Quantcast
Channel: Remote Desktop Services (Terminal Services) Forum
Viewing all 27656 articles
Browse latest View live

Event ID 311 - remote computer does not support secure device redirection

$
0
0

I'm seeing the following 311 Event ID in my Remote Desktop Services logs on a Windows 2012 R2 server when trying to connect to the RDGateway server using itself as an Remote Desktop Gateway server:

The user DOMAIN\User, on client computer "IPv4 IP Address", did not connect to the following network resource: "hostname" because the remote computer does not support secure device redirection. Try selecting another network resource or possibly lower RD Gateway security by modifying RD CAP to allow client connections to resources that do not enforce device redirection.

  • DOMAIN\User is a Domain Administrator account
  • IPv4 IP Address is the external IP address of the PC from which I'm attempting the connection
  • hostnamis the name of the server I'm trying to connect to (which is the RD Gateway Server itself)

I can RDP directly onto the server, so I don't believe it's a problem with the Remote Desktop client application on my PC.  I can also use the RDGateway server to connect to other machines on the same network and domain as the RDGateway server - it only fails when I attempt to connect to the RD Gateway server using the RD Gateway server.  All machines on the domain are Windows 2012 R2, but I can only surmise there's a difference somewhere between the working servers and the RDGateway server which is causing this error.

Looking through some articles the only suggestion is to remove the Only allow client connections to Remote Desktop Session Host servers that enforce RD Gateway device redirectionoption from the CAP, however that appears to make the connections less-secure, and also shouldn't be necessary being as it works for all the other PCs I'm connecting to.  To confuse matters further, I have another completely separate environment built from the same scripts where this works as expected!  Finally, to add insult to injury, this does appear to work following a reboot of the RDGateway server (not a practical solution for a production environment, obviously!).

Any ideas, assistance or thoughts would be greatly received.


Problems with RD Gateway / RD Web Configuration and Two-Factor Authentication

$
0
0

Hi All,

Not to long ago we decided to upgrade our older 2008 R2 Terminal services to 2012 R2 remote apps. Originally we had planned on having one machine with the RD Web and RD Broker roles installed and then two Session host machines. Something else different about this setup than our previous is we wanted to use two-factor authentication.

We setup two-factor authentication on the RD Web server and it works fine. The problem is once a user has downloaded an RDP file, they can run it and get around our two-factor authentication and just have username/password authentication.

After some reading I found that a way to fix this was to add the RD Gateway role to our RD Broker / RD Web server to force the connections to go through it and then block 3389 to the session hosts from anyway besides the RD Gateway / RD Broker / RD Web server.

One thing I have noticed that is quite odd, in the settings for the RD Gateway, if I have the "Bypass RD Gateway for local addresses" checked, everything seems to work (as long as I am not blocking 3389 to the sessions hosts from anywhere but the gateway, which is something I should be able to do if the gateway was working correctly) but I still have the same problem of the rd app files being usable to get around the two-factor. Then, when I have the same thing unchecked, I seem to be unable to run the apps. This leaves me to believe I have the RD Gateway configured incorrectly?

I have a valid certificate from a known issuer configured on the server. The vendor we are using for two-factor is Duo Security.

Any input / thoughts are appreciated. If there is a way to get RD Web to work on it's own and have the rdp file's only be usable once or something I would also be okay with that solution.

Thanks,

Remote Desktop Connection has stopped working while connecting to RDS 2012

$
0
0

I have a win8 workstation that cannot connect to my RDS environment. Through Remote App or even through the RDP shortcut, RDP crashes every time with the message  "Remote Desktop Connection has stopped working" It happens right after "estimating connection quality" I have tried disabling services (mapped drives & printers) & every connection setting available but nothing works, & there doesn't seem to be much in the way of troubleshooting that I can find.  

Any ideas?

Bootable USB/DVD client with 2012R2 RDS Gateway

$
0
0

Server 2012R2 RDS Farm using an RDS Gateway.

I'd like to find a way to build a bootable USB/DVD image that'll automatically connect to our RDS Gateway. I'd like it to boot into whatever the OS is then automatically start an RDP session to our server via the RDS Gateway.

I've found a lot of different bootable Linux etc distros but none of them seem to have the ability to connect to an RDS Gateway (straight RDS is what a lot of them offer).

Can anyone advise me on how they would go about building such an image please? 

Thanks.

RDS Copy and paste not working between workstation and RDS host

$
0
0
We have an Windows 2012 R2 RDS farm that will not let users copy and paste from their workstation to the RDS hosts. I have group policy set to allow copy and paste, I have the RDS farm policy set to allow as well. I configured the registry to allow copy and paste is set to allow. I can copy text, but not files from a workstation to a RDS host. I can copy and paste files from one RDS host to another. Our users connect via the RDS gateway page. I tried to launch the RDS file and that did not work either. Thanks for any help.

Adding user profile disks to existing collection

$
0
0
If I modify the properties of an existing collection to specify the location for user profile disks, what happens to the profiles that have already been created on my session host? Will some/all of the data get migrated, or will users start over with new profiles, or will the user profile disks only be created for new users who don't yet have profiles, or none of the above?

User Profile Disks with Server 2008 R2

$
0
0
I know Server 2012 added User Profile Disks for Remote Desktop Services. Does anyone know of a way of making them work with Server 2008 R2? Or a similar solution that can be applied to 2008 R2? Something other than Roaming profiles and Folder Redirection.

Vincent Sprague

2012r2 RD Per User Licensing - no license server available

$
0
0

Hi,

The question I have is based on a scenario for DR I am looking at. I'll describe the scenario first then ask a very specific question.

I have 2 sites, with a RD Session Host on each. The primary site's RDS Host has Licensing installed with some Per User CALs.

The secondary site's RD Host is using the licensing on the primary site.

In my testing of the DR scenario I can turn off the primary site (so no licenses are available) and can still log on to the secondary site server.

Both servers are still in the grace period.

Question------- After the grace period is over, and during a DR event where the primary site's licensing server is not available,  what happens when a user tries to connect to the secondary RD Session Host?

I've looked all over and can't find a straight answer to this. My apologies if my searches weren't vigilant enough.

Thanks,

Tim.





WS2012 R2 VDI - An authentication error has occured

$
0
0

Hi,

After extensive testing with some users, it was decided to implement the VDI for everyone.

First users were OK, but at once, we got that kind of error

Windows Security

And that one.

RDC

Today, occurred with someone who has no problem yesterday.

Any idea how to solve this?

Thx

Olivier

Dependency on backend session host server to run gateway farm

$
0
0

Hi,

Environment.

  1. 2x RDG Servers with WebApp role installed
  2. 2012 R2 SERVER01.domain.local - 1x Server with Connection Broker, Session host and WebApp - 2012 R2
  3. SERVER02.domain.local - 1x Server with Connection Broker, Session host and Web Access - 2008 R2

We had an issue with SERVER01 at the weekend and while it was offline, noone could access the gateway servers at all, coming up with an error "there is a problem connecting to the gateway server". It didnt matter what resource they connected to through the gateway, the message was the same.

I want the people to be able to use the gateway servers independently of any other servers in the environment. Have I set things up wrong or is there a problem here?

Thanks a lot, Brendan

Start RDS 2012 session with specific user command line (powershell)

$
0
0

Hi,

I need to debug with different users on RDS 2012 farm. Therefore I need to start with different users all the time the session.
Tried to do this with Start-Process 'c:\windows\temp\rdpfile.rdp'. This works, so created different rdp files.

However, when I try to change the credentials, it changes the credentials of all the rdp files to that specific credential.
Note that there is a broker, so I need to change the rdp file a bit: http://microsoftplatform.blogspot.be/2012/04/rd-connection-broker-ha-and-rdp.html

Even tried to remove the credentials in order to get a popup but then even it doesn't give a popup!

Please advise (howto connect with different users and their credentials to a RDS 2012 farm).
J.


Jan Hoedt

LIcense problem

$
0
0

Hi,

I purchased microsoft office and registered in as well, however when I try to active it, it is asking for license and says that there is no license registered on my account.

Thanks

Windows 2012 R2 Freezes every 2 - 3 minutes and reconnects the RDP session

$
0
0

We have about 15 Windows 2012 R2 servers, virtual and physical

Systems are patched until 14-04-2016.

Eventlogs seems clean.

other systems like Windows 2008 R2 do not have this problem.

    Intial App Launch shows logon screen

    $
    0
    0

    The initial launch of an app shows a logon screen with

    title: Waiting for remoteapp programs to start
             Please review any messages that appear

    Showing our logon banner, and then loading profile etc...is there a way to not show this to each user on the initial app launch?

    Edit: We are using Windows 2012 R2 for the gateway and host

    2012R2 Users login then are immediately disconnected

    $
    0
    0

    I have a server 2012R2 server with the Session host role installed.  Licensing is working, I have verified that with the tool.

    Users who are local admins can login, but any other users login and then immediately are disconnected.   It gets to the point of loading the profile and then drops the connection.  I can't find anything in the logs, it acts like the users never even tried to login.

    Any thoughts? 


    Restricting access on an application

    $
    0
    0

    Hi,

    I have an application "A" installed on a Windows 2008 server which is configured as a Terminal server but not published the application "A" as a remote app. 

    Here my question is who ever has rights on that server logs in open the application "A" automatically. Now I want to restrict that application "A" to be open by certain users only. I tried to restrict the permissions on the application"A" configuration folders which are in Program files but not happy with it. Any ideas please?? Thanks.

    RDS Login minimum time restriction?

    $
    0
    0

    I know about Remote Desktop Session time limits for disconnected and idle sessions etc.

    Is there a way to set a minimum time for users to log back in?

    We just had an issue where a user logged out, then logged right back in. Their User Profile Disk did not have enough time to un-mount and the user got logged into a different Session Host with a temporary profile.

    This is on a Server 2012 Standard RDS Farm.

    We would like to force users to wait at least 60 seconds before they can log back into the RDS Collection.

    Cannot log off or reset a user's session from Remote Desktop Services Manager

    $
    0
    0

    Server 2008 R2 - fully patched - Running Remote Desktop services

    We regularly have Remote Desktop users whose sessions become hung and will not logoff.

    I found a thread (which I cannot link to) but the "Answer" does not work.

    Any running processes will not stop, I tried the Task Manager, Remote Desktop Manager, Powershell commands, DOS commands, etc.

    Is there a fix for this?

    Remote Desktop Services Manager snap-in is missing (W2012 & W2016)

    $
    0
    0

    I couldn't find the Remote Desktop Services Manager snap-in in W2016 TP4

    Browsing the web I understood that it is already missing from W2012. Yet I failed to find a replacing tool.

    I mean, how to get an overview of who is connected to which RDS servers ?

    I have numerous RDS servers, 2003R2 and 2008 R2. They are not members of a farm or alike. No broker, No roaming profiles. We kept things simple. They all are independent servers. The virtualization layer taking care of the "high availbility".

    At the moment I have a MMC running in a W2008 server, where I have added all my servers (note that monitoring a W2016 TP4 RDS is OK...).

    But will I monitor all my RDS servers from a W2016 or W2012 server  ?


    Cannot Reconnect to RDS Session on Server 2012 - Remote Desktop Services are currently busy

    $
    0
    0

    I am experiencing an issue with Server 2012 RDS. This is a VM running on a 2008 R2 Hyper V Cluster.

    The issue seems to only affect one user, but he is the MD.

    While trying to re/connect to a remote app, the screen will instead display -

    Remote Desktop Services are currently busy

    Although sometimes you simply just get a welcome screen that sits there doing nothing instead. It is not an easily reproduced issue, so I don't know how or why it seems to happen, just that rdpshell.exe sometimes spikes in usage and the session can/will not sign off (by either Administrator or the end user)

    He will then be unable to log in until I reboot the server, which will not actually restart unless I do a reset. 

    I would very much like a fix for this, as getting everyone else to disconnect so I can reboot is not really a fix, and I'm sure the MD is not happy about it either.

    Viewing all 27656 articles
    Browse latest View live


    <script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>