Quantcast
Channel: Remote Desktop Services (Terminal Services) forum
Viewing all 7220 articles
Browse latest View live

Local client drives visible but not accessible

$
0
0

Hi there!

I have a problem with mapping of local client drives when accessing a Windows Server 2012 machine via Remote Desktop.

A user that is not a member of Administrators, can see the local client drives ("C on [client name]" etc. in Windows Explorer, but when he tries to view/expand the drive, nothing happens.

When he types "\\tsclient\c" in the adress field, the client's C-drived is displayed correctly however.

For a user that is member of Administrator, everything works fine.

When connecting, I have selected to include local drives and the drives are, as mentioned, indeed listed in Explorer.

The behavior is the same when launching a server application via an rdp-file and opening an "open file" dialog in that application. In the rdp file, I have set:

drivestoredirect:s:*
redirectdrives:i:1

But then again, I don't think that's the problem.

Any advice on how to solve this is very appreciated!

Regards,

Magnus

 


How to find the remaining grace period in Remote Desktop Services (Windows Server 2019)

$
0
0

Dear All,

I am evaluating RemoteApp, which has following servers, all running on Windows Server 2019:

  1. Two Session Servers
  2. One Connection Broker Server
  3. One Web Access Server
  4. One RD Gateway Server

During initial configuration of Session Hosts servers, it showed that the grace period is for 119 days. However, I want to check that now how many days are left for the grace period.

Can someone help to locate this information about remaining grace period?

Thanks,

Amit Jogi

Magnifier not correct working on rds environment windows 2016 with 2 screens

$
0
0


When using magnifier on both screens (same screens) on a thinclient it is only working on the main screen.

(Rds environment based on Windows 2016 Standard collection)

The second screen the magnifier gives a blank-grey square.


Because the user has problems with her eyes she needs the magnifier to work on both screens.

How can we fix this it would be great if someone can help us.

If we try this with another user we have the same issue

Many thanks,

Jeff

Migrate Device RDS CALS from 2008 R2 licensing server to Server 2016 licensing server

$
0
0

Hi

Is it possible do what I asked above?  I have seen this TS/RDS matrix but it does not make sense?  Can the DEVICE CALS be migrated from 2008 R2 to 2016 or does the business need to buy newer licenses.  Either answer is fine, just need to know what the correct answer is.

Ta

P

RDGateway CAP with MFA and still control device redirection by group

$
0
0

We currently use multiple RD Gateways with Local Connection Authorization Policies (CAP) to control what groups of users have drive, clipboard, and Printer redirection enabled/disabled.

We are looking at implementing Multi Factor authentication (MFA), but all the solutions we have found and tested remove our ability to control what groups of users have the device redirection.  Are there any ways to implement MFA and still be able to enable or disable device redirection based on user and/or group membership?

Allow remoteapp but deny remote desktop connection

$
0
0

Hi,

as you know, in order to make a remotapp available for a user, you must put him in the local group "Remote Desktop Users", but it enables that user also to make a typical RDP connection to the server and I want to avoid it. I found online a few possible workarounds, especially to put "logoff.exe" as executable at logon, but it works on all users and I want administrators to have the ability to make an RDP connection. Is there any new trick to do? I'm on WS2012R2.

Thank you

RemoteFX printer in W2016 RDSH

$
0
0

The (RemoteFX) printer looks OK but at the first print attempt it goes in error state.

Any hints ?

Please note that when I remote to a Windows 10 (1809), the (RemoteFX) printer works well. Means that the RemoteFX channel works well at the client side.

I tried two differents printers. Same result : OK under W10. NOK under W2016.

I tried (again) the regular RDP high level redirection without success. "printer in error state". That high level redirection is not working in W10 either.




RDS CALs on Azure

$
0
0

I work for a software and services company.  We are looking at setting up a Windows Remote Desktop Services system on Azure (or AWS, we haven't 100% decided yet) that will be accessed by some of our customers. I know that we will need RDS CALs for this (as Azure does not provide any), but it is much cheaper for us to use RDS Device CALs for our customers than it is for us to use RDS User CALs. The software we will be providing to our customers (which happens to be our own internally developed software) is used in an environment where the computers (and software) are used by multiple people throughout the day. For example, there could be a single computer at the customer's site that will need access to the software through RDS, but there could be 10 actual people using that computer at different times of the day. In this example, I was hoping we could purchase 1 RDS Device CAL as opposed to 10 RDS User CALs.

 

In digging through the Microsoft Product Use Terms and Licensing information, I see that if we purchase RDS CALs with Software Assurance, we gain the License Mobility benefit, which allows us to deploy the licenses on a server from an Authorized Mobility Partner (i.e., Azure in this case).  I see, however, that this documentation seems to only call out RDS*User* CALs, but do not see anything about RDS*Device* CALs.  My question: Do the RDS Device CALs fall under the same rules as the RDS User CALs, or can RDS Device CALs not be used in this way?


Server Manager "Online - Cannot get role and feature data"

$
0
0
I have two RDS servers, when I open Server manager to manage the servers and access the collection I am seeing "Online - Cannot get role and feature data" under manageability. With this error I can't manage the servers remotely. I'm using the domain admin account for all of this. If I reboot the servers the error goes away for a day but comes back the next morning.

Vincent Sprague

Blue Screen in Server 2008 R2 Standard - termdd.sys

$
0
0

I have an issue with a 2008 R2 Standard Server that my client has just taken over.

I have made no config changes whatsoever since it came "onboard" but suddenly I am getting a number of Bluescreens relating to termdd.sys.

Terminal Services are not licensed on this Server and only the admin sessions are used.

I ran a chkdsk/r and sfc /scannow and both came up clean. I am a bit baffled as to where to look next at the moment.

Below is the minidump analysis of the latest blue screen (this morning). There are others if it helps - but they amount to the same issue.

Help and advice appreciated! Thank you in advance.

Steven


RDS trought RDWebAccess can't connect du to RDGatewayServer being temporarily unavailable

$
0
0

Hello,

I've set for my client a big RDS Farm, on two distincts locations. All of the users are using Wyses to connect to the farm. On the internal network everything is fine, but when trying to connect from outside, after login in, I get this message

"Your Computer can't connect to the remote computer because the Remote Desktop Gateway server is temporarily unavailable."

In the logs, I get those errors :

  • Microsoft-Windows-TerminalServices-RDPClient/Operational : EventID 1033 :"CAAClientAdapter, :: 'm_spHelper->ReadCreds failed' in CAAClientAdapter::CreateTunnel at 380 err=[0xffffffff],"
  • Microsoft-Windows-TerminalServices-RDPClient/Operational : EventID 1033 : "CClientProxyTransport, :: 'm_ClientAdapter->CreateTunnel failed' in CProxyRawTrans::CreateProxyConnection at 2116 err=[0x800759d9], "
  • Microsoft-Windows-TerminalServices-RDPClient/Operational : EventID 1033 : "CClientProxyTransport, :: 'Gateway connection time out is 90' in CClientHTTPProxyTransport::Connect at 1099 err=[0x800759d9], "
  • Microsoft-Windows-TerminalServices-RDPClient/Operational : EventID 1033 : "CClientProxyTransport, :: 'CreateConnection failed' in CClientHTTPProxyTransport::Connect at 1108 err=[0x800759d9], "
  • Microsoft-Windows-TerminalServices-RDPClient/Operational : EventID 1033 : "CClientProxyTransport, :: 'Gateway Error' in CClientProxyTransport::SetErrorStatus at 2818 err=[0x800759d9],"
  • Microsoft-Windows-TerminalServices-RDPClient/Operational : EventID 1033 : ":CClientProxyTransport, :: 'Gateway Error' in CClientProxyTransport::SetErrorStatus at 2818 err=[0x800706ba], "

The farm consists of 2 RDBroker in HA (with 2 SQL Servers AlwaysOn for the database), 2 RDGateway (HA), 2 RDWebAccess (HA), 1 RDlicence Server, an 10+ RDSH. A wildcard Certificate is set on the external name for all roles.

  • rds.external.com : RR DNS name for the RD Brokers
  • rdsweb.external.com : RR DNS name for the RDWebAccess

When connecting to the RDWebAccess FQDN (rdsweb.external.com) from external network, i can connect to the website, use my credential to view the collection of session I can connect to. But when I use one of them, I get this error message. If I download the rdp file, I can see that all the correct adress are in use:

full address:s:rds.external.com
gatewayhostname:s:rdsweb.external.com
workspace id:s:rds.external.com
use redirection server name:i:1
loadbalanceinfo:s:tsv://MS Terminal Services Plugin.1.CollectionName
use multimon:i:1
alternate full address:s:rds.external.com

As we use KEMP GeoLoadbalancing, I have in the public DNS a CNAME for rdsweb.extrernal.com, redirecting to rdsweb.geo.external.com, and the NS for this zone are set to the public IP of the distant site, with our internal DNS resolving all this to the correct farm member, for geo loadbalancing purpose.

Also the RAP and CAP policies are set in the 2 RD WebGateway.

Any hints on what to check or do to allow connection the farm from outise their network ?

Regards

RD Gateway - Unable to connect via IP (Netbios, FQDN work fine)

$
0
0

I've set up an RD Gateway that connects to a number of internal servers. Everything is working fine if I connect to a server (via RD Gateway) using either the Netbios name or the FQDN, however if I try to connect using the servers IP address I get the following error:-

Remote Desktop can't connect to the remote computer "10.XXX.XXX.XXX" for one of these reasons:

1) Your user account is not listed in the RD Gateway's permission list

2) You might have specified the remote computer in NetBIOS format (for example, computer1), but the RD Gateway is expecting an FQDN or IP address format (for example, computer1.fabrikam.com or 157.60.0.1).

Is there some configuration step I've missed on the RD Gateway to allow IP address connections?

2019 RDS Gateway slow logon. Approx. 80-100 seconds.

$
0
0

Can't figure out why login through RDS Gateway is so slow...

I've setup a 2019 RDS environment.

It's all VM's
Server: Connection Broker and License Server
Server: Session Host (Server 2019)
Server: Gateway (in DMZ)

Using FSLogix.
MFA plugin through Azure.

When logging in from inside network it's fast. (Not asking for MFA)
When logging in from outside through gateway, it takes 1:40 minutes before desktop is ready. (Asking for MFA)

Using a RDP file.
MFA challenge comes ~11 seconds after password is entered.
After that: "Configuring remote session" in a long time.
Occasionally the login is way faster.
(after I wrote this, the MFA challenge took 4 seconds and was 100% logged in in about 10 seconds through gateway)

I can't see where to begin troubleshooting...

Sometimes the connection is lost, asking the MFA challenge again.
Tried using "Negotiate" and  "RDP Security Layer"

Tried looking Event Viewer on several servers with no luck

Sorry for the jumping in text.


Unable to remote desktop to windows server 2012 due to failed to create self signed certificate

$
0
0

My Windows server 2012 standard has been enabled with Remote Desktop.

It has been working until recent but now my remote desktop client always gives me this error: 'This computer can't connect to the remote computer'.

When i check the event viewer from my 2012 server after trying to remote desktop to it, i see this:

event id: 1057

Severity: Error

Source:: Microsoft-Windows-TerminalServices-RemoteConnectionManager

Log: System

Message detail:

The RD Session Host Server has failed to create a new self signed certificate to be used for RD Session Host Server authentication on SSL connections. The relevant status code was Object already exists.

I've tried to follow the instructions from the another technet post: removing the existing self signed certificate (by using mmc), then restarting the Remote Desktop Configuration service to re-generate the certifiacte, then configure in RD Session Host Configuration (tsconfig.msc)

http://social.technet.microsoft.com/Forums/windowsserver/en-US/8df42746-465f-4902-95a6-121ef1f0fd68/the-terminal-server-has-failed-to-create-a-new-self-signed-certificate-to-be-used-for-terminal

It did not work for me. No new self signed certificate has been re-generated. I also could not find RD Session Host Configuration from my server.

Event Id: 4005 on RDS Server.

$
0
0

Hi,

I am continuously getting event id: 4005 on RDS server.  

Server OS: Microsoft Windows Server 2012 R2 Standard.

The Winlogon process terminates unexpectedly and prevents new logins from processing.  However, the only way to get login process work after the power cycle the server.

Webroot antivirus agent is installed on the server.

Tried to install the below-mentioned update on the server but is shows not applicable. It looks like this update is superseded with other updates.

November 15, 2016:-  (Preview of Monthly Rollup)
https://support.microsoft.com/en-us/kb/3197875


Webroot released the new agent (9.0.18.34 -  October2th, 2017).

Added

•Efficacy improvements when making determinations for critical system processes
•Enabled installation where TLS version is 1.1 or greater
•Data gathering for phase 1 of malicious scripts shield
•Extended data set transmitted for use with Machine Learning
•Further optimization of cloud communications
•Handle /disable command line option correctly
•Improvements to hash calculation for non-PE files
•In Product Messaging ( IPM ) displays special characters correctly
•Select IPMs can trigger re-acceptance of EULA
•Update WSA copyright message to 2017
•Support for Windows 10 Fall Creators release
•Support for Windows 2016 Server
•Enable installation and removal of DNS-P Agent

Fixed

•Integration with Mozilla Firefox no longer causes a browser crash in certain circumstances
•Internet connectivity is not lost when removing WSA
•Protect against WSA driver being written to disk with zero-byte file size
•Prevent agent crash when Backup & Sync is being used
•Addresses a memory leak resulting in 4005 <g class="gr_ gr_106 gr-alert gr_gramm gr_inline_cards gr_run_anim Grammar multiReplace" data-gr-id="106" id="106">event</g> on Terminal Servers
•Ensured plugins are removed smoothly during un-installation
•Ensured journaling files are always present at the time of WSA installation
•Send data back for GSM to clear 'Needs Attention' from devices in a timely manner
•When System Analyzer is running, ensure that files can be restored from Quarantine

Reference link of Webroot: http://answers.webroot.com/Webroot/ukp.aspx?pid=10&app=vw&vw=1&login=1&json=1&solutionid=2234

Regards,

Vikrant Wakchaure...



RDS Web Client load sizing questions

$
0
0

Hello,

I have been testing the remote desktop web client and have some questions.

What is the maximum recommended users per RDweb server? 

In an environment with a few thousand RDS users is there likely to be more load on the RDWeb servers and Gateway servers when using the web client vs using the standard client?

Thanks!

New Windows Server 2019 RDWeb Webclient connection issue

$
0
0

We're currently having issues setting up our Terminal Server for our remote users.
Everything is on place: RD Web Access, RD Gateway, RD Connection Broker (Some confusion) and RD Session Host.

We are able to connect to the interface locally and remotely to servername/rdweb/webclient/index.html, we can use the Remote Apps locally but when we try to use the Remote Apps from a remote computer it gives us this error:

Oops, we couldn't connect to "Remote Desktop Connection"
The connection to the remote PC was lost. This might be because of a network problem. If this keeps happening, ask your admin or tech support for help.

Does anyone have any idea what were doing wrong? It would be really helpful.

Remote App hardware requirements

$
0
0
Can anyone give me any tips or guide about Remote App memory and CPU usage? I plan to implement a Remote App infrastructure that is mostly comprised of basic Office apps (Word, Excel) and Server Manager. Those would be accessed by max 5 people.

ntuser.dat and GPO Issue

$
0
0

Dear all,

Enviorment:

2 DCs: Windows Server 2012R2
1 Terminalserver Session Broker: Windows Server 2016 (Session Broker and License Server)
3 Terminalserver Host: Windows Server 2016 (RDS Host)

If I deploy a new GPO on the DCs to the OU of the terminalservers the deployment works fine for all users. If I deactivate the GPO on the DCs and force the gpupdate on the terminalservers the GPO will stay activated to the users. After a bit of research it seems like the ntuser.dat from the user stored in the user profile disk won't be updated. If I delete the ntuser.dat manually and login again to the terminalservers I will get the right activated GPOs.


Folder permissons for the folder where the UPD are stored: Everyone (Read and Execute, Read Folder), System (Full Access), Every Terminalserver (Full Access), Domain-Admins (Full Access), Local Users (Read and Execute, Read Folder) Local Admins (Full Access)

File permissions for UPD vhd-files: Everyone (Read and Execute), System (Full Access), AD User himself (Full Access), Every Terminalserver (Full Access), Admin (Full Access), Domain-Admins (Full Access), Local Users (Read and Execute, Read Folder) Local Admins (Full Access)

For me it seems like the ntuser.dat do not work fine. Has anyone an idea?

Thanks!

Setting up Remote Desktop Services for my small business

$
0
0

Hi Im cracking my head here to implement a remote desktop services in my small business for employees to open up session based desktop connections. On premises of course, all local connections. And i keep seeing this coming up on google suggestions saying that i can buy "Windows Server Remote Desktop Services CAL". Im just looking to operate my business locally without all that fancy features like desktopApp or licensing. I just need to create local users, have Windows load a remote desktop environment for that user to connect to, and voila my employee can use both client computer and host computer on their monitor(s).

Is there a possibility for this without buying any extra licensing feature? I already have a legal copy of Windows Server 2019, i seriously don't think i need to purchase another $500 odd for this bull.

And if this is the case, I also have Windows Server 2016 and does Server 2016 need to purchase this licensing thing?

Cheers

Viewing all 7220 articles
Browse latest View live