#Hong Kong 91-9636854282 Love ProBLem SoluTIoN Baba ji Hyderabad
.Net Framework 4.5.2 on UAG 2010
Hi,
Can anyone help me in suggesting if we can upgrade to .NetFramework4.5.2 from .NetFramework4.5.1 on UAG 2010 servers. If yes, Could anyone provide the steps if possible with 4 servers in an array.
Please suggest me.
Ankit Singh
NAT for VPN clients/Internet acess stops working after enabling Direct Access (Server 2019)
Hello. Server 2019 problem here:
After enabling Direct Access, NAT for VPN users does not work anymore. Ping for Internet resource from server LAN IP also stops working (ping 8.8.8.8 -S "Servers_LAN_NIC_IP").
Can anybody comment on this "BUG" or "FEATURE"?
================
This is not a topic about IPSEC, NAT-T.
I want to have Direct access and Internet access for VPN clients without split tunneling. Server are with 2 NICS, Public IP on WAN.
Without NAT feature I has no problem dealing with Direct access or/and VPN.
After enabling Direct Access all NAT config are INTACT, as far as I can see it. It just stopped working.
DA 2016 - NLS DNS resolution retries (reduce from 4 to 2)
Hi folks
I have a problem where DA 2016 takes about 20-30 seconds longer to connect than the *still in production* UAG 2008 Direct Access.
UAG DA takes 30 seconds from joining a new wireless network for example, DA 2016 about 50-60 seconds. In a nutshell, it sees like UAG 2008 clients try to resolve the NLS address twice, and DA 2016 tries to resolve it 4 times.
What I would like to know, is can I reduce the DA 2016 retry attempt?
I've worked with MS a little on this, and through various traces, I can see that BOTH UAG and DA 2016 are trying to resolve the NLS address. Through a strange ISP problem (I think ISP DNS resolution is the issue), both UAG and DA 2016 ARE reporting *successful* NLS DNS resolution within the traces, and this is adding about 15 and 30 seconds worth of delays to the connection time because of TCP retransmits that then take place.
The NLS address is NOT resolvable externally, but I believe various UK ISP's are redirecting DNS requests to a *friendly* error response when a resoltion isnt possible, and this is being interpretted as "successful" DNS resolution, pausing the DA connection process, and the clients then attempt to access internal resources believing they are within the network, but these resource connections attempts obviously fail.
Anyway, that's something I will need to adress somehow, but for now, can someone advise me if it's possible to reduce the DA 2016 NLS DNS resolution retries from say 4 to 3 or even 2.
Cheers
Coop.
DirectAccess 2012 R2 - add second node to single node cluster
Hi,
I have a DA server on 2012 R2 that's currently serving our entire estate. I'd now like to add a second DA 2012 R2 server for HA. The single server is setup as a single node array. What steps do I need to take to do this? will the external IP address be swapped and are any specific "gotchas" I need to be aware of?
We're using a Citrix NetScaler for external load balancing. Is there a likely hood of downtime whilst doing the work?
Thanks in advance
Direct Access working but no Client status in Dashboard
Hey all I have a Server 2016 single leg DA stood up with all windows 10 1809 clients connecting through it. The clients connect up just fine and can access all internal resources from the outside. I DO NOT have windows firewall on, on the machines based on them being in the domain makes life easier. The Directaccess Dashboard doesn't show any clients though. I can trace them down to network resources in Task manager and see them connecting but the dashboard no workie!
Any Thoughts?
Johnathan Hughes Fire & Life Safety America Inc. Systems Admin
DA showing no connection, running NETSH yields a blank line
I have a newish laptop that as of yesterday was working with DA to access our domain.
Today the user has not access
if you run netsh int http show int nothing is returned, like totally blank
If I run reg query HKLM\SYSTEM\CurrentControlSet\Services\tcpip6\Parameters /v DisabledComponents I get a message that there is nothing in the key. Despite having imported from a working machine this entire key.
I'd like to know how I can get the correct component back as there is no error in device manager.
I hate DA for just such reasons as this.
thanks
@91-9636854282 inter~cast~Love~ MarriAge~ Problems Solution baba jiin Gandhinagar
repair goldi ارقام تليفونات توكيل جولدى ( 01223179993 + 01129347771 )
goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy
الارقام الساخنه للاتصال ب خدمة عملاء اجهزة جولدى المنزلية || ثلاجه,غساله,غسالات,ثلاجات ,غساله اطباق,غسالات اطباق,ديب فريزر ,فريزر ,مجفف, دراير , لاندرى ,ايس ميكر ,ثلاجات نبيذ,ثلاجة نوفرست,ثلاجة,غسالة,غسالة اطباق,غسالة ملابس
|| 01129347771 || 01207619993 || || || || || 01129347771 || 01207619993 || || || 01129347771 || 01207619993 ||
صيانة جولدى المعادى |||| صيانة جولدى محافظة الاسكندرية |||| مركز خدمة جولدى التجمع الخامس |||| افضل اصلاح جولدى عين شمس |||| خدمة اصلاح جولدى مصر الجديدة |||| تصليح جولدى مدينة نصر |||| توكيل جولدى الزمالك |||| اصلاح جولدى شبرا |||| اسرع صيانة جولدى حدائق المعادى |||| صيانة جولدى محافظة الاسكندرية |||| اماكن تصليح جولدى حدائق الهرم |||| شركة صيانة جولدى الزيتون |||| شركة توكيل جولدى روكسى |||| احدث صيانة جولدى العباسية |||| توكيل جولدى العمرانية |||| اول مركز توكيل جولدى الجيزة |||| اماكن تصليح جولدى المريوطية |||| متميزون صيانة جولدى غمره |||| ارشادات توكيل جولدى كورنيش النيل |||| موقع صيانة جولدى |||| دليل توكيل جولدى المقطم |||| خدمة اصلاح جولدى الهرم |||| المركز الرئيسى جولدى الازهر |||| مراكز متخصصة جولدى جسر السويس |||| احسن استجابة جولدى غمره |||| مبتكرون صيانة جولدى القطامية |||| متطورين صيانة جولدى الضاهر |||| فروع توكيل جولدى 6 اكتوبر |||| محترفون صيانة جولدى شبرا الساحل |||| اخيرا توكيل جولدى امبابه |||| احسن تقنية جولدى القاهرة الجديدة |||| صيانة جولدى الدقى |||| الوكيل جولدى فيصل |||| اضمن اصلاح جولدى الشيخ زايد
جولدى المعادى, جولدى المنيل , جولدى وادى حوف , جولدى حلوان , جولدى 15 مايو , جولدى القطامية , جولدى المقطم , جولدى التجمع , جولدى التجمع الاول , جولدى التجمع الخامس , جولدى القاهرة الجديدة , جولدى مدينة نصر , جولدى الرحاب , جولدى عمارات العبور , جولدى شيراتون مصر الجديدة , جولدى جولدى مدينتى , جولدى الشروق , جولدى العبور, جولدىالنزهه , جولدى النزهه الجديده , جولدى مصر الجديدة , جولدى الكوربه , جولدى العباسية , جولدى الزيتون , جولدى جسر السويس , جولدى عين شمس , جولدى المطرية , جولدى القبه , جولدى حدائق القبه , جولدى الدمرداش , جولدى الضاهر, جولدى رمسيس, جولدى وسط البلد , جولدى شبرا مصر , جولدى جاردن سيتى , جولدى بولاق ابو العلا , جولدى الزمالك , جولدى الكيت كات , جولدى العجوزه , جولدى الدقى , جولدى التحرير , جولدى السيدة زينب , جولدى القصر العينى , جولدى الدمرداش , جولدى المهندسين , جولدى بين السرايات, جولدى الجيزة , جولدى ميدان الجيزة , جولدى 6 اكتور , جولدى السادس من اكتوبر , جولدى الشيخ زايد , جولدى بفلى هيلز ,جولدى نبو جيزة ,جولدى الهرم ,جولدى فيصل , جولدى المريوطية ,جولدى حدائق الهرم ,جولدى العمرانية,جولدى الطالبية , جولدى المرج ,جولدى القرية الذكية , جولدى هضبة الهرم , جولدى الاهرام ,جولدى ابو الهول,جولدى المنيب
repair goldy ثلاجات جولدى ) ) repairing goldy
service goldy ( غسالات جولدى ) center goldy
repair Westinghouse مركز صيانة اجهزة وستنجهاوس ( 01129347771 + 01223179993 )
وستنجهاوس
|| 01129347771 || 01207619993 || 01223179993 || || || || 01129347771 || 01207619993 || 01223179993 || || 01129347771 || 01207619993 || 01223179993
صيانة وستنجهاوس المعادى |||| صيانة وستنجهاوس محافظة الاسكندرية |||| مركز خدمة وستنجهاوس التجمع الخامس |||| افضل اصلاح وستنجهاوس عين شمس |||| خدمة اصلاح وستنجهاوس مصر الجديدة |||| تصليح وستنجهاوس مدينة نصر |||| توكيل وستنجهاوس الزمالك |||| اصلاح وستنجهاوس شبرا |||| اسرع صيانة وستنجهاوس حدائق المعادى |||| صيانة كلفينيتور محافظة الاسكندرية |||| اماكن تصليح وستنجهاوس حدائق الهرم |||| شركة صيانة وستنجهاوس الزيتون |||| شركة توكيل وستنجهاوس روكسى |||| احدث صيانة وستنجهاوس العباسية |||| توكيل وستنجهاوس العمرانية |||| اول مركز توكيل وستنجهاوس الجيزة |||| اماكن تصليح وستنجهاوس المريوطية |||| متميزون صيانة وستنجهاوس غمره |||| ارشادات توكيل وستنجهاوس كورنيش النيل |||| موقع صيانة وستنجهاوس |||| دليل توكيل وستنجهاوس المقطم |||| خدمة اصلاح وستنجهاوس الهرم |||| المركز الرئيسى وستنجهاوس الازهر |||| مراكز متخصصة وستنجهاوس جسر السويس |||| احسن استجابة وستنجهاوس غمره |||| مبتكرون صيانة وستنجهاوس القطامية |||| متطورين صيانة وستنجهاوس الضاهر |||| فروع توكيل وستنجهاوس 6 اكتوبر |||| محترفون صيانة وستنجهاوس شبرا الساحل |||| اخيرا توكيل وستنجهاوس امبابه |||| احسن تقنية وستنجهاوس القاهرة الجديدة |||| صيانة وستنجهاوس الدقى |||| الوكيل وستنجهاوس فيصل |||| اضمن اصلاح وستنجهاوس الشيخ زايد
وستنجهاوس المعادى, وستنجهاوس المنيل , وستنجهاوس وادى حوف , وستنجهاوس حلوان , وستنجهاوس 15 مايو , وستنجهاوس القطامية , وستنجهاوس المقطم , وستنجهاوس التجمع , وستنجهاوس التجمع الاول , وستنجهاوس التجمع الخامس , وستنجهاوس القاهرة الجديدة , وستنجهاوس مدينة نصر , وستنجهاوس الرحاب , وستنجهاوس عمارات العبور , وستنجهاوس شيراتون مصر الجديدة , وستنجهاوس وستنجهاوس مدينتى , وستنجهاوس الشروق , وستنجهاوس العبور, وستنجهاوسالنزهه , وستنجهاوس النزهه الجديده , وستنجهاوس مصر الجديدة , وستنجهاوس الكوربه , وستنجهاوس العباسية , وستنجهاوس الزيتون , وستنجهاوس جسر السويس , وستنجهاوس عين شمس , وستنجهاوس المطرية , وستنجهاوس القبه , وستنجهاوس حدائق القبه , وستنجهاوس الدمرداش , وستنجهاوس الضاهر, وستنجهاوس رمسيس, وستنجهاوس وسط البلد , وستنجهاوس شبرا مصر , وستنجهاوس جاردن سيتى , وستنجهاوس بولاق ابو العلا , وستنجهاوس الزمالك , وستنجهاوس الكيت كات , وستنجهاوس العجوزه , وستنجهاوس الدقى , وستنجهاوس التحرير , وستنجهاوس السيدة زينب , وستنجهاوس القصر العينى , وستنجهاوس الدمرداش , وستنجهاوس المهندسين , وستنجهاوس بين السرايات, وستنجهاوس الجيزة , وستنجهاوس ميدان الجيزة , وستنجهاوس 6 اكتور , وستنجهاوس السادس من اكتوبر , وستنجهاوس الشيخ زايد , وستنجهاوس بفلى هيلز ,وستنجهاوس نبو جيزة ,وستنجهاوس الهرم ,وستنجهاوس فيصل , وستنجهاوس المريوطية ,وستنجهاوس حدائق الهرم ,وستنجهاوس العمرانية,وستنجهاوس الطالبية , وستنجهاوس المرج ,وستنجهاوس القرية الذكية ,الكترو ستار هضبة الهرم , وستنجهاوس الاهرام ,وستنجهاوس ابو الهول,وستنجهاوس المنيب
repair westinghouse ثلاجات وستنجهاوس ) ) repairing westinghouse
service westinghouse ( غسالات وستنجهاوس ) center westinghouse
malfunction westinghouse ( ارقام صيانة وستنجهاوس ) maintenance westinghouse
agent westinghouse (غساله وستنجهاوس ) agents westinghouse
authorization westinghouse ( غساله اطباق وستنجهاوس ) workshops westinghouse
customer service westinghouse ( غسالات ملابس ) engineers westinghouse
specialists westinghouse ( ديب فريزر ) Technical support westinghouse
support reform westinghouse ( لاندرى ) support repair westinghouse
agent westinghouse ( ايس ميكر )
westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse westinghouse
الادارة فى انتظار اتصالاتكم : _ 01129347771 || 01207619993 || 01223179993
Direct Access Multisite Issues
Okay here is one for you.
We have two direct access appliances - Both have been configured seperately to ensure that they are functioning correctly (Network etc).
I have then removed the configuration for Direct Access and reconfigured, we are operating in multisite.
Clients will connect to the first Site fine DA1 and when I select the second site DA2 the clients will not connect completely.
I can see the client in the remote access connections but but there is no user tunnel or infrastructure tunnel created.
The client has an active IP-HTTPS interface, but no connection to any resources.
The configuration was completed via the Remote Access GUI on the server.
Since then I have reconfirmed that both appliances work by removing the configuration and setting them up one in turn and testing as singular devices.
Da1 - setup and tested on own - worked
Da1 - Configuration removed and gpo updated on all respective machines
Da2 - setup and tested on own worked
da2 - Configuration removed and gpo updated on all respective machines
Then the current configuration is
Da1 Setup first and multisite enabled with da1 as only entry point - working fine
Da2 - configured as second entry point using wizzard - configuration fine - all showing green for both servers, but clients cannot connect to da2 just show in remote connections with no authentication and an active IP-HTTPS adapter.
Any pointers would be appreciated.
Direct Access Clients accessing IPv4 resources NOT in DNS
Our current VPN solution is Direct Access for any and all windows 7 and windows 10 PCs. Being a network engineer I am not sold on it and find it hard to protect when the network is not IPv6 ready.
For me Direct Access doesn't work for what I need to do my job. When connected via direct access I still need traditional VPN to be able to access my IPv4 addresses for network devices that we do not keep in DNS, for valid reasons of security. How is there not a way to make Direct Access clients capable of connecting to IPv4 addresses with a simple task of something like SSH to 10.0.0.1? I find it hard to believe that Microsoft felt that networks were all IPv6 and all resources were in DNS when they created this solution.
My systems guy tells me Direct Access clients to access raw IPv4 address is not possible. Is this true?
Windows 10 1607 LTSB wont connect via Direct access
We have a Windows Server 2012 DA server setup which is working fine. We have a few clients which for whatever reason stop connecting via DA and the only fix seems to be to re-install the OS. I've tried removing/joining to the domain, resetting the winsock ... but nothing seems to work.
If i go into control panel there is also no Direct Access icon at all.
The below is from a problematic machine. Any tips on what i can try
Windows PowerShellCopyright (C) 2016 Microsoft Corporation. All rights reserved.
PS C:\Windows\system32> Get-DAClientExperienceConfiguration
Description : DA Client Settings
CorporateResources :
IPsecTunnelEndpoints :
CustomCommands :
PreferLocalNamesAllowed : False
UserInterface : False
PassiveMode : False
SupportEmail :
FriendlyName :
ManualEntryPointSelectionAllowed : True
GslbFqdn :
ForceTunneling : Enabled
PS C:\Windows\system32> Get-DAConnectionStatus
Status : ConnectedLocally
Substatus : None
PS C:\Windows\system32> Get-DAConnectionStatus
Status : Error
Substatus : MissingDAClientExperienceConfiguration
PS C:\Windows\system32> Get-DAConnectionStatus
Status : Error
Substatus : MissingDAClientExperienceConfiguration
PS C:\Windows\system32> netsh dnsclient show state
Name Resolution Policy Table Options
--------------------------------------------------------------------
Query Failure Behavior : Always fall back to LLMNR and NetBIOS
if the name does not exist in DNS or
if the DNS servers are unreachable
when on a private network
Query Resolution Behavior : Resolve only IPv6 addresses for names
Network Location Behavior : Let Network ID determine when Direct
Access settings are to be used
Machine Location : Outside corporate network
Direct Access Settings : Configured and Enabled
DNSSEC Settings : Not Configured
PS C:\Windows\system32> netsh int https show int
There are currently no active IP-HTTPS profiles. To view the configured
IP-HTTPS profiles, execute the following Powershell command -
'Get-NetIPHTTPSConfiguration'.
Interface IPHTTPSInterface (Group Policy) Parameters
------------------------------------------------------------
Role : client
URL : https://RAServer.com:443/IPHTTPS
Last Error Code : 0x10df
Interface Status : IPHTTPS interface creation failure
PS C:\Windows\system32> netsh dns show state
Name Resolution Policy Table Options
--------------------------------------------------------------------
Query Failure Behavior : Always fall back to LLMNR and NetBIOS
if the name does not exist in DNS or
if the DNS servers are unreachable
when on a private network
Query Resolution Behavior : Resolve only IPv6 addresses for names
Network Location Behavior : Let Network ID determine when Direct
Access settings are to be used
Machine Location : Outside corporate network
Direct Access Settings : Configured and Enabled
DNSSEC Settings : Not Configured
PS C:\Windows\system32> netsh name show effective
DNS Effective Name Resolution Policy Table Settings
Settings for DAserver.com
----------------------------------------------------------------------
DirectAccess (Certification Authority) :
DirectAccess (IPsec) : disabled
DirectAccess (DNS Servers) :
DirectAccess (Proxy Settings) : Use default browser settings
رقم وكيل ثلاجات جولدى الشروق 01223179993 _ 01207619993 صيانة جولدى
goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy goldy
الارقام الساخنه للاتصال ب خدمة عملاء اجهزة جولدى المنزلية || ثلاجه,غساله,غسالات,ثلاجات ,غساله اطباق,غسالات اطباق,ديب فريزر ,فريزر ,مجفف, دراير , لاندرى ,ايس ميكر ,ثلاجات نبيذ,ثلاجة نوفرست,ثلاجة,غسالة,غسالة اطباق,غسالة ملابس
|| 01129347771 || 01207619993 || || || || || 01129347771 || 01207619993 || || || 01129347771 || 01207619993 ||
صيانة جولدى المعادى |||| صيانة جولدى محافظة الاسكندرية |||| مركز خدمة جولدى التجمع الخامس |||| افضل اصلاح جولدى عين شمس |||| خدمة اصلاح جولدى مصر الجديدة |||| تصليح جولدى مدينة نصر |||| توكيل جولدى الزمالك |||| اصلاح جولدى شبرا |||| اسرع صيانة جولدى حدائق المعادى |||| صيانة جولدى محافظة الاسكندرية |||| اماكن تصليح جولدى حدائق الهرم |||| شركة صيانة جولدى الزيتون |||| شركة توكيل جولدى روكسى |||| احدث صيانة جولدى العباسية |||| توكيل جولدى العمرانية |||| اول مركز توكيل جولدى الجيزة |||| اماكن تصليح جولدى المريوطية |||| متميزون صيانة جولدى غمره |||| ارشادات توكيل جولدى كورنيش النيل |||| موقع صيانة جولدى |||| دليل توكيل جولدى المقطم |||| خدمة اصلاح جولدى الهرم |||| المركز الرئيسى جولدى الازهر |||| مراكز متخصصة جولدى جسر السويس |||| احسن استجابة جولدى غمره |||| مبتكرون صيانة جولدى القطامية |||| متطورين صيانة جولدى الضاهر |||| فروع توكيل جولدى 6 اكتوبر |||| محترفون صيانة جولدى شبرا الساحل |||| اخيرا توكيل جولدى امبابه |||| احسن تقنية جولدى القاهرة الجديدة |||| صيانة جولدى الدقى |||| الوكيل جولدى فيصل |||| اضمن اصلاح جولدى الشيخ زايد
جولدى المعادى, جولدى المنيل , جولدى وادى حوف , جولدى حلوان , جولدى 15 مايو , جولدى القطامية , جولدى المقطم , جولدى التجمع , جولدى التجمع الاول , جولدى التجمع الخامس , جولدى القاهرة الجديدة , جولدى مدينة نصر , جولدى الرحاب , جولدى عمارات العبور , جولدى شيراتون مصر الجديدة , جولدى جولدى مدينتى , جولدى الشروق , جولدى العبور, جولدىالنزهه , جولدى النزهه الجديده , جولدى مصر الجديدة , جولدى الكوربه , جولدى العباسية , جولدى الزيتون , جولدى جسر السويس , جولدى عين شمس , جولدى المطرية , جولدى القبه , جولدى حدائق القبه , جولدى الدمرداش , جولدى الضاهر, جولدى رمسيس, جولدى وسط البلد , جولدى شبرا مصر , جولدى جاردن سيتى , جولدى بولاق ابو العلا , جولدى الزمالك , جولدى الكيت كات , جولدى العجوزه , جولدى الدقى , جولدى التحرير , جولدى السيدة زينب , جولدى القصر العينى , جولدى الدمرداش , جولدى المهندسين , جولدى بين السرايات, جولدى الجيزة , جولدى ميدان الجيزة , جولدى 6 اكتور , جولدى السادس من اكتوبر , جولدى الشيخ زايد , جولدى بفلى هيلز ,جولدى نبو جيزة ,جولدى الهرم ,جولدى فيصل , جولدى المريوطية ,جولدى حدائق الهرم ,جولدى العمرانية,جولدى الطالبية , جولدى المرج ,جولدى القرية الذكية , جولدى هضبة الهرم , جولدى الاهرام ,جولدى ابو الهول,جولدى المنيب
repair goldy ثلاجات جولدى ) ) repairing goldy
service goldy ( غسالات جولدى ) center goldy
Direct Access Multisite Issues
Okay here is one for you.
We have two direct access appliances - Both have been configured seperately to ensure that they are functioning correctly (Network etc).
I have then removed the configuration for Direct Access and reconfigured, we are operating in multisite.
Clients will connect to the first Site fine DA1 and when I select the second site DA2 the clients will not connect completely.
I can see the client in the remote access connections but but there is no user tunnel or infrastructure tunnel created.
The client has an active IP-HTTPS interface, but no connection to any resources.
The configuration was completed via the Remote Access GUI on the server.
Since then I have reconfirmed that both appliances work by removing the configuration and setting them up one in turn and testing as singular devices.
Da1 - setup and tested on own - worked
Da1 - Configuration removed and gpo updated on all respective machines
Da2 - setup and tested on own worked
da2 - Configuration removed and gpo updated on all respective machines
Then the current configuration is
Da1 Setup first and multisite enabled with da1 as only entry point - working fine
Da2 - configured as second entry point using wizzard - configuration fine - all showing green for both servers, but clients cannot connect to da2 just show in remote connections with no authentication and an active IP-HTTPS adapter.
Any pointers would be appreciated.
Win10 1803 Upwards, DA SMB File Upload failure (Kemp LBs)
Hi All,
Got a stupid issue with DA, support has not been great, so I'm throwing it out here to see if anyone has a clue.
Below are the results of a few days testing. Basically since 1803 I cant get a decent connection, I personally think it is related to the IP HTTPS adapter update in 1803. (It was changed from "IPHTTPS Adapter" to "Microsoft IP-HTTPS Platform")
Windows 10 Connecting to Server 2016
Via Kemp | RW Auto Tuning Level - Server | RW Auto Tuning Level - Client | GUI Speed Reported - UP | Upload (Time Elapsed) | Actual Average - UP | Ping Range (Up) | Dropped Pings - UP | GUI Speed Reported - Down | Download (Time Elapsed) | Actual Average - Down | Ping Range (Down) | Dropped Pings - Down |
No | experimental | experimental | 1Mb/s to 5Mb/s | 144 Seconds (2m24s) | 14262.667 KB/s | 157ms - 3120ms | Many, Random | 355KB/s Constant | 977 Seconds (16m17s) | 2102.174 KB/s | 149ms - 171ms | Medium, Regular Interval |
No | experimental | normal | 1Mb/s to 5Mb/s | 129 Seconds (2m09s) | 16479.256 KB/s | 163ms - 3981ms | Many, Random | 355KB/s Constant | 1054 Seconds (17m34s) | 2016.911 KB/s | 156ms - 359ms | Medium, Regular Interval |
No | experimental | highlyrestricted | 1Mb/s to 6Mb/s | 97 Seconds (1m37s) | 21915.711 KB/s | 163ms - 3856ms | Medium, Random | 355KB/s Constant | 1037 Seconds (17m17s) | 2049.975 KB/s | 156ms - 174ms | Medium, Regular Interval |
No | normal | experimental | 1Mb/s to 6Mb/s | 95 Seconds (1m35s) | 22377.095 KB/s | 156ms - 3427ms | Medium, Random | 355KB/s Constant | 1031 Seconds (17m11s) | 2061.905 KB/s | 156ms - 246ms | Medium, Regular Interval |
No | normal | normal | 0Mb/s to 5Mb/s | 115 Seconds (1m55s) | 18485.426 KB/s | 155ms - 2300ms | Medium, Random | 355KB/s Constant | 1007 Seconds (16m47s) | 2111.047 KB/s | 150ms - 834ms | Medium, Regular Interval |
No | normal | highlyrestricted | 0Mb/s to 6Mb/s | 105 Seconds (1m45s) | 20245.943 KB/s | 200ms - 3241ms | Medium, Random | 355KB/s Constant | 1000 Seconds (16m40s) | 2125.824 KB/s | 149ms - 355ms | Medium, Regular Interval |
No | highlyrestricted | experimental | 1.3Mb/s | 200 Seconds (3m20s) | 10629.120 KB/s | 1074ms - 3224ms | None | 355KB/s Constant | 1033 Seconds (17m13s) | 2057.913 KB/s | 156ms - 198ms | Medium, Regular Interval |
No | highlyrestricted | normal | 1.4 Mb/s | 199 Seconds (3m19s) | 10682.533 KB/s | 1002ms - 3711ms | None | 355KB/s Constant | 922 Sceonds (16m32s) | 2305.666 KB/s | 150ms - 230ms | Medium, Regular Interval |
No | highlyrestricted | highlyrestricted | 1.3Mb/s | 200 Seconds (3m20s) | 10629.120 KB/s | 1261ms - 1335ms | None | 355KB/s Constant | 1092 Seconds (18m12s) | 1946.725 KB/s | 162ms - 286ms | Medium, Regular Interval |
Yes | experimental | experimental | Failed | N/A | N/A | N/A | All | 355KB/s to 2.3MB/s | 232 Seconds (3m52s) | 9163.034 KB/s | 146ms - 158ms | None |
Yes | experimental | normal | Failed | N/A | N/A | N/A | All | 355KB/s to 2.5MB/s | 193 Seconds (3m13s) | 11014.632 KB/s | 145ms - 158ms | None |
Yes | experimental | highlyrestricted | Failed | N/A | N/A | N/A | All | 355KB/s to 1.5MB/s | 209 Seconds (3m29s) | 10171.407 KB/s | 144ms - 245ms | None |
Yes | normal | experimental | Failed | N/A | N/A | N/A | All | 355KB/s to 3.4MB/s | 175 Seconds (2m55s) | 12147.566 KB/s | 144ms - 170ms | None |
Yes | normal | normal | Failed | N/A | N/A | N/A | All | 355KB/s to 2.2MB/s | 328 Seconds (5m28s) | 6481.171 KB/s | 145ms - 1299ms | None |
Yes | normal | highlyrestricted | Failed | N/A | N/A | N/A | All | 355KB/s to 1.4MB/s | 216 Seconds (3m36s) | 9841.778 KB/s | 146ms - 173ms | None |
Yes | highlyrestricted | experimental | Failed | N/A | N/A | N/A | All | 355KB/s to 2.7MB/s | 198 Seconds (3m18s) | 10736.485 KB/s | 146ms - 154ms | None |
Yes | highlyrestricted | normal | Failed | N/A | N/A | N/A | All | 355KB/s to 2.9MB/s | 257 Seconds (4m17s) | 8271.689 KB/s | 145ms - 149ms | None |
Yes | highlyrestricted | highlyrestricted | Failed | N/A | N/A | N/A | All | 355KB/s to 1.3MB/s | 250 Sceonds (4m10s) | 8503.296 KB/s | 164ms - 301ms | None |
Windows 10 1703 | ||||||||||||
Via Kemp | RW Auto Tuning Level - Server | RW Auto Tuning Level - Client | GUI Speed Reported - UP | Upload (Time Elapsed) | Actual Average - UP | Ping Range (Up) | Dropped Pings - UP | GUI Speed Reported - Down | Download (Time Elapsed) | Actual Average - Down | Ping Range (Down) | Dropped Pings - Down |
No | normal | normal | 2.2MB/s to 6MB/s | 46 Seconds (0m46s) | 46213.565 KB/s | 148ms to 1948ms | 2 | 355KB/s Constant | 942 Seconds (15m42s) | 2256.713 KB/s | 146ms - 151ms | 44 |
No | normal | normal | 2MB/s to 5MB/s | 68 Seconds (1m08s) | 31262.118 KB/s | 1462 -2804 | None | 355KB/s Constant | 934 Seconds (15m34s) | 2276.043 KB/s | 145ms - 432ms | 40 |
No | normal | normal | 2MB/s ro 6MB/s | 66 Seconds (1m06s) | 32209.455 KB/s | 1322ms - 2514ms | None | 355KB/s Constant | 930 Seconds (15m30s) | 2285.832 KB/s | 146ms - 343ms | 34 |
Yes | normal | normal | 355KB/s to 5MB/s | 93 Seconds (1m33s) | 22858.323 KB/s | 146ms - 2012ms | 3 | 355KB/s to 3.4MB/s | 177 Seconds (2m57s) | 12010.305 KB/s | 145ms - 3409ms | 1 |
Yes | normal | normal | 355KB/s to 4.8MB/s | 84 Seconds (1m24s) | 25307.429 KB/s | 146ms - 167ms | None | 355KB/s to 2.4MB/s | 222 Seconds (3m42s) | 9575.784 KB/s | 146ms - 3880ms | 1 |
Yes | normal | normal | 355KB/s to 6.3MB/s | 74 Seconds (1m14s) | 28727.351 KB/s | 147ms - 251ms | None | 0KB/s to 2.9MB/s | 198 Seconds (3m18s) | 10736.485 KB/s | 146ms - 3428ms | 3 |
Tried changing the Windows Auto tuning for TCP Receive window, it made some difference, but not to the issues at hand.
So one one hand I get upload failure, on the other I get horrific downloads. Can't seem to win.
Other things that have been tried are..
Primary Site Router Changed from Cisco ASA 5515-X to Meraki MX-250 (No Change)
Virtual Loadmasters Setup & Tested (No Change)
Client Side routers, tested different brands. (No Change)
Tested in different countries (No Change)
Removed AV from Clients & Servers (No Change)
Kemp LM in Transparent mode (No Change)
Kemp LM with DSR (No Change)
Change Windows Rwin Auto Tuning (No Change)
Change MTU On Clients (No Change)
Change MTU on Kemp LM (No Change)
Servers are virtual running on Hyper V 2012 R2 cluster, on Dell PowerEdge R820's
1703 support ends October the 8th so I'm on a time limit too, how do I always find the awkward issues lol.
Any insights appreciated.
Paul.
DirectAccess Console Bug when editing step 3 in 2016 OS after enabling NLB
Hi,
Really hoping someone has seen this before as I a completely stuck.
I have deployed direct access on 2016 OS, Behind an edge device with single Nic all working great. I enabled NLB which went through without any problems but now when editing step 3 I receive an error regarding the NLS cert. I cannot proceed without un-ticking and re ticking the use self signed cert box, things become worse if i use a signed certificate I cannot proceed in the wizard until I select a self signed cert again. I have replicated this in a LAB with a vanilla version of 2016 (Same ISO I used for Gold build)
There is nothing about this issue online but I can replicate over and over again just enabling NLB in remote access. Has anyone heard of this issue?
Citrix Xenapp error, .ica file FQDN vs IP address
The Citrix web interface comes up fine but when I launch an application I get the following error:
Summation Enterprise ERROR
Cannot connect to the Citrix MetaFrame server.
Unable to contact the MetaFrame server browser. There may be network problems, or you may need to configure the correct server address in the Server location field.
I have found that if I grab the the temporary .ica file (icaXXX.tmp) which was placed on the client in:
c:\documents and settings\USERNAME\localsettings\temp\
The file received from UAG/Citrix has the FQDN of the target Citrix server.
Address=citrix-server.example.com:1494
If I try to launch the application using the file I get the same error as above.
However if I change the Address parameter in a copy of the .ica file to be the
IP address, then I can launch the application using that .ica file without error.
Address=192.168.1.12:1494
I tried listing the shortname, longname and IP address in the list of Citrix Farm Servers on the published application (Citrix XenApp(Web Interface 5.0)) but I still get the error.
Any ideas what might be wrong or more ways to diagnose?
DirectAccess and RDS - Connection failing to one Session Host
Hi,
Unfortunately I cannot find an answer to this particular conundrum anywhere so I am reaching out to you for help.
I have a Server 2012 R2 RDS deployment as follows:
1 x Connection Broker (also acts as a Session Host) - SRV01
1 x Session Host - SRV00
1 x RDWeb Host and License Server - SRV05
This deployment is only used "Internally" so the certificate used is an internally generated one from the CA: *.domain.local
I also have DirectAccess running on the same domain which seems to work flawlessly with RDS since I added the IPv6 addresses to the above servers, with the exception of SRV00.
The problem is as soon as I bring SRV00 into the available pool of RD Session Hosts, users running a RemoteApp while connecting through DirectAccess that get directed to SRV00 by the CB get the "Initializing remote connection" timeout and it gets no further.
The frustrating thing here is that it is working perfectly to both servers when the client is either onsite or connected over a separate VPN connection (Cisco Meraki) but as soon as they connect using DA, if the Connection Broker determines it's session should be hosted by SRV00, it times-out. Sometimes it will decide that SRV01 can host the session and that will immediately connect, even over DA. The problem therefore looks to be with the additional session host server SRV00, but I cannot for the life of me work out why.
Any suggestions would be very much appreciated, and thanks for taking the time to read the above.
Cheers,
Ken
DirectAccess Teredo/IP-HTTPS
Good evening
I was wondering if you guys/girls would be able to help me troubleshoot a DirectAccess deployment problem...???
I have set up a lab environment that is fully internet facing (where it needs to be); my DA server has two consecutive IP addresses to enable Teredo usage.
My problem is this...my DA client device connects using Teredo, but the user logging on connects via IP-HTTPS. Due to the 355KBps issue, I'm clearly wanting to use the Teredo connection (I've attached a screenshot). I see there's a 30 second
difference in the two connection times; is that relevant to anything? You see nothing, save for a minus sign, at the username column for the Teredo connection.
Any ideas why it connects to Teredo but opts for IP-HTTPS instead?
Kind regards
Chris D
Cheers CD