Solved

Direct Access 2012 R2 Get. Started Wiz cannot create GPO

Posted on 2014-01-22
6
454 Views
Last Modified: 2016-05-20
Hello,

I'm having a problem deploying a simple Direct Access installation on a 2012 R2 server, with the Getting Started Wizard. The error reads as follows:

"Configuration settings cannot be retrieved from the DirectAccess server GPO."

This comes after Finalizing configuration settings.
Then it rolls back the configuration.

The funny thing is though, if I copy the PowerShell script, it creates the GPOs just fine. But that may have something to do with the Wizard removing them when rolling back, I take it. When I use the Powershell script, I can't use the Remote Access Management afterwards cause it's missing configuration. It just wants me to re-run the Wizard.

The setup is as follows:

A 2008 Standard server DC with 2008 functional forest level.
A 2012 R2 Standard server
Behind Edge (Single adapter)

I cannot see any problems with DNS or the DC itself. All patches are installed on the 2012 R2 server. I cannot see any problems with prerequisites either. I've tried everything I can think of.

I cannot find a single page that reflects this problem either. There are some that talks about that it cannot receive configuration settings from domain controller (something to do with GPO rights), but none that talks about the DirectAccess server.

Anyone experienced this or knows what the problem may be? If not, how do I properly debug an installation like this? I can't seem to find any verbose logs anywhere.

Hilfe!

Thanks!

Best regards
Daniel
0
Comment
Question by:itssab
  • 3
6 Comments
 
LVL 35

Expert Comment

by:Mahesh
ID: 39802158
You can install GPMC Console on 2012 R2 server, ensure that you are logged on with Domain admins account, then open GPMC from 2012 R2 server and wipe out any existing GPO created by DirectAccess setup, force replication across domain and then try rerunning DirectAccess setup wizard and check

Mahesh
0
 

Author Comment

by:itssab
ID: 39802238
I have done this several times already. This was the error message I first got when everything was fresh, and still the message I get after cleaning out the GPOs etc.

It's so weird that I can't find a single occurance of this exact error message on the web.
0
 

Author Comment

by:itssab
ID: 39802513
This is what it looks like btw. Not very handy as it doesn't tell you more than I've already said, but what the heck...
Everything above this error is green btw.

 
Direct access error
0
 

Accepted Solution

by:
itssab earned 0 total points
ID: 39803029
Ok, I may have solved it myself. I copied the Powershell script again, and ran it. This time (for no apparent reason whatsoever) the Remote Access Management Console popped up with the configuration. Everything also seems to check out, no errors anywhere.

I still wonder why the guide fails while the PS script doesn't. Isn't the script exactly what it runs in the background?
0
 
LVL 1

Assisted Solution

by:Tech Savy
Tech Savy earned 500 total points
ID: 40771829
that means it had some problem contacting the domain controller and could not get the GP settings. I would recommend making sure name resolution is not having an hiccup intermittently.

Uninstall the remote access role, and re-boot, re-install the role, start a fresh installation this time assuming the GPs have been wiped out from the DC. If you still get an error message restart the remote access management service and look for relevant logs under Remote Access management operational logs, to get more information.

Normally a reboot on the DA server would fix it.
0

Featured Post

Maximize Your Threat Intelligence Reporting

Reporting is one of the most important and least talked about aspects of a world-class threat intelligence program. Here’s how to do it right.

Join & Write a Comment

This article will review the basic installation and configuration for Windows Software Update Services (WSUS) in a Windows 2012 R2 environment.  WSUS is a Microsoft tool that allows administrators to manage and control updates to be approved and ins…
I don't know if many of you have made the great mistake of using the Cisco Thin Client model with the management software VXC. If you have then you are probably more then familiar with the incredibly clunky interface, the numerous work arounds, and …
In this Micro Tutorial viewers will learn how they can get their files copied out from their unbootable system without need to use recovery services. As an example non-bootable Windows 2012R2 installation is used which has boot problems.
In this Micro Tutorial viewers will learn how to use Boot Corrector from Paragon Rescue Kit Free to identify and fix the boot problems of Windows 7/8/2012R2 etc. As an example is used Windows 2012R2 which lost its active partition flag (often happen…

708 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

17 Experts available now in Live!

Get 1:1 Help Now