Cannot view history of direct access users connecting to Forefront UAG

Hi, I'm trying to get a list of the users that have been connecting through UAG Direct Access for the past month. I've tried using the methods shown in the technet articles about monitoring of UAG Direct Access either using Powershell or the TMG event loggin
console, using this links:
http://technet.microsoft.com/en-us/library/gg313776.aspx
http://technet.microsoft.com/en-us/library/gg313783.aspx
Using the TMG event logging I see a lot of data from a few days back, even if the filter is set to 30 days, and the log is supposed to be up to 8GB in size before overwriting. The info that it shows is only about sessions to the portal trunk and not direct
access. I know this because on the UAGModuleID column there is no there are no "connected" or "managed" sessions, all are SessionMgr, UserMgr, Filter and RDG mainly.
Through powershell I tried running the following commands after importing the module according to the article:
Get-Directaccessusers -showhistory $true and no results are shown.
Get-Directaccessusers -showhistory $true -starttime "1/6/2015 8:00AM" and no results shown
Get-Directaccessusers -showhistory $true -starttime "1/6/2015" no results
Get-Directaccessusers -showhistory $true -starttime "1/2/2015 8:00AM" -Endtime "1/11/2015 8:00PM" no results
Get-Directaccessusers -showhistory $true -username user = no results.
Get-Directaccessusers -username user = no results
the only command that shows any data is just Get-Directaccessusers but that shows the current Direct Access users, no history.
I checked the Registry HKEY_LOCAL_MACHINE\SOFTWARE\WhaleCom\e-Gap\von\MonitorMgr\sql-builtin-log registry key and it is on 1.
Any ideas on how can I get more history data on the direct access users connecting through UAG?
Please let me know.
Appreciated it.
Thank you!
Eduardo Rojas

Russel,
the problem has been solved now! The final thing missing was just a check in a  checkbox.
Below a comprehensive explanation that may help others.
We basically did what you proposed:
We sent a ping from one of the DA-Clients to the TS-Farm members. Since we got replies, we knew that IPv6 communication generally is okay. The answer received was an IPv6. In this scenario we had not yet given any IPv6 to the farm-members! Thus we knew it must
be comming from the DA DNS-Proxy. There are a number of DA-GPOs and one of them is dictating the net portion of the IPv6 to be used in DA-communication, appended by a hex-translation of the target computers IPv4. Therefore the DA DNS-Proxy is taking the GPO-set
IPv6-value, adds the IPv4 in hex and sends it  back as an ICMP echo.
With this in place and working correctly one can ping any domain host from any DA-Client. This is configured when initially setting up DA and is handled by the wizzard. Once DA is installed this should all be in place without extra user interaction.
We then took those IPv6 answeres and turned them into fixed IPv6es of the farm-members (each member its own IPv6). So far so good, but this is where it still did not work. Evaluation of the Connection Broker log showed that the redirect reply still included
only the IPv4 of the target farm-member. With that (after a short while) we realized that one has to set a
check in the Connection Brokers Settings, so that the IPv6 LAN-Connection will be used for redirects as well and not only the IPv4 LAN-connection..... How stupid is that? :-)
But as we all know - in dealing with server configuration - you should always "know before you go". But even though you may think you do, when finally arriving you know you didn't.... And that's what we call experinece.
Thanks to Russel for your interest and help.
Brgds Ralf

Similar Messages

  • Direct access network connectivity assistant, the update is not applicable

    Been testing DirectAccess for a couple of weeks now, and all seemes to be working fine. But now it want to install the DA connectivity assistant but it fails to install. When searching for updates on this computer it gives an error message as seen in the
    screenshot below .
    I've reinstalled Windows , updated windows, removed the virus scanner, checked if the update was already installed. Nothing worked
    OS = Windows 7 Enterprise N
    Windows update log appears 
    2013-11-15 09:54:11:265
    912 1290
    Report CWERReporter finishing event handling. (00000000)
    2013-11-15 09:54:42:534
    912 1290
    Report CWERReporter finishing event handling. (00000000)
    2013-11-15 09:54:56:188
    4736 984
    COMAPI -----------  COMAPI: IUpdateServiceManager::RemoveService  -----------
    2013-11-15 09:54:56:188
    4736 984
    COMAPI  - ServiceId = {f8fc7b4b-f693-4113-ab5f-137e03025faa}
    2013-11-15 09:54:56:609
    4736 984
    COMAPI ISusInternal::DisconnectCall failed, hr=8024000C
    2013-11-15 09:54:56:625
    4736 984
    COMAPI waiting for worker thread to complete
    2013-11-15 09:54:56:625
    4736 984
    COMAPI Removed OnCompleted callback from GIT (cookie=256)
    2013-11-15 09:54:56:625
    4736 984
    COMAPI IUpdateService removing volatile scan package service, serviceID = {F8FC7B4B-F693-4113-AB5F-137E03025FAA}
    2013-11-15 09:54:56:641
    912 1334
    Agent WARNING: WU client fails CClientCallRecorder::RemoveService with error 0x80248014
    2013-11-15 09:54:56:656
    4736 984
    COMAPI WARNING: ISusInternal::RemoveService failed, hr=80248014

    Hi,
    Firstly, I would like to confirm with you if it worked before on Windows 7 Enterprise N version.
    As I known, following are some additional features that Windows 7 Enterprise N edition has and other versions does not have:
    a. Direct Access
    b. Branch cache
    c. Federated search
    You need to meet the following requirements to install the DA connectivity assistant.
    Windows 7 Enterprise, Windows 7 Ultimate
    1. 10 MB of disk space.
    2. 10 MB of RAM.
    3. Microsoft Word or Microsoft Word Viewer (available as a free download) can be used to view Word documents.
    I would like to suggest you download and install it from official website.
    Microsoft DirectAccess Connectivity Assistant 2.0
    http://www.microsoft.com/en-us/download/details.aspx?id=29039
    Hope it helps.
    Regards,
    Blair Deng
    Blair Deng
    TechNet Community Support

  • Cannot send email via ActiveSync when user connect from Internet (Exchange 2010 SP3 RU5)

    Hi All. 
    This is the first time I encounter this kind of issue, whenever user connect from the internet they cannot send email from their Phone or Windows Mail App, but they can retrieve email 
    But when they connect from Internal Network they can send email. I already test ActiveSync from internet using www.testexchangeconnectivity.com and it pass all tests. 
    I also check the Firewall and all the necessary ports already opened (we even open all ports) , the default TTL on the firewall 3600 second. 
    From what I read ActiveSync use some kind of HTTP POST or in MS terminology "PING" command, but still have no idea what kind of configuration that should be made to the Firewall so it can pass this "PING" command. Because from what I
    see in Android Logcat the problem always related to this PING command 
    10-07 08:12:38.714 I/Exchange(31971): Interrupt with reason 1
    10-07 08:12:38.714 I/Exchange(31971): Ping task ending with status: -1
    10-07 08:12:38.904 D/Exchange(31971): created outputstream
    10-07 08:12:39.204 W/Exchange(31971): IOException sending mail
    10-07 08:12:39.204 E/Exchange(31971): Generic error for operation SendMail: status 200, result -100
    10-07 08:12:39.204 W/Exchange(31971): Aborting outbox sync for error -99
    10-07 08:12:39.274 I/Exchange(31971): Ping task starting for 3
    10-07 08:12:39.304 D/SyncManager(644): failed sync operation [email protected] u0 (com.android.exchange), com.android.email.provider, USER, latestRunTime 71219435, EXPEDITED, reason: 10040, SyncResult: stats [ numIoExceptions: 1]
    10-07 08:12:39.304 D/SyncManager(644): not retrying sync operation because SYNC_EXTRAS_DO_NOT_RETRY was specified [email protected]  u0 (com.android.exchange), com.android.email.provider, USER, latestRunTime 71220078, EXPEDITED, reason: 10040

    Hi ronaldosy,
    How about the work flow of Outlook or OWA on PC internally/externally?
    If only phone has this issue, I suggest ask ActiveSync Forum for help so that you can get more professional suggestions. For your convenience:
    http://social.technet.microsoft.com/Forums/exchange/en-US/home?forum=exchangesvrmobility
    Best Regards,
    Allen Wang

  • I cannot view my iphone device when i connect to computer itunes

    I have an iPhone 4S device and every time I plug it into my computer, I have to manually open my iTunes up. Once my iTunes has loaded and is up and running though, I still cannot view my iPhone in devices?? My iTunes seems to not recognise or acknowledge my iPhone even though this was the computer I orignally synced my phone with? Help! I've not been able to add music or anything to my phone for almost a year now and have still not found the solution :-(
    anyone with the same problem or know the answer??

    iOS: Device not recognized in iTunes for Windows
    http://support.apple.com/kb/TS1538
    iOS: Device not recognized in iTunes for Mac OS X
    http://support.apple.com/kb/TS1591

  • Accessing user connected to my JSP application

    Does somebody know how can i access the informations of all my
    connected users at a given time in my JSP application with OC4J.
    I want to pick a user randomly in that pool and make him win a
    prize so that my users will want to come back frequently.
    I tought of a autonomous Java thread that can access those info
    of my users and pick someone ranomly at a given interval.
    Thanks

    You need to make sure that your users are logged in using one of
    the OC4J usermanagers. I am assuming you have already worked
    that one out.
    You will need a bean that collects all of the usernames, and
    then a method in the bean the randomly selects one. So the rub
    is, how do you get at the usernames?
    Depending on the usermanager, you would get the users with the
    method
    List users = usermanager.getUsers(0,usermanager.getUserCount());
    See the api on usermanager's
    http://www.orionserver.com/docs/api/index.html
    regards,
    the elephantwalker
    www.elephantwalker.com

  • Cannot view QT video in one user but can in another on same Mac -Leopard

    I have installed Leopard on two machines (iMac Intel and MacBook). When trying to view any QT video (Leopard tour, movie trailers, etc) on the Apple site, audio is fine but no video. This is on the iMac. When I switch users on that same machine, it works. It also works fine on the MacBook. I am (and have been for two hours) on the phone with an Apple tech. We have trashed all QT prefs, Safari prefs, and still no video. Other video (you tube, WMV) plays fine. Only QT. I have matched Safari prefs item for item on the iMac and Mac Book with no luck. Apple has tried everything (yes, we re-installed Safari) and still the same issue. I think what's weird is that with another profile, it works on the same machine. So, where Apple has not succeeded, who can help me!!?? Please? Thanks. TG (alan)

    One more thing...I can use FireFox and it works. It's only Safari and only in one profile (mine!) Thanks.

  • BW Download to excel - extra login window - no direct BW user possible

    Hi All,
    When we download a report with a hierarchy from BW to Excel we are asked to logon again. We would like to remove this logon and download the objects directly when exporting to excel.
    In note 516884 we found an option for removing the extra logon, unfortunatly for our client this is not an option as they use the SAP portal ONLY to access the reports and do not have direct access and connection to the BW server.
    Do you have an idea how to solve this problem? So we do not have to logon in excel, and do not have to have a direct user to BW.
    Hope you can help!
    Thank you and kind regards,
    Hermen

    Hi Hermen,
    You can achieve this by implementing Single Sign-On between SAP Portal and BW.
    SAP Portals has the mechanism to provide Single Sign-On with Logon Tickets.
    You can find more detailed information at the link below:
    https://www.sdn.sap.com/irj/sdn/go/portal/prtroot/docs/library/uuid/77378b3d-0b01-0010-ffa5-c6941e286c43
    BR/
    Mathew.
    Edited by: Mathew Muthalaly on Jun 17, 2008 12:28 PM

  • N95 8GB cannot view gallery photos/ uploads photos...

    Hiya,
    I have had the same problem with my N95 8GB with viewing photos in my gallery!
    I have now got my 5th replacement handset (Orange) since August 29th due to various faults and issues. The main one being trying to transfer photos from my PC to my mobile via the Nokia PC Suite or just via USB cable. Both of which when I try to then go into the gallery view on the phone caused it to freeze. Unable to view any images!
    This keeps happening, and I have even tried running the 'N series installation disk' and still the same issues. I thought that such a good spec phone with 8GB memory would be able to hand just 2 jpeg images without freezing!
    Has anyone else had the same problem or am I just unlucky? I have got up to date anti virus software on my PC, and have tried different images each time. My previous phone (n95) was able to upload and export pics and music to my PC no problems ever!

    yes it is very odd!
    Well I have tried to just loads 2 images from the laptop onto my mobile. I have tried doing a direct file transfer (mass media) and then also tried through Nokia PC suite-uploaded via the CD rom I was given.On both occasions this has been uncessful to view images from the gallery menu on the phone..crashes!
    I think the photos are actually on the phone under the file manager folder I can find them stored here. However on opening the gallery to try and view these files, the phone freezes and I am unable to exit the menu -using the 'back' button have to press the red phone cancel button. Once out of the gallery folder and back to the main screen I can then no longer access and shortcut menus for about 3mins. Very frustrating. The most recent phone I have now, I got 2 days ago-I've not even plugged into my laptop, and when asking a friend to send me images via bluetooth I cannot open this either!! (it comes as a text format from bluetooth) and on opening the phone just freezes again. I try to save this when asked to mass memory and not phone memory.
    I can take images on my 'phone camera' but again cannot view as unable to access the gallery-constantly freezes the phone.The images are not a large file just jpeg format for example 45KB another one I tried was much larger 1MB...
    I still don't understand why this is happening all the time!!! Many thanks for your help.... (Orange are going to send me a new sim card to try) and see if this helps.

  • I cannot view downloads in safari-started with adobe flash upgrade attempt

    I cannot view history in safari..this started with attempt to upgrade adobe flash.

    did you attempt to upgrade adobe?

  • Cannot connect to RDP farm through Direct Access

    Hey everyone, hope you can help/
    I have an issue connecting to the RD Farm when connected through Direct Access. I have tried specifying the RD Gateway to no avail. Cannot ping RD farm or session hosts through v4 but can v6. The address comes back as the 6to4 address and is different for
    each ping to each session host.
    When trying to RDP to the farm (or directly to a SH) certificate trust comes up so confirm that i am happy to trust the certificate for the connection, and it goes through to the point of initiating remote connection and then fails with the standard "Remote
    Desktop cant connect to the remote computer..." message.
    I am not entirely sure where or how to troubleshoot this first. Users local side of the wan are ok, its only external. 
    Apparently after numerous attempts the connection works but I am yet to witness this.

    Russel,
    the problem has been solved now! The final thing missing was just a check in a  checkbox.
    Below a comprehensive explanation that may help others.
    We basically did what you proposed:
    We sent a ping from one of the DA-Clients to the TS-Farm members. Since we got replies, we knew that IPv6 communication generally is okay. The answer received was an IPv6. In this scenario we had not yet given any IPv6 to the farm-members! Thus we knew it must
    be comming from the DA DNS-Proxy. There are a number of DA-GPOs and one of them is dictating the net portion of the IPv6 to be used in DA-communication, appended by a hex-translation of the target computers IPv4. Therefore the DA DNS-Proxy is taking the GPO-set
    IPv6-value, adds the IPv4 in hex and sends it  back as an ICMP echo.
    With this in place and working correctly one can ping any domain host from any DA-Client. This is configured when initially setting up DA and is handled by the wizzard. Once DA is installed this should all be in place without extra user interaction.
    We then took those IPv6 answeres and turned them into fixed IPv6es of the farm-members (each member its own IPv6). So far so good, but this is where it still did not work. Evaluation of the Connection Broker log showed that the redirect reply still included
    only the IPv4 of the target farm-member. With that (after a short while) we realized that one has to set a
    check in the Connection Brokers Settings, so that the IPv6 LAN-Connection will be used for redirects as well and not only the IPv4 LAN-connection..... How stupid is that? :-)
    But as we all know - in dealing with server configuration - you should always "know before you go". But even though you may think you do, when finally arriving you know you didn't.... And that's what we call experinece.
    Thanks to Russel for your interest and help.
    Brgds Ralf

  • Cannot connect to direct access clients from management servers

    I have direct access setup on a Server 2012 machine and I have successfully added clients to it.  Clients can reach internal resources and everything seems to be working great inbound.  However, I am having some trouble with outbound management.
     From the Direct Access server I can ping, RDP, browse files, etc... From the management server I have defined in the DA setup I can only ping the machines and nothing else.
    I had worked with some MS tech support to get to this point, and they had me configure my DA server and the few management server with status IPv6 addresses.  I'm not sure if this is necessary or if outbound managment should work using ISATAP?
    My DA server is Server 2012, and the clients are Windows 8 and Windows 8.1.

    You should be able to make outbound management work using either ISATAP or native IPv6. If you have configured native IPv6 and it's not working, there may be some kind of routing issue with the way that IPv6 is setup in your environment, or even a piece
    of networking equipment that is not IPv6 capable.
    If you're interested in trying the ISATAP route to see if you can get it working that way, Chapter 3 in this is dedicated to the setting up of ISATAP: http://www.packtpub.com/microsoft-directaccess-best-practices-and-troubleshooting/book
    (sorry, not trying to be self-serving, but these kinds of questions are exactly the reason why I put the book together)

  • IBM cognos TM1 Executive viewer is not working on direct Access

    Hi,
    We are implementing DirectAccess in our environment and testing applications in test lab. It has been observed that executive viewer is not working on Direct Access but working fine over VPN mobile checkpoint. When DA client click on open view button it
    gives error
    " Additional information:
    Unable to connect to server XYZ.com using TCP-IP port 7112. Please make sure that IBM cognos TM1 executive viewer server is started and the port is not blocked by any proxy server or firewall"
    but from client telnet is working on port 7112. All ports between DA server and application server are open 3389,7112 and 80.
    Also select database option is grayed out and user is unable to select the database. When switching to VPN its working fine.
    We are using Executive viewer 9.4. 
    Any help would be appreciated.

    It sounds like this program may not be capable of talking over IPv6, which DirectAccess uses. First make sure that when you connect it is trying to talk to a hostname and not an IPv4 address. If your program is calling for "192.168.1.100" - this is never
    going to work over DirectAccess. It must call for a name that DirectAccess can resolve to an IPv6 address for communication over DA.
    If you confirm it is talking to a name, and then if you confirm that you can do other things to that same name (can you RDP into the server for example?), then that confirms that DirectAccess traffic flow is working to that name/server.
    If RDP works but the application still doesn't work, then the application is probably incapable of IPv6. You can either ask IBM if they have a newer version that does talk IPv6, otherwise I have a utility available that can intercept packets from these kinds
    of problematic applications and flip the packets into IPv6 on the DA client. Let me know if you need any further information on that: http://www.ivonetworks.com/news/2013/05/ivo-networks-announces-app46-for-directaccess/

  • Users with direct access to tables

    I need to find out which users have direct access to tables, not through the roles.
    Is dba_tab_privs the right table to query or table_privileges is the correct one.
    Please let me know the difference between these two.
    I have gone through the documentation but I am still not clear about the difference between them.
    Let me know whatever your thoughts are on this.
    Thanks,
    Rushi

    Ah, an opportunity to illustrate the value of COMMENTs:
    SQL> select * from dict where table_name = 'TABLE_PRIVILEGES';
    TABLE_NAME
    COMMENTS
    TABLE_PRIVILEGES
    Grants on objects for which the user is the grantor, grantee, owner,
    or an enabled role or PUBLIC is the grantee
    SQL> select * from dict where table_name = 'DBA_TAB_PRIVS';
    TABLE_NAME
    COMMENTS
    DBA_TAB_PRIVS
    All grants on objects in the database
    SQL>So, TABLE_PRIVILEGES is a view relevant to the user who is currently connected and SELECTing from it.
    DBA_TAB_PRIVS is what you want to use to find users with direct access granted to tables.

  • How to provide access to multiple users connected to a Dumb switch? (multi-auth/multi-domain)

    Good morning everybody,
    I am writing on behalf of not being able to implement a desired outcome in our company network. In fact the situation is as follows:
    What I want to do is to be able to authenticate users (802.1x authentication) in our company radius server and authorize them access by having a dynamic VLAN assignment in a multi-user environment on one and the same port of a Cisco 2960 switch. So far, the authentication and authorization has been working completely smoothly (there are no problems with itself). The concept involves the configuration of both DATA and VOICE VLANs as I there is also phone authentication implemented. In order to simulate this environment I introduce a Dumb switch connected to my Cisco 2960 Catalyst.
    What I have successfully managed to get to work so far is this:
    1) On one switch port I have tried the “authentication host-mode multi-domain” and it worked perfectly for a PC behind a telephone, or with one PC connected to a the dumb switch + the telephone connected to another port of the dumb switch. Logically it is the same situation as there is a separation in two domains – DATA and VOICE. Bellow is an output from show authentication sessions for this scenario.
    Interface  MAC Address     Method   Domain   Status         Session ID          
    Fa0/23     0021.9b62.b79b  dot1x    DATA     Authz Success  C0A8FF69000000F3008E (user1)
    Fa0/23     0015.655c.b912  dot1x    VOICE    Authz Success  C0A8FF69000000F9009F (phone)
    2) On the other hand, when I try the same scenario with the “authentication host-mode multi-auth”, the switch still separates the traffic in two domains and is able to authenticate all users, AS LONG AS they are in the same VLAN.
    show authentication sessions:
    Interface  MAC Address     Method   Domain   Status         Session ID          
    Fa0/23     0021.9b62.b79b  dot1x    DATA     Authz Success  C0A8FF69000000F3008E (user1)
    Fa0/23     b888.e3eb.ebac   dot1x    DATA     Authz Success  C0A8FF69000000F8008C (user2)
    Fa0/23     0015.655c.b912  dot1x    VOICE    Authz Success  C0A8FF69000000F9009F (phone)
    However, I cannot succeed authentication of many users from DIFFERENT VLANs, neither in multi-auth nor in multi-domain modes.
    What I want to get is an output like this:
    Interface  MAC Address     Method   Domain   Status         Session ID          
    Fa0/23     0021.9b62.b79b  dot1x    DATA     Authz Success  C0A8FF69000000F3008E (user1)
    Fa0/23     b888.e3eb.ebac dot1x    DATA     Authz Success  C0A8FF69000000F8008C (user2)
    Fa0/23     0015.655c.b912  dot1x    VOICE    Authz Success  C0A8FF69000000F9009F (phone)
    I want the switch to authenticate the users anytime they connect to itself and for them to have an instant access to the network. (I tell this because I tried scenario 1) with multi-domain mode and authentication violation replace, and it worked but, two users never had access to the “Internet” simultaneously!!!
    The configuration of the interface connected to the Dumb switch is as follows.
    interface FastEthernet0/x                                                      
     description Connection to DUMBswitch                                            
     switchport mode access                                                         
     switchport voice vlan XXX                                                      
     switchport port-security maximum 10                                            
     switchport port-security                                                       
     switchport port-security violation protect                                     
     authentication host-mode multi-auth                                            
     authentication priority dot1x                                                  
     authentication port-control auto                                               
     authentication timer reauthenticate 4000                                       
     authentication violation replace                                               
     dot1x pae authenticator                                                        
     dot1x timeout tx-period 10                                                     
     spanning-tree portfast                                                         
    The way I see it is explained in the following steps:
    - PC1 connects to the Dumb switch. This causes the Cisco switch to authenticate user1. This creates an auth. session with its MAC address linked to a domain DATA.
    - When PC2 connects to the Dumb switch, this causes the violation replace which replaces the recent authenticated MAC address with the MAC of PC2. I would like it once authenticated to appear in the authentication sessions with a link to a new DATA domain linked to the VLAN assigned from the RADIUS server.
    Is this possible? I think (in theory) this is the only way to provide authenticated access to multiple users connecting through Dumb switch to the network.
    Has anybody ever succeeded in such a configuration example and if yes, I would be love to get some help in doing so?
    Thank you
    Stoimen Hristov

    Hi Stoimen,
    I have done a setup similar to yours with the only exception being VLAN assignment. When I used dACLs only, it makes things somewhat easier as the VLAN no longer matters. Remember that the switchport is in access mode and will only allow a single VLAN across it (with the exception of the voice VLAN). I think that is the real cause of your problem.
    From what I can see, you have 2 options available to you:
    1) Use dACLs instead of VLAN assignment. This means that an access list will be downloaded from the radius server straight to the authenticated user's session. I have tested this and it works perfectly. Just Google Cisco IBNS quick reference guide and look for the section that deals with Low Impact mode.
    2) Get rid of the dumb switches and use managed switches throughout your network. Dumb switches will always be a point of weakness in your network because they have no intelligence to do advanced security features like port security, 802.1x, DHCP snooping, etc.
    Hopefully someone else will chime in with another option.
    Xavier

  • Not Using Index on File Server When Accessing User Files Directly on Server

    It appears to me that on a server with an indexed network share (Desktop Experience and Search Indexing roles/features installed), if you access the share directly on the server using its drive path, you can search the folders using the index, which
    is much faster and supports finding words inside of the files in seconds). However, if you access the same shared folder via its network path from the server itself, the server ignores the index. I have this experience/problem across all shared folders on
    the Windows 2012 R2 Server. Details and my most specific goal follows.
    In addition to a laptop, I frequently work directly on a Windows Server 2012 R2 computer. We have Redirected Folders set up on DFS (for failover redundancy) so that my Documents folder is in:
    \\network\redirections\user\documents. This all works fine on Windows 7 and 8 client computers connected to the network via Offline Files.
    The problem is on the server itself. The server has Desktop Experience enabled and Windows Search is installed. If I navigate manually through the DFS root folder to my documents folder, I can search and it properly uses the index. This proves the location
    is properly indexed. However, if I access the folders through the official "Documents" folder from the Folder Redirection (a network share pointing to the same server computer I'm working on), it performs an un-indexed search (slow and ignores file
    contents, but does find files eventually if the search term is in their filename). Is there a way to force the server to use the indexed search on the Redirected Folders (my Documents folder in particular) when working on that server when logged in locally
    on that server?
    I suspect a workaround would be to go into the Registry and manually change the HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders to point to the local DFS folder instead of the network share name, but at least one problem
    with this is then if I save files with links to other files (e.g., a linked Excel table in a PowerPoint, a mail merge to Access database in Word, etc.) on the server computer, those links will point to d:\DFSroot\... (a physical drive on the computer) instead
    of \\network\redirections\user\... (a universally accessible network path) and so none of the other computers will be able to find the linked files, defeating one of the
    major benefits of using Redirected Folders.
    I can't believe that I need to choose between indexed searching and proper path names in saved files. Surely there is a way to use an indexed search on the server itself?
    If you need any more info to help me troubleshoot, please let me know.
    Thanks for any help,
    Colin

    Hi Colin,
    It seems that we can not use indexed search on DFS shares. Windows Search works well when users directly access the server. That is, the server is not made available through Distributed File System (DFS).
    For more detailed information, you could refer to the links below:
    Windows Search Service, Clustered File Services, DFS, Win7 Libraries
    https://social.technet.microsoft.com/Forums/windowsserver/en-US/31ac4c16-948b-4ca4-b18f-3a339cdfd5b9/windows-search-service-clustered-file-services-dfs-win7-libraries?forum=winserverfiles
    Windows Browse and Organize Features
    https://technet.microsoft.com/en-us/library/dd744693(WS.10).aspx
    Best Regards,
    Mandy 
    Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Subscriber Support, contact [email protected]

Maybe you are looking for

  • Illustrator CS4 crashing on text size

    Hi all, below a sample of my script #target illustrator var doc=app.documents[0]; doc.textFrames.getByName("FUERZA1").textRange.characterAttributes.size=15; redraw(); info: there is only one opened doc and actived.. so documents[0].. and below my tre

  • Solution Manager 3.2 installation on linux

    Hi all, I experience some problems when I install Solution Manager 3.2 on Redhat Linux AS 4 wtih ORACLE 9.2 (platform 64bits, X86_64). Actually i am installing the database instance and in the phase "Starting RFC Jobs" (phase 34 of 39) stop the insta

  • Importing in flash problem

    This appears when I export from captivate to flash: "A swf animation slide has been imported. The following files must be made available at publish time: myfile_Slide_7_0.swf myfile_Slide_10_0.swf Please make sure you publish the project to "C:/Docum

  • Datalink not active

    I try to create a datalink to connect to a remote server, however, when I test the link, it tell me datalink is not active, what is that means and how can I active it? Thanks Chang

  • In terms of memory utilization which is better to iterate through a LIST?

    For Loop or Iterator Class.?????