{#advanced_dlg.about_title}

Active Directory, Microsoft Small Business Specialist, Small Business Server 2011, Windows 2008 R2 »

Saturday, October 29, 2011 | 0 Comments

Trying to add a failed domain controller with the same name, Access Denied. To manually remove the failed domain controller, You will need the following tool: Ntdsutil.exe, Active Directory Sites and Services, Active Directory Users and Computers. Also, make sure that you use an account that is a member of the Enterprise Admins universal group. Caution: Using the Ntdsutil utility incorrectly may result in partial or complete loss of Active Directory functionality. To clean up metadata At the command line, type Ntdsutil and press ENTER. C:\WINDOWS>ntdsutil ntdsutil: At the Ntdsutil: prompt, type metadata cleanup and press Enter. ntdsutil: metadata cleanup metadata cleanup: At the metadata cleanup: prompt, type connections and press Enter. metadata cleanup: connections server connections: At the server connections: prompt, type connect to server <servername>, where <servername> is the domain controller (any functional domain controller in the same domain) from which you plan to clean up the metadata of the failed domain controller. Press Enter. server connections: connect to server server100 Binding to server100 ... Connected to server100 using credentials of locally logged on user. server connections: Note: Windows Server 2003 Service Pack 1 eliminates the need for the above step. Type quit and press Enter to return you to the metadata cleanup: prompt. server connections: q metadata cleanup: Type select operation target and press Enter. metadata cleanup: Select operation target select operation target: Type list domains and press Enter. This lists all domains in the forest with a number associated with each. select operation target: list domains Found 1 domain(s) 0 - DC=dpetri,DC=net select operation target: Type select domain <number>, where <number> is the number corresponding to the domain in which the failed server was located. Press Enter. select operation target: Select domain 0 No current site Domain - DC=dpetri,DC=net No current server No current Naming Context select operation target: Type list sites and press Enter. select operation target: List sites Found 1 site(s) 0 - CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=dpetri,DC=net select operation target: Type select site <number>, where <number> refers to the number of the site in which the domain controller was a member. Press Enter. select operation target: Select site 0 Site - CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=dpetri,DC=net Domain - DC=dpetri,DC=net No current server No current Naming Context select operation target: Type list servers in site and press Enter. This will list all servers in that site with a corresponding number. select operation target: List servers in site Found 2 server(s) 0 - CN=SERVER200,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=dpetri,DC=net 1 - CN=SERVER100,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=dpetri,DC=net select operation target: Type select server <number> and press Enter, where <number> refers to the domain controller to be removed. select operation target: Select server 0 Site - CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=dpetri,DC=net Domain - DC=dpetri,DC=net Server - CN=SERVER200,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=dpetri,DC=net DSA object - CN=NTDS Settings,CN=SERVER200,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=dpetri,DC=net DNS host name - server200.dpetri.net Computer object - CN=SERVER200,OU=Domain Controllers,DC=dpetri,DC=net No current Naming Context select operation target: Type quit and press Enter. The Metadata cleanup menu is displayed. select operation target: q metadata cleanup: Type remove selected server and press Enter. You will receive a warning message. Read it, and if you agree, press Yes.   metadata cleanup: Remove selected server "CN=SERVER200,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=dpetri,DC=net" removed from server "server100" metadata cleanup: At this point, Active Directory confirms that the domain controller was removed successfully. If you receive an error that the object could not be found, Active Directory might have already removed from the domain controller. Type quit, and press Enter until you return to the command prompt. To remove the failed server object from the sites In Active Directory Sites and Services, expand the appropriate site. Delete the server object associated with the failed domain controller. To remove the failed server object from the domain controllers container In Active Directory Users and Computers, expand the domain controllers container. Delete the computer object associated with the failed domain controller. Windows Server 2003 AD might display a new type of question window, asking you if you want to delete the server object without performing a DCPROMO operation (which, of course, you cannot perform, otherwise you wouldn't be reading this article, would you...) Select "This DC is permanently offline..." and click on the Delete button. AD will display another confirmation window. If you're sure that you want to delete the failed object, click Yes. To remove the failed server object from DNS In the DNS snap-in, expand the zone that is related to the domain from where the server has been removed. Remove the CNAME record in the _msdcs.root domain of forest zone in DNS. You should also delete the HOSTNAME and other DNS records. If you have reverse lookup zones, also remove the server from these zones. Other considerations Also, consider the following: If the removed domain controller was a global catalog server, evaluate whether application servers that pointed to the offline global catalog server must be pointed to a live global catalog server. If the removed DC was a global catalog server, evaluate whether an additional global catalog must be promoted to the address site, the domain, or the forest global catalog load. If the removed DC was a Flexible Single Master Operation (FSMO) role holder, relocate those roles to a live DC. If the removed DC was a DNS server, update the DNS client configuration on all member workstations, member servers, and other DCs that might have used this DNS server for name resolution. If it is required, modify the DHCP scope to reflect the removal of the DNS server. If the removed DC was a DNS server, update the Forwarder settings and the Delegation settings on any other DNS servers that might have pointed to the removed DC for name resolution. Taken from: http://www.petri.co.il/delete_failed_dcs_from_ad.htm

{#advanced_dlg.about_title}

Small Business Server 2011 »

Thursday, May 19, 2011 | 2 Comments

In SBS 2k11 when you uninstall framework 4.0 This will break Remote Work Places. To fix Remote work places reinstall .Net Framework 4.0, Go to IIS 7, Expand Application Pools go to SBS Web Work Place. Advance Settings and change .Net Framework Version to 4.0 After reinstalling it. Heres a Screenshot.

{#advanced_dlg.about_title}

Small Business Server 2011, Lync Server 2010 »

Thursday, May 19, 2011 | 15 Comments

Download and install the Microsoft Office Communications Server 2007 R2 Web Service Provider from http://www.microsoft.com/downloads/en/details.aspx?familyid=CA107AB1-63C8-4C6A-816D-17961393D2B8&displaylang=en on your Client Access Server. This MSI package contains the installation programs to the local hard drive. Normally it will put them in C:\Web Service Provider Installer Package, but I've also seen it install to a different drive. Make note of the location it uses during installation. The package will install the following files: Next, download and save the OCS 2007 R2 Web Service Provider Hotfix KB 981256 from http://www.microsoft.com/downloads/en/details.aspx?FamilyID=45C94403-39FA-44D3-BE23-07F25A2D25C7 to the same C:\Web Service Provider Installer Package folder. Download and save the Unified Communications Managed API 2.0 Redist (64 Bit) Hotfix KB 2400399 from http://www.microsoft.com/downloads/en/details.aspx?FamilyID=1F565A42-71D2-4FBD-8AE0-4B179E8F02AB to the same C:\Web Service Provider Installer Package folder. NOTE: If you have problems saying that you need to have framework 3.5 uninstall Framework 4.0 Extended and Client from AddRemove Programs. In SBS 2k11 when you uninstall framework 4.0 This will break  Remote Work Places. To fix Remote work places reinstall .Net Framework 4.0, Go to IIS 7, Expand Application Pools go to SBS Web Work Place. Advance Settings and change .Net Framework Version to 4.0 After reinstalling it.   If your CAS server is running Exchange 2010 SP1 on Windows Server 2008 R2, you need to download and save the UcmaRedist.msp patch in Microsoft Office Communications Server 2007 R2 Hotfix KB 968802 from http://www.microsoft.com/downloads/en/details.aspx?FamilyID=b3b02475-150c-41fa-844a-c10a517040f4. The tricky part here is that the file name (UcmaRedist.msp) is the same as the Communications Managed API 2.0 Redist (64 Bit) Hotfix KB 2400399 you just downloaded. Just rename this file name to something like UcmaRedist-R2.msp. Now install the following files as Adminstrator in this order: vcredit_x64.exe UcmaRedist.msi UcmaRedist.msp UcmaRedist-R2.msp, if your CAS is running on Windows Server 2008 R2 CWAOWASSP.msi CWAOWASSP.msp dotnetfx35setup.exe, if the .NET Framework 3.5 is not installed on Windows Server 2008. For Windows Server 2008 R2, install the .NET Framework 3.5.1 feature from Server Manager. Note that the MSI and MSP packages have a limited GUI during setup and don't indicate that they've installed successfully. Next we need to configure the Exchange 2010 SP1 Client Access Server for Lync Server integration. Run the following two commands from the Exchange Management Shell on the CAS:   $cert = (Get-ExchangeCertificate | Where {$_.Services -ilike "*IIS*}).Thumbprint Get-OWAVirtualDirectory | Set-OWAVirtualDirectory -InstantMessagingType OCS -InstantMessagingEnabled:$true -InstantMessagingCertificateThumbprint $cert -InstantMessagingServerName pool.domain.com Be sure to change the InstantMessagingServerName value in the command above to the FQDN of your Lync Server pool. Now we need to configure the Lync 2010 RC server. Use the Lync Server Topology Builder to add a new Trusted Application Pool, as follows: Open the existing topology. Expand your Lync Server 2010 (RC) > your sitename. Right-click Trusted application servers and select New Trusted Application Pool. Enter your CAS server or CAS array's FQDN in the Pool FQDN field, select Single Computer Pool and click Next. Select the Front End Pool for the Trusted Application Pool. Click Finish. Right-click the new Trusted Application Server and select Edit Properties. Clear the checkbox for Enable replication of configuration data to this pool and click OK. Publish the new topology. The final step is to create a new CsTrustedApplication using the Lync Server Management Shell on the Lync 2010 RC server. Run the following command from the management shell:   New-CsTrustedApplication -ApplicationID ExchangeOutlookWebApp -TrustedApplicationPoolFqdn cas.domain.com -Port 9999 Enable-CsTopology Be sure to change the TrustedApplicationPoolFqdn value in the command above to the FQDN of your CAS server or CAS array. The Port value can be any unused TCP port.Now login to Outlook Web App and enjoy the new Lync Server goodness! Taken from http://www.expta.com/2010/09/how-to-integrate-lync-server-2010-with.html  

{#advanced_dlg.about_title}

Small Business Server 2011 »

Friday, May 6, 2011 | 3 Comments

I did my first Migration to Small Business Server 2011 and Everthing went straight foward. Have to give a big thumbs up to the MS Small Business Group this new version is so nice, includes Exchange 2010, Sharepoint Foundation 2010, the new look a fell for Remote Work Places. If you haven't tried it I highly recommend it. Follow this guide from Microsoft to Migrate Windows Small Business Server 2008 to Small Business Server 2011. Download from MS Website.

{#advanced_dlg.about_title}

Small Business Server 2011, Windows 2008 R2 »

Wednesday, May 4, 2011 | 2 Comments

Found this great tool to monitor servers and alerts. Features One installation watches multiple computers at a time. Monitors all Windows services with startup type set to Automatic. Sends alerts by e-mail when services stop or fail to start at boot time. Optionally starts failed services. Optionally reboots computers when one or more services fail. Read More Download here

{#advanced_dlg.about_title}

Small Business Server 2011 »

Monday, May 2, 2011 | 18 Comments

In Small Business Server 2011 you try to connect to OWA and after login the page stays in auth.owa To resolve this issue go to your Services.msc and start Microsoft Exchange Forms-Based Authentication service. Also change the service to Start Automatic Delayed Start, for some reason stays down after a restart.

{#advanced_dlg.about_title}

Small Business Server 2011 »

Monday, May 2, 2011 | 16 Comments

Problem: Outlook 2010 unable to connect to Exchange 2010   Cause: Microsoft Exchange RPC Client Access and Microsoft Exchange System Attendant service was not started   Resolution: Verify this Services are Started and Change them to Automatic Delayed Start - We created new Outlook 2010 profile. - We started Microsoft Exchange RPC Client Access and Microsoft Exchange System Attendant services.