Hello,
I'm running Windows 2016 Server RDS. I have an application which our users want to access non-seamless mode. Is it possible to accomplish this?
Hello,
I'm running Windows 2016 Server RDS. I have an application which our users want to access non-seamless mode. Is it possible to accomplish this?
How can you prevent user profile corruption on windows server 2016 and 2019.
We have lots of RDS deployment setup according to best practice guides, it's all very straightforward no strange or complicated configuration. Just an out of the box windows server 2016/2019 installations with RDS:
a remote desktop gateway
a connection broker
a session host
then we make a rdp deployment with UPD's.
profiles keep getting corrupted. How can we prevent this? It's super annoying we have to fix the corrupted profiles all the time.
Note this is not a question how to fix corrupted profiles, rather how to prevent it. We're now fixing corrupted profiles every day, such a waste of time!
If you need more information, let me know.
PS. seeing the many google posts, it's clearly a problem many people have, so there must be a solution for that right????
PS. RDS setup is default as can be. Guide followed: https://docs.microsoft.com/en-us/windows-server/remote/remote-desktop-services/rds-deploy-infrastructure No weird config going on, everything according to best practice but still profile corruption keeps coming back.
I've have an issue redirecting local printers in my WS2016 RDS farm.
When I connect to any of my Server 2016 Remote Desktop Session Host I am not able to see redirected printers. This happens with full desktop or with Remoteapp, for example, with Wordpad.
This issue happens when connecting from RDS Gateway or when connecting from the intranet. Despite that, I'm able to redirect local printers if I connect to the sesion host with the /admin console session (mstsc.exe /admin). I have EasyPrint enabled and configured with preference via GPO.
I have configured print management and installed several server printers. The users are able to see those printers, but they cannot see redirected ones. I believe it's a driver issue, as I am able to see the TS redirected ports (TSxxx PRNx) but no printer installed in any of those ports.
I do not have any clue why. Could you please help me?
The farm is a standard RDS Farm, with 4 session host. The DCs are in another server, so no problem with that.
Thank You
Hi
Not sure if there is any particular KB released to fix Remote APP to appear to work slow or freeze on remoteapp applications
Client machines - windows 10 1803
Remote gateway/brokers/RDSH servers are windows 2012 patched up to July 2019.
I came across https://support.gotomyerp.com/portal/kb/articles/critical-advisory-applications-are-slow-after-windows-10-update-to-1803 and mentioned that KB 4284848 maybe a fix
https://support.microsoft.com/en-au/help/4284848/windows-10-update-kb4284848
Please let me know if there is more new KBs to specifically fix the slowness on RDApp. I don't really like copying mstsc files from older windpws 10 version as suggested by other people.
Thanks in advance for any suggestions.
Pwint.
Hi,
What is the best practice to configure "Read-Only" User Profiles ?
I used to configure Mandatory Roaming profiles and then change the source folder NTFS rights to Read-Only.
That way, each logon starts with the profile I had set. I mean I don't want to retain whatever is in various Temporay / Downloads / Documents etc.. folders.
This does not seems to be the best approach :
- Starting with Windows 2016, I had to keep the cached profile because the default browser was not retained.
- In Windows 2019 server the entire "Mandatory" profile feature seems currently broken to me :
Long story short, my current workaround with Windows 2019 RDSH server is- Make the mandatory profile folder Read-Only except for MandatoryProfiles\%username%\profile.V6\AppData\Roaming\Microsoft\Search which is set to Full Control
- Add AppData\Roaming\Microsoft\Search\Data\Applications;AppData\Local\Microsoft;AppData\LocalLow\Microsoft to ExcludeProfileDirs (Windows Search is not compliant with Mandatory profile feature, hence the exclusion. Some software are misusing Appdata\local
and localLow, hence the narrowing to local\Microsoft and localLow\Microsoft subfolders (Microsoft being supposed cough to be compliant with a feature it has designed...)
- DON'T rename USER.DAT to USER.MAN.
And live with the ugly message at logout "Your roaming user profile was not entirely synchronized"
So, it looks like Microsoft is overlooking this feature
or I'm not using the right approach...
Any hints ?
Hi all, we have the following setup in our hosted environment:
Server 1 - RDG, Gateway and License
Server 2 - Session host
They are server 2019.
If I RDP into server 1 and do a file transfer, (copy and paste) the speed is decent. for ex 2MB/sec..
If I RDP into server 2, the transfer speed goes down the toilet, like 300-400KB / sec
Connectivity between server 1 and 2 is fine, they are in the same network.
Any idea?
Hello,
I can log into my RDS session on Windows 10 without issue, however using the exact credentials in the exact network on a Windows 8.1 PC, the RDS session will not connect.
Are there any other configurations or patches required for 8.1 to work?
Thank You,
Franjisk
Hello all,
currently i'm workiong on RDS farm. Plan is to have one farm of 3 servers. One of these 3 servers is RD gateway and licencing server.
We would like to limit remote desktops hops. So if user connects to RDS farm we want to control what is accessible via remote desktop (next hop from RDS farm) to group of users or particular users which connects to the farm for security reasons.
I was trying to configure CAP and RAP policies in RD gateway manager so i can limit group of user only to limited domain computers that this users or group can use and block more critical servers. But whatever i do if user connects to RD farm he can remote to any pc in domain (if RD is enabled or has credentials) .
Is this even possible or there is some catch in this deployment ???
Thanks in advance
Hi folks,
I have a Windows Server 2016 Remote Desktop Services environment. On one server collection there areno UPD's configured. Each user account has a roaming profile path configured on the profile tab in AD.
I want to migrate to User Profile Disks. There is some content in the roaming profiles directories that has to be in the User Profile Disks in order to start an application properly.
On the website below I red that the content is copied automatically after configuring the UPD path and logging on and off with a user account. I presume I can delete the roaming profile pathafterwards?
https://www.techslave.ch/2016/03/10/from-roaming-profiles-to-user-profile-disks-part-i-2/
The question is, is this information correct? Or is there another / better way to do this, or is this the way to go?
Hi All,
I have a question rgarding one drive for business on rd session host servers. I am wondering when users want to configure onedrive they have option to configure it in a specific location or to use default. What to choose there? What is the best option when configuring onedrive for business in rds, where to configure onedrive or what location to choose when configuring it?
Default location is C:\users\username and should I install it in the profile or somewhere else? Please help
What is the best practice?
Hi All,
we use a Windows Server 2016 RDS Deployment with three virtual Machines: the first VM is the classic Terminalserver Desktop where all users connect to from their client PCs, the two others are RDS Hosts with some RemoteApps, like Outlook 2016.
Sometimes this happens:
1. a User connects to the terminalserver by RDP ( not using RD Gateway, Native Port 3389 )
1. the User starts Outlook as Remoteapp on the Terminalserver ( RDP Icon on the Desktop, Connecting by RD Gateway )
2. the User clicks on "New Mail", a window opens, he writes the content and sends it, the windows closes, everything is fine ;-)
3. the User clicks on "New Mail" ( or wants to forward an existing mail ), a windows opens - this window shows the content of the previous e-mail (from 2.) - it is not possible to hit or edit the elements in the windows, it's just graphic ...
This behaviour is confusing the users.
Workaround: resizing the windows solves the problem, after this the user use the window, can edit ...
It seems that the graphical content is cached somewhere, so we disabled "bitmap caching" in the rdp Settings on the Client PC and in the rdp Settings for Outlook on the Terminalserver - nothing changed.
Sometimes the behavior occurs after writing 10 to 15 E-Mail, sometimes after every E-Mail. There is no regularity. The Load on the VMs isn't high, enough RAM.
Do you have any ideas ?
Best Regards,
Karsten
hi all,
knowledge: last year we migrate some 2008R2 Server to 2016. All new Server has performance problems.
old server: 4CPU, 32GB, 150 and more User, slow wifi network = no performanceproblems, user works fine
new server: With 4CPUs and 20 Users we have 98% CPU workload.! We upgrade to 6CPU, 32-64GB 50User, because more use can't work on one server.
Now we use 2 Server with more CPUs to solve the problem.
is 2016 a step backward :-)
we know the RDS best practise, but I think 2016 with default setting (and without 100 registry settings and file modifys etc.) should be better as 2008RS2 RDS.
Chris
How can you prevent user profile corruption on windows server 2016 and 2019.
We have lots of RDS deployment setup according to best practice guides, it's all very straightforward no strange or complicated configuration. Just an out of the box windows server 2016/2019 installations with RDS:
a remote desktop gateway
a connection broker
a session host
then we make a rdp deployment with UPD's.
profiles keep getting corrupted. How can we prevent this? It's super annoying we have to fix the corrupted profiles all the time.
Note this is not a question how to fix corrupted profiles, rather how to prevent it. We're now fixing corrupted profiles every day, such a waste of time!
If you need more information, let me know.
PS. seeing the many google posts, it's clearly a problem many people have, so there must be a solution for that right????
PS. RDS setup is default as can be. Guide followed: https://docs.microsoft.com/en-us/windows-server/remote/remote-desktop-services/rds-deploy-infrastructure No weird config going on, everything according to best practice but still profile corruption keeps coming back.
Hi All,
I am trying to configure multifactor authentication with Azure MFA on my remote desktop gateway. I followed this article:
https://docs.microsoft.com/en-us/azure/active-directory/authentication/howto-mfa-nps-extension-rdg
All seems ok but it is not working as expected. When I try to access a remote desktop I get the notification on my phone. When I approve, the remote desktop keeps trying to connect and I get the notification on my phone 2 more times. Eventually the RDP just times out.
On my NPS server with the NPS extension I can see in the eventlog that access has been granted. On my remote desktop gateway in the NPS logs I can see this:
The RADIUS Proxy received a response from server X.X.X.X with an invalid authenticator.
Where X.X.X.X is my NPS server.
All servers are windows server 2019. My testuser has an Azure AD Premium P1 license (and an office365 business premium).
Any ideas on what could be wrong with my setup?
Hello all,
I installed RDS roles (including licence server) on one server in domain.
I Installed user licences and licence server works like a charm. But...!! There was change of plans and our licencing server will go on domain controller. I installed licencing server on DC, activated server itself and now whatever key I put in server i get error message "Licence code not recognised" ....i put that same key in original licence server and it is ok ???
Help Please