Quantcast
Channel: Windows Server General Forum forum
Viewing all 24879 articles
Browse latest View live

Roll-up KB4338818 Fails in Server 2008 R2 SP1

$
0
0

I am unable to install KB4338818 on three different 2008 R2 SP1 servers in three different networks.  Error 80070020.

Any help?


Windows update for Server 2018 R2 (error 80070020)

$
0
0

I've got error 80070020 for update KB4338813 (Windows server 2008 R2). I have restart the server and retry. still have problem.


If Domain is corrupt

$
0
0

Dear,

Due to the following message (got when creating one user on the Win 2008 domain), does it mean the server domain has been corrupt?

How to resolve the problem that there were error captured (by Anti-virus application), exactly after the setup (from scratch) of Win 2008 R2 server with the relevant Domain?



Many Thanks & Best Regards, Hua Min


Active Directory Domain Services Naming information cannot be located because: The RPC server is unavailable. Contact your system administrator to verify that your domain is properly configured and is currently online.

$
0
0

Active Directory Domain Services

Naming information cannot be located because:

The RPC server is unavailable.

Contact your system administrator to verify that your domain is properly configured and is currently online.

icacls - grant permissions for more than one user

$
0
0

is it possible to grant permissions for multiple groups at the same time?

for example:

icacls "<root folder>" /grant "group 1" + "group 2" + "group 3" :F /t

in case it's not possible what is the alternative way to do it?

DCOM config security tab greyed out, typical measures not working

$
0
0

Hello,

I have a new Windows Server 2008 R2 x64 (remotely, in a data center) and have been having issues very similar to many other users on this forum, but all of the solutions that worked for them either aren't working or aren't available for me.

To begin, I have .Net web applications that attempt to run the Windows Media Services COM object.  They're getting access denied errors on the COM object.  I figured, no problem, I'll use DCOM Config to give permissions.  Problem is, all the elements of the Security tab are greyed out.  Ok, others have had this problem, so I tried the 32-bit version of DCOMCfg like others have ("mmc comexp.msc /32"), but that doesn't work, either, they are still greyed out.  Even though I am logged in as Administrator, I also tried opening Component Services with "Run as administrator", just to be sure, and that did not help, either.

I read on this forum that sometimes comuid.dll needs to be replaced with the one from Windows 7.  So I took ownership of it and removed TrustedInstaller and added myself with full control so I could rename the file per the suggestions here and replace it with the other one.  Still no change.

I also saw suggestions to edit the registry to add permissions to the AppID key, but my COM object doesn't have a key under the path other posts here describe (under HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID), but it does appear under a slightly different location HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{845FB959-4279-11D2-BF23-00805FBE84A6).  It appears I can't quite change permissions as easily as other posts describe unless I also take ownership first.  But before I get to that ...

I've been chasing this issue down for hours now, and I'm perplexed why so many of my efforts have failed where they appeared to work for others.  It's almost as if my Administrator account isn't really recognized as an "administrator"!?!  I did try creating another administrator account and repeated the suggestions above, but I got the same results.  Any ideas as to whether there's something else possiblywrong that would cause the solutions that worked for others to fail in my case?  I don't want to be beating my head against the wall if there's something else to taken care of first.

Secondly, does it sound like I am going down the right path, and should I go ahead and take ownership of and add permissions for me to the above key?  Is doing this step supposed to enable the greyed out features of the Security tab for this object?  For the record, almost every other component has the Security tab disabled, too.  Only one (out of maybe 2 dozen) objects I looked at was enabled.  Does this sound right?

Any help is greatly appreciated.  This has been exceedingly frustrating.

Thanks,

Galan

 

Share problem on Windows 2008 R2 server with Win 7 Pro 64 bit workstation

$
0
0

This domain has been trouble free for about five years. Last week I uninstalled the old Symantec Endpoint Protection 12.1 and replaced it with ESET Endpoint Protection. For some reason all two out of five workstations were very slow for about 24 hours. It could have been the first scan that slowed them down.

Everything returned to normal except on one PC, one of the mapped drives on the server started being a problem. The drives are mapped from a user script (bat file) that runs in the Sysvol/domain.scripts folder on the server. A red X appeared on the drive letter (I) so this morning, I remotely connect to it that PC and clicked the I drive. It opened up fine but still had the red X on it. I was able to create a test file in notepad and save it in multiple folders within the I drive.

With the red X still there, I clicked Disconnect on the drive. It said it disconnected but when I tried connecting it, it said a duplicate connection was there.  

This user needed to update an application that stores the executable, updates and data files on the server's I drive. Attached is a warning she receives when trying to run the update which doesn't appear to run.I checked the error in the screen print below. I was able to open the entire path, find the update exe file and even paste a text file in the folder, so I know this usr has update permissions on the folder.

Your suggestions are appreciated.

Application Update Error


Tony

Problem to domain

$
0
0

Dear,

I get this

when accessing AD users & computers. Here is what I've further got

Could you please refer to this log?


Many Thanks & Best Regards, Hua Min


Lost trust relationship

$
0
0

Dear All,

I came across an unusual situation and count on your help since I cannot resolve it.

Scenario: Domain network with W2012R2 server as a DC, a spare DC and several other servers both virtual and physical. Several dozen workstations.

One of the workstations (W7pro-64) got a failure with cyclic BSOD. Disk C: was restored from the 24-hour-old backup. After that the trust relationship was with the domain was broken with the following symptoms:

1. Login not possible with network cable plugged.

2. RDP connections to the workstation fail.

3. Impossible to connect to MS Exchange.

Additional information:

Domain Member
PolicySettingWinning GPO
Domain member: Maximum machine account password age 999 days Default Domain Policy

What I tried:

1. Nltest query

C:\>nltest /query
Flags: 0
Connection Status = 1786 0x6fa ERROR_NO_TRUST_LSA_SECRET
The command completed successfully

2. Nltest reset

C:\>nltest /sc_reset:<DOMAIN>
I_NetLogonControl failed: Status = 1786 0x6fa ERROR_NO_TRUST_LSA_SECRET

3. Netdom reset

Also no luck - access denied.

4. Netsh

netsh winsock reset

netsh int ip reset

and attempt to join the domain with the wizard. No luck.


5. Multiple attempts to unjoin the domain.

Every possible combination. Under domain users with administrative rights, under enabled local admin account. With network cable plugged and unplugged. The result is the same - ACCESS DENIED.

6. wmic

start /B /W wmic.exe /interactive:off ComputerSystemWhere"Name='%computername%'"CallUnJoinDomainOrWorkgroupFUnjoinOptions=0

No result at all.

 All the methods I tried have one symptom in common - access is denied. 

The only idea I have at the moment that some domain policy prohibits unjoining the domain and/or other actions. I've done gpresult /h result.html, but cannot identify the problem.

Please, advise how to resolve the problem.

Upgrade from Server 2012 R2 to Server 2016 fails with adprep

$
0
0
I am trying to upgrade from a Server 2012 R2 Essentials system to Windows 2016 Essentials.   I presume the 2012 version is a domain controller, because its full name looks like AAAA.BBB.local.  But we only use it to do automatic backups for 5 computers and none of them have joined a domain.  I log into the server with my administrative account, and I have all the group memberships that the Administrator account has, including specifically the Domain, Enterprise, and Schema Admin groups.  But the install stops with this message:   "Active directory on this domain controller does not contain windows Server 2016 ADPREP /FORESTPREP updates.  See http://go.microsoft/fwlink/?Linkid=113955."  I then find the adprep executable on the install DVD and attempt to run it in a command prompt window.  But the program fails because it claims I am not a member of the Schema Admin group and/or the Enterprise Admin group.  I have also tried this from an Admin command prompt, with the same results.  Is this a bug? Or am I doing something wrong?  I realize that Microsoft discourages this type of upgrade, but I didn't think it would be prohibited in this way!

actor39

Event ID 4304 DFSR Warning

$
0
0

Hello,

We implemented DFSR on 2 server for redundancy purposes, however we are getting these warning messages:

The DFS Replication service has been repeatedly prevented from replicating a file due to consistent sharing violations encountered on the file. The service failed to stage a file for replication due to a sharing violation. 
 
Additional Information: 
File Path: D:\Sharedfoler\Data\shipping\app 
Replicated Folder Root: D:\sharedfolder\Data 
File ID: {D3F23523532E0546}-v72523525 
Replicated Folder Name: Data 
Replicated Folder ID: A8F1392352391-4513235233D 
Replication Group Name: domain.local\dfssharedfolder\data 
Replication Group ID: 91D346346729B2 
Member ID: 56346343682-4194-A319-A3867043263463443467

How do we fix this?

The service failed to stage a file for replication due to a sharing violation.

$
0
0

HI All,

Why the file name change to numbers? 

The DFS Replication service has been repeatedly prevented from replicating a file due to consistent sharing violations encountered on the file. The service failed to stage a file for replication due to a sharing violation. 

Additional Information: 
File Path: E:\CorpData\Recruitment\data\11E93010 
Replicated Folder Root: E:\CorpData\Recruitment 
File ID: {BEA5DDF4-4AD9-4113-8B1C-19AADC882D68}-v27457472 
Replicated Folder Name: Recruitment 
Replicated Folder ID: 3DE6B7D1-72D7-4E99-A79E-2950D3B01832 
Replication Group Name: xxxx.com\corpdata\recruitment 

Replication Group ID: C7628A59-4189-4738-ABB7-1744CCB37090 

Member ID: 0D1E0EB7-E248-4DF9-9ED6-76D622926CF1

As

Share Problem on SBS2011

$
0
0

I'm working on an SBS 2011 that is in a domain where most PC's in the office were not setup in the domain. They are connected to the share with administrative credentials.

The network is a mixture of about 15 Windows 7 PC's and 5 Macs. As I replace PC's, I join each one to the domain so accessing shares is not a problem. Now, I'm running into a problem where non-domain PC's are suddenly loosing access to the server shares. I haven't made any changes to the shares or share rules.

Any ideas on the best way to resolve this issue?


Tony

Windows Terminal Server Licensing Clarification

$
0
0

Hi There,

just a quick question regarding User CAL for terminal server. If we are using a user CAL for a physical user can he only log on to the terminal server using his login. What happens when the same physical user logs on to the terminal server using multiple logins? Ex: john smith (counted as physical user with license) - He logs on to the same terminal server as test1, graphic2, test3.

Does the single user CAL cover this?

Thank you 

DCOM ERROR

$
0
0

Hi,

I´m having these errors on my eventvwr. Some computers return this error .  I already made dcdiag DNS test and it´s ok . I already checked the WMI DCOM-in on one computer and enabled the DCOM and enable the firewall rule.

Can anyone help me ? When it says activate the server : {8BC3F05E-D86B-11D0-A075-00C04FB68820}, what is " {8BC3F05E-D86B-11D0-A075-00C04FB68820} "

DCOM got error "2147944122" from the computer 192.168.x.x when attempting to activate the server:
{8BC3F05E-D86B-11D0-A075-00C04FB68820}

Thnak you


Windows Server 2008 R2 Update fails due to system-protected font

$
0
0

Hello,

My windows Server 2008 R2 has been failing to install the

2018-07 Security Monthly Quality Rollup for Windows Server 2008 R2 for x64-based Systems (KB4338818)

every day for many days (it was already failing the preview of it, which I then declined on WSUS).

The only apparent problem I see in the WindowsUpdate.log is this (in bold below):

...

2018-07-17    07:41:08:522     856    169c    Report    ***********  Report: Initializing static reporting data  ***********
2018-07-17    07:41:08:522     856    169c    Report      * OS Version = 6.1.7601.1.0.196880
2018-07-17    07:41:08:522     856    169c    Report      * OS Product Type = 0x00000007
2018-07-17    07:41:08:678     856    169c    Report      * Computer Brand = Dell Inc.
2018-07-17    07:41:08:678     856    169c    Report      * Computer Model = PowerEdge R210 II
2018-07-17    07:41:08:678     856    169c    Report      * Bios Revision = 2.8.0
2018-07-17    07:41:08:678     856    169c    Report      * Bios Name = InsydeH2O Version 03.70.452.8.0
2018-07-17    07:41:08:678     856    169c    Report      * Bios Release Date = 2014-06-24T00:00:00
2018-07-17    07:41:08:678     856    169c    Report      * Locale ID = 1033
2018-07-17    07:41:08:694     856    3b0    Handler    Post-reboot status for package Package_for_RollupFix~31bf3856ad364e35~amd64~~7601.24180.1.8: 0x80070020.
2018-07-17    07:41:08:694     856    3b0    Handler    WARNING: Got extended error: "POQ    Operation    HardLinkFile    OperationData   \SystemRoot\WinSxS\amd64_microsoft-windows-font-truetype-tahoma_31bf3856ad364e35_6.1.7601.24145_none_8e5c4f96a47869ce\tahomabd.ttf, \??\C:\Windows\fonts\tahomabd.ttf"
2018-07-17    07:41:12:640     856    3b0    AU    ###########  AU: Initializing Automatic Updates  ###########
2018-07-17    07:41:12:687     856    3b0    AU      # WSUS server: http://whiskey
2018-07-17    07:41:12:687     856    3b0    AU      # Detection frequency: 22
2018-07-17    07:41:12:687     856    3b0    AU      # Approval type: Scheduled (User preference)
2018-07-17    07:41:12:687     856    3b0    AU      # Scheduled install day/time: Every day at 6:00
2018-07-17    07:41:12:687     856    3b0    AU      # Auto-install minor updates: Yes (User preference)
2018-07-17    07:41:12:687     856    3b0    AU      # Will interact with non-admins (Non-admins are elevated (Policy))
2018-07-17    07:41:12:750     856    3b0    AU    Setting AU scheduled install time to 2018-07-18 09:00:00
2018-07-17    07:41:12:750     856    3b0    AU    Successfully wrote event for AU health state:0
2018-07-17    07:41:12:750     856    3b0    AU    Initializing featured updates
2018-07-17    07:41:12:750     856    3b0    AU    Found 0 cached featured updates
2018-07-17    07:41:12:750     856    3b0    AU    Successfully wrote event for AU health state:0
2018-07-17    07:41:12:750     856    3b0    AU    Obtained Post reboot hr from Agent:80070020
2018-07-17    07:41:12:781     856    3b0    AU    WARNING: Post-reboot install failure, error = 0x80070020
2018-07-17    07:41:12:781     856    3b0    AU    AU setting pending client directive to 'Forced Reboot'
2018-07-17    07:41:12:796     856    3b0    AU    Successfully wrote event for AU health state:0
2018-07-17    07:41:12:796     856    3b0    AU    Triggering Offline detection (non-interactive)
2018-07-17    07:41:12:796     856    3b0    AU    Successfully wrote event for AU health state:0
2018-07-17    07:41:12:796     856    3b0    AU    AU finished delayed initialization

...

2018-07-17    07:44:49:528     856    104c    Report    REPORT EVENT: {3A6776D8-A21A-42AA-BED5-F975A6DE086E}    2018-07-17 07:41:12:640-0300    1   182    101    {1C930EAB-7B7E-4616-B5B5-D6E4A723BC71}    200    80070020    AutomaticUpdates    Failure    Content Install    Installation Failure: Windows failed to install the following update with error 0x80070020: 2018-07 Security Monthly Quality Rollup for Windows Server 2008 R2 for x64-based Systems (KB4338818).
2018-07-17    07:44:49:528     856    104c    Report    REPORT EVENT: {34F70FF8-C07D-4190-AC13-E7B3CFAFEA9F}    2018-07-17 07:41:12:750-0300    1   202    102    {00000000-0000-0000-0000-000000000000}    0    0    AutomaticUpdates    Success    Content Install    Reboot completed.

That font (tahomabd.ttf) is a system-protected font, so I suppose the update fails as it cannot overwrite it.

I've found a similar issue that required a fix, but for Vista and Windows Server 2008 (not R2):

https://support.microsoft.com/en-us/help/980248/some-font-files-that-are-marked-as-system-protected-cannot-be-updated

Any hints on how I can complete this update?

Thanks!

Dcom errors server 2016

$
0
0


I fount this thread:

DCOM Errors on clean install Windows Server 2016

I tried to reply in that thread but the page just goes to the top and not even a messag why... .

But I want to know if I can use the script that is in that thread to be found for my issue,  I have the same issue but some differences:

it's not the system account but it's an user account that has these errors. Acturally after the user complains on that certain hour that his pc worked very slow (remote desktop connected), that an application took a lot of time just to print some reports (windows serve SQL is used too).

here are the SLCID:

The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID

{B52D54BB-4818-4EB9-AA80-F9EACD371DF8} and APPID {9E175B9C-F52A-11D8-B9A5-505054503030}

{D3DCB472-7261-43CE-924B-0704BD730D5F}  (same APPID as the SLCID)

{145B4335-FE2A-4927-A040-7C35AD3180EF} (same APPID as the SLCID)

After searching in regedit: these are the names I found in order:

Windows search platform

WS Discorvery Provider Class

and last one : value under name : (value not set)  and the APPID is not listed in regedit, only LaunchPrermissing and localserver


System Reserve Partition

$
0
0

WIN 2008 SQL Server

Trying to load an application on the C Drive but as it is loading it is trying to use about 95mb on the D Drive for some reason.

However my D Drive is the System Reserve partition and is only 100mb with 64mb free.

I have been unable to change or remove the drive letter (D).  

The software mfg insists there is nothing in their install script to point anything to drive D and they insist that the problem is in my system.

Any help or suggestions would be greatly appreciated!

Thanks

KJSAKS

How can I have a global security group have the same members as a universal group automatically?

$
0
0

Hi,

We have Windows 2008 R2 domain. We created a universal group for each department which includes everyone in that department. Recently I need to create PSO Fine-Grained Password policy for a department. When I applied the PSO to the department universal group, I noticed it wouldn't work. After a quick search, I know PSO can only apply to global security group! I ended up to create a department global security group and added all members in the universal group to it. 

Now I have to remember to add a new user to both the department universal group and global group when I create a new user account. If I forget, the PSO will not apply to the new user account. This is too much trouble. I wonder if there is a way to solve this issue like  automatically sync this two groups. I just want to maintain one group and the other one can always keep the same members. Is it possible to approach it?

Need help! 

Thanks in advance!


Grace

Serve 2008 R2 Explorer.exe not responding

$
0
0

Hello all,

I am logon to our client server a 2008 R2 server. 

Explorer.exe doesnt open.

I have to open Explorer.exe with task Manager file > New Task.

With Explorer open, when I click anywhere on the taskbar/Start button/Clock I get the error "Windows Explorer is not responding. If you close the program you might lose information."

Event Viewer show the following that began on 4/19/2018

Application log:

Event 1002: App Hang

The program explorer.exe version 6.1.7601.17567 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.
 Process ID: 1b90
 Start Time: 01d41d303b3ebbc9
 Termination Time: 6
 Application Path: C:\Windows\explorer.exe
 Report Id: 86b18a35-8923-11e8-890c-000c2974a38a

KB2638018 was installed on 4/19/2018.

SFC /scannow:

PS C:\Windows\system32> sfc /scannow
Beginning system scan.  This process will take some time.
Beginning verification phase of system scan.
Verification 100% complete.
Windows Resource Protection did not find any integrity violations.

Last reboot on 6/25/2018

I am stuck at this point.

Any assistant is appreciated.


Regards

Viewing all 24879 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>