Posts

Showing posts from March, 2015

Security translation doesn't work correctly

hello everybody, we have weird issue admt v3.0.  we're migrating 3 domains one, new central domain. everything works fine admt-ing users. once we're running security translation on workstation few user accounts rights on it, approximately 50% doesn't translated !  this happens domains. so acl's being correctly replaced , others left.  we don't error messages. if check sid history attribute, everything's fine , matching source domain. has got tips ? thanks in advance did migrate these users target domain already?   santhosh sivarajan | mcts, mcse (w2k3/w2k/nt4), mcsa (w2k3/w2k/msg), ccna, network+ houston, tx http://blogs.sivarajan.com/ http://publications.sivarajan.com/ posting provided "as is" no warranties, , confers no rights. Windows Server  >  ...

federation services implementation

we given task of implementing identity management solution in our organization. new idm. part of our research planning implement microsoft’s federated services. have few questions regarding implementation of adfs. says adfs requires 2 organizations first establish trust through public-private keys. used sign , validate when 1 party transmits message another. can please explain these private-public keys are. can please in demonstrating implementation of federated service through test environment. please give information regarding set of test environment microsoft’ federated services _ you're asking far-reaching question which, if it's pre-sales matter, might 1 best broached tam or reseller. ("how design complete identity management solution?" bit beyond scope of support forum.) that said, here ad fs links started: www.microsoft.com/geneva http://www.microsoft.com/windowsserver2003/r2/identity_management/adfswhitepaper.mspx http://blogs.technet.com/adfs http:/...

Client connector process for move from 2012 R2 Essentials to 2016 Essentials

i'm move client pc's old server 2012 r2 essentials new install of server 2016 essentials. it new domain , server need move clients over. i cannot seem find guidance on how achieve on or forum. should uninstall old connector , install new one? i presume client need manually removed old domain before installing new connector (that add new domain)? any appreciated! hi, mentioned, disconnect client old essentials server, general steps are: 1. uninstall connector software computer using control panel.  2. unjoin computer windows server essentials domain , join workgroup.  3. remove computer server using dashboard.  then, re-connect client new essentials server. please remember change preference dns server configuration on tcp/ip properties if possible. also, before change, please make sure client os patched and, there available system backup. helpful restoration if problem happens later.  details steps may reference section ” disconnec...

wifi only- remote offices

hi, we have user certificates deployed to  domain users via auto enrollment and users connect wifi,  good  far. but problem when  user logs-off wifi disconnected.  however our helpdesk remote , @ times  need log onto  pc  local administrator to troubleshoot  and  also overnight  deployment of ms security updates when machine is  powered on.  must mention office locations in question here are wifi  no  ethernet cables  so  requirement retain  wifi access when  user logs off helpdesk can connect pc . one idea use computer cert , somehow config wifi to  automatically switch computer cert when user logs-off  or when the pc powered on.  switch user cert when user logs on .  is this  possible ?   perhaps you  may have   offices with similar setup ...

Include Security Center and Windows SHA in Server 2008

when enabled nap client on server 2008 standard x64 computer running active directory domain services (ad ds), got error "a system health agent (sha) may required full network access not present on computer." i believe missing sha mssha.dll (microsoft out-of-box system health agent).  is supposed present in out-of-box installation of server 2008 standard x64?  is removed when ad ds role installed?  hi,   1. there not method install windows sha security center on server 2008. might available @ future date, don't believe there plans support @ time.   2. encourage keep providing feedback reasons why useful. if there enough reason, i'm sure efforts made meet customer demand.   -greg Windows Server  >  Network Access Protection ...

Active Directory snapshots powershell restore object

hello all   running ad 2008 r2 dc's. followed below article , able mount , export snapshot , @ data in snapshot, cant life of figure out how use powershell actuall restore object snapshot. author in article briefly touches on doesnt go detail. can done? nice if didnt have reboot the dc dsrm restore object, agsain everthing have read suggest can done, have yet find way it http://www.simple-talk.com/sysadmin/general/active-directory-snapshots-with-windows-server-2008/   bulls on parade snapshots don't constitute substitute backups. in short, have 2 "traditional" options "recover" ad deleted objects 1) restore them authoritiatively backup. in case, snapshots allow identify recent backup still contains these objects 2) reanimate them (from deleted objects container). in case, snaphots allow restore attributes automatically stripped deleted objects. the first of these methods, requires restart in dsrm. if have windows server 2008 r2 ba...

HELP_DERYP

dear all, it clear 1 of client computer effected virus.. dont know kind of virus.. but see files *.png, *.text, , internet short cut name help_decrypt it's appear on network drive these 3 files.. could me how scan on server? we using windows 2008 r2.. i running online scanning microsoft full scan.. please me. best regards, veasnayim hi, in order remove threat, please update microsoft security software, , enable microsoft active protection service community (maps). you can find various microsoft security software malware protection center below: microsoft security software http://www.microsoft.com/security/portal/mmpc/products/default.aspx which microsoft security software right me? http://www.microsoft.com/security/portal/mmpc/products/choices.aspx more information you: crowti update - cryptowall 3.0 http://blogs.technet.com/b/mmpc/archive/2015/01/13/crowti-update-cryptowall-3-0.aspx best regards, amy please remember mark replies answ...

DNS

hi, i have 2 ad/dns servers, 1 dns server configured forwarding non-authoritative domains. though ad domain banglaore.contoso.co.in smtp domains contoso.co.in , contoso.co.id. have created 2 dns zones in forward lookup zone for  contoso.co.in , contoso.co.id apart default banglaore.contoso.co.in.  as long use dns server has no forwarder set, contoso.co.in , contoso.co.id resolved local dns server, in case use dns server has forwarder set doesn't resolved @ all. dns zones contoso.co.in , contoso.co.id  ad integrated though both dns have exact replica of contoso.co.in , contoso.co.id, dns forwarding set doesn't resolve contoso.co.in , contoso.co.id   swamy hi, thanks post. you said 1 dns server configured forwarding non-authoritative domains. mean you try forward isp's dns servers? please also consult the hosted services or isp check configuration of mx records. thanks, miles       please remember...

Need to renew sub CA cert for longer validity period than default of 5 years

i have windows 2008 domain root ca (online) , sub ca.  my root cert 5 years , sub 2 years.  i'd renew root 20 , sub 10 , issue 5 year smartcard certs.  so, i created capolicy.inf file , renewed root ca , took new validity period of 20 years.  did same on subca capolicy.inf setting of 10 years no matter period 5 years everytime gen cert.  used same capolicy.inf , did ‘certutil –setreg validityperiodunits 10.  think related subordinate certificate template on ca set 5 years , not editable.  if duplicate template, change 10 , try issue template, new template not in list on root.  available issue on subca.year validity.  if duplicate template , try issue template on rootca, edited template doesn’t show in list of templates issued.  ideas? below article might hepful. http://forums.techarena.in/active-directory/1290288.htm http://support.microsoft.com/kb/254632 previous discussi...

DFS Namespace unavailable for all users at one site

i running multiple sites in domain dfs replication , namespaces @ both sites.  1 of sites having problem dfs namespaces.  can access \\server1\public without problem.  when try access \\namespace\public , points same folder.  error message indicating location unavailable.  appears when restart dfs namespace on dc site, problem resolved temporarily few minutes.  problem occuring appears clients @ site. i have checked event logs on server, not getting appears of value.  see things related dfs replication, , not namespace.  may not looking in right space though.  any suggestions? hello usig domain based or standalone namespace? sometime ou have remove , recreate namespace on dc resolve issue isaac oben mcitp:ea, mcse,mcc view mcp certifications Windows Server  >  ...

Regional settings unexplainable changed

background: server: windows server 2003 r2 sp2 standard x64 (physical server) problem we have no idea of triggers problem. after undefined time/load/operations on server regional settings unexplainable set "english" on system account, makes application behave incorrect because application assumes should be "swedish" . the error fixed entering regional settings, set swedish , make sure box "apply settings current user account , default user profile" checked on advanced tab. have clue change regional settings on networkservice, localservice or whatever system account application seems dependent of? bug in windows server 2003 r2 sp2 standard x64? never had problem when application hosted on windows server 2003 32-bit server. can have when system resources running out, system loosing regional settings? you might want refer following threads... these articles might not answer question however, co-related issue has been...

Microsoft Debug Diagnostics Tool Log Retention

hi, we have installed debug diagnostics tool (1.2) on our windows sever 2008 r2 standard , there large number of logs getting created particular rule type. on 1 server logs retained 30 days on other server logs retained beginning of installation. please let me know setting retain logs 30 days particular rule type or server. received response below on forum did not on 2 servers have set same  " max userdump limit"  and  " full userdump , mini userdump", we having issue 1 of 2 servers size of log folder in increasing drastically.we have set  mini userdump = 2 and  max userdump limit = 10 for both our servers. based on research, log size limit can set the  " max userdump limit"  and  " full userdump , mini userdump",  the debugdiag ui keeps count of number of userdumps generated. in default crash rule added in earlier scenario, there limit of 10 userdumps rule create. debugdiag...

Hyper V Help

hi all, i'm new virtulisation , trying create virtual machine on windows 10.  in windows features can turn on hyper-v features apart hyper-v hypervisor grayed out, , message virtualisation support disabled in firmware.  hyper-v extensible virtual switch visible in network settings if select , press ok, seems apply, next time go onto network settings disabled again.  virtual switch management won't work, i'm sure that's because hyper-v extensible switch disabling (somehow). is strange going on here, or making simple error? laptop lenovo t420, maybe won't support it. running windows 10 64bit, , bios version 83et61ww (1.31), 07/07/2011. maybe needs updating?  any appreciated. thanks if running home edition, not have virtualization capabilities.  hyper-v comes pro , enterprise. . : | : . : | : . tim Windows Server  >...

Need Help to Understand The Result of Windows Server Virtualization Calculator

Image
please see attachment. have 1 windows 2008 std edition physical server, has 2 processors , have 11 virtual machines on it, 5 of them windows xp vms testing, , mixture of windows 2003 , 2008 std , enterprise edition vms (for sake of speaking) in result, @ number of licensing needed, list 11 standard licenses. questions are: 1. 11 standard licenses have install on host? physical box! 2. 11 vms, have license each of them , activated. i figure out needs 11 std licenses install on host. 1. how install multiple licenses on single physical box? 2. if item 1 above correct, total number of licenses need 22. 11 on host, , 1 each vm (11) thanks! thang mo hi! please note i'm not microsoft representative. the various licensing models can tricky understand, , calculator applies virtualization using 2008 r2 licensing model. virtualization rights has changed considerably release of server 2012. i suggest contact dealer or microsoft directly confirmation of current l...

Bitlocker issue - regarding to KB2799926

hi my customers encounter case regarding bitlocker encryption failed. after checked microsoft tech forum, found 2 related articals. https://social.technet.microsoft.com/forums/windowsserver/en-us/12ecd29a-b5e1-47ee-86bf-a19c76fbbff2/bitlocker-not-working https://social.technet.microsoft.com/forums/windows/en-us/1267e05c-0a66-4979-b9ba-b8a87b560533/bitlocker-issue-unable-to-encrypt-the-os-drive-all-other-drives-are-ok and a fter remove kb2799926, encryption failed case resolved also. originally kb2799926 seems fix usb detected related problems. i t's strange after removed kb2799926 , bitlokcer works successful...is side effect update? although found solution issue, customers need remove kb2799926 manually now, inconvenience. does there hotfix fix issue? in mean time after customers don't need remove the  kb2799926 when turn on bitlocker functions. thanks, iverson. hi iverson., as far know there doesn’t found bug, can try following workaround steps e...

repeating security update through automatic update: "Microsoft XML Core Services 4.0 Service Pack 2 (KB936181)"

receiving same windows security update notification through automatic update, after repeatedly installing update.  update windows xp home edition , called "microsoft xml core services 4.0 service pack 2 (kb936181)" , size 5.4 mb.  can tell me why repeating , how fix it?   hi,   please understand discuss windows server issues in forum. issue related windows xp, not best resource troubleshoot it.   i suggest discussing issue in our window xp windows update newsgroup. http://www.microsoft.com/windowsxp/expertzone/newsgroups/reader.mspx?dg=microsoft.public.windowsupdate&lang=en&cr=us   you can submit free windows update email support request @ following site: http://support.microsoft.com/oas/default.aspx?gprid=6527   i hope issue can resolved soon.   tim quan - msft   Windows Server  >  ...

Create new object using ForEach

hello is there way re-write using foreach loop?                                                       $jamesobj = new-object psobject -property @{         nationality = "japanese"         age = "21"     }     $jasonobj = new-object psobject -property @{         nationality = "japanese"         age = "21"     }     $terryobj = new-object psobject -property @{         nationality = "japanese"         age = "21"     }     $mikeobj = new-object psobject -property @{         nationality = "japanese"       ...

Data corruption when mounting VHD from guest in Disk Management.

hello forum i using a closed hyper-v lab environment testing exchange restores. my hyper-v server 2008 r2. my guest exchange 2003 server windows server 2003 r2 sp2. 2 vhd disks: 1 os, , 1 empty drive data. this fails me. 1. download our exchange backup our client host server. 2. shutdown exchange server guest vm. ( no snapshots used) 3. using disk management on host server, mount exchange guest data vhd. 4. copying restored files guest vhd. 5. unmounting vhd. 6. starting guest exchange server. 7. when logged on guest, , examining files copyed. files corrupt. (i sure since zipped files , tried unzip , tells me archive corrupted.   is unsupported mount , forth virtual disks between guest , host? is perhaps ntfs file system version between 2008 , 2003 incompatible?  thanks time.       hi,   i don’t have experience exchange files in vhds. however, have experience other files in vhds when mount vhds...

How to detect if a change has been made in a file, to skip to the next section

with help, have been able write below powershell script.  it works great, need prepair if's.  what if script started again?  currently, if script run again, after has been run, add of these lines, redundant , possibly cause issue. how can make if when portion of script run, detects change in machine.config file goes next instance.  if next instance has change, after detecting instances, has seen have changes, skips them , runs next line, has nothing updating machine.config? i new powershell, not sure here. here script far "updating framework64 - v4.0.30319" $numberofcores = get-wmiobject -class win32_processor | measure-object numberofcores -sum | select-object -expandproperty sum $path = "c:\windows\microsoft.net\framework64\v4.0.30319\config\machine.config" [xml]$machineconfig = get-content $path $node = $machineconfig.selectnodes("/configuration/system.web")  $node.removechild(($node.selectsinglenode(...

MS15-118 .NET Vulnerabilities "could allow elevation of privilege"

hello, there's article: https://support.microsoft.com/en-us/kb/3097996  , inside following statement: this update resolves vulnerabilities in microsoft .net framework. severe of these vulnerabilities allow elevation of privilege if attacker injects client-side script in user's browser. learn more vulnerability, see microsoft security bulletin ms15-118 . understand vulnerability , affecting. the "elevation of privilege" - elevation of privilege on end-user's os / browser if accesses link site takes advantage of vulnerability ? or elevation of privilege on .net application server has not been patched ?  don't quite understand outcome of vulnerability in case taken advantage of...  if explain grateful. thanks! elevation of privilege every computer program has notion of "privilege" built in, meaning, permission set of actions on system. this permission granted individuals based on ability present proper credentials (for example,...

Windows 10 Computers Not Preferring Internal WSUS Server

we have recent install of wsus on server 2012 r2 (6.3 version of wsus believe).  have patch 3095113 installed on wsus server. setup working fine , have clients communicating/reporting wsus on ports https 8531(with internally enterprise pki signed certificate) , http 8530.  problem i'm having windows 10 (pro ver. 1511) machines pointing wsus server downloading updates through internet , not directly wsus server expect.  i'm compared output of powershell command (get-windowsupdatelog) small sample of 5 of windows 10 machines , cannot find reason why logs these machines list "downloading http://internal_wsus_server_name:8530/content..."  majority of time list "downloading http://tlu.dl.delivery.mp.microsoft.com/filestreamingservice/..."  or other online microsoft repository.  appear using bits transfer protocol hit microsoft servers online as when download our internal wsus. have 1 of 5 machines appears have never downloaded our...

SNMP failing in windows 2012

hi, facing issue in windows 2012 server on snmp. when truned off windows firewall service services able responce snmpwalk. but if turned on firewall service getting below error snmpwalk -v 1 -c public 192.168.1.2 .1.3.6.1.2.1.142 error in packet. reason: (generror) general failure occured failed object: snmpv2-smi::mib-2.142 added snmp/snmptrap udp port numbers in /system32/drivers/etc/services . any solution this? or missing ? thanks, dudo1257 adapt firewall settings ports 161 , 162. rgds milos Windows Server  >  Windows Server 2012 General

migration windows7 a 8

Image
windows 8 et t'il compatibles sur windows 7 ma version 32bit mc james hi james, this english language forum, request post query in respective language forum. understanding thanks , regards, mukesh. posting provided "as is" no warranties or guarantees , , confers no rights. please vote helpful if post helps , remember click “mark answer” on post helps you, , click “unmark answer” if marked post not answer question. can beneficial other community members reading thread. Windows Server  >  Migration

Bug: Navigation: Save As Dialog Boxes in Windows (thus any application) goes to Computer > Drive C - instead of Quick Access

bug: navigation: save dialog boxes in windows (thus application) still have legacy behavior implemented , navigates computer drive, preselecting and letting user start @ computer > drive c - instead of quick access. this forgotten correction after quick access has been introduced needs corrected quick access work (in valuable way user) files not during create , modify operations on files - open file - using file dialog boxes (although users may use launch instead opening files using i.e. explorer or navigation shortcuts on desktop). this missing change of file dialog box behavior unintended , contradicts new design quick access faster navigation (so should not have start scroll , navigation quick access (contradiction: i.e. quick access) please support new navigation provided quick access intended give quick access - save must able start here. for variability, may provide overriding option in explorer>folder options>general (if change default behaviour i...

Issue on 2008R2 - Registry

hi, i want change permissions on registry key has owner trustedinstaller. in regedit can manualy change owner administrators script used change permissions works. how can script changing owner trusted installer administrator need fix customer issue,help on highly appreciated. thanks, vincent. my apologies, see allows change permissions not ownership. able subinacl (see link) best of knowledge not work server 2008/win7. might have resort powershell, not familiar commands. http://www.microsoft.com/downloads/en/details.aspx?familyid=e8ba3e56-d8fe-4a91-93cf-ed6985e3927b&displaylang=en to add: stumbled across following powershell script if of help. not "powershell guy" appears running on local machine. using powershell 2.0 , adding appropriate remote commands, should able run on remote systems. http://social.technet.microsoft.com/forums/en/winserverpowershell/thread/e718a560-2908-4b91-ad42-d392e7f8f1ad rob williams ...

NLB routes only to one host out of two, inside a local network

sorry if duplicate post. googled no luck. i have set nlb cluster 2 2008 r2 hosts, with of the ms guide. cluster ip address: 192.168.113.159, subnet mask 255.255.255.0 host 1: 192.168.113.13, subnet mask 255.255.255.0 host 2: 192.168.113.160, subnet mask 255.255.255.0 cluster operation mode multicast; there 1 port rule which is for 192.168.113.159, ports 80 80; filtering mode multiple , affinity single. the issue that when load test cluster on 192.168.113.159 ip using multiple client ips within same lan (for ex, 192.168.113.165, 192.168.113.166, 192.168.113.167 etc...) routing requests to 1 host. in host's iis log seeing requests of various client ips. the other host stays idle, iis log crispy clean -- not single request. i tried changing multicast unicast -- no luck here. just out of curiosity set affinity none and would successfully route requests both servers... which, unfortunately, not acceptable me ...

How to properly Remove/Rename and Re-add a PC to the Domain

hi, i'm looking micosoft knowledge base article regarding  " how remove/rename , re-add pc domain ". have workstations windows xp professional & servers windows 2003 in domain environment active directory implemented. have reboot workstations 3 times ?. thanks. hi techlab,  the proper way logon workstation administrator credential , rename or re-join domain. need ensure network connection between workstatin , dc normal. in way, either renaming computer or re-joining domain operation makes system automaticlly re-build secure channel between workstation , dc, ensures reflect in ad database , new computer account can works in ad. you don't have reboot windows xp workstation 3 times. far know, need reboot workstation 1 time after renaming or re-join domain. if have gpo link ou holds computers account, better run "gpupdate /force" if there computer configuration in it. for more store, please check. how change computer name, join domain, , add co...

Routing problem (RRAS VPN)

have rather confusing issue, been @ couple of hours , i'm getting no where. appreciate input. virtual machine hosted elsewhere: machine 1: 192.168.220.20 (rras server) machine 2: 192.168.220.40 office network: machine 3: 192.168.100.45 (monitoring server) vpn setup between 2 networks. machines 1 , 2 have 2 virtual adapters each. 1 public facing , 1 private network our office via vpn i'm assured 100% there no block on outgoing traffic virtual servers. monitoring server (3) monitoring on local subnet , on remote subnet excluding machine 1. i'm looking why monitoring active checks aren't working on machine 3 we'll @ ping. pinging office machine 3 machine 2 - using wireshark can see packets leave machine 2, hit machine 1 , vanish down private network - next trace @ office fw, works fine. when pinging machine 3 machine 1 packet sent on public adapter , recieves message host not found (obviously 192.168.100.45 isn't going foun...

Indexing Catalog on Server 2016

hello team, have windows server 2016 web server iis 6.0. indexing services no longer server 2016 in under computer management tree> application , services. want  help creating indexing catalog in server 2016. please tell me procedure of  creating "indexing catalog" web server document.   how can create indexing catalog searching file/folder ? please reply on it. hi, might better question general or perhaps web server version of server 2016.  forum dedicated server essentials , there not many, if any, experts in web hosting here. however, left of list similar threads. larry struckmeyer [mvp]-- --if question answered please mark response answer others can benefit. Windows Server  >  Windows Server 2016 Essentials ...

Issues Publishing CRLs to CDPs (Certificate Authority)

i trying create new cdps certificate authority.  i have 3 cdps in infrastructure , need add more. i've followed same procedure did when creating original cdps having issues when publishing crl servers. i'm getting dreaded "the directory name invalid. 0x8007010b (win32/http:267)" error message.  this however, happens when add server name extension location, works when adding ip address of server. so "file://\\servername.domain.lan\crl\<caname><crlnamesuffix><deltacrlallowed>.crl" doesn't work "file://\\192.168.0.1\crl\<caname><crlnamesuffix><deltacrlallowed>.crl" does! we're running 2012 r2 on servers involved.  and difference between current cdps , new ones new ones in microsoft azure. i can't find similar issue people can give in troubleshooting received. hi, receive error while configuring ca server incorrect cdp extension. makes ca server not publish crl file. can able check sources...

How to give a dedicated user the special role to just give NTFS permissions to his security croup or members of his security group

hello. i manage cloud service many different customers. cloud system running windweos server 2012r2 on file server. new customer has following requirements:  wants able create new folders , able assign ntfs rights colleague or security group created customer.  possible configure such limited , delegated ntfs admin role on customer's unc share , subdirectories level? thank in advance answers  :-) mvh kenneth knudsen mcse 2003 hp ase hi, based on description, our target customer wants delegate shared folder’s ntfs permission administration colleague. if misunderstand it, please don’t hesitate let me know. in fact, this, need assign enough ntfs permissions of folder modify or full control colleague or security group.   best regards, frank shen Windows Server  >  ...

Certificat Authority services can't start : event ID 100 can't find object

hi, got single ad ds ca role installed on it since 1 month got issue : service cannot start specific errorcode : can't find object. 0x80090011 (-2146893807)      nom du journal :application source :       microsoft-windows-certificationauthority date :         22/05/2013 18:38:00 id de l’événement :100 catégorie de la tâche :aucun niveau :       erreur mots clés :    classique utilisateur :  système ordinateur :   ndc01.domain.local description : les services de certificats active directory n’ont pas démarré : impossible de charger ou de vérifier le certificat actuel de l’autorité de certification. toto certificate authority l’objet est introuvable. 0x80090011 (-2146893807). xml de l’événement : <event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">   <system>     <provider name="microsoft-windows-certifi...

WSUS 3.0 SP2 installed on SBS 2011 Not Downloading Files Properly

the installation seems working in there clients computers making connections , getting new updates. event viewer logs windows update service don't have errors.   however have 303  updates waiting installed have been approved,  every entry in wsus console states files have not been downloaded yet. i have tried cmd >>>>    wsusutil /reset but there's been no change. also bitsadmin /list    show no transfer jobs pending. new updates being synchronized, downloaded , installed properly,  don't want have wait until these 300  + updates superceded  before roll off install list.     however have 303  updates waiting installed have been approved,  every entry in wsus console states files have not been downloaded yet. this issue discussed @ least monthly in forum, , @ least twice in past week, believe. the application event log contains entries failed downloads. there 3 known ...

Help with a registry query

i have following script query registry , return value of key, list of servers.  problem i'm not getting value server. $servers = get-content p:\data\serverssmall.txt foreach ($server in $servers) { try { $reg = [microsoft.win32.registrykey]::openremotebasekey('localmachine', $server.computer) $regkey = $reg.opensubkey("system\\currentcontrolset\\control\\productoptions") $servertype = $regkey.getvalue("producttype") ('"{0}","{1}"' -f $server.computer, $servertype) | out-file p:\data\stdout.csv -append } catch { ('"{0}","{1}"' -f $server.computer, $_) | out-file p:\data\stderr.csv -append } } the output is: "","servernt" "","servernt" it should be: "server1","servernt" "server2","servernt" -al h in $reg variable, have $server.computer, used...

RIP source address of RRAS

i have ws 2008r2 rras server running both nat , rip. sometimes, rip peer not receive response @ all. capturing packets showed rras server sent packet using (incorrectly) ip of public interface of nat through correct private interface. these 2 separated interfaces, not understand how possible. also, seems happen if neighbor list used instead of broadcast/multi-cat. if enabled broadcasting neighbor list, correct source ip chosen both kinds of packets. hi, check route table, entries in route table direct packets. and doesn’t impact broadcast. we trying better understand customer views on social support experience, participation in interview project appreciated if have time. helping make community forums great place. Windows Server  >  Network Access Protection ...

ADFS 2.1 proxy trust establishment error

hello, i'm trying install adfs proxy. in our intranet have adfs 2.1 server running on windows 2012 working fine. we're trying deploy proxy 1 internet access, using windows 2012 r2's web application proxy. i'm getting following error on proxy server, event id 393: message : error occurred while attempting establish trust relationship federation server. error occurred when attempting establish trust relationship federation service. error: forbidden context : deploymenttask status  : error i'm not getting errors on adfs server. i've tried different credentials. adfs service account, domain administrator member of local administrators group on adfs server, , local administrator account on adfs server. same error message. both port 80 , 443 accessible proxy server internal adfs server, , can access adfs metadata endpoint proxy server. i'm using same trusted ssl certificate (wildcard) on both machines. do have ideas can me troubleshoot problem?...

Managing XP and Windows 7 GPO

hi, i’ve been searching net answers more confused now. i have windows 2003 domain windows 2003 dcs. have gpos xp , we’re deploying windows 7 , need configure gpos xp , windows 7. we have pocilydefinitions store (sysvol) contains admx template office 2010 (so far). want add admx templates windows 7 (and windows 2008 r2). know manage these new gpos, need use gpmc on windows 2008 r2 server  or windows 7 machine. xp being phased out still need manage xp gpos. question can still manage xp gpos using new admx templates , using gpmc on w2k8 or win7. should note not use   policy preferences (because need add gpo client side extension on xp boxes...we not because xp being phased out). thanks, jesmat. hi, have looked using wmi filters seperate gpo's? give flexibility use new gpo options without having modify xp stations support preferences. a example filtering gpos http://technet.microsoft.com/en-us/library/cc754488(ws.10).aspx admx files apply xp s...

How do i get user computer name by username

dear professional, need ur usual assistance in powershell to develop script windows 7 machine know computer typing username. ilyas mohammed dunbar thx feedback, how have same scenario support@mytechnet.me i gave outline of process, here in little more detail: an admin runs powershell script: prompts name of user:     $username = read-host "enter user's name" creates vbscript in share on server (more on later)     vbscript code created double-quoted here string creates body of email message double-quoted here string     includes html code present link vbscript extracts info user (first/last name, email address, phone#) active directory sends user email:     send-mailmessage -body $body -bodyashtml -subject $subj etc.... displays series of periods progress bar while waiting .csv file created. the user receives message and: clicks on link clicks on open button to run vbsc...