Quantcast
Channel: File Services and Storage forum
Viewing all 13565 articles
Browse latest View live

Missing VSS System Writer and CAPI2 error in Event Log

$
0
0
Hello,

I'm having problems with making full system backup of Windows 2008 R2 x64. It looks like this is related to missing VSS System Writer. When I'm running command "vssadmin list writers" there is no System Writer in writers list and in event log CAPI2 error (event ID 513) is showing with this description:
Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.

Details:

TraverseDir : Unable to push subdirectory.

System Error:

Unspecified error
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-CAPI2" Guid="{5bbca4a8-b209-48dc-a8c7-b23d3e5216fb}" EventSourceName="Microsoft-Windows-CAPI2" />
<EventID Qualifiers="0">513</EventID>
<Version>0</Version>
<Level>2</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8080000000000000</Keywords>
<TimeCreated SystemTime="2010-03-14T01:06:35.639125000Z" />
<EventRecordID>207975</EventRecordID>
<Correlation />
<Execution ProcessID="968" ThreadID="11588" />
<Channel>Application</Channel>
<Computer>System3</Computer>
<Security />
</System>
<EventData>
<Data>Details: TraverseDir : Unable to push subdirectory. System Error: Unspecified error</Data>
</EventData>
</Event>
any idea what could be wrong?

Thanks in advance

Server 2012 R2 File Server Stops Responding to SMB Connections

$
0
0

Hi There,

Massive shot in the dark here but I am struggling with a pretty major issue atm.  We have a production file server that is hosted on the following:

Dell MD 3220i -> iSCSI -> Server 2008 R2 Hyper-v Cluster -> Passthrough Disk -> Server 2012 R2 File Server VM

Essentially 3 times now, roughly a month or so apart.  The file server stops accepting connections.  During this time, the server is perfectly accessible through rdp or with a simple ping.  I can browse the files on the server directly but no-one appears to be able to access the shares over SMB.  A reboot of the server fixes the issue.  

As per a KB article I removed nod antivirus from the server to rule out a conflicting filter mode driver after the second fault.  Sadly yesterday it happened again.

The only relevant errors in the servers log files are:

SMB Server Event ID 551

SMB Session Authentication Failure Client Name: \\192.168.105.79 Client Address: 192.168.105.79:50774 User Name: HHS\H6-08$ Session ID: 0xFFFFFFFFFFFFFFFF Status: Insufficient server resources exist to complete the request. (0xC0000205) Guidance: You should expect this error when attempting to connect to shares using incorrect credentials. This error does not always indicate a problem with authorization, but mainly authentication. It is more common with non-Windows clients. This error can occur when using incorrect usernames and passwords with NTLM, mismatched LmCompatibility settings between client and server, duplicate Kerberos service principal names, incorrect Kerberos ticket-granting service tickets, or Guest accounts without Guest access enabled

and

SMB Server event ID 1020
File system operation has taken longer than expected.

Client Name: \\192.168.105.97
Client Address: 192.168.105.97:49571
User Name: HHS\12J.Champion
Session ID: 0x2C07B40004A5
Share Name: \\*\Subjects
File Name:
Command: 5
Duration (in milliseconds): 176784
Warning Threshold (in milliseconds): 120000

Guidance:

The underlying file system has taken too long to respond to an operation. This typically indicates a problem with the storage and not SMB.

I have checked the underlying disk/iscsi/network hyper-v cluster for any other errors or issues, but as far as I can tell everything is fine. 

Is it possible that something else is left over from the NOD antivirus installation?  

Looking for suggestions on how to troubleshoot this further.

Thanks


monitoring of windows clustered storage spaces

$
0
0

How we can monitor if there is any drive failure or storage pool or virtual disk or volume getting full ?

We use splunk to monitor servers so it can check for these events below on two cluster nodes and email us. Any thing else I should look for ?

http://social.technet.microsoft.com/wiki/contents/articles/11382.storage-spaces-frequently-asked-questions-faq.aspx#Enclosure_Awareness_Support_Tolerating_an_Entire_Enclosure_Failing


ad

DFS Moved Files

$
0
0

I have two file server both 2012r2.  I installed the DFS Namespaces and DFS replication roles on both servers.  I then created a simple namespace called ITDFS and added a folder to the namespace called IT Test1.  I added the second server from the DFS managment console and added a folder by the same name to it.  I then added a replication group via the wizard.  I was able to add text and excel file and have them replicate between the two servers.

About an hour later I received a call that folders (on the server that I initially configured DFS on) were missing.  After using a utility called tree size I was able to see that several hundred gigs of software was moved into the DFSR/Private/PreExisting folder.

1.  At no point did I ever configure this set of folders to be included in DFS replication.  It was several folders deep so there is no chance I accidentally navigated to it during my DFS testing.  Also, I would have never selected some 200 folders at a size of 347 GB for a simple DFS test.  I have no idea why these files would have been moved to the preexisting folder, which I understand is readying the files for replication.

2.  I cannot get into the DFSR private folder for the life of me.  I have forced the permissions on it numerous times to no avail.

Any idea why my files would have been moved and how do I get them back?


~Eric

Failover clustering with IP virtual on Windows 2012

$
0
0

Hello,

I would like to create a failover clustering without SAN on Windows 2012.

I have 2 servers with 4 hardrives but 2 HDD (share file drive) in Raid1 on each.

I want to create an IP virtual for the hardrives in Raid1 to input the IP on Failover clustering service.

Is it possible ?

Thanks for your answers.

Regards,

Sone77.

"Target account name is incorrect" error when mapping a network drive.

$
0
0
Hello,

First, I apologize if I did not include enough details, I am not sure what to include.

I am looking into an issue at my friend's business. He has a Windows Server 2008 R2. Some Windows updates occurred at 3 AM and ever since then, "Target account name is incorrect" error message comes up when attempting to access a network drive via all the computers. Can't find the network mapping component in the Group Policy Management area to map the drive out through a group policy.

The drive in question was mapped out into each computer individually through "Map Network Drive" previously. Removed it and tried to re-add it on one of the computers, the same error occurs when attempting to add it through "Map Network Drive".   The computers its occurring in have Windows XP, 7 and 10.
The Driver in question shows up under Share & Storage Management.  Shows also that everyone has permission.

I then tried to add it via Group Policy Management and did gpupdate /force.  First, I got "Error (0x80070070) occurred saving settings file. There is not enough space on the disk".  I ensured that the quota management is disabled. When attempting to gpupdate /force , I got this error "the processing of group policy failed. Windows could not authenticate to the active directory service on a domain controller".

I hope someone can help me look into it. Thank you so much. My apologies if I missed out any details, not sure what else needs to be included.

DFSRDIAG as a user - permissions

$
0
0

I am using a script on a scheduled task to check DFS Backlog counts and to alert if the count is over 1000.  I have the script working and it does a great job of checking all the replicated groups dynamically and alerts.

Moving this to a scheduled task has been an issue.  For security reasons we want to run this task as a service account (dummy user account) but it isn't running.

I have give the user account the permissions outlined here...

https://blogs.technet.microsoft.com/filecab/2006/07/06/delegating-permissions-to-run-dfsrdiag/

1. Added to local dcom user group - both servers

2. added the list WMI permissions for the rootmicrosoftdfs (also added to root as a test)

3. in DFS Management Console added user account to "Replication" and also an individual replication group I set up for testing "AAA"

4. Gave the user log on as a batch job rights

Still not working.

I opened a cmd.exe as the user account to test dfsrdiag and all I get is "Operation Failed" nothing in the logs... 

---

C:\Windows\system32>dfsrdiag backlog /receivingmember:DFS01 /sendingmember:DFS02 /RGname:AAA /RFName:AAA

Operation Failed

---

Can anyone suggest a way to track down the permission issue?

Thanks

John


SMB Share not seen by Ricoh Printer

$
0
0

Hi,

We are having trouble in seeing an SMB share on our Ricoh printer. Basically, we need to set up scan to folder from the Ricoh printer to the shared folder. This shared folder is on Windows Server 2012 R2 Standard

We have already spend a whole week troubleshooting this issue to no avail and nothing is working. Today, I installed a test server and installed everything exactly as its on the original one and scanning worked! Obviously, this brings to the conclusion that there is nothing wrong with the printer but, there is surely something wrong with the server installation or configuration.

Below are what we have tried to do to make it work on the server:

  • Disable firewall
  • Disable Anti-virus
  • Checked SMB signing is turned off and it was
  • Create another folder
  • Create another user
  • Made sure network discovery is working - I manage to see the shared folder if I use a Windows 7 machine but, the folder is not discoverable by the printer.
  • Installed the latest SMB patch by Microsoft

I have tried all the above and nothing is working. Is there something else which I need to look into please? If I manage to solve this problem on the existing server will help me save time installing another fresh server and transfer files/folders. Thank you


Looking for an easy way to replace files in a directory with newer versions of those same files

$
0
0

Hello everyone.  I'm looking for an easy way to replace multiple files with updated versions of those files.  My OS is Server 2012 R2.  Example:  I have a Test_A.doc file in multiple subfolders on a disk.  I want to delete all of the Test_A.doc files and replace them with Test_B.doc files.  But I want to do this all at once as there are probably hundreds of these files on the disk that I have to replace.  One thing to note is there are files like 123_Test_A.doc that have important data in them in the same locations that I don't want replaced.  So I am only looking to replace the Test_A.doc files with the Test_B.doc files (they are form templates). 

I'm sure there is a way to do this in Powershell but I'm a PS noob and don't use it enough to be able to figure it out.  I do have a book on it and have begun searching through it for answers.  If there is a GUI way to do it within Windows Server or an application that could perform these tasks that would be good too.   Basically whatever is easiest to do.  So if anyone knows of an easy way to do this I would appreciate the suggestion.

Thanks

DFS State issue

$
0
0

I'm getting these alerts from our monitoring and have it tracked down to why it's showing the users share in DFS as uninitialized, even though it's state is actually normal.  The replication group has been added and removed over and over and renamed.

Right now I have these replication groups:

Admin

Domain System Volume

Shares

Users

And there are no issues.  But monitoring uses WMI and as such the following command shows the real issue:

Wmic /namespace:\\root\microsoftdfs path dfsrreplicatedfolderinfo get replicationgroupname,replicatedfoldername,state

ReplicatedFolderName  ReplicationGroupName              State
Admin                 Admin                             4
Shares                Shares                            4
Users                 pipt.local\dfsroot\users    0
Users                 pipt.local\dfsroot\users    0
SYSVOL Share          Domain System Volume              4
Users                 pipt.local\dfsroot\users    0
Admin                 pipt.local\dfsroot\admin    0
Users                 Users                             4
Users                 pipt.local\dfsroot\users    0
Users                 pipt.local\dfsroot\users    0

Line items with a State of 4 are correct.  They are also the ones that match the naming convention in the console.  Admin and Shares were removed and renamed once it looks like.  Users over and over again.  But it is these references that the monitoring software is querying, so it appears.

How do I rectify this?

It looks like i need to delete all of the  pipt.local\dfsroot\users  replicationgroupnames, and the one pipt.local\dfsroot\admin

How do i do that safely?

Thanks in advance.

Cannot Access Network Shares After Windows Update

$
0
0

Just updated my windows 2012 r2 server but now cannot access the shared drives/folders on my other machines.

HELP!!

SanDisk

$
0
0
<g class="gr_ gr_92 gr-alert gr_gramm gr_run_anim Grammar multiReplace" data-gr-id="92" id="92">Disk</g> does not open. Tried another and same results. How do I check the computer to see if it is trying to read the San Disk?

No DFSR Event ID 4104 and many 4412

$
0
0

Greetings,

I followed the document Export a Clone of the DFS Replication Database to the letter.  I was really impressed with how quickly the initial sync progressed.  Many GB of data synchronized in a matter of hours instead of days.  However, there were a few peculiarities:

  1. I got about 15,000 instances of event id 4412 on the source server, despite the only pre-existing data being that which I robocopied exactly as the document explained (or actually as the Export-DFSRClone explained).
  2. The last 24 files in the backlog just will not sync.  The are the only ones in the backlog and have been for 8 hours.
  3. The diagnostics report for the replication group shows the folder is 'Normal' on both servers.
  4. There are a few locked files but I'm sure that's just an anomaly on the source server.

The destination server is brand new and has all the hotfixes installed (as does the source).

DFSR read only validation.

$
0
0

I currently have a setup like the one below and DFSR

console says it's disconnected.  When I open the interface to see the disconnected members, there are 2 sets of connected members.

Based on the documentation I am reading it would seem that this is a valid configuration.

All RW members have bi-directional connections.  RO members have a single direction connection from their RW member.

Thanks,

C


-Chris

Cannot Optimize Tiered Storage

$
0
0

On my file server when I try to Optimize the tiered storage I get this:

PS C:\Windows\system32> Optimize-Volume -DriveLetter D -TierOptimize
Optimize-Volume : A general error occurred that is not covered by a more specific error code.
At line:1 char:1
+ Optimize-Volume -DriveLetter D -TierOptimize
+ ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    + CategoryInfo          : NotSpecified: (MSFT_Volume (Ob...1-a83c-b33c...):ROOT/Microsoft/...age/MSFT_Volume) [Opt
   imize-Volume], CimException
    + FullyQualifiedErrorId : HRESULT 0x89000000,Optimize-Volume

Also, I'm seeing and Unknown status when I try to pin files:

PS C:\Windows\system32> Get-FileStorageTier -VolumeDriveLetter D | FT -AutoSize

FilePath                           DesiredStorageTierName      PlacementStatus State
--------                           ----------------------      --------------- -----
D:\Shares\Media\Movies\300\300.mkv DATA_Microsoft_SSD_Template Unknown         OK

Running both as Administrator


Strange issues trying to rename folder in DFS Namespace - both old and new folder names are showing up.

$
0
0

Environment: All servers involved (and domain functional level) are 2008 R2 SP1

I have a namespace with 14 namespace servers.  1 is at corporate headquarters, the other 13 are each at a remote site.  Each remote server is a DC, File/Print server, DHCP, etc....

Namespace is optimized for scalability.

There is a folder in the namespace for each remote location.  Each namespace folder has 2 targets - a shared folder at corporate, and a shared folder on that site's server.  The folders replicate.

I use MMC with the Share & Storage Mgmt + DFS Mgmt snap-ins.  I went through and renamed each folder in the namespace.
The new names were not showing up for remote clients in the namespace.  Content in the folders were up to date however. This was for a couple of days.  During this time, I restarted DFS services on the remote servers and rebooted clients to no avail.

I did not modify the names of any of the shares, or the names of the actual folders in the file system. ONLY the name of the folder as it appears in the namespace.

I wound up running dfsutil root forcesync \\remoteserver\namespace\
After I did this, the new folder names showed up, but this was in duplicate.  The old folder names were still in the namespace.

What's weird: if I go into the DFS Management console on ANY server, the old names do not appear there.   If I look in the C:\DFSRoot\Namespace\ folder on the remote servers, there are links in there for both new and old names.

When I try to run dfsutil link remove \\namespace\OLDname, I get an error that the command could not execute the command successfully - system error - element not found.

Here's the most frustrating part.  This link: https://support.microsoft.com/en-us/kb/2619531 describes my problem almost to a T.  However, it says that it's only applicable to Server 2008 SP2.

Any guidance would be greatly appreciated.

Thanks!

-Brad

DFSR

$
0
0
Running DFS between  a couple w2k12 servers. Everything is working. We moved some old data to archive. Deleted the name space, deleted the replication group and deleted teh data off the servers. Under system volume dfsr\private are directories with a lot od data that we cant identify. When we run WMIC.EXE /namespace:\\root\microsoftdfs path dfsrreplicatedfolderconfig get replicatedfolderguid,replicatedfoldername our active replication folders show up. Can the unidentified directories be deleted?

2012R2 file server "guest access" not working this week

$
0
0

Hello,

I have a 2012R2 server with some shares on it that was setup to use "anonymous login" (which shows at the server as the guest user) for authentication. All of a sudden, this week we are getting many access denied errors on Win10 clients. I understand that there are now also some Win7 clients with the issue. The workflow used to be 1) Access \\server in explorer 2) see the shares without entering any creds. None of the clients are on our domain so this is the way we set it up to not have to used credentials.

When the credential dialog pops up, I can put in any username without a password and it displays the shares. If I just click enter without any username or password, it gives me the access denied message. Same behavior at the commandline with "net view" or "net use"

At first, I figured it was the 1607 Win10 update, but now I've found some 1511 clients that are doing it. Worse is that I have at least one Win10 1607 client that works just fine with no creds. Could this be something that changed as part of patch Tuesday? If I can have some help in troubleshooting I'm very willing to provide logs.

Suspicious folder on root of server drives

$
0
0

Hi,

We have recently figured out there is a suspicious folder named "^" on the root of the drive of one server.

The point is that the user does not have access to the root of the drive, and the server was hit by ransom-ware.

My main question is how is it possible to create a folder in the root of the drive when they do not have access?


**************** Sincerely Yours Ziyaei Ali *****************

Server Shared Folder Permissions

$
0
0

I have a Windows Server 2012R2 server with shared folders. The permissions set on these shared folders are being done with AD Security groups.

The assigned users to these security groups have 2 AD account (1 normal user for pc sign on and 1 Admin like user account to access the shared folders on servers).

Shared folder is configured with the security group "Admin Users" on the Share and Security (NTFS) with "Read Only" access.

When they browse to the server \\ServerName and press enter they see the shared folder. Problem is that when attempting to access the shared folder they are presented with the error message "You do not have permission to access \\ServerName\ShareName contact your administrator". That is all fine because they are signed into their system with the non-admin like account. The issue is its not prompting for an account to supply that does have the access. When attempting to create a mapped drive to the same location and setting it to use the ADMIN like account it errors out that the "connection is already made with another user account and can't be made clear the other mapping and try again".

Running Net Use does not show the mapped drive with or without a drive wetter to clear it.

Was wondering if anyone else has come across this and if there is a fix to this? Any and all help\advise is greatly appreciated.

Len


Leonard Hoffman

Viewing all 13565 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>