Quantcast
Channel: Remote Desktop Services (Terminal Services) forum
Viewing all 27765 articles
Browse latest View live

Adding another icon/ rdp shortcut to the RDWEB Page

$
0
0

Hi,

I have set up a Windows Server 2016 RDS environment which is as follows:

1 RD Gateway Server (RDGW1)

1 RD Web Server (RDWeb1)

5 RD Session Hosts (RDS1 to 5)

1 RD Broker (RDBroker1) - also does licensing.

gateway url is: gateway.domain.com which points internally and externally to the RDGW1 server.

The RD gateway and RD Web servers are in the DMZ.

We now want to implement Azure MFA using the NPS Extension as described here: https://docs.microsoft.com/en-us/azure/active-directory/authentication/howto-mfa-nps-extension-rdg  

To minimize impact, I set up another Gateway server in the DMZ called RDGW2, along with an NPS server in the LAN (NPS1). Following the documentation linked to above, I was able to successfully set this up.

To test, I have downloaded the RDP icon from the RDWeb page and edited it to direct via RDGW2 rather than RDGW1. I also created an External DNS entry for gateway2.domain.com pointing to the WAN IP for RDGW2.  This works fine from outside of the network and I get MFA prompts and can see connections going through RDGW2.

I now need to publish 2 RDP shortcuts. One would be using the old non MFA gateway (RDGW1)  - this is already there. The second would be the edited RDP Shortcut that uses the new MFA configured Gateway (RDGW2).

Is there any way I can publish the second RDP icon? Perhaps by editing the relevant web page or locating where the original icon is located? Publishing via RemoteApp is not an option. The reason for having both is to provide a transition environment and possible future DR environment (in case there are issues with Azure).

Thanks,


3389 not listening 2008r2

$
0
0
i have rdp enabled on this 2008 r2 server but users cannot login via rdp. also 3389 is not listening. any ideas?

RDVH Delegation Rights Error

$
0
0

Hello all, need some help in determining why the ConnectionBroker can't see the delegated rights to the assigned OU for creating & deleting virtual desktops.

Environment:

  • Forest: Windows2008Forest
  • Domain: Windows2008Domain
  • Schema: Windows2012R2
  • DCs - Mix of 2012 and 2012R2 Servers
  • MSVDI- (CB, Lic, Web, SH, VH) = All 2019 Servers

Regardless of the method I try to use I'm stymied in creating a virtual desktop pool.

I've been able to successfully get RDSH working, but not the RDVH.

I've validated the permissions on the OU.  I've cleared out the permissions, setup new OUs to try, re-run the commands, used the script that they provide.  Permissions are there...but the UI and PowerShell commands simply don't acknowledge the permissions.  I've even tried (and reverted) given Everyone full access to the OU.

Errors:

In the 'Create Collection' UI Wizard I receive the following text when clicking Next in the 'Unattended Settings' section.

  • The RD Connection Broker server does not have access to add the virtual desktops to the Active Directory domain.  Configure access by using the Active Directory page of the Deployment Properties.

In the Deployment Properties, Active Directory section I receive the following text:

  • The specified Active Directory Domain Services organizational unit is not configured with the appropriate permissions to automatically create virtual desktops.  To configure the appropriate permissions, click Apply.

Clicking apply and/or using the 'Generate Script' button and running the script applies the permissions...but the UI does not acknowledge that it works.  Visually validated the permissions through AD.

Ran Test-RDOUAccess and received an error -2147463168, Failed to test access for the Connection Broker.

Ran Grand-RDOUAccess and received the same error -2147463168, says that my current user didn't have the rights.  I tried with a domain admin and enterprise admin account...still didn't work.

Hoping that someone can give me an idea on what to try next.

Thanks!


Windows server 2008 R2 - How can I fix the warning message (120 days) appears when using remote desktop session

$
0
0

Hello 

I am using windows server 2008 R2 with multiple users (5 users accounts). I facing a problem where a 'pop up' warning message appears saying * you have 120 days left ......* every time when I or other users logged in to this server. I tried to check through the remote desktop licencing server and add the license server's name and its credentials (Remote Desktop Services > Remote Desktop Session Host Configuration) in the configuration. Then there is no error and green tick appears in the License diagnosis tab under 'Remote Desktop Session Host Configuration' seem every thing fine. However, when log off and log in again I need to supply the credentials again and again for every time and for every user who log in. Also, the days are reducing meaning , I am left with 118 days more for remote desktop sessions .  

Q: Why every time the user logged in to the server , still getting this warning popup, although a valid license server name and its credentials were supplied ?? 

Q How can I fix this problem . I need complete solution for multiple users ? 

I hope you understand the problem. 

Thanks 

Faisal




Remote Desktop web client exception with disconnect code GatewayProtocolError 52 , extended code=, reason = Gateway tunnel authorization failed with error code = 2147965403

$
0
0

Scope of this is that out of dozens of accounts that work fine for rdwc sessions, there are two that do not.  The connection starts but within a few seconds fails with, user facing side, 'we couldn't connect to gateway because of an error.'  When running a capture, the key error appears to be:

"The connection generated an internal exception with disconnect code=GatewayProtocolError(52), extended code=<null>, reason=Gateway tunnel authorization failed with error code=2147965403"


This is what’s in the nps log from the RD server:

"orgRD","RAS",04/05/2019,15:22:31,1,"DOMAIN\SAMACCOUNTNAME",,"UserAuthType:PW",,,,,,,,,,,,5,,,12,,,0,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,"TS GATEWAY AUTHORIZATION POLICY",2,"TS GATEWAY SERVER GROUP","xxx.xx.xxx.xx",,
"orgRD","RAS",04/05/2019,15:22:31,11,,,,,,,,,,,,,,,,,,,,,0,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,"TS GATEWAY AUTHORIZATION POLICY",2,"TS GATEWAY SERVER GROUP","xxx.xx.xxx.xx"",,

And this is from the NPS server:

"FILES","IAS",04/05/2019,15:22:31,1,"DOMAIN\USERNAME","domain.org/Users/FirstnameLastname","UserAuthType:PW",,,,,,,0,"xxx.xx.xxx.xx","orgrd",,,5,,,12,7,"RDpolicy",0,"311 1 xxx.xx.xxx.xx 03/19/2019 04:54:59 292",,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,"RDGWauth",1,,,,
"FILES","IAS",04/05/2019,15:22:31,11,,"domain.org/Users/FirstnameLastname",,,,,,,,0,"xxx.xx.xxx.xx","orgrd",,,,,,,7,"RDpolicy",0,"311 1 xxx.xx.xxx.xx 03/19/2019 04:54:59 292",,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,"RDGWauth",1,,,,

Any pointers in the right direction, or if anyone else has seen these errors, would be much appreciated!

New to RDS with RDP

$
0
0

I came from the VM Ware remote desk top services so stumbling a little getting up and running. I have a windows 2019 farm built and working with published apps and 2 windows 10 pools one pooled and one personal. Everything is working across HTTPS including html 5 where I have an issue is with some thin clients I am running ( RDP protocol ) . I point them at my RD Connection Broker server and added the reg entry to redirect to my  windows 10pooled pool everything works great. With only one RD Connection Broker ( in this case 2 clustered ) how can I redirect some thin clients to the personal pool and others to the pooled pool. Thanks for any help you can give me here.

Unable to RDP to windows 2k12 server

$
0
0
After patching server we are unable to RDP the server from its Public IP and VPN but are able to RDP the server via Internal/Private IP. Any help would be appreciated.

Intermittent connection issues to our RemoteApp via RD Gateway

$
0
0

We are getting intermittent errors only when connecting to one of our Remote App servers. When users attempt to connect using an RDP file we provided them they occasionally get,

"RemoteApp Disconnected"
"Remote Desktop can't connect to the remote computer "MACHINE.DOMAIN.COM" for one of these reasons:

1) Your user account is not authorized to access the RD Gateway "RD-GATEWAY-DEV.DOMAIN.COM"

2) Your computer is not authorized to access the RD Gateway "RD-GATEWAY-DEV.DOMAIN.COM"

3) You are using an incompatible authentication method (for example, the RD Gateway might be expecting a smart card but you provided a password)

Contact your network administrator for assistance.

If they trying logging in with the same RDP file a couple of times, it eventually works. Not sure how to track this issue down.

We know that the RDP is ok, because it works much of the time.

Any ideas on what logs to look at on the server?


Lenovo YOGA 3 Pro-1370 Product Key error

Terminal services login issue

$
0
0
Once the server has started, you can log in to it. However, after some time, the server will stop accepting log ins from both the console and RDP and will just sit on "configuring remote session". I have had this on many Server 2016 servers with remote desktop services installed. If you leave RDP to sit on this message it eventually errors with an 'internal error occurred' message.

Intermittent Connection Issues to our Remote Desktop Server

$
0
0

So we have a Hyper-V VM that is running Server 2008 R2. When using remote desktop to connect to this server we are randomly having issues connecting when trying to connect using both our external dns and ip address and also with the internal server name.

We receive the following error:

Remote Desktop can't connect to the remote computer for one of these reasons:

1) Remote access to the server is not enabled

2) The remote computer is turned off

3) The remote computer is not available on the network

All of the above are fine as we have used this server for a number of years. Its only been a recent thing that this has stopped working intermittently. I have 6 users connected today and now if i try and log in i get this message and i am trying several users who i know have connected recently.

Any ideas would help ?

Remote Apps do not display in RDWeb - Remote desktop server 2016

$
0
0

I have a single Remote Desktop Server on the domain.

I have added the server to  the RDS Access Servers group on the local server and Active Directory.

All of the Remote Apps are set to be visible in RD Web Access.

I did setup the server and publish the apps prior to adding the Remote Desktop Web Access role.


Joshua Lance

Sign in option

$
0
0

Can i add custom sign in option in addition to already available sign in options (password, smart Card) ?

Custom sign in option is related to smart card but without reading certificate on smart card. Rather it will perform sign in on other attributes fetched through smart card and comparing them againstemployee ID attribute of AD?


Rox_Star

Windows Server 2012 R2 Remote Desktop Services - RDP client gets black screen, System Event ID 4005, TerminalServices Event ID 36

$
0
0

RDP users (Citrix XenApp) are getting connections refused/dropped and a black screen. This is Citrix MCS spawned terminal services on Windows Server 2012 R2. On the server seeing these messages:

Log Name:      Microsoft-Windows-TerminalServices-LocalSessionManager/Operational
Source:        Microsoft-Windows-TerminalServices-LocalSessionManager
Date:          5/7/2019 12:08:15 PM
Event ID:      36
Task Category: None
Level:         Error
Keywords:      
User:          SYSTEM
Computer:      CTXIAHYP004.mydomain.com
Description:
An error occurred when transitioning from CsrConnected in response to EvCsrInitialized. (ErrorCode 0x80004005)

Log Name:      Application
Source:        Microsoft-Windows-Winlogon
Date:          5/7/2019 12:08:15 PM
Event ID:      4005
Task Category: None
Level:         Error
Keywords:      Classic
User:          N/A
Computer:      CTXIAHYP004.mydomain.com
Description:
The Windows logon process has unexpectedly terminated.


After extensive Internet search with these symptoms I am coming up empty.

I reviewed EventTracker and related MicrosoftHelp but these recommendations do not seem to apply in this case or are too vague to be useful. Those articles suggest a server resource constraint (we do not see this, unless it was temporary and is no longer present when the system event occurs), registry corruption (this seems very unlikely, but even if true, how do we determine which registry hive or key is corrupt?) or a service that needs restarting (which service? we do not see any errors showing failed or stopped services).

Any other tips?

RDS with Azure Load Balancing

$
0
0

Hi Folks,

I was testing out the solution provided by MS in one artciles to configure RDGW/WEb access server behind Azure LB but was confused with step3.https://docs.microsoft.com/en-us/windows-server/remote/remote-desktop-services/rds-rdweb-gateway-ha


Scenario: RDS GW/Web Access in HA running behind a Standard Azure Public Load balancer..The solution works good  but If i start restricting the traffic via NSG...the only way rd Gateway/WI URL works publicly  is if i put the 
source :Internet;destination : IPs of my RDS GW/WebAccess Servers; port :443... 

Ideally,shouldn't it be working if i enable the port 443 from outside network to the IP of Public Load balancer (behind which actually are my RD GW/Web Access servers)or Am i doing something wrong?...
If it works by allowing port 443 to internal IP of RD GW/Web Access server ,isnt it a  secrutiy risk?
Please let me know if somebody can help out to clear the confusion


ManeeshB


W10 1709 RemoteApp - Pop-ups hidden behind main window

$
0
0

Hi, I've this issue after migration of RDS server from 2012 R2 to 2016 and client have Windows 10 1709 but with Windows 10 1703 no issue.

Any suggestions?

Hyperv enhanced session and RDP

$
0
0

I have a windows 10 computer and it has a hyperv windows 10 VM within it. When I try to log into the VM using enhanced session mode of HyperV, which requires RDP support, my logon is refused with the classic 'you need the right to sign in...".

I have verified the following:

The account I am using to logon is an administrator account and also has the User right 'allow logon on through terminal services'

Remote desktop connection is enabled through control panel system.

Firewall port for RDP is open and allows anyone in.

Is there something I have missed?

Thanks

David Z

VDI and RDS

$
0
0

Hello, I've got a question regarding the use of VDI and RDS at the same time.

We managed hotels and most of our front desk computers will be required to use VDI and not RDS due to software that has to be installed at each front desk pc for credit card and room keys and it won't work on RDS since each reader is independent.

My question is if we setup VDI for the front desk computers which will use Dell Wyse ThinOS and then all the other computers in the Hotel are RDS on Dell Wyse ThinOS can we set it up so that if a user logs into a front desk computer it goes to the VDI machine and then if they sign into a back office terminal it goes to the RDS server?

If that's possible do you just have the wyse terminal set to sign into the VDI machine using the vdi hostname or would you still point it to the Broker?

For RDS I've went into the DNS and put in a A record since we have multiple RDS servers. How would this work with VDI? 

The other question is what is the difference between buying a VDI license vs just buying a Windows 10 license and putting that on a Hyper-V VM?

Thanks

Windows 2016 RADC URL rejects credentials. An Error has Occured.

$
0
0

Good Morning,

Hoping to get some insight on troubleshooting this.

I have a brand new single instance Windows 2016 Standard Remote Application and Desktop Server.

The server hosts the following roles;

Gateway
Licensing
Connection Broker
Web Access

The server is protected via a public CA Cert and works as far as being a Gateway, and Web Access is concerned.  Users can connect thru it to other servers via gateway and can open and launch applications via the Web page.

When users try the add the URL https://servername/RDWeb/Feed/Webfeed.aspx  in the RADC applet in control panel,  they receive an error that they are using Incorrect Credentials.  When they type in their credentials in either DomainName\username or username@domainname format it errors out and they need to try again or cancel.

I have looked in the event log in the server and while I can see the transactions happening in the IIS logs,  the end user never is allowed to log in or receives apps.

Could use some insights here?

If I type the URL correctly in a web browser,  I receive a login prompt which once submitted provides me what appears to be an encrypted token.

Mouse cursor interacting with Remote Desktop App windows on the wrong monitor

$
0
0

We have a WinForms application we use as a remote desktop app and recently we've had multiple users report a situation where clicking on one monitor actually interacts with windows on another monitor. Restarting the remote desktop application seems to fix the problem. Our users have a two monitor setup.

Has anyone else experienced this issue?

Viewing all 27765 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>