Quantcast
Channel: File Services and Storage forum
Viewing all 13565 articles
Browse latest View live

Disk freezes (Access) for a few seconds during daytime on a 2012 R2 fileserver

$
0
0

One of the disks based on Storage Spaces on 2012 R2 is not behaving well, storing home folders. Several times per hour during the working day the disk freezes up and doesn't respond to requests. The duration of the freezes are random and have been observed to last up to 70 seconds. It seems like this happens when users are at work and accessing their home folders, not during the weekend.
The freeze is observed in Resource Monitor with zero disk activity on the disk. No apparent events in event logs. A Powershell script running on the server is logging file access time that exceeds one second. See the log below for the first half of 25th October. Delay in milliseconds

25/10-08:11:54;28292
25/10-08:12:31;12353
25/10-08:12:44;3859
25/10-08:15:37;28980
25/10-08:16:17;5576
25/10-08:31:27;1173
25/10-08:46:30;2931
25/10-08:49:52;47122
25/10-08:50:49;17503
25/10-08:51:07;1003
25/10-08:55:13;1918
25/10-08:55:22;2396
25/10-09:12:20;1829
25/10-09:33:42;1971
25/10-09:39:30;1213
25/10-09:52:46;34630
25/10-09:54:50;12199
25/10-09:55:05;1017
25/10-10:01:50;27485
25/10-10:02:25;2390
25/10-10:11:47;25251
25/10-10:12:18;2559
25/10-10:19:57;27027
25/10-10:20:29;2772
25/10-10:20:33;5138
25/10-10:29:09;26653
25/10-10:29:43;2681
25/10-10:32:13;6486
25/10-10:46:03;2164
25/10-10:46:31;20590
25/10-10:46:56;7333
25/10-10:47:04;1049
25/10-10:51:26;2194
25/10-10:51:34;2638
25/10-10:57:27;1758
25/10-11:00:38;2967
25/10-11:18:28;23101
25/10-11:18:58;2613
25/10-11:29:28;16156

We can see that the server occasionally have drops of network traffic to almost 0, while activity drops on the disk to no activity at all (for up to 20-80 sec). See the image below for details. Since the users cannot access their data, the activity drops for a while because of that, naturally.

We do not know immediately why this is happening. We get lots of complains from users working in applications that use files on the user's home directory. When this lock happens, the whole application freezes and this creates a lot of frustration.
We have initially reconfigured  backup to run at 7 pm and fragmentation of the disk is turned off. 
We have run the script that is attached here from different admin desktops to the file server. The script is trying to access a file on the file server each second and prints any delays in the log.

Does anyone have a clue to where we could troubleshoot this scenario?



Freddy


Windows 10 Direct Access and Home Folders

$
0
0

I am mostly an Exchange\O365 person but have been challenged to implement DirectAccess to a client with a small group of users. We have been testing connectivity and all has been working great - business applications connect to internal servers successfully, mapped folders through GPOs are reconnecting and so on.

The one issue I discovered is with the home folders. In active directory, each user has a home folder setting as below:

The path is configured to \\domainname.local\home\%username% because we are using DFS for the home folders.

When the users go home, they complain they cannot access their home folders but can access everything else. What I noticed is that if the user closes their laptop and puts the machine to sleep before they leave the office and then go home and login, they do not have access (it does not show up) to the home folder.

Also if the user restarts their computer at home and they log in without first establishing a wireless connection, they do not have access to the folder but once they connect, log off and back on, they DO see the folder. What I take from this is that home folders are only mapped during Logon. And I verified this as follows:

User restarts their machine at home and connects to the wireless before they log in. If they wait 20-30 seconds for DirectAccess to kick in, they see the home folder and can access it. But if they do not wait for DirectAccess to kick in, they do not see the home folder.

So my question is - has anyone experienced this? Is this normal? Do home folders only get mapped at logon?


Thank you, Ibrahim Benna MCSA+Messaging, MCSE+Messaging,MCITP, MCT, MVP "Did you backup your Information Store Today?!" ***Don't forget to mark helpful or answer***

Delay with files showing on mapped drive

$
0
0

Windows Server 2012 Standard with Windows 7 Pro desktops.  I have one user save a file to a mapped drive location (n:\folder\folder\file.txt for example), and there can be up to a 10 minutes delay on another user being able to see the file is there.  The second user can try to view the file via open file dialog boxes or Windows Explorer with no success.

This might not seem like a huge issue, but the user's workflow is being delayed enough that managers are getting involved wanting to know why this is happening.

Windows 2012 R2 - custom retention for shadow copies

$
0
0

I've enabled shadow copies schedule on a server for 10pm every-night of the week.  I'd like to do something custom with the retention of these shadow copies.  Something like:  Saturday-Thursday, keep for 20 days, and Friday keep for a year.  Is there any way to accomplish this?

Many thanks,

Danny

Encrypting shared folders (and the files in them) on a file server

$
0
0

As a part of our cyber security program we are thinking about encrypting certain sensitive data we have on our network file server. The folders are secured by ACLs so that only those employees who need to access that data has permissions to do so. However, if we had a hacker inside the network, he/she could find that data and steal it. Basically we are looking to secure that data even if it was somehow taken.

Currently that server is still running Windows 2003 but that can be changed to 2008 or 2012.  All workstations are on Win 7 Pro.

Is EFS a viable solution?  Or would a 3rd party solution work better?  We would prefer it to be as transparent to the end user as possible and of course the files would have to be accessible to those users with permissions to those folders. We're not interested in encrypting the entire drives, just specific folders.

Thanks.

ADMT-Security Migrate Tool Completed with Errors (ERR2:7144 Could not open file 'C:\Program Files\WindowsApps\.......)

$
0
0

Dear Team,

I have migrated Domain controller from old domain to new domain by using with ADMT. I can migrate Group, User and Service, but when I continue to migrate with Security Migrate Tool, it show completed with error.

Please advise how to solve this problem.

Below is the log:

2016-11-02 10:05:37 ERR2:7144 Could not open file 'C:\Program Files\WindowsApps\Microsoft.3DBuilder_10.0.0.0_x64__8wekyb3d8bbwe' (1314)  A required privilege is not held by the client.
2016-11-02 10:05:37 ERR2:7144 Could not open file 'C:\Program Files\WindowsApps\Microsoft.Appconnector_1.3.3.0_neutral__8wekyb3d8bbwe' (1314)  A required privilege is not held by the client.
2016-11-02 10:05:37 ERR2:7144 Could not open file 'C:\Program Files\WindowsApps\Microsoft.BingFinance_4.3.193.0_x86__8wekyb3d8bbwe' (1314)  A required privilege is not held by the client.
2016-11-02 10:05:37 ERR2:7144 Could not open file 'C:\Program Files\WindowsApps\Microsoft.BingNews_4.8.239.0_neutral_~_8wekyb3d8bbwe' (1314)  A required privilege is not held by the client.
2016-11-02 10:05:37 ERR2:7144 Could not open file 'C:\Program Files\WindowsApps\Microsoft.BingNews_4.8.239.0_x86__8wekyb3d8bbwe' (1314)  A required privilege is not held by the client.
2016-11-02 10:05:37 ERR2:7144 Could not open file 'C:\Program Files\WindowsApps\Microsoft.BingSports_4.3.193.0_x86__8wekyb3d8bbwe' (1314)  A required privilege is not held by the client.

Many thanks!

VONG Dimanche 

additional inherited permissions of user already in a group

$
0
0

Sorry for my bad english i will try to describe the question with a few words.

A folder has a permissions group named "AE", this folder cannot be deleted by the users who are in this group, the users has the ability to create or delete everything to subfolders or files. If a user create a new folder or a new file or copy from another location an extra independent permission added to the new file or folder with Full Control rights.

With my account (my account has domain admins rights) added to "AE" group the server does not add anything.

My question full is:
is that a normal behavior of Windows Server security?
why the server does not add extra permissions with my account?
if this user or another user be removed from this group what happens to the files or folders that has his full control permissions?

thank you

Set up DFS on Existing File Servers

$
0
0

Hi All

I have 3 file servers in production using 2008 R2. I want to use DFS on these file servers now. Can I do this without affecting the existing shares???


External HDD connection

$
0
0

Hi Microsoft,

Just want to ask for your help.

We have an existing Windows 2012 r2 Server (HP). On this server, there are 3 external HDD attached and shared over the network.

It is working for quite sometime, but last weekend, we got this problem where in all those 3 external HDD connections are fluctuating. When I logged in to the server, the drive is disappearing and appearing.

Because of that, I have decided to transfer the external to other server where I can still share them over the network. And it is working fine there without the issue.

I original server where these external HDD's are hosted is still problematic. I tried attaching 3 USBs on it (without doing any sharing) and the issue is still persist. The drive letters of the USBs are disappearing and appearing continuously.

Here are the logs that I've gathered:

Also, we have found logs that may be related to this.

 

Log Name:      Application

Source:        SRMSVC

Date:          10/31/2016 5:02:50 PM

Event ID:      8228

Task Category: None

Level:         Error

Keywords:      Classic

User:          N/A

Computer:      XXXXXXX

Description:

File Server Resource Manager was unable to access the following file or volume: 'G:'.  This file or volume might be locked by another application right now, or you might need to give Local System access to it.

I hope you can advise me on what to do to the problematic server.

Thank you,

John

shared folder and CNAME

$
0
0

Hi,

i have a server SRV1. It has a CNAME FILE1. I created there a shared folder.
When i'm connecting to \\SRV1\ - it works.
When i'm connecting to \\FILE1\ - it asks me about credentials. Why? How can i fix it?

DFS: Can't create domain-based namespace, and 2008 mode checkbox is greyed.

$
0
0

WS2012 servers, WS2008 domain & functional level. Single-label domain...don't know if that's relevant.

DFS role is installed on 2 DCs, and intent is to make them namespace servers. However, when I try to create a DFS Namespace, I get this message when I click "Next" in the Namespace Type page:

---------------------------
Error
---------------------------
\\AVSIAV\DFS: The namespace cannot be queried. The RPC server is unavailable
---------------------------
OK  
---------------------------

Further, the "Enable Windows Server 2008 Mode" checkbox is dimmed and can't be selected. Functional levels were raised to WS2008 years ago; many DC reboots since then.

Same issues with both DCs. DFS services is running.

The C:\DFSRoots folder is not being created. Permissions on C:\ are Windows default, so the problem would appear to be that it's not getting that far.

I've removed and reinstalled DFS; no change.

I have not found any Event Log errors that correlate with this.

DCDIAG likes what it sees.

TIA

bugcheck error 0x0000009E Issues on windows server 2012

$
0
0
*******************************************************************************
*                                                                            *
*                        Bugcheck Analysis                                    *
*                                                                            *
*******************************************************************************

Use !analyze -v to get detailed debugging information.

BugCheck 9E, {ffffe801a9c3c900, 4b0, 5, 0}

Probably caused by : netft.sys ( netft!NetftProcessWatchdogEvent+e4 )

Followup: MachineOwner
---------

16: kd> !analyze -v
*******************************************************************************
*                                                                            *
*                        Bugcheck Analysis                                    *
*                                                                            *
*******************************************************************************

USER_MODE_HEALTH_MONITOR (9e)
One or more critical user mode components failed to satisfy a health check.
Hardware mechanisms such as watchdog timers can detect that basic kernel
services are not executing. However, resource starvation issues, including
memory leaks, lock contention, and scheduling priority misconfiguration,
may block critical user mode components without blocking DPCs or
draining the nonpaged pool.
Kernel components can extend watchdog timer functionality to user mode
by periodically monitoring critical applications. This bugcheck indicates
that a user mode health check failed in a manner such that graceful
shutdown is unlikely to succeed. It restores critical services by
rebooting and/or allowing application failover to other servers.
Arguments:
Arg1: ffffe801a9c3c900, Process that failed to satisfy a health check within the
 configured timeout
Arg2: 00000000000004b0, Health monitoring timeout (seconds)
Arg3: 0000000000000005
Arg4: 0000000000000000

Debugging Details:
------------------


PROCESS_OBJECT: ffffe801a9c3c900

CUSTOMER_CRASH_COUNT:  1

DEFAULT_BUCKET_ID:  DRIVER_FAULT_SERVER_MINIDUMP

BUGCHECK_STR:  0x9E

PROCESS_NAME:  System

CURRENT_IRQL:  2

LAST_CONTROL_TRANSFER:  from fffff800d31e2c08 to fffff803585d2fa0

STACK_TEXT:  
ffffd000`8f4b6938 fffff800`d31e2c08 : 00000000`0000009e ffffe801`a9c3c900 00000000`000004b0 00000000`00000005 : nt!KeBugCheckEx
ffffd000`8f4b6940 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : netft!NetftProcessWatchdogEvent+0xe4


STACK_COMMAND:  kb

FOLLOWUP_IP: 
netft!NetftProcessWatchdogEvent+e4
fffff800`d31e2c08 cc              int     3

SYMBOL_STACK_INDEX:  1

SYMBOL_NAME:  netft!NetftProcessWatchdogEvent+e4

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: netft

IMAGE_NAME:  netft.sys

DEBUG_FLR_IMAGE_TIMESTAMP:  5215f788

FAILURE_BUCKET_ID:  X64_0x9E_netft!NetftProcessWatchdogEvent+e4

BUCKET_ID:  X64_0x9E_netft!NetftProcessWatchdogEvent+e4

Followup: MachineOwner
---------

DFSr Error 2213, Replication has not occurred in a long time

$
0
0

Our lone DC, I know bad form attempting rectify, has Error 2213. Which is when the server experience a dirty shutdown and DFSr was not allowed to properly perform its functions and now has not replicated. I know how to resolve the 2213, run the command given in the Error message. However replication has not occurred since June of 2014.

Brief: 1 Windows Server 2012 non-R2 VM, fully updated, happily running as the DC, File Server, and some other roles. The only one of each in the domain. It's always been the only DC and file server.

According to http://howdoicomputer.com/2013/02/technical-stuffsysvol-dfs-replication-annoyances/ the server will through another error once the Event ID 2213 command is run in a command prompt. This error, most likely 4012, will state that replication cannot occur do to the time since the last replication has exceeded the allowed time set in the MaxOfflineTimeInDays parameter, which is by default 60 days. In the article the author gives how to resolve this, change the parameter to be a day or a few days farther in the past than when the last replication occured, simple enough. I've seen comments on that page that state that solved their issue(s), however they were in the 60 to 200 day ranges, not 2 years of days.

Trying to get opinions on whether this will solve our issue, or if there is another better way. 

Thanks all in advance.

Storage Replica Stretch Cluster

$
0
0

Storage Replica looks really good, and I've been waiting for this feature for a long time.

Having been investigating it since TP5 I've now got the RTM Server 2016 installed and have been looking at setting up an improved file server platform.

I have multiple offices plus a datacenter, and want to create clusters with a node at each office, replicating back to the datacenter.

The idea being that the preferred node for each cluster will be the node located in the office, with the datacenter node being the fallback for if the office is offline. The data would thus be located on the office LAN, near the user, unless the office is out of action, in which case the users will work from elsewhere and get the data from the datacenter via a WAN/VPN connection.

Storage Replica can replicate the data, but it looks like I can only create a cluster that spans sites if I have a working cluster at each site? In other words: single server to single server, with storage replica, seems like I can't create a cluster.

This documentation seems to back that up: https://technet.microsoft.com/windows-server-docs/storage/storage-replica/server-to-server-storage-replication?f=255&MSPPError=-2147217396

I suppose I'm just wanting to know, why can't I use SR to create a two node cluster where the nodes are on different sites? Or even different bits of kit using local storage in the same site?. If I can't, it seems to rather defeat the "shared nothing" primary feature of a stretch cluster? Or am I missing something?

iSCSI with 2 Servers (Same LUN)

$
0
0

Current Setup:

  • dc1.domain.com and dc2.domain.com
  • FreeNAS configured with a LUN on a SAN
  • File & Storage Services Installed on both DCs
  • I have the FreeNAS connected to dc1 as a local disk.

My question is how can I have the same disk connected to both servers so that they are sharing the same LUN/data without doing a folder share?

Do I have to create a Storage Pool or a New iSCSI Virtual Disk?



One iSCSI LUN behind two Server

$
0
0

Hi All,

i have a QNAP TS421 NAS, we use it as iSCSI storage. Nowadays we're adding a new server. I connected an existing LUN on two server? Both of servers using the LUN for Read, Write, Sharing, etc. What if the servers are trying to manipulate the same file (for ex. Word doc, or same) and what if they don't disturbing the files of the other (VHD storage for HyperV)?

I mean, do I need have fear from corrupted files, dataloss, etc.?

If it's a document storage, what if I set up Shadowcopy on Server_A and do nothing (leave it disabled) on Server_B?

Thanks!
Peter

Windows Server 2016 Storage Spaces Tier ReFS

$
0
0

Tier optimization task of ReFS volume is not working in Windows Server 2016.

> Get-Volume g |Optimize-Volume -TierOptimize
Optimize-Volume : The volume optimization operation requested is not supported by the hardware backing the volume.
Activity ID: {3dbe8d23-3259-49ff-a3ec-e7f16eff301b}
    + CategoryInfo          : NotSpecified: (StorageWMI:ROOT/Microsoft/...age/MSFT_Volume) [Optimize-Volume], CimExcep
   tion
    + FullyQualifiedErrorId : StorageWMI 43022,Optimize-Volume

Application log:

defrag: 257

The volume Vol_Tier2 (G:) was not optimized because an error was encountered: The operation requested is not supported by the hardware backing the volume. (0x8900002A)

If I format this volume to NTFS everything works fine. Had no such problem in Server 2012 R2.

Guess defrag.exe is not working with new ReFS v3.1

Best practice of DFS Replication, DFS Name space redundancy configuration and minimum staging area allocation

$
0
0
I want to know best practice of DFS Replication, DFS Name space redundancy configuration and DFS minimum staging area allocation. Thanks.

Babu

DC unable to browse it's own shares

$
0
0

Hi all,

This is my first post on here so i hope i can make sense for you lovely people to help me.

Setup is a Server 2012 R2 domain controller which had the following roles installed:

  • ADDS
  • GPMC
  • DNS
  • DHCP
  • File services
  • Print services
  • WDS (also running MDT)

No i appreciate that this is not MS best practice but our clients have limited budget for servers and licenses etc.

The initial issue is that the server experienced an infiltration of a virus/cryptolocker from which their files were restored from backup. However since then, the DC itself cannot access any of it's shares or DFS but domain joined clients can, aswell as the host. The DC receives the error:  "*share* is not accessible. You might not have permissions to use this network resources. Contact the administrator of this server to find out if you have access permissions. The specified network name is no longer available."

The share and network name is available if you are not on the DC.

I proceeded to make a new DC (DC2) which also ran DNS. I have moved the operations master roles to this server but this has made no change.

Looking forward to your suggestions.

Thanks,
Ollie.

VVS event id 8194 and error 0x80070005

$
0
0
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  <System>
    <Provider Name="VSS" />
    <EventID Qualifiers="0">8194</EventID>
    <Level>2</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2016-10-27T00:50:44.000000000Z" />
    <EventRecordID>5121</EventRecordID>
    <Channel>Application</Channel>
    <Computer>Server2011</Computer>
    <Security />
  </System>
  <EventData>
    <Data>0x80070005, 拒绝访问。
</Data>
    <Data>

操作:
   正在搜集写入程序数据

上下文:
   写入程序类 ID: {e8132975-6f93-4464-a53e-1050253ae220}
   写入程序名称: System Writer
   写入程序实例 ID: {7636755f-4676-4cb0-a05b-413d5639065a}</Data>
    <Binary>2D20436F64653A20575254575254494330303030313236302D2043616C6C3A20575254575254494330303030313231342D205049443A202030303030313031322D205449443A202030303032323431322D20434D443A2020433A5C57696E646F77735C73797374656D33325C737663686F73742E657865202D6B204E6574776F726B53657276696365202020202020202D20557365723A204E616D653A204E5420415554484F524954595C4E4554574F524B20534552564943452C205349443A532D312D352D3230</Binary>
  </EventData>
</Event>
Viewing all 13565 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>