Events 1863 and 2093 post 2003 Migration to 2008 R2

I have migrated AD from a 2003 SBS SP2 server to a 2008 R2 SP1 server using the following article: http://technet.microsoft.com/en-us/library/dd379526.aspx
That was 2 days ago, this morning I noticed the following events in the 2008 error log: Error 1863 and Warning 2093
There appears to be no issue with the domain currently, everyone was able to login in without issue this morning. Both servers are continuing to run, although I plan to demote the 2003 and decommission the hardware if there are no issues (as advised by the
post-migration instructions of the above article). I can provide full text of the events, but I have removed identifying information:
Log Name:      Directory Service
Source:        Microsoft-Windows-ActiveDirectory_DomainService
Date:          2/17/2014 4:18:14 AM
Event ID:      1863
Task Category: Replication
Level:         Error
Keywords:      Classic
User:          ANONYMOUS LOGON
Computer:     SERVERNEW.generic.local
Description:
This is the replication status for the following directory partition on this directory server.
Directory partition:
CN=Schema,CN=Configuration,DC=generic,DC=local
This directory server has not received replication information from a number of directory servers within the configured latency interval.
Latency Interval (Hours):
24
Number of directory servers in all sites:
1
Number of directory servers in this site:
1
The latency interval can be modified with the following registry key.
Registry Key:
HKLM\System\CurrentControlSet\Services\NTDS\Parameters\Replicator latency error interval (hours)
To identify the directory servers by name, use the dcdiag.exe tool.
You can also use the support tool repadmin.exe to display the replication latencies of the directory servers.   The command is "repadmin /showvector /latency <partition-dn>".
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  <System>
    <Provider Name="Microsoft-Windows-ActiveDirectory_DomainService" Guid="{0e8478c5-3605-4e8c-8497-1e730c959516}" EventSourceName="NTDS KCC" />
    <EventID Qualifiers="49152">1863</EventID>
    <Version>0</Version>
    <Level>2</Level>
    <Task>5</Task>
    <Opcode>0</Opcode>
    <Keywords>0x8080000000000000</Keywords>
    <TimeCreated SystemTime="2014-02-17T09:18:14.599176800Z" />
    <EventRecordID>243</EventRecordID>
    <Correlation />
    <Execution ProcessID="504" ThreadID="660" />
    <Channel>Directory Service</Channel>
    <Computer>SERVERNEW.generic.local</Computer>
    <Security UserID="S-1-5-7" />
  </System>
  <EventData>
    <Data>CN=Schema,CN=Configuration,DC=generic,DC=local</Data>
    <Data>1</Data>
    <Data>1</Data>
    <Data>24</Data>
    <Data>System\CurrentControlSet\Services\NTDS\Parameters</Data>
  </EventData>
</Event>
Log Name:      Directory Service
Source:        Microsoft-Windows-ActiveDirectory_DomainService
Date:          2/17/2014 4:18:14 AM
Event ID:      2093
Task Category: Replication
Level:         Warning
Keywords:      Classic
User:          ANONYMOUS LOGON
Computer:      SERVERNEW.generic.local
Description:
The remote server which is the owner of a FSMO role is not responding.  This server has not replicated with the FSMO role owner recently.
Operations which require contacting a FSMO operation master will fail until this condition is corrected.
FSMO Role: CN=Schema,CN=Configuration,DC=generic,DC=local
FSMO Server DN: CN=NTDS Settings,CN=SERVEROLD,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=generic,DC=local
Latency threshold (hours): 24
Elapsed time since last successful replication (hours): 25
User Action:
This server has not replicated successfully with the FSMO role holder server.
1. The FSMO role holder server may be down or not responding. Please address the problem with this server.
2. Determine whether the role is set properly on the FSMO role holder server. If the role needs to be adjusted, utilize NTDSUTIL.EXE to transfer or seize the role. This may be done using the steps provided in KB articles 255504 and 324801 on http://support.microsoft.com.
3. If the FSMO role holder server used to be a domain controller, but was not demoted successfully, then the objects representing that server are still in the forest. This can occur if a domain controller has its operating system reinstalled or if a forced
removal is performed.  These lingering state objects should be removed using the NTDSUTIL.EXE metadata cleanup function.
4. The FSMO role holder may not be a direct replication partner. If it is an indirect or transitive partner, then there are one or more intermediate replication partners through which replication data must flow. The total end to end replication latency should
be smaller than the replication latency threshold, or else this warning may be reported prematurely.
5. Replication is blocked somewhere along the path of servers between the FSMO role holder server and this server.  Consult your forest topology plan to determine the likely route for replication between these servers. Check the status of replication using
repadmin /showrepl at each of these servers.
The following operations may be impacted:
Schema: You will no longer be able to modify the schema for this forest.
Domain Naming: You will no longer be able to add or remove domains from this forest.
PDC: You will no longer be able to perform primary domain controller operations, such as Group Policy updates and password resets for non-Active Directory Domain Services accounts.
RID: You will not be able to allocation new security identifiers for new user accounts, computer accounts or security groups.
Infrastructure: Cross-domain name references, such as universal group memberships, will not be updated properly if their target object is moved or renamed.

Hi,
The guide you are using is not for SBS. If you look at the detailed supported migration scenarios you will see this matrix:
Source server   processor
Source server operating system
Destination server operating system
Destination server processor
x86- or x64-based
Windows Server 2003 with Service Pack 2 (SP2)
Windows Server 2008 R2, both full and Server Core installation   options
x64-based
x86- or x64-based
Windows Server 2003 R2
Windows Server 2008 R2, both full and Server Core installation   options
x64-based
x86- or x64-based
Windows Server 2008, both full and Server Core   installation options
Windows Server 2008 R2, both full and Server Core installation   options
x64-based
x64-based
Windows Server 2008 R2
Windows Server 2008 R2, both full and Server Core installation   options
x64-based
x64-based
Server Core installation option of Windows Server 2008 R2
Windows Server 2008 R2, both full and Server Core installation   options
x64-based
There is no Small Business Server specified.
This forum is not really for SBS migrations and you can also ask on the SBS forums
for better advice about SBS.
And yes, if you want to decommission the SBS server, running as a DC, you will at some point have to transfer the FSMO roles to the destination server. Please follow the steps in the guide I posted earlier to migrate the roles or applications that you need.
And also ask more details on the SBS forums.
Marius
http://mariusene.wordpress.com/

Similar Messages

  • Events 1863 and 2093 post SBS 2003 SP2 Migration to 2008 R2 SP1

    I have migrated AD from a 2003 SBS SP2 server to a 2008 R2 SP1 server using the following article: http://technet.microsoft.com/en-us/library/dd379526.aspx
    I realize now that this was not the right article as it is for 2003 SP2 Standard, however I don't need to migrate Exchange or other applications.
    That was 3 days ago, yesterday morning I noticed the following events in the 2008 error log: Error 1863 and Warning 2093
    There appears to be no issue with the domain currently, everyone was able to login in without issue this morning. Both servers are continuing to run, although I plan to demote the 2003 and decommission the hardware if there are no issues (as advised by the
    post-migration instructions of the above article). I don't need the 2003 SBS server anymore, should I just transfer the FSMO's now and demote the server?
    I can provide full text of the events, but I have removed identifying information:
    Log Name:      Directory Service
    Source:        Microsoft-Windows-ActiveDirectory_DomainService
    Date:          2/17/2014 4:18:14 AM
    Event ID:      1863
    Task Category: Replication
    Level:         Error
    Keywords:      Classic
    User:          ANONYMOUS LOGON
    Computer:     SERVERNEW.generic.local
    Description:
    This is the replication status for the following directory partition on this directory server.
    Directory partition:
    CN=Schema,CN=Configuration,DC=generic,DC=local
    This directory server has not received replication information from a number of directory servers within the configured latency interval.
    Latency Interval (Hours):
    24
    Number of directory servers in all sites:
    1
    Number of directory servers in this site:
    1
    The latency interval can be modified with the following registry key.
    Registry Key:
    HKLM\System\CurrentControlSet\Services\NTDS\Parameters\Replicator latency error interval (hours)
    To identify the directory servers by name, use the dcdiag.exe tool.
    You can also use the support tool repadmin.exe to display the replication latencies of the directory servers.   The command is "repadmin /showvector /latency <partition-dn>".
    Event Xml:
    <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
      <System>
        <Provider Name="Microsoft-Windows-ActiveDirectory_DomainService" Guid="{0e8478c5-3605-4e8c-8497-1e730c959516}" EventSourceName="NTDS KCC" />
        <EventID Qualifiers="49152">1863</EventID>
        <Version>0</Version>
        <Level>2</Level>
        <Task>5</Task>
        <Opcode>0</Opcode>
        <Keywords>0x8080000000000000</Keywords>
        <TimeCreated SystemTime="2014-02-17T09:18:14.599176800Z" />
        <EventRecordID>243</EventRecordID>
        <Correlation />
        <Execution ProcessID="504" ThreadID="660" />
        <Channel>Directory Service</Channel>
        <Computer>SERVERNEW.generic.local</Computer>
        <Security UserID="S-1-5-7" />
      </System>
      <EventData>
        <Data>CN=Schema,CN=Configuration,DC=generic,DC=local</Data>
        <Data>1</Data>
        <Data>1</Data>
        <Data>24</Data>
        <Data>System\CurrentControlSet\Services\NTDS\Parameters</Data>
      </EventData>
    </Event>
    Log Name:      Directory Service
    Source:        Microsoft-Windows-ActiveDirectory_DomainService
    Date:          2/17/2014 4:18:14 AM
    Event ID:      2093
    Task Category: Replication
    Level:         Warning
    Keywords:      Classic
    User:          ANONYMOUS LOGON
    Computer:      SERVERNEW.generic.local
    Description:
    The remote server which is the owner of a FSMO role is not responding.  This server has not replicated with the FSMO role owner recently.
    Operations which require contacting a FSMO operation master will fail until this condition is corrected.
    FSMO Role: CN=Schema,CN=Configuration,DC=generic,DC=local
    FSMO Server DN: CN=NTDS Settings,CN=SERVEROLD,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=generic,DC=local
    Latency threshold (hours): 24
    Elapsed time since last successful replication (hours): 25
    User Action:
    This server has not replicated successfully with the FSMO role holder server.
    1. The FSMO role holder server may be down or not responding. Please address the problem with this server.
    2. Determine whether the role is set properly on the FSMO role holder server. If the role needs to be adjusted, utilize NTDSUTIL.EXE to transfer or seize the role. This may be done using the steps provided in KB articles 255504 and 324801 on http://support.microsoft.com.
    3. If the FSMO role holder server used to be a domain controller, but was not demoted successfully, then the objects representing that server are still in the forest. This can occur if a domain controller has its operating system reinstalled or if a forced
    removal is performed.  These lingering state objects should be removed using the NTDSUTIL.EXE metadata cleanup function.
    4. The FSMO role holder may not be a direct replication partner. If it is an indirect or transitive partner, then there are one or more intermediate replication partners through which replication data must flow. The total end to end replication latency should
    be smaller than the replication latency threshold, or else this warning may be reported prematurely.
    5. Replication is blocked somewhere along the path of servers between the FSMO role holder server and this server.  Consult your forest topology plan to determine the likely route for replication between these servers. Check the status of replication using
    repadmin /showrepl at each of these servers.
    The following operations may be impacted:
    Schema: You will no longer be able to modify the schema for this forest.
    Domain Naming: You will no longer be able to add or remove domains from this forest.
    PDC: You will no longer be able to perform primary domain controller operations, such as Group Policy updates and password resets for non-Active Directory Domain Services accounts.
    RID: You will not be able to allocation new security identifiers for new user accounts, computer accounts or security groups.
    Infrastructure: Cross-domain name references, such as universal group memberships, will not be updated properly if their target object is moved or renamed.

    Hi JPowered,
    Thank you for posting your issue in the forum.
    I am trying to involve someone familiar with this topic to further look at this issue. There might be some time delay. Appreciate your patience.
    Thank you for your understanding and support.
    Best Regards,
    Justin Gu

  • Help!! cal event created and emailed not posting to ical

    i create a calendar event in outlook at the office and invite my personal email address and then when i look at my ical the event does not show up.. i have the option set so this should happen automatically but it doesn't....please any help would be appreciated, thanks.

    not sure what you mean????
    if i receive and invite from someone (or send to myself for that matter) the event should be automatically posted to my calendar without any action on my part.
    this is what happens when an event is sent to a gmail account (the event is automatically posted on the calendar)

  • Server 2003 R2 DC migration to 2008 R2 worked? but exchange 2007 has stopped

    Hi everyone,
    This is a single DC running on Server 2003 R2 which I migrated to a fresh install of Server 2008 R2. This appears to have worked without issue. DNS is working dcdiag and netdiag didn't report problems.
    When I demote the 2003 server however Exchange 2007 stops working. It appears that it is still looking to talk to the 2003 server based on this
    EVENT ID: 2012 All DC Servers in use are not responding DC.mydomain.com
    Can anyone help fix this issue pls. I cant find where Exchange has stored the old domain name.
    TYIA

    TY both for taking the time to reply.
    I have gotten to the problem. The fact you both pointed me to event 2080 was instrumental in guiding me down the right path. Once I read this MS article I could see the new DC was missing
    the SACL rights. This was a tad frustrating as I had previously checked that Manage auditing and security log was correctly configured in the Default Domain Controllers Policy, was applied to Domain
    computers and the new server was in the correct container.
    However when your up to your ass in a croc filled swamp you sometimes forget the odd thing; I didn't run RSOP, if I had at the time, I would have never have had to post for help. Yes you guessed it the policy wasn't enabled!! A quick enable and gpupdate
    /force and all was well.
    Still, always the optimist, I learned about event 2080, and uncovered and fixed problems with the clients servers where they had ghost nics....
    Just to clarify in case others read this post.
    This wan't SBS
    It was a single DC domain running on server 2003 R2 x64
    Exchange 2007 running on a seperate server 2003 R2 x64.
    The domain name didn't change. What I meant was the new DC had a different name
    the New DC is a fresh install of server 2008 R2,  IPv6 is enabled
    The old DC had adprep /forestprep then adprep /domainprep run on it
    The 5 fsmo roles were moved from the old DC to the 2008 DC
    Just need to move DHCP and other bits n pieces and job done :)
    Thanks for the help

  • 2012R2-Ess. event 12072 and error 401 (not authorized) when doing checkhealth

    Hello,
    I installed wsus on a fresh installed Windows Server 2012R2 Essentials (german) and "wsusutil checkhealth" gives me Event 12072 and 13002
    The WSUS Content Directory is not accessible (Es kann nicht auf das WSUS-Inhaltsverzeichnis zugegriffen werden.)
    System.Net.WebException: Der Remoteserver hat einen Fehler zurückgegeben: (401) Nicht autorisiert.
    (remoteserver gave error back: 401, not authorized)
       bei System.Net.HttpWebRequest.GetResponse()
       bei Microsoft.UpdateServices.Internal.HealthMonitoring.HmtWebServices.CheckContentDirWebAccess(EventLoggingType type, HealthEventLogger logger)
    What I did:
    installed server 2012R2 Essentials
    did a domain migration from a 1-Server 2003 Domain to this 1-Server 2012 Domain the old 2003 server hosted a wsus server
    installed wsus as a role, content directory: D:\wsus (not created before, was created automatically by wsus setup/config)
    ran the wsus config, products: Server 2012 only
    grant "Network service" Full Access in D:\ and D:\WSUS
    grant "Network service" Full Access in %windir%\.Net\Framework\v4..\Temporary ASP .Net Files
    tried to grant "Network service" Full Access in IIS-Manager > WSUS-Management > APIRemoting30 but got some "access denied" errors here, although i am administrator
    "D:\WSUS\WsusContent\anonymousCheckFile.txt" exists, is empty
    icacls D:\wsus\wsuscontent
    NT-AUTORITÄT\Netzwerkdienst:(OI)(CI)(F)
    ROESRATH\WSUS Administrators:(OI)(CI)(F)
    NT-AUTORITÄT\Netzwerkdienst:(I)(OI)(CI)(F)
    VORDEFINIERT\Administratoren:(I)(OI)(CI)(F)
    NT-AUTORITÄT\SYSTEM:(I)(OI)(CI)(F)
    http://localhost/connect/Server.aspx still works
    Unfortunately I did not find anything about this 401 not authorized in the web :-((
    Hope, anyone could help me
    Regards
    Uwe

    icacls D:\wsus\wsuscontent
    NT-AUTORITÄT\Netzwerkdienst:(OI)(CI)(F)
    ROESRATH\WSUS Administrators:(OI)(CI)(F)
    NT-AUTORITÄT\Netzwerkdienst:(I)(OI)(CI)(F)
    VORDEFINIERT\Administratoren:(I)(OI)(CI)(F)
    NT-AUTORITÄT\SYSTEM:(I)(OI)(CI)(F)
    The USERS group appears to be missing from this list. Since it is the USERS group that grants permissions to IIS_USR for anonymous access, and the /Content v-dir is an anonymous resource, almost certainly the absence of the USERS group is causing the '401'
    errors. The USERS group requires Read & Execute access on the folder tree.
    Also, there may be complications because this machine is a Domain Controller. Domain Controllers and WSUS on Windows Server 2012 do not play nicely together, but it would seem you're already past most of those known hurdles. However, I do find these two
    references to be ambiguous:
    ROESRATH\WSUS Administrators:(OI)(CI)(F)
    VORDEFINIERT\Administratoren:(I)(OI)(CI)(F)
    The Administrators group should have Full Control, as should the WSUS Administrators group. If this machine is a Domain Controller, then those would actually be the DOMAIN\Domain Admins group and the DOMAIN\WSUS Administrators group. But in this instance,
    these two groups have different scope references: ROESRATH vs VORDEFINIERT.
    Lawrence Garvin, M.S., MCSA, MCITP:EA, MCDBA
    SolarWinds Head Geek
    Microsoft MVP - Software Packaging, Deployment & Servicing (2005-2014)
    My MVP Profile: http://mvp.microsoft.com/en-us/mvp/Lawrence%20R%20Garvin-32101
    http://www.solarwinds.com/gotmicrosoft
    The views expressed on this post are mine and do not necessarily reflect the views of SolarWinds.

  • Windows 2003 to windows 2008 r2 migration-non dc

    Hello, 
    Am wondering how can we migrate NON DC windows 2003/2003r2 to windows 2008/2008r2 ?
    Below links explains how to do migration or prerequisites but is anyone already done this project?
    https://technet.microsoft.com/en-us/library/cc755199(v=ws.10).aspx
    Also i have found another blog about about migration windows 2003 to windows 2008, but ""IS IT ONLY FOR DC or APPLIES TO NON DC AS WELL""?
    http://blog.pluralsight.com/upgrading-to-server-2008-from-server-2003
    regards,
    Dharanesh,

    Hello,
    if the installed software is checked to work with the new OS version you can use the installation disk from the new OS version, if the architecture(32bit or 64bit could be ONLY upgraded to the same) is the same, and do an in place upgrade.
    Also keep in mind that you have to check for drivers BEFORE starting.
    Best regards
    Meinolf Weber
    MVP, MCP, MCTS
    Microsoft MVP - Directory Services
    My Blog: http://blogs.msmvps.com/MWeber
    Disclaimer: This posting is provided AS IS with no warranties or guarantees and confers no rights.
    Twitter:  

  • Migrating dns from windows 2003 to windows 2008 on workgroup env

    Hi, We are planning to migrate primary dns server from win 2003 to win 2008. Both the old and new servers will be in work group. I have found few articles on how to proceed.
    1. Configure new dns server 2008 R2 box as a secondary zone and doing a zone transfer for froward & reverse lookups  from the primary Server 2003 machine. Then changing the name and IP of the Server 2008 R2 machine  to
    what the Server 2003 box was (after pulling the Server 2003 box off the network) as well as setting the 2008 R2 box as the primary. Neither of the servers will be connected to a domain at any point during or after this process.
    2. Copy registry keys and dns files from old to new server
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\DNS Server\Zones
    Right click on the “Zones” node and choose “Export“. Save the export as a .reg file (e.g. DNS.reg).
    Copy the DNS.reg file to the destination server and “Merge“.
    Copy the DNS files
    Copy the contents of the %SystemRoot%\System32\DNS folder from the source machine to the same folder on the destination machine. I received an permissions error while trying to transfer the “Samples” folder. It is not necessary to transfer the samples.
    Set the DNS Load method
    Using the Administrative Tools -> DNS MMC snap-in, on the “Advanced” tab, set the “Load zone data on startup:” to “From registry“. This tells the DNS server to load all zone data from the registry.
    Then change the ip address and hostname of the new server to match that of the old ones and start dns service.
    I was wondering which method would be easy and hassle free as I have like 23 zones to transfer.
    Any help would be appreciated.
    Thanks,
    Lakshmi Soma

    I would go with the first method as I always try to avoid making registry changes which might result in strange behaviors.
    This posting is provided AS IS with no warranties or guarantees , and confers no rights.
    Ahmed MALEK
    My Website Link
    My Linkedin Profile
    My MVP Profile

  • Public Folder Free/Busy event 4003 and 4004

    Hello,
    We migrated from exchange 2003 to 2010. Migration was successfull; all mailboxes are moved, public folder replicated and exchange 2003 was uninstalled like it should.  Public Folder Hierarchy was moved to the new administrative group.
    Since the last exchange 2003 server was uninstalled, we get events 4003 and 4003 on our CAS servers.
    event id 4004
    Process Microsoft.Exchange.InfoWorker.Common.Delayed`1[System.String]: Unable to find a public folder server for organizational unit (OU) EXCHANGE ADMINISTRATIVE GROUP (FYDIBOHF23SPDLT).
    The service will attempt to find a random server, which may take a longer time to service the request.
    event id 4003
    Process Microsoft.Exchange.InfoWorker.Common.Delayed`1[System.String]: DAVPublicFolderRequest for 1 mailboxes at EXCHANGE ADMINISTRATIVE GROUP (FYDIBOHF23SPDLT) failed.
    The exception returned is Microsoft.Exchange.InfoWorker.Common.Availability.PublicFolderRequestProcessingException: The public folder server for the given legacy mailbox was not found.. The request information is
    <Null>.
    . Name of the server where exception originated: CAS1. The Availability service could not successfully retrieve Schedule+ free/busy data for one or more legacy Exchange mailboxes.
    To find the root cause of this error, increase the diagnostic logging level of the MSExchange Availability service
    I have set the log level to expert, but no additional usefull information showed up.  I can't find any legacy mailbox on the exchange 2010 servers.
    I didn't receive any complaints about availability information so far. (all clients on OL2010)
    Anyone an idea on how to solve this issue?
    Thanx

    http://social.technet.microsoft.com/Forums/exchange/en-US/3203b390-d52a-4e81-8a7e-c2266d909589/exchange-2010-cannot-see-freebusy-for-exchange-2003-mailboxes?forum=exchange2010

  • HT2513 iCal string of events repeat and end on a given date?

    Is there a way to have any given string of events repeat and end on a given date?
    Example, I have a different training regiment for each day leading up to an event/date and then will have the same training regiment again leading up to another event. I want each day's training regiment to show up as an event per day... but don't want to have to post each days repeat string of training prior to each event... and they don't nessecarily repeat monlthy or regularly... I want to set an end date and all the training fill in from that date backwards. Is this possible??

    Does this work any better? New-jobtrigger requires a datetime object.
    $csv6=Import-Csv D:\Lzero\Coll_Schd\Dependent_List.csv
    foreach($cs in $csv6)
    {$sys=$cs.CI
    [datetime] $schd=$cs.RebootSchedule
    $user="Domain\username"
    $paswd=ConvertTo-SecureString -String "P@ssWord" -AsPlainText -Force
    $Credential=New-Object -TypeName System.Management.Automation.PSCredential -ArgumentList $user,$paswd
    Register-ScheduledJob -Name System_Restart -ScriptBlock {
    Restart-Computer -ComputerName $sys -Force -wait} -Trigger (New-JobTrigger -At $schd -Once) -ScheduledJobOption (New-ScheduledJobOption -RunElevated) -Credential $Credential

  • Allow Non-Administrator accounts to create event sources and write to event logs

    We are setting up BizTalk 2013 in Windows Server 2012 and one of the requirements is to allow the service account to create sources and write in event logs (Application) of the BizTalk servers. We have found what it seems to be a simple solution for this
    without giving service accounts local admin rights.
    Give Full control for the following registry keys to the service accounts or groups to allow creating of event sources and write to event logs:
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\EventLog
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\EventLog\Security
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\EventLog\Application
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\EventLog\Security
    Note: when changing permissions for EventLog key, the child keys will inherit the permissions by default except Security key which must be done manually.
    Initial tests using a .net test app seems to work as expected. New event sources are being created in the event logs and writing to the event logs after that works perfectly.
    The above method has been deployed in production and this is the most suitable solution for us.

    Hi Keong6806,
    Thanks a lot for posting and sharing here.
    Do you have any other questions regarding this topic? If not I would change the type as 'Discussion' then.
    Best Regards,
    Elaine
    Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Subscriber Support, contact [email protected]

  • Oracle 8.1.5  windows NT 32 BIT and we want to migrate to 10.2.0.1 on windo

    We have Oracle 8.1.5 windows NT 32 BIT and we want to migrate to 10.2.0.1 on windows 2003 64-BIT
    Please suggest me what is best way ...to go for export import or taking cold backup and migrate
    Think twice because i m going for production
    ANY UPDATES!!!!!!!!!
    Message was edited by:
    user531314

    Depends on how big is your database.
    For small database, doing a export and import is quick and dirty.
    For larger database, I would suggest migrate the database. But this means a lot of work and test. This is what I would do if I am doing amigration:
    1. Do a cold backup of your 815 database
    2. On your new test box, try to install 815 and start your old database
    3. Upgrade your database to 8174
    4. Install 10gr2 on your new test box
    5. Migrate your 8174 database to 10gr2.
    6 Test a lot
    7. Repeat steps 1-6 2-3 times
    8. Document tthe process and your test results completely.
    9. Repeat what you document on your production box.

  • Windows : Syncing photos Events, Faces and Places from Phtoshop Elements 8

    Hi everyone,
    I buy an iPad yesturday and i try to sync my photos.
    I'm a PC user (windows 7 x64) so I try to use Photoshop Elements 8 in order to sync my photo with iTunes as describe in the iTunes manual.
    Unfortunatly, I can sync the photo albums only ... but I can't sync events, faces and places information...
    Is it normal ? Doesn't PSE 8 support the syncing of these information ??
    If this is correct, is there an issue to have a full support in iPad Photo or do you know some app able to sync this ?
    Thanks for your replies and excuse my english!
    Mathieu from France.

    Your English is better than my French.
    For the folders syncing with windows pc's Photo albums:
    1) Create a master sync folder on your pc with no photo files at the root level of the folder.
    2) Create sub-folders within the master sync folder with the subfolders named what you want the ipad's photo albums to be named.
    3) Place the photo files you want to sync in the appropriate subfolder within the master sync folder.
    4) In itunes on the photos tab, select the master folder as the sync folder.
    5) After syncing, each subfolder will be an album on the ipad with the proper photos contained there-in.
    For the Places; The ipad should display Places information for any photo with geotagging data. This is stored with the photo in the metadata. It is the Lat/Long of the photo. This info must be included on the photo file before syncing.
    For the Events, I use separate folders within the master sync folder for each event. (see above).
    I am not sure how Events and Faces works with PSE8 or if the method PSE8 uses is compatable with the ipad. iPhoto on a mac works for events and faces on the ipad, based on posts I have read here.

  • Events missing and photos in new iPhoto update

    Events missing and photos in new iPhoto update

    Moments are the new Events.  All of your events in iPhoto are not Moments in Photo and were also brought over as an album. Open the sidebar with the Option+Command+S key combination and look in the folder titled "iPhoto Events".  There's a way to simulate events in Photos.
    When the library was first migrated there was a folder created titled iPhoto Events and all migrated iPhoto Events are represented by an album in the folder.
    When new photos are imported into the Photos library go to the Last Import smart album, select all the photos and use the File ➙ New Album menu option or use the key combination Command+N.  Name it as desired.  It will appear just above the iPhoto Events folder where you can drag it into the folder
    When you click on the iPhoto Events folder you'll get a simulated iPhoto Events window.

  • When we will go to triggering events programatically and when throgh tab?

    hi experts........
    i am new to work flow can any one tell me that when we will trgger events programatically and when we will trigger through by events tab, what is differnce between them?
    i searce in sdn/google but exactly i didnot get the answer?
    thanks in advance

    Sorry but forum is not for basic training, as you are asking "what are workflow events". Moreover, you should post (more elaborate questions) to workflow forum

  • PKI migration from 2003 to greenfield 2008 R2 plan-of-approach

    Hi,
    I've done a lot of reading here already but I'm on a dead end. Here's my scenario:
    I have 1 Stand-alone root CA plus 2 Enterprise issuing CA's, all running Windows Server 2003. I'm trying to move all servers to a new OS platform: Server 2008 R2. The way I'm seeing this is I have to migrate the Root CA first, then all issuing CA's, so my
    first question is:
    1. Is this correct?
    I followed this procedure:
    http://technet.microsoft.com/en-us/library/cc742388(v=ws.10).aspx. At "To set up a CA on a computer running Windows Server 2008" I specified the backup I made earlier and specified the private key from the 2003 stand-alone root CA. After
    the wizard finishes, I am able to succesfully start the CA on the 2008 server. Next chapter is "Restoring the database and configuration on the target computer". It prompts to shut down the CA service, which I allow, it restores the DB (which
    I point to as part of the wizard), when it finishes restoring, it prompts to start the CA service again. This is where the headache starts; it throws an ADCS error "0xc8000220 (ESE: -544)" and it fails to start.
    The application log on the target server throws the following errors (in chronological order) :
    [source: ESENT - EventID: 916] certsrv.exe attempted to attach database 'C:\windows\system32\certlog\<CANAME> but it is a database restored from a backup set on which hard recovery was not started or did not complete successfully'
    [source: CertificationAuthority - EventID: 17] "Active Directory Certificate Services did not start: Unable to initialize the database connection for <CANAME>. Error: 0xc8000220 (ESE: -544).
    I have no idea as to what this means so my next Obvious question would be:
    2. Please advice in my next step?
    Cheers!
    Check out my blog you-n-it.net

    Kurt,
    Thanks for your reply.
    Unfortunately I'm still not able to migrate an out-of-the-box stand-alone root CA 2003 to a 2008 server. Using the same or another host name. I'm at a dead end. One thing I noticed is:
    When running esentutl /g on the running CA DB (in a lab) things are ok. Running it on the back-upped version of the db, it says it's corrupted. esentutl /r does NOT repair it. esentutl /p does, and afterwards it's verifiable using esentutl /g but it's still
    not possible to bring it online. I've followed
    http://technet.microsoft.com/en-us/library/cc742388(v=ws.10).aspx to the letter and I've read other sites as a comparison (not doubting, merely looking for success stories based on this procedure) and it seems like I'm the only one in the world that's unable
    to perform a successful restore! :( Anywhere I can dig deeper?
    This error is my nemesis: [ESENT: 412] certsrv.exe (2824) Restore0001: Unable to read the header of logfile C:\Windows\system32\CertLog\edb00003.log. Error -546.
    Cheers!
    Check out my blog you-n-it.net

Maybe you are looking for

  • Email Notification on Calendar list Sharepoint Foundation 2013 not sending out email

    Hi, Actually i have 2 problem. I just don't have any idea how to solve them. 1 ) I have a machine installed with Windows Server2012 and Sharepoint Foundation 2013. Email invitation from system and alert me email is working fine. Then I created a few

  • How can I create a custom button for opening a form?

    I have a parent form having child forms. In my main form I want to create custom buttons for opening child forms. I want to use master-detail form but there are more than one child forms, and in master-detail form I can only create one detail form. S

  • "Kuler requires Javascript and the Adobe Flash Player."

    um. I HAVE flash installed. I was using Kuler all day yesterday. Suddenly this "you don't have flash installed" message has appeared. I installed it again anyway. And yet I'm still getting that message. I'm running Firefox 2.0.0.4, Windows XP (SP2).

  • Sidebar Places Folders NOT working as a Smart Folder

    I have three sidebar Places Folders that I originally made, but now they do not work as an expected Smart Folder.  The additional problem is I cannot remove these sidebar folders by simply dragging them OFF the side bar. If I right click on these thr

  • Can you find out and tell me if someone was access...

    Hi, Is there a way that you can find out if someone was getting the feed of our video call earlier today or yesterday? I have a suspicion that someone (I can give you the ID, name etc of the person) from the ISP was watching a private conversation be