssession -computername $computername -credential $creds invoke-command -session $rsession -scriptblock { add-computer -domainname $args[0] -credential $args[1]  } -verbose -erroraction stop -argumentlist $domain,$creds    how return value add-computer can figure out whether machine joined domain ?   thank you. you try adding -passthru parameter add-computer command.   Windows Server  >  Windows PowerShell

Deleting Office 2013 after upgrading to Office 2016

Image
i installed/upgraded to office 2016 professional plus, previous office 2013 uninstalled , settings maintained. installation process worked fine only some of outlook plug-ins had reinstalled and a new mak license entered. oh , had problem adding adobe pdf creator plug-in outlook , word after updating acrobat dc. under "programs , features" noticed both versions of office installed went , uninstalled older office 2013 version. far have found no significant problems after procedure, under account options office applications there no visual notification product still licensed. i wondering else has come across issue? nick hi, if re-enter licence, activate office? i haven't seen issue in forum. if meets same scenario, kindly share experience here. regards, melon chen technet community support please mark reply answer if find helpful. if have feedback technet support, contact tnmff@microsoft.com . ...

Windows Server 2012 and proxy server

hi. hope can provide me guidance. looking install proxy server in lab environment. using server 2012, , forefront uag not supported on it. there option have proxy server installed on server 2012 or need 3rd party application preform this? joseph yedid   hi, i suggest use rras nat instead of proxy, offer more manageability. more informn: enable , configure nat http://technet.microsoft.com/en-us/library/dd469812.aspx the third party information: how enable nat on windows server 2atio008 r2                              http://www.youtube.com/watch?v=nqhfbeplrsu hope helps. we trying better understand customer views on social support experience, participation in interview project appreciated if have time. helping make community forums great place. ...

RemoteFX / GPU Virtualization

hi i have laboration environment windows server 2012 installed on physical computer. on top of have windows server 2012 virtual terminal server running in hyper-v. want know if have remotefx running on them already. cause have understood windows server 2012 automatically virtualizes gpu if dont have physical gpu, dont in case. and how can check if have remotefx running on virtual terminal server?  i'm rookie when comes virtualization, feel free explain me im 5 years old :)  know reading brian madden's post can done windows 7 sp1 , windows server 2008 r2 sp1, can done windows server 2012 or testing these things ?  source of info :  http://www.brianmadden.com/blogs/brianmadden/archive/2011/03/03/can-you-connect-to-a-terminal-server-via-remotefx-yes-here-s-what-you-need-to-know.aspx   remotefx gpu acceleration works vdi vms , terminal servers installed on bare metal. it not apply terminal servers installed within virutal machines. brian ehlert ...

Powershell Script to create IIS director runs sucessfully on ISE but when I put it in my PHP code it does not run.

hello, i hope can me.  i trying learn powershell , have hit dead end.  i have 3 items creating. 1.  welcome.php page 2.  input.html page 3.  powershell script iis.ps1. if run powershell script on ise works fine.  it creates iis virtual directory me , physical directory.  but when use php  <html> <body> <?php $psscriptpath = "c:\\iis.ps1";?> <?php $query=shell_exec('c:\windows\system32\windowspowershell\v1.0\powershell.exe -noprofile -noninteractive -command ".c:\iis.ps1');?> </body> </html> it not anything.  my script listed below set-strictmode -version 2.0 $site="default web site" write-host "" write-host "                                                            " -back...

ADLDS (ADAM) - sync problems windows server 2008 R2

i have installed adlds on windows server 2008 r2 , have created new instance   this working fine. managed import required schema using adschemaanalyzer   i have created xml config file , installed this. when run sync following error: adamsync.exe v1.0 (6) establishing connection target server localhost:1705. saving configuration file on dc=hpcaqa,dc=internal saved configuration file. adamsync querying writeable replica of e7359svint828.hpcaqa.internal:1705. error: dclocator call failed error 1212. attempting bind directly string. establishing connection source server e7359svint828.hpcaqa.internal:1705:389. ldap error occured. ldap_bind_s: local error. extended info: . ldap error occured. ldap_bind_s: local error. extended info: . trying sync critical path server uses port 1705 in config file specified port, when executes appears add port 389 in mix (even though ive specified in config 1705) i can telnet critical path server on port 1705 , ...

Having problem with RMS while at Microsoft Office

hie, after completing installation of adrms have followed according website http://technet.microsoft.com/en-us/library/cc725869(ws.10).aspx  , there error message saying "this service temporarily unavailable. ensure have connectivity server. error caused because working offline, proxy settings preventing connection, or experiencing intermittent network issues." how can solve error? hi, did follow steps in guide below? ad rms step-by-step guide http://technet.microsoft.com/en-us/library/cc753531(ws.10).aspx please make sure have completed "step 3: verifying ad rms functionality on adrms-clnt" if there no error above, let know @ steps encountered error "this service temporarily unavailable". thanks. this posting provided "as is" no warranties, , confers no rights. Windows Server  >  ...

RD Gateway crashes every time a user tries to connect through

hey guys! installed rds on our windows server 2008 r2 sp1 remoteapp , rd gateway. seems work - tried user-connection rdweb , deployed remote-app-rdp-links. tried log in mstsc. changed "connect aynwhere"-settings in advanced-tab , forced application use specified rd-gateway. typed in credentials , click "connect" - rd gateway-server crashes error-code: 3221225477. on support-site of microsoft discovered article "the remote desktop gateway service crashes under heavy workload in windows server 2008 r2" hotfix. though don't have heavy workload (well, have second user get's logged in, guess that's normal...), installed hotfix, problem remains... furthermore event-log-entry said service restart on it's own, doesn't... or ideas! cheers, richard hi,   consider following scenario: you configure remote desktop resource authorization policies (rd rap) on computer. multiple users connect computer @ same ...

SSO for RD Web - internal LAN clients

hi all we have small 10 server poc running implement sso on rd web internal clients (externals flow through uag) , wonder if adding/configuring rd gateway can achieve this? in case definition of sso user browses rd web url , automatically signed in , appropriate icons presented.  currently once user has authenticated against rd web's url sso operational role certificates have been assigned. there no rd gateway role external access provided uag pointing rd web's url. having looked here   section: in properties dialog box, select the  rd gateway  tab. web sso work rd gateway, select the  use rd gateway credentials remote computers  check box, , set the  logon method  to  password authentication . specifically 'for remote computers' has confused me. can assume if rd gateway within lan (not part of dmz there's no need) treat connections 'remote computers' if 'bypass rd gate way local computers' unchecked, , therefore pr...

Why alternate credentials fields are grayed out in drive map policy?

 i map network drive nas storage gpo policy (user configuration -> preferences -> windows settings -> drive maps). enter alternate credentials authenticate remote user, however, username , password fields grayed out. why? how can make them editable? windows server 2008 r2. hi, perhaps answers question - see: http://blogs.technet.com/b/srd/archive/2014/05/13/ms14-025-an-update-for-group-policy-preferences.aspx https://technet.microsoft.com/library/security/ms14-025 otherwiese fields available if following actions selected: create, modify, update. best regards switch mcitp enterprise administrator mcsa windows server 2012 mcts windows 7 configuration disclaimer: posting provided &quot;as is&quot; no warranties, , confers no rights. Windows Server  >  ...

The Terminal Server security layer detected an error in the protocol stream and has disconnected the client

remote desktop disconnected in server 2008 r2 event logs can see several errors 1. the terminal server security layer detected error in protocol stream , has disconnected client 2. the following fatal alert generated: 10. internal error state 10 3. an internal communication error occurred.  redirected printing no longer function single user session.  check status of remote desktop device redirector in system folder of device manager can please solve issue ? hi, firstly, please ensure terminal server patched. in addition, suggest troubleshoot issue these troubleshooting articles below: how troubleshoot “the terminal server security layer detected error in protocol stream , has disconnected client. client ip:” , “the rdp protocol component x.224 detected error in protocol stream , has disconnected client”err http://blogs.msdn.com/b/scstr/archive/2012/02/29/how-to-troubleshoot-the-terminal-server-security-layer-detected-an-error-in-t...

Print Mamagment Server08 R2 - deployment Issue

dear firends, i have configured  print managment role in dc. using gpo deploy printers. not sure problem is. i login 2 pc using same username, printers deployed in 1 , few in other pc. when use gpresult, can see printers there dont deployed. i thougth pc issue formated it. still same problem. can 1 me on this regards what’s os version of problematic computer? have checked if print spooler service set automatic on machine? Windows Server  >  Print/Fax

'Another' AD Domain Migration/Rename Question...

sorry if redundant. have looked @ of documentation on migrating/renaming ad domains, verification before start (and save myself , company time/money). existing win2k3 ad forest consisting of 2 domains; root forest domain, company_domain.com , 1 child domain customer_domain.com. yes, not in same dns tree naming structure (i.e. not company.com , customer.company.com). forest/domain dcs win2k3 sp2 servers , customer_domain.com dcs , servers win2k3 r2 sp2. our company bought company , company_domain.com domain users, groups, servers , workstations were migrated parent cmpany's ad forest (parent.corporation.com domain). leaves 2 'legacy' dcs company_domain.com domain/forest , customer_domain.com domain consisting of 12 dcs , 12 servers (file/print/db). customer_domain.com domain/'system' deliverable our customer/client. what need to do to migrate/rename customer_domain.com to it's own forest/root ad ds. is possible/practicle. seeing though twelve dcs @ 6 ...

Single Log to View Changes or Deletions to any GPO

hi all is there single log (ie txt or csv)to view changes or deletions or creations of gpo. using agpm change control system. our audit team wants see did , when gpo , given time. there way maybe extract log changes made entire domain . have checked around saying have enabling logging each gpo. any appreciated. thanks hi, if want monitor changes of gpo, suggest we’d better refer following articles. monitoring group policy changes windows auditing http://blogs.msdn.com/b/ericfitz/archive/2005/08/04/447951.aspx how can monitor changes group policies? http://www.frickelsoft.net/blog/?p=56 in addition, maybe use script create report of changes of gpo. details, please try refer article below. gpo report http://gallery.technet.microsoft.com/scriptcenter/1a2d3d52-5585-4001-bd60-2e577d2466c5 if have script related issues, ask in script forum. the official scripting guys forum! http://social.technet.microsoft.com/forums/en-us/itcg/threads ...

netsh advfirewall - port still closed

i have forwarded port 11100 routers setup still showing closed. supposed because firewall blocked it. tried adding inbound rule mmc crashed , continues so. workaround used cmd's function netsh , added rules follows: rule name: riskofrain ---------------------------------------------------------------------- enabled: yes direction: in profiles: domain,private,public grouping: localip: remoteip: protocol: udp localport: 11100 remoteport: edge traversal: no action: allow rule name: riskofrain ---------------------------------------------------------------------- enabled: yes direction: in profiles: ...

ACLs for secured shared folder

greeting's, want set folder domain users (authenticated users) can: 1. create files. 2. append files have created. 3. users can access files including created other users. 4. deletion possible creator of file. in advance! hi, please take @ following article regarding set access controls on files, olders , shares, have try: https://technet.microsoft.com/en-us/library/dd277411.aspx regards, wendy please remember mark replies answers if , un-mark them if provide no help. if have feedback technet subscriber support, contact tnmff@microsoft.com. Windows Server  >  Directory Services

Install Microsoft Search Server 2010 Express in Window Server 2012 R2

i ask how install microsoft search server 2010 express in window server 2012 r2 environment? thank you    here download link : http://www.microsoft.com/en-au/download/details.aspx?id=18914 arnav sharma | http://arnavsharma.net/ please remember click “mark answer” on post helps you, , click “unmark answer” if marked post not answer question. can beneficial other community members reading thread. Windows Server  >  Windows Server General Forum

NTFS Permissions Issue

we have folder on share drive, demonstrative purposes lets call folder a:\folder.  have ad group (users) should able to: see parent folder a:\folder not able change name, delete it, or move parent folder beneath folder in root of a: create, modify, execute, , delete subfolders, , files within parent folder, a:\folder i have configured permissions on said folder, a:\folder, in such way ad group (users) has: modify permissions: applied onto subfolders , files only , allowing: traverse folder / execute file list folder / read data read attributes read extended attributes create files / write data create folders / appended data write attributes write extended attributes delete read permissions read & execute permissions: applied onto folder, subfolders , files , allowing: traverse folder / execute file list folder / read data read attributes read extended attributes read permissions this setup allows of requirements listed above, including denying mod...

Windows 2003 Security Log Issue

hi , i have windows 2003 servers in network , updated security log rentention 90 days because of change in security policy.  after change have 2 servers showing bluescreens @ startup. , have use last known command start server  normally , reverts original 60 days.  when change security log rentention 90 days , reboot server again , shows blue screen , have use f8 , last known config. i tried increasing size of log file , still not help.  can have suggestions on wrong here. thanks in advance senthil looks double fault occurred. http://msdn.microsoft.com/en-us/library/ms795478.aspx regards, dave patrick .... microsoft certified professional -microsoft mvp [windows] Windows Server  >  Windows Server General Forum ...

How can I determin if adprep /domainprep /gpprep was run

Image
i know adprep /domainprep run before adding first 2008 r2 server how determine if adprep /domainprep /gpprep run after that? use procedure http://portal.sivarajan.com/2011/06/verifing-adprep-domainprep-result.html santhosh sivarajan | mcts, mcse (w2k3/w2k/nt4), mcsa (w2k3/w2k/msg), ccna, network+| houston, tx blogs - http://blogs.sivarajan.com/ posting provided no warranties,and confers no rights. Windows Server  >  Windows Server General Forum

Windows Server 2008 Failover Cluster Migrate cross Domain

hi, all      how migrate windows server 2008 failover cluster root domain child domain ? please give me consulting documents or suggestions?      if there step step operation documents better. hi,   if @ possible, don't move it. successful scenarios involve unjoining , rejoining new domain, require breaking cluster , re-creating in new domain.   -- mike burr Windows Server  >  High Availability (Clustering)

Join a domain with smarcard

Image
env: windows pki offline root , online issuing ca. dcs 2008r2, fl 2008r2. smartcard logon works fine on domain joined machines when user (with rights so) tries join machine domain using smart card gets error: the event log says: the subject of sc certificate contains domain in form dc= the user's upn in subject alternative name of cert. i added root , issuing certs smartcard well, still getting same error. what missing?!?! thank you, you try exporting dc cert , placing on test client hasn't joined domain. run certutil -urlfetch -verify <dccert.crt>, replacing <dccert.crt> export dc cert file see client can validate. perhaps crl information in ad , since hasn't joined domain yet can't validate cas. speculative , output above command help. against smart card client cert too. mark b. cooper, president , founder of pki solutions inc., former microsoft senior engineer , subject matter expert microsoft active directory certificate...

'Cluster-unaware' applications in MSCS (Windows 2008 R2) environment..

hi - i new microsoft cluster (mscs) environment , apologize if answered before.. essentially, planning install client application in mscs environemnt 2 servers in cluster. client application windows service. same cluster being used configuring server application. the 'server' application built  and 'supported' vendor in cluster environment. but, understanding can configure 'cluster-unaware' application in mscs. may not take full advantage of true failover, client service should failed over. could provide/confirm insight plan of installing client in mscs evironment? also, equally important is: can use mscs server(s) install application not participating in fail-over? possible install client on both mscs servers , not configure on failover?   thanks in advance. govee10 first basic design statements should understand clustering a bit better. mscs framework , distributed servie detects , manages resource failures.  each resource (disk, ip, sq...

Printer not being redirected in one client/server combination all others work.

hey everyone  i having strange issue 1 one of our office pcs. it's windows 7 laptop connecting 2 different remotedesktops - 1 of them server 2008 r2 (lets call rds1) , other virtual windows 7 machine (vm7).  1) local windows 7 machine has network attached dell 3765dnf installed - no issues printing here.  2) when connecting virtual windows 7 (vm7) machine, printer gets redirected , usable in remote session - no issues printing here.  3) when connecting server 2008 r2 none of locally installed printers (like fax or pdf besides dell 3765) being redirected.  4) when connecting different terminalserver based on windows server 2008 r2 printers being redirected , usable.  sounded me problem server 2008 r2 (rds1), when try other client pc in office there no issue printers being redirected!? i checked driver versions on machines, tried use easyprint drivers , nothin worked.  anyone got hints on how solve issue ? not sure else .... regar...

restrict access to a shared folder by IP adress

hello, i have 2 servers hosted hoster companies (server 1 , server 2). have shared 1 folder of server 2. wish restrict access shared folder ip adress  of server 1. possible without using active directory? thank help,   best regards, nilanmii91 the important in answer question windows security model restricts access per-user, not per-ip. basically, can configure firewall options file , printer sharing service permit ip communications, restrict shares on computer ip only. mcitp: enterprise administrator; mct; microsoft security trusted advisor; ccna; ccsi Windows Server  >  Security

resolution desktop

i would like to give input the lack of success of the program microsoft windows 8 , 8.1 , and i hope not happen in windows 10 . about terms / requirements to able to install windows 8 , 8.1 on netbook computers should also able to use windows 8 , 8.1 which is still 1024x600 resolution on netbooks . because most users still using a netbook with a screen resolution of 1024x600 , which in opinion is factor less successful windows 8 and 8.1 . i hope tomorrow's windows 10 can be installed / used at resolution 1024x600.thankyou older netbooks etc older 1024x600 tn lcd panels not going suitable newer versions of windows. new netbooks $200 better new one place rig specifics signature have, makes 100x easier! hardcore games legendary way play! vegan advocate how can environmentalist , still eat meat? ...

Thumbnails Don't Render in Server 2008

i'm running server 2008 (received server 2008 launch event here in houston) on 1 of machines @ home (test environment).   i'm unable jpeg, bmp, etc thumbnails render in windows explorer.  suggestions/recommendations how address this?   hello charles,   by default, thumbnails view disabled in windows server 2008. enable thumbnails, try un-click 'always show icons, never thumbnails' option in windows explorer--->tools--->folder options--->view.   by way, if want use windows photo gallery view pictures. desktop experience feature should installed in server manager feature page.   hope helps. Windows Server  >  Windows Server General Forum

HyperV VM cannot access internet

hello i installed hyper-v , configured virtual machine. want access virtual server local network. configured network adapter external network. after can ping local server virtual server. both server cant access internet. cant understand problem.pls helpme. appreciated. thank you. hi suranga,  i recommend read below thread once , try again. http://social.technet.microsoft.com/forums/en-us/winserverhyperv/thread/70afaafb-13a3-4033-b2ed-a72dddadfbca/ regards, ravikumar p Windows Server  >  Hyper-V

Cluster broke?

i have been running 2 node cluster last 6 months nominal issues. today, both halves of cluster have gone down. neither of 2 nodes recognize hosting cluster under failover cluster manager. if try 'validate configuration', each host recognizes part of cluster, in shows @ ' host1.contoso.com (clustername) ' or ' host2.contoso.com (clustername) '. in each instance not add other host.  following error message appears when trying add other host:   unable determine if have administrator privileges on server   'host#.constoso.com'. please ensure sure server service , remote   registry services enabled, , firewall configured   remote access. appreciated, has taken down 2 dozen virtual machines in process of being used testing. thank help! -aaron which o/s version , edition? running hyper-v? do have external domain controller or dcs vms on cluster? ...

ADFS 2016 JWT Authentication Custom Claims

hi i have implemented confidential client in adfs 2016 , using jwt bearer token authentication.  basic configuration works expected , able jwt signed adfs.  have requirement pass through few custom claim values which are part of bearer token outgoing jwt.  seems claim mappings bearer jwt hard coded , there no way add these custom claims outbound jwt. please let me know if there way achieve since critical our implementation. thanks syed hi syed, it looks query more related adfs feature part, our forum doesn’t focus on. dedicated support, suggest open new thread query in our adfs forum, understanding appreciated. https://social.technet.microsoft.com/forums/windowsserver/en-us/home?forum=adfs&filter=alltypes&sort=lastpostdesc the reason why recommend posting appropriately qualified pool of respondents, , other partners read forums regularly can either share knowledge or learn interaction us.   thank understanding. i have found ...

SMTP question

if setup smtp on server 2008 r2 install emails: 1) sent example@example.com email address , 2) responses go directly sender? company trying need set mailbox program of kind on server in question. understand need enter ip address of smtp server in setup, , assume email enter during setup email used send messages. have never set smtp service on server before, advice or tips appreciated.   hi, when configure smtp server(local computer). in the  general  tab, unless want the  smtp server  to use specific ip address,  leave settings the  ip address  is set to  (all unassigned) for more detailed information, refer to: setup , configure smtp server on windows server 2008r2 http://www.vsysad.com/2012/04/setup-and-configure-smtp-server-on-windows-server-2008-r2/ regards. please remember mark replies answers if , unmark them if provide no help. if have feedback technet support, contact tnmff@microsoft.com ...

VPN errors out with 718

i set (am trying to) first ras support pptp vpn on windows 2008 member server. leaned (eventhough mine pptp , iis, certs not needed) on http://www.windowsecurity.com/articl...ver-part2.html i'm unable connect clients test (xp, vista, win 7), i've tried different settings far authentication, i've selected pptp vpn (not automatic), disabled ipv6. machines rebooted several times. ports seem open correctly (1723 , gre - http://blogs.technet.com/rrasblog/ar...s-through.aspx ), portqry confirms tcp. server added group ras , ias servers group. account i'm trying connect has been granted allow access under network access permission in dial-up tab. appropriate services seem started fine. haven't yet installed nps, done @ later time (i need working without 1 first). when try connect, these event ids (application log) on client 20221, 20222, 20223, 20224 (all informational) , errors out 20227 reason give in failure 718 (the server didn't respond in timely manne...

Issue with IIS 7.5 ftp server and wsftp client

 recently replaced win2003sp2 server win 2008r2 server. firewall not permit passive connections. client used wsftp or filezilla ftp files. if client connects using active mode goes thru in 2003 , 2008r2 server. if client uses passive mode in wsftp fails , automatically switches active mode , ftp successfull in win 2003. win 2008r2 after passive fails client switches active mode gets error 425. ron hello, for iis better use: http://forums.iis.net/ best regards meinolf weber disclaimer: posting provided "as is" no warranties or guarantees , , confers no rights. Windows Server  >  Windows Server General Forum

DO_NOT_TRUST_FiddlerRoot

hello,   been couple of months i'm facing problem on browsers. few websites fail open there adware installing fiddler certificates. wrote chrome guys adobe guys plugin getting affected. explained me adware changing root certificates these sites. softwares on laptop date.  kidly me out. attaching screenshot formated laptop 3 times, works fine somedays , later same issue turns up. regards apurva hi, >> where explained me adware changing root certificates these sites. softwares on laptop date.  kidly me out. attaching screenshot formated laptop 3 times, works fine somedays , later same issue turns up. did have antivirus/ malware install on laptop?please perform full-scan. does laptop standalone or in workgroup/domain?it may caused by  virus/ malware on network. which version of operating system using? best regards cartman please remember mark replies answers if help. if have feedback technet subscriber support...

Win2k8R2 RDS - Type 1 Font not visible for all Users

hi i have strange problem our rds drives me crazy. i need install latex type 1 fonts (*.pfm *.pfb) use illustrator. what have done: - right click on *.pfm file , select install domain admin (connected via rdp /admin) (no uac) - started illustrator , can see font - login standard user, starting illustrator , can see font - login standard user, starting illustrator , can't see font i reinstalled font --> no change restarted server --> no change the fonts in windows\fonts folder , written registry key "hkey_local_machine\software\microsoft\windows nt\currentversion\type 1 installer\type 1 fonts" thanks :) best regards   jbab     as word reconginzing new fonts users, shouldn't access rights issue rather it's illustrator misbehavior. did restart systems after fonts install, if not may worth trying.   to pinpoint issue coming form, may have procmon working , failing users while running illustrator , compare events. y...

Get-WmiObject

hi! is possible run get-wmiobjet simultaneously on 1 computer? //patric yes can. read powershell jobs example: c:\> start-job -filepath c:\scripts\ss64.ps1 http://blogs.msdn.com/b/powershell/archive/2011/04/04/scaling-and-queuing-powershell-background-jobs.aspx please mark post helpful or answer or better yet.... both! :) thanks! Windows Server  >  Windows PowerShell

OS X Remote Desktop 8.x not working with Terminal Services Session Directory Service

we have terminal services session directory service in place, redirect people - possibly - running session on of our ts cluster servers (server 2003 r2). turns out new ms remote desktop correctly gets redirected server user has running session. login not succeed, since rdc client tries login console. this used work in itap. else experiencing problem? anyone @ microsoft reading this? i'd file bug report. have 120 new students not beeing able conctact our ts cluster. used buy itap mac because session redirection worked. there not option buy working rdc client. Windows Server  >  Remote Desktop clients

DNS

tengo un dc server 2008 y tengo otro server windows 2000 replicando con el 2008, hace unas semanas me empezo dar problemas y siento que es con el dns, en en log de 2008 me envía el error event id 4512, y en log ad event id 2091, de hecho quiero quitar el server 2000, por que ya instale un nuevo server 2008, pero la hora que quiero promoverlo como dominio para que replique con 2008 me envia un error y no me deja replicar.       hola rafa1023: el id 2091 está relacionado con la ubicación de un maestro de operaciones, tu problema se puede deber o bien que quitaste un controlador de dominio que tenia las funciones de maestro de operaciones, o que no todos tus controladores de dominio son servidores de catalogo global y en caso de que no lo sean, el   maestro de operaciones de infraestructura no puede ser servidor de catalogo global. para solucionarlo haz todos tus controladores de domino servidores de catalogo global. http://suppor...

WSMAN SOAP call not working for Creating VirtualHarddisk in windows server 2012 DataCenter

i have installed windows server 2012 datacenter evaluation, trying create virtual disk using wmi classes wsman soap call, same soap call working in windows server 2008 r2, fails in windows server 2012 data center. cross verified in serivces.msc, , found hyper-v image management service" not available in windows server 2012 data center whereas available in windows server 2008r2 please 1 guide me how enable  hyper-v image management service in "window server 2012 datacenter" or other setup needs install. soap call ================ <s:envelope xmlns:s="http://www.w3.org/2003/05/soap-envelope" xmlns:a="http://schemas.xmlsoap.org/ws/2004/08/addressing"  xmlns:w="http://schemas.dmtf.org/wbem/wsman/1/wsman.xsd">   <s:header>     <a:to>http://xx.xx.xx.xxxx:5985/wsman</a:to>     <w:resourceuri s:mustunderstand="true">http://schemas.microsof...