Quantcast
Channel: Fórum Remote Desktop Services (Terminal Services)
Viewing all 26837 articles
Browse latest View live

RemoteApp and Desktop Connection

$
0
0

Hello,

I have setup RDS to publish apps to internal users.  Users will only be able to launch application thru "RemoteApp and Desktop Connection", and no web interface is setup for external use.

The issue that I have is that when user launch application from "RemoteApp and Desktop Connection", they are being RDP into RDS server and user has to click OK button before the application can launch (Please see screenshot).

How do I implement SSO so that "RemoteApp and Desktop Connection" will capture user logon information on the local pc and automatically log them on to RDS server

Environment:

RDS broker/session/web server are on a single 2012 r2 server.

Thanks


Unable to Add Session Host Servers to Collection

$
0
0

I have had a working Environment of 2012 r2 server and collections all of a sudden start to cause giving me errors with adding new servers to existing collections.

The GUI and Powershell error I am receiving is "Unable to retreive collection properties"

I have gone through numbers threads and fixes throughout this community and others and have hit a road block and need some more ideas.

My latest thread that I have looked through here. Lead me to running through the RDMSUI Tracing logs, and getting the same error notated here.

Component RdmsUI: Failed to fetch local DB connection string from server: <server running in VM (RDCB+RDLS)>.<domain>: System.Management.Automation.RemoteException: Property DBConnString does not exist at path HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tssdis\Parameters.
   at Microsoft.RemoteDesktopServices.Common.DeploymentModel.ExecutePowerShellScript(String serverName, String script, Object argumentList, Boolean isLocalhost)
   at Microsoft.RemoteDesktopServices.Common.DeploymentModel.IsHighAvailabilityConfigured(String managementServer)

Looking at the answers in that thread is no where near what my problem appears to be because my setup is basic.

1 Connection Broker Server

1 Gateway Manager Server

Currently 16 Session Host Servers each connected to various collections that I have created.

As I said, I have been able to until last week, been able to add and remove session host severs to and from collections without a problem, but now I am completely unable to unless I rip out the whole collection and do a full rebuild including all of the session host servers that are going to be in that collection on the initial setup.



Joshua Craddock PinComputing LP. Systems Administrator

Restricting Access to edit function of Adobe DC

$
0
0
I've recently installed Adobe DC on our Windows Server 2008 R2 terminal servers.  In past, to lock down the "writer" functionality, all we had to do was restrict access to the PDF Printer object using an AD group.  However, this version seems to allow anyone to edit pdf's.  Does anyone know how to restrict the edit function?

Server 2012 R2 - RemoteApp invisible modal window

$
0
0

Running RDS on 2012 R2 servers. I have an application that I want to deploy via RemoteApp, but it is having a problem.

When users running Windows 7 - 64 bit machines with MSTSC version 6.3.9600 launch the application, there is a logon window that they are supposed to be able to see in order to be able to login to the app. They do not see it, the window is invisible. You can click in it, put in your credentials and then login. 

Users running windows 7 - 32 bit and MSTSC 6.1.7600 are able to see the login window just fine. Everything works.

I have searched all over the web, and all I find is a bunch of hotfixes that don't apply to my machine or my servers, and nobody seems to have a fix for this. Does anyone have any ideas on what I can do to get this window to show? I cannot deploy this app unless it works on both 64 and 32 bit machines.

How to disable Remote Desktop Access but allow RemoteAPPs to run?

$
0
0

Hi everyone,

 

We have RemoteApps working fine. Unfortunately, it also enables Remote Desktop Connections as well so the user who is supposed to ONLY use the RemoteApp directly from the .rdp file now can have access to full Remote Desktop. Is there a way to disable remote desktop but allow remote apps (.rdp files)?

 

Thanks

Random Disconnects from Remote Sessions

$
0
0

Hi All,

We have an environment with 4 remote hosts that our users connect to, one user is getting some issues where his session will end after an hour and if he logs back in it has disappeared at times he can login and his session is still active but this is rare.

The message he sees is

"Your Remote Desktop session has ended.

The connection to the remote computer was lost, possibly due to network connectivity problems. Try connecting to the remote computer again. If the problem continues, contact your network administrator or technical support".

Our policy which is set is as follows -

Disconnect after 1 hour inactive
Idle session 2 hour

Active session 12 hours

He is the only user that gets this behavior i have ran tests and left a session IDLE and it will not disconnect after one hour.

Anyone have any advice or a solution ?

User Profile Disk Corruption

$
0
0

Hello,

We had a serious issue with UPDs in our environment and I'm really just testing the water to see if we were extremely unlucky, or there is inherent problems with UPDs.

The scenario is as follows:

We have a single RDS server. The Collection on this server is configured to use UPDs which are stored on a separate server. One morning, we had a full BSOD on the RDS server due, we think, the a lack of available RAM. In any case, after the RDS server rebooted from the BSOD, we discovered that all users who were connected to the server when it fell over were being logged on with a temporary profile. On closer inspection, we observed that there was a c:\users\%username% folder for all of these users, but when they logged in, they were actually being dumped into a c:\users\%username%TEMP folder instead.

We consulted the Event Viewer where we observed a ntuser.dat error for every single user. Of course the ntuser.dat resides on the UPDs and it soon became evident that every single user who was connected to the RDS server when it fell over ended up with a corrupt ntuser.dat hive.

Any thoughts? Has anyone seen anything similar to this? It was a very time consuming restoring all the UPDs from the previous night's backup and I am worried that the UPD concept is perhaps not as resilient as I would have thought.

Thanks in advance.

MS Remote App Certificate Problem

$
0
0

Hey Guys, 

I have a Problem. I am using a Windows Server 2008 R2 with Terminal Services. Some Days ago, my Certificate expired. I creates a new one, self signed, via IIS on the Server. Afterwords I chose this certificate in My Remotedesktop Host Server and also in the digital Signature in the Remote App. But my Problem is, that the Remote Apps still seem to use the old certificate. While creating the RDP File for the remote app I made sure to use the new Certificate. But it still says that the certificate is expires. When i had a closer look at the certificate used, I realised it is still using the old certificate.

So I had the idea to remove the old certificate. Now it is not going at all. 

Can anybody help?

Cheers,

Niklas


Best alternative for UDP profile disks in RDS Farm 2012R2

$
0
0

Hi,

We have a 2012R2 RDS Farm deployment consisting of the following:

1x AD ,1x RD Broker / RD Web Access,1x RDGW, and 3x RDSH. All of the servers are running on 2012R2.

We tried to implement the user profiles using UDP files but our attempt was unsuccessful due to an unresolved problem with vhdx and temp profiles. We know there are still alot of options out there inlcuding (roamin profiles, folder redirection and third party softwares...)

We would like to know what is our best alternative option for profiles considering simplicity and performance on the RDS farm.

Best regards

Nima


nimz

IE11 crashed all the time ntdll.dll error

$
0
0

We recently upgraded from IE10 to IE11 on our Citrix servers (w2k8R2)

Now we have the problem, that IE11 crashes all the time. Mostly when you try to open a hyperlink or a new tab.

The Eventviewer shows me something like that:

Event ID: 1000
Task Category: (100)
Faulting application name: IEXPLORE.EXE, version: 11.0.9600.16384, time stamp: 0x52157231
Faulting module name: ntdll.dll, version: 6.3.9600.16408, time stamp: 0x523d45fa
Exception code: 0xc0000005
Fault offset: 0x0001e12c
Faulting process id: 0x1e84
Faulting application start time: 0x01ced715c9f58083
Faulting application path: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
Faulting module path: C:\WINDOWS\SYSTEM32\ntdll.dll

I already tried...

Reset IE - no help.
Addons disabled - no help.
Disable Protected Mode - no help.

Another local user account - no help.

I also tried to replace the ntdll file with the following command:

icacls c:\windows\system32\ntdll.dll /grant Administrators:F

But the error is still there.

I added a regkey, so everytime the IE crashes, a dump will be created. I opened this dump with WinDbg and it shows me that:

Loading unloaded module list
..
This dump file has an exception of interest stored in it.
The stored exception information can be accessed via .ecxr.
(1958.15a0): Access violation - code c0000005 (first/second chance not available)
*** ERROR: Symbol file could not be found.  Defaulted to export symbols for ntdll.dll -
*** ERROR: Symbol file could not be found.  Defaulted to export symbols for kernel32.dll -
eax=00000000 ebx=02b8ef84 ecx=6abe4285 edx=002e54c0 esi=00000002 edi=00000000
eip=7722015d esp=02b8ef34 ebp=02b8efd0 iopl=0         nv up ei pl zr na pe nc
cs=0023  ss=002b  ds=002b  es=002b  fs=0053  gs=002b             efl=00000246
ntdll!NtWaitForMultipleObjects+0x15:
7722015d 83c404          add     esp,4

Anybody an idea what we can do? I dont want to uninstall IE11.

Thanks for any help

RDS Licenses not seen by VM

$
0
0

I have a small setup where the Hyper-V host is also a DC and the RDS CAL's are installed on it. I have 4 VM's running and none of them are recognizing the CAL's, only two concurrent sessions allowed to each. Any idea how I can address this so that the VM's recognize the CAL's?

Windows Server 2012 in all instances.

Problems with one user logging in and out of the server

$
0
0

Hi All,

We are having issues with just one of of members of staff logging into our server, when they log in and out of the server it gets stuck for numerous minutes on the 'Please wait for the user profile service screen'. The little circle thing next to the text stops spinning and it sits there for around 3-5 minutes.

This is a problem just for this one user but not with any others.

Has anyone got any suggestions?

Thanks for any help

RDP to a Domain User

$
0
0

I want access a PC (WIN 8.1 Pro) with a user account(Member of a Domain on a WIN 2012 Server) over RDP from any client(not member of any domain).
It is a colleage who wants to work from Home (with Home PC) via RDP on her WIN 8.1 station  in our company (domain).

It is possible to log on via RDP to a local user on this PC. When logging on to the domainuser the following message appears: " The security database on the server does not contain a computer account for this workstation trust relationship"

Is there any solution?

Matthias



Faulting application name: wmiprvse.exe, version: 6.3.9600.16384, time stamp: 0x5215f9c9

$
0
0

Hello,

I am getting bellow error on my newly installed Windows 2012 server. This server is a standalone server and I have applied all the Microsoft recamended Patches as well still I am getting this error. Kindly advice

Faulting application name: wmiprvse.exe, version: 6.3.9600.16384, time stamp: 0x5215f9c9
Faulting module name: OLEAUT32.dll, version: 6.3.9600.17403, time stamp: 0x5440724c

Event Log for referance

Log Name:      Application
Source:        Application Error
Date:          17/12/2015 12:55:51
Event ID:      1000
Task Category: (100)
Level:         Error
Keywords:      Classic
User:          N/A
Computer:      WWSWACPTBO001
Description:
Faulting application name: wmiprvse.exe, version: 6.3.9600.16384, time stamp: 0x5215f9c9
Faulting module name: OLEAUT32.dll, version: 6.3.9600.17403, time stamp: 0x5440724c
Exception code: 0xc0000005
Fault offset: 0x0000000000001741
Faulting process ID: 0x1488
Faulting application start time: 0x01d138ca420ff07d
Faulting application path: C:\Windows\system32\wbem\wmiprvse.exe
Faulting module path: C:\Windows\system32\OLEAUT32.dll
Report ID: 7fcd2cc9-a4bd-11e5-80c8-44a84240407a
Faulting package full name: 
Faulting package-relative application ID: 
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  <System>
    <Provider Name="Application Error" />
    <EventID Qualifiers="0">1000</EventID>
    <Level>2</Level>
    <Task>100</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-12-17T12:55:51.000000000Z" />
    <EventRecordID>3310</EventRecordID>
    <Channel>Application</Channel>
    <Computer>WWSWACPTBO001</Computer>
    <Security />
  </System>
  <EventData>
    <Data>wmiprvse.exe</Data>
    <Data>6.3.9600.16384</Data>
    <Data>5215f9c9</Data>
    <Data>OLEAUT32.dll</Data>
    <Data>6.3.9600.17403</Data>
    <Data>5440724c</Data>
    <Data>c0000005</Data>
    <Data>0000000000001741</Data>
    <Data>1488</Data>
    <Data>01d138ca420ff07d</Data>
    <Data>C:\Windows\system32\wbem\wmiprvse.exe</Data>
    <Data>C:\Windows\system32\OLEAUT32.dll</Data>
    <Data>7fcd2cc9-a4bd-11e5-80c8-44a84240407a</Data>
    <Data>
    </Data>
    <Data>
    </Data>
  </EventData>
</Event>

2012 R2 RDS Temporary Profile issue

$
0
0

I have set up a standard 3 node 2012 R2 RDS for testing. All virtualized on VMware ESXi 5.0. I have a connection Broker, session host, and web access server. I have published several applications and I can access them without a problem. Here is my issue:

When I try to log on to my session host server either locally or thru RDP, I am always logged in with a Temporary profile. It does not mater what user account I use. Even logging on locally as the administrator I get a temporary profile.

All windows updates are installed and current.

I have removed the server from the domain, deleted the account, and rejoined it to the domain.

I have deleted all .bak registry entries from here:

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList

There is a hotfix here for a similar issue on 2012 but it does not apply to 2012 R2

The only event viewer errors are:

1515 (Windows has backed up this user profile. Windows will automatically try to use the backup profile the next time this user logs on.)

1511 (Windows cannot find the local profile and is logging you on with a temporary profile. Changes you make to this profile will be lost when you log off.)

Any suggestions to resolve would be greatly appreciated.


Russ


RDS 2012 Published app web access

$
0
0
I stood up and published some apps on a 2012 OS platform, when I use the rdweb to sign in I see the apps I published but I also see 3 programs that are not published yet they appear in the rdweb page area... of course they can not be accessed saying that the server can not be contacted, how do I remove these from the web page?

2008 R2 (redirected #) for every printer of every client.

$
0
0

This is a problem created by one of our techs. They were trying to move the user directory from the C drive to the D drive. They copied all the files they could of the C:\User\ directory then had all the users log off. Then they edited the registry pointing the "Default" "ProfilesDirectory" and"Public" paths to the D drive along with each individual account and then copied the rest of the files over.

During the process the client complained that the process was taking too long and had the move abandoned.  So the paths were restored and the system rebooted.  Since then we have had the (redirected #) printer problem.

The things that I have done to try to remedy this are.

1. Delete the user profile key from the registry and renamed the user folder to force the server to recreate the account completely.  (Also created a new user account for testing purposes only.  This account gets all the printers too.)

2. Deleted all the (redirected #) printers listed under HKLM\Software\Microsoft\Windows NT\CurrentVersion\Print\Printers\

3. Ran a CHKDSK C: /R

4. Enabled the "Use Remote Desktop Easy Print printer driver first" group policy.

If I delete all the printers from the registry (2 on my list) and restart the print spooler, all the current sessions will work fine without any redirected printers.  But as soon as someone connects then everyone connected gets whatever (redirected #) printers that the user brings with them.

I am a bit frustrated with the issue as well as the client that keeps putting up with me removing all the printers causing them to determine which of the (redirected #) printers will actually allow them to print.  This changes on them each time I get rid of the printers.

Any help on this will be greatly appreciated.

Thank you.

Failed Remote Desktop authenticatoins are not in Security Log

$
0
0

I am trying to verify that failed access (via Remote Desktop) from a Windows 7 WYSE thin client (on the domain) to other machines on the domain are being logged. The domain controller is Server 2012 and I am using the advanced auditing settings offered in GPMC at the domain level.

When I open up the Remote Desktop Connection from the Thin Client to either a workstation on the domain or even the domain controller (as admin) and try to purposely enter a bad password for the domain user I can not seem to find any Failed Security event in the log on the DC or the workstation. I would expect this to be at least be shown on the DC.

However, when I do the same process as above and enter a username that I know to be incorrect and not a domain user with a random password, that failed event DOES get logged in the Security log on the DC as both a failed 4325 and 4776.

Any reason as to why only non-domain or non-accounts failed Remote Desktop login events are being generated on the DC security logs?

Also it appears that failed authentications for domain accounts at the actual physical thin client get logged just fine, just not when using Remote Desktop.

My Advanced Audit Settings for Authentication are as follows:

     ACCOUNT LOGON: Audit Credential Validation - Success & Failure

     LOGON/LOGOFF: Audit Logon - Success & Failure

                               Audit Other Logon/Logoff Events - Success & Failure 

Thanks


Using RDGW with AD computer groups and different DNS records

$
0
0
I'm trying to move all of my RDGW RAPs to use Active Directory computer groups. In testing, I've found that when outside of the network, I am unable to connect using a DNS A record that points to the hosts IP address but am able to connect when using the default DNS record that contains the hostname. When inside of the network, I can connect using either DNS name. This is 2012 R2.

Unable to establish a connection using RDC for Windows 7

$
0
0
Getting error message with old RDCM v2.7 or RDC for windows 7.  At one time it worked.  However, some of my connections will connect while others will fail with error message "Unable to establish a connection".  My credentials are correct and/or up to date for the devices in the list. 
Viewing all 26837 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>