Windows Server 2012 GPO setting are not apply on windows Xp clients

Hi
I am create GPO on windows server 2012.  300 clients on domain are working fine, GPO setting apply on all windows 7, 8 clients. But 200 clients of windows XP are not working. GPO setting are not applies on XP. I am trying to Group Policy
Preference Client Side Extensions for Windows XP (KB943729) on one window XP client, all GPO servers 2012 setting is working fine. But is not solution. I have 200 clients of windows XP, Please provide batter solution on one click command and apply all 200
XP clients.
Thanks.

Dear,
I have Windows server 2012 ,  i have install ADDS with Forest functional level 2008 & Domain functional level 2008 .
I have applied GPO to particular OU, when i login to domain user on Windows 7 PC all GPO working fine but when i login on Windows Xp SP3 PC its not applied on XP. 
I am facing issue on windows XP clients it is true. Please see this URL address:
http://blogs.technet.com/b/grouppolicy/archive/2009/03/27/group-policy-preferences-not-applying-on-some-clients-client-side-extension-xmllite.aspx
Please provide batter solution on one click command
Thanks.

Similar Messages

  • GPO settings are not applied

    Hi everyone
    I am using WSUS in my internal network.
    When i am trying to deploy GPO, The GPO seems to be applying on the computer but the 
    GPO settings are not being applied.
    I am getting error An error occured while checking for updates for your computer
    and in Windows update change settings, i can see it is grayed out with the option
    Download updates but let me choose wheter to install them(some settings are managed by your system administrator)
    I have disabled windows firewall when i was using Windows XP computers, Is any settings of windows firewall creating issues?
    I have created a computer group in WSUS say TESTGroup
    In GPO I have assigned the following settings(Please correct me if i am going wrong with the settings)
    Configure Automatic updates : 3-Auto download and notify for install
    Specify Intranet microsoft update service location: http://mywsus (here should it be mywsus or mywsus:8530)
    Enable Client Side targeting : TestGroup ( I have OU in active directory with Computers)
    Do not display install updates and shutdown option : Enabled
    Automatic Updates detection frequency : 2 hours
    Allow Non administrators to receive update notification : Enabled
    Allow Automatic updates immedidate installation : Enabled
    Turn of recommended updates via automatic updates : Enabled
    Reschedule automatic udpates scheduled installation : 10 min
    I have approved few updats in WSUS console to install on TestGroup
    On Client Computer ihave used the command 
    wuauclt /detectnow and wuauclt /reportnow
    Please guide me

    I have installed the updates KB2720211 KB2530678 KB2530709 KB2734608 on WSUS Server
    My GPO settings are 
    Configure Automatic updates : 3-Auto download and notify for install
    Allow signed updates from an intranet microsoft update service location : Enabled(i am using internal WSUS server exporting updates from internet connected WSUS to internal WSUS)
    GPO is applying but settings are not being applied.
    please do refer the client logs & attachment.
    Triggering AU detection through DetectNow API
    START ##  AU: Search for updates
    <<## SUBMITTED ## AU: Search for updates [CallId = {A52428A8-E7EC-4CAB-9842-0B66F6969382}]
    ** START **  Agent: Finding updates [CallerId = AutomaticUpdates]
    Agent *********
    * Online = Yes; Ignore download priority = No
    * Criteria = "IsInstalled=0 and DeploymentAction='Installation' or IsPresent=1 and DeploymentAction='Uninstallation' or IsInstalled=1 and DeploymentAction='Installation' and RebootRequired=1 or IsInstalled=0 and DeploymentAction='Uninstallation' and RebootRequired=1"
    * ServiceID = {3DA21691-E39D-4DA6-8A4B-B43877BCB1B7} Managed
    Agent   * Search Scope = {Machine}
    Setup Checking for agent SelfUpdate
    Setup Client version: Core: 7.6.7600.320  Aux: 7.6.7600.320
    Validating signature for C:\Windows\SoftwareDistribution\SelfUpdate\wuident.cab with dwProvFlags 0x00000080:
    Microsoft signed: NA
    Validating signature for C:\Windows\SoftwareDistribution\SelfUpdate\TMP8FF3.tmp with dwProvFlags 0x00000080:
    Triggering AU detection through DetectNow API
    Piggybacking on an AU detection already in progress
    Microsoft signed: NA
    Validating signature for C:\Windows\SoftwareDistribution\SelfUpdate\wsus3setup.cab with dwProvFlags 0x00000080:
    Microsoft signed: NA
    Validating signature for C:\Windows\SoftwareDistribution\SelfUpdate\wsus3setup.cab with dwProvFlags 0x00000080:
    Microsoft signed: NA
    Setup Determining whether a new setup handler needs to be downloaded
    Validating signature for C:\Windows\SoftwareDistribution\SelfUpdate\Handler\WuSetupV.exe with dwProvFlags 0x00000080:
    Microsoft signed: NA
    Setup SelfUpdate handler update NOT required: Current version: 7.6.7600.320, required version: 7.6.7600.320
    Evaluating applicability of setup package "WUClient-SelfUpdate-ActiveX~31bf3856ad364e35~x86~~7.6.7600.320"
    Setup package "WUClient-SelfUpdate-ActiveX~31bf3856ad364e35~x86~~7.6.7600.320" is already installed.
    Setup Evaluating applicability of setup package "WUClient-SelfUpdate-Aux-TopLevel~31bf3856ad364e35~x86~~7.6.7600.320"
    Setup package "WUClient-SelfUpdate-Aux-TopLevel~31bf3856ad364e35~x86~~7.6.7600.320" is already installed.
    Evaluating applicability of setup package "WUClient-SelfUpdate-Core-TopLevel~31bf3856ad364e35~x86~~7.6.7600.320"
    Setup package "WUClient-SelfUpdate-Core-TopLevel~31bf3856ad364e35~x86~~7.6.7600.320" is already installed.
    SelfUpdate check completed.  SelfUpdate is NOT required.
    +++++++++++  PT: Synchronizing server updates  +++++++++++
    + ServiceId = {3DA21691-E39D-4DA6-8A4B-B43877BCB1B7}, Server URL = http://MYWSUSServer/ClientWebService/client.asmx
    WARNING: GetConfig failure, error = 0x80244019, soap client error = 10, soap error code = 0, HTTP status code = 404
    WARNING: PTError: 0x80244019
    WARNING: GetConfig_WithRecovery failed: 0x80244019
    WARNING: RefreshConfig failed: 0x80244019
    WARNING: RefreshPTState failed: 0x80244019
    WARNING: Sync of Updates: 0x80244019
    WARNING: SyncServerUpdatesInternal failed: 0x80244019
     * WARNING: Failed to synchronize, error = 0x80244019
    * WARNING: Exit code = 0x80244019
    **  END  **  Agent: Finding updates [CallerId = AutomaticUpdates]
    Agent *************
    WARNING: WU client failed Searching for update with error 0x80244019
    >>##  RESUMED  ## AU: Search for updates [CallId = {A52428A8-E7EC-4CAB-9842-0B66F6969382}]
    # WARNING: Search callback failed, result = 0x80244019
    # WARNING: Failed to find updates with error code 80244019
    ##  END  ##  AU: Search for updates [CallId = {A52428A8-E7EC-4CAB-9842-0B66F6969382}]
    Need to show Unable to Detect notification
    Successfully wrote event for AU health state:1
    AU setting next detection timeout to 2015-03-20 20:18:22
    Successfully wrote event for AU health state:1
    Successfully wrote event for AU health state:1
    Report REPORT EVENT: {5BCEA64A-0FEB-4B01-9509-CE94AFE0D04A}
    2015-03-20 21:19:59:003+0300 1
    148 101
    {00000000-0000-AutomaticUpdates Failure
    Software Synchronization Windows Update Client failed to detect with error 0x80244019.
    CWERReporter::HandleEvents - WER report upload completed with status 0x8
    WER Report sent: 7.6.7600.320 0x80244019 00000000-0000-0000-0000-000000000000 Scan 101 Managed
    Report CWERReporter finishing event handling. (00000000)
    WARNING: GetConfig failure, error = 0x80244019, soap client error = 10, soap error code = 0, HTTP status code = 404
    WARNING: PTError: 0x80244019
    WARNING: GetConfig_WithRecovery failed: 0x80244019
    WARNING: RefreshConfig failed: 0x80244019
    WARNING: RefreshPTState failed: 0x80244019
    WARNING: PTError: 0x80244019
    WARNING: Reporter failed to upload events with hr = 80244019.
    WARNING: GetConfig failure, error = 0x80244019, soap client error = 10, soap error code = 0, HTTP status code = 404
    WARNING: PTError: 0x80244019
    WARNING: GetConfig_WithRecovery failed: 0x80244019
    WARNING: RefreshConfig failed: 0x80244019
    WARNING: RefreshPTState failed: 0x80244019
    WARNING: PTError: 0x80244019
    WARNING: Reporter failed to upload events with hr = 80244019.

  • SQL Server 2012 Express SP1 will not install on Windows Server 2012 Essentials R2

    I have been attempting to install SQL Server 2012 with SP1 Express Edition for about a two weeks and have been unsuccessful.  My organization recently purchased a new Dell PowerEdge T320 Server (64 Bit) with Intel Xeon Proc.-E5-2420; 2.2Ghz, 32 Gb RAM,
    1 Tb RAID 5 H/D, and Windows Server 2012 R2 Essentials (preinstalled).  The server will be configured as an on premises server.  We are running a small church management application that requires SQL Server 2012 SP1 Express.  Per the direction
    of our application vendor, we downloaded the SQL Server 2012 SP1 Express file (SQLEXPRADV_x64_ENU.exe) from the Microsoft SQL Server Website.  We ran the file "As Administrator" and the SQL Server 2012 Setup program began. 
    We selected New SQL Server Stand-Alone Installation, successfully installed the needed Product Updates, and accepted the MS SQL Server 2013 Express License terms. 
    When the Feature Selection Page appeared we checked only the "Data Base Eng Services".  The
    Instance Configuration Page was displayed and we inserted a "Named Instance= Shelby",then pressed next.  On the
    Server Configuration Page the only change was setting the "sql server browser = automatic".  The Database Engine Configuration Page appeared
    and we inserted the following settings:1] Server Configuration Tab; a) mixed mode, b)inserted SQL Server Admin pswd, c) added current user as administrator: 2] Data Directories Tab; default/no changes: 3] User Instanced Tab; default/no
    changes: and 4] Filestream Tab; default/no changes.  Next the
    Reporting Services Configuration Page came up and the reporting services native mode was set to
    "install and configure".  The Error Reporting Page appeared and was left as the
    "default".  The SQL Server 2012 Setup program proceeded to Installation Progress Page and started to install. Just before the install program ended it displayed a message saying that there
    were errors and the Database Eng Services did not succeed. I uninstalled SQL Server 2012 SP1 Express three (3) times, ran Windows Update after every uninstall, attempted to install the Database Engine and got the same results.  Are there any patches or
    special procedures for correctly installing SQL Server 2012 SP1 Express on my hardware configuration or Windows Server 2012 Essentials R2?  Any insight would be greatly appreciated.

    Can you post the setup Summary and detail logs, which will help to figure out the problem? The details about the location can be found at https://msdn.microsoft.com/en-us/library/ms143702(v=sql.110).aspx
    Satish Kartan www.sqlfood.com

  • Windows Server 2012 Essentials Connection Software not working

    This comes in response to a ticket I got great help from a user on but I'm still stuck on the connection software bit.
    Original Thread: http://social.technet.microsoft.com/Forums/windowsserver/en-US/0a7e6d91-98c7-42f2-9cdd-66117df91d76/win-2012-essentials-not-allowing-client-connections?forum=winserveressentials#0a7e6d91-98c7-42f2-9cdd-66117df91d76
    Summary: All my machines 8 of them up to now have been adding machines using the servername/connect
    Well I have 2 new HP's here Win 7 Pro all updated that WILL NOT get past the asking for the server username/pass screen of the connects software install. I can get them onto the server manually and my GP applies fine, my roaming profiles are working, the
    computer is seen in AD but I have none of the features that are provided by the connect software like dashboard viewing and backups etc.
    The error I get is "The server is not available. Try connecting this computer again, or for more information, see Troubleshoot connecting computers to the server"
    Anyone have any ideas?

    Hi James,
    Based on your description, “Well I have 2 new HP's here Win 7 Pro all updated that WILL NOT get past the
    asking for the server username/pass screen of the connects software install.”, would you please let me confirm whether have reached the page of Windows Server Essentials Connector Configuration Wizard as below picture shows, then can’t go through?
    àI can get them
    onto the server manually and my GP applies fine, my roaming profiles are working, the computer is seen in AD
    Did you mean that add the client computer to windows essentials domain by using traditional method (change
    Workgroup to Domain in System Properties)?
    When this issue occurred, please ping server from the problematic client computer by using server name and
    IP address. Then monitor the result.
    Meanwhile, I noticed your
    original thread that Howtodo have provided some suggestions. As he mentioned, would you please check if Connector software had been installed? Please alos check ClientDeploy log file.
    By the way, did you add the client computer to windows server essentials network via wireless?
    Hope this helps.
    Best regards,
    Justin Gu

  • Windows Server 2012 R2 RDWeb - Sound Not Playing

    Hello,
    I am trying to get sound to play on Internet Explorer which is published through RDWeb.
    I am using a sound test page which works fine (http://www.audiocheck.net/audiotests_stereo.php) locally but will not play sound through RDWeb.
    The Windows Audio and Windows Audio Endpoint Builder services are running on the Remote Session Hosts and Remote Web App server. The settings under "Collections > Remote Apps > Client Settings" are all ticked (Audio and Video Playback, Audio
    Recording etc). I haven't come across anything else online of settings to check.
    Does anyone know why this isn't working?

    Hi Chris,
    Thank you for posting in Windows Server Forum.
    Have you check the group policy setting related to audio redirection?
    Here I would like you to verify whether you have enabled Audio and Video Playback Gpo setting on RDSH server. 
    Configuration\Policies\Administrative Templates\Windows Components\Remote Desktop Services\Remote Desktop Session Host\Device and Resource Redirection
    Allow audio and video playback redirection: Enabled
    Allow audio recording redirection (For recording): Enabled
    Hope it helps!
    Thanks.
    Dharmesh Solanki
    TechNet Community Support
    Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Support, contact [email protected]

  • Windows server 2012 r2 vm will not launch from RemoteApp & Desktop connection page

    I have setup a RDS test lab and created a un-managed pooled collection which has a server 2012 r2 desktop vm and a windows 8.1 desktop vm. I can launch the windows 8.1 vm through RDWeb access page but I can not launch the server 2012 r2 vm. Can a server
    2012 r2 vm be brokered through the connection broker and launched from RDWeb? 

    Hi,
    Thank you for posting in Windows Server Forum.
    Does server 2012 R2 VM created succefully and can you access through remote session (not through RD Web Access)?
    If possible for a try create a new VM and check the related setting with new user account and then access them whether it resolve your issue. you can refer below article to create VDI.
    Deploying VDI on server 2012
    Hope it helps!
    Thanks.
    Dharmesh Solanki

  • Using Windows Server 2012 Essentials - Creating a virtual PC running Windows 7

    I have a lot to my question, but I am hoping someone out there will be able to answer it, or at least part of it for me. 
    My situation is I have a Centon InfiniTV 6 turner card, which means that the computer would need to be running 24x7 to record TV shows. 
    Which is ok, I have no problem with that.  I also have a home network with all computers are able to access the recordings. 
    I would really like to have some server software running to help keep things better organized and also be able to access the files and stuff remotely if needed.
     This is why I purchased Windows Server 2012R2 Essentials. 
    I have not tried to install the tuner card software on the operating system; because it is only for Windows 7 and 8, so I would think it would not work. 
    What I want to do is have my Windows Server 2012R2 Essentials running as the primary operating system. 
    Then create a virtual PC to run my copy of Windows 7, and have it use the turner card that I have installed on the computer. 
    This is the first question, is there any way of doing this? 
    From what I have read online is that Essentials does not support virtual PC’s because it does not come with hyper-v. 
    Is that something that can be downloaded or purchased separately from Microsoft? 
    I have installed the free copy of Oracle Virtual Box, but for some reason that does not show any operating system over 32 bit. 
    All of my software is running at 64 bit.  If I can get Virtual Box working, would that fix all my issues?
    Next question, is there any easy way to make a copy of my current running Windows 7 and use that to create a virtual PC running on the server? 
    Or will I have to reinstall it, and everything associated with it to make it work correctly?
    I guess the last question would be, is there any way of using a free SSL certificate with the server operating system? 
    I have tried a few things that I found online, even followed all the steps from a YouTube video but none seem to work. 
    I am not sure if it is worth the $70 per year just to access my computer remotely once or twice a month. 
    Any help would be great!  Thanks in advance

    Hi,
    For license related questions we recommend you contact Microsoft licensing specialist.
    http://support.microsoft.com/kb/141850/en-us
    Regards.
    Vivian Wang

  • Media Streaming in Windows Server 2012 R2 Essentials Quality not good !

       I have media in windows 8.1 workstation. Made a VM on it (win2012r2) + made a Essentials and Media pack and enabled the highest quality streaming ("best").
       When I test the test 34 mb video on lumia 1520 I find that quality is very degraded. I studied that if you set the highest quality the processor should be good otherwise there would be effect of buffering and lags. But in my case, only problem
    my 720p video seems like 240p and no pauses or lags.
       Is there a way to improve that ? ( I have strong Wifi Router to handle the bandwidth ).
       Everything above started from the fact that I could not browse my media files by opening a pc share folder from lumia 1520. if I could open the share folder, I could instantly copy and play from there while I am roaming.
      That leaves me to the only option to attach USB, copy data and then test each new video, which is very slow process wise.
    Shahid Roofi

    You are serving media from an essentials VM on a win 8 box?  Did I get that right?  In any case.  Media Streaming is not a real strong point for essentials.  I would look at Serviio or Plex
    Grey

  • Warning in Windows server 2012 R2 Set-VMReplication with Enable Write Order Preservation Across Disks 1

    When I run the following command I get the following warning? Can anyone help out with this?  
    Set-VMReplication -VMName server123 -EnableWriteOrderPreservationAcrossDisks 1
    WARNING: 'EnableWriteOrderPreservationAcrossDisks' is not required for 'Set-VMReplication'.
    Please mark my post as helpful or the answer or better yet.... both! :) Thanks!

    I have this issue. I have given my DCs and DHCP servers fixed IPv6 addresses, and every time I enable an IPv6 scope the all get a second IPv6 address from the scope, which is also published do DNS and then the next time I reboot a domain controller there
    is complete confusion.
    My objectives (which I am finding hard to achieve) are:
    - fixed IP addresses for all systems (in IPv4 I use static IPs on servers and DHCP reservations on workstations)
    - I control the gateways. If my official gateways are down I want no connectivity to the Internet, I don't want anything configuring itself.
    CarolChi

  • Windows Server 2012 Essentials not listed in EasyStartu​p 3.8.1d for TS140

    Recently purchased a TS140 (70A4 001RUS). Came factory installed RAID 1 with Windows Server 2012 Essentials pre-installed. Needed to reinstall, however:
    - Windows Server 2012 Essentials does not show up in EasyStartup 3.8.1c DVD that came with server
    - Downloaded latest EasyStartup 3.8.1d and created bootable DVD and ran with same result
    - "Windows Server 2012" is listed (but not Essentials). Running this installation, it does not recognize the Windows Server 2012 Essentials External Recovery DVD that came with server. Continually asks to insert "Windows Server 2012" disk.
    - "Windows Small Business Server 2011 Essentials" is listed (but not 2012 Essentials). Running this installation, it does not recognize the Windows Server 2012 Essentials External Recovery DVD that came with server. Continually asks to insert "Windows Small Business Server 2011 Essentials" disk.
    - Have booted using UEFI, Legacy and Auto with no difference
    - Ran lastest Firmware Updater v1.8.1013 - no updates listed as required
    - Have updated BIOS to latest 70A
    - Server will also not boot directly from Windows Server 2012 Essentials External Recovery DVD (dvd is set 1st in boot order in bios)
    - Windows Server 2012 Essentials External Recovery DVD is readable on other machines - can copy to bootable USB key and run regular Windows installation on server (this is current workaround)
    - using the above workaround, drivers must be installed manually.
    - EasyStartup 3.8.1d Readme specificly lists Windows Server 2012 Essentials as supported on the TS140 in UEFI and Legacy mode here
    As mentioned, the above workaround can work. However, this server may not always be maintained by myself and I would prefer the supplied software to acutally work properly for ease of use by others in the future.

    I have several TS140s running WSE 2012 R2.  Like you said, the easystart does not recognize properly the WSE R2 os, so I just did the basic from disc or USB install after I configured the boot drives or RAID1 array.
    The main reason to load the easy start is for drivers, however WSE found and recognized all the hardware in the unit.

  • Not able to install studio + controller on windows server 2012 r2

    Hi,
     i have installed windows server 2012 R2, now i want to install windows HCK 2.1 with controller + studio option but i am not able to install because that option is grey. what additional settings i have to do in order to successfully installation
    of WHCK. please guide me. 
    ankur dubey

    Hi, see the
    Windows HCK Getting Started.
    Note:
    Controller isn't supported on Windows Server 2003, Windows Server 2008, Windows Vista®, Windows XP, or Windows 2000.
    Controller isn't supported on an installation that has already been set up as a domain controller.
    Controller isn't supported in a virtual PC or any third-party Hypervisor environment.
    Greetings
    Nino
    ...esistono i motori di ricerca, facci un salto e troverai molte delle risposte che ti darò io.

  • Bitmap image not showing up on windows title bar in windows server 2012 std

    I have an application written in VC++ (MFC). Its a legacy app. Recently we were asked to check its compatibility with windows server 2012 std edition. We found some issues and one of those is as follows:
    1) We display a BITMAP image using Windows.StretchBlt() function on the titlebar of the app. It shows up properly in windows server 2003, win XP and win 7. But doesn't show up in windows server 2012. I am assuming its a windows paint issue because button
    is there on titlebar as I can click on it and see the expected behavior. But its just not visible.
    Here is some technical workflow:
    -> This function get called to paint the framwnd-
            CMainFrame::OnNcPaint()
                 CMDIFrameWnd::OnNcPaint();
                 // here we have code to paint the bitmap
    Could anyone here please tell me why the same code is behaving differently in win server 2012? Also if there is any solution for this.

    This forum is more of a general purpose forum about Windows Server.  You question is more closely related to programming issues.  You would be better served to post in a .NET development forum.
    .:|:.:|:. tim

  • Windows Server 2012 - Hyper-V - iSCSI SAN - All Hyper-V Guests stops responding and extensive disk read/write

    We have a problem with one of our deployments of Windows Server 2012 Hyper-V with a 2 node cluster connected to a iSCSI SAN.
    Our setup:
    Hosts - Both run Windows Server 2012 Standard and are clustered.
    HP ProLiant G7, 24 GB RAM, 2 teamed NIC dedicated to Virtual Machines and Management, 2 teamed NIC dedicated to iSCSI storage. - This is the primary host and normaly all VMs run on this host.
    HP ProLiant G5, 20 GB RAM, 1 NIC dedicated to Virtual Machines and Management, 2 teamed NIC dedicated to iSCSI storage. - This is the secondary host that and is intended to be used in case of failure of the primary host.
    We have no antivirus on the hosts and the scheduled ShadowCopy (previous version of files) is switched of.
    iSCSI SAN:
    QNAP NAS TS-869 Pro, 8 INTEL SSDSA2CW160G3 160 GB i a RAID 5 with a Host Spare. 2 Teamed NIC.
    Switch:
    DLINK DGS-1210-16 - Both the network cards of the Hosts that are dedicated to the Storage and the Storage itself are connected to the same switch and nothing else is connected to this switch.
    Virtual Machines:
    3 Windows Server 2012 Standard - 1 DC, 1 FileServer, 1 Application Server.
    1 Windows Server 2008 Standard Exchange Server.
    All VMs are using dynamic disks (as recommended by Microsoft).
    Updates
    We have applied the most resent updates to the Hosts, WMs and iSCSI SAN about 3 weeks ago with no change in our problem and we continually update the setup.
    Normal operation
    Normally this setup works just fine and we see no real difference in speed in startup, file copy and processing speed in LoB applications of this setup compared to a single host with 2 10000 RPM Disks. Normal network speed is 10-200 Mbit, but occasionally
    we see speeds up to 400 Mbit/s of combined read/write for instance during file repair
    Our Problem
    Our problem is that for some reason all of the VMs stops responding or responds very slowly and you can for instance not send CTRL-ALT-DEL to a VM in the Hyper-V console, or for instance start task manager when already logged in.
    Symptoms (i.e. this happens, or does not happen, at the same time)
    I we look at resource monitor on the host then we see that there is often an extensive read from a VHDX of one of the VMs (40-60 Mbyte/s) and a combined write speed to many files in \HarddiskVolume5\System Volume Information\{<someguid and no file extension>}.
    See iamge below.
    The combined network speed to the iSCSI SAN is about 500-600 Mbit/s.
    When this happens it is usually during and after a VSS ShadowCopy backup, but has also happens during hours where no backup should be running (i.e. during daytime when the backup has finished hours ago according to the log files). There is however
    not that extensive writes to the backup file that is created on an external hard drive and this does not seem to happen during all backups (we have manually checked a few times, but it is hard to say since this error does not seem leave any traces in event
    viewer).
    We cannot find any indication that the VMs themself detect any problem and we see no increase of errors (for example storage related errors) in the eventlog inside the VMs.
    The QNAP uses about 50% processing Power on all cores.
    We see no dropped packets on the switch.
    (I have split the image to save horizontal space).
    Unable to recreate the problem / find definitive trigger
    We have not succeeded in recreating the problem manually by, for instance, running chkdsk or defrag in VM and Hosts, copy and remove large files to VMs, running CPU and Disk intensive operations inside a VM (for instance scan and repair a database file).
    Questions
    Why does all VMs stop responding and why is there such intensive Read/Writes to the iSCSI SAN?
    Could it be anything in our setup that cannot handle all the read/write requests? For instance the iSCSI SAN, the hosts, etc?
    What can we do about this? Should we use MultiPath IO instead of NIC teaming to the SAN, limit bandwith to the SAN, etc?

    Hi,
    > All VMs are using dynamic disks (as recommended by Microsoft).
    If this is a testing environment, it’s okay, but if this a production environment, it’s not recommended. Fixed VHDs are recommended for production instead of dynamically expanding or differencing VHDs.
    Hyper-V: Dynamic virtual hard disks are not recommended for virtual machines that run server workloads in a production environment
    http://technet.microsoft.com/en-us/library/ee941151(v=WS.10).aspx
    > This is the primary host and normaly all VMs run on this host.
    According to your posting, we know that you have Cluster Shared Volumes in the Hyper-V cluster, but why not distribute your VMs into two Hyper-V hosts.
    Use Cluster Shared Volumes in a Windows Server 2012 Failover Cluster
    http://technet.microsoft.com/en-us/library/jj612868.aspx
    > 2 teamed NIC dedicated to iSCSI storage.
    Use Microsoft MultiPath IO (MPIO) to manage multiple paths to iSCSI storage. Microsoft does not support teaming on network adapters that are used to connect to iSCSI-based storage devices. (At least it’s not supported until Windows Server 2008 R2. Although
    Windows Server 2012 has built-in network teaming feature, I don’t article which declare that Windows Server 2012 network teaming support iSCSI connection)
    Understanding Requirements for Failover Clusters
    http://technet.microsoft.com/en-us/library/cc771404.aspx
    > I have seen using MPIO suggests using different subnets, is this a requirement for using MPIO
    > or is this just a way to make sure that you do not run out of IP adressess?
    What I found is: if it is possible, isolate the iSCSI and data networks that reside on the same switch infrastructure through the use of VLANs and separate subnets. Redundant network paths from the server to the storage system via MPIO will maximize availability
    and performance. Of course you can set these two NICs in separate subnets, but I don’t think it is necessary.
    > Why should it be better to not have dedicated wireing for iSCSI and Management?
    It is recommended that the iSCSI SAN network be separated (logically or physically) from the data network workloads. This ‘best practice’ network configuration optimizes performance and reliability.
    Check that and modify cluster configuration, monitor it and give us feedback for further troubleshooting.
    For more information please refer to following MS articles:
    Volume Shadow Copy Service
    http://technet.microsoft.com/en-us/library/ee923636(WS.10).aspx
    Support for Multipath I/O (MPIO)
    http://technet.microsoft.com/en-us/library/cc770294.aspx
    Deployments and Tests in an iSCSI SAN
    http://technet.microsoft.com/en-US/library/bb649502(v=SQL.90).aspx
    Hope this helps!
    TechNet Subscriber Support
    If you are
    TechNet Subscription user and have any feedback on our support quality, please send your feedback
    here.
    Lawrence
    TechNet Community Support

  • Windows Server 2012 - Hyper-V - Cluster Sharded Storage - VHDX unexpectedly gets copied to System Volume Information by "System", Virtual Machines stops respondig

    We have a problem with one of our deployments of Windows Server 2012 Hyper-V with a 2 node cluster connected to a iSCSI SAN.
    Our setup:
    Hosts - Both run Windows Server 2012 Standard and are clustered.
    HP ProLiant G7, 24 GB RAM. This is the primary host and normaly all VMs run on this host.
    HP ProLiant G5, 20 GB RAM. This is the secondary host that and is intended to be used in case of failure of the primary host.
    We have no antivirus on the hosts and the scheduled ShadowCopy (previous version of files) is switched off.
    iSCSI SAN:
    QNAP NAS TS-869 Pro, 8 INTEL SSDSA2CW160G3 160 GB i a RAID 5 with a Host Spare. 2 Teamed NIC.
    Switch:
    DLINK DGS-1210-16 - Both the network cards of the Hosts that are dedicated to the Storage and the Storage itself are connected to the same switch and nothing else is connected to this switch.
    Virtual Machines:
    3 Windows Server 2012 Standard - 1 DC, 1 FileServer, 1 Application Server.
    1 Windows Server 2008 Standard Exchange Server.
    All VMs are using dynamic disks (as recommended by Microsoft).
    Updates
    We have applied the most resent updates to the Hosts, VMs and iSCSI SAN about 3 weeks ago with no change in our problem and we continually update the setup.
    Normal operation:
    Normally this setup works just fine and we see no real difference in speed in startup, file copy and processing speed in LoB applications of this setup compared to a single host with two 10000 RPM Disks. Normal network speed is 10-200 Mbit, but occasionally
    we see speeds up to 400 Mbit/s of combined read/write for instance during file repair.
    Our Problem:
    Our problem is that for some reason a random VHDX gets copied to System Volume Information by "System" of the Clusterd Shared Storage (i.e. C:\ClusterStorage\Volume1\System Volume Information).
    All VMs stops responding or responds very slowly during this copy process and you can for instance not send CTRL-ALT-DEL to a VM in the Hyper-V console, or for instance start task manager when already logged in.
    This happens at random and not every day and different VHDX files from different VMs gets copied each time. Some time it happens during daytime wich causes a lot of problems, especially when a 200 GB file gets copied (which take a lot of time).
    What it is not:
    We thought that this was connected to the backup, but the backup had finished 3 hours before the last time this happended and the backup never uses any of the files in System Volume Information so it is not the backup.
    An observation:
    When this happend today I switched on ShadowCopy (previous files) and set it to only to use 320 MB of storage and then the Copy Process stopped and the virtual Machines started responding again. This could be unrelated since there is no way to see
    how much of the VHDX that is left to be copied, so it might have been finished at the same time as I enabled  ShadowCopy (previos files).
    Our question:
    Why is a VHDX copied to System Volume Information when scheduled ShadowCopy (previous version of files) is switched off? As far as I know, nothing should be copied to this folder when this functionis switched off?
    List of VSS Writers:
    vssadmin 1.1 - Volume Shadow Copy Service administrative command-line tool
    (C) Copyright 2001-2012 Microsoft Corp.
    Writer name: 'Task Scheduler Writer'
       Writer Id: {d61d61c8-d73a-4eee-8cdd-f6f9786b7124}
       Writer Instance Id: {1bddd48e-5052-49db-9b07-b96f96727e6b}
       State: [1] Stable
       Last error: No error
    Writer name: 'VSS Metadata Store Writer'
       Writer Id: {75dfb225-e2e4-4d39-9ac9-ffaff65ddf06}
       Writer Instance Id: {088e7a7d-09a8-4cc6-a609-ad90e75ddc93}
       State: [1] Stable
       Last error: No error
    Writer name: 'Performance Counters Writer'
       Writer Id: {0bada1de-01a9-4625-8278-69e735f39dd2}
       Writer Instance Id: {f0086dda-9efc-47c5-8eb6-a944c3d09381}
       State: [1] Stable
       Last error: No error
    Writer name: 'System Writer'
       Writer Id: {e8132975-6f93-4464-a53e-1050253ae220}
       Writer Instance Id: {7848396d-00b1-47cd-8ba9-769b7ce402d2}
       State: [1] Stable
       Last error: No error
    Writer name: 'Microsoft Hyper-V VSS Writer'
       Writer Id: {66841cd4-6ded-4f4b-8f17-fd23f8ddc3de}
       Writer Instance Id: {8b6c534a-18dd-4fff-b14e-1d4aebd1db74}
       State: [5] Waiting for completion
       Last error: No error
    Writer name: 'Cluster Shared Volume VSS Writer'
       Writer Id: {1072ae1c-e5a7-4ea1-9e4a-6f7964656570}
       Writer Instance Id: {d46c6a69-8b4a-4307-afcf-ca3611c7f680}
       State: [1] Stable
       Last error: No error
    Writer name: 'ASR Writer'
       Writer Id: {be000cbe-11fe-4426-9c58-531aa6355fc4}
       Writer Instance Id: {fc530484-71db-48c3-af5f-ef398070373e}
       State: [1] Stable
       Last error: No error
    Writer name: 'WMI Writer'
       Writer Id: {a6ad56c2-b509-4e6c-bb19-49d8f43532f0}
       Writer Instance Id: {3792e26e-c0d0-4901-b799-2e8d9ffe2085}
       State: [1] Stable
       Last error: No error
    Writer name: 'Registry Writer'
       Writer Id: {afbab4a2-367d-4d15-a586-71dbb18f8485}
       Writer Instance Id: {6ea65f92-e3fd-4a23-9e5f-b23de43bc756}
       State: [1] Stable
       Last error: No error
    Writer name: 'BITS Writer'
       Writer Id: {4969d978-be47-48b0-b100-f328f07ac1e0}
       Writer Instance Id: {71dc7876-2089-472c-8fed-4b8862037528}
       State: [1] Stable
       Last error: No error
    Writer name: 'Shadow Copy Optimization Writer'
       Writer Id: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
       Writer Instance Id: {cb0c7fd8-1f5c-41bb-b2cc-82fabbdc466e}
       State: [1] Stable
       Last error: No error
    Writer name: 'Cluster Database'
       Writer Id: {41e12264-35d8-479b-8e5c-9b23d1dad37e}
       Writer Instance Id: {23320f7e-f165-409d-8456-5d7d8fbaefed}
       State: [1] Stable
       Last error: No error
    Writer name: 'COM+ REGDB Writer'
       Writer Id: {542da469-d3e1-473c-9f4f-7847f01fc64f}
       Writer Instance Id: {f23d0208-e569-48b0-ad30-1addb1a044af}
       State: [1] Stable
       Last error: No error
    Please note:
    Please only answer our question and do not offer any general optimization tips that do not directly adress the issue! We want the problem to go away, not to finish a bit faster!

    Hallo Lawrence!
    Thankyou for youre reply, some comments to help you and others who read this thread:
    First of all, we use Windows Server 2012 and the VHDX as I wrote in the headline and in the text in my post. We have not had this problem in similar setups with Windows Server 2008 R2, so the problem seem to be introduced in Windows Server 2012.
    These posts that you refer to seem to be outdated and/or do not apply to our configuration:
    The post about Dynamic Disks:
    http://technet.microsoft.com/en-us/library/ee941151(v=WS.10).aspx is only a recommendation for Windows Server 2008 R2 and the VHD format. Dynamic VHDX is indeed recommended by Microsoft when using Windows Server 2012 (please look in the optimization guide
    for Windows Server 2012).
    Infact, if we use fixed VHDX then we would have a bigger problem since fixed VHDX are generaly larger then Dynamic Disks, i.e. more data would be copied and that would take longer time = the VMs would be unresponsive for a longer time.
    The post "What's the deal with the System Volume Information folder"
    http://blogs.msdn.com/b/oldnewthing/archive/2003/11/20/55764.aspx is for Windows XP / Windows Server 2003 and some things has changed since then. for instance In Windows Server 2012, Shadow Copies cannot be controlled by going to Control panel -> System.
    Instead you right-click on a Drive (i.e. a Volume, for instance the C drive/Volume) in Computer and then click "Configure Shadow Copies".
    Windows Server 2008 R2 Backup problem
    http://social.technet.microsoft.com/Forums/en/windowsbackup/thread/0fc53adb-477d-425b-8c99-ad006e132336 - This post is about the Antivirus software trying to scan files used during backup that exists in the System Volume Information folder and we do not
    have any antivirus software installed on our hosts as I stated in my post.
    Comment that might help us:
    So according to “System Volume Information” definition, the operation you mentioned is Volume Shadow Copy. Check event viewer to find Volume Shadow Copy related event logs and post them.
    Why?
    Furhter investigation suggests that a volume shadow copy is somehow created even though the Schedule for Shadows Copies is turned off for all drives. This happens at random and we have not found any pattern. Yesterday this operation took almost all available
    disk space (over 200 GB), but all the disk space was released when I turned on scheduled Shadow Copies for the CSV.
    I therefore draw these conclusions:
    The CSV Volume has about 600 GB of disk space and since Volume Shadows Copy used 200 GB, or about 33% of the disk space, and the default limit is 10% then I conclude that for some reason the unscheduled Volume Shadow Copy did not have any limit (or ignored
    the limit).
    When I turned on the Schedule I also change the limit to the minimum amount which is 320 MB and this is probably what released the disk space. That is, the unscheduled Volume Shadow Copy operation was aborted and it adhered to the limit and deleted the
    Volume Shadow Copy it had taken.
    I have also set the limit for Volume Shadow Copies for all other volumes to 320 MB by using the "Configure Shadow Copies" Window that you open by right clicking on a drive (volume) in Computer and then selecting "Configure Shadow Copies...".
    It is important to note that setting a limit for Shadow Copy Storage, and disabaling the Schedule are two different things! It is possible to have unlimited storage for Shadow Copies when the Schedule is disabled, however I do not know if this was the case
    Before I enabled Shadow Copies on the CSV since I did not look for this.
    I now have defined a limit for Shadow Copy Storage to 320 MB on all drives and then no VHDX should be copied to System Volume Information since they are all larger than 320 MB.
    Does this sound about right or am I drawing the wrong conclusions?
    Limits for Shadow Copies:
    Below we list the limits for our two hosts:
    "Primary Host":
    C:\>vssadmin list shadowstorage
    vssadmin 1.1 - Volume Shadow Copy Service administrative command-line tool
    (C) Copyright 2001-2012 Microsoft Corp.
    Shadow Copy Storage association
       For volume: (\\?\Volume{e3ad7feb-178b-11e2-93e8-806e6f6e6963}\)\\?\Volume{e3ad7feb-178b-11e2-93e8-806e6f6e6963}\
       Shadow Copy Storage volume: (\\?\Volume{e3ad7feb-178b-11e2-93e8-806e6f6e6963}\)\\?\Volume{e3ad7feb-178b-11e2-93e8-806e6f6e6963}\
       Used Shadow Copy Storage space: 0 bytes (0%)
       Allocated Shadow Copy Storage space: 0 bytes (0%)
       Maximum Shadow Copy Storage space: 320 MB (91%)
    Shadow Copy Storage association
       For volume: (E:)\\?\Volume{dc0a177b-ab03-44c2-8ff6-499b29c3d5cc}\
       Shadow Copy Storage volume: (E:)\\?\Volume{dc0a177b-ab03-44c2-8ff6-499b29c3d5cc}\
       Used Shadow Copy Storage space: 0 bytes (0%)
       Allocated Shadow Copy Storage space: 0 bytes (0%)
       Maximum Shadow Copy Storage space: 320 MB (0%)
    Shadow Copy Storage association
       For volume: (G:)\\?\Volume{f58dc334-17be-11e2-93ee-9c8e991b7c20}\
       Shadow Copy Storage volume: (G:)\\?\Volume{f58dc334-17be-11e2-93ee-9c8e991b7c20}\
       Used Shadow Copy Storage space: 0 bytes (0%)
       Allocated Shadow Copy Storage space: 0 bytes (0%)
       Maximum Shadow Copy Storage space: 320 MB (3%)
    Shadow Copy Storage association
       For volume: (C:)\\?\Volume{e3ad7fec-178b-11e2-93e8-806e6f6e6963}\
       Shadow Copy Storage volume: (C:)\\?\Volume{e3ad7fec-178b-11e2-93e8-806e6f6e6963}\
       Used Shadow Copy Storage space: 0 bytes (0%)
       Allocated Shadow Copy Storage space: 0 bytes (0%)
       Maximum Shadow Copy Storage space: 320 MB (0%)
    C:\>cd \ClusterStorage\Volume1
    Secondary host:
    C:\>vssadmin list shadowstorage
    vssadmin 1.1 - Volume Shadow Copy Service administrative command-line tool
    (C) Copyright 2001-2012 Microsoft Corp.
    Shadow Copy Storage association
       For volume: (\\?\Volume{b2951138-f01e-11e1-93e8-806e6f6e6963}\)\\?\Volume{b2951138-f01e-11e1-93e8-806e6f6e6963}\
       Shadow Copy Storage volume: (\\?\Volume{b2951138-f01e-11e1-93e8-806e6f6e6963}\)\\?\Volume{b2951138-f01e-11e1-93e8-806e6f6e6963}\
       Used Shadow Copy Storage space: 0 bytes (0%)
       Allocated Shadow Copy Storage space: 0 bytes (0%)
       Maximum Shadow Copy Storage space: 35,0 MB (10%)
    Shadow Copy Storage association
       For volume: (D:)\\?\Volume{5228437e-9a01-4690-bc40-1df85a0e6736}\
       Shadow Copy Storage volume: (D:)\\?\Volume{5228437e-9a01-4690-bc40-1df85a0e6736}\
       Used Shadow Copy Storage space: 0 bytes (0%)
       Allocated Shadow Copy Storage space: 0 bytes (0%)
       Maximum Shadow Copy Storage space: 27,3 GB (10%)
    Shadow Copy Storage association
       For volume: (C:)\\?\Volume{b2951139-f01e-11e1-93e8-806e6f6e6963}\
       Shadow Copy Storage volume: (C:)\\?\Volume{b2951139-f01e-11e1-93e8-806e6f6e6963}\
       Used Shadow Copy Storage space: 0 bytes (0%)
       Allocated Shadow Copy Storage space: 0 bytes (0%)
       Maximum Shadow Copy Storage space: 6,80 GB (10%)
    C:\>
    There is something strange about the limits on the Secondary host!
    I have not in any way changed the settings on the Secondary host and as you can see, the Secondary host has a maximum limit of only 35 MB storage on the CSV, but it also shows that this is 10% of the Volume. This is clearly not the case since 10% if 600
    GB = 60 GB!
    The question is, why does it by default set a too small limit (i.e. < 320 MB) on the CSV and is this the cause of the problem? I.e. is the limit ignored since it is smaller than the smallest amount you can provide using the GUI?
    Is the default 35 MB maximum Shadow Copy limit a bug, or is there any logical reason for setting a limit that according to the GUI is too small?

  • DirectAccess & Multi-Site (Windows Server 2012 R2)

    Hello everyone,
    Currently, I have a single working DirectAccess servers (Windows Server 2012 R2). Since I only have Windows 7 Enterprise clients, I'm using internal certificates. In short, this solution is working properly.
    I'm interested in setting up Multi-Site and I have a couple of questions.  From the research I've done, it looks like I'm going to need a publicly generated certificate for IP-HTTPS. According to some videos I've watched regarding Multi-Site configuration,
    I should use a wildcard certificate.
    Is this because this certificate must be loaded on two servers DirectAccess servers?
    Our company domain is, say, mycompany.com - Will there be an issue if I get say,
    *.directaccess.mycompany.com certificate? I just want to make sure that DirectAccess will handle this properly.
    Thanks!

    Hi,
    >>If I purchase a multi-domain certificate and apply it to both DA servers, will this work?
    According to the official document, certificate requirements for IP-HTTPS certificates:
    For a single CA that issues SSL certificates that are installed on DirectAccess servers for IP-HTTPS connections:
    In the Subject field, either an IPv4 address of the Internet interface of the site-specific DirectAccess server or the FQDN (recommended) of the IP-Secure Hypertext Transfer Protocol (HTTPS) URL
    In the Enhanced Key Usage field, the Server Authentication OID
    In the CRL Distribution Points field, the organization-wide CRL distribution points on the Internet
    For per-site CAs that issue SSL certificates that are installed on DirectAccess servers for IP-HTTPS connections:
    In the Subject field, either an IPv4 address of the Internet interface of the site-specific DirectAccess server or the FQDN (recommended) of the IP-HTTPS URL
    In the Enhanced Key Usage field, the Server Authentication OID
    In the CRL Distribution Points field, the site-specific CRL distribution points on the Internet
    The official document doesn't show that we can put the FQDN of the DA server into SAN, therefore it may not work.
    Best Regards.
    Steven Lee Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Support, contact [email protected]

Maybe you are looking for