Jump to content

mo_vigilante

Members
  • Posts

    106
  • Joined

  • Last visited

Everything posted by mo_vigilante

  1. Thanks for your reply. Would you happen to know in dfsrdiag.exe what command I should run to find out what I need? Thanks.
  2. Hi, I was hoping someone could help me on this issue. I'm trying to consolidate one of my existing DFS replication folders into one folder which holds the latest/written copy of that folder and then STOP replication to that folder. At the moment DFS reports showing replication errors and I've realised I don't need this folder to replicate anymore as it has become obsolete (not needed moving forwards). Before I stop replication, does anyone know a Robocopy command to find out about more about the member folder across 4 DFS servers? And which of those servers holds the written/updated copy of subfolders/files? I just want to make sure when I consolidate into one folder, I have the most recent updated copy of that file. Thanks.
  3. Great stuff! Thanks for sharing that. I'll use that link to throttle the maximum bandwidth WDS can use for multiple deployments. Thanks again. Mo
  4. Hi guys, I have a quick question for those who have used WDS. I'm going to deploying WDS soon and we are on a single subnet (/24 range). Is there any need to create VLAN's on the switches so network performance isn't impacted for the users? I could be deploying images around 20-30 client machines at once so wanted to make sure without VLAN's setup on our subnet it wouldn't affect the users day-to-day activity (printing, accessing resources, internet etc). Thanks. Mo
  5. Hi guys, Using Exchange 2010 SP1 and Outlook 2010 for clients. I've been asked to copy/forward ALL emails (.msg) arriving to a particular mailbox to be copied/forwarded to a network share. I believe this can be achieved by scripting - does anyone done this before and can provide me some tips? I tried to look into Rules and Alerts but what I need to do isn't on there. Thanks :-) Mo
  6. I've ran TreeSize on both servers so the next working day I'll run it again and compare to see whether storage might be going. Hopefully results will show something clear. Thanks a lot.
  7. Yes it is running OWA but this is also happening on the Apps Server as well. Where are the IIS transaction logs stored by default? Thanks.
  8. Checked both system drives and all drives are disabled for shadow copies. This is only I picked up recently and starting to concern me what it could be. Anything else I could check? Thanks.
  9. Hi all, I have a weird problem with our Exchange and Apps Server - both have system drive (C:\) and additional hard drives for Exchange database and Apps data for storage. Every day at least 500MB is being lost of storage on the system drive (C:\) on both servers. Nothing new has been installed on either server and I can't seem to find out what the this may be that building up storage over time. SQL server is installed on both servers but the Exchange logs is on drive D:\ along with the database itself. Has anyone seen something like this before? The only thing I can think of is temp files or some log files built up over time, but Exchange logs are on D drive. Any ideas? Thanks a lot.
  10. Hi, Yeah they'll be on the same subnet as well as the host as well (same subnet). The host just got the Hyper-V role installed and then VM's taking hardware resources (storage and RAM). One VM currently is our BlackBerry server and the one I intend to roll out as a VM is a 'Management Server' where I want to migrate some resources to this VM. The resources I'm thinking about is WDS, WSUS, Symantec Protection Suite for starters - with the additional RAM I'm going to purchase I should have enough to support this. As we have 100 clients maximum, is there any need configuration changes on the physical NIC or on Hyper-V Manager? I know network performance is critical here and maybe the management server needs slightly more priority than the BlackBerry Server. Thanks a lot. Mo
  11. Hi guys, Looking for some advice for VLAN tagging in Hyper-V in Server 2008. I'm looking to to purchase more RAM for our HP DL180 G6 base level server - At the moment it's running on it's shipped hardware (6GB RAM). Anyway at the moment it's running one VM, and want to create more VM's with more RAM. My question is with regards to VLAN tagging on the virtual switch for VM's? The current setup is a virtual switch is created from the physical NIC, and then when creating VM's we attach the 'Virtual Switch' to the VM. When I create more VM's, do I have to specify VLAN tagging for each VM in the settings option for the virtual switch? Just to confirm these VM's will be on the same IP subnet. Just to make sure I don't hinder performance between the VM's and their resources. Thanks. Mo
  12. Hi, I have done this and fails to find the DC and the machine can't re-join the domain. Looked at the netlogon logs and states there has been logons to this domain that's not in a designated IP subnet but these are setup correctly on Sites and Services. I've removed the IP Subnet for the site, and re-created it and assigned it to DC01 but same thing happens. Performed Wireshark at the site and another site which logs on as normal and there are plenty of LDAP requests trying to send to the server but can't find the DC on the slow site, whereas other sites picks up requests, finds the DC and logs on. We've reloaded the config on the router, even rolled back a previous firmware (Cisco 877) and no success. As mentioned above it get DHCP and the relevant scope options, is able to update DNS records on the database (tested by registering and clearing old records), just problems with LDAP/contacting the DC for authentication. Restarted the DC as well but to no avail. Beginning to scratch my head on this one - any other ideas? Thanks. Mo
  13. Also on top of that, there's nothing showing in the client logs, when GP policies were binding to the OU, it came up unable to apply policies but can see the SYSVOL folder when attempting to contact the server to apply the policies.
  14. I have a weird problem that I've been pulling my hair out for 3 days now – one of our remote sites, and JUST this site has authentication issues when the user attempts to log in to the network, it takes around 15 minutes minimum, and then the desktop loads up. When the desktop is loaded, the LAN shows as (unauthenticated). Here is what I've done to troubleshoot the issue, or find what’s going on but to no avail at the moment: - General Investigation / Troubleshoot • Restarted router at site (/24 IP Subnet) • Can ping the DC, other servers by FQDN and via IP • Can ping other routers located in other sites – can also ping the machine from the server once booted and got IP address (by machine name) • Gets DHCP from server along with DNS details (IPConfig/all) • Tried giving it static details and tried again – Also just static DNS (both DHCP and static can ping server and back via FQDN and NSLookup queries) • Can gain access to network shares when I browse via \\servername\folder (local account) • IPConfig/release, IPConfig/Renew, IPConfig/flushdns, IPConfig/registerdns • All client machine services are running normal and fine (DHCP, DNS, Netlogon as obvious services I checked) • All machines can get out to the Internet no problem • Taken one existing machine out of domain, added to workgroup and try re-adding machine to domain (hangs for 10 minutes and comes up domain name listed is no longer available) Other things • Re imaged one machine at site via Acronis, and when attempted to add machine to domain via domain credentials, it still hangs for around 10 minutes and comes back with ‘The Domain listed is no longer available’ even though I can ping the servers via FQDN and vice versa, but I can’t still add this machine to the domain after re imaging. • After discussion with our network guru, we reverted back to an old config on the routers and still does exactly the same • Took off all group policies on the server so the OU which the computers are in have no binding policies to them (just in case it was GP that was affecting the logon times), don’t think it can be as joining a machine to the domain struggles and doesn't confirm joining so I can’t imagine this being GP related, but not binding policies at the moment anyway! What’s weird? • When I take my laptop to the site, and I plug in using the Ethernet lead from one of the machines, I’m able to authenticate fine with domain user account (existing and new accounts), and domain admins account as normal. • When I try to log at the site machines using my domain user account, it does the same for the normal users and I see a ‘Welcome’ message for around 15 minutes minimum and then logs in and LAN show (unauthenticated). • Logging in as a local account sees the LAN as normal (domain name and Internet access) What I’m going to do today anyway is take a normal workstation laptop to the site and see if I can add this particular workstation to the domain, log in with normal user credentials from the site and see how I get on. From this I can only think of 3 things: - • Machine not authenticated to the domain • LDAP requests / directory services it can’t see or talk to I confirmed with our network guy that router can definitely perform LDAP requests on port 389 and the config is the same on other sites where it works fine no problem – it just seems because whatever reason it is, it's logging in unauthenticated and therefore it can’t perform any LDAP requests / directory services including finding the user's mailbox via Outlook. That’s why I thought I reimage one machine just in case there was anything lingering around but struggles to join machine to domain (hangs and error message). Any other ideas? Lol.
  15. Thanks a lot, one of the scan engines became corrupt. Anyway to ensure I got rid of everything, did a complete uninstall and reinstall to ensure corrupt scan files are removed. Mail flows seems to be working now - thanks again :-) Mo
  16. Hi all, Got a problem with Forefront Security for Exchange. Late afternoon yesterday inbound and outbound weren't sending and the people would this initial message (attachments and body of the email) 'string_resource_283string_resource_414'. When I googled it, it was relating to Forefront being corrupt and permissions issue (see below) - My emails with attachments are received with the body - string_resource_296 Anyway tried to troubleshoot the issue as forums mentioned security permission on the Forefront folder. When I took off scanning for both realtime jobs and transport jobs, then messages go through as they normally would. Restart the services for both Forefront and Exchange and tried turning scanning back on, and messages not sending or receiving (stuck in queue in logs so hitting the server but sending to Mailbox Server and then to the client). Turning scanning off allows messages to come through. We use an external provider for our public records, and inbound emails receive scanning before arrival to our mail server so there is 1 layer of scanning before inbound items arrive at the moment. Done the following to summerise once I knew it must be Forefront: - - Restarted all Forefront Services and Exchange Services - Turned off Forefront scanning, restarted services, and emails route successful (inbound and outbound) - Checked the permission of the Forefront folder - SYSTEM, ADMINISTRATORS, and LOCAL USERS - Turned on Forefront scanning, restarted services, emails were not sending or arriving (stuck in queue). Anyone got any ideas what I should try next? Just to confirm we're running Exchange Server 2007 SP3 and Forefront Security for Exchange SP2 which are all the latest packs for those versions. Thanks very much. Mo
  17. Great stuff! that helps a lot :-) My intention is to do this in a day so by late evening server has be re-installed and the DC's are finding it's replication partners. I'll let DCPromo handle removing the DNS records and hopefully this won't cause any records being left behind and will get updated once it's been promoted again. I'll delete the existing site link and create a new one and wait for replication to happen between the DC's. At the moment, replication is 15 minutes so if it is 15 seconds by default then I'll change this when I create the site link. Thanks. Mo
  18. Hi, Thanks for your reply and your suggestions :-) It isn't a big forest and we're on a single forest and a single domain (60-70 users across 7 sites) both DC01 and DC02 are linked via a WAN link so enough bandwidth on regular intervals to replicate quickly I would've thought. With this setup, how long do you think replication will take after I rebuild the DC02? even though recommended time is waiting 24-48 hours from your experience. I will let the adding the DC computer account automatically create and locate it in the domain controllers OU - thanks for clearing that up for me. When you say SRV records will be removed by DCPromo, when i demote DC02, will it remove the records automatically? And when i run DCPromo again to promote the DC02, will it automatically apply the SRV records in the database? I will also perform DCDiag once everything seems up and can check if all operations are running as it should be. Not running exchange, got Exchange running on a separate server, and GC queries contact DC01 (located on same site), Exchange doesn't contact DC02 I believe unless DC01 is unavailable. I'll add DC02 as a GC on sites and services. Would I have to create a new site link on sites and services after I demoted the DC as well or leave the current site link? Thanks again, much appreciated. Mo
  19. Hi all, Unfortunately, I have to rebuild our 2nd DC and wanted to know if anyone has done this in an existing forest? And what I should be aware of when I go ahead and do this. I've got the below to do in steps: - 1. Run DCPromo, demote the DC 2. Flatten the Windows server 3. Ensure that the computer account is removed from the domain 4. Ensure that DNS is update with all A records and SRV records for DC02 5. Rebuild the server 6. Run DCPromo again to install the domain onto new DC02. I've got 2 questions with the above - I intend to use the same network details and server name as before after I rebuild the server so when I remove the computer account from the domain, do I add a new computer in the Domain Controller OU and when I run DCPromo again, will it bind the computer object I created in the DC OU? Second question, on DC01 do I clear the existing DNS records in the database for DC02 for query and lookup (SRV) or leave as it is if I'm gonna give it the same server name and network details after I reinstall? Unfortunately, as DC02 is on another site (failover) it's a physical machine and the organisation at the moment won't pursue a hypervisor at the moment at the site! Maybe with this they will in future but for the time being I have to unfortunately rebuild the physical machine again. Any tips would be great. Thanks a lot. Mo
  20. Hi, What domain are you running? If you install AD Federation Services which pulls AD credentials for SSO and that's probably your best bet.
  21. Hi, I've always used sysprep for Windows 7 images whether on WDS or capturing a standalone image saved on a external device such as Acronis. You would have to create an answer file using Windows System Image Manager and customise your answer file - use this link to help you create a basic one (Network Management: Deploying Windows 7 to a domain) And after you've created your answer file run the following command "sysprep /generalize /oobe /shutdown /unattend:c:\windows\system32\sysprep\[NAME OF ANSWER FILE].xml Hope this helps? Mo
  22. Installed it and seems fine so far - as joe90bass and Michael mentioned the IE settings must be done via preference so the other GPO settings seem to have applied. I miss the Start button but slowly its growing on me and I have to say the boot up is very quick - 5 seconds I counted to logon screen.
  23. Thanks guys - I was gonna test it my machine before I give it to staff and see how I go. Hopefully next financial year, I intend to go R2 when I have some cash to spend as 2012 is still new and I'm less likely to go to that any time soon. Thanks again.
  24. Hi all, I've recently purchased some Windows 8 Pro licences and I'd like to test 1PC with Win 8 Pro x86 on it installed in our 2008 environment x64 (not R2) - my question for those who've rolled Win 8 out is that have you encounterted any issues with Win 8 being on a 2008 environment? As it's build to work better with Server 2012, the only thing I can think of top of my head that may have some issues with GPO's not applying successfully on some instances from 2008 to Win 8. Anyone else encountered any other issues or am I best to stay away from it? Thanks. Mo
  25. Hi guys, I've managed to sort this out - apparently it was a update on Outlook 2010 that was causing the issue (kb2687623). Few other people were having the same problem - see following link: - Exchange Mailbox import failed with error code - -2147221233 Uninstalled the update, restarted the machine and now all mailboxes are updating now. Thanks for all your help and suggestions - much appreciated :-) Mo
×
×
  • Create New...