Network location awareness

I'm currently using Anyconnect 3.0.  I noticed that the network location awareness only works some of the time in finding our domain.  Does anyone know of any tweaks or settings that could make this more reliable?  We get folks that can connect to the ASA with valid IP but the network connection within Windows 7 says Unidentified network or Unauthenticated network.
Thanks in advance.                  

Hi dom8925,
Are you using 2008R2 or Win7, there have a similar known issue on that platform:
The network location profile changes from "Domain" to "Public" in Windows 7 or in Windows Server 2008 R2
http://support.microsoft.com/kb/2524478
I’m glad to be of help to you!
Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Support, contact [email protected]

Similar Messages

  • Windows could not start the Network Location Awareness service on Local computer

    i have a dell inspiron 1501 laptop running windows vista home premium media center edition. i have recently been getting an error when trying to view networked computer saying  "connection status: unknown" and "the dependency service or group failed to start". i started by disabling and re-enabling the driver and that did not help. i then brought up the services.msc thing and started looking at the networking services. i noticed that the Network Location Awareness service was not started so i tried to start it. i got a popup message saying "Windows could not start the Netwrok Location Awareness service on Local Computer. Error 0xc000096: 0xc0000096".
    i also get an error popup when i try to start the Network List service saying "Windows could not start the Network List Service service on Local Computer. Error 1068: The dependency service or group failed to start".
    what might i have done to make this happen and what can i do to try to fix it?
    haus

    Hi,
    Thank you for the post.
    I fully understand the inconvenience the issue has been caused and the current situation can be frustrating. Please try the following steps for troubleshooting.
    1.    Please start the computer in Safe Mode with Network and check the result. If the issue disappears, please perform a clean boot.
    For the detailed steps, please refer to the step 1 and 2 in the KB article 936214 (http://support.microsoft.com/kb/936214).
    2.    If the issue persists, please check the system file by using the command SFC /scannow.
    For more information, please refer to the KB article 929833 (http://support.microsoft.com/kb/929833).
    If the above suggestions do not resolve the issue that service fails to start up, please understand that debug and dump analysis may be required for further troubleshooting. Also, in most cases, it is necessary to check the source codes. However, debugging is out of our forum’s support boundary. A support call to our product service team is needed for the debugging service. In this case, I’d like to suggest contacting Microsoft Customer Support Service (CSS) for assistance so that this issue can be resolved efficiently.
    To obtain the phone numbers for specific technology request, please check the website listed below:
    http://support.microsoft.com/default.aspx?scid=fh;EN-US;PHONENUMBERS
    Thank you for your understanding.
    Sincerely,
    Joson Zhou
    Microsoft Online Community Support

  • Network location awareness + Registry permissions..

    Hello
    I am currently in the pilot phase of a Windows 8.1 deployment for a mid size client
    We have come across a strange issue. We have been using SCCM 2012 R2 for the deployment - a fairly vanilla deployment. Randomly, a PC will deploy and function correctly, with IE working and networks connecting as you would expect. However, when you open
    Network and Sharing Center, windows says "You are not connected to any networks"
    This prevents also Outlook 2013 from starting up and finding the users mailbox.
    A fix has been found to this:
    Edit the permissions on this registry key and all sub-keys:
    - HKLM \ Software \ Microsoft \ Windows NT \ Current Version \ Network List 
    to allow NetworkService and LocalSystem full access, and restarting the Network Location Awareness service.
    This fix can be scripted and implemented during the OSD Task Sequence.
    Why is this issue happening across the same PC hardware, networks, build process etc etc. Is this a bug with Windows 8.1? 
    I'd certainly like an explanation here.
    Cheers
    Adrian.

    Hi Adrian,
    For the issue, I think the issue is related to your image.
    As you know, the system can change the access permission for Network List.
    But I cannot understand why it occurred randomly.
    I suggest you use a new image to narrow down the issue.
    Regards,
    Kelvin hsu
    TechNet Community Support

  • Network Location Awareness disconnecting Wi-Fi when VPN connected

    Hi All,
    We have VPN software which creates a virtual NIC. When it connects using the Wi-Fi bearer interface we often see that the Wi-Fi connection drops after exactly 60 seconds from the VPN establishing an IP address. We only get this problem when the VPN is used
    on Windows 8. Windows 7 never has this issue. We have looked at NCSI, allowing packets through the Wi-Fi interface, and network profiles nut no success.
    We found that when the "Network Location Awareness" service is disabled (which also stops the dependent services Network List, HomeGroup and Network Connected Devices Auto-Setup) then the Wi-Fi connection is reliable. This leads us to think that
    NLA takes control of the Wireless interface to drop the connection. We cannot find any information on NLA changes in Windows 8, as we don't get the issue on Windows 7.
    Any insight appreciated.
    Alan

    Hi,
    Have you tried to establish a VPN connection with windows integrated VPN client? If it works, it means that the software VPN client affects the WIFI connection.
    If it still doesn’t work, you may check this,
    Try to connect to other Aps.
    Install latest WIFI NIC driver.
    It could be the security software issue. Try clean boot for a test.
    Besides, is there any error or warning related to WIFI or VPN in the event viewer? It is helpful for further troubleshooting.
    Hope this helps.
    Steven Lee
    TechNet Community Support

  • Network location awareness stopped abruptly

    i have a server 2008 host running in a 2008 DC environment. All working fine for over a year into production.
    One day the NLA service just went down, and server stopped servicing clients.
    I managed to start it back by 
    Run the commands 
    net localgroup administrators localservice /add
    net localgroup administrators networkservice /add
    But I would like to know why the service went down just like that. No
    changes to the system permission wise, was made. Or am i missing something here?
    I can see just this event in log "The Network Location Awareness service terminated with service-specific error %%-1073741288.
    Thanks

    Hi,
    Please provide full context of this event. These information is valuable for troubleshooting.
    Thank you.

  • Windows 7 hangs on bootup - Culprit appears to be Network Location Awareness

    We just finished our deployment of Windows 7 a few weeks ago. Everything ran great for a while. This week an issue started popping
    up. Random computers will hang on "Please Wait" during bootup. We can leave them for days and they will stay there. If we disable the Network Location Awareness service, they bootup just fine. Then we re-enable it and everything runs smooth (most
    of the time). A couple of machines experience the issue again on their next reboot. Other machines have had the issue once and then seemed fine after. All machines are the same Dell models (7010) and were imaged with the same image. So far, the only solution
    I've found online is to disable that service and then re-enable it. That works as a band-aid, but does anybody have a permanent solution for this?
    Dave

    Hi,
    We can install windows performance toolkit and then capture a boot trace to look at what happens during boot process:
    http://blogs.technet.com/b/mniehaus/archive/2012/09/13/using-the-windows-performance-toolkit.aspx
    On the other hand, disable the following policy to check if it makes any difference:
    Computer Configuration\Administrative Templates\System\Logon\ Always wait for the network at computer startup and logon
    Also, apply any updated network driver if there is.
    Alex Zhao
    TechNet Community Support

  • New Server 2012 -- Network Location Awareness & Power Failure

    Could you try setting up a dependency or delay on the boot? This would be more of a temporary solution, but should help you confirm that the only issue was with communication with the DC.

    Hello everyone,This is kind of a mixed question of AD/Domain/GPO, Server 2012 R2 Standard, Windows 7 clients, and File Sharing.. please bare with me.We had an interesting event this morning..We have a 2012 R2 STD member file server on the domain. We had a total power failure, and I believe the file server came up faster than any domain controller. Anyhow, we couldn't access the shares on the server. Upon further investigation, I saw that the network location on the file server was 'unknown' and decided to restart the server. After that, it went back to its domain profile.Are there any known solutions to this scenario? Can I force the server to use the domain profile at all times? I've briefly read about the local GP edit trick, but haven't tried it out yet. Apparently, you can allow changes to adapter profiles, and then manually set...
    This topic first appeared in the Spiceworks Community

  • Network Location not showing domain name in Server 2012 R2 after demoting 2003 PDC

    The single active NIC in my new Server 2012 R2 no longer shows the Network Location of "DOMAIN.LOCAL" like it did before I demoted the only Server 2003 domain controller. The NIC now shows "NETWORK" as the Network Location.
    The registry still shows a Profile with the correct PROFILENAME in
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\NetworkList\Profiles
    but that name does not show up in the Network List Manager Policies inside Local Security Policy.
    The 2012 R2 Srv has all of the FSMO roles, Client PC's can connect to the domain but will not get new map drives from a script, they must be created manually. My Quickbooks Enterprise clients cannot see the QB Server Manager on this server and I think it
    is related to this issue because of firewall restrictions.
    The Windows Firewall pointed me in this direction because the "Private Networks" is connected to my NIC named "Network" but the Firewall "Domain Networks" is reported as "Not connected."
    Any Help is appreciated,
    CrazyDog

    Hi,
    Based on my research,
    Network Location Awareness (NLA) service expects to be able to enumerate the
    domain’s forest name to choose the right network profile for the connection. The service does this by calling
    DsGetDcName on the forest root name and issuing an LDAP query on UDP port 389 to a root Domain Controller.
    If something hinders the DNS name resolution or the connection attempt to the DC, NLA is not able to set the appropriate network profile on the connection.
    Therefore, I suggest you check the DNS settings on DCs and other domain-joined machines, which should point to the existing DC as preferred DNS server, and secondary DC as alternate DNS server, IP address of demoted DC should be
    removed. In addition, please do not use loopback IP address.
    Here are some articles below I suggest you refer to:
    Network Location Awareness (NLA) and how it relates to Windows Firewall Profiles
    http://blogs.technet.com/b/networking/archive/2010/09/08/network-location-awareness-nla-and-how-it-relates-to-windows-firewall-profiles.aspx
    Network Location Awareness
    http://technet.microsoft.com/en-us/library/cc753545(v=WS.10).aspx
    Complete Step by Step to Remove an Orphaned Domain controller
    http://msmvps.com/blogs/acefekay/archive/2010/10/05/complete-step-by-step-to-remove-an-orphaned-domain-controller.aspx
    Best Regards.
    Amy

  • How do you change network location type on Server 2012?

    Within Network & Sharing Center there appears to be no options available to change a network type as you could do in Server 2012?
    Within Network List Manager policies everything is set to "not configured" so this should not be disabling any functionality.
    Thanks.

    Hi,
    Firstly, if the server is domain joined, when it starts to detect the network location, the machine will contact a DC via port 389. If this detection successful, it will get the domain profile. And we cannot change it.
    However, if the server is not domain joined, the domain was not found or process failed, NLA will let you to determine which firewall profile will be used, private or public.
    We can do this by referring to
    Turn sharing on or off or
    How to change network location type in Windows 8.
    Also we can refer to
    Network Location Awareness (NLA) and how it relates to Windows Firewall Profiles.
    All the above articles can apply to Windows Server 2012.
    Hope this helps.
    Jeremy Wu
    TechNet Community Support

  • Error Creating PDF - saving to network location

    Using Acrobat Standard 8.1.3
    I am unable to save a PDF to any location on our network.  I am able to save the file to my local hard disk.
    When I create a PDF using the toolbar in MSWord for instance I get a the following message "The system cannont find the file specified"
    When I create a PDF from within Adobe Acobat i get the following message "Unable to open the document xxxxx.doc.  Please check to see if you have read permissions for the above file"
    I can confirm that I have full accesss to the shares I am trying to save the file to.
    I am able to save other types of documents to these shares.
    If I log in as a domain administrator I have the same problem with the same file.
    This is occuring for a lot of our users and has only started happening in the last month.
    Any Ideas?

    Almost every time this problem crops up it is an issue with how Acrobat interacts with the particular network software. I have no idea why, but it seems that the only solution is to save locally and then copy to the network location. This answer is probably not what you wanted, but it is all that I am aware of.

  • Is there a location aware wifi option (or app) that enables wifi at a specific location (home) and automatically disables it when you are away from the specified location?

    I manually turn off my wifi when leaving home for several reasons:
    1. I don't want my wifi to be on and constantly scanning wifi networks while I am away from home due to privacy reasons.  Many retail stores and airports are now tracking users based on their smartphone's wifi pings.  They can then store your phone's MAC address (the unique identifier of your phone) to determine how often you visit the store and where you go within the store.  It's just a matter of time before they match up your phone's MAC address with your credit card/payment info and then to your identity.  The only way to subvert this is to turn off your phone's wifi.
    2. For security reasons: Wifi access points can track devices that broadcast their wifi signal, even if they don't ever actually connect to the access point's network.  These access points can then store your device's details including your phone's MAC address.  Once your phone's MAC address is discovered, it can be targeted by a hacker.  In addition, there are multiple well known hacker tools that can be used to scan for smartphone wifi signals in order to detect and then hack your iphone.  Bottom line: if your wifi is discoverable, then your device is hackable.
    3. I believe it would save battery life if the iphone's wifi is not on and constantly scanning for networks all the time.
    There are other reasons as well, but the above are my 3 main reasons for asking about this.
    The reminders app is location aware - you can set reminders to alert you when you are at a specific location.  So, why not provide the option (or an app) to only enable wifi when you are at home - or any other location where you have an authorized or trusted wifi?
    As it is right now, the iphone's wifi is broadcasting 24/7 everywhere you go.  Not great for privacy & security.  When I turn off my wifi, the phone uses my 4G plan for data and GPS for location services... so wifi is not needed at all for data or location services while I am away from home (and no, wifi does not improve location accuracy, that is a fallacy... there is nothing within the wifi protocol that could ever improve location accuracy).  But the point is, wifi should have a location aware option.  Otherwise, it's just a matter of time before there is a headline story about how not having this feature is a huge security/privacy problem.

    Understood.  However, the point that I'm trying to make is that it's not the WiFi access point's security that's in question, it's having your phone's WiFi in an always-on mode that's in question.  It's simple: if your phone's WiFi is on, then it is both discoverable and hackable... even when it's not connected to a WiFi network or access point.  Here's an article about a drone in London that was created to hack smartphone WiFi signals (and hackers have been doing what this drone does for years):
    http://money.cnn.com/2014/03/20/technology/security/drone-phone/
    The point is that it's not  secure to have your phone's WiFi in an always-on mode.  It would be better for privacy and security if Apple made WiFi location aware so that it is only enabled when you are at a trusted location (e.g. your home or office).  Or, at least give us the option of location aware WiFi so that each user can determine the best mode for their phone:
    (1) Always-On (current default - not secure and many privacy issues).
    (2) Trusted mode (only on at trusted locations).
    (3) Off.

  • Managing Word Templates in Organization on a network location

    Hi
    We use Word 2013 and started to use corporate templates
    currently, our templates are located on our SharePoint Online, which means they're on the web, though most of the users have the template directory synced offline to their local drive with OneDrive for business so choosing and opening templates
    is very easy and friendly.
    The problem
    when someone finished to create a document and want to send it to someone who's not in the corporate network, or even worse, to an external user - their word hangs on the file opening and causes word a massive delay.
    we saw that as a workaround, if the document creator "Divorces" the document from its original template via "Developer >Document Template" and then he send it - the document open smoothly.
    I'm sure it shouldn't be that difficult. we don't need to start educate users to change all their documents' template back to normal
    I don't mind loosing the ability to have the documents update according to their template if something will change on the template in the future.
    we just need the templates as a format starter when creating new documents
    The Question
    what should be the best way to work with templates on a web \ network location that aren't necessary available on the receiver's side?
    thanks
    Tamir Levy

    What you describe is the standard behavior of a document which has lost its template. It is relatively simple include an intercept macro in your templates that attaches documents to the normal template upon the document being saved. Otherwise, you could
    provide a macro that does this and attach it to an icon on the QAT.
    Be aware that you do not want such documents set to update styles from the template automatically.
    What happens when I send my document to someone else? Will Word mess up my formatting?
    Charles Kenyon Madison, WI

  • Please make my iPhone pincode location aware!

    Please make iPhone pincode location aware! So I don't have to retype my pincode everytime I unlock my iPhone when I'm at home!
    For example, my location could be locked to my home wifi connections, so as long as I'm using this connection I'm only once a day asked to give my iPhone pincode. That would be awsome!

    But WiFi is off when the phone is locked, so how would it know you were on your WiFi network, and the GPS is off also, so how would it know where you were?
    What would be much more useful is facial recognition to unlock the phone.
    In any case, we are not addressing Apple in this user to user forum. http://www.apple.com/feedback/iphone.html

  • Manage-bde command is not generating recovery key on network location

    Hi,
    I am trying to save the recovery key to the network share location and start up key in the USB drive while enabling bit locker.When the OS drive gets encrypted, the default folder for recovery password shows that it contains 1 file but not getting anything
    inside it when i checked the properties of the folder.
    i have already changed the group policy as "choose default folder for recovery password".
    I am using the command to enable the bit-locker as "manage-bde.exe -on C: -rk
    <network location to save recovery key> -sk <location of the USB drive>
    -rp to enable the bit-locker. It is generating the start up key in the USB but not the recovery key on network share.
    Can anyone suggest what i am missing or what else i should do to generate the recovery key on network share.
    Does manage-bde process be able to save the recovery key on network share or it hand over to some other process to perform this task.
    Thanks
    Gaurav Ranjan

    I got you Manoj, but I want to ask you one think that what if i lost the startup  key or my USB stick. I have my recovery key on the network share.  In order to log-in my machine I need the recovery password. From where i will get the recovery
    password(48 digit). Surely from the recovery key on the network share. So how can i get the recovery password if only we have the recovery key.
    I know both are different in context. Both are two different thing. I have lost my USB stick along with the recovery password and I have to log-in my machine. How can i do that i want to know that. Do there is any method to get recovery password from the
    recovery key on network share. I have retrieved the recovery password when the recovery key in AD. But this time it is on network share.
    Also one think which I need to solve is that the manage-bde -protectors -add command creates a new .bek file along with the older one. So the .bek file which get shown at the time of the start up of the machine is different from that stored in the network.
    So i am getting confused as which .bek file is for which machine and hard to retrieve the password.
    Is there any method to store recovery key on network without the -protectors -add command line so that both the .bek file should be matched and can easily be known for indiviual machine in an OU. As if both the .bek files will be different it would be difficult
    to to retrieve the recovery password for the machines.
    Please do inform if you need some more information about the scenario if i missed something.
    Thanks
    Gaurav Ranjan

  • File associations in Windows 8.1 for applications on a network location

    Hi,
    From Windows 7 to Windows 8 it has been done alot of changes regarding file file assocations. It seem that the main reason was security and was "patched" by having Windows read the hash for the applications instead of where the application was
    located.
    but there seem to be some major hicups and there is limited info on the web covering these issues.
    First issue: when running:  Dism /Online /Export-DefaultAppAssociations:\\Server\Share\AppAssoc.xml and then creating a GPO configuration pointing to
    thi XML file.  With this feature only common file extensions is supported and when users are changing to another computer, these settings is not possible to syncronize using roaming profiles.
    Second issue: In the appassoc.xml file applications must be either appid(metro app) or common application on local harddrive to be registered and not a .EXE
    file on a network location.
    It seems a little strange if this is the case and if there is no other options for administratos to set file associations in more flexible ways. Does anyone have some more info on
    this topic other than these link:
    https://technet.microsoft.com/en-us/library/hh825038.aspx?f=255&MSPPError=-2147217396
    http://blogs.technet.com/b/mrmlcgn/archive/2013/02/26/windows-8-associate-a-file-type-or-protocol-with-a-specific-app-using-a-gpo-e-g-default-mail-client-for-mailto-protocol.aspx
    https://keithga.wordpress.com/2013/11/13/file-associations-in-windows-8/

    Hi Primeid,
    You could use Group policy for file associations or you could deploy the xml file during image deployment. However as you mentioned that the file associations only applies to common application on local hard drive or metro app.
    http://blogs.technet.com/b/mniehaus/archive/2014/01/10/configuring-file-associations-in-windows-8-1.aspx
    http://blogs.technet.com/b/mrmlcgn/archive/2013/02/26/windows-8-associate-a-file-type-or-protocol-with-a-specific-app-using-a-gpo-e-g-default-mail-client-for-mailto-protocol.aspx
    We understand your confusion about this, but we hope you understand that using network location for file association deployment is highly insecure and it is out of our recommendation since the content in that network location could be changed without any
    notification or permissions constraint.
    Thanks for your understanding.
    Regards
    D. Wu
    Please remember to mark the replies as answers if they help, and unmark the answers if they provide no help. If you have feedback for TechNet Support, contact [email protected]

Maybe you are looking for