Windows Server 2012





Windows Server 2012 is the server version of Windows 8 and the successor to Windows Server 2008 R2. Windows Server 2012 is the first version of Windows Server to have no support for Itanium-based computers since Windows NT 4.0. Windows Server 2012, now in its second release (Windows Server 2012 Release 2) includes Foundation, Essentials, Standard and Datacenter, and does not support IA-32 or IA-64 processors.

My Exchange VSS admin writer is missing for some case.  I just discovered why my harddrive was filling up so quickly, because none of the logs have been truncated since February of this year.

I've tried different registry changes, but nothing worked, I searched online and everything I tried didn't work, so short of calling MS I'm hoping someone has experienced this and knows how to solve it?

My issue is that I am using Arcserve to backup my server, and its backing up exchange, but it's not truncating the logs, then I used windows backup server, and it ran successfully, but again, it didn't truncate the logs.


log filesvssadminlistwriters
Sharing permissions were lost to a shared drive with sub-folders with different sharing permissions. Is there any way to recover sharing permissions or see who had access to what? Multiple sub-folders in one drive w/ different levels of access.
Hi wanting to deploy a template with powercli.  I can do that. But i don’t know How to add hard drives that are not in the template. It just has a c   In the same. New-vm command.  If it’s possible
Shadow Copy Initialisation Failed - Error 0x80042304: The Volume shadow copy provider is not registered in the system.

Seen from within Disk Management > C:\ > Properties > Shadow Copies

Other Details :Windows 2012 R2, HyperV, Avamar Backups

I check on my Windows 2012 server and see an application called: "Host Agent Configuration". In details properties for product name it says: "Microsoft Azure Site Recovery"

What is that?

For no particular reason at all, we are now receiving the following error when printing from a remote desktop session on Windows Server 2012 R2. We are running Parallels Remote Desktop Application server, with 3 Win Svr 2012 R2's in the pool.  Users CANNOT Print from their windows remote sessions to network printers.

The document Print Document, owned by XXXXXXX, failed to print on printer {C092F33B-0674-436D-995C-B2E3B5E66090}. Try to print the document again, or restart the print spooler.
Data type: RAW. Size of the spool file in bytes: 55421. Number of bytes printed: 0. Total number of pages in the document: 1. Number of pages printed: 0. Client computer: \\PAR1. Win32 error code returned by the print processor: 87. The parameter is incorrect.
only able to get in via directory service repair
cannot boot into normally or safe mode
server was hit by ransomware
restored image via windows backup
only get the blue screen oops something went wrong
tried to boot via windows 2012 disk ton do OS repair isn't an option

what can I do?

We need to Export all Security  Distribution Groups with all users names  into a csv file
i have used  and got some info in the CMD and some in powershell.
Does someone have the exact script for this?
We are frequently receiving Netlogon 5774 error on our windows 2012 r2. Due to this we are loosing Internet connectivity and also speed is drastically come down from 20mbps to 5mbps.
We donot have any AD server. Its a plain static IP server with leased line and configured via Juniper Firewall.
Dynamic registration or deletion of one or more DNS records associated with DNS domain 'ABCSERVER.COM.' failed.  These records are used by other computers to locate this server as a domain controller (if the specified domain is an Active Directory domain) or as an LDAP server (if the specified domain is an application partition).  

Possible causes of failure include:  
- TCP/IP properties of the network connections of this computer contain wrong IP address(es) of the preferred and alternate DNS servers
- Specified preferred and alternate DNS servers are not running
- DNS server(s) primary for the records to be registered is not running
- Preferred or alternate DNS servers are configured with wrong root hints
- Parent DNS zone contains incorrect delegation to the child zone authoritative for the DNS records that failed registration  

Fix possible misconfiguration(s) specified above and initiate registration or deletion of the DNS records by running 'nltest.exe /dsregdns' from the command prompt on the domain controller or by restarting Net Logon service on the domain controller.
While renewing our Issuing/Sub CA certificate, I started encountering CRL issues and the ADCS service not starting.  I ended up resolving those issues and, in attempt to improve our somewhat messy configuration, decided to make changes to the CRL and AIA (publishing to new locations), basically reconfiguring everything.  All of that went well and the PKI utility showed the correct new locations for the SubCA.
However, the RootCA was still showing the old AIA/CDP locations.
While trying to resolve that, including renewing again as well as deleting and re-importing RootCA certificates, I made matter worse.  

First, I now have additional (valid) CA certificates on the RootCA.  I believe I only need to use/export the most recent one (?) which is what I did.
For the expired certificates, I’m seeing a message that they’re not trusted because they’re not in the Trusted Root Certification Authorities store; I’m not certain if this is an expected status.
On the SubCA, where I previously had Ceritificate #0 and #1 showing as expired, only the second is showing as expired.  Going to that first certificate shows the following.
In the event viewer, I'm seeing the following "Could not build a certificate chain for CA certificate 0...":

At this point, I’m thinking of restoring the RootCA and SubCA VMs from …
I have shadow copies enabled on the c:\ of a Windows 2012 server, I currently have it set to the below configuration;

Maximum Size: 35MB
Schedule: Twice a day at 06:00 and 13:00

The server also has Acronis Backup installed and running multiple backup jobs to a local NAS and also to Acronis Cloud.

I've noticed that the shadow copy setting maximum constantly resets to no limit but I can't understand why.

Please can someone offer any advise on why this occurs and how best to stop this being reset.
Hi Experts,

we use EXCHANGE 2013 in a DAG with 3 servers.
Now we have to setup TLS to communicate with our bank.

Can you show me how to setup TLS for exchange ?
Hi I have an issue with one particular exchange account, on a onsite 2013 exchange server.

Just to give you an idea of what we are working with. One of our customers have an on site 2013 exchange server, which in the most part is working fine. There are 3 domains linked to it, lets call them maila.com, mailb.com and mailc.com. Maila.com is the primary for most users, but some users only use either mailb.com or mailc.com. All seem to be working fine both on site and externally.

One particular user (just so happens to be a director) has a mailc.com account. He phoned in yesterday saying he outlook wont connect (he also works at a different office and his laptop is on a different domain but he only has a email account on our server), So we had a look at it. It was coming up asking for a password, which we entered (yes we did put in the domain\user username and password). But it kept spitting it back, so we tried to create a new mail profile on outlook. Which would not work via auto discover, so we tried to put in the settings manually. But the same issue, it kept asking for username and password. So to sanity check I tried the OWA, which worked fine so I knew it was not his password or username that's the issue. This then led me to try and set the account up on my PC, as I was working on his laptop remotely, and thought perhaps the local network he was on was blocking it somehow. But the same issue on my PC too!! So I set up a test account using the mailc.com, and set it…
We have a Windows Server 2012 R2 Standard installed at Headquarters that is functioning as a DC.

We just purchased a Windows Server 2016 Standard server that we'd like to make into a backup DC -- it's installed on a remote office subnet.

This article on PeteNetLive appears to show that this is straightforward:


However, I'm wondering if there are any possible pitfalls with setting this up. Is there any possibility of corrupting the 2012 DC or otherwise harming the domain structure?
Hi guys, in a Exchange 2016 DAG setup (2 servers) - how can you tell which is the current active node? Asking so i can know which one to perform patching on first.
I'm standing up a new server to replace an aging server which is hosting File and Print services.  I've already use EMcopy (EMC version of RoboCopy) to copy over all of the shared data to the new server.  The existing NTFS permissions transferred over to the new server along with the created / modified / last accessed dates.  However the SMB share information needs to be created.  What is the best way to bulk create shares with the existing folder names appended with a "$" to hide them and replacing the everyone permission with modify rights for Authenticated Users?
The transaction resource manager on volume \\?\Volume{a818df19-f109-423d-9591-f81f13ab57c9} encountered an error during recovery.  The resource manager will continue recovery.

Event ID: 134

I have deleted the .blf and .regtrans-ms files from System32\SMI\Store\Machine\    
and did: fsutil resource setautoreset true c:\

Chkdsk, SFC, disk cleanup, defrag all done.  There is plenty of disk space.

They errors happen 10 at a time at the top of the hour (not every hour).
The Volume{####### etc} seems to be different for every batch.

At a loss, any suggestions would be greatly appreciated!
Windows 2012 Server running Exchange 2016 used EMC to delete a database that was  never used and received this error:
Failed to remove monitoring mailbox object of database "abc" Exception: Active Directory operation failed on "server.def.com" This error is not retriable. Additional information: Access is denied. Active directory response: 00000005: SecErr: DSID-0315274A, problem 4003 (INSUFF_ACCESS_RIGHTS), data 0

The existing database has been removed you must remove the database file located at.....  I go to that folder and the .edb is not there just a folder called "E64265F0-596E-450C-ABC3-7AE35D8A292012.6.Single_636771925842918520_corrupted" and inside that folder w folders "indexmeta and Journal.
Not really sure how to proceed from her and if I am going to encounter problems with the health of the Server.
Appreciate any help to resolve.
MS update KB3045324 fails to install after repeated attempts.  Error details inc the code 84B30002, but as usual there's no help associated with the code.
Hello folks,
I have a very weird issues which prevents me on pushing network drives via GPO. It effects primarly Win 7 Pro but some WIn 10 Pro as well.

We had an old WIndwos 2012 Essentials with no GPOs what so ever. We installed a Windows 2016 Std. and migrated FSMO roles. We had some issues with DCDIAG, but was able to solve them with Auth/Non-Auth repair. See link bellow:

We created new DFS with new drives and migrated data from old server to new server via SyncBackSE. All works great. Started enabling the GPOs, and found some serious consistency issues.

Yesterday we had 5 Win 7 Pro which reused to get the drives. We have to do WBAM depository reset and that solved the issue. Today we have some Win10 issues.

What am I missing here with this migration? I never had so many issues with migrating from server to server. Is that becuase of Win2K12 Essentials?

See screen shots for event viewer issues.

Any ideas?
I am after a power shell command that will report for all shares on a server, both the share and directory level permissions, written to *.CSV. Is this possible? I used to use a tool called MBSA which would include these in an easy to view format, but its recently been retired, so a power shell replacement would be most useful. My understanding is both need to be considered with determining access, as it works of a premise of the most restrictive permission takes effect.
We have a Windows 2012 server with Coldfusion 11 installed and 4 websites running on it in Production. We've set up a new Windows 2012 server, and I just installed the latest version of Coldfusion, Coldfusion 2018, on it. I copied over the website code from the other server, and went into IIS and made sure the settings (those I know of) were the same. I also went into the CFADMIN to make sure all the settings were identical to the sites on other server.

Opening up a browser on the new server, I can put the IP address into the browser and can see the site up and running. However, when I'm not on the server I cannot see the site when I put the IP address in a browser. By not see, I mean I get a 500 internal server error. So what have I missed?

For example (not real IP address):
Works fine - On the Prod server:
Works fine - Not on the Prod server:
Works fine - On the New server:
Not working - Not on the New server:

Any help would be appreciated.  I have a Senior Coldfusion Developer skill set. I'm not a server administrator. Although, that is my task with this particular project.
We have a Microsoft PKI hierarchy with one offline standalone Root CA. We alos have an enterprise Subordinate issuing CA.  recently we started getting errors as below when we are requesting new certificates.
Error: An error occurred while enrolling for a certificate. A certificate request could not be created.
Error: The revocation function was u nable to check revocation because the revocation server was offline. 0x80092012 )-2146885613 Crypt_E_REVOCATION_OFFLINE)
The CRL for the root CA are published in the AD and also in a URL on the CA server.
The CRL of the subCA will automaticattly be published in the AD as I understand.
Could the ROOT CA CRL be the ISSUE. I want to be sure as it’s a big process of approvals to start the ROOT CA and get a new CRL.
I want to be sure that its not a local issue in my site before I contact the HQ ROOT CA admin to request the new Root server CRL’s.
Any help appreciated
I have a laptop with Windows 7 joined to a domain (Server 2012).   Often times (but not always) when it's off the corporate network and the user connects to the network via a sonicwall vpn and then attempts a RDP connection with their desktop on site (also Win 7) they get the message "There are currently no logon servers available to service the logon request".

I found a work around, and that is to login to the remote machine as the local domain administrator and then trying to login again as the regular user - it lets them right on.  I dont even have to let the admin login completely - usually get the warning that another users is connected and will lose their work appears and even clicking cancel and then trying the regular user - still lets them on.

For obvious reasons, I'd love to figure out and resolve rather than having to login as the admin prior to the user logging in.
Im trying to pin standard office 2013 items to the taskbar for a 2012 R2 RDS farm. After some extensive googling Ive managed to do it but the behaviour isn't what I was expecting:

I have a loopback policy in one GP applied and another GP to run the logon script for the user.

I have a logon script as below:

/timeout /t 5 /nobreak

cscript "\\DC1\NETLOGON\RDSTaskbar\pinitem.vbs" /item:"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Outlook 2013.lnk" /taskbar

/timeout /t 5 /nobreak

cscript "\\DC1\NETLOGON\RDSTaskbar\pinitem.vbs" /item:"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Word 2013.lnk" /taskbar

/timeout /t 5 /nobreak

cscript "\\DC1\NETLOGON\RDSTaskbar\pinitem.vbs" /item:"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Excel 2013.lnk" /taskbar

/timeout /t 5 /nobreak

cscript "\\DC1\NETLOGON\RDSTaskbar\pinitem.vbs" /item:"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\PowerPoint 2013.lnk" /taskbar

/timeout /t 5 /nobreak

cscript "\\DC1\NETLOGON\RDSTaskbar\pinitem.vbs" /item:"C:\Program Files\Internet Explorer\iexplore.exe" /taskbar

Open in new window

which calls this:

' Windows Script Host Sample Script
' ------------------------------------------------------------------------
'               Copyright (C) 2009 Microsoft Corporation
' You have a royalty-free right to use, modify, reproduce and distribute
' the Sample Application Files 

Open in new window


