Quantcast
Channel: File Services and Storage forum
Viewing all 13580 articles
Browse latest View live

Problem with Windows Server shares

$
0
0
So here's the scenario.  I just took a job managing a decently sized network (2500ish users).  My predecessor had a "patch it quick and move on" or "I'll just wait until it really breaks to do something about it" phiolsophy, which is very different from my own.  Anyway, he had a problem with a file and print server getting people so they could access all the shared stuff on the box.  He turned off some service (uncertain which one, had something to do with Papercut and their support tech turned it back on) and turned on the guest account which just gave everyone access.  The problem was that with this service off, the print quota software wasn't tracking prints.  Once it was turned on, it would track prints again, but non-domain computers could no longer access the server.  It wouldn't even prompt for credentials when accessing the server, it just failed.  When I would UNC path to the server it would show all the shared devices and folders, but would error out when trying to open one.

I turned the guest account off and now it prompts me for credentials, but no credentials I give it will work.  I also can no longer see the shared devices and folders, I get prompted for credentials as soon as I attempt to UNC to the server.  I created users on the local machine and tried server\username and that didn't work.  I've tried several different accounts using domain\username to no avail.  I even tried adding my domain user to the local user CP and set myself as a local administrator and it wouldn't work.  No matter what credentials I give it, it will not accept them.  I've checked the security settings against other servers on the domain and they all match.  I've checked the date and time.  I went through the gpresults to see if it was a problem with the group policies, but it's getting the same policies as all the other servers in it's OU and none of the other servers have this problem.  I've turned the Windows firewall OFF.  I checked the share permissions and folder security on the shares and they're all setup properly.

The server is running Windows Server 2012 and is a member server on a domain.  The server is running inside a VMware farm and many other servers don't have this problem connecting through the same virtual switch.  None of the other servers on this domain are showing these kinds of symptoms.

I'm at a loss as to what I should even try next.

Shadow Copy (VSS) - moving shadow to another drive in system (SAN and Local) not all drives show in drop down list

$
0
0

HI All,

Thanks for reading.  I have several large 2003 file servers, some clustered (2 node) and some stand alone.  My Backup tech needs VSS working, both for "Oops I deleted something just now" and for his nightly bacup software to operate.

All that is good as long as the SAN drive that the data resides on has free space.  We have a server that fills up quickly and is always on the edge of success/fail with it's backup because of it.  That's a whole 'nother issue, but to get around it I wanted to put the shadow storage on a local drive with lots of free space that isn't doing anything.

Good idea right?   Should be but the system will not let me configure the show copies from R: (SAN attached) on E: (local drive) - from the GUI the drop down box only shows the SAN drive available for itself, and local drives available for each other.  From the command line I get "Shadow copying the specified volume is not supported" if I attempt "vssadmin add shadowstorage /for=r: /on=e:"

Any ideas?

 

NLB, DFS and accessing the share from NLB cluster member via name not working - ip works

$
0
0

Hi,

I have an IIS cluster (running behind NLB). Each member of the cluster also has the DFS role to synchronize files.

But the IIS server also needs to access the documents on the share and they read a setting from the database to know the location of the documents. I can't use localhost because the application server also needs to know the location.

So the website on IIS tries to access \\nlbclustername\sharename\folder\file and it gets a superb popup with:

---- the system cannot contact a domain controller to service the authentication request ----

Any idea why this does not work ? Why would using the NLB cluster name from one of the members mess up authentication? And if I change the host file on the server to point the cluster name to the local server it also fails. Is it because the name of the server does not match with the name of the cluster? But if that is the case, why would machines outside of the cluster be able to connect properly ?

Thanks for any input

-------------------------------

Fun fact, if I use the IP of the cluster instead of its name, then it works properly and as expected. But as soon as I use a name, any name that points to the cluster IP, then it fails for the 2 members. Works fine for the rest of the world. FQDN or no FQDN




Data De-Duplication

$
0
0

Hi All,

i have a plan to implement data DE-duplication in our environment , we are using File server as windows 2012 r2, i want to clarify data DE-duplication is supported on HA .

Thanks in advance.

DFS and strange problem with NTFS permissions on files

$
0
0

Hi

I have astrange problemwith NTFS permissionson a file serverwithDFS service.
This iswindows2012which sharesfewdirectoryby theDFS Namespace service (that directorys don't use dfs replication).
On thatserverisa directory whichhas aset of permissionsincludingdomainusers -> read only.In this directoryisafile to which I want toadd aFull Controlpermissionfor a specific user.

This Full control right works fineuntil the first writeof that file by that specified user.After that user save the file, permission forthat userdisappears , and that user becomes theownerof the file (i don't know why, because that user only save the file).


Such a situationdoes not occur inthe case ofrights to directories .

Does anyone havean ideahow to solve thisproblemso that Ican addpermissionsto filesandnot onlyto directories?

Work Folders - recent security updates leave it broken

$
0
0

We have a small Work Folders implementation for a few clients.

Until recently, the function has been working great, no problems.

However, we have confirmed that two recent Windows10 patches leave Work Folders broken and completely unusable for clients who have either of the patches installed.

KB3185614 (security rollup for Win10 build 1511)

KB3189866 (security rollup for Win10 build 1607)

If a Win10 client has either of these updates applied, they cannot use Work Folders.  The client attempts to connect to the Work Folders Server and gets the error:

"there was a problem finding your Work Folders server", error code 0x80072f76.

Work Folders server is fully patched.

Removing the patch will allow the client to connect and use Work Folders successfully, but as we know Windows10 will just reinstall that patch again in a few days.  We are using the Microsoft "driver update" prevention tool for now to block the patch on affected machines.

We are opening a support case with Microsoft soon.

FSRM on 2012R2 creating reports remotely on 2008R2 gives "invalid namespace"

$
0
0

Is there a bug with FSRM on 2012R2 to 2008R2 creating reports?

I tried using the FQDN and IP address of the remote server.

Turned off Windows Firewall and AV on both servers to verify if something was blocked.

Confirmed I can create reports from a 2008R2 to 2008R2 server with no trouble.

Confirmed on a different 2008R2 with a fresh install of FSRM the same "invalid namespace" error if I click on Storage Reports Management. I want to create an Interactive report. None of the report options work remotely.

I want to be able to get past the 1000 file limit that is on the 2008R2 version of FSRM. Our File Server is 2008R2.

Thanks in advance,

Denise

Enable Audit Object Access on file server

$
0
0

I no need event ID 5145 because detail event inform  ReadAttributes , How to disable eventID 5145 ?

I need to know user create , move , delete ,cut in folder and file . How to set auditing ?

 

I check audit following image

Event ID 5145 No need.




Setting rights at the top of a large folder structure without cascading down it.

$
0
0

I think this is the best place to ask this, but let me know if not...

I want to add a permission for a group to a folder. This permission should be to that folder, and not inherit to files or subfolders. So, something like

icacls folder /grant somedomain\somegroup:(F)

This seems simple enough, but the folder in question happens to be the top of a folder structure containing over 20 million files. All of the ways I've looked at that can assign rights seem to end up cascading down the folder structure and updating the DACL on all files and folders (except those where inheritance is turned off). This seems to happen even if the change being made at the top would result in no changes to propagate. i.e. cascading happens in case it's needed, not because it's needed.

I've experimented (on smaller folder structures) with:

  • cacls.exe and xcacls.exe. These don't cascade, but also don't seem able to add non-inheriting permissions.
  • icacls.exe, the windows security tab, the powershell NTFSSecurity module, and the third-party setacl. These all cascade down the folder structure even when there are no changes to propagate.

Anyone know any ways around this that won't take days to complete?

I could use icacls and then ctrl+c out of it after a few seconds, on the grounds that it cascades from the top down and aside from the changes at the top the rest of the activity is pointless, but it seems like there should be a better way.

I want to take the "roaming profiles" off my fileserver

$
0
0
This is my first time posting a question. I have combed through forums for years, I just never have had to post anything. So hopefully I can explain my problem. I am new-ish to the company I work for and so I am inheriting most of the problems that I have. We have about 300 users that are all set to have a roaming profile. When the file server is down, there are no desktop files, no documents, no music... everything is gone. So in my mind this is the very definition of a roaming profile. Because this causes me a lot of wasted space and network traffic to load a roaming profile, I would really like to get rid of all roaming profiles. However, the problem is that I cannot track down where the roaming profiles were set up. I have looked in Active Directory under the user accounts and there is no roaming profile specified there. I have poked around in the group policy editor and it does not seem to be there either. I have also checked to see if it was just a folder redirect that was making this happen. I cant seem to find where the previous guy set these profile up. Any and all places to check would be great advice. I did however check my local hard drive for the C:\Users\user1\AppData\Roaming folder and it is full of files that are set up for roaming. I just cant seem to find the setting to turn this off. Thanks in advance for the help.

DFS - Publish Namespace Issue

$
0
0

Background - Set up a Domain DFS Namespace on a Server as a DFS Root prior to setting up a DFS Replication Partnership. Set up 2nd Server and then created the Replication Partnership. Replication is working fine.

Now - In the Replicated Folder tab in Replication Management the Publication Status is "Not Published." When attempting to Publish the Replicated partners to a namespace from the Replicated Folders tab, I get the following message: the folder cannot be created in the namespace. the folder already exists in the namespace.

Questions - Do I have to delete the shared folder in the DFS namespace and then choose to publish the folder from the Replicated Folders tab in Replication Management to recreate the share? Will this cause data to be lost? Will Permissions be lost? Or as another option, can I safely delete the Replication Partnership for the folder without losing data in the replicated folders, right click on the folder in question under Namespaces and select "Replicate Folder" and recreate the Replication Partnership while retaining the published namespace?

Thank you,

David


File Share

$
0
0

Hi,

I have sevral file network shares on my 2012 R2 Standard Domain controller server. Is there someway I come make them available by a web browser? Is there an app for Android, iOS and Windows 10 Mobile that will allow these shares to be accessed too?

Thanks

Nicholas

How to check the RAID configuration on Buffalo NAS that running WIndows Storage Server 2012?

$
0
0

Dear Expert,

some of the HDD spoilt in our Buffalo NAS server that is running Windows Storage Server 2012. However, I can't find any software that allow us to login and check which of the drive involving in RAID that causing this issue.

is there any software that I could login to check the RAID configuration?

Please advise

Thanks

DFS Multisite HUB&SPOKE replication configuration

$
0
0

Hi There,

We have 4 File servers in different sites. We want to configure DR for all 4 primary file servers. We are going to configure DFS (Hub and Spoke) model.

OS for all VMs: Windows server 2008R2 standard edition

My doubt here is, each source server has its own unique FQDN name. Can we replicate 4 different FQDN to 1 DFS server? or do i need to provision 4 servers and configure one to one DFS replication?

Please note all 4 sites under single AD forest.

Can any one please let me know the sequence of steps involved to achieve the same? Also, share me the high-level pre-requisites?

Thanks and Regards,

Dhakshinamoorthy Balasubramanian


Dhakshinamoorthy Balasubramanian

how to find long character folders

$
0
0

Hi All,

I have one query to find Folders in shared drive which are more than 100 character. My shared drive having TB of used space. Please help me find out folders which are more than 100 Characters. 

Regards,

Nirmal Singh


Nirmal Singh IT Administrator


Windows 10 Direct Access and Home Folders

$
0
0

I am mostly an Exchange\O365 person but have been challenged to implement DirectAccess to a client with a small group of users. We have been testing connectivity and all has been working great - business applications connect to internal servers successfully, mapped folders through GPOs are reconnecting and so on.

The one issue I discovered is with the home folders. In active directory, each user has a home folder setting as below:

The path is configured to \\domainname.local\home\%username% because we are using DFS for the home folders.

When the users go home, they complain they cannot access their home folders but can access everything else. What I noticed is that if the user closes their laptop and puts the machine to sleep before they leave the office and then go home and login, they do not have access (it does not show up) to the home folder.

Also if the user restarts their computer at home and they log in without first establishing a wireless connection, they do not have access to the folder but once they connect, log off and back on, they DO see the folder. What I take from this is that home folders are only mapped during Logon. And I verified this as follows:

User restarts their machine at home and connects to the wireless before they log in. If they wait 20-30 seconds for DirectAccess to kick in, they see the home folder and can access it. But if they do not wait for DirectAccess to kick in, they do not see the home folder.

So my question is - has anyone experienced this? Is this normal? Do home folders only get mapped at logon?


Thank you, Ibrahim Benna MCSA+Messaging, MCSE+Messaging,MCITP, MCT, MVP "Did you backup your Information Store Today?!" ***Don't forget to mark helpful or answer***

iScsi Error ID 1, 7, 20, 34 always restart every 30 mins

$
0
0

Hi All,

I have windows server 2012 that frequently receive error ID 1, 7, 20, 34 related to iScsiPrt every 30 minute. After this sequenced error occur, this server is rebooting. I have read articles about this error before in this discussion ( https://social.technet.microsoft.com/Forums/en-US/67f5458a-5d1e-499d-b12a-5755abbb90a2/iscsi-errors-event-id-9-39-7-20-1?forum=winserverfiles ) saying that this is related to network issue or storage issue, but the network and storage team claim there is no problem on their devices. I also checked that port for iScsi was open (135, 138, 3260) by telnet to the storage. What else I need to check to resolve this issue?

fyi, I use this server as a backup server for Dell Netvault Backup using TL2000/TL4000 iScsi-SAS Bridge

error id 7

error id 20


additional inherited permissions of user already in a group

$
0
0

Sorry for my bad english i will try to describe the question with a few words.

A folder has a permissions group named "AE", this folder cannot be deleted by the users who are in this group, the users has the ability to create or delete everything to subfolders or files. If a user create a new folder or a new file or copy from another location an extra independent permission added to the new file or folder with Full Control rights.

With my account (my account has domain admins rights) added to "AE" group the server does not add anything.

My question full is:
is that a normal behavior of Windows Server security?
why the server does not add extra permissions with my account?
if this user or another user be removed from this group what happens to the files or folders that has his full control permissions?

thank you

Windows Server 2016 Storage Spaces Tier ReFS

$
0
0

Tier optimization task of ReFS volume is not working in Windows Server 2016.

> Get-Volume g |Optimize-Volume -TierOptimize
Optimize-Volume : The volume optimization operation requested is not supported by the hardware backing the volume.
Activity ID: {3dbe8d23-3259-49ff-a3ec-e7f16eff301b}
    + CategoryInfo          : NotSpecified: (StorageWMI:ROOT/Microsoft/...age/MSFT_Volume) [Optimize-Volume], CimExcep
   tion
    + FullyQualifiedErrorId : StorageWMI 43022,Optimize-Volume

Application log:

defrag: 257

The volume Vol_Tier2 (G:) was not optimized because an error was encountered: The operation requested is not supported by the hardware backing the volume. (0x8900002A)

If I format this volume to NTFS everything works fine. Had no such problem in Server 2012 R2.

Guess defrag.exe is not working with new ReFS v3.1

Folder Redirection On DFS Namespace.

$
0
0

I am using folder redirection to DFS Namespace through Group Policy. The folder target for DFS Namespace are NAS filers(VNX and NETAPP). The user’s Desktop, Documents and Favorites folders are redirected to DFS namespace via GPO which is configured on the basis of Group membership (Advanced Mode and Not Basic).Please refer to the following Technet Article:-

https://technet.microsoft.com/en-us/library/jj649078(v=ws.11).aspx.

I am in the process of moving users data from the exisitng NAS filer to a new one.Basically  I want to change the location of the redirected folders to a different DFS Namespace which contains a different NAS filer(NETAPP).

Please refer to the following technet article:-

https://technet.microsoft.com/en-us/library/jj649080(v=ws.11).aspx.


A pictorial representation is demonstrated with the picture  and the content below:-

User A’s Folder Redirected to DFS NameSpace:-abc.corp.com\xyz$\DEF\0

User B’s Folder Redirected to DFS NameSpace:-abc.corp.com\pqr$\DEF\0

Since the folder Target are NFS filers, they cannot participate in DFS replication.

I want to change users A folder location from abc.corp.com\xyz$\DEF\0” to “abc.corp.com\pqr$\DEF\0”.

What is the most optimum and best way to achieve this without creating problems for users?

Can I add folder “ frepdef-fs01.abc.corp.coml\home-fren-0$” to DFS Namespace abc.corp.com\xyz$\DEF\0 as a target after copying user data through Robocopy. This will avoid any change that needs to be carried out to Group Policy Objects and Group Membership. I have just used 2 users for demonstration purpose. I have around 12000 users to move from different namespaces to NETAPP.I was wondering whether this approach would work. After data has been copied I would go ahead and disable the folder target “frrmdef-fs01.abc.corp.coml\home-fren-0$ in the namespace “abc.corp.com\xyz$\DEF\0.


Please feel free to write to me in case you need more information.Any Help is much appreciated.

Regards,

Irfan M. Shaikh


Viewing all 13580 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>