Remote desktop users groups members unable to authorized for domain users
How to disable users copy paste and file transfer via RD Gateway ?
Hi,
We are going to roll out RD Gateway Server (Running Windows Server 2008R2) so that End Users can access their own Desktop at office (So that they can work from home)
My manager would like to disable users to copy paste and File Transfer.
I have found the following thread
1) https://social.technet.microsoft.com/Forums/lync/en-US/f07b2557-27fd-484f-9a62-635057959214/disable-file-transfercopy-paste-for-rds?forum=winserverTS
Just wonder how to set up in Group Policy ? My manager says that we cannot control how the RDP Client Settings on their own machine.
2) I find another thread and it seems that we can do it in Remote Desktop resource authorization policies (RD RAP).
My manager also agree that senior staff and IT Staff are exempted.
May I ask which way is the prefered one ?
Thanks
Remote Desktop for Lion
Should RDS NPS servers be in DMZ or LAN when you have an RODC?
Hi All,
We have a domain joined RDS gateway server in our DMZ using an RODC for LDAP/AD connections. In this scenario, is it best to put an Azure MFA NPS server in the DMZ or LAN? Currently we have it in the DMZ (working fine), as the network team have said the fewer open ports between the DMZ and LAN the better.
I'm just wondering if there's any reason to move it into the LAN?
Thanks!!
RDS MFA with SMS
Hello
Is it possible to verify user with Multi-Factor Authentication using sms verification ?
When I´m using Authenticator app, or voice call, it works, but with sms not.
Thank you
RemoteApps wont launch on Windows Home
Hi,
We have a Server 2016 Standard (VM from HyperV) with over 100+gb RAM.
We have a spike in the number of users working from home (Covid-19) and are encountering a strange bug with RemoteApps (that were already set up and working. Using a self-signed certificate installed on their local machine for security + their AD user account).
It seems user running the Apps from a Windows 10 Home will connect (show connected to the gateway) but the apps will never launch (and the user disconnect automatically from the session after a couple of sec. OR it will loop at "configuring session" indefinitely..
Launching the same rdp file with the same user account from a Windows 10 pro will work flawlessly.
THEN, if I disconnect from the Win Pro and reconnect with the Win Home (Session is thus, already launched); the Win Home will connect to the app...
Anybody have any idea why ??? (Both server and Windows home / pro are fully updated).
Thanks!
Set-RDSessionHost with NT AUTHORITY\System
Hello everyone,
I am able to allow new connection to my RDSH using the following command with an administrator user :
Set-RDSessionHost -SessionHost 'xxxx' -NewConnectionAllowed Yes -ConnectionBroker 'xxxx'
But, I have a deployment tool that can schedule some task, this tool use the "NT AUTHORITY\System" account
Do you know if there is some way to authorise this user to change RDSessionHost status ? It would be great
Thanks
Set-RDPublishedName Change published FQDN & now not connecting at all
Broker on Server 2019, domain (sadly) ending in .local
RDS Farm setup (PoC):
Server1=Broker
Server2=GW/Web
Server3=Session Host
Single SSL 443 port opened in external firewall (pointing to GW/Web server)
So with wildcard certificate I was getting certificate mismatch error
Used Set-RDPublishedName.ps1
I do have a DNS A record on the internal network pointing to the
private IP address of my broker - RemoteResources.domain.com
Connecting to Web Access, download the .rdp file & then I get an error that client cannot connect to RemoteResources.domain.com
[Window Title] Remote Desktop Connection [Content] Remote Desktop can’t connect to the remote computer "RemoteResources.domain.com" for one of these reasons: 1) Your user account is not listed in the RD Gateway’s permission list 2) You might have specified the remote computer in NetBIOS format (for example, computer1), but the RD Gateway is expecting an FQDN or IP address format (for example, computer1.fabrikam.com or 157.60.0.1). Contact your network administrator for assistance. [OK] [Help]
Seb
RD Gateway Multiple sessions for same user
Hi Guys,
I am not sure if something is wrong with our RD Gateway (new installation) but every user that logs on through RD Gateway (on Monitoring sections) there are 2 sessions for the same user. Does anyone know what is wrong? I think that has nothing to do with restrict the multiple session option because it is enabled by default and users have only 1 session on session host server. It is just monitoring section on RDGW that shows 2 sessions? How to fix it??
IP virtualization problem: ping using host IP
User's logon to TS normally, ipconfig says it gets virtual ip. dhcp logs say's it to, but:
Attempting to ping an external address causes the packets to go from host's ip address, not client virtualized ip's.
Same time ie connecting to proxy from virtualized ip's. After a day or so, ie also begins to send packets from the host address.
Remote Desktop Manager not showing all connections
I have three offices, all members of the same domain. Each office has a Remote Desktop Gateway setup and operating. I can see connections starting and stopping from all three locations RD Gateway Manager. However, when I test my connection from an outside IP address through the different FQDN gateways, although I am able to connect I am not seeing my session appear in all of the RD Gateway Managers. I would like to have a complete accounting of all connections through each RD Gateway Manager. What am I missing?
Thanks,
RV
Windows 10 1903 - RemoteApp laggs
Hi,
Just wanted to share some knowledge, regarding the use of RemoteApps with Windows 10 1903 clients.
We have for the past 200+ days, been in dialog with Microsoft, regarding RemoteApp lag.
When using / moving RemoteApps around the screen, there would be an delay in moving. You can simply see the mouse is seconds ahead of the window, that is being dragged.
The issue is only present in RemoteApps, but works in Full desktop mode, using the same RDS collection.
We tested this on the following platforms:
Clients:
Windows 10 - 1709 - Works
Windows 10 - 1803 - Works
Windows 10 - 1809 - Works
Windows 10 - 1903 - Dont work
RemoteApp Servers (RDSGW, RDSCB, RDSH):
Windows server 2012 R2 - works with all clients, except for Windows 10 1903.
Windows server 2016 - works with all clients, except for Windows 10 1903.
Windows server 2019 - works with all clients, except for Windows 10 1903.
Just like in Windows 10 1803, Microsoft had some severe issues with RemoteApp, but replacing the mstsc.exe and mstscax.dll files, from a build prior to 1803, fixed the issue. This is also true in the Windows 10 1903 build.
After alot of frustrations, we figured the root cause - the mouse!
If using an high-end mouse like Razor, Steelseries or Logitech gaming mouses, then the issue is present.
When changing to a regular mouse, like an standard Dell or HP, the problem disappears instantly.
After this finding, Microsoft have choosen to close the case...
According to Microsoft its not Windows 10 1903 that is the root cause, but instead several large and independent mouse manufacturers (Logitech, Razor, Steelseries, etc), that is the root cause. But using the same mouse on other Windows 10 versions, works perfectly... Also if replacing the mstsc.exe and mstscax.dll in the 1903 build, using the files from 1809, works with the high-end mouses.
Hopefully someone find this post, before spending enormous amount of time tracking this down... :)
Cannot Install Remote desktop Services
When I try to install Remote Desktop Services, it fails with the following Error. Any help is appriciated.
Running a Server 2012 R2 Domain
"The activity has exceeded the specified maximum running time of 1800 secounds."
Remote Desktop Gateway Manager Console stuck on Expanding and errors our.
Hello,
I am not sure if this is the right place for it. But I have set up a Remote Desktop Gateway server and have ran into an issue with it. Everything is working, and I do see clients connecting to it. However, when the numer of connection exceeds a certain amount, I seem to have lost access to the Remote Desktop Gateway Manager console where it's just stuck loading.
I have also tried the Get-WMIObject command and that too gets stuck. I was wondering if anyone knew. What I want to do is be able to monitor the amount of connections going through that specific Remote Desktop Gateway Server.
Thank you!
Win2019 RDS - Multiple Per User CAL's allocated to single domain user
I have a RDS server in domain installed with Licensing role as well (RDSH and Licensing role on same server) with Per User CAL installed.
Licensing report revealed that multiple CAL's allocate to single domain user.
Total 2 CAL's against one user name - one of yesterday and two of today with same time.
I can see he only running one session as per "quser"
Domain User account is not modified like user account is not recreated or renamed.
I could not find reasons or clue how this can happen with Per User CAL's
Appreciate if someone can shed some light or what next I can do to avoid it.
failed to install RD virtualization host role service
I have a Dell r740 server w/ a tesla card in it. i'm trying to setup a "standard" remote app environment. I currently have the physical box running hyper-v and running 2 VMs. ( Everything is server 2019, latest windows updates) One of the VMs i'm figuring on being my gateway/broker server, the other my session host server and i've direct attached the tesla card to it. I've also got the grid drivers installed on the VM.
Now here is where my trouble comes in, when i use "add roles and features wizard" from server manger to install the Gateway, broker, and session host, it errors out on the session host. (gateway, and broker are both installing on the same server, and succeed) The error i'm seeing from serer manger on the installing broker/gateway server is "Failed: Unable to install RD virtualization host role service on server ........"
This is the second set of VM's that i'm getting this error for.
IT guy
Managers users in RDS collection
Hi all,
I have a RDS farm in Windows 2016 server with one RDCB, two RDSH hosts and no RD Gateway and it has access to all Domain Users, I want to deny access to this farm for particular group(which is in Domain Users). Is there any way to do this?
RDS - I need to change displays to a bigger monitor.
My father is working at home due to the current situation with the Global Pandemic.
I am attempting to help him change displays during a RDS while using the VPN Citrix.
He is having eye strain issues with the company funded laptop; thus I had attempted changing displays when I got the error:
The display settings can't be changed from a remote session.
If someone has a work around for this; that would be greatly appreciated! Thank you.
Details:
1. VPN: Citrix
2. Windows version: Windows 10 Pro
3. RDS: (EDIT: I believe Citrix is a gateway that acts as his VPN and RDS.)
Unable to shadow using mstsc unless run as admin elevated on RDS 2019
Running RDSH on Window Server 2019. I'm looking at allowing users to shadow other users but I've hit a bit of a problem. Cross-reference with this very old thread:
https://social.technet.microsoft.com/Forums/ie/en-US/b677a5a6-24de-4047-ab69-d2d9ae3baf64/shadow-only-for-administrators?forum=winserverTS
It mentions using mtstc /shadow:session /control. There is lots of discussion about permissions but I couldn't get it to work. But then I tried it using the domain admin account - which is able to shadow from Server Manager collections - and even it couldn't run the above command. You get this error:
However, if you run it from Powershell (Admin), i.e. elevated - then it works fine.
So this one isn't really about shadowing permissions as such but more having to run mstsc.exe as an administrator. Which is a bit of a showstopper as we are not about to give normal users admin rights on the RDS server.
Any ideas?
Slow RemoteApp performance on VPN - Windows 10 to Server 2012 R2
Recently we have been seeing screen refresh issues on our RDS environment when using windows 10 and VPN.
The way that we use it is our RDWeb publishes MSTSC icons that then point to another server. We also have a published remote desktop connection manager.
There are 2 Connection Brokers, 2 Web Servers and 14 core session host servers all using Server 2012 R2. All hosted on Hyper-v. Each of the session host servers has a 3 core 64GB memory setup with 60 to 80 users on each. We also experience the same issue when we only have 1 user on a session host. Also the issue persists late at night when there are only a handful of users connected.
The remote desktop connection manager looks awful and trying to scroll down a list of servers is very laggy.
The client machine is using Windows 10 Enterprise 1809. This issue has only appeared in the last 2 months. Where we had more users move to Windows 10 from Windows 7. The user foot print has not really changed much either.
Has anyone seen this issue?
We are looking at limiting the session hosts to just use TCP as the connection protocol.
Any help will be much appreciated.