Quantcast
Channel: Remote Desktop Services (Terminal Services) Forum
Viewing all 493 articles
Browse latest View live

RDS Home Drive - Permissions

$
0
0

Hi Guys,

I'm using the GPO setting to set users home folders:

  • Windows Components/Terminal Services/Terminal Server/Profiles/Set TS User Home Directory

I have this set to

I have the permissions on myshare set as follows:

  • Administrators -> Full Control on This Folder,SubFolders and Files
  • Creator Owner -> Full Control on ,SubFolders and Files
  • Domain Users -> List and Create Folder on This Folder Only
  • System - >Full Control on This Folder,SubFolders and Files

Now, everything is working fine and when a users logs in over TS for the first time a folder is created for them in the form <ntusername>.DOMAINNETBIOSNAME. My only issue with this is the user is the only account with control over this folder. When we setup our roaming profiles we use GPO to ensure that the Administrators group is added ot the permissions on the folders but this doesn't seem possible with home folders? In order to acheieve this would we have to pre-create the home folders?


2008 Terminal Services and RSA

$
0
0

We have setup three 2008 Servers running the Terminal Services role, an a 4th 2008 Server running the TS Broker role.

We have secured the three 2008 TS servers with RSA Authentication Agent 7.01.

When we login, we getting prompted for our Domain credentials along with the RSA token, and then get asked again for the 2nd time when we get redirected to a different TS.

How can we go about securing this in a better way so that there is only one prompt to login?

Note: We are not making use of ISA or TMG as it's not an option for us.

TS/RemoteApp hidden dialog box(pop-up windows)

$
0
0

Hello,

My an issue is some pop-up windows of the TS RemoteApp application  hidden, behind in application.

And I found KB983533 for fix my case, So I download them to install at my server but I got error as "The update does not apply to your system"

(My TS Server is Windows Server 2008 Standard 64 bit SP1 and KB983533_64bit) 

I don't know this KB983533 can solve this problem. 

And please let me know, what's should I do in my case?

 

---------------------------------------------------------------------

IBMDirector  

 

RemoteApp program hides pop-windows

$
0
0

Environment: Server 2008 R2 Remote Desktop services, Windows 7 Clients

Issue: Created a RemoteApp program. When users run the RemoteApp they need to open PDFs from within the program. The first time they open the PDF it displays. The second time it does not.  Ctrl+Alt+End shifts focus to the PDF which is openbehind the RemoteApp. Our users have to open PDFs from the RemoteApp all the time. Using the workaround of Ctrl+Alt+End is not accetpable nor practical based on the volume of PDFs they have to open.

MS Article 2384602 discusses this exact same issue and refers to hotfix from KB983533 which I have requested and downloaded but the issue still persists. I have researched numerous forums and noticed that many people are having the same issue, have applied the hotfix, and still the issue persists.

Has anyone else experienced this and found a resolution?



Server 2012 RD Web Access in Azure

$
0
0

I have set up a small test domain in Azure to try Remote Desktop Services. I have one session host/connection broker and one web access server. The web access server has a public endpoint with port 443 open. If I connect to the web access server's public dns I get a blank IIS8 page, no login, no nothing. I checked the Authentication attribute on the rdweb/pages object which has forms authentication enabled. What am I doing wrong?

Where to set Custom RDP settings on Server 2012 VDI Connection Broker?

$
0
0

In Server 2008 R2, there was a "Custom RDP Settings" window accessed through Remote Desktop Connection Manager on a Connection Broker server. See this blog post for info/screenshots: http://blogs.msdn.com/b/rds/archive/2010/04/28/customize-rdp-settings-for-virtual-desktops.aspx

I used this quite a bit to customize the RDP session offered to users through RD Web, but I can't find any place to set the Custom RDP Settings on my Server 2012 Connection Broker.

Is the only way to do this now to use the Set-RDVirtualDesktopCollectionConfiguration command in PowerShell and specify the -CollectionName and -CustomRdpProperty?

I have noticed that it's less of a necessity in 2012, as it seems to enable the wallpaper, etc. by default.

TS Gateway - certificate/differing internal and external domain names

$
0
0

Hi -

 

I have a TS Gateway and terminal server on my lan, FQDN of the gateway is tsgateway.internalname.org.  My company's external web presence is viaexternalname.org.  I have DNS configured for tsgateway.externalname.org to point to one of the external addresses on my firewall, which does a nat to the private internal address for tsgateway.internalname.org.  I've tested the TS Gateway scenario with a certificate issued by my internal CA, and using a hosts file to tweak name resolution to make sure I can connect from outside my lan. 

I now want to buy a certificate from a public, trusted CA to use with the TS Gateway.  My question is if I get a certificate issued to tsgateway.externalname.org and install it ontsgateway.internalname.org, is that going to work?  Is a SAN certificate required - with the internal AND external DNS names?


RDS 2012 session host certificate assignment

$
0
0

Hi RDS guys,

I'm having big trouble configuring the certificates for my RDS session host rdp connections.

I have 2 2012 RDS servers in a collection and I have 2 A records with the name ts.mydomain.tld that point to the IPs of each server. Now when I try to connect to ts.mydomain.tld I get a certificate warning as the RDS certificates are self signed certs for each RDS. Why can't I assign a certficate per RDP-Listener anymore? In my scenario RDGateway is also not working anymore because of this cert issue.

Cheers


Sebastian Bammer


Allow Java Script in IE on Remote Desktop Services Server

$
0
0

I have disabled IE enhanced security for users on the RDS farm. They still have to add certain sites to the "Trusted Sites" list to get features to work right, and that's exactly what I want.

The problem is certain sites, even after adding them to the trusted sites list, don't function quite right. For example, links that use java are still disabled even though the page loads. Take maps.yahoo.com. The page displays an error about java script needing to be enabled. Once you add the site to the trusted sites, that goes away but the page still does not load completely. 

We are a law firm and all of the local court sites are giving me this problem. Can anyone point me in the right direction with GPO or local IE setting to fix this? 


-jbrittain

Customize RDWeb Remote Desktop with "smart sizing" enabled

$
0
0

When using the native Remote Desktop clinet (mstsc.exe) from my workstation, it loads my preferences from the default.rdp file located in My Documents.  I have modified this to include "smart sizing:i:1" so that I can scale the remote desktop window to whatever size I like while being able to see the entire contents of the remote session.

I have set up a number of Remote Desktop Gateway servers and often times find myself using the Remote Desktop tab to connect to machines behind the gateway, however, just like the Remote Desktop client, I cannot enable smart sizing from the web UI.  I know that I can create an RDP file that uses the Gateway server and then modify it to include smart sizing, but I want to include this setting directly from the web site.

How can I modify the default settings of the rdweb remote desktop connection tab to include smart sizing or other customizations?

USB DONGLE Redirection In VDI

$
0
0

Hi All,

My client need the USB key to sign-off with application on the VDP. I find Microsoft VDI solution does not support USB key very well. I would like to know if there is any 3rd USB redirection tool we can leverage in this senario.

Thanks.

RD Connection Broker Load Balancing

$
0
0

A brief explanation of our setup:

RDS Farm with 6 RDS servers (RDS1 - 6) load-balanced via round robin in DNS

2 RD Gateway Servers (RDG1 - 2) load-balanced via round robin in DNS; both of which have the RD Connection Broker service installed and running

Clients connect to rdsfarm.domain.com via rdg.domain.com

I am new to the company as a system administrator and trying to improve the availability of our RDS Farm for our remote users; the vast majority of the company's employees use RDS to gain access to the resources internal to the network.  One of the things I am noticing is that in the RD Session Host Configuration for each of the RDS Farm member servers is that while they are properly setup to join a Farm via the FQDN of rdsfarm.domain.com, they are all pointed to a single RD Connection Broker server (rdg1.domain.com).  I would think that the RD Connection Broker server specification would be similar to the Farm server specification in which you use the FQDN of the Connection Broker farm vice a single connection broker.

I could experiment by changing this setting on a couple of RDS servers, however, being the new guy, I don't want to change something and end up breaking it when this is a critical business resource for the company; I would like to keep my job.  So looking to see if anyone else has experience with a setup similar to ours (load-balanced Gateway/Connection Brokers PLUS load-balanced RDS Server Farm) and what the correct configuration should be for the Connection Broker server in the Session Host Configuration for each of the RDS servers.

I have searched the net high and low and have found plenty of information from Microsoft and other forums on how to setup and configure a load-balanced farm but I have yet to find anything that describes a load-balanced Gateway/Connection Broker setup.

Your help and responses is much appreciated in advance.  Thank you.

Sincerely,

Carey

The cmdlet which can create the new VM from collection in Windows Server 2012

$
0
0

Hi,

Any Powershell cmdlets let me create the vm from collection(like the Add Virtual Desktop in tasks of GUI), I find Add-RDVirtualDesktopToCollection just can add the exsiting vm, but cannot create the vm. Because once i can use the Powershell, i can put it into System Center Orchestrator.


Asuka from ITECN

Remote Desktop Client 6.1 ActiveX "Unknown publisher" warning

$
0
0
To make a somewhat long story short, we have a webpage that loads the Remote Desktop Connection ActiveX and connects to a Win2003 server.  The activeX is embeded using an object tag and connected to the server using javascript.  Everything on that end works fine.  However, on client machines that have the RDP 6.1 update (included in XP sp3) the users see a very annoying warning message that states the following:

"A website wants to start a remote connection.  The publisher of this remote connection cannot be identified.
This remote connection could harm your computer.  Do not connect unless you know where this connection came from or have used it before.
Publisher:                Unknown publisher
Type:                       Remote Desktop Connection
Remote computer:   MyServerName
"

And the dialog has "Connect" and "Cancel" buttons.

The website is on our intranet and is even listed specifically in the trusted sites.

I have seen a lot of articles on the web regarding people using and signing .rdp files to get around this type of error, or signing the "RemoteApp" that is launched, but have not found anything regarding the activeX simply connecting to a server and displaying the session.

I noticed that when connecting to the server using the desktop application I received a similar warning message.  My research led me to the following article:  http://technet.microsoft.com/en-us/library/cc782610.aspx which describes creating a certificate to authenticate the server.  After completing all these steps, the warning message no longer appears on the desktop application, but still appears when connecting to the same server though a webpage!

This has become very frustrating for me as I struggle to make this warning go away.  I really find it hard to believe that nobody else has run into this issue.  Hopefully it is something simple that I have missed.

Thanks ahead of time for any help that can be provided on this.
T.J.

Show remote session for disconnecting them

$
0
0

I have windows 7 SP1 on my client, and have 2 Station that both of them use Windows Server 2008R2 Sp1.I have a problem with remote desktop on server2.

When I try to connect to Server1 and 2 other session is active for other clients, a dialog appears to me that show me these 2 sessions and I can force one of them to be disconnected and then I connect to it.(It is ideal for me).

But in same situation in Server 2, remote desktop don't appears dialog and simply say to me "The computer can't connect to server".

I want too know which users are connected to Server2 now. Should I set any config on Server2?


Make the most of five things before five things: youth before oldness, health before illness, wealth before neediness, leisure before occupation, and life before death


How can I edit (or create custom) RDS shortcuts?

$
0
0

I am running Server 2012 Datacenter with Windows 7 Enterprise clients.  I have managed to deploy RDS for Managed Pools (VDI), and I have figured out how to connect via RDWeb and "RemoteApp and Desktop Connections."  However, I am having trouble making things work how I want to.  I believe I simply need a way to edit the RDP files created in "RemoteApp and Desktop Connections."  When I right-click them and hit Edit, I am brought to the Remote Desktop Connection screen, which show's the server and no hint of the VM it will actually be connecting to.  I can change settings and connect to the VM, but I can't save my changes to the RDP file.

Specifically, I want to disable some local resources by default without blocking them from the pool at the RDS server (so that users can manually choose to pass the resources on, but won't automatically have them all pass through).  As far as I can tell, the Remote Desktop Services Overview in the TechNet library doesn't have any information on this, but I would appreciate any relevant links if they do exist.

RDP Local Security Authority cannot be contacted

$
0
0

Hello,

The following error, an authentication error has occurred The local security authority cannot be contacted, appears when domain users, who have historically connected successfully using RDP, attempt to connect.

About the same time, user shares on workstations can not be accessed from other workstations. A similar error appears, saying the computer is not accessible, logon failure: the user has not been granted the requested logon type at this computer. The shares on the servers are accessible, as always.

One domain account, however, shows none of the symptoms. This account is in the domain local group administrators, but not in the group Domain Admins.

I have carefully compared the working account with the other accounts on the network, and cant find a difference that would break RDP.

I created a new user account and added it to the same group accounts as the working account. The new user account cannot connect.

One change to the network is that one Ethernet switch was replaced, but if this or the router has problems, that would affect all users.

DNS seems ok; the windows clients are not registering with DNS, but this problem has been around for while; typing the IP address into the RDP screen had been the workaround.

I have tried changing the setting in System Properties, from Control Panel, System, Remote Settings, to allow connections from computers without NLA, after reading some of the forums.

Any ideas? User Rights?

thanks,

RemoteFX Mouse & Keyboard?

$
0
0

Is RemoteFX specifically designed to exclude redirection of USB HID devices like the mouse and kbd? Based on the articles I've read so far, I haven't seen anything the specifically discussing support for or against this. My use case is simple: I have one computer with a dual-headed graphics card, two mice and two keyboards attached. I'd like to have an RDP session open via the standard mstsc client in a window on the second monitor, so a second family member can easily sit down and check her email via the RDP session when another user is already using the main system. The second mouse and kbd should be dedicated to that session so that events are not shared with the console session.

http://technet.microsoft.com/en-us/library/ff817578(WS.10).aspx

I've enabled the requisite GPOs per the article above, and I've set up the required registry key to expose these USB devices to mstsc. I am able to select those devices when configuring the client, however when I connect, no redirection actually occurs. No errors are displayed or logged to the event log.

Over the past few years I've solved this problem in various cumbersome ways, all of which involve running some flavor of linux in a VM set up to capture the mouse and kbd. That's computationally expensive and it seems this should be so simple with RemoteFX.... what am I missing?

Changing Remote Desktop Web Access text fields

$
0
0

Hello,

I am trying to change the text fields in server 2012 RDWeb Pages and I cannot seem to find it. I have tried changing in the following files

default.aspx

desktop.aspx

login.aspx

password.aspx

Beside the string L_CompanyName_text

but this doesn't work.

I have checked online and I only see references to 2008 and before. I have tried those as well but no success.

Any ideas?

Thanks

No RemoteApps displayed if one RemoteApp Server goes down

$
0
0

Right now I have the following config:

RDSWA1 & RDSWA2 in an F5 load-balanced web farm.  Both are configured for "One or more RemoteApp sources" and have listed all the Session Hosts

RDSGW1 & RDSGW2 in an F5 load-balanced gateway farm.

RDSSH1 & RDSSH2 each hosting different applications.  For PoC reasons, I have SH1 hosting a Calc RemoteApp and SH2 hosting a WordPad RemoteApp.

Is it expected that if SH1 goes down, the web servers will display no RemoteApps at all?  I would expect the Web Servers to at least allow users to connect to WordPad.

Viewing all 493 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>