RemoteApp and Desktop Connection - Default Connection URL - Windows Server 2012 R2

Hi,
I'm building an Remote Desktop envoirement for our organisation wich includes the following servers:
2 Domain controllers with Remote Desktop Gateway, Licensing and Broker (1 broker functional, no HA, still in progress of building), RDWeb installed.
2 Remote Desktop Host Servers for the user logins (no applications just the desktop).
2 Remote Desktop Application Servers (RemoteApp) with all of our applications installed.
2 File Servers using DFS replication.
All of those servers are Windows 2012 r2.
Our purpose is to deploy RemoteApp's to the Remote Desktop Host servers using the GPO Default Connection URL.
The problem is that it won't apply to the users who log on to the Remote Desktop Host servers. I'm struggling with this issue for a while now and tried different possible solutions. Such as the delegation credential GPO, making the users local admin, making
the users domain admin etc etc.
My guess is that the GPO hangs on the fact that when i try to manually run the wizard to connect to the RemoteApp and Desktop connections, my credentials are asked. Which i think is odd because i'm already logged in as an domain user. I'm having the exact same
problem with the domain administrator account.
When i'm connecting manually by entering the credentials in the connection wizard everything is working as it should, it just won't connect automatically
Does someone has an solution for this?
Kind Regards,
Geoffrey van Meurs

so am I correct to assume that your issue is really with RemoteApps single sign-on (SSO)?
You have users which RDP to RDSH and again you're attempting to publish RemoteApps in that same environment?
I haven't done SSO but there is a lot of info about it on the web:
http://social.technet.microsoft.com/Forums/windowsserver/en-US/ed4447b5-2958-404b-883c-9aefa038ad61/single-sign-on-remoteapp-and-desktop-connection?forum=winserverTS
Secondly, you may need to look at your GPO loopback settings to ensure the policies are being properly applied.  Use RSOP as well.  Try using a local GPO to see if it makes a difference with a non-admin test user.  Check event logs for GPO
processing errors/conflicts.  Use gpresults, etc.
Something else worth noting here is that RemoteApp publishing is really not meant to be done inside RDSH, it's usually done on the user's workstation, therefore eliminating the need for them to even login to RDSH, reducing the number of hops and complexity. 
For what you're doing, you're better off using RDWeb to publish the applications to them or using the old school method of just having app. shortcuts on the Desktop/Start menu in RDSH since they're already getting a published desktop anyway.  Or just
use RemoteApps on their workstations via GPO.  Just some thought if I'm understanding your goals here, but it sounds like you would need to read up on RemoteApp SSO.

Similar Messages

  • Unable to connect computers to a Windows Server 2012

    I have two brand new Windows 7 Professional computers that I want to connect to a Windows Server 2012 Essentials.  I'm able to download the connector software but when it is searching for the server I receive a message that "Cannot locate or identify
    your server". I tried both with the IP and FQDN but neither works.  I received in the server the following error message:
    Event code: 3005
    Event message: An unhandled exception has occurred.
    Event time: 3/31/2014 8:53:24 AM
    Event time (UTC): 3/31/2014 12:53:24 PM
    Event ID: 916a5b3024ce43549f54a925866b24d9
    Event sequence: 10
    Event occurrence: 1
    Event detail code: 0
    Application information:
        Application domain: /LM/W3SVC/1/ROOT/Connect-1-130407439956811749
        Trust level: Full
        Application Virtual Path: /Connect
        Application Path: C:\Program Files\Windows Server\Bin\WebApps\Client\
        Machine name: DRALHFS-01
    Process information:
        Process ID: 13760
        Process name: w3wp.exe
        Account name: NT AUTHORITY\NETWORK SERVICE
    Exception information:
        Exception type: HttpException
        Exception message: The remote host closed the connection. The error code is 0x800704CD.
       at System.Web.Hosting.IIS7WorkerRequest.RaiseCommunicationError(Int32 result, Boolean throwOnDisconnect)
       at System.Web.Hosting.IIS7WorkerRequest.ExplicitFlush()
       at System.Web.HttpResponse.Flush(Boolean finalFlush, Boolean async)
       at Microsoft.WindowsServerSolutions.Client.Website.Default.TransmitFile(String filePath, String nameToTransmit, Boolean endResponse)
       at Microsoft.WindowsServerSolutions.Client.Website.Default.RunComputerConnector(Object sender, EventArgs e)
       at System.Web.UI.WebControls.LinkButton.OnCommand(CommandEventArgs e)
       at System.Web.UI.Page.ProcessRequestMain(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint)
    Request information:
        Request URL: https://dralhfs-01:443/connect/default.aspx
        Request path: /connect/default.aspx
        User host address: 192.168.1.101
        User: 
        Is authenticated: False
        Authentication Type: 
        Thread account name: NT AUTHORITY\NETWORK SERVICE
    Thread information:
        Thread ID: 8
        Thread account name: NT AUTHORITY\NETWORK SERVICE
        Is impersonating: False
        Stack trace:    at System.Web.Hosting.IIS7WorkerRequest.RaiseCommunicationError(Int32 result, Boolean throwOnDisconnect)
       at System.Web.Hosting.IIS7WorkerRequest.ExplicitFlush()
       at System.Web.HttpResponse.Flush(Boolean finalFlush, Boolean async)
       at Microsoft.WindowsServerSolutions.Client.Website.Default.TransmitFile(String filePath, String nameToTransmit, Boolean endResponse)
       at Microsoft.WindowsServerSolutions.Client.Website.Default.RunComputerConnector(Object sender, EventArgs e)
       at System.Web.UI.WebControls.LinkButton.OnCommand(CommandEventArgs e)
       at System.Web.UI.Page.ProcessRequestMain(Boolean includeStagesBeforeAsyncPoint, Boolean includeStagesAfterAsyncPoint)
    Custom event details:
    This event entry appears every time I try to connect the machines.  I have verified the DNS entries and resolution and it works correctly. Any advise will be greatly appreciated.
    Thanks,
    Hector M. Devarie

    Hi Hector M.Devarie,
    Would you please check if can ping the server successfully by using server name and IP address? Please temporarily
    disable firewall and then connect to server again. And monitor the result.
    You descript “I'm able to download the connector software”. Would you please let me know the complete error
    message when can’t download. Or provide a screenshot, it will help me to understand this issue clearly.
    By the way, please check if IIS run as normal in the server.
    Hope this helps.
    Best regards,
    Justin Gu

  • Domain computers can't runt RD Web applications when connected from outside company – Windows server 2012 R2

    Hi Everyone,
    I have a question related to RDweb service.
    I have successfully installed RD web role on windows server 2012 R2.
    All went ok. I also installed a valid third party certificate.
    I can connect from outside to the server and run applications using any devices: Ipad’s, mobiles and laptops.
    The problem is that: Any Computer/Laptop that is joined on the domain can connect to RDWEB from outside the company BUT CAN'T RUN ANY APPLICATIONS. The RD session is taking long time it failes.
    Note that from inside the network is working.
    What it can be?
    Thank you in advance,
    Criss

    Hi,
    The internet connection from where I’m doing the tests is quite good. I think the error with the latency is not relevant because probably the computerRD gateway it doesn’t allow it and that way it fails with this error. For a computer that never been joined
    on the domain is working perfect no delay at all..
    We are using RD Gateway … installed everything on the same machine Windows server 2012 R2.
    When I click RemoteApp I see the remote the prompt of RD gateway, I click ok, then nothing happened for 2-3 min. after this time it brings the error with the delay.. OR “couldn’t connect on the remote computer because an error occurred on the remote
    computer that you want to connect to.”
    Again, the connection is failing ONLY when we try to connect from outside the company and it happened ONLY with the Computers that are joined on the Domain.
    EX: An user (with Office Laptop - joined on domain) can connect to RD Gateway and lunch the RemoteApp’s from inside LAN but when is leaving Home can’t run the Remote App;s. In the meantime he can connect and run RemoteApp’s with his private computer.
    What it can be different between the Office and his home private computer?
    For Outside users we’ve have open only port 443 on firewall. Why need to open UPD 3391?
    I’ve notice that if I take a laptop that is working and join it on the domain it will have the same issue. If will dis-join it will still have the same issue after all.
    Thank You

  • Got Display driver via Windows Update for Windows 8.1 and try to use it for Windows Server 2012 R2

    Hi Everyone,
    the following driver cab is from Windows Update:
    https://onedrive.live.com/?cid=5be01620eea95d8c&id=5BE01620EEA95D8C!138&ithint=file,.cab&authkey=!APDi54-R1Ob5IWQ
    It includes this display driver:
    Intel(R) Q45/Q43 Express Chipset (Microsoft Corporation - WDDM 1.1)
    My problem is: I can't install this driver on Windows Server 2012 R2.
    I tried the following, nothing worked:
    a) pnputil -i -a intel.cab
    b) Extract cab, update the device's driver in device manager, select "search for driver software in this location"
    c) copy the files in system32/, system32/drivers, syswow64/ from a Windows 8.1 system to a Windows Server 2012 R2 system
    Isn't it true that any Windows 8.1 driver should also work for Windows Server 2012 R2 (same os version)?
    Thanks for your replies.
    PS: I first posted my question here:
    http://answers.microsoft.com/en-us/windows/forum/windows8_1-hardware/got-display-driver-via-windows-update-for-windows/31c287c8-ef84-4c81-8530-8c51412376b7

    Hi,
    Additionally, did you check this article?
    http://www.driveridentifier.com/scan/download.php?item_id=90475670&scanid=9B44546E3BB9410D877D9A90D1439AF8&hardware_id=PCI%5CVEN_8086%26DEV_2E12
    Regards.
    Vivian Wang

  • Please help - Connection Refused - Mac to Windows Server 2012

    I have downloaded MS Remote Desktop onto my brand new Macbook Air OS X and have tried to connect to my school network - which when logged in says it is "Windows Server2012"
    However each time I try to log in it simply says connections refused.  Nothing more.
    Not sure what I can do next.
    Thank you for any help,
    Laura

    Hi Laura,
    Thank you for posting in Windows Server Forum.
    Are you trying to remote desktop with IP address or hostname?
    Please try both alternate way and check is there any difference between them. Also as suggested by Manouchehr Omari, please see that you have remote desktop enabled on server 2012 and related RDP port (3389) opened for remote connection to take place under
    firewall setting. If possible for a try disable firewall and check. You can get more troubleshooting information from beneath link.
    Remote Desktop Client on Mac: FAQ
    http://technet.microsoft.com/en-in/library/dn473006.aspx
    Hope it helps!
    Thanks.
    Dharmesh Solanki
    TechNet Community Support
    Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Support, contact [email protected]

  • How do I set firefox as the default browser in Windows Server 2012 Group Policy Editor?

    Hello, I am unable to set firefox as the default browser despite multiple different attempts to do so using group policy.
    I have:
    - Set a registry command (targeted at 32/64 via a WMI query) to reset the opening command as shown below:
    HKEY_CURRENT_USER\Software\Classes\http\shell\open\command
    "C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -osint -url "%1"
    - Set a powershell logon script to run (that does run):
    firefox.exe -silent -setDefaultBrowser
    Despite setting the above it seems the client computers browsers are not affected by the settings above. When the script runs or if I run the command above a UAC window pops up and requests that I accept the command (for the setDefaultBrowser) but even if I click yes as an administrator it does nothing.
    Since GPO in 2012 has changed perhaps there is something that I am missing? Do I need to somehow disable Windows Internet Explorer from achieving default browser status?
    Please do not reply if you will suggest that I use Internet Explorer Maintenance (since this function in GPO has been disabled since IE10)
    My DC is Server 2012, my client computers are Win7 32/64.

    The above reply does not take into account that I am trying to use GROUP POLICY EDITOR to make it the default browser.

  • RemoteApp and Desktop Connection "Reconnect to RD WebAccess" errors

    I have a Server 2008R2 with RDS setup on our network for 7 users. We have a seperate RDSH server holding the RemoteApp programs. The users all have Windows 7 x64 bit computers and they VPN into our internal network from home and once they are in, they can access
    the RemoteApps via the webfeed. All applications show up correctly and display properly when clicking on them in the Start Menu and under RemoteApp and Desktop Connections menu. If I however go to my system tray and right click on the rdp icon and select the
    "reconnect to remote desktop web access" I get 4 errors and it doesn't connect. Here are the errors I receive:
    There was an error communicating with the endpoint at 'https://servername/RDWeb/Feed/RDWebservice.asmx' The server returned HTTP Status code 404 (0x194) with text 'Not found'. The requested resource was not found.
    There was an error communicating with the endpoint at 'https://servername/RDWeb/Feed/RDWebService.asmx'.
    There were connectivity issues with the web service. Report this error to your Administrator.
    The webfeed address I setup on the 7 client computers is https://servername/RDWeb/Feed/webfeed.aspx.
    Why is it not letting us reconnect that way but letting us connect if going through the start menu and/or opening the RemoteApp and Desktop Connections---> View Resources---> Double clicking on the .rdp file?
    Any help would be greatly appreciated. Thanks.

    The "Reconnect to Remote Desktop Web Access" requires a Windows Server 2012 RD Web Access server, it is not supported by Windows Server 2008 R2 RD Web Access. Unfortunately there is a known bug in our client where it still shows the option to reconnect
    in the taskbar icon even if the server does not support it.
    Hope that helps,
    Travis Howe | RDS Blog: http://blogs.msdn.com/rds/default.aspx

  • I have windows server 2012 R2 and install active directory

    My question is I install active directory in windows server 2012 R2 and create Group Policy. ( These set-up is only for test)
    Have not registered domain only install active directory to test. 
    So the problem is when I created Group policy for my user and put software restriction policy but its affected to my administrator accounts too, No when I open VMware (install Virtual Machine windows XP) and start os then its shows you can not user this
    software as you restricted from installing software (Something like that don't know exact Error). I could not start installed Virtual Machine. 
    Please give me a solution for this.
    This is the setup for a test use only so their not big environment connect with my pc.
    Thanks in advance.
    Regards,
    Krunal

    Hi,
    The following article is talking about creating and managing Group Policy on a Windows Server 2012:
    http://www.thomas-krenn.com/en/wiki/Creating_and_managing_a_Group_Policy_on_a_Windows_2012_Server
    As Darren Blanchard mentioned, if you want to apply the GPO, you could link it to an OU that contain the computer or user.
    Group Policy Overview
    http://technet.microsoft.com/en-us/library/hh831791.aspx
    Please feel free to let us know if you need further assistance.
    Regards.
    Vivian Wang

  • VirtualDisk on Windows Server 2012 R2 Storage Pool stuck in "Warning: In Service" state and all file transfers to and from is awfully slow

    Greetings,
    I'm having some trouble with my Windows Storage Pool and my VirtualDisk running on a Windows Server 2012 R2 installation. It consists of 8x Western Digital RE-4 2TB drives + 2x Western Digital Black Edition 2TB drives and have been configured in a single-disk
    parity setup and the virtual disk is running fixed provisioning (max size) and is formatted with ReFS.
    It's been running solid for months besides some awful write-speeds at times, it seems like the write performance running ReFS compared to NTFS is not that good.
    I was recommended to add SSD's for journalling in order to boost write-performance. Sadly I seemed to screw up this part, you need to due this through PowerShell and it needs to be done before creating the virtualdisk. I managed to add my SSD to the Storage
    Pool and then remove it.
    This seem to have caused some awkward issues, I'm not quite sure of why as the virtualdisk is "fixed" so adding the SSD to the Storage Pool shouldn't really do anything, right? But after I did this my virtual disk have been stuck in "Warning:
    In Service" and it seems to be stuck? It's been 4-5 days and it's still the same and the performance is currently horrible. Moving 40GB of data off the virtual disk took me about 20 hours or so. Launching files under 1mb of the virtual disk takes several
    minutes etc.. It's pretty much useless.
    The GUI is not providing any useful information about what's going on. What does "Warning: In Service" actually imply? How am I supposed to know how long this is supposed to take? Running Get-Virtualdisk in PowerShell does not provide any useful
    information either. I did try to do a repair through the Server Manager GUI but it goes to about 21% within 2-3 hours but drops back down to 10%. I have had the repair running for days but it wont go past 21% without dropping back down again.
    Running repair through PowerShell yields the same results, but if I detach the virtual disk and then try to repair through PowerShell (the GUI wont let me do repair on detached virtual disks) it will just run for a split second and then close.
    After doing some "Googeling" I've seen people mentioning that the repair is not able to finish unless I have at least the same amount of free space in the Storage Pool as the largest drive in my Storage Pool is housing so I added a 4TB drive as
    due to me running fixed provisioning I had used all the space in the pool but the repair is still not able to go past 21%.
    As am running "fixed provisioning" I guess adding a extra drive to the pool doesn't do much difference as it's not available for the virtual disk? So I went ahead and deleted 3 TB of data on the virtual disk so now I've got about 4 TB free space
    on the virtual disk so there should be plenty of room for Windows Server 2012 R2 to re-build the parity or whatever it's trying to do but it's still the same, the repair wont move past 21% and the virtual disk is still stuck in "Warning: In Service"
    mode and the performance keeps being horrible so taking a backup will take forever at these speeds...
    Am I missing something here? All the drives in the pool is working fine. I have verified using various bootable tools so why is this happening and what can I do to get the virtual disk running at full state again? Why doesn't the GUI prompt you with any
    kind of usable information?
    Best regards, Thomas Andre

    Hi,
    Please run chkdsk /f /r command on the virtual disk to have a try. In the meantime, run the following commands in PowerShell to share the output.
    get-virtualdisk -friendlyname <name> | get-physicaldisk | fl
    get-virtualdisk -friendlyname <name> |fl
    Best Regards,
    Mandy
    Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Subscriber Support, contact [email protected]

  • Can't copy and paste files using RDP session in server 2012

    I'm running windows 8, but I have also verified on a windows 7 machine as well. We have server 2012 installed on a machine
    I use remote desktop to get into. I cannot copy files from my local pc and use paste to get them to the server. I could do this with server 2008. Is there some setting I have to change or does this not work with server 2012?
    FYI, clipboard is checked when I open my remote desktop connection window. If I connect into a win server 2008 r2 machine from the same local machine, I can copy and paste files
    just fine.
    - Michael

    Hi,
    I believe RDS clipboard redirection should be enabled by default also on Windows Server 2012. Is there perhaps is a Group Policy Object active that is configured to disable Clip Board Redirection? Either on the computer or the user OU. If not:
    You did not explicitly state this, but I'm assuming that you are running in Application Mode (meaning you did not install the RD Session Host role) ? If so please check the registry on the Windows Server 2012 destination server and look for:
    HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server\Winstations\RDP-Tcp\fDisableClip
    this should be set to
    0, to make allow Clipboard Redirection
    Also check the key below:
    HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server\Addins\Clip Redirector
    This should have: 
    Name
    REG_SZRDPClip
    Type
    REG_DWORD0x00000003
    If you did run the RD Session Host role, and you have done so using a Scenario Based Deployment (Scenario
    Based Deployment of RDS in Windows Server 2012 ) you will have a Remote Desktop Management Service GUI available as pat of the Server Manager with which you can enable or disable ClipBoard Redirection from within a GUI on a Session Collection level
    or you can use PowerShell
    Using Powershell to install, configure and maintain RDS in Windows Server 2012
    Kind regards,
    Freek Berson
    The Microsoft Platform
    Twitter
    Linked-in
    Wortell company website

  • Windows Server Backup scheduled task run successfully but backup do not start (not running) on Windows Server 2012

    Hi,
    A backup job has been setup on Windows Server 2012 (Platform: Win32NT; ServicePack: ; Version: 6.2.9200.0; VersionString : Microsoft Windows NT 6.2.9200.0) via Windows Backup Software UI (Local Backup 1.0).
    It is appearing as a scheduled task "\Microsoft\Windows\Backup\Microsoft-Windows-WindowsBackup" belonging to user 'nt authority\system' in task scheduler.
    The problem is that the Backup job never start despite the scheduled task running and completing successfully (when run automatically or manually)!
    Would you be able to explain why and assist in resolving that issue?
    Here is what we know:
    When the backup is run manually via the Windows Backup Software UI, it works fine.
    When the backup is run via command line (as set in schedule task) in a cmd command prompt (as local/domain 'administrator' or as 'nt authority\system' which is possible by running command prompt via 'PsExec.exe -i -s cmd'), something like "%windir%\System32\wbadmin.exe
    start backup -templateId:{f11eb3aa-74e7-4ff4-a57b-d8d567ee3f77} -quiet", it works fine.
    If you manually run the preset scheduled task while logged in as administrator, the task run and complete successfully but the backup job does not start.
    Idem if you schedule task is run automatically at scheduled time.
    The schedule task run and complete successfully but the backup job does not start.
    It is confirmed by running the following in a command prompt as 'nt authority\system':
    schtasks /run /tn "\Microsoft\Windows\Backup\Microsoft-Windows-WindowsBackup"
    SUCCESS: Attempted to run the scheduled task "\Microsoft\Windows\Backup\Microsoft-Windows-WindowsBackup".
    Despite success result, the Backup job does not start running...
    No errors or warning appears anywhere in Event Logs (Microsoft > Windows > Backup or Task Scheduler) nor in the scheduled task History tab. The schedule task complete successfully but no Backup job is run...
    If scheduled task automatically set by Windows Backup software is duplicated (copied) and set manually it runs fine as 'administrator' and as 'nt authority\system' (subject that 'nt authority\system' is added to the 'Backup Operators' AD group).
    Here is an export of the current pre-set schedule task, is there any settings that need to be changed to make it works?
    <?xml version="1.0" encoding="UTF-16"?>
    <Task version="1.4" xmlns="http://schemas.microsoft.com/windows/2004/02/mit/task">
      <RegistrationInfo>
        <Author>MYDOMAIN\SERVER1</Author>
        <SecurityDescriptor>D:AR(A;OICI;GA;;;BA)(A;OICI;GR;;;BO)</SecurityDescriptor>
      </RegistrationInfo>
      <Triggers>
        <CalendarTrigger id="Trigger 1">
          <StartBoundary>2014-07-14T21:00:00</StartBoundary>
          <Enabled>true</Enabled>
          <ScheduleByDay>
            <DaysInterval>1</DaysInterval>
          </ScheduleByDay>
        </CalendarTrigger>
      </Triggers>
      <Principals>
        <Principal id="Author">
          <UserId>S-1-5-18</UserId>
          <RunLevel>HighestAvailable</RunLevel>
        </Principal>
      </Principals>
      <Settings>
        <MultipleInstancesPolicy>Parallel</MultipleInstancesPolicy>
        <DisallowStartIfOnBatteries>true</DisallowStartIfOnBatteries>
        <StopIfGoingOnBatteries>false</StopIfGoingOnBatteries>
        <AllowHardTerminate>true</AllowHardTerminate>
        <StartWhenAvailable>true</StartWhenAvailable>
        <RunOnlyIfNetworkAvailable>false</RunOnlyIfNetworkAvailable>
        <IdleSettings>
          <StopOnIdleEnd>false</StopOnIdleEnd>
          <RestartOnIdle>false</RestartOnIdle>
        </IdleSettings>
        <AllowStartOnDemand>true</AllowStartOnDemand>
        <Enabled>true</Enabled>
        <Hidden>false</Hidden>
        <RunOnlyIfIdle>false</RunOnlyIfIdle>
        <DisallowStartOnRemoteAppSession>false</DisallowStartOnRemoteAppSession>
        <UseUnifiedSchedulingEngine>false</UseUnifiedSchedulingEngine>
        <WakeToRun>false</WakeToRun>
        <ExecutionTimeLimit>P3D</ExecutionTimeLimit>
        <Priority>7</Priority>
      </Settings>
      <Actions Context="Author">
        <Exec>
          <Command>%windir%\System32\wbadmin.exe</Command>
          <Arguments>start backup -templateId:{f11eb3aa-74e7-4ff4-a57b-d8d567ee3f77} -quiet</Arguments>
        </Exec>
      </Actions>
    </Task>
    Thank you in advance for your feedback.

    Once again, the issue is not to run the backup manually from the command line but to have it run via the scheduled task setup by the Windows Backup software.
    By default, the schedule task is to be run as NT Authority\System, and when run under this account, the backup does not start (even though account is member of Backup Operators) and job can manually be run via elevated command prompt. This is not a normal
    behavior and constitute a major bug in Windows Server 2012.
    From my understanding the NT Authority\System account is a built-in account from Windows that should by default be part of the Administrators group (built-in) even though it does not explicitly appears like it in AD by default.
    This account shall have by default Administrators rights and Backup Operators rights (via the Administrators group) without being explicitly added to those groups (http://msdn.microsoft.com/en-gb/library/windows/desktop/ms684190%28v=vs.85%29.aspx). By design
    it is supposed to be the most powerful account which has unrestricted access to all local system resources. If that is not the case (as it seems) then this would constitute a major bug in Windows Server 2012 edition.
    As said previously and as you confirmed, currently by default NT Authority\System on Windows 2012 server cannot start backup manually via an elevated command prompt unless it is manually added to Backup Operators (or Administrators) group. But wouldn't that
    constitute a bug of Windows Server 2012?
    Our server has not yet been restarted since I added NT Authority\System account to the Administrators group explicitly manually so I cannot yet confirmed it would sort the issue. Indeed it is heavily in use so cannot easily be restarted. Will confirm when
    done.
    We also have an additional problem where after a while of last reboot, part of the Exchange ECP can no longer be properly loaded in the web browser due to compilation error (compilation is done via NT Authority\System account which seems to no longer have
    sufficient right to compile .NET code). What is strange is that it works at first and then stop working at some point... I am hopeful that adding NT Authority\System to the Administrators group would sort this issue as well but once again, that shall not be
    needed!!!
    Could a Windows Server 2012 update introduced some security policy changes or else that prevent NT Authority\System to have full power?

  • Windows Server 2012 Essentials Connector version is more current than server

    In trying to connect a new laptop to domain/server, it kept failing with a message indicating that other software was in the process of installing or that a reboot was pending.  Since neither was the case, I downloaded the current version of the Connector
    software from the Microsoft website to try.  That didn't work either.  It turns out that a pre-installed software component called Intel Smart Connect Tech was keeping the laptop from connecting.  I uninstalled this software and installed the
    connector software and it appeared to connect to the server.  However, it is displayed in the Essentials Dashboard as Offline.  The client (Laptop) displays a message saying "The Windows Server 2012 Essentials Connector version that is installed
    on this computer is more recent that the sever.  Contact the administrator to ensure the server is up to date".  I tried uninstalling the Connector software from Control Panel, but I get a message "Could not delete key \software\microsoft\windows
    server.  Verify that you have sufficient access to that key, or contact your support personnel".  I've tried both with domain admin and local admin credentials.  So, I ignored the message and continued the connector install.  It finished
    and appeared to connect successfully.  The connector version displayed in Control Panel\Programs and Features is correct.  However, the registry entry is not updated and the version error pops up with each login and the Dashboard shows the client
    as offline. 

    Hi C.R.Lowe,
    Based on your description, I’m a little confused with this issue. Before going further, would you please let
    me confirm something more? Thanks for your understanding.
    When connect the client to Windows Server 2012 Essentials, did you mean that use
    http://<servername>/Connect
    and then select Download software for Windows option? More descriptions, please refer to the following article.
    To connect a client computer to the
    server
    If I misunderstand, please don’t hesitate to let me know.
    On current situation, please navigate to the registry path as the error message shows. And check
    Version value and let me know. Meanwhile, please right click
    Windows Server folder in Registry Editor and select “Permissions…”, then check if the account was assigned the correct permission to delete key.
    In addition, please check if you have installed the
    Update Rollup 1 for Windows Server 2012 Essentials
    By the way, please check Event Viewer and some related logs if can find some more clues. If any update, please
    feel free to let me know.
    Hope this helps.
    Best regards,
    Justin Gu

  • DateTime issue in Windows Server 2012 R2

    Hi all,
    I have created a web application. Its working fine in Windows server 2008 R2. I have used Report Server 2005 & Report Viewer 2005 SP1 for reporting. Reporting is working fine in Windows Server 2008 R2. But when I try to run reporting in Windows server
    2012 R2 system I am getting error "start/end date can not be set to a future date". The screen shot is given below:-
    How should I resolve this issue. Any help in this regard would be highly appreciated.
    Thanks.

    Hi Vishwajeet,
    I have tested on my local environment and can't reproduce the issue.
    Could you please check another report with the start data and end date in the report of Report Server 2005 in Windows server 2008 R2 and then run the report in  Windows server 2012 R2  to see if you will also got the issue.
    If you only got the issue when running this report, I suggest you to open and edit the report in designer of the Windows server 2012 R2  to delete and re-create the two parameters to see if the problem will be resolved.
    Please also try to run this report in other broswer to have a check.
    If you also got the issue in other report.
    I recommend you that submit this suggestion at https://connect.microsoft.com/SQLServer/
    If you still have any problem, please feel free to ask.
    Regards,
    Vicky Liu
    Vicky Liu
    TechNet Community Support

  • Windows server 2012 RDSH

    I have application servers running on windows server 2008 R2. Is it possible that i can install session host role on windows server 2008 R2 and web access and connection broker role with windows server 2012.

    Hi,
    Thank you for posting in Windows Server Forum.
    As both have different version OS, we can use some powershell command to manage the RDSH Server 2008 R2 with server 2012. 
    Can 2012 Server Manager manage a 2008R2
    RDS Farm? I'm getting an error
    You can also follow below article for more information.
    RDS8 – Add a 2008 R2 Session Host
    Hope it helps!
    Thanks.
    Dharmesh Solanki

  • Installing terminal server role on windows server 2012 to use for Windows server 2008 R2 machines.

    Dear
    Our current setup is as follows :-
    Active Driectory is in Windows Server 2003.
    Citrix Xenapp version 5.6 with all Xenapp servers in Windows Server 2003
    Now we are upgrading our Citrix farm to 6.5 and all Xen app servers into Windows Server 2008R2.
    We did the configuration and testing; everything works fine except the terminal server is not configured which gives the pop always for the expiry date.
    We do have license for 2012 terminal server which is not possible to downgrade for some reason and managent need to install new Windows Server 2012 for terminal server and activte the licenses.
    My question is :-
    1 Whether Windows Server 2008 R2 will get RDS cal license from Windows Server 2012 terminal server (RDS CAL license is of windows server 2012).
    2. What is the role and features I need to activate in Server 2012 in order to use for Citrix 6.5 (only applicable fetaure for getting the RDS cal license.) 
    3. Whether I can add this 2012 server into domain. Is it possible to add 2012 server into Windows Server 2003 AD. 
    Your early reply is highly appreciated.

    Thanks Jeremy..
    I got exactly the right answers I am lookoing for ..
    I successfully activated the terminal service on the newly created Windows 2012 Server and installed the retail license pack we had of 50+50+25 keys . It later shows the 125 keys successfully applied.
    when I tried to link the Xenapp (Windows Server2008R2) to the license server, it first gives me error that session host service role is not installed on the ternial server. So I installed that role also in the terminal server.
    But now its anothee error as below.
    RDS Cals are not available for this Remote Desktop Session host server, and licensing Diagnostic has identified licensing problems for the RD session host server.
    1. Is it wrong I did by installing session host server role into the terminal server (but really it gave me error like 'session host server role is not running on the license server' when I tried to link the license server).
    2. Is it the problem that Windows Server 2008 R2 will not get license from 2012 RDS CAL license.
    3. whether Clearing house will take time to update the license.
    Your reply is highly appreciated. I need to know whether any other way I can link the Windows Server  2008 R2 Servers (Xenapp) to the license server.

Maybe you are looking for

  • HT204150 Problem with iCloud contacts

    When I am trying to open my iCloud contacts I always get the message that the application cannot be loaded. Any solutions? Other applications as Remiders and Find my iPhone work properly. Thank you in advance!

  • Data template - no xml data?

    Hello, I have a data template that does not seem to want to display my data. I am at a loss as to why… The select works and returns the data correctly. Data I get when I run the select is from SQL Developer: 01-JAN-08     Hourly     1155     31     0

  • BI installation - ECC Problem

    Hi all, In ECC system in tcode SBIW-Business Content DataSources-Transfer Business Content DataSources menu, I see all my datasources in NODENOTCONNECTED tree. why it is in there and how can i fix it? Thanks

  • No Lightroom with Creative Cloud Single App Purchase??

    Numerous websites have posted that Lightroom is included with a Photoshop CC subscription. If this is not the case, Adobe needs to correct this ASAP. I have no option in AAM or CC to install the app. It doesn't show at all. Running Windows 7 with SP1

  • Default the transaction variant created in SHD0 for MIRO

    Hi, We have a requirement where the subsequent Dr/Cr field in MIRO must be invisible. Used SHD0 and created transaction variant and activated the same in standard variant. 1. The variant is showing up in MIRO but it is not defaulting. 2. How can we t