Server 2012 R2, TCP/IP has chosen to restrict the congestion window

Hi
I have a set of 2012 R2 remote desktop session hosts on Vmware 5.5 provided by a 3rd party.  Intermittently, they will log the following event:
Log: System
Type: Warning
Event: 4230
Alert Time: 2014-08-25 13:10:23Z
Event Time: 05:10:06 AM 25-Aug-2014 UTC
Source: Tcpip
Category: None
Username: N/A
Computer: xxxxxxxxxxxx
Description: TCP/IP has chosen to restrict the congestion window for several connections due to a network condition. This could be related to a problem in the TCP global or supplemental configuration and will cause degraded throughput.
If I run a netsh int tcp show global, the following is set:
Receive-side scaling state - enabled
Chimney offload state - disabled
NetDMA state - disabled
Direct Cache Access (DCA) - disabled
Receive Window Auto-tuning level - normal
Add-on congestion control provider - none
ECN capability - enabled
RFC 1323 timestamps - disabled
Initial RTO - 3000
Receive Segment Coalescing State - enabled
Non Sack Rtt Resiliency - disabled
Max SYN Retransmissions - 2
I will admit my knowledge on these advanced tcp settings is limited.  Is there anything about what is set that could cause these errors?  Or do I need to worry about them?
Aaron Clegg

Hi Aaron,
For the warning event, usually we do not need to worry more about it if there is any business impaction on that.
From the description of this error, it seems to have a overload when many of the connections access to the session host. In my opinion, it may be caused by the 3rd party application or NIC influence. Have you tried to reset the  TCP/IP stack?
or Could you adjust the offload setting to disable RSS also? You might refer to this
http://support.microsoft.com/kb/951037.
At the same time, I found another same error appearing on windows 8.1, could you see this?
http://social.technet.microsoft.com/Forums/windows/en-US/e3d89862-6613-4515-b504-5b111978308f/tcpip-has-chosen-to-restrict-the-congestion-window-for-several-connections-due-to-a-network?forum=w8itpronetworking
Hope this helps.
Please remember to click “Mark as Answer” on the post that helps you, and to click “Unmark as Answer” if a marked post does not actually answer your question. This can be beneficial to other community members reading the thread.

Similar Messages

  • SBS 2011 VM and Server 2012 R2 Hyper-V host. After rebuilding the host image, no email is received, EMC states "You don't have sufficient permissions to view this data" when looking at organization config. Server config not shown on EMC.

    Hyper-V Host Server 2012 R2 x64 drive c:
    All VMs, including SBS 2011 Standard x64 are on drive d:
    I replaced my motherboard and defined a Marvell RAID 1 Mirror for my boot drive C:.  My drive D: containing all of my Hyper V machines remained untouched since the new MB had Intel Matrix Controller with RAID 5, as did the old MB.
    Since the C: drives are a few bytes smaller after configured as a RAID 1, I was unable to restore drive C from the image copy, so I rebuilt a new Hyper-V Host identical as possible using Server 2012 R2 x64.  I had to redefine the Hyper-V machines on
    the host, and the 1st time I brought it all (host and VMs) I had to reconfigure the NICs due to new MAC addresses, and verifying SBS 2011 DNS and DHCP for all physical and Hyper-V machines. Otherwise my Hyper-V SBS 2011 x(64) wasn't touched.
    Now the SBS Exchange 2010 is not receiving mail.  In the Exchange Management Console clicking on the Organization config gives me a highlighted error "You don't have sufficient permissions to view this data".  The Server
    Config is no longer on the EMC.  The Recipient Config looks fine.
    Outlook 2013 x64 connects to the Exchange Server, but no new mail appeared.  There were just a few older messages that came in since the last time I opened Outlook.  My public DNS on GoDaddy was not changed.  I did not change sending mail
    through my ISP Sonic.net.  The SBS internal DNS doesn't have an MX record, but I'm not sure it ever did since my GoDaddy public DNS has an MX record.
    I tried restoring to an earlier Image Copy, but that made no difference.  I'm using the Windows Backup from SBS 2011 for my daily image copy backups.
    - Michael Faklis

    Hi Michael,
    à
    After more research and running the Best Practices report from the EMC, I am missing a slew of ManagementRolesAndRoleGroups from the RBAC container.
    Based on your description, it seems that you have find the cause of this issue. On current situation, I still
    suggest that you should run
    SBS 2011 BPA and then check if can find some relevant errors. Just for a confirmation.
    Meanwhile, please refer to following articles and check if can help you.
    Apply
    missing Exchange 2010 RBAC Management Roles and Policies
    RBAC Manager
    (Exchange 2010 SP2)
    Hope this helps.
    Best regards,
    Justin Gu

  • Pre-Requisite Check SQL Server 2012 SP2 TCP Port Enabled Error

    When doing the pre-requisite check to install SCCM (CAS) using an instance of SQL Server 2012 SP2, you get the following error even though SQL Server TCP port has been enabled, set to static port 4022 on the IP addresses in use in SQL Server Configuration
    Manager under Protocols for <SQLInstanceName>: configuration manager primary site and central administration site require sql server tcp enables and set to static port
    To resolve this issue, make sure "4022" is also set in the IPAll node in SQL Server Configuration Manager under Protocols for <SQLInstanceName> then restart the SQL Service and re-run the pre-requisite check and you should be good to go.
    To avoid SCCM SQL-related install failure, keep in mind that SCCM SQL Service Broker (SSB) (used to replicate data between database sites) is set to port 4022 by default. This is different from and cannot be same as the tcp static port set in SQL Server
    Configuration Manager under Protocols for <SQLInstanceName>. For example SSB can use its default tcp port 4022 while a static tcp port of 4023 can be set in SQL Server Configuration Manager under Protocols for <SQLInstanceName> or vice-versa. The
    SCCM SSB port number can be adjusted during SCCM installation on the Database Information page. My take it so change SSB port to 4023 and leave SQL default port at 4022 since SQL serves potentially many apps while SSB is used within/by SCCM.
    If you are getting errors relating to SQL Server service running accounts, SQL Server Collation, and/or SQL Server sysadmin rights while attempting to install a primary site, unselect the SCCM installation option to install default settings at the beginning
    of the install process.
    Also, ensure to install important updates and restart the server.

    Thank you for sharing.
    We
    are trying to better understand customer views on social support experience, so your participation in this
    interview project would be greatly appreciated if you have time.
    Thanks for helping make community forums a great place.

  • Sql server 2012 express - tcp/ip connection to named instance using dynamic port not working

    I have a named instance on a SQL 2012 Express server that won't connect via TCP/IP when wanting to connect off of the dynamic port.  I can connect via shared memory locally on the server.   I can connect to the namespace when specifying the
    dynamic port listed in the configuration manager.  
    This is the only named instance on the server and it is not the default.
    TCP/IP is enabled
    Allow Remote connections is enabled
    the server browser service is running
    I can connect via the dynamic port number
    I am testing the connection locally on the server, so I don't believe a firewall is the issue.  I get the same results if I test it from a remote computer.
    When using the sqlcmd (sqlcmd -S tcp:SQLSRVR\NAMEINST -E) I get the message that "the requested protocol isn't supported [xfffffffff]".   The command (sqlcmd -S tcp:SQLSRVR\NAMEINST,59992 -E) works.
    Through SSMS, I get the message "the connection was actively refused".
    On other boxes, I can connect with the named instance without having to specify the port. 
    I have looked through the sql logs and nothing much shows up.  The log does show that is listening on the port # for ipv4 and ipv6.   There is also a line in there talking about the SPN not being registered and not to worry about it if
    you are not using Kerberos.  I logged in through shared memory and it said I was using NTLM.
    Any help would be appreciated.
    thanks.

    Hi clw,
    I’m writing to follow up with you on this post. According to your description, I do a test, if you configure the database engine to listen on a specific TCP port (59992), and
    the port is opened in the firewall. If you want to connect to the SQL Server instance, you 'd better to
    use the port number.
    In my opinion, by default, the default instance of the Database Engine uses port 1433, usually, if you have configured the server to listen on a non-default port number, when an instance of SQL Server uses dynamic port allocation, the connection string that
    is built at the SQL Server client does not specify the destination TCP/IP port unless the user or the programmer explicitly specifies the port. Therefore, the SQL Server client library queries the server on UDP port 1434 to collect the information about the
    destination instance of SQL Server.
    If UDP port 1434 is disabled, the SQL Server client cannot dynamically determine the port of the named instance of SQL Server. Therefore, the SQL Server client may be unable to connect to the named instance of SQL Server. In this situation, the SQL Server
    client must specify the dynamically allocated port where the named instance of SQL Server is listening.
    For more information about configuring an instance of SQL Server to listen on a specific TCP port or dynamic port, you can review the following article.
    https://support.transfrm.com/entries/503111-How-to-configure-an-instance-of-SQL-Server-to-listen-on-a-specific-TCP-port-or-dynamic-port
    Thanks,
    Sofiya Li
    Sofiya Li
    TechNet Community Support

  • How can i use ONE server 2012 to be DC for a domain on the WAN only.. NO LAN. and NO VPN..

    I need to run an active directory that is on a WAN (Utah). a server 2012 standard will be the DC with 60Mbps internet speed both up and downstream.
    approximately 100 clients/member systems will be all over the united states. NO VPN. only via internet. I can use SSL certificate for secure ldap.
    I need this setup to use GPO for different permissions and policies instead of manually doing those on each windows 7 or 8 professional system.
    Ideas??

    Daniel,
    I think since this will be the ONLY system that will be running as a DC providing ADDS and the Direct access server, i should follow this advice from the article you sent:
    For users who never connect directly to the Contoso intranet or through a VPN, they must use the DirectAccess
    Offline Domain Join process to initially join the appropriate domain and configure DirectAccess. When this process
    is complete, the users log on normally and have the same experience as if they were directly connected to the Contoso intranet.
    Because remember, no user will ever connect directly to the subnet where the server is. so do an offline join First and then start managing.. Only thing im worried about is: they keep saying that the direct access function has significantly improved in windows
    8. hmmmmm many systems will be using windows 7 Pro 64Bit. Some windows 8.1 Pro 64bit. should i worry?

  • Can I tell at server-level if a message has been displayed in the Reading Pane in Outlook?

    Hello,
    Does anyone know if there are any traces at server-level (Exchange 2010) if a message has been displayed in the Reading Pane of Outlook 2010? The message would still be marked as Read in the recipient's mailbox.
    Thanks,
    - Alan.

    Hi,
    If you want to know whether an email has been read by recipient, you can either request a read receipt or enable the tracking for read status for messages by using the
    Set-OrganizationConfig –ReadTrackingEnabled:$True command.
    A related blog for your reference.
    Question: Is it possible to check if a message has been read, even when the sender forgot to check the box “Request a Read receipt for this message”?
    http://blogs.technet.com/b/ilvancri/archive/2010/04/13/question-is-it-possible-to-check-if-a-message-has-been-read-even-when-the-sender-forgot-to-check-the-box-request-a-read-receipt-for-this-message.aspx
    Best regards,
    Belinda
    Belinda Ma
    TechNet Community Support

  • Windows server 2012 Data Center with VDI configuration error message ( The remote session was disconnected because there are no remote desktop license servers available)

    Dears,
    I have two windows server 2012 Data Center and I configured (Virtual Desktop Interface)VDI on it's.
    All my clients connected on both of servers by used Remote Desktop sessions ,5 months since.
    Currently,when the clients is connected on the both of servers they received the following error:
    "The remote session was disconnected because there are no remote desktop license servers available to provide license"
    Kindly note, I installed windows Licenses Server Data Center on the both of servers. 
    Regards.

    Hi,
    Please let us know if you have purchased RDS CALs and install it in your RD licensing server.
    Also, on RD Session host servers, please make sure that you have specified the license mode and point them to the RD licensing server.
    Remote Desktop Services Client Access Licenses (RDS CALs)
    http://technet.microsoft.com/en-us/library/cc753650.aspx
    RD Licensing Configuration on Windows Server 2012
    http://blogs.technet.com/b/askperf/archive/2013/09/20/rd-licensing-configuration-on-windows-server-2012.aspx
    Hope this helps.
    Jeremy Wu
    TechNet Community Support

  • How to create a Pooled VDI infrastructure using Win server 2012 as VM image?I have followed the "usual" way to build a pooled VDI desktop using Win7 or Win8 with success, but it fails when I use an image of Win Server 2012 as VM

    I have followed the "usual" way to build a pooled VDI desktop using Win7 or Win8 with success, but it fails when I use an image of Win Server 2012 as VM instead.
    Am I overlooking something?  Should I need to prepare the image in a different way? (Sysprep differently?)
    Thanks

    Hi,
    Thank you for your posting in Windows Server Forum.
    Can you specify the error which you are facing during VDI setup for server 2012?
    I might think that you need to check the memory setting for server 2012, as might happens that due to less memory you can’t setup the VDI setup properly. 
    Memory: If the Master VM is configured with static memory, it must have at least 1024 MB as startup RAM. If the Master VM is configured with dynamic memory, the maximum RAM must be at least 1024 MB.
    Please check beneath article for information.
    Windows
    Server 2012 2,500-user pooled VDI deployment guide (Doc)
    Single Image Management for Virtual Desktop Collections in Windows Server 2012
    Hope it helps!
    Thanks.
    Dharmesh Solanki

  • Just FYI, Windows Server 2012 R2 and Windows Server 2012 BranchCache Deployment Guide in Word format in the TechNet Gallery

    The Windows Server 2012 R2 and Windows Server 2012 BranchCache Deployment Guide is now available for download in Word format in the TechNet Gallery at
    http://bit.ly/1pYZT3F
    Thanks -
    James McIllece

    hello again,
    meanwhile I was lucky to find this article about Idenity Mapping in TechNet in the Storage Team Blog:
    http://blogs.technet.com/b/filecab/archive/2012/10/09/nfs-identity-mapping-in-windows-server-2012.aspx
    Likely to be overseen at the end of one paragraph it says:
    "Client for NFS does not support NFS V4.1 in Windows 8 or Windows Server 2012"
    Question : Is this an official statement and is it still valid with most recent
    Windows Server 2012 R2 that NFS client does NOT support NFSv4.x  ??
    thanks - Rainer

  • Server 2012 R2 Essentials, Remote Website not accessiable, however the //CONNECT is

    Hi there, 
    Question for someone. 
    I don't know when this started.  but after a recent reboot of the server, I noticed that about 3+ days that I'm not able to access the remote.yourdomain.com from my server. 
    So did a quick reboot and I was able to access.  Assuming problem fixed right.   Nope.  3+ days after same issue. 
    When I try accessing the server from localhost/remote.   It doesn't work either, but after a reboot it does.  However, I can access //SERVER/Connnect fine from both localhost/connect, or //servername/connect. 
    When I try to browser, all I get is a Spinning wheel in all browsers, and then nothing. No error code nothing. 
    I've looked at all services, all running fine, event took a snap shot of the service before and after a reboot. None of the services are stopped
    Look at the Application Pools, all running, did a restart of them all to see if that was still didn't' fix the issue. 
    Tried a rebuild or Fix via the small business wizard. 
    Tried access via IP and server name. 
    Tried accessing outside the network same issue. 
    The only thing that does is a reboot. 
    Any ideas on where I should look?  It was working fine, but when it stopped working I don't know. 

    Hi Tech_Kevin,
    Did you remember which operation had been done recently? For examples: install updates or install third-party applications.
    Please use the
    Configuration Troubleshooter tool that Robert created to check IIS and Certificate. Any find?
    -->When I try to browser, all I get is a Spinning wheel in all browsers, and then nothing. No error code nothing.
    Would you please provide a screenshot of the issue? In addition, please add the RWA link in
    Compatibility View and Trusted site in IE, then check if this issue still exist.
    If any update, please feel free to let us know.
    Best regards,
    Justin Gu
    Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Support, contact [email protected]

  • My default downloads folder is on my server at work, so when I'm at home the downloads window won't open and I can't change my download settings.

    I've tried resetting my downloads folder to default, but it just goes back to the downloads folder on my work server that I won't be able to connect to until next month. When I try to select a different download folder, the "browse" button doesn't work. I've also tried selecting the option to ask me where to save each time, but nothing pops up when I try to save something.

    hey jessicats86, please enter '''about:config''' into the locationbar of the browser (you might have to confirm the info message in case it shows up) and search for the preferences named '''browser.download.dir''' & '''browser.download.lastDir'''. right-click each of them and reset the value to the default. then restart firefox and try to set the download folder again in the options panel.

  • All my lenovo apps has been disapeared with the new windows 10

    When I have installed Windows 10 in Lenovo Y-40 (Windows 8.1 before) i have realized that allmy lenovo app has been disapeared and i was searching and i could not find some of these apps. Please help me what i have to do

    You don't unless you keep regular backups of your computer in which case you can restore previous backup files.

  • There was a change in my desktop drag and drop post Lion update! Cannot drag or download to the desktop per se. It has to go into the desktop window in the finder now?

    It is odd: pre update (the latest) I could download to my literal desktop, or drag and drop a photo from iPhoto, an mp3 to mail later from iTunes.....Now I can only do that from within the finder in the "desktop" window. In other words: If I download (I prefer to download onto my desktop rather than the download folder-window. I want to have control over ny desktop again (rather than the folder-window entitled "desktop"....Gratefully, Dennis

    Rereading this question which I wrote after a long night makes me dizzy....But I don't know how to express it differently...I have lost my contol of the desktop you see on my iMac screen with all desktop responsibilities now only available via the finder window entitled "desktop".

  • Firefox 34 has a bug where the Options window is blank.

    When I try to open the Options menu is blank. I'm using FF 34.0.5. This did not happen in version 33. I want to roll back to version 33 pending a fix; but for some reason Windows Restore is not working. Using Windows 7. How can I reinstall version 33?

    Disabling ghostery restored the Options menu; but now I have the problem of certain web site pages hanging on reload because of all the 3rd party ad cookies.

  • Adobe Reader DC has errors and crashes with Windows Server 2012 R2

    We recently installed Adobe Reader DC version of Adobe on our Windows Server 2012 R2 servers and are having issues since the launch. Few of the issues we have seen are as follows:
    This version is a bit clunky and hangs.
    Has a lot of pop-up boxes that appears each time I open a document.
    Each time I open a document there is a Welcome pop-up box
    It is a bit slow to respond between clicks
    If I click on any options like File. The application hangs and then crashes. (see attached crash message)
    Any help to resolve this would be helpful.
    Thank you

    I just had the same issue on a 2012 R2 Remote Desktop server. I fixed it by creating a registry key called Privileged under HKEY_CURRENT_USER\Software\Adobe\Acrobat Reader\DC and then creating a DWORD value in that key called bProtectedMode and setting the value to 0. This was on a brand-new server that never had a previous version of any Adobe software on it.
    This is a major kludge. Hopefully Adobe will fix it soon. By the way, here's the crash signature we were getting:
    Problem signature:
      Problem Event Name: APPCRASH
      Application Name: AcroRd32.exe
      Application Version: 15.7.20033.2203
      Application Timestamp: 5507d7da
      Fault Module Name: AcroRd32.dll
      Fault Module Version: 15.7.20033.2203
      Fault Module Timestamp: 5507d7bf
      Exception Code: c0000005
      Exception Offset: 00a085ad
      OS Version: 6.3.9600.2.0.0.16.7
      Locale ID: 1033
      Additional Information 1: ac05
      Additional Information 2: ac0507478d1c5bd693cfc4fe3987e900
      Additional Information 3: ac05
      Additional Information 4: ac0507478d1c5bd693cfc4fe3987e900
    Reference:
    Protected Mode — Acrobat Application Security Guide

Maybe you are looking for

  • COVER FLOW ISSUES

    OK, I'm stuck with my touch until Friday when the Apple Store near me gets a new batch in so I can replace my screen. So to make the most of it I have been trying to get all the album covers to look great in cover flow. I did what the help section of

  • Email Issue using FM SO_NEW_DOCUMENT_ATT_SEND_API1

    Hi Experts, I am sending few data in through excel(in attachment) using fm SO_NEW_DOCUMENT_ATT_SEND_API1. I wanted to dispaly the data line by line in excel sheet. I properly populated the data in parameter 'contents_bin' i.e. appended the data line

  • How to burn a CD of photos w/jpeg extension on a Mac Book Pro?

    How to burn a CD of photos w/jpeg extension on a Mac Book Pro

  • HT204380 Unable to sign into FaceTime

    I have an iMac running Mac OS X 10.6.8, a verified Apple ID and the latest version of FaceTime.  When I try to sign in the computer 'thinks' for a while then gives me an error message to check my internet connection.  The connection is fine as I can

  • Cannot import development configuration (Track) in developer studio

    Hello, Log in works fine, I can select the track, but when I try to import it, it fails ... error: [code]com.sap.cms.util.exception.conf.CMSCFinderException      at sun.reflect.NativeConstructorAccessorImpl.newInstance0(Native Method)      at sun.ref