Solved

Terminal Services refusing connections.

Posted on 2009-07-15
12
1,637 Views
Last Modified: 2013-11-21
We have an SBS2003 Premium machine that is running as DC, Exchange and SQL Server and ISA. We are preparing to upgrade to SBS2008 so i have had to reconfigure the network topology, we used to have a dual WAN setup with ISA, but yesterday i removed ISA and reconfigured the server to use a single NIC for Net access and Network. The second NIC is disabled within network connection on the server.

All was fine until i rebooted the server to complete the uninstall of ISA, the server has come back up fine, but i cannot get an RDP connection to the system. Any attempt is immediately rejected by the server, this is from both Mac OSX and WinXP client machines.

I can ping the machine fine by both IP and Hostname, so DNS seems to be functioning correctly. I can also browse shares e.t.c and access to the SQL database is fine.

I have done a port scan and 3389 reports open and reports ms-wbt-server is listening. I have also done a netstat on the server and it shows the something is listening on 3389.

I have tried initiating and RDP connection directly on the server to localhost/127.0.0.1 as well as ip and that also fails.

Interestingly all the Terminal Service controls in Services on the server seem to be grayed out, so i am unable to restart the service.

Help please!!!!

Thanks

Gareth
0
Comment
Question by:gazzer1982
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 6
  • 5
12 Comments
 
LVL 12

Expert Comment

by:marcustech
ID: 24858357
Is administrative tools > services > terminal services started?
0
 

Author Comment

by:gazzer1982
ID: 24858488
Yes it does say it is started. However weirdly when i check it's properties it is set to start manually. I will set it to automatic start and give the server a reboot later once everyone has gone for the day.

Can't believe i didn't notice that before, thanks for the memory jog!
0
 
LVL 12

Expert Comment

by:marcustech
ID: 24858627
Funnily enough, on my SBS server, it's also set to Manual, I believe the service is set to start on demand rather than automatically with the OS. I'm not terribly convinced this will fix your issue.

Try disable the windows firewall on the server and see if it then allows the connection, it may need RDP added as an expection.

In administrative tools > terminal services configuration > connections > "your RDP connection"

under network adapter tab, is "all network adapaters configured with this protocol" selected? and in remote control tab is "use remote control with the following settings" selected? (I suggest in the level of control box below selecting "interact with the session" as well.

let me know,

-js
0
Space-Age Communications Transitions to DevOps

ViaSat, a global provider of satellite and wireless communications, securely connects businesses, governments, and organizations to the Internet. Learn how ViaSat’s Network Solutions Engineer, drove the transition from a traditional network support to a DevOps-centric model.

 

Author Comment

by:gazzer1982
ID: 24858746
Thanks for that, i am running as a single NIC setup so windows firewall is disabled.

I have taken a look at the settings you suggested and they are all correct.

Any other ideas, i think it's still worth a reboot later, especially as you cannot manually restart the Terminal Services service without rebooting the server. Dull!
0
 
LVL 12

Expert Comment

by:marcustech
ID: 24858793
No problem mate, and dispite being on a single NIC the server will still be running a standard (xp like) firewall on the network connection.

You can see if this is switch on by going to start > control panel > windows firewall. It may well be switched off, but still none the less it's worth checking.

And yeah I await to see how you get on with the reboot later :)
0
 

Author Comment

by:gazzer1982
ID: 24858845
I guess there may be a firewall running there somewhere, but i remember ICW telling me that firewall would be disabled. Also when i go to firewall in Control Panel i get an error telling me that window cannot control the firewall as a program or service is using the network address translation component (Ipnat.sys).
0
 
LVL 12

Expert Comment

by:marcustech
ID: 24858893
Try stopping the routing and remote access service (since it won't be needed in 1NIC mode) and then try to access the firewall. Also at this point try the RDP again.
0
 

Author Comment

by:gazzer1982
ID: 24859269
Isn't routing and remote access required for VPN access?
0
 
LVL 12

Accepted Solution

by:
marcustech earned 400 total points
ID: 24859363
Yes it is, it might be worth re-running through the wizard with the new setup, to set it up though if you're using VPN.

Sorry I over looked the fact your using VPN, on our server we're forwarding the RDP ports rather than PPTP.
0
 

Author Comment

by:gazzer1982
ID: 24859982
As i see, yeah we don't expose the RDP ports externally, connections are via PPTP passed through a pfSense firewall.

I was forced to re-run the ICW at the end of the ISA uninstall. But it can't hurt to run it again, i will do so before i reboot, hopefully one will sort it out.

Cheers

Gareth
0
 
LVL 31

Assisted Solution

by:Henrik Johansson
Henrik Johansson earned 100 total points
ID: 24863790
Is the checkbox for allowing RDP-connection ticked under System Properties -> Remote ?

If it's ticked, untick the checkbox, click apply and tick the checkbox again to re-enable RDP and close the dialog with ok. I've seen on one of our TS that the RDP-permissions get corrupt sometimes and nead to be reset by temporary disabling RDP-access to fix some stuff in registry.
0
 

Author Comment

by:gazzer1982
ID: 24864922
Well i re-ran the ICW and restarted the server, and it is now working again so something seems to have sorted it. Hopefully it's now fixed permanently and i can start my SBS 2008 migration .i performed a live image of the system to our new Esxi server tonight, and it seems have gone without a hitch. So i can now take a snapshot incase it all goes tits. Not that i don't trust Microsofts online migration or anything . . .
0

Featured Post

Salesforce Has Never Been Easier

Improve and reinforce salesforce training & adoption using WalkMe's digital adoption platform. Start saving on costly employee training by creating fast intuitive Walk-Thrus for Salesforce. Claim your Free Account Now

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
vSphere VM Sysprepped + deleted a snapshot 3 110
BgInfo help 5 110
Install network Solutions's SSL certificate on SBS 2011 2 39
SBS 2008 active sync issue 2 53
Background Information Recently I have fixed file server permission issues for one of my client. The client has 1800 users and one Windows Server 2008 R2 domain joined file server with 12 TB of data, 250+ shared folders and the folder structure i…
A quick step-by-step overview of installing and configuring Carbonite Server Backup.
Exchange organizations may use the Journaling Agent of the Transport Service to archive messages going through Exchange. However, if the Transport Service is integrated with some email content management application (such as an antispam), the admini…
Are you ready to implement Active Directory best practices without reading 300+ pages? You're in luck. In this webinar hosted by Skyport Systems, you gain insight into Microsoft's latest comprehensive guide, with tips on the best and easiest way…

752 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question