Windows 2012 R2 Active Directory Domain Services and Remote Desktop services Role on the same server.

Findings: 
Currently, Windows 2012 R2   AD DS role and RDS With Broker services can only seem to coexist properly in a new domain not an existing domain. Any attempt to add to an existing domain causes internal database user access denied issues and any attempt to
adjust rights and circumvent is dubious at best.
The escalation technician said it best. Out of 50 clients that want to do this, they end up not being able to help 5 right off the bat for whatever reason. As for the other 40 they might be able to help by running reports, adjusting rights and trying to add
the roles until it works.  This can end up being a 20 day process. Basically they are playing whack-a-mole with user rights and permissions until something sticks.
We tried creating an OU where any other domain policies would not be inherited to see if that was the issue, a fresh install with different sequence of adding the Roles, no effect.
Given the errors I witnessed when running procmon and then trying to add the roles, the NT System and the Windows Internal database user had access denied issues on 100+ registry keys when trying to add the roles. After that the system is not behaving normally.
The errors displayed almost mirror the errors that would occur on Windows 2012 when those two roles would be added which of course is officially NOT supported on that system.
This blog needs serious revision:
http://blogs.msdn.com/b/rds/archive/2013/07/09/what-s-new-in-remote-desktop-services-for-windows-server-2012-r2.aspx
This is the excerpt from that blog: Single server RDS deployment including Active Directory. We now support running our RD Connection Broker role service on the same physical instance as an Active Directory Domain Controller.  In addition, we published
guidelines for how RD Session Host could be used without the RD Connection Broker.
Microsoft Support was curteous and helpful and they were the ones who advised cutting our losses, which mirrored my hunch after seeing what was transpiring in the system.  They refunded my money for the support call. 
For me, it was an opportunity to find out if there was any way to configure Windows 2012 R2 in the Same manner that it was setup as Windows 2008 R2 and lay that to rest. The coexistence is poorly implemented. It is as if there was a reaction from all the deprecation
of bread and butter features such as shadowing in TS and the coexistence of AD DS and RDS to where those features were re-added haphazardly. (I have no complaints on shadowing on Windows 2012 R2 it works, just do not like having to go to server manager to
use it).
I opted for virtualizing the Domain controller to eliminate the incompatibility issues and that is what I will be doing from now on. I found free solutions for backing up and reporting for virtual machines as well as the suggested procedures for configruing
a Domain controller as a virtual machine on a Hyper-V environment and I will be sticking to those. Thus far the setup has been operational.
I am not allergic to virtualization, but for really small setups it adds additional time and considerations but if that is how it has to be done, so be it. Windows 2008 R2 days are numbered and since we can usually squeeze 5-7 years on quality server equipment,
buying a Windows 2008 R2 setup now is a borderline disservice in my opinion.
Hopefully someone finds this useful and saves some time.

Hi,
Thank you for posting in Windows Server Forum.
Do you need any other assistance?
Based on your description, you are describing your story of successfully implementing RDS server with AD role and more regarding all RDS related scenario. For shadowing feature, you can use with command also. Below is the syntax to shadow a session.
mstsc /v:<ServerName> /shadow:<SessionID>
Hope it helps!
Thanks.
Dharmesh Solanki
TechNet Community Support

Similar Messages

  • Windows 2012 + hyper-v + mouse not captured in remote desktop session + integrated services installed

    windows 2012 + hyper-v + mouse not captured in remote desktop session + integrated services installed

    Hi,
    I am using Server 2012 R2 with Hyper-V and CentOS 6.5 that installed GNOME.
    Same no mouse on remote desktop session or on the host's Hyper management interface.
    From my knowledge, CentOS from 6.4 build in include the IS, how do I update the IS in CentOS 6.4-6.5 guest OS? Any detail docunment for reference?
    Thank you.

  • Basically my fone just decided to say invalid sim so by looking on the internet ive restored my device, after doing this it still came up with no service and invalid sim, itunes say that the activtion server is down at the mo, i wanted to know wen the act

    Basically my fone just decided to say invalid sim so by looking on the internet ive restored my device, after doing this it still came up with no service and invalid sim, itunes say that the activtion server is down at the mo, i wanted to know wen the activtion server will be back online and will it solve my problem with no service and invalid sim error

    I was quite surprised by that. And I've been off for a little because I've been giving final exams at the college where I work. Now with break I will be spending a little more time on here until I have to start getting ready for the Spring semester. I have experienced a couple of interesting posters in the past week though. I wa afraid one was going to reach through the CAT 5 and grab me around the neck.

  • Can BO XI and CE 10 be installed on the same server?

    We are preparing to upgrade our existing CE 10 to BO XI; however, we were unable to obtain a test server and will need to install it on the same server that CE 10 resides on (our development server).  I heard that both versions could not reside on the same server and I need this confirmed by a SME.  Thank you.  ~emoreno

    Tim,
    I'm not sure that my question was answered.  I just need to know whether CE10 and BO XI can be installed on the same server?  I have a development server (not a VM) with CE 10 and another customer wants to install BO XI on the same server.  I heard through other sources that BO XI and CE 10 cannot reside on the same server.  I need to know if this statement is accurate?  If BO XI cannot reside on the same server as CE 10, then our contracted vendor will have to provide t this customer with a different server.  I need this information confirmed in order to notify my management.
    Thanks...EMoreno

  • My pc could not dl the newest itunes 11.something. I have windows vista 64 bit. when I uninstall and then reinstall it gives me the same error code (Error 7 windows error 126) Anyone help me? please

    Says it all

    This article goes over a complete uninstall/reinstall.
    Please make sure you restart the pc and remove all related components and files.  Do you get the same error?

  • Connection broker and RemoteApp manager role on the same server OK?

    Hello. I may have what seems to be a strange request here. I have a currently working 3 node TS farm consisting of 2 Terminal Servers with the RemoteApp role on them and 1 server running the connection broker. All is running fine but the RemoteApps I have
    published are prohibited to have the clipboard enabled for them due to PCI DSS compliance. I wanted to install some other apps and have the clipboard enabled but since it seems that the clipboard is a server setting and not a per app setting, I was hoping
    to just install these apps right on the server running the connection broker vs building a separate new TS server to host them. These other apps do not need to be in the load balanced environment.
    Can I just install the RemoteApp role on the CB server without any interruption to the farm?
    Thanks,
    Joe

    Hi Joe,
    Thank you for your comment.
    Can you let me the OS version of RDS Server?
    For better understanding, I can explain you that; RemoteApp is not a role which you need to install. But you need to install RD Web access role and then you can publish RemoteApp through that. For eg. If you are using Server 2012\R2 then you need to create
    a collection and after that you can publish the RemoteApp feature which you or your user can use through RD Web Access. 
    As per your comment you have already TS role installed, then you can install RD Web access through role based installation, select the role and server on which you want to install it. Please refer beneath article if you have server 2008 r2.
    Remote Desktop Web Access (RD Web Access)
    http://technet.microsoft.com/en-us/library/cc731923.aspx
    Hope it helps!
    Thanks,
    Dharmesh

  • Create dev and test instances of Apex on the same server and database

    I have a dev and prod instances of Apex on different servers. I want a test instance on the same server as the dev instance.
    I am using workspace export/import so all instance workspaces have the same workspace id. The application ID is the same on each instance, in the same workspace. This allows pages to be exported/imported in the differenct instances.
    My question is (I am sure it is obvious) can I have more than one instances of Apex on the same database (dev and test) and have each instance have identical Workspace IDs, etc.
    Sam

    Hi Sam,
    But you can have more than one database on the same server.
    What we do is create a separate database for each APEX versions we are supporting (we still have a customer using APEX 2.0).
    All the databases are accessed with the same APACHE config. All you have to do is change the DAD and have a separate dad for each database (i.e. each APEX versions).
    ex : /pls/apex_dev /pls/apex_test
    This way , I can run different APEX versions on the same server.
    Francis.
    http://insum-apex.blogspot.com/

  • BI and ECC 6.0 installation in the same server

    Hello SAP Experts,
    I am given a task of installing BI 7.0 and ECC 6.0 in the same server. Can someone suggest me of what are all the Do's and Don'ts in this scenario and what is the hardware requirements.
    Thanks & Regards
    Vanitha

    Hi,
    For installing BI,  you have to install Netweaver.
    You already have ECC 6.0 in the System.
    As a part of BI system, you will be extracting data from ECC Ssytem and loading in BW System.
    Hence if your requireement is like data is loaed in the the BW System every one hour, it will slow down the ECC  System.
    In future you  may need to do some OS patch update, database patch update which is not required in ECC, but it will effect both systems
    I have not seen any scenario where OLTP and OLAP System are in the same box
    But if you are just doing for learning purpose and you are doing it in your sand box , that should be fine

  • Can BO 5.1.8 and BOXI R2 be installed on the same server?

    Hi guys,
    Does anyone know if BO 5.1.6 and BOXI R2 can be installed on the same server, provided that the hardware is sized to cope with both environments?

    Fernando,
    Business Objects does not recommend that two different versions of our software be installed on the same server.
    Thanks,

  • Can i recover my all active directory domain computers and users from IFM and in-cooperate them in new forest ??

    My only Active Directory Server on win server 2008 R2 with one domain controller crashed today. The only backup that i had was IFM media.
    So what i have done till now to recover it is a follow
    I reintalled window server but this time it is winserver 2012. I added AD DS role to it. Promoted it to Domain Controller. (functionality level is 2008 R2)
    On second server i installed win 2008 R2 and trying to add additional domain controller from IFM to recover all of my domain users,computers and GPO's. but i am getting this error
    Could not replicate the directory partition CN=schema, CN= configuration, DC=XXX, DC=com from the remote domain
    the naming context specified for this replication operation is invalid
    i dont know weather my approach is correct or not
    but my simple questions is
    Can i recover my all domain computers and users from IFM and in-cooperate them in new forest ?? if yes how can i do that?? urgent help required.

    yup exactly i created a new domain(in new forest) with same previous name in window server 2012 on SERVER-1. As ifm file that i had was generated from 2008 r2 so on second server i installed window 2008 r2 and tried to add role of additional domain controller
    from ifm file on SERVER-2 using dcpromo /adv . every step went ok but in last step when it starts replicating domain controllers it poup following error
    Could not replicate the directory partition CN=schema, CN= configuration, DC=XYZ, DC=com. .  .
    and roll backs every thing.

  • Windows 2012 R2 Active Directory Server Blank Screen

    I have a Windows 2003 Domain, I added a Server 2012 R2 to the domain. The 2012 R2 server is a hyper-v virtual machine.  When promoting the server to a domain controller it hung on the process and I had to reboot the server.  When
    I log into the server now with the same account I was using when I promoted the server I get a black screen. When I hit the (ctrl-alt-del) button on the hyper-v console screen I see several option such as task manager but clicking on it doesn't bring
    up anything.  I can also sign out.  If I log in using another admin account I have no issues.  If I view the application log I see a 4006 Event Id:
    The Windows logon process has failed to span a user application.  .... C:\Windows\system32\userinit.exe.
    If I boot in safemode I am able to logon with with problem account and see the normal safe mode screen.  Also, BTW the DC promotion process completed without issues.
    Thanks,

    So here's the situation.  The domain was windows 2000, I raised the functional level to 2003 in preparation for adding windows 2012 R2 Domain controllers.  I created a hyper-v VM and promoted it to a domain controller. As I mentioned when I logged
    on with the account I used to promote the the Windows 2012 R2 server to a domain controller I got a black screen. It is not a core server shell. The only thing I can do is hit the ctrl-alt-del button in the console window and sign out, switch user if I click
    on task manger nothing happens.
    I added a second w2k12 R2 server as domain controller and had the same issue.  I tried logging in with my own account as I am an enterprise admin but I got a blank screen also. The only account I can get the GUI on is the original Administrator account
    "Administrator".  After comparing properties on that account to two other domain admin accounts I realized the Administrator account has a Delegation tab the other accounts don't.  I've been using them without issues to administer the domain
    and log onto the W2k3 domain controllers. But I can only assume it is related to the account properties on these accounts.
    I tried creating two other domain admin account from one of the 2012 AD servers but same issue. One account was a copy of the Administrator account and the  other I created from scratch and added it to the relevant groups.
    I have seen something about registering the spn for these accounts which I haven't tired yet. It seems I am missing steps when creating domain administrators.
    Some had suggested I had done a minimal install but I have IE so I don't think this is the case.

  • Windows Embedded 8.1 Industry Pro Application Launcher Remote Desktop Services Feed VDI with Windows Store Remote Desktop Client

    I wanted to make kiosks which are joined into a domain and set up with an Remote Desktop Web Feed with VDI Desktops (to support Single Sign On and minimize configuration needs on the client side). And I wanted to lock those Clients to launch only the Remote
    Desktop Windows Store application. And if somebody clicks on a Desktop Pool then connect to the choosen Pool. But instead of doing this the Remote Desktop application opens the Pool within the old mstsc.exe and right after connecting the OS switches the focus
    back to the Remote Desktop Windows Store application. And nobody can work in the office with this configuration.
    So how can I correct this problem? Any other solutions? What is the official way to doing this?

    Hi,
    Based on my test, we cannot associate .rdp files with the Remote Desktop Windows Store App. Therefore, you may have to use MSTSC or configure the setting in the Remote Desktop
    Windows Store App manually.
    Best Regards. 
    Jeremy Wu
    TechNet Community Support

  • Oracle Client 64-bit and Oracle Client 32-bit on the same server

    Hi,
    I have a Windows 2008 server 64-bit with Oracle Client 64-bit and Oracle Client 32-bit installed on different directories (D:\Oracle and D:\Oracle32)
    Is it possible to define for certain applications to use the TNSNAMES entry from the 64-bit Oracle Client
    and for other applications to use the TNSNAMES entry from the 32-bit Oracle Client
    Once I installed the Oracle Client 32-bit (Oracle Client 64-bit version was already installed) and restarted the server I performed a TNSPING and it defaulted to the Oracle Client 32-bit installation path
    Thanks,
    Barry

    Hello,
    When you install a new client on a server, it will update the PATH variable, and add the ORACLE_HOME\bin path to it, at the first place. That explains why the tnsping use the last installed ORACLE_HOME.
    What you can do if you want only to change the default path to the tnsnames is to set the environment variable TNS_ADMIN to the path where the tnsnames you want to use is located. You can modify this variable in your application if you want to use another tnsnames.
    If you want switch from 32 bits to 64 bits client, then you have to modify the PATH variable.
    Hope this will help.
    Best regards,
    Sylvie

  • Can Crystal Reports, Explorer, and Dashboards co-exist happily on the same server?

    Hi All,
    We are currently using BO 4.1 SP2. We have two servers: the main borep server that hosts the BI platform, and a second server that only has Explorer on it just now. We want to install CRE and Dashboards on the Explorer server (on our DEV infrastructure) so we can play around with those tools.
    Are there any know issues with this approach?
    Thanks everyone!!

    Thanks Dell, very useful indeed!
    Are you sure there is no server component to CR4E? There is a certainly a Crystal application available within BI Launchpad. When I launch it, it pops open a window prompting me to download a crystal for enterprise file with the extension BCPL. Browsing this forum, it seems that you get this message if you've not installed C4E on the borep server.
    So I'm not sure what the inbuilt Crystal app is for - only for viewing but not designing reports within Launchpad?
    Any ideas?
    Thanks again!

  • Unable to run war and jar when both deployed on the same server

    hi,
    i getting errors viz,(LogInterceptor,EJBException in method(bean classes).ihave deployed jar successfully on the Jboss server4,and i am able to excute a simple jsp file (which call the bean from jboss) from Tomcat server where i have put my client file.But if i try to put both the same war file in the jboss and then try to excute .It doesn't execute but pops above error .What is the reason????

    Stack trace please.

Maybe you are looking for

  • X100e - Not Charging (Do I need new AC adapter?)

    So I've had an x100e (and its original AC adapter) since 2010 and all of a sudden the battery stopped charging and slowly drained, so its obviously not a problem with the battery. The ac adapter used to cause a few sparks  at the metal parts of the p

  • Details for TDS

    Dear All Can any one help how we need are configuring TDS in SAP Business one, should we use addon or what if we are using Addon which add on we need to use Thanks and Regards Boopathi.T

  • Issues when Downloading Large Datasets to Excel and CSV

    Hi, Hoping someone could lend a hand on the issues described below. I have a prompted dahsboard that, dependent upon prompts selected, can return detail datasets. THe intent of this dashboard is to AVOID giving end users Answers Access, but still pro

  • ERROR COLLECTING OS METRICS IN 10G

    Hi, i installed Oracle 10g EM Grid control in server with SuSE 9.0. In the Enterprise Manager console, "HOST/Configuration/Operating System/Error collecting Operating System" link and the error is showed. "The following error occurred when collecting

  • How do I print to OneNote in Windows 7

    I just installed a HP Photosmart 7520 e-All-in-one series which replaced the one I purchased 6 years ago.  I no longer have a optioned to print to OneNote in Windows7, how do I get it back?  Please advise....thanks