none
Windows Server 2012 Essentials (Not R2) The server is not available. Try connecting this computer again

    Question

  • We recently had our ISP replace our modem/router. At the same time we were also replacing a lot of our office computers. The new router reassigned IPV4 address to the whole network. The two remaining computers from our old network have remained properly connect to the server. Our new computers, both Windows 7 Pro & 10 Pro are now getting the "Cannot connect the computer to the nework.. The server is not available. Try connecting this computer again.." when using the connector software from entering servername\connect into browser. 

    Clients attempting to connect are on workgroup named WORKGROUP. No dublicates device names on the network. No duplicate IP's. Date/Time matches on all devices.

    I have disabled IPV6 on clients (although the currently connected computers have IPV6 enabled and work just fine).

    I have pointed IPV4 properties preffered DNS server on clients to Server IP address.

    I have ran "ipconfig /all" on server. "ipconfig /release" on workstation, then reboot. then an "ipconfig /all" on workstation.

    Here is the ClientDeply file that I haven't been able to decipher. 

    [4556] 180707.122900.4265: ClientSetup: Start of ClientDeploy
    [4556] 180707.122900.4578: General: Initializing...C:\WINDOWS\Temp\Client Deployment Files\ClientDeploy.exe
    [4556] 180707.122900.4578: ClientSetup: Loading Wizard Data
    [4556] 180707.122900.4734: ClientSetup: Current DeploymentStatus=Running
    [4556] 180707.122900.6452: ClientSetup: Showing the Client Deployment Wizard
    [4556] 180707.122900.7393: ClientSetup: Adding Server Info data in the Product Registry
    [4556] 180707.122900.7549: ClientSetup: Set the Deployment Sync Event
    [2456] 180707.122905.6707: ClientSetup: Running InstallRootCert Task at WizardPage DomainUserCred
    [2456] 180707.122905.6863: ClientSetup: Entering ConnectorWizardForm.RunTasks
    [2456] 180707.122905.6863: ClientSetup: Running Task with Id=ClientDeploy.InstallRootCertTask
    [2456] 180707.122905.6863: ClientSetup: Entering InstallRootCertTask.Run
    [2456] 180707.122905.6863: ClientSetup: Install root cert to local trusted store
    [2456] 180707.122905.6863: ClientSetup: Exiting InstallRootCertTask.Run
    [2456] 180707.122905.6863: ClientSetup: Task with Id=ClientDeploy.InstallRootCertTask has TaskStatus=Success
    [2456] 180707.122905.6863: ClientSetup: Task with Id=ClientDeploy.InstallRootCertTask has RebootStatus=NoReboot
    [2456] 180707.122905.6863: ClientSetup: Exting ConnectorWizardForm.RunTasks
    [2456] 180707.122905.6863: ClientSetup: Running SetupVPNAndDA Task at WizardPage DomainUserCred
    [2456] 180707.122905.6863: ClientSetup: Entering ConnectorWizardForm.RunTasks
    [2456] 180707.122905.6863: ClientSetup: Running Task with Id=ClientDeploy.SetupVpnAndDATask
    [2456] 180707.122905.6863: ClientSetup: Entering SetupVpnAndDATask.Run
    [2456] 180707.122905.7019: ClientSetup: Exting SetupVpnAndDATask.Run
    [2456] 180707.122905.7019: ClientSetup: Task with Id=ClientDeploy.SetupVpnAndDATask has TaskStatus=Success
    [2456] 180707.122905.7019: ClientSetup: Task with Id=ClientDeploy.SetupVpnAndDATask has RebootStatus=NoReboot
    [2456] 180707.122905.7019: ClientSetup: Exting ConnectorWizardForm.RunTasks
    [2456] 180707.122905.7019: ClientSetup: Running ValidateUser Tasks at WizardPage DomainUserCred
    [2456] 180707.122905.7019: ClientSetup: Entering ConnectorWizardForm.RunTasks
    [2456] 180707.122905.7019: ClientSetup: Running Task with Id=ClientDeploy.ValidateUser
    [2456] 180707.122905.7019: ClientSetup: Entering ValidateUserTask.Run
    [2456] 180707.122905.7019: ClientSetup: Validating User
    [2456] 180707.122905.7019: ClientSetup: Call MachineIdentityManager.GetMachineStatus
    [2456] 180707.122905.7645: ClientSetup: MachineIdentityManager.GetMachineStatus had errors: ErrorCatalog:NetworkError ErrorCode:-1
    BaseException: Microsoft.WindowsServerSolutions.Devices.Identity.MachineIdentityException: MachineIdentityManager.GetMachineStatus ---> System.ServiceModel.ProtocolException: The remote server returned an unexpected response: (405) Method Not Allowed. ---> System.Net.WebException: The remote server returned an error: (405) Method Not Allowed.
       at System.Net.HttpWebRequest.GetResponse()
       at System.ServiceModel.Channels.HttpChannelFactory`1.HttpRequestChannel.HttpChannelRequest.WaitForReply(TimeSpan timeout)
       --- End of inner exception stack trace ---
    Server stack trace:
       at System.ServiceModel.Channels.HttpChannelUtilities.ValidateRequestReplyResponse(HttpWebRequest request, HttpWebResponse response, HttpChannelFactory`1 factory, WebException responseException, ChannelBinding channelBinding)
       at System.ServiceModel.Channels.HttpChannelFactory`1.HttpRequestChannel.HttpChannelRequest.WaitForReply(TimeSpan timeout)
       at System.ServiceModel.Channels.RequestChannel.Request(Message message, TimeSpan timeout)
       at System.ServiceModel.Dispatcher.RequestChannelBinder.Request(Message message, TimeSpan timeout)
       at System.ServiceModel.Channels.ServiceChannel.Call(String action, Boolean oneway, ProxyOperationRuntime operation, Object[] ins, Object[] outs, TimeSpan timeout)
       at System.ServiceModel.Channels.ServiceChannelProxy.InvokeService(IMethodCallMessage methodCall, ProxyOperationRuntime operation)
       at System.ServiceModel.Channels.ServiceChannelProxy.Invoke(IMessage message)
    Exception rethrown at [0]:
       at System.Runtime.Remoting.Proxies.RealProxy.HandleReturnMessage(IMessage reqMsg, IMessage retMsg)
       at System.Runtime.Remoting.Proxies.RealProxy.PrivateInvoke(MessageData& msgData, Int32 type)
       at Microsoft.WindowsServerSolutions.Devices.Identity.ICertService.GetMachineStatus(MachineStatus& status, Boolean& isAdmin, Int32& maxClientNum, Int32& currentClientNum, String userName, String password, String machineName)
       at Microsoft.WindowsServerSolutions.Devices.Identity.MachineIdentityManager.GetMachineStatus(String serverName, String userName, String password, String machineName, Boolean& isAdmin)
       --- End of inner exception stack trace ---
       at Microsoft.WindowsServerSolutions.Devices.Identity.MachineIdentityManager.GetMachineStatus(String serverName, String userName, String password, String machineName, Boolean& isAdmin)
       at Microsoft.WindowsServerSolutions.ClientSetup.ClientDeploy.ValidateUserTask.Run(WizData data)
    [2456] 180707.122905.7645: ClientSetup: Exiting ValidateUserTask.Run
    [2456] 180707.122905.7645: ClientSetup: Task with Id=ClientDeploy.ValidateUser has TaskStatus=Failed
    [2456] 180707.122905.7645: ClientSetup: Task with Id=ClientDeploy.ValidateUser has RebootStatus=NoReboot
    [2456] 180707.122905.7645: ClientSetup: Exting ConnectorWizardForm.RunTasks
    [4556] 180707.122905.7645: ClientSetup: JoinNetwork Tasks returned TaskStatus=Failed
    [4556] 180707.122910.9230: ClientSetup: Back from the Client Deployment Wizard
    [4556] 180707.122910.9230: ClientSetup: Saving Wizard Data
    [4556] 180707.122910.9230: ClientSetup: End of ClientDeploy: ErrorCode=1603

    Been pulling my hair out for 2 weeks trying to troubleshoot with no avail. Please send help. What other network/server settings should I be double checking? Thank you in advance.


    • Edited by bryanschent Saturday, July 7, 2018 8:53 PM grammer
    Saturday, July 7, 2018 8:52 PM

Answers

  • Here's the solution we (Robert & I) worked out. 

    *This may not all be necessary but its the setup that worked for us.

    IPV6 disabled on server&clients

    IPV4 preferred DNS set to server IP on both server&clients

    Checked bindings to make sure ports 80 & 443 configured properly

    Running Robert's script (https://gallery.technet.microsoft.com/Windows-Server-Essentials-556159c3/view/Discussions#content) *be sure to right click the file and unblock it to get it to work.

    uncovered certsrv missing, added through powershell command "Get-WindowsFeature ADCS*,AD-Cert*"

    Test 5 of Roberts script uncovered many missing roles. Added all missing roles through server manager and then was able to connect the clients.

    Big thank you Robert! You saved us!

    Friday, July 20, 2018 6:56 PM

All replies

  • post ipconfig /all from the server and a workstation.

    Robert Pearman @titlerequired Windows Server Essentials.com

    Monday, July 9, 2018 9:20 AM
    Moderator
  • [2456] 180707.122905.7645: ClientSetup: MachineIdentityManager.GetMachineStatus had errors: ErrorCatalog:NetworkError ErrorCode:-1
    BaseException: Microsoft.WindowsServerSolutions.Devices.Identity.MachineIdentityException: MachineIdentityManager.GetMachineStatus
    [4556] 180707.122905.7645: ClientSetup: JoinNetwork Tasks returned TaskStatus=Failed
    4556] 180707.122910.9230: ClientSetup: End of ClientDeploy: ErrorCode=1603
    Wse server can not get client status so that client can not join to domain.
    Solution:
    1Connect client with cable and directly connect to WSE subnet,
    2 enter ipconfig /all in command prompt and verify if  ipv6 address  has been disabled on problem client computer.
    3 you may set static ip in Ethernet properties on wse2012. You need find hosts file in  %windir%\system32\drivers\hosts on client problem computer .Open it as text type and add  your wse2012 server name and ipv4 address .
    (e.g. server name 192.168.2.50  ) and enter ipconfig /flushdns in command prompt.
    4  ping client ip address on wse2012 command prompt ,verify if you can ping problem client successfully
    5 do clean start and verify if there is antivirus software, defense software or other software to disturb server to get client status ,shutdown it first .And after adding to domain you can try to turn it on.
    6 verify your client os version , you can enter msinfo32 in command prompt on problem computer.
    Operation system is Home edtion is not support to join in domain.
    If the problem is still exist, please send these files in forum :
    C:\programdata\microsoft\windows server\logs\cilentdeploy.log
    C:\programdata\microsoft\windows server\logs\computerconnector.log
    C:\programdata\microsoft\windows server\logs\csetup.log
    OS Name of Problem client 

    Monday, July 9, 2018 10:58 AM
  • @RobertPearman...

    Windows 10 Pro Client

    Windows IP Configuration
       Host Name . . . . . . . . . . . . : ThinkStation1
       Primary Dns Suffix  . . . . . . . :
       Node Type . . . . . . . . . . . . : Hybrid
       IP Routing Enabled. . . . . . . . : No
       WINS Proxy Enabled. . . . . . . . : No
       DNS Suffix Search List. . . . . . : frontierlocal.net
    Ethernet adapter Ethernet:

       Connection-specific DNS Suffix  . : frontierlocal.net
       Description . . . . . . . . . . . : Intel(R) Ethernet Connection (2) I219-LM
       Physical Address. . . . . . . . . : 30-9C-23-38-E5-84
       DHCP Enabled. . . . . . . . . . . : Yes
       Autoconfiguration Enabled . . . . : Yes
       IPv4 Address. . . . . . . . . . . : 192.168.254.36(Preferred)
       Subnet Mask . . . . . . . . . . . : 255.255.255.0
       Lease Obtained. . . . . . . . . . : Monday, July 9, 2018 9:40:47 AM
       Lease Expires . . . . . . . . . . : Monday, July 9, 2018 1:42:42 PM
       Default Gateway . . . . . . . . . : 192.168.254.254
       DHCP Server . . . . . . . . . . . : 192.168.254.254
       DNS Servers . . . . . . . . . . . : 192.168.254.15
       NetBIOS over Tcpip. . . . . . . . : Enabled

    WSE 2012
    Microsoft Windows [Version 6.2.9200]
    (c) 2012 Microsoft Corporation. All rights reserved.
    C:\Windows\System32>ipconfig/all
    Windows IP Configuration
       Host Name . . . . . . . . . . . . : D16XY842
       Primary Dns Suffix  . . . . . . . : DOMAINNAME.local
       Node Type . . . . . . . . . . . . : Hybrid
       IP Routing Enabled. . . . . . . . : No
       WINS Proxy Enabled. . . . . . . . : No
       DNS Suffix Search List. . . . . . : DOMAINNAME.local
                                           frontierlocal.net
    Ethernet adapter Ethernet:
       Connection-specific DNS Suffix  . : frontierlocal.net
       Description . . . . . . . . . . . : Broadcom NetXtreme Gigabit Ethernet
       Physical Address. . . . . . . . . : F8-DB-88-FC-48-E1
       DHCP Enabled. . . . . . . . . . . : Yes
       Autoconfiguration Enabled . . . . : Yes
       IPv4 Address. . . . . . . . . . . : 192.168.254.15(Preferred)
       Subnet Mask . . . . . . . . . . . : 255.255.255.0
       Lease Obtained. . . . . . . . . . : Saturday, July 7, 2018 2:51:22 PM
       Lease Expires . . . . . . . . . . : Monday, July 9, 2018 12:55:16 PM
       Default Gateway . . . . . . . . . : 192.168.254.254
       DHCP Server . . . . . . . . . . . : 192.168.254.254
       DNS Servers . . . . . . . . . . . : 192.168.254.254
       NetBIOS over Tcpip. . . . . . . . : Enabled
    Tunnel adapter Teredo Tunneling Pseudo-Interface:
       Media State . . . . . . . . . . . : Media disconnected
       Connection-specific DNS Suffix  . :
       Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
       Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
       DHCP Enabled. . . . . . . . . . . : No
       Autoconfiguration Enabled . . . . : Yes
    Tunnel adapter isatap.frontierlocal.net:
       Media State . . . . . . . . . . . : Media disconnected
       Connection-specific DNS Suffix  . : frontierlocal.net
       Description . . . . . . . . . . . : Microsoft ISATAP Adapter #3
       Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
       DHCP Enabled. . . . . . . . . . . : No
       Autoconfiguration Enabled . . . . : Yes


    • Edited by bryanschent Monday, July 9, 2018 5:09 PM add reply-to note
    Monday, July 9, 2018 4:59 PM
  • @Andy YOU

    I tried your steps. and still the same error.

    Windows 10 Pro Client (10.0.17134)

    Client Deploy

    [11152] 180709.094415.8401: ClientSetup: Start of ClientDeploy
    [11152] 180709.094415.8870: General: Initializing...C:\WINDOWS\Temp\Client Deployment Files\ClientDeploy.exe
    [11152] 180709.094415.8870: ClientSetup: Loading Wizard Data
    [11152] 180709.094415.9026: ClientSetup: Current DeploymentStatus=Running
    [11152] 180709.094416.0563: ClientSetup: Showing the Client Deployment Wizard
    [11152] 180709.094416.1565: ClientSetup: Adding Server Info data in the Product Registry
    [11152] 180709.094416.1565: ClientSetup: Set the Deployment Sync Event
    [10056] 180709.094420.6503: ClientSetup: Running InstallRootCert Task at WizardPage DomainUserCred
    [10056] 180709.094420.6503: ClientSetup: Entering ConnectorWizardForm.RunTasks
    [10056] 180709.094420.6503: ClientSetup: Running Task with Id=ClientDeploy.InstallRootCertTask
    [10056] 180709.094420.6503: ClientSetup: Entering InstallRootCertTask.Run
    [10056] 180709.094420.6503: ClientSetup: Install root cert to local trusted store
    [10056] 180709.094420.6659: ClientSetup: Exiting InstallRootCertTask.Run
    [10056] 180709.094420.6659: ClientSetup: Task with Id=ClientDeploy.InstallRootCertTask has TaskStatus=Success
    [10056] 180709.094420.6659: ClientSetup: Task with Id=ClientDeploy.InstallRootCertTask has RebootStatus=NoReboot
    [10056] 180709.094420.6659: ClientSetup: Exting ConnectorWizardForm.RunTasks
    [10056] 180709.094420.6659: ClientSetup: Running SetupVPNAndDA Task at WizardPage DomainUserCred
    [10056] 180709.094420.6659: ClientSetup: Entering ConnectorWizardForm.RunTasks
    [10056] 180709.094420.6659: ClientSetup: Running Task with Id=ClientDeploy.SetupVpnAndDATask
    [10056] 180709.094420.6659: ClientSetup: Entering SetupVpnAndDATask.Run
    [10056] 180709.094420.6659: ClientSetup: Exting SetupVpnAndDATask.Run
    [10056] 180709.094420.6659: ClientSetup: Task with Id=ClientDeploy.SetupVpnAndDATask has TaskStatus=Success
    [10056] 180709.094420.6659: ClientSetup: Task with Id=ClientDeploy.SetupVpnAndDATask has RebootStatus=NoReboot
    [10056] 180709.094420.6659: ClientSetup: Exting ConnectorWizardForm.RunTasks
    [10056] 180709.094420.6659: ClientSetup: Running ValidateUser Tasks at WizardPage DomainUserCred
    [10056] 180709.094420.6659: ClientSetup: Entering ConnectorWizardForm.RunTasks
    [10056] 180709.094420.6659: ClientSetup: Running Task with Id=ClientDeploy.ValidateUser
    [10056] 180709.094420.6659: ClientSetup: Entering ValidateUserTask.Run
    [10056] 180709.094420.6659: ClientSetup: Validating User
    [10056] 180709.094420.6659: ClientSetup: Call MachineIdentityManager.GetMachineStatus
    [10056] 180709.094420.7193: ClientSetup: MachineIdentityManager.GetMachineStatus had errors: ErrorCatalog:NetworkError ErrorCode:-1
    BaseException: Microsoft.WindowsServerSolutions.Devices.Identity.MachineIdentityException: MachineIdentityManager.GetMachineStatus ---> System.ServiceModel.ProtocolException: The remote server returned an unexpected response: (405) Method Not Allowed. ---> System.Net.WebException: The remote server returned an error: (405) Method Not Allowed.
       at System.Net.HttpWebRequest.GetResponse()
       at System.ServiceModel.Channels.HttpChannelFactory`1.HttpRequestChannel.HttpChannelRequest.WaitForReply(TimeSpan timeout)
       --- End of inner exception stack trace ---
    Server stack trace:
       at System.ServiceModel.Channels.HttpChannelUtilities.ValidateRequestReplyResponse(HttpWebRequest request, HttpWebResponse response, HttpChannelFactory`1 factory, WebException responseException, ChannelBinding channelBinding)
       at System.ServiceModel.Channels.HttpChannelFactory`1.HttpRequestChannel.HttpChannelRequest.WaitForReply(TimeSpan timeout)
       at System.ServiceModel.Channels.RequestChannel.Request(Message message, TimeSpan timeout)
       at System.ServiceModel.Dispatcher.RequestChannelBinder.Request(Message message, TimeSpan timeout)
       at System.ServiceModel.Channels.ServiceChannel.Call(String action, Boolean oneway, ProxyOperationRuntime operation, Object[] ins, Object[] outs, TimeSpan timeout)
       at System.ServiceModel.Channels.ServiceChannelProxy.InvokeService(IMethodCallMessage methodCall, ProxyOperationRuntime operation)
       at System.ServiceModel.Channels.ServiceChannelProxy.Invoke(IMessage message)

    Exception rethrown at [0]:
       at System.Runtime.Remoting.Proxies.RealProxy.HandleReturnMessage(IMessage reqMsg, IMessage retMsg)
       at System.Runtime.Remoting.Proxies.RealProxy.PrivateInvoke(MessageData& msgData, Int32 type)
       at Microsoft.WindowsServerSolutions.Devices.Identity.ICertService.GetMachineStatus(MachineStatus& status, Boolean& isAdmin, Int32& maxClientNum, Int32& currentClientNum, String userName, String password, String machineName)
       at Microsoft.WindowsServerSolutions.Devices.Identity.MachineIdentityManager.GetMachineStatus(String serverName, String userName, String password, String machineName, Boolean& isAdmin)
       --- End of inner exception stack trace ---
       at Microsoft.WindowsServerSolutions.Devices.Identity.MachineIdentityManager.GetMachineStatus(String serverName, String userName, String password, String machineName, Boolean& isAdmin)
       at Microsoft.WindowsServerSolutions.ClientSetup.ClientDeploy.ValidateUserTask.Run(WizData data)
    [10056] 180709.094420.7193: ClientSetup: Exiting ValidateUserTask.Run
    [10056] 180709.094420.7193: ClientSetup: Task with Id=ClientDeploy.ValidateUser has TaskStatus=Failed
    [10056] 180709.094420.7193: ClientSetup: Task with Id=ClientDeploy.ValidateUser has RebootStatus=NoReboot
    [10056] 180709.094420.7193: ClientSetup: Exting ConnectorWizardForm.RunTasks
    [11152] 180709.094420.7350: ClientSetup: JoinNetwork Tasks returned TaskStatus=Failed
    [11152] 180709.094422.1578: ClientSetup: Back from the Client Deployment Wizard
    [11152] 180709.094422.1578: ClientSetup: Saving Wizard Data
    [11152] 180709.094422.1578: ClientSetup: End of ClientDeploy: ErrorCode=1603

    Computer Connector

    [07/09/2018 09:43:49 2c08] wmain: Start of Computerconnector
    [07/09/2018 09:43:49 2c08] wmain: Calling Computerconnector::ShowWizard()
    [07/09/2018 09:43:49 2c08] CComputerconnector::ShowWizard: Initializing common controls
    [07/09/2018 09:43:49 2c08] CComputerconnector::ShowWizard: Done initializing common controls
    [07/09/2018 09:43:49 2c08] Displaying the wizard
    [07/09/2018 09:43:49 2c08] CComputerconnector::AnotherInstallationErrorDlgProc: IDD_ANOTHER_INSTALLATION_ERR Page Initialization
    [07/09/2018 09:43:49 23bc] CComputerconnector::Run: Installation is ready to run
    [07/09/2018 09:43:49 23bc] GlobalData::Initialize (192.168.254.15, , C:\Users\Bryan\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\TempState\Downloads\ComputerConnector(192.168.254.15) (46).exe, 1033)
    [07/09/2018 09:43:49 23bc] ExpandEnvironmentStrings return (C:\WINDOWS\Temp\Client Deployment Files\)
    [07/09/2018 09:43:49 23bc] CComputerconnector::Run: Running Task: Id=1 Description=Downloads the Setup.cab file
    [07/09/2018 09:43:49 23bc] NetworkUtil::DownloadFile (https://192.168.254.15:443/Connect/default.aspx?Get=Setup.cab&64bit=1&LanguageId=1033, C:\Users\Bryan\AppData\Local\Temp\Setup.cab)
    [07/09/2018 09:43:49 23bc] NetworkUtil::DownloadFile - Create directory [C:\Users\Bryan\AppData\Local\Temp] if not exist.
    [07/09/2018 09:43:49 23bc] NetworkUtil::_WinInetDownloadFile (https://192.168.254.15:443/Connect/default.aspx?Get=Setup.cab&64bit=1&LanguageId=1033, C:\Users\Bryan\AppData\Local\Temp\Setup.cab)
    [07/09/2018 09:43:49 2c08] CComputerconnector::AnotherInstallationErrorDlgProc: DIALOG_UPDATE: PreCheckPass
    [07/09/2018 09:43:49 2c08] CComputerconnector::ConnecttingDlgProc: IDD_CONNECTING Page Initialization
    [07/09/2018 09:44:10 23bc] InternetOpenUrl (https://192.168.254.15:443/Connect/default.aspx?Get=Setup.cab&64bit=1&LanguageId=1033) returns 12029
    [07/09/2018 09:44:10 23bc] _WinInetDownloadFile returns 0x80072efd.
    [07/09/2018 09:44:10 23bc] DownloadFile failed using https. Try http.
    [07/09/2018 09:44:10 23bc] NetworkUtil::DownloadFile (http://192.168.254.15:80/Connect/default.aspx?Get=Setup.cab&64bit=1&LanguageId=1033, C:\Users\Bryan\AppData\Local\Temp\Setup.cab)
    [07/09/2018 09:44:10 23bc] NetworkUtil::DownloadFile - Create directory [C:\Users\Bryan\AppData\Local\Temp] if not exist.
    [07/09/2018 09:44:10 23bc] NetworkUtil::_WinInetDownloadFile (http://192.168.254.15:80/Connect/default.aspx?Get=Setup.cab&64bit=1&LanguageId=1033, C:\Users\Bryan\AppData\Local\Temp\Setup.cab)
    [07/09/2018 09:44:12 23bc] ExtractCabinet: Extract (C:\Users\Bryan\AppData\Local\Temp\Setup.cab, C:\WINDOWS\Temp\Client Deployment Files\)
    [07/09/2018 09:44:12 23bc] SetRegValue [C:\WINDOWS\Temp\Client Deployment Files\].
    [07/09/2018 09:44:12 23bc] Deleting [C:\Users\Bryan\AppData\Local\Temp\Setup.cab].
    [07/09/2018 09:44:12 23bc] RunShellExecute: ShellExecute [C:\WINDOWS\Temp\Client Deployment Files\CSetup.exe] with parameters [(null)]
    [07/09/2018 09:44:12 23bc] CSetup::Run: Waiting upto 30secs for Sync Event to be signaled
    [07/09/2018 09:44:12 23bc] CComputerconnector::Run: WaitForSingleObject RetVal = 0
    [07/09/2018 09:44:12 2c08] CComputerconnector::ConnecttingDlgProc: DIALOG_UPDATE: Success
    [07/09/2018 09:44:12 2c08] wmain: End of Computerconnector: hr=0x0

    C Setup

    wmain: Start of CSetup
    [07/09/2018 09:44:12 114c] CoCreateInstance CLSID_DOMDocument60 succeeded.
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - selectSingleNode
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - get_firstChild
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - get_nodeValue
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - SysAllocString value: D16XY842
    [07/09/2018 09:44:12 114c] CoCreateInstance CLSID_DOMDocument60 succeeded.
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - selectSingleNode
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - get_firstChild
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - get_nodeValue
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - SysAllocString value: Intranet
    [07/09/2018 09:44:12 114c] CoCreateInstance CLSID_DOMDocument60 succeeded.
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - selectSingleNode
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - get_firstChild
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - get_nodeValue
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - SysAllocString value: 192.168.254.15
    [07/09/2018 09:44:12 114c] CoCreateInstance CLSID_DOMDocument60 succeeded.
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - selectSingleNode
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - get_firstChild
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - get_nodeValue
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - SysAllocString value: 50
    [07/09/2018 09:44:12 114c] CoCreateInstance CLSID_DOMDocument60 succeeded.
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - selectSingleNode
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - get_firstChild
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - get_nodeValue
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - SysAllocString value: Administrator
    [07/09/2018 09:44:12 114c] CoCreateInstance CLSID_DOMDocument60 succeeded.
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - selectSingleNode
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - get_firstChild
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - get_nodeValue
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - SysAllocString value: en-US
    [07/09/2018 09:44:12 114c] CoCreateInstance CLSID_DOMDocument60 succeeded.
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - selectSingleNode
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - get_firstChild
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - get_nodeValue
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - SysAllocString value: 1033
    [07/09/2018 09:44:12 114c] CoCreateInstance CLSID_DOMDocument60 succeeded.
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - selectSingleNode
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - get_firstChild
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - get_nodeValue
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - SysAllocString value: SCHALLERTENT
    [07/09/2018 09:44:12 114c] CoCreateInstance CLSID_DOMDocument60 succeeded.
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - selectSingleNode
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - get_firstChild
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - get_nodeValue
    [07/09/2018 09:44:12 114c] CServer::GetNodeValue - SysAllocString value: http://192.168.254.15:80
    [07/09/2018 09:44:12 114c] GlobalData::Initialize (192.168.254.15, http://192.168.254.15:80, C:\WINDOWS\Temp\Client Deployment Files\CSetup.exe, 1033)
    [07/09/2018 09:44:12 114c] ExpandEnvironmentStrings return (C:\WINDOWS\Temp\Client Deployment Files\)
    [07/09/2018 09:44:12 114c] wmain: Calling CSetup::ShowWizard()
    [07/09/2018 09:44:12 114c] CSetup::ShowWizard: Initializing common controls
    [07/09/2018 09:44:12 114c] CSetup::ShowWizard: Done initializing common controls
    [07/09/2018 09:44:12 114c] Displaying the wizard
    [07/09/2018 09:44:12 114c] CSetup::WelcomeDlgProc: IDD_PROPPAGE_WELCOME Initialization
    [07/09/2018 09:44:12 114c] CSetup::WelcomeDlgProc: Set the Deployment Sync Event
    [07/09/2018 09:44:14 114c] CSetup::RunTasksDlgProc: IDD_PROPPAGE_TASKS Page Initialization
    [07/09/2018 09:44:14 15a4] CSetup::Run: Deployment Stage = DeploymentStage_VerifyingRequirements
    [07/09/2018 09:44:14 15a4] CSetup::RunTasks: Running Task: Id=-1 Description=Check OS Version and SP Index=  0
    [07/09/2018 09:44:14 15a4] OsChecker::CreateInstance ([C:\WINDOWS\Temp\Client Deployment Files\SupportedOs.Xml])
    [07/09/2018 09:44:14 15a4] =================================
    [07/09/2018 09:44:14 15a4] Current Os information:
    [07/09/2018 09:44:14 15a4] Suite = [256]
    [07/09/2018 09:44:14 15a4] Type = [1]
    [07/09/2018 09:44:14 15a4] Architecture = [9]
    [07/09/2018 09:44:14 15a4] IsStarterEdition = [0]
    [07/09/2018 09:44:14 15a4] IsHomeSku = [0]
    [07/09/2018 09:44:14 15a4] Major = [6]
    [07/09/2018 09:44:14 15a4] Minor = [2]
    [07/09/2018 09:44:14 15a4] Build = [9200]
    [07/09/2018 09:44:14 15a4] SPMajor = [0]
    [07/09/2018 09:44:14 15a4] SPMinor = [0]
    [07/09/2018 09:44:14 15a4] =================================
    [07/09/2018 09:44:14 15a4] OSRule::CreateRules  (C:\WINDOWS\Temp\Client Deployment Files\SupportedOs.Xml, .)
    [07/09/2018 09:44:14 15a4] CoCreateInstance CLSID_DOMDocument60 succeeded.
    [07/09/2018 09:44:14 15a4] OsChecker::QuerySupportedOsStatus - Major: 6 Minor: 2
    [07/09/2018 09:44:14 15a4] CSetup::RunTasks: Running Task: Id=-1 Description=Check Net Join Index=  1
    [07/09/2018 09:44:14 15a4] NetJoinChecker::CreateInstance ([C:\WINDOWS\Temp\Client Deployment Files\ServerInfo.Xml])
    [07/09/2018 09:44:14 15a4] CMsi::IsMsiInstalled: MsiQueryProductState for ProductCode {21E49794-7C13-4E84-8659-55BD378267D5} returned -1
    [07/09/2018 09:44:14 15a4] CMsi::IsMsiInstalled: MsiQueryProductState for ProductCode {46DCED50-3A1D-4EF4-94F0-45F2681E3D70} returned -1
    [07/09/2018 09:44:14 15a4] CMsi::IsMsiInstalled: MsiQueryProductState for ProductCode {C1E4D639-4A33-4314-809E-89BD0EF48522} returned -1
    [07/09/2018 09:44:14 15a4] CoCreateInstance CLSID_DOMDocument60 succeeded.
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - selectSingleNode
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - get_firstChild
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - get_nodeValue
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - SysAllocString value: D16XY842
    [07/09/2018 09:44:14 15a4] CoCreateInstance CLSID_DOMDocument60 succeeded.
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - selectSingleNode
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - get_firstChild
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - get_nodeValue
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - SysAllocString value: Intranet
    [07/09/2018 09:44:14 15a4] CoCreateInstance CLSID_DOMDocument60 succeeded.
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - selectSingleNode
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - get_firstChild
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - get_nodeValue
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - SysAllocString value: 192.168.254.15
    [07/09/2018 09:44:14 15a4] CoCreateInstance CLSID_DOMDocument60 succeeded.
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - selectSingleNode
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - get_firstChild
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - get_nodeValue
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - SysAllocString value: 50
    [07/09/2018 09:44:14 15a4] CoCreateInstance CLSID_DOMDocument60 succeeded.
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - selectSingleNode
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - get_firstChild
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - get_nodeValue
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - SysAllocString value: Administrator
    [07/09/2018 09:44:14 15a4] CoCreateInstance CLSID_DOMDocument60 succeeded.
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - selectSingleNode
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - get_firstChild
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - get_nodeValue
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - SysAllocString value: en-US
    [07/09/2018 09:44:14 15a4] CoCreateInstance CLSID_DOMDocument60 succeeded.
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - selectSingleNode
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - get_firstChild
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - get_nodeValue
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - SysAllocString value: 1033
    [07/09/2018 09:44:14 15a4] CoCreateInstance CLSID_DOMDocument60 succeeded.
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - selectSingleNode
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - get_firstChild
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - get_nodeValue
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - SysAllocString value: SCHALLERTENT
    [07/09/2018 09:44:14 15a4] CoCreateInstance CLSID_DOMDocument60 succeeded.
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - selectSingleNode
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - get_firstChild
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - get_nodeValue
    [07/09/2018 09:44:14 15a4] CServer::GetNodeValue - SysAllocString value: http://192.168.254.15:80
    [07/09/2018 09:44:14 15a4] Checking self-test hook...  2  0
    [07/09/2018 09:44:14 15a4] NetJoinChecker::QueryNetJoinStatus - Joining a Sbs server
    [07/09/2018 09:44:14 15a4] NetJoinChecker::QueryNetJoinStatus - Not Domain Joined
    [07/09/2018 09:44:14 15a4] CSetup::RunTasks: Running Task: Id=-1 Description=Check Pending Reboot Index=  2
    [07/09/2018 09:44:14 114c] CSetup::JoinComputerDlgProc: IDD_PROPPAGE_JOIN_COMPUTER Initialization
    [07/09/2018 09:44:15 114c] CSetup::RunTasksDlgProc: IDD_PROPPAGE_TASKS Page Initialization
    [07/09/2018 09:44:15 1714] CSetup::Run: Deployment Stage = DeploymentStage_InstallingPreRequistes
    [07/09/2018 09:44:15 1714] CSetup::RunTasks: Running Task: Id=-1 Description=Check DotNet Fwk Index=  0
    [07/09/2018 09:44:15 1714] DotnetRule::CreateRules  (C:\WINDOWS\Temp\Client Deployment Files\SupportedOs.Xml, .)
    [07/09/2018 09:44:15 1714] CoCreateInstance CLSID_DOMDocument60 succeeded.
    [07/09/2018 09:44:15 1714] DotNet::QueryInstallState - The installed .NET framework version is 4.7.
    [07/09/2018 09:44:15 1714] CSetup::RunTasks: Running Task: Id=4 Description=Download Dot Net Index=  1
    [07/09/2018 09:44:15 1714] CSetup::RunTasks: Running Task: Id=5 Description=Install Dot Net Index=  2
    [07/09/2018 09:44:15 1714] RunShellExecute: ShellExecute [C:\WINDOWS\Temp\Client Deployment Files\ClientDeploy.exe] with parameters [(null)]
    [07/09/2018 09:44:15 1714] CSetup::Run: Waiting upto 60secs for Sync Event to be signaled
    [07/09/2018 09:44:16 1714] CSetup::Run: WaitForSingleObject RetVal = 0
    [07/09/2018 09:44:16 114c] wmain: End of CSetup: hr=0x0



    • Edited by bryanschent Monday, July 9, 2018 5:10 PM add reply-to note
    Monday, July 9, 2018 5:05 PM
  • There is another thread with the same issue, so it may be an update has caused this issue.

    Just adding another round of patches to my server and will test again.


    Robert Pearman @titlerequired Windows Server Essentials.com

    Monday, July 9, 2018 5:19 PM
    Moderator
  • There is another thread with the same issue, so it may be an update has caused this issue.

    Just adding another round of patches to my server and will test again.


    Robert Pearman


    Thank you. Should I check that thread as well for updates? Do you have a link to it?
    Monday, July 9, 2018 7:33 PM
  • https://social.technet.microsoft.com/Forums/windowsserver/en-US/c9c5951d-15c1-4ebf-b6ed-aa1e5ef829d1/cannot-connect-this-computer-to-the-network-the-server-is-not-available?forum=winserveressentials

    Robert Pearman @titlerequired Windows Server Essentials.com

    Tuesday, July 10, 2018 7:00 AM
    Moderator
  • Robert, I ran your script on my server (link below for others) and this is what I got.

    https://gallery.technet.microsoft.com/Windows-Server-Essentials-556159c3/view/Discussions#content

    ************************************************
    * Essentials Server Configuration Tester *
    ************************************************

    OS Detected: Microsoft Windows Server 2012 Essentials

    This tool will check your current Configuration against known Essentials Server Values.
    Written by Robert Pearman (TitleRequired.com) January 2018

    Version Info: Version: 2.10

    1. Test IIS
    2. Test CA Infrastructure
    3. Test Services
    4. Test Service Ports
    0. Quit

    Enter Task..
    1
    Only Errors will be shown.

    Checking Websites..

    Checking Connect Site..

    Checking Virtual Directories..

    Get-Itemproperty : Cannot find path 'IIS:\Sites\Default Web Site\CertSrv' because it does not exist.
    At X:\EssentialsTester.ps1:271 char:17
    +         $vdir = Get-Itemproperty "iis:\sites\default web site\$vdir" | select *
    +                 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
        + CategoryInfo          : ObjectNotFound: (IIS:\Sites\Default Web Site\CertSrv:String) [Get-ItemProperty], ItemNot
       FoundException
        + FullyQualifiedErrorId : PathNotFound,Microsoft.PowerShell.Commands.GetItemPropertyCommand

    Checking AppPools..

    Checking ISAPI Filters..

    Checking IIS SSL..

    Checking TLS Version 1.0

    Checking IIS Bindings..

    Binding Missing      : Default Web Site

    Checking IIS Authentication..

    Review your results, items in red should be investigated.

    ************************************************
    * Essentials Server Configuration Tester *
    ************************************************

    OS Detected: Microsoft Windows Server 2012 Essentials

    This tool will check your current Configuration against known Essentials Server Values.
    Written by Robert Pearman (TitleRequired.com) January 2018

    Version Info: Version: 2.10

    1. Test IIS
    2. Test CA Infrastructure
    3. Test Services
    4. Test Service Ports
    0. Quit

    Enter Task..
    2
    Testing CA Name..
    Certificate Authority Online  : OK
    Certificate Authority Name    : OK
    Certificate Authority Cert    : OK

    Testing /Connect Certificate Package..
    Connect Computer Certificate  : OK

    Testing CRL Download..
    CRL Location                  : http://D16XY842/CertEnroll/SCHALLERTENT-D16XY842-CA.crl
    CRL Destination               : c:\windows\temp\crl.crl
    Exception calling "DownloadFile" with "2" argument(s): "The remote server returned an error: (404) Not Found."
    At X:\EssentialsTester.ps1:1216 char:9
    +         $wc.DownloadFile($source,$destination)
    +         ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
        + CategoryInfo          : NotSpecified: (:) [], MethodInvocationException
        + FullyQualifiedErrorId : WebException

    CRL Download                  : Failed

    Testing CRL Distribution Configuration..
    419.6169.0:<2018/7/10, 9:07:43>: 0x80070002 (WIN32: 2)
    437.2144.0:<2018/7/10, 9:07:43>: 0x80070002 (WIN32: 2)

    It is normal to see some 'File Not Found' messages above when using this CmdLet (Get-CACrlDistributionPoint)

    CRL Extension (CDP)           : OK
    CRL Extension (CRL)           : OK

    Testing Dashboard Certificate..
    Current Dashboard Certificate : 9A2EB8073FE1C3F80E3141245C3650B0B52A917A
    Dashboard Certificate         : OK

    Review your results, items in red should be investigated.

    ************************************************
    * Essentials Server Configuration Tester *
    ************************************************

    OS Detected: Microsoft Windows Server 2012 Essentials

    This tool will check your current Configuration against known Essentials Server Values.
    Written by Robert Pearman (TitleRequired.com) January 2018

    Version Info: Version: 2.10

    1. Test IIS
    2. Test CA Infrastructure
    3. Test Services
    4. Test Service Ports
    0. Quit

    Enter Task..
    3
    Testing Services on:  D16XY842

    Active Directory Certificate Services         : Running Auto
    WSS Addins Infrastructure Service             : Running Auto
    WSS Client Computer Backup Provider Service   : Running Auto
    WSS Client Computer Backup Service            : Running Auto
    WSS Client File Backup Provider Service       : Running Auto
    WSS Devices Provider                          : Running Auto
    WSS Domain Name Management                    : Running Auto
    WSS Health Service                            : Running Auto
    WSS Hosted Email Service                      : Stopped Disabled
    WSS Identity Management Service               : Running Auto
    WSS Initialization Service                    : Running Auto
    WSS Media Streaming Service                   : Running Auto
    WSS Networking Helper Service                 : Running Auto
    WSS Notifications Provider Service            : Running Auto
    WSS Office 365 Integration Service            : Stopped Disabled
    WSS On-Premises Exchange Integration Service  : Stopped Disabled
    WSS Password Synchronization Service          : Stopped Disabled
    WSS Remote Connection Management Service      : Running Auto
    WSS Remote Web Access Administration Provider : Running Auto
    WSS Server Backup Service                     : Running Auto
    WSS Service Provider Registry                 : Running Auto
    WSS Settings Provider                         : Running Auto
    WSS SQM Service                               : Running Auto
    WSS Storage Service                           : Running Auto
    WSS UPnP Device Service                       : Running Auto

    Review your results, items in red should be investigated.

    ************************************************
    * Essentials Server Configuration Tester *
    ************************************************

    OS Detected: Microsoft Windows Server 2012 Essentials

    This tool will check your current Configuration against known Essentials Server Values.
    Written by Robert Pearman (TitleRequired.com) January 2018

    Version Info: Version: 2.10

    1. Test IIS
    2. Test CA Infrastructure
    3. Test Services
    4. Test Service Ports
    0. Quit

    Enter Task..
    4
    Testing Service Ports on :  D16XY842

    TCP 80 (Used for Websites)       : OK
    TCP 443 (Used for Websites)      : Error
    TCP 6602 (Used for Status)       : OK
    TCP 8912 (Used for Backups)      : OK
    TCP 65520 (Used for Mac Website) : OK
    TCP 65500 (Used for CA Website)  : OK

    Tuesday, July 10, 2018 4:17 PM
  • ok, you have a few issues here.

    Get-Itemproperty : Cannot find path 'IIS:\Sites\Default Web Site\CertSrv' because it does not exist

    This is a problem - have you done anything in IIS at all?

    Can you run this command in PowerShell?

    Get-WindowsFeature ADCS*,AD-Cert*

    And also

    Get-WebBinding -name "Default Web Site"


    Robert Pearman @titlerequired Windows Server Essentials.com

    Wednesday, July 11, 2018 9:53 AM
    Moderator
  • Robert,

    I believe a long time ago I had to mess with IIS when I tried to get a VPN running but it's been so long I dont remember what it was. Powershell results below.

    Windows PowerShell
    Copyright (C) 2012 Microsoft Corporation. All rights reserved.

    PS C:\Windows\system32> Get-WindowsFeature ADCS*,AD-Cert*

    Display Name                                          Name            Install State
    ------------                                              ----                -------------
    [X] Active Directory Certificate Services     AD-Certificate     Installed
        [X] Certification Authority            ADCS-Cert-Authority    Installed
        [ ] Certificate Enrollment Policy Web Service    ADCS-Enroll-Web-Pol            Available
        [ ] Certificate Enrollment Web Service             ADCS-Enroll-Web-Svc            Available
        [ ] Certification Authority Web Enrollment  ADCS-Web-Enrollment            Available
        [ ] Network Device Enrollment Service   ADCS-Device-Enrollment         Available
        [ ] Online Responder               ADCS-Online-Cert           Available


    PS C:\Windows\system32> Get-WebBinding -name "Default Web Site"

    protocol               bindingInformation                 sslFlags
    --------                ------------------                     --------
    http                     *:80:                                    0


    PS C:\Windows\system32>


    • Edited by bryanschent Wednesday, July 11, 2018 3:47 PM formatted the best I could
    Wednesday, July 11, 2018 3:39 PM
  • Ok, run this in PowerShell.

    Add-WindowsFeature ADCS-Web-Enrollment

    Then do this in PowerShell

    $WSDashCert = Get-ItemProperty "HKLM:\Software\Microsoft\Windows Server\Identity" | foreach { $_.LocalMachineCert } 
        $WSSCert = Get-ChildItem cert:\localmachine\my | where { $_.Subject -eq "CN=$env:COMPUTERNAME" } | foreach { $_.Thumbprint }
        New-WebBinding -Name "Default Web Site" -Protocol HTTPS -Port 443 -HostHeader $env:ComputerName -SslFlags 1
        $defBind = Get-WebBinding -Name "Default Web Site" -Protocol HTTPS -Port 443 -HostHeader $env:ComputerName
        $defBind.AddSSLCertificate($WSSCert,"my")
    Run these both in an elevated powershell window, then rerun the tester.


    Robert Pearman @titlerequired Windows Server Essentials.com


    Wednesday, July 11, 2018 4:49 PM
    Moderator
  • Robert,

    I know my setup isnt fixed yet, but thank you for your help. You're a saint!

    Seems to have fixed Port 443, but not the cert

    ************************************************
    * Essentials Server Configuration Tester *
    ************************************************

    OS Detected: Microsoft Windows Server 2012 Essentials

    This tool will check your current Configuration against known Essentials Server Values.
    Written by Robert Pearman (TitleRequired.com) January 2018

    Version Info: Version: 2.10

    1. Test IIS
    2. Test CA Infrastructure
    3. Test Services
    4. Test Service Ports
    0. Quit

    Enter Task..
    1
    Only Errors will be shown.

    Checking Websites..

    Checking Connect Site..

    Checking Virtual Directories..

    Get-Itemproperty : Cannot find path 'IIS:\Sites\Default Web Site\CertSrv' because it does not exist.
    At X:\EssentialsTester.ps1:271 char:17
    +         $vdir = Get-Itemproperty "iis:\sites\default web site\$vdir" | select *
    +                 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
        + CategoryInfo          : ObjectNotFound: (IIS:\Sites\Default Web Site\CertSrv:String) [Get-ItemProperty], ItemNot
       FoundException
        + FullyQualifiedErrorId : PathNotFound,Microsoft.PowerShell.Commands.GetItemPropertyCommand

    Checking AppPools..

    Checking ISAPI Filters..

    Checking IIS SSL..

    Checking TLS Version 1.0

    Checking IIS Bindings..

    Binding Missing      : Default Web Site

    Checking IIS Authentication..

    Review your results, items in red should be investigated.

    ************************************************
    * Essentials Server Configuration Tester *
    ************************************************

    OS Detected: Microsoft Windows Server 2012 Essentials

    This tool will check your current Configuration against known Essentials Server Values.
    Written by Robert Pearman (TitleRequired.com) January 2018

    Version Info: Version: 2.10

    1. Test IIS
    2. Test CA Infrastructure
    3. Test Services
    4. Test Service Ports
    0. Quit

    Enter Task..
    2
    Testing CA Name..
    Certificate Authority Online  : OK
    Certificate Authority Name    : OK
    Certificate Authority Cert    : OK

    Testing /Connect Certificate Package..
    Connect Computer Certificate  : OK

    Testing CRL Download..
    CRL Location                  : http://D16XY842/CertEnroll/SCHALLERTENT-D16XY842-CA.crl
    CRL Destination               : c:\windows\temp\crl.crl
    Exception calling "DownloadFile" with "2" argument(s): "The remote server returned an error: (404) Not Found."
    At X:\EssentialsTester.ps1:1216 char:9
    +         $wc.DownloadFile($source,$destination)
    +         ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
        + CategoryInfo          : NotSpecified: (:) [], MethodInvocationException
        + FullyQualifiedErrorId : WebException

    CRL Download                  : Failed

    Testing CRL Distribution Configuration..
    419.6169.0:<2018/7/11, 10:04:24>: 0x80070002 (WIN32: 2)
    437.2144.0:<2018/7/11, 10:04:24>: 0x80070002 (WIN32: 2)

    It is normal to see some 'File Not Found' messages above when using this CmdLet (Get-CACrlDistributionPoint)

    CRL Extension (CDP)           : OK
    CRL Extension (CRL)           : OK

    Testing Dashboard Certificate..
    Current Dashboard Certificate : 9A2EB8073FE1C3F80E3141245C3650B0B52A917A
    Dashboard Certificate         : OK

    Review your results, items in red should be investigated.

    ************************************************
    * Essentials Server Configuration Tester *
    ************************************************

    OS Detected: Microsoft Windows Server 2012 Essentials

    This tool will check your current Configuration against known Essentials Server Values.
    Written by Robert Pearman (TitleRequired.com) January 2018

    Version Info: Version: 2.10

    1. Test IIS
    2. Test CA Infrastructure
    3. Test Services
    4. Test Service Ports
    0. Quit

    Enter Task..
    3
    Testing Services on:  D16XY842

    Active Directory Certificate Services         : Running Auto
    WSS Addins Infrastructure Service             : Running Auto
    WSS Client Computer Backup Provider Service   : Running Auto
    WSS Client Computer Backup Service            : Running Auto
    WSS Client File Backup Provider Service       : Running Auto
    WSS Devices Provider                          : Running Auto
    WSS Domain Name Management                    : Running Auto
    WSS Health Service                            : Running Auto
    WSS Hosted Email Service                      : Stopped Disabled
    WSS Identity Management Service               : Running Auto
    WSS Initialization Service                    : Running Auto
    WSS Media Streaming Service                   : Running Auto
    WSS Networking Helper Service                 : Running Auto
    WSS Notifications Provider Service            : Running Auto
    WSS Office 365 Integration Service            : Stopped Disabled
    WSS On-Premises Exchange Integration Service  : Stopped Disabled
    WSS Password Synchronization Service          : Stopped Disabled
    WSS Remote Connection Management Service      : Running Auto
    WSS Remote Web Access Administration Provider : Running Auto
    WSS Server Backup Service                     : Running Auto
    WSS Service Provider Registry                 : Running Auto
    WSS Settings Provider                         : Running Auto
    WSS SQM Service                               : Running Auto
    WSS Storage Service                           : Running Auto
    WSS UPnP Device Service                       : Running Auto

    Review your results, items in red should be investigated.

    ************************************************
    * Essentials Server Configuration Tester *
    ************************************************

    OS Detected: Microsoft Windows Server 2012 Essentials

    This tool will check your current Configuration against known Essentials Server Values.
    Written by Robert Pearman (TitleRequired.com) January 2018

    Version Info: Version: 2.10

    1. Test IIS
    2. Test CA Infrastructure
    3. Test Services
    4. Test Service Ports
    0. Quit

    Enter Task..
    4
    Testing Service Ports on :  D16XY842

    TCP 80 (Used for Websites)       : OK
    TCP 443 (Used for Websites)      : OK
    TCP 6602 (Used for Status)       : OK
    TCP 8912 (Used for Backups)      : OK
    TCP 65520 (Used for Mac Website) : OK
    TCP 65500 (Used for CA Website)  : OK

    Review your results, items in red should be investigated.
    Wednesday, July 11, 2018 5:14 PM
  • OK run this again then,
    Get-WindowsFeature ADCS*,AD-Cert*

    Robert Pearman @titlerequired Windows Server Essentials.com

    Wednesday, July 11, 2018 5:32 PM
    Moderator
  • You might be able to also just add the CertSrv application back into IIS manually.

    Right click Default Web Site, click add application, and fill it out like this.


    Robert Pearman @titlerequired Windows Server Essentials.com

    Wednesday, July 11, 2018 5:45 PM
    Moderator
  • There we go, that seemed to make some good changes. I've copied Results for Tests 1 & 2, since results for 3 and 4 were same as previous.

    ************************************************
    * Essentials Server Configuration Tester *
    ************************************************

    OS Detected: Microsoft Windows Server 2012 Essentials

    This tool will check your current Configuration against known Essentials Server Values.
    Written by Robert Pearman (TitleRequired.com) January 2018

    Version Info: Version: 2.10

    1. Test IIS
    2. Test CA Infrastructure
    3. Test Services
    4. Test Service Ports
    0. Quit

    Enter Task..
    1
    Only Errors will be shown.

    Checking Websites..

    Checking Connect Site..

    Checking Virtual Directories..

    Checking AppPools..

    Checking ISAPI Filters..

    Checking IIS SSL..

    Checking TLS Version 1.0

    Checking IIS Bindings..

    Binding Missing      : Default Web Site

    Checking IIS Authentication..

    Review your results, items in red should be investigated.

    ************************************************
    * Essentials Server Configuration Tester *
    ************************************************

    OS Detected: Microsoft Windows Server 2012 Essentials

    This tool will check your current Configuration against known Essentials Server Values.
    Written by Robert Pearman (TitleRequired.com) January 2018

    Version Info: Version: 2.10

    1. Test IIS
    2. Test CA Infrastructure
    3. Test Services
    4. Test Service Ports
    0. Quit

    Enter Task..
    2
    Testing CA Name..
    Certificate Authority Online  : OK
    Certificate Authority Name    : OK
    Certificate Authority Cert    : OK

    Testing /Connect Certificate Package..
    Connect Computer Certificate  : OK

    Testing CRL Download..
    CRL Location                  : http://D16XY842/CertEnroll/SCHALLERTENT-D16XY842-CA.crl
    CRL Destination               : c:\windows\temp\crl.crl
    CRL Download                  : OK

    Testing CRL Distribution Configuration..
    419.6169.0:<2018/7/11, 10:52:27>: 0x80070002 (WIN32: 2)
    437.2144.0:<2018/7/11, 10:52:27>: 0x80070002 (WIN32: 2)

    It is normal to see some 'File Not Found' messages above when using this CmdLet (Get-CACrlDistributionPoint)

    CRL Extension (CDP)           : OK
    CRL Extension (CRL)           : OK

    Testing Dashboard Certificate..
    Current Dashboard Certificate : 9A2EB8073FE1C3F80E3141245C3650B0B52A917A
    Dashboard Certificate         : OK

    Review your results, items in red should be investigated.


    Wednesday, July 11, 2018 6:02 PM
  • The missing binding reported now may be related to RWA, so i would ignore that for the moment and try to rejoin a client machine.

    Robert Pearman @titlerequired Windows Server Essentials.com

    Thursday, July 12, 2018 9:05 AM
    Moderator
  • I tried to connect the client, and still same error as original. :(
    Thursday, July 12, 2018 3:39 PM
  • No worries,

    Can you go to https://yourserver from a client - does it show an SSL Warning or does it show the correct page?


    Robert Pearman @titlerequired Windows Server Essentials.com

    Thursday, July 12, 2018 3:59 PM
    Moderator
  • I tried from the Windows 10 Pro client that I'm trying to connect, and from a Windows 7 Ultimate client that is currently connected to the server and same error page on both.

    'This site can’t be reached

    d16xy842 took too long to respond.

    Try:

    • Checking the connection

    • Checking the proxy and the firewall

    • Running Windows Network Diagnostics

    ERR_CONNECTION_TIMED_OUT'



    • Edited by bryanschent Thursday, July 12, 2018 4:17 PM format
    Thursday, July 12, 2018 4:17 PM
  • Can you go into IIS, and check the bindings on the default website - what certificate is bound to port 443?


    Robert Pearman @titlerequired Windows Server Essentials.com

    Thursday, July 12, 2018 4:33 PM
    Moderator
  • My apologies, I removed that binding yesterday while trying to fix the misisng binding error from the Test results. I restored it back to how it was and got this error.

    'Your connection is not private
    Attackers might be trying to steal your information from d16xy842 (for example, passwords, messages, or credit cards). Learn more
    NET::ERR_CERT_COMMON_NAME_INVALID'

    Certificate bound to 443 is named D16XY842

    Thursday, July 12, 2018 5:11 PM
  • So when you go to https://D16XY842 you get the ssl error?

    Robert Pearman @titlerequired Windows Server Essentials.com

    Thursday, July 12, 2018 5:18 PM
    Moderator
  • Correct
    Thursday, July 12, 2018 5:24 PM
  • Ok, lets try this.

    $cert = (Get-WebBinding -Name "Default Web Site" -Protocol HTTPS).CertificateHash
    Get-Childitem cert:\localmachine\my | where { $_.ThumbPrint -eq $cert }
    What do you get?


    Robert Pearman @titlerequired Windows Server Essentials.com

    Thursday, July 12, 2018 5:44 PM
    Moderator
  • PS C:\Windows\system32> $cert = (Get-WebBinding -Name "Default Web Site" -Protocol HTTPS).CertificateHash
    PS C:\Windows\system32> Get-Childitem cert:\localmachine\my | where { $_.ThumbPrint -eq $cert }


        Directory: Microsoft.PowerShell.Security\Certificate::localmachine\my


    Thumbprint                                                           Subject
    ----------                                                               -------
    9A2EB8073FE1C3F80E3141245C3650B0B52A917A  CN=D16XY842


    PS C:\Windows\system32>
    Thursday, July 12, 2018 5:49 PM
  • Can you go into MMC, load up the certificates snapin for your computer account.

    Go to the personal store.

    Find the certificate for CN=D16XY842, open it up, go to the certificate path tab, does it show the certificate is trusted?


    Robert Pearman @titlerequired Windows Server Essentials.com

    Thursday, July 12, 2018 5:56 PM
    Moderator
  • I don't see any verbiage about whether or not its trusted. But the Certificate Status does say "This certificate is OK." if that helps at all.
    Thursday, July 12, 2018 6:05 PM
  • It doesn't make sense that you would get that certificate error, we must be missing something!

    Robert Pearman @titlerequired Windows Server Essentials.com

    Thursday, July 12, 2018 6:53 PM
    Moderator
  • I'm as stumped as you
    Thursday, July 12, 2018 8:02 PM
  • Interested to see though, welcome to contact me https://windowsserveressentials.com/support

    Robert Pearman @titlerequired Windows Server Essentials.com

    Thursday, July 12, 2018 8:18 PM
    Moderator
  • Message Sent
    Thursday, July 12, 2018 8:37 PM
  •  Is your DNS address on wse2012 server still  192.168.254.254?

    if it is, change it to 127.0.0.1 or current ip address of wse2012 . And enter ipconfig /flushdns in command prompt on wse 2012.If it is possible ,you need set static ip on server 2012 essentials.

    Tuesday, July 17, 2018 11:24 AM
  • There were several issues on this system, we fixed the following:

    Missing Roles (including IIS features / roles)

    Missing /certsrv  web application on default web site.

    Missing bindings on default web site.

    Incorrect DNS Settings on the server.

    My essentials tester script has been updated to check for these issues (and others)


    Robert Pearman @titlerequired Windows Server Essentials.com


    Tuesday, July 17, 2018 11:41 AM
    Moderator
  • Here's the solution we (Robert & I) worked out. 

    *This may not all be necessary but its the setup that worked for us.

    IPV6 disabled on server&clients

    IPV4 preferred DNS set to server IP on both server&clients

    Checked bindings to make sure ports 80 & 443 configured properly

    Running Robert's script (https://gallery.technet.microsoft.com/Windows-Server-Essentials-556159c3/view/Discussions#content) *be sure to right click the file and unblock it to get it to work.

    uncovered certsrv missing, added through powershell command "Get-WindowsFeature ADCS*,AD-Cert*"

    Test 5 of Roberts script uncovered many missing roles. Added all missing roles through server manager and then was able to connect the clients.

    Big thank you Robert! You saved us!

    Friday, July 20, 2018 6:56 PM