Jason1975
Members-
Posts
53 -
Joined
-
Last visited
Content Type
Forums
News
20th
EduGeek EDIT Conference
Blogs
Everything posted by Jason1975
-
Thanks Steve, yes still for remote Apps. By normal Group Policy, do you mean that the drives would display in the remote apps page or on the actual computer that is initiating the connection? If I RDP normally to the server hosting Remote Apps and log on it seems to pull the correct mappings but it does not seem to be pulling anything GPO related if I log on via remote Apps. Would this work with Home drives as well? Usually I map with %username% to get the home drives working. Thanks for helping me out
-
More progress made and I am almost there in terms of functionality Unfortunately I am struggling with the actual drive mappings, and getting them setup. I have researched this but can't find a good tutorial how to make this work. Any ideas or links please? Many thanks
-
Thanks Steve - Thats a good tip I am researching how to make home directories work within remote apps but there has been good progress made today!
-
Ok, update, this is now working The solution was indeed setting up the sub domain with 1and1, but instead of using redirection to get to our internal IP I used an A record. Thanks Steve!
-
Hi Steve Ok great, thanks for the info - It makes sense. Seems my mistake was using the domain redirection instead of using the A record. I will set this up and see how it goes. Many thanks for the time taken to answer my questions.
-
Hi Steve Thanks for the info. Do you mean with 1 and 1? So set the A record on the subdomain so that when the redirection occurs it redirects as as the full url and not the external IP, thereby matching the SSL cert?
-
Hi Steve Yes this is what is happening. I have never set this up before so this is how I thought it would work: When I set up remote Apps server, I used remote.ourdomain.com as the FQDN during setup as recommended in an article I read# Before we bought the cert yesterday the system worked like this: external ip redirecting to internal ip of server running remote App. This worked but came up with certificate errors. The cert was purchased as remote.ourdomain.com and installed. This still did not work correctly, so I setup a subdomain with 1and1 (remote.ourdomain.com) which redirects to the external IP then to the internal IP. This is where I think the issue is coming up. I spoke to 1 and 1 asking how I could use the certificate we purchased in their back office but they said they do not support 3rd party certificates. 1and1 has been a real thorne in my side over the last year and I will definately migrate away when I get the time to make all the changes. I think I will strip this back and remove the 1and1 settings I setup to try make this work, and go from there. So if my redirection is incorrect, what would the best practice be to get the traffic from 'the web' to our internal remote App server? Thanks
-
Hi Steve So I did a few tests from home and after the certificate install yesterday the remote Apps no longer work. Here are some screen shots. This is the first error that comes up when you try to access the page. The same happens on chrome. This is me ignoring the warning and navigating to the page. Note the certificate error in the taskbar Error 3 is what comes up after yesterday's cert install that now prevents Remote Apps working correctly. The final screen shot shows the cert trusted and installed on the remote App internal server The error I feel is certificate related so I may uninstall the cert we purchased yesterday and use the certificate we created we had previously used just to test it again. Thanks for looking at this, it is appreciated.
-
Hi Steve It says the connection is not private and the address/lock in the address bar is red. You can click on advanced, then proceed to site, but I would prefer it working correctly. Thanks
-
So, a couple of updates I have this working but really struggling with the SSL bit any advice is appreciated. The remote Apps server is installed on a 2012 box. When remote apps was installed I used remote.ourdomain.com fr the setup. I have purchased an SSL certificate using remote.ourdomain.com. The SSL for the remote Apps seems to work fine internally (the irony is not lost on me!) but I have problems when accessed externally, where the page is showing as not secure. Initially I accessed the remote apps, by using the externally IP that is mapped to the Internal server. This worked externally but with the security warnings on the page. I then tried to set up the URL subdomain with our Web hosting company - remote.ourdomain.com. I then redirected this subdomain to the external IP which redirects to the Internal IP. This also works but with the same security warnings. I guess my question would be where the SSL certificate needs to be installed as installing it on the local server does not resolve the error. This is made worse by the fact that my predecessor used 1and1 to register the schools website address and their customer services are pretty dismal. They say we can't use our current SSL cert that was purchased from a different company on their system. Thanks for any help!
-
Hi Steve Yes, I found it was the local cert. The url is correct. I have downloaded a free cert from STARTCOM and trying to install it. Will update when I have more info *
-
Quick Update So, the install has gone pretty well with very few issues. The problem I am having is the SSL certificate. Any advice would be appreciated. We created our own SSL certificate and it has been stored on the server C drive. Permissions have been set. However when we try access remote.ourdomain.com/rdweb we get the error saying there is a problem with the websites certificate. I can continue to the Remote App home page but the link says certificate error. ----------- I have had success running basic MS apps like word and paint, but PARS and SIMS have been more problematic not loading. I just want to try eliminate the ssl certificate as what is causing the Sims issues (although I doubt it is causing SIMS not to load) Many thanks in advance for any help.
-
Thanks again Ben I think I will update our one 2008 Servers that is not doing much to 2012 and give this a try. You have a nice setup on that page. great idea to have options for the various devices and the layout is very user friendly.
-
Thanks Ben This is a very helpful link. I will give this a try.
-
Sounds good. Any advice in terms of servers? Should we have a dedicated server to handle this or would an existing server do? We have 3 pretty high end boxes running 2012. 1 Sims server, 1 file server and the DC. We have another lower end 2012 box running some domain services and some 2008 servers running n computing terminals. I am leaning towards a server just for remote apps.
-
Thanks Steve Windows Remote App does seem like it will work well for us 2 things I have been unable to find - I assume one would need an external IP mapped to the internal server IP running remote apps correct? Secondly, can one set up drive mappings? Thanks
-
Afternoon everyone. I have a quick question that I would appreciate feedback on please. With all our budget cuts there is less money for staff laptops, but many staff still want to work from home. I have seen various web based RDP software solutions but wondered if there was a preferred solution that schools use. Essentially I would like staff to be able to access SIMS and their files on various non school devices from home via an RDP connection of sorts, ideally from a 'web portal' we can link from our school website. Many thanks in advance for any advice.
-
Got this error fixed using information from another site to perform a manual authoritative sync between the 2 DC's The solution actually caused a larger problem initially as the forced replication somehow deleted the contents of the sysvol folder, so all the GPO's were empty. Thankfully I had taken a copy of the sysvol folder, which I was able to copy and paste back onto the DC. A gpupdate /force sorted the rest out. My advice would be to always take a sysvol folder copy before working on a problem like this. Without it the fix would have been far more tedious. Thanks to everyone for their help and input.
-
Going to be tricky to do in a live environment, but will bear that in mind if I cant find a solution. Thanks
-
Well I have decided against the restore for now, as rolling back DC to two weeks will almost certainly have unpredictable results and cause further headaches. Been 'Googling' these error messages but most of what I find applies to Server 2008. If anyone knows of a site that has good info on fixing DFS replication it would be appreciated! Thanks in advance.
-
Thanks for taking the time to answer this on a Saturday guys. I can ping the client using name and IP - Firewall is switched off. I wonder if an easier workaround is trying to restore this PC to a date just priory to the error starting. It is a virtual Machine so it may be faster that trying to fix the actual error.
-
mmmmmm Ok, I think I am getting to the root of the issue. I checked the event viewer and have found numerous errors from the 24 Sep until today. Here are a few The DFS Replication service failed to recover from an internal database error on volume C:. Replication has been stopped for all replicated folders on this volume. Additional Information: Error: 9214 (Internal database error (-1605)) Volume: AD3FE7DF-06CA-11E4-80B5-806E6F6E6963 Database: C:\System Volume Information\DFSR -------------------- The DFS Replication service stopped replication on volume C:. This failure can occur because the disk is full, the disk is failing, or a quota limit has been reached. This can also occur if the DFS Replication service encountered errors while attempting to stage files for a replicated folder on this volume. Additional Information: Error: 9014 (Database failure) Volume: AD3FE7DF-06CA-11E4-80B5-806E6F6E6963 ------------------ The DFS Replication service has detected an unexpected shutdown on volume C:. This can occur if the service terminated abnormally (due to a power loss, for example) or an error occurred on the volume. The service has automatically initiated a recovery process. The service will rebuild the database if it determines it cannot reliably recover. No user action is required. Additional Information: Volume: C: GUID: AD3FE7DF-06CA-11E4-80B5-806E6F6E6963
-
So, just to test I went to a different room without terminals just to be thorough. Installed the software on 2 computers. Using gpresult /r I saw that the computers hit the 2 different servers. The software runs on the one and not the other. There seems to be no correlation between the fault and the 2 servers. Sometimes the clients hits DC1 and works, others hit DC1 and don't work. Same with DC2 So it seems to look like the GPO is not fully making it onto the pc - It gets the old settings but no new ones I made over the last 2 days. The firewall was on on both clients (even the one where the software works) but I tried turning it off anyway with no success. I am really running out of ideas! Only other software that may block traffic is Avast but I doubt it would be that, although I may try and eliminate that as a potential problem just in case! Will double check Sysvol replication
-
So some developments. I logged onto some of our N Computing terminals after installing the software n the server. The software works on the terminals as well as another test machine. So the conclusion is: This issue is potentially restricted to a single room. I then tried to manually refresh the GPO for that room. Some of the computers accept the policy refresh, but about half fail after an RPC error. The RPC server is unavailable The remote procedure call was cancelled This error occurs even with the firewall off and I can confirm the server info DNS/DHCP for the problematic computers is accurate. HOWEVER, even the computers that don't fail still don't run the new software and still do not show the software in the GPO after investigating the user with RSOP.
-
Ah Steve, great tip. I did not know that. Right I have run RSOP for the student username and it is indeed not getting the additions to the GPO I have added yesterday or today. Taking into consideration this is happening on more than one PC I assume it is Server/GPO related. Any more pearls of wisdom? Many thanks for the help so far Steve *Edit* I have tried gpupdate /force already *Edit 2* The changes are replicating to the secnd DC, just not the clients
