Guillermo

Monday, March 31, 2008

MS: Exchange 2007 Certifications

I worked a lot with Exchange 2007 in the last year. I designed, implemented and trained users.

Exchange 2007 SP1 starts a new wave of migrations. Time to certificate and improve knowledge!

When Exchange 2007 was release last year and I worked for InfoGroup Sistemas in Spain, I studied Exchange 2007 in detail. Below you will found my favorite books.

I teach these Exchange 2007 MOCs:

MOC 5047: Introduction to Installing and Managing Microsoft Exchange Server 2007.
MOC 5049: Managing Messaging Security using Microsoft Exchange Server 2007.
MOC 5050: Recovering Messaging Servers and Databases using Microsoft Exchange Server 2007.
MOC 5051: Monitoring and Troubleshooting Microsoft Exchange Server 2007.

Microsoft Exchange Server 2007: Tony Redmond's Guide to Successful Implementation

Probably the best book about Exchange 2007 around. Amazon

How to Cheat at Configuring Exchange Server 2007: Including Outlook Web, Mobile, and Voice Access

Henrik Walther is Microsoft Exchange MVP (Most Valuable Professional) and writes Exchange-related articles for
http://www.msexchange.org/, one of the best sites of Exchange Server. Great book, very easy to read and full of examples. Amazon


MCTS Self-Paced Training Kit (Exam 70-236): Configuring Microsoft Exchange Server 2007

This MS Press book is not good like others Training Kit I read before. But will help you to understand the exam. Amazon


Tuesday, March 18, 2008

MS: Microsoft releases Windows Vista SP1 to the Web

Microsoft releases today Windows Vista Service Pack 1 (SP1) to all customers.
Windows Vista Service Pack 1 Five Language Standalone version can be installed on systems with any of the following language versions: English (US), French, German, Japanese, or Spanish (Traditional).
Read the overview of Windows Vista SP1, including what's new, technical details, guidelines and notable changes.
Read the Deployment Guide for Windows Vista SP1. This guide includes technical information, procedures, and recommendations for installing Windows Vista SP1 in a business or corporate environment.

Windows Vista Service Pack 1 Five Language Standalone for x64-based Systems (KB936330)
Windows Vista Service Pack 1 Five Language Standalone for x86-based Systems (KB936330)

Thursday, March 13, 2008

Script: Automating TCP/IP Networking on Clients

The great Automating TCP/IP Networking on Clients paper help to write great scripts using VBscript (so... easy to move the code to VB or VB.NET).

This paper discusses scripting techniques and shows scripting examples for:
• Retrieving TCP/IP client settings.

• Working with remote hosts.
• Configuring DHCP and static IP addresses.
• Managing DNS client settings.
• Working with NetBIOS and WINS.

http://www.microsoft.com/technet/scriptcenter/topics/networking/default.mspx

Thursday, March 06, 2008

MS: Determine The Last Time a User Logged into a Active Directory Domain.

1) Using a graphical user interface

Install the AcctInfo.dll extension to Active Directory Users and Computers, you can view the last logon timestamp.
TIP: AcctInfo.dll can be downloaded from the Microsoft download site:
http://microsoft.com/downloads/details.aspx?FamilyId=7AF2E69C-91F3-4E63-8629-B999ADDE0B9E&displaylang=en
Open the Active Directory Users and Computers snap-in.
In the left pane, right-click on the domain and select Find.
Select the appropriate domain beside In.
Beside Name, type the name of the user you want to modify and click Find Now.
In the Search Results, double-click on the user.
Click the Additional Account Info tab.
View the value for Last-Logon-Timestamp.

2) Using VBScript

This code prints the last logon timestamp for a user.

' ------ SCRIPT CONFIGURATION ------
strUserDN = "" ' e.g. cn=gmusumeci,ou=Users,dc=musumeci,dc=local
' ------ END CONFIGURATION ---------

set objUser = GetObject("LDAP://" & strUserDN)
set objLogon = objUser.Get("lastLogonTimestamp")
intLogonTime = objLogon.HighPart * (2^32) + objLogon.LowPart
intLogonTime = intLogonTime / (60 * 10000000)
intLogonTime = intLogonTime / 1440
WScript.Echo "Approx last logon timestamp: " & intLogonTime + #1/1/1601#

Wednesday, March 05, 2008

MS: Internet Explorer 8 Beta 1 available!

Today MS released to the web the first beta (Beta 1) of Internet Explorer 8 for Windows XP, Vista, Windows 2003 and Windows 2008 (x86 and x64)

Internet Explorer Team Blog

Internet Explorer 8 Download Page

Tuesday, February 26, 2008

CTX: Extending your Citrix and Terminal Server

Extending your Citrix and Terminal Server environment using .NET and other technologies.

http://www.jasonconger.com

MS: How to Install Exchange 2007 SP1 Prerequisites on Windows Server 2008

If you are deploying a new Exchange organization, and you are preparing your Active Directory schema and domain(s) by using a computer running Windows Server 2008, you must first install the Active Directory remote management tools on Windows Server 2008 prior to preparing the schema or a domain by using the following command:

ServerManagerCmd -i RSAT-ADDS

For more information about preparing the Active Directory schema and domains, see How to Prepare Active Directory and Domains

To install the Windows Server 2008 operating system prerequisites for Client Access servers

Open a Command Prompt window.
Install Windows PowerShell, which is included in Windows Server 2008 (but not installed by default) by running the following command:

ServerManagerCmd -i PowerShell

Install the necessary IIS prerequisites by running the following commands in the order in which they are listed:

ServerManagerCmd -i Web-Server
ServerManagerCmd -i Web-ISAPI-Ext
ServerManagerCmd -i Web-Metabase
ServerManagerCmd -i Web-Lgcy-Mgmt-Console
ServerManagerCmd -i Web-Basic-Auth
ServerManagerCmd -i Web-Digest-Auth
ServerManagerCmd -i Web-Windows-Auth
ServerManagerCmd -i Web-Dyn-Compression

If the server will support Outlook Anywhere clients, install the RPC over HTTP proxy feature by running the following command:

ServerManagerCmd -i RPC-over-HTTP-proxy

To install the Windows Server 2008 operating system prerequisites for Edge Transport servers

Open a Command Prompt window.
Install Windows PowerShell, which is included in Windows Server 2008 (but not installed by default) by running the following command:

ServerManagerCmd -i PowerShell

Install Active Directory Lightweight Directory Services (AD LDS), which was previously known as Active Directory Application Mode (ADAM), by running the following command:

ServerManagerCmd -i ADLDS

To install the Windows Server 2008 operating system prerequisites for Hub Transport servers

Open a Command Prompt window.
Install Windows PowerShell, which is included in Windows Server 2008 (but not installed by default) by running the following command:


ServerManagerCmd -i PowerShell

To install the Windows Server 2008 operating system prerequisites for Mailbox servers

Open a Command Prompt window.
Install Windows PowerShell, which is included in Windows Server 2008 (but not installed by default) by running the following command:

ServerManagerCmd -i PowerShell

Install the necessary IIS prerequisites by running the following commands in the order in which they are listed:

ServerManagerCmd -i Web-Server
ServerManagerCmd -i Web-ISAPI-Ext
ServerManagerCmd -i Web-Metabase
ServerManagerCmd -i Web-Lgcy-Mgmt-Console
ServerManagerCmd -i Web-Basic-Auth
ServerManagerCmd -i Web-Windows-Auth

If the Mailbox server will be clustered, you must also install the Failover Clustering feature by running the following command:

ServerManagerCmd -i Failover-Clustering

To install the Windows Server 2008 operating system prerequisites for Unified Messaging servers

Open a Command Prompt window.
Install Windows PowerShell, which is included in Windows Server 2008 (but not installed by default) by running the following command:

ServerManagerCmd -i PowerShell

Install the Microsoft Windows Media Player audio/video codecs required by the Unified Messaging server by running the following command:

ServerManagerCmd -i Desktop-Experience

To install the Windows Server 2008 operating system prerequisites for a computer that will host the Hub Transport, Client Access, and Mailbox server roles

Open a Command Prompt window.
Install Windows PowerShell, which is included in Windows Server 2008 (but not installed by default) by running the following command:

ServerManagerCmd -i PowerShell

Install the necessary IIS prerequisites by running the following commands in the order in which they are listed:

ServerManagerCmd -i Web-Server
ServerManagerCmd -i Web-ISAPI-Ext
ServerManagerCmd -i Web-Metabase
ServerManagerCmd -i Web-Lgcy-Mgmt-Console
ServerManagerCmd -i Web-Basic-Auth
ServerManagerCmd -i Web-Digest-Auth
ServerManagerCmd -i Web-Windows-Auth
ServerManagerCmd -i Web-Dyn-Compression


If the server will support Outlook Anywhere clients, install the RPC over HTTP proxy feature by running the following command:

ServerManagerCmd -i RPC-over-HTTP-proxy

To install the Windows Server 2008 operating system prerequisites for the Exchange management tools

Open a Command Prompt window.
Install Windows PowerShell, which is included in Windows Server 2008 (but not installed by default) by running the following command:

ServerManagerCmd -i PowerShell

Install the necessary IIS prerequisites by running the following commands in the order in which they are listed:

ServerManagerCmd -i Web-Metabase
ServerManagerCmd -i Web-Lgcy-Mgmt-Console

Saturday, February 23, 2008

Off-topic: Resumania

"Resumania" is a term coined by Robert Half, founder of the specialized staffing firm Robert Half International Inc. (RHI), to describe errors made by job seekers on resumes, applications and cover letters. He first published Resumania in his company newsletter back in 1966 and encouraged readers to submit items that they came across. Soon, he began receiving a steady flow from colleagues throughout the United States. Its popularity grew, and the never-ending supply of Resumania continues today! These examples have come our way from clients and businesses worldwide over the years.

http://www.resumania.com

Wednesday, February 20, 2008

10 Speed Tweaks that can make a huge difference in Vista performance

1. Turn off Windows Search Indexing
Windows Vista search indexing is constantly reviewing files on your system to make their contents available for quick searching. This is handy, but can severely impact system performance. To disable constant indexing:

Click Start then Computer
Right Click the C: Drive
On General Tab, Uncheck Index this drive for faster searching
On the subsequent dialog box, Select Include subfolders and files

2. Turn off Remote Differential Compression
Remote Differential Compression measures the changes in files over a network to transfer them with minimal bandwidth rather than transferring an entire file that has previously been moved. By constantly checking for file changes, this service can hinder system performance. To disable this service:

Open Control Panel
Switch to Classic View
Select Program Features
Choose Turn Windows features on and off
Scroll down and uncheck Remote Differential Compression

3. Turn off Automatic Windows Defender Operation
Windows Defender real-time protection against malware continues to run despite having Automatic operation disabled. To disable this feature:

Open Control Panel
Select Windows Defender
Choose Tools from the top menu
Select Options
Uncheck Auto Start at the bottom of the window

4. Turn off Automatic Disk Defragmentation
Windows Vista and its always-on defragment feature isn't really that necessary and can cause system slow down. Just remember to run a defrag manually every week or so. To disable this:

Click Start then Computer
Right Click the C: Drive
Select the Tools Tab
Uncheck Run on a schedule

5. Add a 2GB or higher USB Flash drive to take advantage of Windows Ready Boost(Additional Memory Cache)
Ready Boost is Microsoft's name for using a USB thumb/flash drive to provide some quick access memory the operating system can use as extra RAM. The Ready Boost system can significantly improve system performance. To set this up:

Insert a USB Flash Drive
Click Start then Computer
Right Click the USB Drive in My Computer
Select the Ready Boost Tab
Choose Use this device
Select as much space as you can free up for RAM usage vs. Storage

6. Turn off Windows Hibernation
Windows hibernation background services can use a large amount of system resources. If you don't use the Hibernate feature on a regular basis you may want to disable it to give Vista a performance boost. To disable Hibernation:

Select the Control Panel then Power Options
Click Change Plan Settings
Click on Change Advanced Power Settings
Expand the Sleep selection
Expand the Hibernate After selection
Crank the selector down to zero
Click Apply

7. Turn off System Restore
Analysis and restore point creation by Windows Vista can eat a fair amount of system resources. Disabling this service will obviously mean the system restore feature in Vista will not be available in the event of a system crash. Change this at your own risk. To disable this service:

Control Panel>System
Click System Protection on the left panel
Uncheck the main system drive
Agree to the confirmation

8. Disable User Access Control (UAC)
This much-loathed new Vista feature attempts to protect your system from malware infection by making you manually confirm a whole host of everyday user operations. While it doesn't directly impact performance, it can be annoying and might be more hassle than good. To disable User Access Control:

Click Start then Control Panel
Select User Accounts
Select Turn User Account Control on or off
Uncheck User Account Control Box
Restart as recommended

9. Disable excess Windows Services that Auto-Launch at Startup
Just like Windows XP, Vista ships with all kinds of services enabled that load at startup and may never be used by most users. To see what loads at startup and disable the ones you likely won't be needing (they can always be started manually later):
Click Start then Control Panel

Select Administrative Tools
Choose System Configuration
Click the Services Tab
You can safely deselect:
Offline Files (unless you're using Offline File Sync)
Tablet PC Input Service (unless you have a tablet PC)
Terminal Services
Windows Search (If you have already disabled indexing)
Fax (unless you're using a fax modem)

10. Disable Excess Windows Features
Windows ships with other features that are listed separately in the Vista operating system from the startup services. You can view and disable these features by:

Clicking Start then Control Panel
Select Program Features
On the left panel, select Turn Windows Features on or off
You can safely deselect:
Indexing Service
Remote Differential Compression
Tablet PC Optional Components
Windows DFS Replication Service
Windows Fax & Scan (unless you use a modem for faxing)
Windows Meeting Space (unless you use the Live Meeting Service)

Monday, February 04, 2008

MS: Windows 2008 and Windows Vista SP1 are RTM!

Microsoft released today (February 4th) both Windows Server 2008 and Windows Vista SP1.
Both operating systems will be available in March.

Thursday, December 20, 2007

VMware: VMware ESX Tools

Visioncore
http://www.vizioncore.com

PlateSpin
http://www.platespin.com

Veeam
http://www.veeam.com

MS: Exchange 2007 Guides

Exchange Server 2007 Design and Architecture at Microsoft

How the Microsoft Information Technology organization designed the corporate Exchange Server 2007 environment Technical White Paper.

Managing the Calendaring and Collaboration Process By Using Exchange Server 2007 Web Services

Microsoft is using Exchange Server 2007 Web Services to support communication and collaboration for two of its own internal applications. This case study provides a technical-level overview of how Microsoft developers are using Exchange Server 2007 Web Services.

Daily Operations with Exchange 2007

Operating a Global Messaging Environment by Using Exchange Server 2007 Technical White Paper

Exchange Server 2007 Deployment Checklist

This technical white paper discusses the deployment checklists that the Exchange Messaging team created based on the Exchange Server 2007 architecture and design specifications for the corporate production environment.

MS: Optimizing Outlook 2007 Cache Mode Performance for a Very Large Mailbox

How to optimize Outlook 2007 Cache Mode Performance for a Very Large Mailbox in a Exchange Server
http://msexchangeteam.com/archive/2007/12/17/447750.aspx

Post Number 300!

This is my post number 300 of Enterprise Architectures and my first post in this blog posted in the United States.

I moved to the Bethesda, Maryland, United States, and left Madrid, Spain.

As soon my container arrive home and cable modem is ready, I will continue with this blog.

Thursday, September 27, 2007

CTX: Enable USB Memory Stick on Citrix Presentation Server

Symptoms:
When connecting a USB memory stick to a system prior to starting an ICA session, the drive is not mapped in the ICA session.

Cause:
The USB memory stick is detected as a Device with Removable Storage rather than a local hard disk device.


Refer to the following note: http://support.citrix.com/article/CTX112315

Thursday, September 20, 2007

SCRIPT: Reset Permissions on a Folder

First you will need to download xcacls.exe from Microsoft.

Then you will to run this command:

xcacls "D:\DATA" /t /g "CREATOR OWNER":F "SYSTEM":F "Domain Admins":F "Domain Users":C

This example will reset all permissions on the D:\DATA folder and assign Full Permissions(F) to CREATOR OWNER, SYSTEM and Domain Admins and Change Permissions(C) to Domain Users.

Tuesday, September 04, 2007

MS: SMS 2003 Technical Notes

SMS 2003 Home Page
http://www.microsoft.com/smserver/default.mspx

Systems Management Server 2003 Concepts, Planning, and Deployment Guide
http://www.microsoft.com/downloads/info.aspx?na=47&p=1&SrcDisplayLang=en&SrcCategoryId=&SrcFamilyId=009e0c30-bded-4b95-a8f9-06037de85c57&u=details.aspx%3ffamilyid%3d784838B3-34E0-4122-B3E2-17C5B4EEF8F4%26displaylang%3den

Systems Management Server 2003 Operations Guide
http://www.microsoft.com/downloads/info.aspx?na=47&p=2&SrcDisplayLang=en&SrcCategoryId=&SrcFamilyId=009e0c30-bded-4b95-a8f9-06037de85c57&u=details.aspx%3ffamilyid%3dBD2B3619-4704-4C19-A00B-628E65F6F826%26displaylang%3den

Systems Management Server 2003 Troubleshooting Flowcharts
http://www.microsoft.com/downloads/info.aspx?na=47&p=4&SrcDisplayLang=en&SrcCategoryId=&SrcFamilyId=009e0c30-bded-4b95-a8f9-06037de85c57&u=details.aspx%3ffamilyid%3d4FEFC083-D789-40DB-9B06-3E0D5916EF51%26displaylang%3den

SMS 2003 Capacity Planner
http://www.microsoft.com/downloads/details.aspx?familyid=009e0c30-bded-4b95-a8f9-06037de85c57&displaylang=en

Scenarios and Procedures for Microsoft Systems Management Server 2003: Planning and Deployment
http://www.microsoft.com/technet/sms/2003/library/spgsms03/spsms01.mspx

Scenarios and Procedures for Systems Management Server 2003: Planning and Deployment
http://www.microsoft.com/downloads/details.aspx?FamilyId=E0644BB4-2336-4254-8A18-9BC180713F7E&displaylang=en

Systems Management Server 2003 Product Documentation
http://technet.microsoft.com/en-us/sms/bb676794.aspx

How to troubleshoot Advanced Client Push Installation issues in Systems Management Server 2003
http://support.microsoft.com/kb/925282

Status message 4909, 4912, 4913, or 4915, or error code 8202 after you install Systems Management Server 2003
http://support.microsoft.com/kb/830022/

How to Verify Site Information is Published to Active Directory Domain Services
http://www.microsoft.com/technet/prodtechnol/sms/smsv4/smsv4_help/3e263597-08cf-4a60-9738-3299b5fc63c8.mspx?mfr=true

Active Directory Schema Modification and Publishing for Systems Management Server 2003
http://www.microsoft.com/downloads/details.aspx?FamilyID=d1de764c-8e26-455f-bee5-34fb1ca9f2c4&DisplayLang=en

Deploying Custom Software Updates with SMS 2003 R2
http://www.microsoft.com/technet/technetmag/issues/2007/04/CustomUpdates/?related=/technet/technetmag/issues/2007/04/CustomUpdates

SMS 2003 Clients Frequently Asked Questions
http://www.microsoft.com/technet/sms/2003/library/techfaq/tfaq03.mspx

How to remove a Systems Management Server 2003 client
http://support.microsoft.com/default.aspx/kb/826842

An advertisement may not run on remote roaming Advanced Clients after you configure the advertisement to run from a remote distribution point in SMS 2003
http://support.microsoft.com/kb/909387

An SMS 2003 Advanced Client cannot locate a distribution point
http://support.microsoft.com/kb/922364

A list of log files that are created in Systems Management Server 2003
http://support.microsoft.com/kb/867490/

How to troubleshoot problems that occur when you use SMS 2.0 or SMS 2003 to advertise programs to SMS clients
http://support.microsoft.com/kb/826854/

The Quick and Cheap Steps to Perform a Lab Installation of SMS 2003 Using Evaluation Code
http://blogs.technet.com/kevinsul_blog/pages/the-quick-and-cheap-steps-to-perform-a-lab-installation-of-sms-2003-using-evaluation-code.aspx

Thursday, August 30, 2007

MS: Ports That SMS 2003 Uses To Communicate Through A Firewall

This article lists the ports that Microsoft Systems Management Server (SMS) 2003 uses to communicate through a firewall or through a proxy server.

http://support.microsoft.com/kb/826852

Wednesday, August 22, 2007

MS: SQL Server Login Failed for SMS 2003 Secondary Site server account

Error Message:

Event Type: Failure
AuditEvent Source: MSSQLSERVER
Event Category: (4)
Event ID: 18456
Date: 22/08/2007
Time: 13:18:24
User: SMSDEMO\GMPIL-SMS2$
Computer: GMPIL-SMS1
Description:Login failed for user 'SMSDEMO\GMPIL-SMS2$'. [CLIENT: 192.168.179.102]

MSSQLSERVER 18456 Login failed for user SMS 2003

Solution:

Add the computer account of the Secondary Site server to the SMS_SiteSystemToSQLConnection_ local group on the Primary Site server.
This allows the Secondary Site server to access the Primary Site server's SQL database.

Tuesday, July 31, 2007

MS: Loading Unsigned Drivers in Windows Vista

Atsiv is a command line tool that allows the user to load and unload signed or unsigned drivers on 32 and 64 bit versions of Windows XP, Windows 2003 and Windows Vista. Atsiv is designed to provide compatibility for legacy drivers and to allow the hobbyist community to run unsigned drivers without rebooting with special boot options or denial of service under Vista.

http://www.linchpinlabs.com/resources/atsiv/usage-design.htm

Thursday, July 26, 2007

MS: How To Obtain The Latest Update Rollup for Exchange 2007

This article describes how to obtain the latest update rollup for Microsoft Exchange Server 2007. Update rollups are a common way to distribute Exchange 2007 fixes (Hotfix) and Exchange 2007 modifications. You can install the latest update rollup to help keep the product up to date.

http://support.microsoft.com/kb/937052

Monday, July 23, 2007

MS: How to Perform an Unattended Install of Windows XP

This document explain how to Perform an Unattended Install of Windows XP

Contents:
  • How to perform an unattended install of Windows XP
  • Create a Basic Unattended CD Step by Step
  • Create an Advanced Unattended CD Step by Step
  • OEM Distribution Folders
  • Add drivers to unattended setup
  • The WINNT.SIF file for advanced unattended CD
  • Install applications using the unattended setup
  • Remove folders to save CD space
  • WINNT.SIF Extra Switches
Download the document in PDF format here

VMware: How to install Microsoft Windows 2008 Core on VMware Server

How to install Microsoft Windows 2008 Core (Beta 3) on VMware Server

This document explain how to install Windows 2008 Core (Beta 3) on VMware Server.


Contents:
  • Create a Virtual Machine for Windows 2008 Core
  • Install VMware Tools
  • Set or change the administrative password
  • Change the screen resolution
  • Configure the network card (IP Address, DNS, WINS, Firewall)
  • Rename the server
  • Join the machine a domain / Workgroup
  • Remove the server from the domain
  • Restart the computer
  • Remote Desktop
  • Windows Update
  • System Properties
  • Configure Pagefile
  • Hotfix Management
  • Applications Management
  • Drivers Management
  • Activate the server
  • Services and Process Management
Download the document in PDF format here

Friday, July 20, 2007

VMware: Change the Screen Resolution on Windows 2008 Core (on VMware Server)

To change the screen resolution on a Windows 2008 Core you have two choices:

1) Run regedit.exe on another computer to remotely access the registry on the Server Core.

2) Change manually.

The registry key with the resolution information is:

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Video

Under this key will be a list of GUIDs and you will need to determine which one corresponds to your video card/driver. Under the GUID, you can set:

\0000\DefaultSettings.XResolution
\0000\DefaultSettings.YResolution

For example: To change the resolution on a VMware Server, search for "Device Description"="VMware SVGA II"

To manually change resolution on a Windows 2008 Core server on the Command Prompt type:

reg export HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Video /s video.reg

Then you will need to edit the video.reg, change the resolution (The values are on Hex), remove the rest of info and save the file.

This an example from VMware Server machine at 800x600:

---- Start Video800.reg ----
Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Cofntrol\Video\{621060A6-5E79-471A-A468-DD745B2DD17C}\0000]"

DefaultSettings.XResolution"=dword:00000320
"DefaultSettings.YResolution"=dword:00000258

---- End Video800.reg ----

Finally at the command prompt type:

REG IMPORT Video800.reg

MS: Insufficient System Resources Exist to Complete the API Error

The computer occasionally does not hibernate and you receive an "Insufficient System Resources Exist to Complete the API" error message in Windows XP with Service Pack 2, in Windows XP Tablet PC Edition 2005, or in Windows XP Media Center Edition 2005

When you experience this problem, the hibernate feature is not available on the computer until you restart the computer.

This problem typically occurs when the computer uses 1 gigabyte (GB) or more of RAM.

http://support.microsoft.com/kb/909095

Thursday, July 19, 2007

MS: Windows 2003 SP2 SLP and Exchange Problems

Windows 2003 SP2 Scalable Networking pack and its possible effects on Exchange
http://msexchangeteam.com/archive/2007/07/18/446400.aspx

MS: SMS 2003 Product Documentation

Systems Management Server 2003 Product Documentation
http://go.microsoft.com/fwlink/?linkid=9502

Systems Management Server 2003 Concepts, Planning, and Deployment Guide
http://www.microsoft.com/technet/prodtechnol/sms/sms2003/cpdg

Systems Management Server 2003 Operations Guide
http://www.microsoft.com/technet/prodtechnol/sms/sms2003/opsguide

MS: Unattended Install DOSHERE.INF

To unattended install the nice tool from PowerToys DOSHERE.INF you will need to create a new registry file and run using REGEDIT /S DOSHERE.REG

--- Start DOSHERE.REG file ---

REGEDIT4
[HKEY_CLASSES_ROOT\Drive\Shell\cmd]@="Command Prompt Here"
[HKEY_CLASSES_ROOT\Drive\Shell\cmd\command]@="cmd.exe /k \"cd %L\""
[HKEY_CLASSES_ROOT\Directory\Shell\cmd]@="Command Prompt Here"
[HKEY_CLASSES_ROOT\Directory\Shell\cmd\command]@="cmd.exe /k \"cd %L\""


--- End DOSHERE.REG file ---

MS: Third-Party Solutions for SMS

Web Sites:

MyITForum is the premier online destination for IT professionals responsible for managing their corporations’ Microsoft Windows systems; it is especially useful for IT professionals working with Microsoft Systems Management Server. (
http://www.myitforum.com)

FAQshop endeavors to provide a “one-stop-shop” for systems management questions, answers, and utilities. (
http://www.faqshop.com)

SMS Alliance is a consortium of companies that leverage joint resources to strengthen the capabilities and benefits of SMS. Their mission is to provide organizations with the best-of-breed solutions and services to enhance and extend SMS 2003. (
http://www.sms-alliance.com)

1E is one of the founding members of the SMS Alliance, 1E is a company on the cutting edge of systems management. It enhances and extends Microsoft management and deployment technologies, delivering advanced automation and reporting across the enterprise. (
www.1e.com)

Macrovision Corporation, another founding member of the SMS Alliance, Macrovision Corporation is a recognized leader in software deployment packaging, software installation, and software updating solutions. They offer one of the best software packaging tools with AdminStudio.
(
http://www.macrovision.com/)

PS’SOFT, as a founding member of the SMS Alliance, offers extenders for SMS 2003 that focus on IT asset management. They offer a web-based software cataloging system called SMS Software Requests. (
www.pssoft.com)

Vintela, another founding member of the SMS Alliance, Vintela offers a seamless solution to extend security and compliance of Microsoft Active Directory to Unix, Linux, and other platforms and applications. They offer solutions that help IT administrators manage Unix, Linux, and MAC systems using SMS 2003. Vintela is now part of Quest Software. (
www.vintela.com)

iAnywhere, the last founding member of the SMS Alliance, iAnywhere offers frontline security and management to SMS and provides extensions to manage your enterprise’s mobile and wireless devices through SMS. (
www.iAnywhere.com)

AppDeploy is the Internet resource to go to when you need to script or repackage an application for distribution. Among other points of interest at the site is a massive library of applications, sorted by application name and vendor name. For each application listed, you’ll find a community-based thread discussing the best practices, links, scripts, and challenges met/overcome with working with the application in regard to installation scripting/repackaging.(http://www.appdeploy.com/)

DesktopEngineer is perhaps one of the best resources in the Windows Installer arena. This site offers a wealth of information on Windows Installer technology, techniques, and troubleshooting tips. I have noticed that he is starting to increase the content related to Microsoft’s upcoming PowerShell scripting language. (http://www.desktopengineer.com/)

Tools

SMSView is a utility that is used to extend the functionality of the Microsoft Systems Management Server 2003 advanced client. SMSView allows you to perform the following actions on an SMS advanced client: All nonadmin users to view current mandatory assignments and advertisement status, View advertisement history (past 60 days), View current mandatory assignments, Rerun advertisements, Remote operations (remotely view and manage the SMS client), Display hardware/software inventory status, Display management point/proxy management point, Repair the SMS advanced client. (
http://www.smsview.com/)

SMS 2003 Monster MOF is a MOF file that contains several new classes of MOF that will improve SMShardware inventory capabilities. The Monster MOF will enhance inventory data without requiring intimate knowledge of the SMS_DEF.MOF file. (
www.smsexpert.com)

SMS 2003 Web Remote Tools assist SMS administrators and allow client administration from a web page. (
http://www.myitforum.com/articles/19/view.asp?id=8662)

Corey Becht’s Right-Click Tools is one of the best set of tools for all SMS administrators. This tool allows you to right click on any collection or individual PC within the SMS Administrator console and initiate hardware inventory, reassign the site code, restart the SMS Agent Host service, rerun advertisements without modifying the advertisement, perform discovery, initiate software inventory, create file collections, monitor software metering usage, refresh machine policies, evaluate policies, update Windows installer sources,change port number, and change cache size.These tools can run per computer resource or for all the members of a collection.(
www.myitforum.com/articles/8/view.asp?id=7099)

Microsoft SMS Toolkit 2: Microsoft released a very nice set of tools for SMS called the SMS Toolkit version 2 . It contains the following tools: IIS Lockdown 2.1 Template, URLScan 2.5 Template, Policy Spy, SMS Trace, Advanced Client and Management Point Cleaner, Advanced Client Spy, Policy Verifier, Send Schedule, Management Point Spy, Set Preferred Distribution Point and CAP, Delete Certificate, Patch Management Evaluation, Delete Group Class, Transfer SMS ID, Package Loader, Management Point Troubleshooter, Client Site Assignment Verifier, Site Boundary Tool, Create Secondary Site Tool, Create SMS Address Tool.(
www.microsoft.com/smserver/downloads/2003/tools/toolkit.mspx)


Security Logon Audit Tool (SLAT) extends SMS hardware inventory to include user logon information.This data can be used in web reports and queries. The tool includes the following samplereports: Top users for all systems, User logon information for a specific computer, Systems where the last logged-on user is not the top user, Systems where a specific user has logged on SLAT searches the security event log for the 528 event, which is created when user logon events occur and is enabled via Group Policy. (http://www.systemcentertools)

Enhanced System and User Discovery Tools, out of the box, SMS 2003 does a pretty good job of discovering systems from Active Directory. It’s not perfect, though—there are a few gaps in its methods. The Enhanced System Discovery tool, assists in filling these gaps. Out of the box, SMS 2003 does not perform Windows NT 4 domain discovery. This tool solves that by enumerating all machines from a list of NT 4 domains, resolving their IP addresses from DNS or WINS, and creating data discovery records for each system. (http://www.systemcentertools/)

BITS Bandwidth Manager is an SMS Installer script that lets you throttle BITS bandwidthon Windows XP SP2 systems. You do not need to manually adjust any settings. The script takes care of the Registry key manipulation for you.(http://www.myitforum.com/inc/upload/11332BITSManager.zip)

1E SMSWakeUp: this WOL product is able to turn on computers after they have been shut down by users. The wake cycle can be triggered on a regular schedule to power up systems in preparation for the workday, or to perform software deployment activities. (http://www.1e.com/)

1E NightWatchman: Since we are talking about waking systems that have been shut down, it maybe a good practice to examine how best to shut down those systems in the first place. Why dowe want to shut down systems? We do this to enforce reboot cycles and to save energy costs. (http://www.1e.com/)

1E SMSNomad Branch: Some offices may not have the server hardware to allow for a Distribution Point (DP). But those offices may have a substantial number of users and/or be separated from the rest of the network by a low-speed or saturated WAN link, which you would rather not send multiple copies of a package across. SMSNomad Branch acts similar to a peer-to-peer network, allowing other computers to become DPs. If one machine is shutdown, another is selected as the DP. Included in this technology is multicast, increasing its efficiency to reduce network traffic on the local network segment. (http://www.1e.com/)

1E OSD Plus Pack: This is an enhancement to the SMS OSD Feature Pack. It allows you to leverage the SMS OSD Feature Pack in offices that do not have DPs. OSD Plus Pack offers similar functionality to SMSNomad Branch, but also has a few other applications bundledwith it: State Migration Editor, which is an interface for the User State Migration Tool, AppMigrator, which allows the automatic reinstallation of applications after OS imaging, PXE Lite, which is a local PXE server to allow deployment of OS images to bare-metalmachines booted from the network PXE server. (http://www.1e.com/)

SMS Companion 2006: This product provides WOL capabilities, similar to 1E’s SMSWakeUp, but leverages slightly different technologies behind the scenes. A key difference is that SMS Companion puts systems in hibernation, rather than powering them off. The following are some of the key applications included with this product:Wake-on-Schedule: Allows clients to come out of a hibernation state. Service Windows: Allows you to restrict the SMS inventory and software distributions from happening during specific time periods, to reduce or eliminate user interruptions. Load Balancing: Allows you to reduce peak network and SMS server loading by making sure that the clients use these resources in a controlled manner. (http://www.smsexpert.com/)

Quest Management Xtensions for SMS: Since Windows platforms are not the only systems in an enterprise, you may need a way tomanage other platforms, such as Unix, Linux, and Mac OS X. These management extensions offer that capability for SMS 2003. One of the unique aspects of this product is its support route: first-level support is handled by Microsoft Product Support Services. (http://www.quest.com/quest-management-xtensions-for-sms)

MS: Redirect Desktop or Favorites to a Different Disk or Folder

Sometimes you need to keep your desktop or your favorites in a different disk partition or folder, in my case for backup purposes.

You will need to modify two registry keys:

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders

Saturday, July 14, 2007

VMware: Install Windows Vista x86 on ESX Server 3.0

1) Create a new VM with at least 512 MB of RAM and a 16 GB Hard Disk.
2) Copy the IMG/ISO of Windows Vista and the Floppy drive image to the ESX host using Veeam FastSCP, or insert the DVD and a Floppy with the driver into the ESX host.
3) Connect the IMG/ISO file to the Windows Vista VM. Make sure the "Connected" is selected.
4) Power on the Windows Vista VM.
5) Vista install starts and then stops at a point where it can't find the CD/DVD driver. A pop-up with "Load Driver" as the title appears indicating that a required device driver at this point.
6) Connect the Floppy drive image (and ensure "Connected" is selected).
7) After ESX has attached the floppy drive, click on "Rescan".
8) Continue the Setup of Windows Vista.
9) Remove the floppy image from the VM or uncheck "Connected".

Download the Floppy Image with the CD-ROM Driver from http://sti.epfl.ch/intranet/informatique/virtualisation/drivers-vista-rtm-esx.flp.zip

Thursday, July 12, 2007

VMware: Veeam FastSCP for ESX Transfer Timeout

Cannot transfer or edit files on ESX. Transfer timeout. No data transferred in the last 20 seconds.
To fix this problem please check whether the EMC AAM Client is opened for outgoing connections. It should be open to get FastSCP 2.0 work.
(You can enable it through the VI client: Configuration->Security Profile->Properties)

VMware: Exchange Server 2003 Performance on VMware ESX Server 3

This paper discusses the performance and scalability of Microsoft Exchange Server 2003 when deployed within virtual machines running under VMware ESX Server 3.01.

http://www.vmware.com/pdf/Virtualizing_Exchange2003.pdf

Wednesday, July 11, 2007

VMware: VMware Converter Runtime Error

When you run the VMware Converter v3.0.1 you get this error:

Create the C:\TEMP directory, and then correct Enviroment Variables for the current username and System Variables (Control Panel, System, Advanced,Enviroment Variables)

Tuesday, July 10, 2007

VMware: SSH Access to ESX Server 3.0

Direct root user ssh connections are disabled by default in fresh installations of VMware ESX 3.0 (VI3). Two options:

1) The recommended way to access the system is to ssh to the server as a non-root user and then use the su command to switch to the root account; this leaves an audit trail for accountability purposes.

2) An alternative way to allow root access is to configure ssh to allow the root user to log in.

Edit the ssh configuration file:

* vi /etc/ssh/sshd_config
* Find PermitRootLogin and change to yes (use ESC, then Insert)
* Save the changes (ESC then :wq!)
* Restart the ssh daemon: service sshd restart

3) You can download Veeam RootAccess Wizard from http://www.veeam.com
Veeam RootAccess Wizard helps you to enable or disable remote root access, or create a regular non-root user account. The newly created non-root user will belong to the default ‘users’ group and will be automatically granted remote ssh access. Su or sudo commands can then be used to elevate to the root account for privileged operations.


Thursday, July 05, 2007

Script: Detect VirusScan Installed in a Remote Machine

@echo off
rem * Change MachineName Here *
set machinename=192.168.1.100

rem * Change UsernmeName Here *
set username=Administrator

rem * Change Password Here *
set Password=Passw0rd

net use \\%MachineName%\C$ %Password% /USER:%Username%
psservice
\\%machinename% query mcshield findstr /i "mcshield"
if not errorlevel 1 goto Installed

echo ** Virusscan NO installed **
goto VSEnd

:Installed
echo ** Virusscan 8.0 installed **
Goto VSEnd

:VSEnd

Remove HP Universal Print Monitor

To remove the HP Universal Print Monitor you'll want to go into the registry and delete the following entries:

HKLM\SYSTEM\CURRENTCONTROLSET\CONTROL\MONITORS

HKLM\SYSTEM\CURRENTCONTROLSET\CONTROL\Print\MONITORS\HP Universal Printing PCL5


HKLM\SYSTEM\CURRENTCONTROLSET\CONTROL\Print\MONITORS\HP Universal Print Monitor"

You can delete this key using this command in a script:

reg delete "HKLM\SYSTEM\CURRENTCONTROLSET\CONTROL\Print\MONITORS\HP Universal Print Monitor" /f

Wednesday, July 04, 2007

MS: Exchange 2007 IMAP4 Client Access Configuration

1. Set MSExchangeIMAP4 service to automatic
Set-service msExchangeIMAP4 -startuptype automatic

2.Configure IP Address and Port for IMAP4

a.To set the IP address and port for communicating with Exchange using IMAP4 with SSL, run the following command:
Set-IMAPSettings -SSLBindings: IPaddress:Port

b.To set the IP address and port for communicating with Exchange using IMAP4 with no encryption or Transport Layer Security (TLS) encryption:
Set-IMAPSettings -UnencryptedOrTLSBindings IPaddress:Port

3.Configure IMAP4 Authentication - IMAP4 (143) /IMAP4 SSL (993)

a.If you will not be using TLS encryption and you want to allow Basic authentication on an unsecured port, run the following command:
Set-IMAPSettings -LoginType PlainTextLogin

b.If you will not be using TLS, but you want to restrict Basic authentication to use only secured ports, run the following command:
Set-IMAPSettings -LoginType PlainTextAuthentication

c.If you want to use TLS encryption before authentication, run the following command:
Set-IMAPSettings -LoginType SecureLogin

4.Enable IMAP4 Protocol for the User Mailbox (Enabled by default)
Set-CasMailbox MailboxName -IMAPenabled:$true ($false disables the protocol for the specified user)

5.Configure the SMTP Receive Connector on the Exchange Server to Allow Anonymous in order to send Email using the following command:
Set-ReceiveConnector "Servername\default Servername" -PermissionGroups “ExchangeServers,ExchangeUsers,ExchangeLegacyServers,AnonymousUsers"

6.Restart the Microsoft Exchange IMAP4
ServiceRestart-service MSExchangeIMAP4

7. Check the status of the Microsoft Exchange IMAP4
ServiceGet-Service MSExchangeIMAP4

8.Dump the IMAP4 configuration
Get-IMAPSettings

Note: Remember do not use the Administrator account to test IMAP4, IMAP, SMTP.

MS: Exchange 2007 POP3 Client Access Configuration

1. Set MSExchangePOP3 service to automatic
Set-service msExchangePOP3 -startuptype automatic

2.Configure IP Address and Port for
POP3

a.To set the IP address and port for communicating with Exchange using
POP3 with SSL, run the following command:
Set-PopSettings -SSLBindings: IPaddress:Port

b.To set the IP address and port for communicating with Exchange using
POP3 with no encryption or Transport Layer Security (TLS) encryption:
Set-PopSettings -UnencryptedOrTLSBindings IPaddress:Port

3.Configure
POP3 Authentication - POP3 (110) /POP3 SSL (995)

a.If you will not be using TLS encryption and you want to allow Basic authentication on an unsecured port, run the following command:
Set-PopSettings -LoginType PlainTextLogin

b.If you will not be using TLS, but you want to restrict Basic authentication to use only secured ports, run the following command:
Set-PopSettings -LoginType PlainTextAuthentication

c.If you want to use TLS encryption before authentication, run the following command:
Set-PoPSettings -LoginType SecureLogin

4.Enable
POP3 Protocol for the User Mailbox (Enabled by default)
Set-CasMailbox MailboxName -Popenabled:$true ($false disables the protocol for the specified user)

5.Configure the SMTP Receive Connector on the Exchange Server to Allow Anonymous in order to send Email using the following command:
Set-ReceiveConnector "Servername\default Servername" -PermissionGroups “ExchangeServers,ExchangeUsers,ExchangeLegacyServers,AnonymousUsers"

6.Restart the Microsoft Exchange
POP3 Service
Restart-service MSExchangepop3

7. Check the status of the Microsoft Exchange POP3 Service
Get-Service MSExchangepop3

8.Dump the POP3 configuration

Get-PopSettings

Note: Remember do not use the Administrator account to test POP3, IMAP, SMTP.

Tuesday, July 03, 2007

MS: Terminal Server Printer Redirection Wizard Tool

This tool will help resolve Terminal Server Printer Redirection errors by scanning the event log of a Terminal Server or Citrix server to create a custom mapping file for administrators.

The Terminal Server Printer Driver Redirection Wizard will help you troubleshoot and replace print drivers that were unsuccessfully redirected. This tool automates the process found in the Microsoft Knowledge Base article KB239088 entitled “Windows 2000 Terminal Services Server Logs Events 1111, 1105, and 1006”. http://support.microsoft.com/?id=239088

This tool will scan a server’s System Event Log and detect all events with Event ID 1111 and Source ‘TermServDevices.’ These events occur when a client machine has a printer driver that the Terminal Server does not recognize.


You can download the tool here

CTX: Event 39 - The CDM redirector has timed out a request to SessionID XX

Event Type: ErrorEvent
Source: CdmEvent
Category: NoneEvent
ID: 39
Date: 03/07/2007
Time: 5:07:34
User: N/A
Computer: SERVER
Description: The CDM redirector has timed out a request to SessionID XX.

This can happen when an application is attempting to access a client device during a disconnect. Check Citrix Server Administration when you see this event appear.
The best way to determine what client device is causing this issue is to turn off client device mapping (client drive, client COM ports, client printers).
Enable them one at a time and monitor the client's logon process.

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdm\Parameters

Increase the settings for the following:

RequestTimeout: Default is 60 (seconds)
DirCacheTimeout: Default is 30 (seconds)
CacheTimeout: Default is 60 (seconds)

Incresea these timeout x 2 or x3 (registry example)

--- Start Registry File ---


Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdm\Parameters]
"CacheTimeout"=dword:000000b4
"DirCacheTimeout"=dword:0000005a
"RequestTimeout"=dword:000000b4

--- End Registry File ---