Quantcast
Channel: Remote Desktop Services (Terminal Services) forum
Viewing all 7220 articles
Browse latest View live

How to query the terminal Server Licensing grace period

$
0
0

Hi,everyone

   A few day ago, i installed a windows 2K8 R2 as a terminal server ,and specify itself as a terminal licensing server ,but without install any CALs.So erevytime i logged into the terminal , system will pop up a message said that the terminal server's grace period will expired at xxx days. but due to someone unchecked the message , systme can't pop up any message talked about the grace period.

  So can anyone tell me where can i find the remaining grace period  ??


Jacky_Deng

RemoteApp access through RD Gateway

$
0
0

Just looking for some confirmation as I can find no evidence online (which leads me to beleive that I'm misunderstadning what I should expect.

Running a small PoC for RDS. Currently, I have 1 Session server, 1 Broker, 1 web access server and a RD Gateway in my DMZ (joined to the domain but only has enough ports open to the DCs to get its job done). Everything works, landing page for the web access server customised, etc and I can log in and access my published apps. SSO also working.

I was expecting, when I started setting up the gateway, that what I would see when I punched in the external URL was what I see when I land on the web access server internally (essentially a login page). Having configured the external access on the FW and opened the required ports as well as setting up a valid external cert on the gateway (Lets Encrypt - all other RDS servers in chain have certs issued by my internal CA), I can get to my Gateway server from outside but I just land on the default IIS page. The /rdweb throws a 404 as expected because there is no site named /rdweb on the Gateway server.

The only sites that seem to be published under the Default website on the RDS Gateway are Rpc and RpcwithCert. Internally, I can hit my web access server directly and get all my apps as expected both through the browser and RemoteApps tool. The internal rules in my FW allow the RDS Gateway Server in the DMZ to the LAN only to the DCs  for LDAP, etc and 3389 to only the Broker server because that’s all it should need.

From outside my LAN, I can use the RDP client in Windows to add my publically accessible RD Gateway and connect to my servers in the LAN over RDP to the desktop by adding the RD Gateway address into the Gateway section of the RDP client. What I am really looking to do however, is to get the published apps made available through Windows RemoteApp externally. This isn't working as when I enter https://rds.mydomain.com:4443 in RemoteApp, I get nothing back unlike what I get if I pointed it at: https://rds_web_access_server/rdweb/feed/webfeed.aspx when on my internal LAN.

I thought this was the point of the RD Gateway, to allow exactly this? So am I'm missing some part of the puzzle? I just can't find any solutions online.

Is there feasible methods to implemented my own protocol with multiuser session?

RDSH license upgrade

$
0
0

Hi,

We have RDS License server configured with 2012 cals, RDSH Session servers in 2008 R2, and VM Ware Horizon VDI solution,. now we are in progress of upgrading to 2012 at that time we have seen multiple request coming to license server and RDS License server not able to respond. we have only one license server.

Below are the query.

    1. How to stop this multiple request coming to RDS License server.

    2. If we add multiple license server will the problem will get solved.

    3. Is there any way to stop client machine to requesting for upgrade license. 

Regards,

Mani

Quick start and standard deployment

$
0
0

Hi Evryone,

what is difference between quick start and standard deployment on rds Services.

Best regards,

AHL


AHL1988

RDS Servers Events 7011, 7046 - BSOD rdbss.sys

$
0
0

Hi All

I have a virtualised (VMWare) RDS 2012R2 environment with 20 Session hosts spread across 6 Dell ESXI Hosts - 2 Sets of different PowerEdge Models. Over the past 4-6 weeks we have started to get multiple event 7011's followed by a 7046.

A timeout (30000 milliseconds) was reached while waiting for a transaction response from the UmRdpService service.

The following service has repeatedly stopped responding to service control requests: Remote Desktop Services UserMode Port Redirector

At this point some existing connected users cant sign out and applications start to crash including explorer.exe. Trying to shutdown via the GUI just hangs and the only way to get the server back is to reset the power using vSphere console. 

Applications on the Session Hosts are mainly MS Office 2016, Acrobat Reader, 7Zip and Webroot AV. Windows OS and applications are fully patched and up to date and Dell Firmware and drivers are fully up to date. 

Users connect in via RemoteApp and local drives and printers are redirected into their sessions. 

The weird thing is, like clockwork the crashes happen at the end of each day usually between 16:00 - 18:00 - To me its like a degradation symptom or perhaps its the actions of users disconnecting or logging off their session - Its affecting a couple of servers each day. 

On top of this, it appears 7011, 7046 results in a BSOD. I have grabbed the Memory.dmp file and opened it with WinDbg. 

Im now trying to figure out the dmp - uploaded to PasteBin here (happy to paste dmp here but didnt want to "dump" to much information in the post)

What stands out to me is rdbss.sys

Probably caused by : rdbss.sys ( rdbss!__RxAcquireFcb+1f3 )

IRQL_NOT_LESS_OR_EQUAL (a)
An attempt was made to access a pageable (or completely invalid) address at an
interrupt request level (IRQL) that is too high.  This is usually
caused by drivers using improper addresses.
If a kernel debugger is available get the stack backtrace.
Arguments:
Arg1: 0000000000000000, memory referenced
Arg2: 0000000000000002, IRQL
Arg3: 0000000000000000, bitfield :
bit 0 : value 0 = read operation, 1 = write operation
bit 3 : value 0 = not an execute operation, 1 = execute operation (only on chips which support this level of status)
Arg4: fffff80179d3ba44, address which referenced memory

BUCKET_ID:  AV_rdbss!__RxAcquireFcb

PRIMARY_PROBLEM_CLASS:  AV_rdbss!__RxAcquireFcb

My rdbss.sys version - 6.3.9600.18895

Can anyone help to try and decipher the above and suggest next/best cause of action?

Many thanks :)


RDS server not getting active directory users changes

$
0
0

hi, i have DC server 2016, and RDS server 2019.

i have a policy for the users to change password every 2 months.

after they or me change the password RDS doe's not get this change only after restart.

i turned off firewall for test and this is not it.

what should i check?

10x

liran

HTML5 web app not showing resources

$
0
0

Hi,

All system are Server 2019.  I have installed an RDS farm with gateway, rds and virtualization server for VDI and installed the HTML5 client on the web server.

Up until now this has been working perfectly and have been able to remote into my desktop with no issues using either the standard web page or the HTML5 web page.

Now, when I go to the HTML5 page and login I don't get any resources displayed but they are displayed using the original web page that comes with the RDS Web Server role.

I have tried uninstalling and installing to no avail.  I have rebooted all server but still no luck.

Please help.


Emptying all users' temp folders

$
0
0

Hello everyone

          Right now we're having problem with low disk space on Terminal Server. Actually we have applications which help us to get rid of all temp files easily, I mean without going to C:\Users\USERNAME\AppData\Local\Temp and deleting files manually These are

  1. Profiles Scanner 
  2. ICSweep

          But these applications cannot remove any item just because I do not have permission to Edit this folder inspite of fact I’m belonging to Domain Admins group. I can break security of a userfolder, but it is quite time consuming. There're about 700+ userfolders in  C:\Users\ folder. Moreover, we have a lots of trojan name "DWH****" (**** is random number, like 3D25, 5C68). And this file seems duplicate itself into different name and that's why we have low disk space error on our Terminal Server.

          So my question is How do I empty C:\Users\USERNAME\AppData\Local\Temp folder without changing the security on userfolders? I tried to empty through GPO (Computer Configuration > Windows Settings > Folders) but I couldn’t get this work.

          Thanks in advance


Remote desktop services installation on new server with already active roles already on that server.

$
0
0

Hello all,

I want to install a new Remote desktop services with a new broker but i want to keep the current roles except the broker ofcourse.

These roles are now been used on the old server but I want to keep these roles.

On the server where I want to install the new Remote desktop services including new broker. 

I already have active roles like RD Webaccess and RD Gateway and RD licensing on this server.

The old server/broker are using these roles already from the server which i want to use but i want to use them also for the new broker..

Thats why i want to use this server then i have everything on one server.

So when the old server was setup only a brokerrole was installed on this server and the other roles were installed on the server i want to setup a new remote desktop services.

How can i do this without installing a new role RD webaccess because when i want to a add  the remote desktop services.

It is saying that it will install a new RD web Access role and i want to use the current one.

What wil be the impact and how can I solve this.

We dont want issues with the current RD web access /gateway

It would be great if someone can help me.

specs:

Old and new server running Windows server 2012r2


RDS Certs - FQDN vs public domain

$
0
0
Hi guys,

Hoping somebody can help on this one. I have a new RDS environment Im rolling out on Server 2019, hosted in Azure.

Ive been provided with a wildcard cert for the companys external domain, which is where the external url will be published.

The problem is that the internal domain name is different. I presume this is a common enough scenario. At the moment if I look at the cert level on the RDS deployment everything shows as trusted with the external wildcard cert installed. However if I browse to the gateway from any internal device the browser revokes the cert as its for a different domain.

I found the following script which looks like it may be applicable.

https://gallery.technet.microsoft.com/Change-published-FQDN-for-2a029b80

Is this the correct process I should follow, or is there a better way to resolve?

Can AD LDS be used to specify User and Group rights in RDS Remote Apps?

$
0
0

Hi all,

I have a situation with a leased remote stand-alone dedicated Web Server that is also running Remote Desktop Services. It is accessed via the Internet. All our RDWeb users connect over the public internet. This server is not a DC or connected to any AD Domain. I have been advised in another forum that I should not install AD DS on this configuration with a Public IP address on the NIC.

As a result when I try to assign user rights to a particular published remote App in RDWeb I get the error.

"The RD Session Host Server is not joined to an Active Directory domain..."

Can I somehow use AD LDS to assign user rights (or deny them) to certain published remote Apps in RDS?

Thanks for any help

Install RDS on an existing MS SQL Server & Application Server

$
0
0

Hello Everyone,

A client of ours has an application for industrial food processing. It's running on a Windows 2012R2 server together with MS SQL Server 2017 (the APP Server). The APP server also has a SAGE50 client with an EDI component for SAGE.

The application's client does not use a client-server software design. Instead, the client exe file is on the APP server and it's is run from a UNC shortcut from each workstation. The latency has increased as we have scaled up, so we installed an RDS server on the same network segment as the APP server to reduce inter-network traffic.

Although the speed and network traffic issues have been resolved by the RDP server, the client executable crashes periodically when it's run from the RDP server. It does works fine when run from Windows 7, 8.1 or Windows 10 desktop PC's.

The developer is saying that in order to use RDP, the RDP/TS has to be integrated into the APP server. He is asking me to install RDP/TS roles on to the existing APP server.

Could installing RDP/TS roles on an existing production server break some of applications?

I am worried about SQL and RDS on the same server. Has anybody seen that before?

Any suggestions?


Miguel Fra
Falcon IT Services
https://www.falconitservices.com

 








Issue with RD Broker High Availability Setup

$
0
0

Hi all,

Im trying to setup RD Broker HA but still not success.

Windows Server 2016 1607

SQL Standard 2016.

Telnet 1433 okie.

Already create security group for RD Broker and grant dbcreator (even sysadmin) on SQL server.

No errorlog on SQL server.

Here is event log on RD Broker Server:

RDMS-UI Log:

The Remote Desktop Connection Broker server could not install the database named RDS by using the connection string:
DRIVER=SQL Server Native Client 11.0;SERVER=******;Trusted_Connection=YES;APP=Remote Desktop Services Broker Connection;DATABASE=master;.
The database name in the connection string is shown as [master] because in order to create a new database with admin specified name, a connection must be made to master database.
Please check that the broker server has access to the SQL server, the path for -DatabaseFilePath parameter exists and contains the SQL Server database file, the connection to SQL databse is correct and SQL database is online. See the SQL Server and broker eventlog for more details.

Error: The object is already in the list. 

Terminal-Session Log:

Database Creation - Failed: Could not create the database 'RDS'. Please check that the broker server has access to the SQL server, the path for -DatabaseFilePath parameter exists and contains the SQL Server database file, the connection to SQL databse is correct and SQL database is online. See the SQL Server and broker eventlog for more details.



Thank you.

Max number of servers in RDS farm (Windows Server 2019)

$
0
0

Hello. What is the maximum number of servers in a collection of a RDS farm (Windows Server 2019)?

Thank you!


Problem connecting via RDP

$
0
0

Hello

I have a computer (Mango) that is unable to connect to another computer (Kiwi) via RDP.  Mango is able to remote into all other domain computers and all other domain computers are able to remote into Kiwi.  Mango can ping Kiwi via FQDN and IP and gets a normal response, however RDP tries to connect for a few seconds then says it is unable to connect.

I have tried disabling virusscan and firewall on both computers.  I have confirmed that both computers are using the correct RDP port.  I repaired my windows installation with DISM and sfc.  I still am unable to connect via RDP between these two computers.  Any help is appreciated.

RD Gateway with Azure Multifactor Authentication Dont Work - RADIUS Proxy received a response from server with an invalid authenticator

$
0
0
Hi all,

I implemented a RDS lab with 2 Windows 2012 R2 Servers:
- RD WA, RD GW and RD CB roles on the RDS-GW Server (10.150.1.11)
- RD SH on RDS-SH Server (10.150.1.12)
With no MFA authentication, the RDWeb access work very well. When I connect via RDWeb with an test account and open an RemoteApp, the RD GW verify CAP policy, then authenticate the user then verify the RAP policy and finaly the app is open.

Next I installed Azure MFA Server on the RDS-SH server to implement Multi-Factor Authentication. I configured RD GW, NPS and MFA Servers following the steps on http://www.rdsgurus.com/step-by-step-using-windows-server-2012-r2-rd-gateway-with-azure-multifactor-authentication/ (Step By Step – Using Windows Server 2012 R2 RD Gateway with Azure Multifactor Authentication).

Now, when I connect via RDWeb and open a RemoteApp, after aproximadly 10 seconds I receive the MFA call on my phone, I reply with # but RDWeb continues showing the waiting Window with “Starting…” and the remote app don’t open. After 1 minute RDWeb show the message error indicating that can’t connect to remote computer. Meanwhile after the first call I continue receiving more 3 calls from MFA service.

I tested the MFA directly on the MFA Server and it works well with the same test account used on RDWeb access.

Aparently RD Gateway forwards the RADIUS request through NPS to MFA server then MFA perform the two factor authentication sequence with the user (via phone call in my case). User reply, but the MFA server apparently don’t send back an ACCEPT to RD Gateway as expected.

Firewalls on RDS-GW and RDS-SH server are disabled. The RDS-GW server shows 4 times the NPS event ID 28 “The RADIUS Proxy received a response from server 10.150.1.12 with an invalid authenticator.” and 1 time the NPS event ID 38 “The remote RADIUS server 10.150.1.12 has not responded to 5 consecutive requests. The server has been marked as unavailable.”.

I can’t figure out why this doesn’t work.

Any help?

Window Search issues - Windows 2012 R2 RDS session host

$
0
0

Hi

I have a problem with a Windows 2012 R2 U1 RDS host session server.
Server is updated with latest updates.
Office 2013 32bit is installed per best practice.
Several other softwares are installed as well.
Installations was made using "change user /install"
Several GPOs are in place to restrict user from doing things like se drives start, Not run any exe files that are not allowed etc.
It is only one server and all userprofiles are local.
Outlook is used with cached exchange mode.

To the actual problem. Intermittently and with no pattern something happens that are related to "Windows Search" service.
The symptoms are one, or more, of the following.
1. Some or all icons on desktop become white.
2. Open My Computer freezes for about a minute up to a couple of minutes showing nothing.
3. Search doesn't work.
4. Tiles on the start screen becomes unresponsive and I cannot search here either. I have to logon into another session and either kill explorer.exe
   for the frozen user or restart Windows Search service.

When this happens it is like this for everyone and restarting Windows Search service clears it every time.
I also get Event ID 10023 and 10024 with Source Search.
I have tried to rebuild the index to no avail.
I get the notion that it has something to do with .OST files but I'm not sure of this.
The only thing that can be confirmed is that the error happens a lot more when there are more users logged on.

There are no other addins in Outlook other than standard.

Anyone have any ideas how I can continue troubleshooting this?

Problems with search service on Server 2012 R2 RDS.

$
0
0

The issue described:
Intermittently and with no pattern something happens that are related to "Windows Search" service.
The symptoms are one, or more, of the following.
1. Some or all icons on desktop become white.
2. Open My Computer freezes for about a minute up to a couple of minutes showing nothing.
3. Search doesn't work.
4. Tiles on the start screen becomes unresponsive and I cannot search here either. I have to logon in another session and either kill explorer.exe for the frozen user or restart Windows Search service.

Office 2010 32bit is installed per best practice. Several other softwares are installed as well. Several GPOs are in place to restrict user from doing things like se drives start. It is only one server so all profiles are local. Outlook is used with online mode (not cached mode).

I get the following warning's in event log:

RD0110023 WarningMicrosoft-Windows-SearchApplication12-07-2017 09:52:51
The protocol host process 10716 did not respond and is being forcibly terminated {filter host process 4636}. 
RD0110024 WarningMicrosoft-Windows-SearchApplication12-07-2017 09:53:21
The filter host process 4636 did not respond and is being forcibly terminated. 


The remote session was disconnected because there are no Remote Desktop License Servers available to provide a license

$
0
0

Hi, 

I'm facing this error "The remote session was disconnected because there are no Remote Desktop License Servers available to provide a license." while connecting remote desktop to the server (Windows Server 2012 R2).

Licensing mode was already configured, licenses were already installed and License Server was activated. But I still got errors in Licensing Diagnoser - Err 1. The licensing mode for remote desktop session host server is not configured, Err 2. The grace period for the remote desktop session host server has expired....

Any of my installed licenses are not issued to anyone. I have both Device and User CALs installed. I tried both and none is working.

Please advise how to solve this issue. As per advices from several forumns, I tried to delete "GracePeriod" registry Key but I cannot delete as Access was Denied! Please help. I've been struggling this for several weeks and none of the online tutorials seems to help me in this case. I followed following articles for Installation and configuration.

https://msfreaks.wordpress.com/2013/12/09/windows-2012-r2-remote-desktop-services-part-1/

http://www.wackytechtips.com/installing-and-configuring-remote-desktop-services-rds-on-windows-server-2012/

Thanks in advanced.

Viewing all 7220 articles
Browse latest View live