Archive for the ‘Windows 2008’ Tag

Infrastructure Planning and Design Guides—Release Announcement   Leave a comment

 

Infrastructure Planning and Design Guides—Release Announcement

Windows Server Virtualization

System Center Virtual Machine Manager

The Infrastructure Planning and Design team has released two updated virtualization guides: Windows Server Virtualization and System Center Virtual Machine Manager.
These guides, updated to reflect the features and functionalities of Windows Server® 2008 R2 and System Center Virtual Machine Manager 2008 R2, outline the critical infrastructure design elements that are crucial to a successful implementation of these virtualization products.

The Infrastructure Planning and Design Guide for Windows Server Virtualization takes the reader through the process of designing components, layout, and connectivity in a logical, sequential order. Identification of the Hyper-V™ server hosts required is presented in easy-to-follow steps, helping the reader to design and plan virtual server datacenters.

The Infrastructure Planning and Design Guide for Microsoft System Center Virtual Machine Manager assists readers in the design and implementation of SCVMM architecture, thus enabling centralized administration of physical and virtual machines. Identification of the VMM server instances required is one of the simple, seven-step design processes presented in this guide.

Download the IPD Guides for Virtualization at http://technet.microsoft.com/en-us/solutionaccelerators/ee395429.aspx
Infrastructure Planning and Design streamlines the planning process by:

  • Defining the technical decision flow through the planning process.
  • Listing the decisions to be made and the commonly available options and considerations.
  • Relating the decisions and options to the business in terms of cost, complexity, and other characteristics.
  • Framing decisions in terms of additional questions to the business to ensure a comprehensive alignment with the appropriate business landscape.
Advertisements

Posted September 23, 2009 by Robert Smit [MVP] in Windows 2008

Tagged with

Active Directory Recycle Bin   Leave a comment

Active Directory Recycle Bin is a new feature in windows 2008 R2 it is not an option that you can turn on or of.

Yes it is a hidden feature and you can only turn it on. What do you need well only a windows 2008 R2 DC

By default, Active Directory Recycle Bin in Windows Server 2008 R2 is disabled. To enable it, you must first raise the forest functional level of your AD DS or AD LDS environment to Windows Server 2008 R2, which in turn requires all forest domain controllers or all servers that host instances of AD LDS configuration sets to be running Windows Server 2008 R2. After you set the forest functional level of your environment to Windows Server 2008 R2, you can use the instructions in this guide to enable Active Directory Recycle Bin.

The restore can only be done with powershell there is no supported tool from microsoft but there are nice gui tools.

http://powergui.org/shares/powergui/sbin/docs/Advanced_Reporting_PowerPack/Advanced_Reporting_PowerPack.html

http://www.overall.ca/index.php?option=com_content&view=article&id=40:adrecyclebin&catid=15:adrecyclebinexe&Itemid=64

How does It work.

You can enable it if your forest is on windows 2008 R2 <> check it in Active directory domains and trusts <> right click on domain<> raise domain functional level.

Active Directory Recycle Bin I started the Powershell and get this. Active Directory Recycle Bin

Oh ok I never used the powershell on this server so I have to import the modules

Active Directory Recycle Bin  Active Directory Recycle Bin

Now I am ready to go , mm what is this error

Active Directory Recycle Bin

security ! ok we can fix this so check our powershell policy : Get-ExecutionPolicy

Active Directory Recycle Bin Restricted easy thing change one letter G=S

Set-ExecutionPolicy RemoteSigned

Active Directory Recycle Bin   Now we have set the policy and get a list off commands

Get-help set-AD*

this shows a list of all set-ad starting commands.

Active Directory Recycle Bin

Active Directory Recycle Bin

We have already checked that the domain is in 2008R2 mode but you can set this with powershell.

set-ADForestMode -Identity mvp.local -ForestMode Windows2008R2Forest.

To enable the AD recycle Bin we use Powershell, you can do this by hand in the CN=Partitions but this is the best way.

Active Directory Recycle Bin No Ad recycle bin key.

We run the enable option. you can get help on this get-help Enable-ADOptionalFeature

Enable-ADOptionalFeature –Identity ‘CN=Recycle Bin Feature,CN=Optional Features,CN=Directory Service,CN=Windows NT,CN=Services,CN=Configuration, DC=MVP,DC=local’ –Scope ForestOrConfigurationSet –Target ‘mvp.local’

Active Directory Recycle Bin

Active Directory Recycle Bin Now there is a key CN=Recycle Bin Feature

To verify that Active Directory Recycle Bin is enabled, navigate to the CN=Partitions container. In the details pane, locate the msDS-EnabledFeature attribute, and confirm that its value is set to CN=Recycle Bin Feature,CN=Optional Features,CN=Directory Service,CN=Windows NT,CN=Services,CN=Configuration, DC=mydomain,DC=com, where mydomain and com represent the appropriate forest root domain name of your AD DS environment

Active Directory Recycle Bin

We do a list of deleted items check on deleted=True

Active Directory Recycle Bin I used a user that is called “Deleted”

 

Active Directory Recycle Bin   Active Directory Recycle Bin

Get-ADObject -Filter {displayName -eq "delete"} –IncludeDeletedObjects

Active Directory Recycle Bin   Active Directory Recycle Bin

Get-ADObject -Filter {displayName -eq "delete"} -IncludeDeletedObjects | Restore-ADObject

Active Directory Recycle Bin

So now you can delete and restore AD items but better would be if there where gui tools.

There are no Gui Tools from microsoft at this time. but there are some great community tools . I like the tool from Overall solutions, but there is also a powergui tool

 

AD Recycle bin AD Recycle bin

image

 

Have fun with it don’t tell your user or IT manager this that you can restore Items with a click or script in 10 min time. Else you get more work on recovering deleted items. Even the helpdesk can do this. IMHO this is a must have option just like AGPM Or my old post

Posted September 18, 2009 by Robert Smit [MVP] in Windows 2008

Tagged with

The New Efficiency   Leave a comment

 

image

image

On September 29th at 9 am (PST) please join us here on www.thenewefficiency.com for a kick-off discussion on “The New Efficiency” live from San Francisco as a part of Microsoft’s Virtual Launch Event.

Join in the conversation during this must-see event and see top technology leaders and Microsoft’s Steve Ballmer, debate the role of IT during this economic reset. Can cost savings, productivity and innovation come together to drive business growth? Get a closer look at how real companies are justifying IT investments across desktop, server, network and beyond.  You’ll also find sessions related to new releases of Windows 7, Windows Server 2008 R2, Microsoft Exchange Server 2010, Microsoft Forefront, Microsoft System Center, and Microsoft Desktop Optimization Pack.

Mark your calendars; watch it live; submit questions in advance.  Don’t miss it!

Posted September 15, 2009 by Robert Smit [MVP] in Windows 2008

Tagged with

Myth or True SMB BOSD   Leave a comment

 

Today there is this story about the SMB BOSD is it true ?

first here is the full story http://g-laurent.blogspot.com/2009/09/windows-vista7-smb20-negotiate-protocol.html

My Windows Versions.

image image

I run the exploit and yes there is a BSOD 

image but there is no firewall on and everything is wide open. This is on my windows 2008 R2 RC build 7100

even with the Firewall on it still gets a BSOD the only thing you can do is block port 445. And I did a test on Windows 7 in my domain with the BSOD DC ;-( and no BOSD my Windows 7 is secure !!

image

 

image image On the left windows 7 <> right Windows 2008 r2 RC build 7100

After replacing the srv2.sys file and a reboot I did the test again and no more BOSD

image  but where did I find this new srv2.sys file <> yes in windows 7

Story confirmed partly true. but it can be fixed. when I do not know. but remember changing this file is not supported.

and you need to bypass the NT SERVICETrustedInstaller security rights.

You must remember turn your firewall on does not always help you port 445 ,138,139 are open if you make a block rule 445

image but maybe you need 445 😉

No I’m not gona help you to test this or tell you where to find the tools to do this.

Posted September 10, 2009 by Robert Smit [MVP] in Windows 2008

Tagged with

Microsoft Network Monitor 3.3.1641   8 comments

 

For troubleshooting you can use several tools. This time I used the microsoft network monitor 3.3 tool for network sniffing.

no not wireshark first I had to update I used an old version so after I installed 3.3 I’m ready to go. But after a “binging” I found extra updates and tools for the MNN3.3 Below is Info I grabed to get you started. Source info : Network Monitoring Team

Updated Parsers:

As you probably already know, we release new parsers on CodePlex every month. In these updates we’ve included updates for Windows 7 protocols. We also have support for Remote Windows Sockets (RWS) which is used to proxy TCP and UDP traffic from Winsock applications. Check out this blog for more information.

We post all the source code for the parsers, and you are free to look at the code, file bugs, request we take your parser code etc. This is a fully open-source parser project!

New Experts:

TCP Analyzer – TCP Analyzer lets you view TCP traffic visually and determine performance issues. This blog has more information.

Top Users – Top Users is an expert that lets you view the heaviest talkers on your network. This allows you to get a high level view and narrow down on machines that could be expectedly consume network bandwidth.

If you would like to create your own expert feel free to contacts us for information. http://nmexperts.codeplex.com has more details on how to submit a project for consideration.

New Public Forums:

The forums on Connect are normally for supporting our betas, though we’ll answer any question you have. However we now have public forums here, which is geared towards supporting the currently released version. Please post your Network Monitor 3.3 questions there so all users can learn from each other and feel free to answer question as well to help others out.

Hopefully this quick note will help you keep in touch with everything that is going on with Microsoft Protocols and Network Monitor 3.

Enjoy,

Network Monitor Team

Posted August 6, 2009 by Robert Smit [MVP] in Windows 2008

Tagged with

Windows 2008 R2 RC File Server and print server   4 comments

 

Below are the few steps to use a cluster as file server or as print server. These are just the basic’s

Start the wizzard choose the file server option and add a IP to the netbios name

clip_image002 clip_image004 clip_image006

select the disk that you want to use for file sharing

clip_image008 clip_image010 clip_image012

Now I make a share in this cluster , select the disk and if you want to change the permissions do this here. because I had the quorum disk on this disk the cluster folder is on the data disk.

clip_image014 clip_image016 clip_image018

clip_image020 clip_image022 clip_image024

This I like a lot below is the enable access based enumeration I made a post on how to do this in windows 2003.

Clustering Access-based Enumeration (ABE) – Windows Live

and now it is just a setting clap

clip_image026 clip_image028 clip_image030

You can create a DFS link if you want. This will I do in a next session.

clip_image032 clip_image034 clip_image036  

As you can see it is much next next I agree just the basics are easy to do. the next blog items are all about R2 RC.

I have almosted everything clusterd , so get some hardware and use R2 !

Posted May 20, 2009 by Robert Smit [MVP] in Windows 2008

Tagged with

Windows 2008 R2 RC clustering setup a cluster   1 comment

 

For a demo I did setup a windows 2008 R2 RC x64 server with HV. Because the demo hardware was not on the FCCP list. It takes more time to setup the server. So a Hint use hardware that is on the FCCP list !.

So I used a x64 OS and still I hate this the drivers is always an issue , even a 3com nic won’t run these cards where very popular but no driver. so I was looking for some other elcheapo nics but almost every nic is not supported with x64 software. Why !!

If the industry want us to use x64 software just make sure that there are drivers for x64, and not the crapy once.

So In this senario I used the rocketdivision software for ISCSI. This week you can also use the windows 2008 Storage server with the microsoft ISCSI target software. You can also download the ISCSI software from teched but remember it runs only on storage server.

It is a MSI file so maybe you can adjust it so that it runs on other servers, not that I tried this 😉

Ok my POC config.

clip_image002 here are my 3 nic’s   clip_image004 Open de failover MMC

So first we start the validate configuration.

So fill in the node names as I added the second node, and as you can see the wizzard tells me that the failover services is not installed

I installed the feature on the second node and rerun the wizzard

clip_image006 clip_image008 clip_image010 clip_image012 clip_image014

As you can see the node1 and node2 are added.

clip_image016 clip_image018 clip_image020

The validation configuration wizzard is success full

Now that We know that I can make a cluster , we added some disk to the nodes.

one disk as Witness disk and one for data

clip_image022 clip_image024 clip_image026

clip_image028 clip_image030 clip_image032

On node the was no mpio installed so I did this to, remember node1 and node2 needs to be the same if you want to use the services in a cluster

clip_image034

Now We create cluster

clip_image036 clip_image038 clip_image040

clip_image042 

Now that the cluster is in place and you want to remove the cluster is can be done with powershell quick and easy.

Now we do it by powershell

cluster /destroy /cleanup

clip_image044

The mmc is not refreshing

So what we didn’t do is configuring the cluster network .

So I do not want that my iscsi nic is doing clustering.

clip_image046 clip_image048 clip_image050

The one thing I hate after the wizzard is to reconfigure the quorum disk.

image clip_image056  clip_image058 clip_image060 clip_image062 clip_image064  clip_image068

Now the cluster is in place

Posted May 20, 2009 by Robert Smit [MVP] in Windows 2008

Tagged with

  • Twitter

  • %d bloggers like this: