none
Windows 2012 RDS - Users are getting temporary profiles – no pattern found yet. RRS feed

  • Question

  • Hi,

    We are testing Windows 2012 environment and so far it is really nice and we like it but, we found a few issues that we are trying to solve. Right now, the problem that we are experiencing is temporary profiles for a few users. This problem is happening sometimes to all users. All user have been receiving temporary profile everyday. Everyday different users or the same one; i havent found a patter to this issue. We are testing with five users and at least two have to deal with this problem everyday. I hope someone can provide me some guidance to solve this problem.

    We are trying to migrate our company to windows RDS 2012 from windows RDS 2008 R2. Let me describe our current scenario: all servers have win 2012 installed, we are using RDS as a remote desktop session mode and we are using User Disk Profile in the collection. Right now, we are using redirecting profiles for AppData, Desktop, Documents, Downloads, Favorites; Music, Pictures and My Music follow the documents folder. Do you think redirect folders should affect the login? We are not using roaming profile because we are using User disk profile (VHDx) new feature of Windows 2012 (Really nice by the way!).

    Our current servers are:

    1 RDSAdmin (console managment)

    1 RDSCB (Connection Broker) - This server has the following roles: Connection Broker, Web Access, Gateway and Licensing.

    2 RDS (RDS Host)

    2 User Disk profile Servers - These servers are hosting the vhdx files for our sessions. The main server is replicating to the other user disk profile server using DFSR technologies. I didnt see any errors on this server about user profile.

    1 staffapp - Server with special apps (RemoteApp Server)

    Below, you will see the errors messages that I grabbed from RDS 1 & 2 in Event logs. I added two cases but, the other users with the problem have the same error messages.

    CASE 1: User Stella logged in in our servers for 1<sup>st</sup> time during the day.

    11:29 – User logged in.

    11:29:17

    Windows has backed up this user profile. Windows will automatically try to use the backup profile the next time this user logs on.

    (Log Name: Application, Source: User Profile Service, EventID 1515, Level Error, User Stella, Server RDS2.domain.com)

    11:29:17

    Windows cannot find the local profile and is logging you on with a temporary profile. Changes you make to this profile will be lost when you log off.

    (Log Name: Application, Source: User Profile Service, EventID 1511, Level Error, User Stella, Server RDS2.domain.com)

    11:29:21 to 11:29:24

    Successfully applied policy and redirected folder "Desktop" , My Documents, etc.

    11:29 – User Stella got Temporary profile

    11:30 – User Stella logged off to see if she can get her profile

    ____________________________________________________________________________________________________

    11:32 – User logged in.

    11:32:27

    Windows has backed up this user profile. Windows will automatically try to use the backup profile the next time this user logs on.

    (Log Name: Application, Source: User Profile Service, EventID 1515, Level Error, User Stella, Server RDS2.domain.com)

    11:32:27

    Windows cannot find the local profile and is logging you on with a temporary profile. Changes you make to this profile will be lost when you log off.

    (Log Name: Application, Source: User Profile Service, EventID 1511, Level Error, User Stella, Server RDS2.domain.com)

    11:32:31 to 11:32:34

    Successfully applied policy and redirected folder "Desktop" , My Documents, etc.

    11:32 – User Stella got Temporary profile

    11:33 – User Stella logged off to see if he can get her profile

    ____________________________________________________________________________________________________

    11:39 _ User logged back in

    I didn’t see any log about her log in like in above user example.

    11:39:08 to 11:39:08

    Successfully applied policy and redirected folder "Desktop" , My Documents, etc.

    11:39 – User Stella got back her profile.

    ______

    CASE 2: This user logged in fine at 8AM, he logged off properly and when he try to log back in, he got several time a temporary profile.

    11:22:56 – User logged of properly from RDS1 (sing out option) in Metro start UI but, you can see the following errors that I found in application events.

    Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. 

     30 user registry handles leaked from \Registry\User\S-1-5-21-2939789750-1442897670-3719609095-9685:

    Process 896 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2939789750-1442897670-3719609095-9685

    Process 896 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2939789750-1442897670-3719609095-9685

    Process 896 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2939789750-1442897670-3719609095-9685

    Process 896 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2939789750-1442897670-3719609095-9685

    Process 572 (\Device\HarddiskVolume2\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2939789750-1442897670-3719609095-9685

    Process 572 (\Device\HarddiskVolume2\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2939789750-1442897670-3719609095-9685

    Process 572 (\Device\HarddiskVolume2\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2939789750-1442897670-3719609095-9685

    Process 572 (\Device\HarddiskVolume2\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2939789750-1442897670-3719609095-9685

    Process 896 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2939789750-1442897670-3719609095-9685\Software\Microsoft\SystemCertificates\Disallowed

    Process 572 (\Device\HarddiskVolume2\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2939789750-1442897670-3719609095-9685\Software\Microsoft\SystemCertificates\Disallowed

    Process 896 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2939789750-1442897670-3719609095-9685\Software\Microsoft\SystemCertificates\trust

    Process 572 (\Device\HarddiskVolume2\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2939789750-1442897670-3719609095-9685\Software\Microsoft\SystemCertificates\trust

    Process 572 (\Device\HarddiskVolume2\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2939789750-1442897670-3719609095-9685\Software\Policies\Microsoft\SystemCertificates

    Process 572 (\Device\HarddiskVolume2\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2939789750-1442897670-3719609095-9685\Software\Policies\Microsoft\SystemCertificates

    Process 572 (\Device\HarddiskVolume2\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2939789750-1442897670-3719609095-9685\Software\Policies\Microsoft\SystemCertificates

    Process 572 (\Device\HarddiskVolume2\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2939789750-1442897670-3719609095-9685\Software\Policies\Microsoft\SystemCertificates

    Process 896 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2939789750-1442897670-3719609095-9685\Software\Policies\Microsoft\SystemCertificates

    Process 896 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2939789750-1442897670-3719609095-9685\Software\Policies\Microsoft\SystemCertificates

    Process 896 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2939789750-1442897670-3719609095-9685\Software\Policies\Microsoft\SystemCertificates

    Process 896 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2939789750-1442897670-3719609095-9685\Software\Policies\Microsoft\SystemCertificates

    Process 896 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2939789750-1442897670-3719609095-9685\Software\Microsoft\SystemCertificates\TrustedPeople

    Process 572 (\Device\HarddiskVolume2\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2939789750-1442897670-3719609095-9685\Software\Microsoft\SystemCertificates\TrustedPeople

    Process 896 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2939789750-1442897670-3719609095-9685\Software\Microsoft\SystemCertificates\CA

    Process 572 (\Device\HarddiskVolume2\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2939789750-1442897670-3719609095-9685\Software\Microsoft\SystemCertificates\CA

    Process 896 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2939789750-1442897670-3719609095-9685\Software\Microsoft\SystemCertificates\Root

    Process 572 (\Device\HarddiskVolume2\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2939789750-1442897670-3719609095-9685\Software\Microsoft\SystemCertificates\Root

    Process 896 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2939789750-1442897670-3719609095-9685\Software\Microsoft\SystemCertificates\SmartCardRoot

    Process 572 (\Device\HarddiskVolume2\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2939789750-1442897670-3719609095-9685\Software\Microsoft\SystemCertificates\SmartCardRoot

    Process 1276 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2939789750-1442897670-3719609095-9685\Printers\DevModePerUser

    Process 572 (\Device\HarddiskVolume2\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2939789750-1442897670-3719609095-9685\Software\Microsoft\SystemCertificates\MY

    11:22:57 (From RDS1)

    Windows Search Service indexed data for user 'LIFENET\fragoso' successfully removed in response to user profile deletion

    11:22:57 (From RDS1)

    Windows Search Service indexed data for user 'LIFENET\fragoso' successfully removed in response to user profile deletion

    11:22:57 (From RDS1)

    Windows Search Service indexed data for user 'LIFENET\fragoso' successfully removed in response to user profile deletion

    11:22 – User completely Logged off

    ____________________________________________________________________________________________

    11:23 – User logged in.

    Windows has backed up this user profile. Windows will automatically try to use the backup profile the next time this user logs on.

    (Log Name: Application, Source: User Profile Service, EventID 1515, Level Error, User Wolf, Server RDS2.domain.com)

    11:23:36

    Windows cannot find the local profile and is logging you on with a temporary profile. Changes you make to this profile will be lost when you log off.

    (Log Name: Application, Source: User Profile Service, EventID 1511, Level Error, User Wolf, Server RDS2.domain.com)

    11:23:41 to 11:23:44

    Successfully applied policy and redirected folder "Desktop" , My Documents, etc.

    11:24 – User Wolf got Temporary profile

    11:25 – User Wolf logged off to see if he can get his profile

    ____________________________________________________________________________________________________

    11:25 – User logged back in

    11:25:44

    Windows has backed up this user profile. Windows will automatically try to use the backup profile the next time this user logs on.

    (Log Name: Application, Source: User Profile Service, EventID 1515, Level Error, User Wolf, Server RDS2.domain.com)

    11:25:44

    Windows cannot find the local profile and is logging you on with a temporary profile. Changes you make to this profile will be lost when you log off.

    (Log Name: Application, Source: User Profile Service, EventID 1511, Level Error, User Wolf, Server RDS2.domain.com)

    11:25:48 to 11:25:51

    Successfully applied policy and redirected folder "Desktop" , My Documents, etc.

    11:26 – User Wolf got Temporary profile

    11:26 – User Wolf logged off to see if he can get his profile

    _______________________________________________________________________________________________

    11:27 – User logged back in

    11:27:20

    Windows has backed up this user profile. Windows will automatically try to use the backup profile the next time this user logs on.

    (Log Name: Application, Source: User Profile Service, EventID 1515, Level Error, User Wolf, Server RDS2.domain.com)

    11:27:20

    Windows cannot find the local profile and is logging you on with a temporary profile. Changes you make to this profile will be lost when you log off.

    (Log Name: Application, Source: User Profile Service, EventID 1511, Level Error, User Wolf, Server RDS2.domain.com)

    11:27:25 to 11:27:28

    Successfully applied policy and redirected folder "Desktop" , My Documents, etc.

    11:27 – User Wolf got Temporary profile

    11:28 – User Wolf logged off to see if he can get his profile

    _______________________________________________________________________________________________

    11:36 _ User logged back in

    11:36:34 to 11:36:34

    Successfully applied policy and redirected folder "Desktop" , My Documents, etc.

    11:27 – User Wolf his profile back

    At this point, we were thinking that this issue was happening when you log off from RDS1 and the next time you log in to RDS2 because it didn’t work in RDS2 until I hit back to RDS1.

    ___________________________________________________________________________________________

    Thanks in advance!!! I hope someone can help me on this!

    Thursday, May 2, 2013 11:58 PM

Answers

  • Our Thin client vendor was able to duplicate the issue and it is not happening and previous version of the firmaware so, this problem is related to the firmware. I will be closing this question.

    Thanks armin19 for your reply! our current configuration is fine. it is just happening in the rdp 8.0 new firmware that we need to be able to use remotefx :)

    Thanks!

    • Marked as answer by JLFG Thursday, May 9, 2013 7:50 PM
    Thursday, May 9, 2013 7:49 PM

All replies

  • ?

    Friday, May 3, 2013 3:28 PM
  • I'm using the new profile redirection method in 2012 (.vhdx) but at a very small scale so I don't have any issues yet, but I recall reading up on this new feature before I decided to implement it and the overall feedback on the net is that it can be pretty flaky and a lot of users end up with temp profiles.

    I can first suggest you review your GPOs to ensure nothing is conflicting with the new profile method, particularly under the following two sections:

    computer configuration > policies > administrative templates > system > user profiles

    computer configuration > policies > administrative templates > windows components > remote desktop services > remote desktop session host > profiles

    Slow link detection policies may help here since users are coming over the network and their profiles are remotely stored from the RDS hosts.

    Lastly, ensure you create a network share with just the basic out of box NTFS and sharing permissions, don't bother changing anything.  Once that share is created and you configure RDS to use it to store the profiles, Windows will reconfigure the share with its own access permissions to ensure users won't have issues writing to it.

    While your setup sounds resilient, it might be best for the sake of troubleshooting to simplify things a little bit by maybe allowing connections to only one of your RDS hosts and using a single simple share for the profile storage instead of DFSR which may overcomplicate matters.

    Friday, May 3, 2013 7:37 PM
  • We are reporting this issue to our thin client vendor (Wyse). We are using the R10 - Wnos 8.0_30. If the problem is in that route, i'll update this ticket.

    Thanks!

    Monday, May 6, 2013 8:47 PM
  • Our Thin client vendor was able to duplicate the issue and it is not happening and previous version of the firmaware so, this problem is related to the firmware. I will be closing this question.

    Thanks armin19 for your reply! our current configuration is fine. it is just happening in the rdp 8.0 new firmware that we need to be able to use remotefx :)

    Thanks!

    • Marked as answer by JLFG Thursday, May 9, 2013 7:50 PM
    Thursday, May 9, 2013 7:49 PM
  • I've been having the same issue with a similar setup also using the WYSE R10s.  Has WYSE managed to fix the issue in the firmware and close your case?  I've contacted them and they are reporting that they haven't come across any such issues.
    • Edited by DavidMSH Monday, November 25, 2013 8:57 PM
    Monday, November 25, 2013 8:56 PM