Event ID: 1280 Server 2012 RDS - web app fail on second session host

Hello there
Topography
SBS 2011 (domain controller)
Two VM’s:
VM1 – All RDS rolls: RD Gateway , Connection broker, Licensing and RD access installed and acting as a session host with an active collection for RD web apps. A CA trusted certificate is installed.
VM2 – Session host with a second collection for RD web apps
Problem
I have a single app installed on both session hosts (the apps require their own servers). Both appear on the RDWeb site available for use.  I can run the app hosted on VM1 no problem, but when I try to open the second app hosted on VM2 I get
two issues:
An error is returned
“Your computer can’t connect to the remote computer because the Remote Desktop Gateway server address and the certificate subject name do not match. Contact your network administrator for assistance".
When viewing the certificate, it actually shows the CA cert installed on the
SBS server for RWW, not the cert on VM1. This has me puzzled
Secondly on VM 2, I get
Event ID: 1280 Warning Microsoft Windows TerminalServcies-session broker client
Remote Desktop Services failed to join the Connection Broker on server sever-vm1.local.
Error: Current async message was dropped by async dispatcher, because there is a new message which will override the current one.
When I run the app internally it seems to load but then disappears.
Some further config info if it is relevant:
I have port 4043 (443 used) as the only port directed to the gateway
Am I missing something simple? DNS? Port forwarding issue on the router?  Its my first deployment of this nature with RDS 2012
Regards
MIS5000

Hi,
Thank you for posting in Windows Server Forum.
Firstly please check the RDP version you are using. I suggest you to update to RDP 8.1 for better feature and functionality. Now other thing verify that you have the RD Gateway certificate name matches the external FQDN of the RD Gateway Server. Also please
check that certificate is added under local computer\personal store and must be signed by trusted root authority. 
Please check below article for more detail.
TS Gateway Certificates Part III: Connection Time Issues related to TS Gateway Certificates
http://blogs.msdn.com/b/rds/archive/2008/12/18/ts-gateway-certificates-part-iii-connection-time-issues-related-to-ts-gateway-certificates.aspx
In regards to resolve other issue (Event ID 1280), identify and fix any connectivity problems between the RD Session Host server and the RD Connection Broker by doing the following:
• Check network connectivity to the RD Connection Broker.
• Start the Remote Desktop Connection Broker service. 
• Add the RD Session Host server to the Session Broker Computers group.
More information.
Event ID 1280 — RD Connection Broker Communication
http://technet.microsoft.com/en-us/library/ee890889(v=ws.10).aspx
Hope it helps!
Thanks.
Dharmesh Solanki
TechNet Community Support

Similar Messages

  • In-place upgrade of Windows Server 2012 RDS to R2 fails

    Hi All
    I have a Server 2012 Standard RDS virtual machine (vmware) on which I have tried doing an in-place upgrade to 2012 R2 but it constantly fails.
    It sits at the "Collecting files, settings and applications" process for quite a while - always on 0% and then says: Installing Windows was Canceled "Setup can't continue. Restart the computer and restart Setup. When prompted, try getting
    the latest updates."
    I have tried combinations of all the settings during setup to look for updates, not look for updates, etc., rebooted several times, even disabled the RDS services and still the same result.
    As a test, I tried doing an in-place upgrade on the base OS installation that was used to create this VM and it works perfectly. The only difference between the servers is that the live has RDS role installed.
    Is there any Microsoft documentation on the 2012 RDS in-place upgrade process to R2?
    Can anyone offer any suggestion as to why the in-place upgrade might be failing with the RDS role installed?
    Thanks heaps

    As I stated I have already tried an in-place upgrade on the base 2012 vm that I used to create the production RDP server and it worked.
    It seems that the RDS role may be preventing the upgrade?
    Ideally I want to go down the in-place upgrade on the production server as we have alot of users using this machine. I would rather not have to build an R2 RDS server from scratch.
    if you really think the RDS is preventing the upgrade, how about stopping the RDS service then do an in place upgrade.
    check how it goes.. :)
    Every second counts..make use of it. Disclaimer: This posting is provided AS IS with no warranties or guarantees and confers no rights.

  • Server 2012R2- RDS Farm Certificate Miss-Match on Session Hosts

    Hi Guys,
    I've another RDS2012R2 issue. Internal and external domains do not match. External: domain.com.au; Internal: domain.com.net.
    I'm getting certificate miss-match errors when connecting to the Farm/RemoteApps.
    I have performed the follow fixes:
    Change published FQDN for Server 2012 or 2012 R2 RDS Deployment (http://gallery.technet.microsoft.com/Change-published-FQDN-for-2a029b80). This resolved the original issue where I was getting a certificate miss-match error externally
    for the FQDN of the server.
    Updated the RDP-Tcp certificate used on the Session Host Servers. This was to resolve an issue where using mstsc to RDP to the farm externally(via gateway) would give a Certificate is not trusted error on the RDSH side.
    Now whenever RDWeb is used to launch a RemoteApp or the farm, I get a certificate miss match error as the RDSH server is called RDS1-TCC.domain.com.net and the certificate is for remote.domain.com.au.
    I rolled back the last change so that RemoteApps and the Farm would work successfully internally without certificate issues. How do I go about resolving the certificate errors?
    For extra background details see my orignal thread, It was marked as answered when only 1 out of 2 issues was resolved. http://social.technet.microsoft.com/Forums/windowsserver/en-US/b664ddaf-6c11-49e2-8a69-0df3b8ef13a1/server-2012r2-rds-farm-with-xp-and-windows-vista-clients?forum=winserverTS
    Cheers,
    Ben

    Hi Ben,
    Thank you for posting in Windows Server Forum.
    In your case, I can suggest you to check that the certificate must match the FQDN of the server. If you are creating SSL certificate then it must be signed by trusted authority and also the certificate must be stored under “local computer/personal store“.
    Also you can buy the certificate from 3rd party which is wild card certificate and only 1 certificate can be used for your network. Please check below links for more information regarding certificate issue.
    1. Certificate Requirements for Windows 2008 R2 and Windows 2012 Remote Desktop Services
    2. Configuring RDS 2012 Certificates and SSO
    3. Windows 2012 RDS Certificate mismatch
    Hope it helps!
    Thanks,
    Dharmesh

  • Server 2012 RDS - User Profile Disks - Errors during Logoff

    I have set up a test Server 2012 RDS collection (Single Server for now) and implemented User Profile disks.
    I have two problems.
    First: My generic test user can connect and does successfully use the user profile disk as expected. However, at
    logoff, the system event log contains these errors:
    The error (NTFS 137) is: The default transaction resource manager on volume C:\Users\ts3.test encountered a non-retryable error and could not start.  The data contains the error code.
    The warning (NTFS 50) that concerns me is:
    It appears that the user profile disk is being "disabled" or "disconnected"
    before the profile data is completely written at logoff. What can I do to troubleshoot this?
    Second:
    Update: A post from Mike Connor on the following page: -LINK- solved
    the problem described below. 
    My administrative user always logs on now with a temporary profile. At the beginning, the UPD was working and mounting. That stopped working. In attempting to troubleshoot, I logged the admin user off and deleted the UPD disk
    file from the share. I remember it working again after generating a new UPD disk file in the share. Soon, it quit working again. I deleted the UPD disk file again from the share and ever since, it has never regenerated a new UPD and
    always logs on with a temporary profile.

    We experience less to zero problems after an outage with our User Profile Disks when we use the option: "Store all user settings and data on the user profile disk". Other then when we use the other checkbox (even though all checkboxes
    underneath are checked). 
    Our test setup was, an RDSH 2012 r2 server(s), with an 2012r2 server holding the share.
    We first tried the "store all user settings" for the User Profile Disk, we logged several accounts onto our RDSH Server we then disconnected our server which holds the share to simulate an outage. After about 5 minutes we connected the
    server again holding the share. When the share comes back online, we logged off the users and logged them back in. The result was a valid profile for all the accounts including their last changes from before the share got disconnected.
    The exact same test was done with the option: "Store only the following folders on the user profile disk" with all checkboxes underneath checked, which gave us corrupt profiles.. We also did these tests by giving the server holding the share a reboot instead
    of an disconnect from network. This gave us the same result. Each test was done at least 2 to 3 times..
    I hope others can confirm this as well in their situation, as it seems to be a bug within that specific checkbox.
    Looking at the above tests, the best way in my test cases were to exclude the default folders (f.e.: \Documents) if you would like to redirect them instead of using them inside your User Profile Disk. Redirects can be done through GPO Folder redirection
    options or GPO registry combined with Environment Variables.
    Even after several attemps to simulate an outage, i get left with consistent profiles. I've now also included an hard reset of my virtual machine (that gave the same results as a disconnect of the network card). This was all done through using the: "Store
    all user settings in the user profile disk". The other option left us with inconsistent profiles. I hope others can confirm this as well..
    Looks to me that the type of connection towards the User profile happens different. You can see this when looking at the C:\users\<username> and subfolders if you use user profile disks. The 2 options show different symbols as well.

  • Office Web Apps Server 2013 - Word Web App - Problem with Tab space

    Hello We have Office Web Apps Server 2013 running with SharePoint 2013.  Users Editing a Word document with Office Web Apps, can't use "Tabs", any Word document with Tabs; the tabs are replaced with a single space.
    Has anyone noticed this?  Is this a bug?
    -thanks
    thomas
    -Tom

    Yes, currently the Word Web App does not support
    Tab Keyboard shortcut for editing document content .
    For more information, you can have a look at
    the article:
    http://office.microsoft.com/en-us/office-online-help/keyboard-shortcuts-in-word-online-HA010378332.aspx?CTT=5&origin=HA010380212
    http://social.technet.microsoft.com/Forums/en-US/3f5978d3-67a1-4c8c-981f-32493d72610b/office-web-apps-server-2013-word-web-app-problem-with-tab-space?forum=sharepointgeneral

  • Windows Server 2012 RDS CALS on Windows Server 2008 R2 Licensing Server

    Hi,
    at the moment we are installing the first couple of Windows Server 2012 in our infrastructure.
    Some of them have installed RDS.
    Now we are wondering whether it is possible to use our existing Windows Server 2008 R2 licensing server for serving the licenses we have (yes we to have new Windows Server 2012 RDS CALS) or whether we have to install a new host based on Windows Server 2012.
    We tried to add the new license to the 2008 R2 licensing server, but it is not possible. The licensing manager's error message: "The license code contains invalid characters or not enough characters."
    Is there any other way?
    Thanks and regards
    Matthias

    Hi matt_will_fix_it,
    How about Windows 2012 R2 ?
    Will a Windows 2012 RD Licensing server provide licences to a Windows 2012 R2 server?
    I have not tested it, but it should work.  Server 2012 R2 requires the same RDS CAL version as Server 2012.  If you try it and have an issue please reply back.
    -TP

  • Open an program install on Server 2012 as a app with remote desktop

    I have a SQL app loaded on Server 2012. The app runs fine when logged into remote desktop on the server.   The app loads to c:\Program Files (x86)\MSC\MCS.exe.  Remote desktop will not recognize that path to open the .exe file. I
    have tried the following path c:\"Program Files (x86)"\MSC\MCS.exe and still will not see the path string and load up.  I am using the same path in the folder path as well.  I have done hundreds of theses on previous versions but this one
    will not work.  Is there a trick on server 2012?

    I tried every form of the path with the %.  No luck.
    I found that I cannot put a simple .bat file in the temp directory and use the c:\temp\test.bat path and folder c:\temp and get the batch file to run.
    Bill Bollinger

  • Server 2012 RDS - User Profile Disks

    Hello,
    I'm implementing Server 2012 RDS session-based.
    Can I increase the limit of User Profile Disk after it is initially set?
    Is it ok that my Admin user has a User Profile Disk i.e. no local profile on the server as they did previously.
    Are PSTs supported on User Profile Disks - previously PSTs were unsupported on network share - User Profile Disks are on network share.
    I had an issue where a UPD was created for a user - I then delete the UPD. I then logged in as the user (a domain admin) and expected a local profile to be created - this didn't happen. A temporary profile was created instead. This was unexpected.

    Hi Gary,
    You can try to change the size of User Profile Disk by mounting .Vhdx file. Please refer below thread for information.
    Resize User Profile Disks
    As per my research, i can suggest you to use admin local user profile on server.You can get more information for UPD on below listed article.
    1.  Easier User Data Management with User Profile Disks in Windows Server 2012
    2.  Using User Profile Disks (UPD) in combination with predefining the Modern UI Start Screen on RDS 2012 (appsfolder.itemdata-ms)
    Hope it helps!
    Thanks,
    Dharmesh

  • Windows Server 2012 RDS CALs on Server 2008 R2 License Server

    Hi All,
    Can we use Windows Server 2012 RDS CAL license in RDS 2008 R2 Server
    OS:Enterprise Windows server 2008R2
    Licence:Volume
    Looking for forward to hear you soon
    regards,
    Subhash chandran

    On Mon, 24 Nov 2014 10:41:21 +0000, Subhash chandran wrote:
    Can we use Windows Server 2012 RDS CAL license in RDS 2008 R2 Server
    This forum is only for questions related to the Windows 10 Technical
    Preview/
    Please repost your question to either a 2012 or a 2008 forum.
    Paul Adare - FIM CM MVP
    If I had it all to do over again, I'd spell creat with an "e". - Kernighan

  • High availability for Lync 2013 persistent chat server and office web app server

    I have 1500 users, need HA in primary data center and DR also. looking for HA and DR solution for persistent chat server and office web app server.
    is below correct?
    1. 2 persistent chat server in a pool of primary data center and 1 in DR.  can this be reduced or any changes?
    2. 2 Office web app server in a pool of primary data center and 1 in DR.  can this be reduced or any changes?
     also do i need HLB for both roles?

    1) In Lync Server 2013, there are improvements in both high availability and disaster recovery:
    High availability improvements: SQL Server mirroring is used to provide high availability for the Persistent Chat Server content database and Persistent Chat compliance database within a data center (in-site).
    Disaster recovery improvements: Persistent Chat Server supports a stretched pool architecture that enables a single Persistent Chat Server pool to be stretched across two sites (that is, a single logical pool in the topology, with servers in the pool physically
    located across two sites). SQL Server Log Shipping is used for cross-site disaster recovery.
    For more information about high availability and disaster recovery, see
    Configuring Persistent Chat Server for High Availability and Disaster Recovery in the Deployment documentation.
    2) for HA & DR, you can 2 Office web app server in a pool of primary data center and 1 in DR. and You will need HLB for office web app servers
    http://blogs.technet.com/b/meamcs/archive/2013/03/27/office-web-apps-2013-multi-servers-nlb-installation-and-deployment-for-sharepoint-2013-step-by-step-guide.aspx
    Please remember, if you see a post that helped you please click "Vote As Helpful" and if it answered your question, please click "Mark As Answer"
    Mai Ali | My blog: Technical | Twitter:
    Mai Ali

  • Adding favicon.ico to 2012 RDS Web page

    Trying to add a custom favicon.ico to our 2012 RDS Web Access.   I've tried putting it in C:\inetpub\wwwroot and C:\Windows\Web\RDWeb with no sucess.   Any ideas?

    Hello!
    I have same problem.
    I would like change favicon.ico in RD Web Access 2012R2, but i cannot do it. (I try
    https://msdn.microsoft.com/en-us/library/ms537656(v=vs.85).aspx#Create_the_Correct_Size_Icon
    http://www.html-kit.com/support/favicon/favicon-quick-guide/
    http://stackoverflow.com/questions/6296038/favicon-not-showing
    http://stackoverflow.com/questions/9963584/how-to-add-favicon-ico-in-asp-net-site)
    everything does not work.
    How can i change favicon in RD Web Access 2012R2?
    Thank you in advance!

  • SP2 for SQL Server 2012 with SP1 is failed with Error result: -2067529723

    SP2 for SQL Server 2012 with SP1 is failed when start the installtion from command prompt and thorws below errors in Passive node of the cluster.No other errors logged in eventviewer, temp folder and not created any log files in bootstarp folder.An error occurred during the SQL Server 2012 Setup operation.
    Error result: -2067529723
    Result facility code: 1220
    Result error code: 5
    For more information, review SQL Server 2012 Setup logs in your temp folder.It is not allowing to run the sql core setup to uninstall the cluster node and gives same error.Can any one got into the same issue and please help?ThanksPetchikumar

    Hi,
    Can you post summary.txt below link will help you locate it
    https://msdn.microsoft.com/en-us/library/ms143702%28v=sql.110%29.aspx
    Please mark this reply as answer if it solved your issue or vote as helpful if it helped so that other forum members can benefit from it
    My Technet Wiki Article
    MVP

  • Remote Desktop Connection Client 9.3.9600 unable to connect to Server 2012 RDS via Gateway

    Hi,
    I have a Windows Sever 2012 R2 RDS environment with two Gateways servers configured in high availability mode (RD Web Access, RD Gateway, RD Connection Broker roles installed) and four Windows Server 2012 R2 RDS Session Hosts. The servers are all running
    the most recent public server updates. With this configuration I when connecting externally using a Windows 7 computer with the older Remote Desktop Connection client (6.1.7601) I am able to connect without any problems however when I try connecting with a
    newer client from a computer running Windows 8.1 and the 9.3.9600 client I am unable to connect. 
    At the moment a NAT rule is configured to pass 80/443 traffic to only one of the RDS gateway servers, I've removed our load balancer from the configuration for the moment to reduce the complexity. 
    No error is generated by the client when it tries to connect it just stops trying to connect after a while.
    On the Gateways servers event logs for 
    Things I have looked into so far.
    - I've double and triple checked the RDS configuration and checked it against one of my other clients configurations that is working and they are identical. 
    - Connecting from an older client version works fine.
    I'm not sure what else can be checked does anyone have any ideas?

    Hi,
    1. What entries are you seeing in the RD Gateway's log?  Event Viewer\ Applications and Services Logs\ Microsoft\ Windows\ TerminalServices-Gateway
    2. How come you are not forwarding UDP port 3391 in addition to TCP port 443?  It should work without UDP, but you will not have UDP support which is one of the benefits of RDP 8.0/8.1.
    3. Are there any non-default group policy settings being applied to the servers and/or client PCs?  To be clear, I'm asking if any changes have been made to the default local and domain security policies, group policy objects, new GPOs that may have
    been added, etc., that are applicable to the servers and or client PCs.
    -TP

  • Server 2012 R2 - Remote Apps (RDWeb) and Self Signed Certificates!

    Hi all! I have been playing around with VM's on Microsoft Azure just to try and have some Windows Services facing externally that I can play around with and test.
    I have spun up a Windows Server 2012 R2 Server and installed Remote Desktop Services on it. I am looking to publish some remote apps and ideally I am looking to get it to work externally.
    The Server has been given an IP address which is fine, i have gone to my domain and actually setup cloud.mydomain.co.uk and DNS for this is pointing to the IP address of the server. This is all working and functioning! 
    Basically if I go onto my server and connect to the RDweb section and login, i can see my remote apps, i can download the laucher and open them, all works great! :)
    If however, I go to https://cloud.mydomain.co.uk/RDWeb it asks me to login, I can then see my remote apps but when I click on them I get a certificate stating that the computer cannot verify the identity of the RD Gateway. 
    What am i missing....what do I need to do to get this to work?
    If there is some sort of tutorial on how to set this up, fully, from start to finish then that would be great. Otherwise any advice on this would be muchly appreciated!!
    Thanks! :)
          

    #2 sounds like we would need 2 Essentials servers and we will not have that.
    We currently have Server 2008 R2 and have 2012 Standard licenses that are not yet used.
    We have much more than 75 users total, but 75 is more than the number of users that will probably take advantage of using RD Gateway any time soon.  It will probably take time to catch on.
    If RD Gateway usage was to get super popular and more than 75 users were depending on access to it, then we could financially justify paying to buy all the CALs needed to run RD Gateway without Essentials.  Right now, they are skeptical that it will
    be worth spending much money on this and don't want to invest a lot  of money up front.
    My understanding is that if we have 75 or fewer users using RD Gateway then we need to by no CALs, just apply a Server Standard Edition License to the server, but if we had 76, we would need to turn off Essentials and buy 76 new CALs.
    Or would we need to add 50 CALs to the 25 that automatically come with Essentials?
    Also does "turning off" Essentials mean we would have to reinstall and redeploy the RDG or is it just a matter of enabling the RD license server and adding purchased CALs?
    No, when you buy essentials you get the right to create 25 users that access the server, when you create the 26th user you will need to have 26 CAL and RDS CAL. 

  • Server 2012 RDS (Terminal Clients)

    Hi,
    I need help & guide on terminal clients internet access. 
    Q1: How do i enable only 1 terminal client out of 20 current running windows RDP to have access internet?
    Q2: When I need to enable internet access for the terminal client, do i need to enable internet access for the current server or host. (I wish for the server to not have internet access due to it is used in local environment only). 
    I was thinking of GPO and web proxy application but im not sure which is the right tool and whether is it workable.
    Thank You.

    Hi,
    thank you for replying.
    Actually i haven't given the exact scenario that I'm facing.
    Ok here goes, I have a windows server 2012 Terminal Server which run RDS. I also have a another server 2012 which is AD server.
    The Terminal Server is join domain to the AD server.
    Then I have few terminal client that is running dell DETOS OS which use RDP to connect to the 2012 server Terminal Server.
    The users will login and use the accounts that was created on the Server AD so the user profile is in the Terminal Server.
    - I didn't put the gateway on the Terminal Server so the server don't have internet access  so all the login account also don't have internet access because it follow the server setting. 
    - Now i just need to enable 1 user account to have internet access.
    Q1: Should i enforce on the AD or I can just configure it from the Terminal Server itself since the profile is on the server itself?
    Q2: How should I deal with kind of scenario? Any sudgestion?
    Thank You,

Maybe you are looking for