Jump to content

mbedford

Members
  • Posts

    237
  • Joined

  • Last visited

Everything posted by mbedford

  1. DUH!!! Thanks Cache, not sure how I missed that one However, same issue persists
  2. Hi, Can anyone explain to me why this command is not working.... PS E:\Home Drives\mbedford> Get-FsrmQuota -CimSession $session -Path "F:\Home Drives\mbedford" Get-FsrmQuota : 0x80045306, The specified path is invalid. At line:1 char:1 + Get-FsrmQuota -CimSession $session -Path "F:\Home Drives\mbedford" + ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ + CategoryInfo : NotSpecified: (MSFT_FSRMQuota:Root/Microsoft/.../MSFT_FSRMQuota) [Get-FsrmQuota], CimExc eption + FullyQualifiedErrorId : HRESULT 0x80045306,Get-FsrmQuota + PSComputerName : dfsstaff I have checked, the path exists and I permission to read\write, also the PowerShell console is running as administrator. The CIMSession is the server that the folder is located on. Thanks Mike
  3. Hi, We have just been migrated from Live@Edu to Office 365 (almost 40,000 users). I have two problems; The most worrying is the sheer number of this warning that I am getting, Unable to update this object because the following attributes associated with this object have values that may already be associated with another object in your local directory services: [userPrincipalName [email protected];]. Correct or remove the duplicate values in your local directory. I have had so far in 8 hours, 336 emails each with 30 accounts (some of these may be duplicate reports, with that many its hard to tell) Can anyone advise how I can resolve this, ideally without losing the mailboxes that may already be in place..... 2nd problem; Given that I have 40,000 accounts, and DirSync falls over after 5000, how am I supposed to sync ? Thanks Mike
  4. Fixed it! Turns out the Forefront TMG 2010 does not like Anonymous traffic on port 443. I had to create a very counter intuitive rule to allow this traffic past our firewall. I'm not going to post it here as its quite complex but if anyone experiences this problem and is using TMG2010, PM me and I will let you know what I did. Thanks everyone for your help, Mike
  5. Hello, I have a built a new 2012 server today specifically for DirSync. Same error has occurred :-( Please see eventlog entries below ProvisioningServiceAdapter::ExecuteWithRetry: Action: Import, Attempt: 3, Exception: Microsoft.Online.Coexistence.ProvisionRetryException: Unable to communicate with the Windows Azure Active Directory service. Tracking ID: 003fd61a-b71d-4932-83aa-711b0c253d99 See the event log for more details. ---> System.ServiceModel.EndpointNotFoundException: There was no endpoint listening at https://adminwebservice.microsoftonline.com/provisioningservice.svc that could accept the message. This is often caused by an incorrect address or SOAP action. See InnerException, if present, for more details. ---> System.Net.WebException: Unable to connect to the remote server ---> System.Net.Sockets.SocketException: A socket operation encountered a dead network 157.56.55.72:443 at System.Net.Sockets.Socket.DoConnect(EndPoint endPointSnapshot, SocketAddress socketAddress) at System.Net.ServicePoint.ConnectSocketInternal(Boolean connectFailure, Socket s4, Socket s6, Socket& socket, IPAddress& address, ConnectSocketState state, IAsyncResult asyncResult, Exception& exception) --- End of inner exception stack trace --- at System.Net.HttpWebRequest.GetRequestStream(TransportContext& context) at System.Net.HttpWebRequest.GetRequestStream() at System.ServiceModel.Channels.HttpOutput.WebRequestHttpOutput.GetOutputStream() --- End of inner exception stack trace --- Server stack trace: at System.ServiceModel.Channels.HttpOutput.WebRequestHttpOutput.GetOutputStream() at System.ServiceModel.Channels.HttpOutput.Send(TimeSpan timeout) at System.ServiceModel.Channels.HttpChannelFactory`1.HttpRequestChannel.HttpChannelRequest.SendRequest(Message message, TimeSpan timeout) at System.ServiceModel.Channels.RequestChannel.Request(Message message, TimeSpan timeout) at System.ServiceModel.Channels.ServiceChannel.Call(String action, Boolean oneway, ProxyOperationRuntime operation, Object[] ins, Object[] outs, TimeSpan timeout) at System.ServiceModel.Channels.ServiceChannelProxy.InvokeService(IMethodCallMessage methodCall, ProxyOperationRuntime operation) at System.ServiceModel.Channels.ServiceChannelProxy.Invoke(IMessage message) Exception rethrown at [0]: at System.Runtime.Remoting.Proxies.RealProxy.HandleReturnMessage(IMessage reqMsg, IMessage retMsg) at System.Runtime.Remoting.Proxies.RealProxy.PrivateInvoke(MessageData& msgData, Int32 type) at Microsoft.Online.Coexistence.Schema.IProvisioningWebService.ReadBack(Byte[] inputCookie, Boolean isFullSync) at Microsoft.Online.Coexistence.ProvisionHelper.InvokeAwsAPI[T](Func`1 awsOperation, String opsLabel) --- End of inner exception stack trace --- at Microsoft.Online.Coexistence.ProvisionHelper.CommunicationExceptionHandler(CommunicationException ex) at Microsoft.Online.Coexistence.ProvisionHelper.InvokeAwsAPI[T](Func`1 awsOperation, String opsLabel) at Microsoft.Azure.ActiveDirectory.Connector.ProvisioningServiceAdapter.<>c__DisplayClass7.b__6() at Microsoft.Azure.ActiveDirectory.Connector.ProvisioningServiceAdapter.ExecuteWithRetry(String actionName, Action action).
  6. hi james I will take a look in the morning and post the events here here. As far as the dirsync versions go, it's the latest version as of today, I noticed that problem in the forum posts around this one, thanks for the suggestion though. Mike sent from my android phone
  7. Another vote for Amazon's Glaciar solution. We use that in conjunction with a piece of software called Cloudberry, this is an agent that sits on a server and collates all of the storage you want sending to Amazon and the uploads it in jobs\batches that you control. We have uploaded easily 10TB+ over the last 4-6 months, the price is ridiculously cheap but there are caveats. Its VERY!! slow to get your data back, and its costly (to retrieve the data, cheap to send it and store it), but for a final DR backup which, lets face it, none of us ever intend to use, its nice to have. If you want any further info, just PM me, i'm not a reseller or vendor, just an College Admin who is happily using it :-) Mike
  8. That's not a bad shout. Its on an application server at the moment with about 10 other licensing services for things like AutoCAD and SolidWorks etc... I think I will create a separate VM for it, for the sake of 2 hours work its worth ago. The-Dude - Yes I did that today hoping that it would be fixed by doing that. I will try a new server tomorrow. Thanks Mike
  9. I have done James, several times... I think I have become an expert at resetting the password he he
  10. Its an existing one, I have come back to it after about 30 days of leaving it (due to summer break) and its not working. It has been working for the better part of 6 months.
  11. Hi, I am having difficulty getting my domain to sync accross to Office 365. I have installed the DirSync tools many many times now and keep hitting the same error. The configuration runs great, but when I come to do a sync, two management agents run; Active Directory Connector - SUCCESS Windows Azure Active Directory Connector - STOPPED-SERVER-DOWN Every article I have found seems to suggest that this happens because the azure account has an expired password, but I have checked and this is not the case. I can use the account to connect to Office365 via Powershell from the same machine and I can login to the portal with no problems at all. Can anyone help? Thanks Mike
  12. Thanks both, the moment i read the solution I understood completely. I have been working with PowerShell for a few months now so you would think I would have realised that. Strange thing is, i took that command text straight from a technet post Thanks Mike
  13. Help! I am running the following command when connected to MSOnline Get-MsolUser | Where-Object {$_.isLicensed -eq "FALSE"} This returns 230 users (all of my users) If I run the same command with FALSE (i.e not licensed), I get....... 230 users (all of my users) See screen shot Any ideas? I don't understand how I can get the same answer on both queries.
  14. Thanks to both of you for that. I am a lot more confident about going on with this now. Mike
  15. Hi, I have been scheduled to migrate my Live@EDU domain to Office 365 in the coming weeks. Can anyone clarify a question for me please? I have two domains Domain 1 I have already created another domain for one of my other supported schools. I did this by creating a new domain in Office 365 and then verifying domain ownership. Students access this uses SSO via ADFS 2.0 and the accounts are synchronized from my local active directory using ADFS. This is working great and because I did not migrate from Live@EDU I have not had to worry about migrating email from another solution. Domain 2 Have a current production Live@EDU solution. Students access through SSO (Not ADFS) and accounts are not synchronized, they are created nightly via a PowerShell script which we generate from our Active Directory accounts. Where do I stand in terms of if I create an ADFS solution and synchronize the accounts as part of the Office 365 mirgation, will they have access to there current mailboxes, or will this create a set of new mailboxes? Thanks Mike
  16. Chris, you are a star. I will implement that into my system later on and see how I get on. You can probably tell from my abysmal code that I am a complete novice when it comes to PowerShell so I appreciate the help even more. Thanks again, Mike
  17. Hi, I have a function that queries a list of SQL servers and Databases simply to see if they are 'alive'. If they are not the function writes to a string variable "ServerName - DB Name - FAIL `n". This variable could be hundreds of lines long (hundreds of failed queries). I am having trouble using the return value on that function (current a string) and outputting that to "ConvertTo-Html -Fragment" so that I can put each individual failure in a table in a HTML report. Can anyone help? My function is below for reference; (Ignore the if(!($DataSet -eq $null)) , I have reversed the check to show success just to generate some results :-) ) function checkDatabases # Used by databaseResponse to check that DB's respond to a query { param ($servers) foreach ($dbServer in $servers) { $srv = New-Object Microsoft.SqlServer.Management.Smo.Server $dbServer foreach ($database in $srv.Databases) { $DBServerName = $srv.Name $DBName = $database $SqlConnection = New-Object System.Data.SqlClient.SqlConnection $DBName.ToString $DBName = $DBName.ToString() $DBName = $DBName.Replace("`[","") $DBName = $DBName.Replace("`]","") $SqlConnection.ConnectionString = "Server=$DBServerName;Database=$DBName;Integrated Security=True" $SqlCmd = New-Object System.Data.SqlClient.SqlCommand $SqlCmd.CommandText = "SELECT * FROM sysobjects WHERE type = 'U'" $SqlCmd.Connection = $SqlConnection $SqlAdapter = New-Object System.Data.SqlClient.SqlDataAdapter $SqlAdapter.SelectCommand = $SqlCmd $DataSet = New-Object System.Data.DataSet $SqlAdapter.Fill($DataSet) $SqlConnection.Close() if (!($DataSet -eq $null)) { $result += "FAILURE - $DBServerName - $DBName `n" } } } return $result }
  18. Hi, We are running Svr 2008 R2 in native mode. the TFTP image is downloading in about 20 seconds which is fine. The machine then prompts me to enter credentials. I do that and then I hit a problem, I have to wait upwards 10 minutes to get to the next screen (Task sequence selection). I first thought this may have been a hardware issue, but this happens across multiple hardware types and machine types. Any suggestions?? Thanks Mike
  19. Thanks for the reply but i managed to work it out. I didn't specify the -server field as I expected powershell to be able to use any of my dc's as they are all global catalogue servers. I noticed this was an error as I could create users in my staff domain but not in the child domain that students reside in.
  20. Hi, I am trying to create new users using a combination of SQL from our SIMS database and PowerShell to create the users. I have managed to get the details that I require from SIMS and placed that into a DataSet. I can then use a ForEach loop to run the details through the New-ADUser cmdlet. I am getting an error that I can't work out though, see error message below; New-ADUser : The server is unwilling to process the request + CategoryInfo : NotSpecified: (CN=Benjamin And...ASTAFF,DC=LOCAL:String) [New-ADUser], ADException + FullyQualifiedErrorId : The server is unwilling to process the request,Microsoft.ActiveDirectory.Management.Commands.NewADUser Initially I thought that maybe this is because of password complexity but that GPO setting is disabled. Any ideas? ( I have managed to expand the CN=Benjamin....... path and confirmed that it is correct) Thanks Mike
  21. Hi, I recently had an issue with our deployment of Office 365 that I fixed. I wanted to share it here because there is almost zero information about this problem on the net. Problem Online Services Directory Synchronization Wizard was not completing, it had completed in the past but on running again the following message is displayed "ERROR A constraint violation occured" All information on the internet suggests that this is related to the account that is running the wizard (defined at stage one) does not have permission to change attributes on a service account (MSOL_AD_Sync). The account that i was using was an Enterprise Admin and it was the account that originally ran the tool when it suceeded. Resolution Had to create a new account for the stage one credential check, gave it Enterprise Admin rights on the domain and the wizard then completed successfully. The account that was used can then be disabled as it is not used again in this process which negates the risk of giving it Enterprise Admin rights. Hope this helps someone else. I ended up placing a support call with Microsoft who were just as lost as i was so i just tried everything I could think of until i had some success. Thanks Mike
  22. Well I had to call up twice, the first guy didnt really understand what I was talking about. 2nd person knew exactly what to do and it took about 15 minutes. Mike
  23. Called Microsoft Support. They managed to resolve this for me by creating a new admin account and providing me with the details. Thanks for you help Mike
  24. Hi, A brief overview of my stupidity. Setup a new domain on 365 using the domain.onmicrosoft.com approach, worked great Verified my real domain. Setup dirsync, great Changed UPN on users to real domain. Setup active directory federation services 2.0, stupidly migrated my only admin account to a federated setup before I got single sign on to work. Now I can't login to the admin portal because it wants me to use the new federated login page which I don't have working. How can I disable federation so that I can login bearing in mind that the account was used for dirsync and PowerShell so I can't use either of those tools. I know should have ha multiple admin accounts but hindsight is always 20/20.
  25. I believe they are all within there date
×
×
  • Create New...