Showing posts with label SBS Install. Show all posts
Showing posts with label SBS Install. Show all posts

Wednesday, 24 April 2013

SBS 2011 Standard: Install Error 0x80300001 - "Windows cannot be installed to Disk 0 Partition 1" OR "Cannot find a System Partition"

There was one other error that came up depending on if we SHFT+F10 to get to the command prompt and try formatting using DiskPart.

image

Internet searches came up with swapping optical disks between the Windows installer disk and the driver disk but we had everything including the Answer File (this was a migration run attempt in a lab setting) on a bootable USB flash drive.

After fighting with it for an hour we brought in another known good bootable USB flash drive that had the SBS 2011 Standard install files on it and low and behold the process worked!

Meh ... Very frustrating to run through all of that troubleshooting only to find out that the ISO we pulled the files from was bad.

So, the second step in troubleshooting any Windows OS install error in WinPE is to download a new ISO, format a flash drive as bootable using DiskPart, and copy the SBS files over.

Philip Elder
MPECS Inc.
Microsoft Small Business Specialists
Co-Author: SBS 2008 Blueprint Book

Chef de partie in the SMBKitchen
Find out more at
www.thirdtier.net/enterprise-solutions-for-small-business/

Windows Live Writer

Monday, 23 July 2012

SBS Migration Guide and SBS Setup Guide Updated

We have added quite a few steps to both our Migration Guide and our Setup Guide.

Please do use these guides for your own SBS 2011 Standard setup and migration processes!

Philip Elder
MPECS Inc.
Microsoft Small Business Specialists
Co-Author: SBS 2008 Blueprint Book

*Our original iMac was stolen (previous blog post). We now have a new MacBook Pro courtesy of Vlad Mazek, owner of OWN.

Windows Live Writer

SBS 2011 Setup Guide v1.13.0

This list is the guide that we use to set up our SBS 2011 boxes or VMs in a consistent manner. As with earlier versions of SBS, this version too will require a number of post OS install tweaks and configuration steps.

The following assumes that the server manufacturer’s prep disk was used to update the BIOS, motherboard firmware, RAID controller firmware, backplane firmware, and any other device’s onboard firmware prior to installing the SBS 2008 OS. The firmware update step is an absolutely critical one for the stability of the server.

Note that we do not input the Product Key into the OS until we are ready to put the server into production or are on the edge of finishing up a migration.

The SBS 2011 Setup Steps
  1. When installing into a VM set the time.
    • MPECS Inc. Blog: Hyper-V- Preparing A High Load VM For Time Skew
    • Standalone: When virtualizing SBS on a standalone server set the host to poll pool.ntp.org for the correct time. Configure the host’s firewall to allow NTP polling on the local subnet. Then set the SBS VM to poll the host’s IP or hostname for time using the above settings.
    • Clustered: Have the standalone DC polling pool.ntp.org and set as the authoritative time source for the domain. Have SBS and other VMs poll the standalone DC for their time using the above settings.
  2. Install the manufacturer’s drivers.
      1. RAID including RAID monitoring/status software.
      2. Chipset.
      3. Video.
      4. NIC (Do not team). Unplug or disable any extra NICs for now.
      5. Management suites from the hardware manufacturers will be installed later on in this process.
      6. We do not install System Center Essentials that is provided by Intel on our Intel based SBS 2008 servers.
    1. Desktop
        1. Set the desktop resolution for the monitor attached.
          • Keep in mind that some remote management modules such as Dell’s DRAC may not work if the monitor’s resolution is set too high.
        2. Enable desktop icons:
          1. Click Start –> type: Desktop Icons [Enter].
            • image
      1. GUI Customization
          1. Windows Explorer.
            • Extensions, Show hidden . . .
            • image
            • image
          2. Start Menu.
          3. Notification Area.
          4. Add a Desktop Toolbar to the Task Bar .
            • image
          5. Internet Explorer.
            1. Add http://download.microsoft.com to Trusted Sites.
          6. Task Manager Process Column Customization.
            • PID, memory usage, maximum memory usage, I/O Bytes (3)
        1. Partitioning
            • NEW: RAID 5 with 4x 15K SAS Spindles (four drives) is now our default RAID setup for small clients.
              • For our 8-15 seat clients we will configure 5 15K SAS spindles in RAID 5 plus a hot spare depending on their I/O requirements.
              • With the advent of the 300GB and 600GB Intel 320 Series SSDs we are looking to SSD going forward for those clients that require ultra-high performing storage systems.
              • For clients with around 15 seats or more we are starting to configure a standalone 1U server for virtualization or Hyper-V Cluster directly attached to a Promise VTrak RAID Subsystem (VTE310sD or VTE610sD) for maximum storage flexibility.
            • Name after the amount of storage is the drive label.
              • ~900GB Usable (4x 300GB 15K SAS)
              • C: 150GB SS-SBS (Rename to SBS server name)
              • S: 1.5x RAM xxGB SwapFile (Min. 10GB RAM * 1.5 with wiggle room)
                • 32GB SwapFile
                • SBS 2011 swap file configuration out of the box:
                  •  image
              • L: 718GB WorkingStorage
            • Note: Exchange 2010 has been designed from the ground up to utilize more RAM. Adding more RAM for Exchange performance would be our priority before adding more spindles to the RAID 10 set.
            • Also, we do not install SATA hard drives of any kind into server settings anymore. In our experience they are too problematic in RAID arrays no matter which manufacturer made them. 
            • MPECS Inc. Blog: SAS versus SATA and Hardware RAID versus Software RAID.
          • Move the optical drive letter to Z:.
          • Move the Swap File (Reboot).
          • SBS 2011: Do _not_ Copy and paste this services shutdown batch file onto the desktop (previous blog post).
            • The Exchange 2010 team has addressed the issues of having Exchange installed on a DC with this version. Exchange 2007 had shutdown timing issues thus the long shutdown times.
          • Install and configure Print Services Role: SBS 2008 Terminal Services and HP Printer Drivers (previous blog post).
            • image
          • Windows Native Tools Management Console modifications
            1. Add the Group Policy Management Console
            2. Add the Print Management snap-In (after adding the Print Server Role).
            3. Add the Share and Storage Management snap-in.
            4. Add the File Server Resource Manager snap-in.
            5. Add the Remote Desktop Services Manager snap-in.
            6. Add the Windows Server Backup snap-in.
              • image
          • Configure an authoritative time source for the SBS OS.
            1. Blog Post: Hyper-V- Preparing A High Load VM For Time Skew
              • This is the best methodology to date for setting up a VM’s Windows Time Service.
            2. Blog Post: SBS 2008 Physical And Hyper-V – Set Up the Domain Time Structure.
              • The default time.windows.com is not a reliable source.
            3. TechNet: Synchronize the Source Server time with an external time source for Windows SBS 2008 migration.
            4. Once the commands have run, an error message or two may show in the Event Logs soon to be replaced by a successful connection to the authoritative time source.
            5. Note Oliver Sommer’s comments in the above article.
          • Enable ShadowCopies on the WorkingStorage partition and set a schedule. We use before hours, coffee, lunch, coffee, and after hours for the schedule.
          • DHCP IPv4 Properties (DNS updates & credentials)
            • image
            • Enable Name Protection and set the credentials.
          • DHCP additional exclusions for printers (x.1-10 if not present) and servers (x.250-254).
          • DNS Settings for Scavenging at 7 days and AD integrated zones.
          • Verify NIC Binding Order Settings: Blog Post: Slow Network Speeds with SBS 2008 and 2011: NIC Binding Order
          • Create a 10GB Soft Quota (File Server Resource Manager).
          • Enable firewall logging and pop-ups: SBS 2008 Windows Firewall with Advanced Security troubleshooting (previous blog post).
            1. Customize the firewall setup for QuickBooks.
              1. QuickBooks Connection Diagnostic Tool Post (Previous blog post).
            2. Customize the firewall setup for Simply Accounting (Previous blog post).
          • Create the default Company Shared Folder with required NTFS and share permissions on the L: WorkingStorage partition.
              • Share Name: Company.
              • Quota: 10GB Soft.
              • Enable Access-based Enumeration.
              • NTFS Permissions:
                • Domain Admins = FULL.
                • Domain Users = Modify.
                • Leave default machine based permissions.
              • Share Permissions:
                • Everyone = FULL.
            • Create the ClientApps (previous blog post on GP and the ClientApps folder) on the L: WorkingStorage partition.
                • Share Name: ClientApps.
                • Quota: None.
                • Enable Access-based Enumeration. Subfolders can have custom permissions at a later date to exclude users or groups and thus hide those subfolders at a later date.
                • NTFS Permissions:
                  • Domain Admins = FULL
                  • Domain Users = FULL
                  • Domain Controllers = FULL
                  • Domain Computers = FULL
                • Share Permissions:
                  • Everyone = FULL
              • Make changes to the WSUS Setup:
                • WSUS Classifications: Enable all.
                • WSUS Sync Schedule: Increase synchronization frequency schedule depending on what products are installed on the server.
              • Getting Started Tasks – Out of Order
                1. Configure and take a backup now.
                2. Times: 12:30, 17:30, 23:30.
                  • Make sure that the backup times and the Volume Shadow Copy snapshots do not happen at the same time.
                3. Backup Now by right clicking on the configured backup and running it.
                4. Backup in between each batch of updates.

              • Windows Server 2008 R2 Service Packs
                1. Download and install the latest Windows Server 2008 R2 Service Pack (Bing Search)
                  1. Be aware that the install process may take a while.
                  2. image
              • Exchange 2010 Updates
              • Server Updates via WSUS/MU.
                • Update to the latest SBS Update Rollup first.
                • Run updates according to the following product groups:
                • Windows Server 2008 Standard R2
                  • Run OS Updates at around 10-15 per reboot cycle.
                  • Run OS Security Updates at around 5-10 per reboot cycle.
                • Exchange SP1/2/3 or Exchange Rollup RU1/2/3/etc 
                • .NET
                  • If .NET v1 is present update first.
                  • Do .NET v2 and v2.x updates one at a time.
                  • Do .NET v3 and v3.x updates one at a time.
                  • Do .NET v4 and v4.x updates one at a time.
                  • Reboot between each cycle as requested.
                • SQL
                  • Start with 2005 versions.
                  • Next to 2008 versions.
                  • Next to 2008 R2 versions.
                • WSUS, and others.
                • SharePoint Foundation Updates should be run separately.
              • Create a new User Role in the SBS Console.
                • Name: Standard User – Restricted.
                • Remove all Group Memberships.
                • Add the Domain Users security group only.
                • Remove OWA permission.
                • No RWW or VPN.
                • Verify permissions in the User Role after it is created.
                • This role is used for the local admin account deployed via Group Policy later in this guide.
              • Create and configure the Group Policy Central Store (Previous blog post).
              • OPTION: Raise both Domain and Forest Functional level to 2008 R2
                • This is accomplished in AD Domains and Trusts.
                • image
              • Group Policy Configurations (previous blog post):
                1. Windows Computer Policy:
                  1. Firewall Exceptions:
                    1. Enable Remote Event Log Management (previous blog post).
                    2. Remote Volume Management
                    3. Remote Desktop Protocol and RemoteFX Protocol
                  2. Set limits to the RDP setup on the server and clients (previous blog post).
                  3. Local Policies: User Rights Assignment.
                  4. Local Policies: Security Options.
                    • Enable UAC by default in Group Policy (previous blog post).
                    • NOTE: The UAC structure can be split up between Computers, SBSComputers, and SBSServers GPOs so that domain/local admin accounts only get prompted on servers.
                  5. Remote Connectivity: Restrict certain RDP related settings (previous blog post).
                2. Windows SBSUsers Policy:
                  1. Configure Screensaver Management. Our default is 45 minutes with logon.scr as the default SS. Password is always required.
                    • 2010-10-18: For Windows 7 we now use scrnsave.scr as the basis for all screensavers which is a blank screen.
                  2. Mapped Network Drive (M: = \\SS-SBS\Company) via Group Policy Preferences
                  3. Set the Companyweb as the default site in IE.
                  4. Add the RWW and OWA URLs to IE’s Favourites.
                3. Windows SBSComputers Policy:
                  1. Deploy a restricted domain user to _all_ system’s Local Admin Group.
                    1. Create a new user using the Standard User – Restricted Role.
                    2. Deploy to workstation’s Local Admin Group via Group Policy Preferences.
                    3. Remove the user’s mailbox (previous blog post).
                4. Windows Printer Deployment Policy:
                  1. Deploy printers to XP Professional x86 (previous blog post).
                  2. Deploy printers to Windows Vista using the Printer Management snap-in.
                5. Windows SBSComputers XP Pro Policy:
                  1. Deploy Windows Defender to Windows XP Professional (Optional).
              • Install the server hardware manufacturer’s management software suite.
              • Set the SBS Domain Password Polices (60-75 days, 10-12 characters minimum with complexity).
                • Note that all user’s passwords will reset to request a new password!
              • Enable Folder Redirection to SBS.
                • Changing the security settings in the default GPO for redirection will show FR as not enabled in the SBS Console.
                • We remove the Exclusive Access setting on any folders redirected to remove complications when it comes time to migrate the client to a new server.
              • OR: Enable Folder Redirection to an separate server (previous blog post).
              • Remove the Public share in the SBS Console.
              • Self-issued certificate: copy the package to the Network Admin\SBS folder in the Company shared drive. (We create a Network Admin folder in the Company Shared Folder at all client sites).
              • If using a GoDaddy certificate, make sure to install the GoDaddy Intermediate certificates (download page) into the Intermediate Certification Authorities store individually to avoid any issues later.
                1. Install the gd_cross_intermediate.crt first
                2. Install the gd_intermediate.crt second
                3. Disable All Uses for GoDaddy Class 2 root certificate in Trusted Root Certification Authorities if present.
                  • Check for this one after installing the actual certificate at step 5.
                4. Restart the IISAdmin service.
                5. Install the GoDaddy certificate using the wizard.
              • Move the relevant data folders to the L: partition. We move all but the Exchange databases.
                  1. WSS (SharePoint) Data.
                  2. Users’ Shared Folders.
                    1. Re-enable Access-based Enumeration
                  3. Users’ Redirected Folders Data.
                    1. Re-enable Access-based Enumeration
                  4. WSUS Update Repository Data.
                1. SBS Console Getting Started Tasks.
                    1. Connect to the Internet.
                    2. Customer Feedback options.
                    3. Set up your Internet address.
                    4. Configure a Smart Host for Internet e-mail.
                    5. Add a trusted certificate.
                    6. Configure server backup: Earlier in this checklist.
                    7. Add new users (use the multiple wizard under users if there are a lot of users to add).
                    8. Connect computers: http://connect.
                    9. Share Printers via Group Policy for Windows Vista and PushPrinterConnections.exe for Windows XP Pro SP3 (both links are previous blog posts).
                  1. Configure the Reports e-mail addresses.
                  2. Configure Workstations on the domain.
                  3. Official SBS Blog: How to Configure SBS 2011 Standard to Accept E-mail for Multiple Authoritative Domains
                  4. E-mail Enable the SharePoint Foundation Companyweb site (Official SBS Blog Post).  Then:
                  5. Enable an MFP or Copier to Scan To E-mail Destined To A Companyweb SharePoint Library (previous blog post).
                    1. Run the following in an elevated Exchange Management Shell to increase the allowed attachment size (100MB is our default):
                      1. Set-ReceiveConnector "Copier Send to E-mail" -MaxMessageSize 100MB
                    2. Make sure to verify the largest file size setting in SharePoint.
                      1. Aimless Ramblings: Large Files in SBS 2008’s Companyweb
                  6. OPTION: If using Exchange 2010 AntiSpam set up a library on Companyweb called Spam.
                    1. E-mail enable the library with spam@companyweb
                    2. Set Exchange AntiSpam to REDIRECT instead of DELETE to spam@companyweb
                  7. Change the Default Message Size Limits for outgoing and inbound messages in the Exchange Management Shell:
                    1. Set-TransportConfig –MaxSendSize 25MB –MaxReceiveSize 25MB
                    2. Set-ReceiveConnector “Windows SBS Internet Receive ServerName” –MaxMessageSize 25MB
                    3. Set-SendConnector “Windows SBS Internet Send ServerName” –MaxMessageSize 25MB
                    4. Check the status for each connector:
                      • Get-TransportConfig | ft name, MaxSendSize, MaxReceiveSize
                      • Get-ReceiveConnector | ft name, MaxMessageSize
                      • Get-SendConnector | ft name, MaxMessageSize
                      • Get-mailbox | ft name, MaxSendSize, MaxReceiveSize
                    5. Hat Tip: LAN-Tech: Quickie: changing message size limits on SBS STD 2008 and 2011
                  8. Enable Single Item Recovery in Exchange Server 2010 – Exchange Team Blog.
                  9. Enable and configure Windows Search Services on SBS 2008 or a Windows Server 2008 RTM/R2 file server and Libraries on Windows 7 (Official SBS Blog post).
                    1. Install the Search Service (On SBS 2011 it may already be installed).
                      1. If so: Click Start –> type Search.
                      2. Click Indexing Options in the results.
                        • imageimage
                      3. Verify that all company shared folders are being indexed.
                    2. Add the Company folder share (or Public folder share) to Windows 7 Libraries.
                    3. Click start and start typing and watch those network files results flow!
                  10. Fix the networking settings for Add-On Congestion Control Provider, Receive Window Auto-Tuning Level, Receive-Side Scaling State, Task Offload (previous blog post).
                    • SBS 2008 related … tentative at this point.
                  11. Download, install, and run the SBS 2011 Best Practices Analyzer.
                    • The BPA will pick up a lot of the little things that need to be configured such as advanced OS networking features that should be disabled and others.
                    • The SBS 2011 BPA requires the Microsoft Baseline Configuration Analyzer 2.0.
                  12. Change the initial domain administrator’s password if using an Answer File (remember to reset the DHCP credentials, and any Event Log event fired Task too).
                    • Note that if the admin account has not been logged off since changing the Password Policies, a log off and log on again will require a password change anyway.
                  13. Input the PID and Activate.
                  14. Control the Microsoft##SSEE WSUS Database’s memory Usage
                  15. Configure Custom Views and e-mail Task triggers for Event IDs (SBS Native Tools Management):
                  16. OPTIONS:
                  17. Customize the SBS Console Reports.
                  18. Run a backup. Crash the server. Restore the Backup. Deliver.

                  One thing to keep in mind when it comes to checklists is that they are never meant to be a replacement for the materials they summarize!

                  It is very important to understand why the various steps need to be accomplished, how those steps can change over time due to changes in the operating system, the hardware configurations underneath the OS, and the technician’s own growth in experience and understanding.

                  The “why” leads to an ability to understand how things are going wrong when they do. Note that we are saying, “when” and not “if” things go wrong.

                  Troubleshooting

                  Post OS Setup

                  Philip Elder
                  MPECS Inc.
                  Microsoft Small Business Specialists
                  Co-Author: SBS 2008 Blueprint Book

                  *Our original iMac was stolen (previous blog post). We now have a new MacBook Pro courtesy of Vlad Mazek, owner of OWN.

                  Windows Live Writer

                  Thursday, 22 March 2012

                  SBS 2011 Setup Guide v1.11.0 Update Released

                  We bumped up our Setup Guide for SBS 2011 after making two significant additions:

                  image

                  We added the post MFP step to configure the Receive Connector for the MFPs to 100MB.

                  We also added the step to use PowerShell in the Exchange Management Shell to quickly change the default message sizes for inbound and outbound e-mail.

                  Thanks to fellow MVP Rob of LAN-Tech for the pointer.

                  Philip Elder
                  MPECS Inc.
                  Microsoft Small Business Specialists
                  Co-Author: SBS 2008 Blueprint Book

                  *Our original iMac was stolen (previous blog post). We now have a new MacBook Pro courtesy of Vlad Mazek, owner of OWN.

                  Windows Live Writer

                  Friday, 27 January 2012

                  Setting Remote PC Access Permissions for users in SBS 2011 Essentials

                  There certainly are some differences between the two SBS versions.

                  To give users permissions for PC access via the Remote Web Access portal we need to check the PCs in the user’s properties:

                  image

                  The only items to be found under the PC’s properties has to do with the client backup feature.

                  Philip Elder
                  MPECS Inc.
                  Microsoft Small Business Specialists
                  Co-Author: SBS 2008 Blueprint Book

                  *Our original iMac was stolen (previous blog post). We now have a new MacBook Pro courtesy of Vlad Mazek, owner of OWN.

                  Windows Live Writer

                  Wednesday, 25 January 2012

                  Fonality–Setting up Windows Server/SBS DHCP After the Fact

                  We ran the SBS 2011 install via Answer File for this new network setup that we are working on.

                  They already had a peer to peer setup in place with SonicWall devices serving DHCP and acting as edge.

                  Two Fonality servers were set up in redundant mode.

                  So, prior to running the SBS OS install we deleted the SonicWall DHCP subnet scope to make sure we had SBS based DHCP this morning.

                  Well, no go.

                  We had the SBS is Installed Successfully green check mark but no system had an IP address.

                  Checking in the SBS Native Tools console we saw that DHCP had no scope.

                  We ran the Internet Address Wizard and:

                  image

                  The SBS wizard found a DHCP server at the Fonality’s primary server IP. We logged into the admin site with no DHCP Server options anywhere to be found.

                  image

                  In the end we needed to call them to have them log in via their own backend management and turn the DHCP services off for both the primary and secondary servers.

                  Moral of the story: If there are any third party devices and/or services in place before, or coming in afterwards, verify with the vendors whether anything in them will conflict with a Windows Domain/DNS/DHCP setup and have their “This is how you set things up on a Windows Domain/DNS/DHCP based network” documentation at hand.

                  The Fonality and other systems on this particular network require DHCP scope options along with custom DNS Forwarders for the phone “domain” among other things.

                  Got coffee? ;)

                  UPDATE: Fonality’s Support Site for DHCP and DNS setup on a Windows Network

                  Philip Elder
                  MPECS Inc.
                  Microsoft Small Business Specialists
                  Co-Author: SBS 2008 Blueprint Book

                  *Our original iMac was stolen (previous blog post). We now have a new MacBook Pro courtesy of Vlad Mazek, owner of OWN.

                  Windows Live Writer

                  Wednesday, 4 January 2012

                  Our SBS 2011 Setup Guide Has Been Updated: v1.10.0

                  Our very comprehensive SBS 2011 Setup Guide has been updated with the following changes:

                  • Added the NIC Binding check step to make sure that networking is set up properly on an SBS server with multiple NICs built in.
                  • Added the SBS Blog caveat post for the need to run PSConfig after SharePoint Foundation updates.

                  As always, backup the server just after the OS install has been completed and then after each significant milestone in the server build.

                  Philip Elder
                  MPECS Inc.
                  Microsoft Small Business Specialists
                  Co-Author: SBS 2008 Blueprint Book

                  *Our original iMac was stolen (previous blog post). We now have a new MacBook Pro courtesy of Vlad Mazek, owner of OWN.

                  Windows Live Writer

                  Monday, 2 January 2012

                  Some Small Business Server 2011 Essentials Resources

                  We are running through our first full production deployment of SBSe 2011.

                  It takes some getting used to as the install requires a router on the network that delivers an IP address via DHCP!

                  The TechNet site has a build wiki that has a lot of good information in it:

                  We did not use any form of Answer File for this first run through. We used the Q&A to set things up.

                  Once we had the server’s desktop we were in for a couple of surprises based on the two questions asked by the setup wizard:

                  1. We chose an admin logon: Franklin Roosevelt
                    • User came up:
                      • Username: Admin
                      • User Logon: Franklin Roosevelt
                  2. We chose a Standard User: Douglas MacArthur
                    • User came up:
                      • Username: User
                      • User Logon: Douglas MacArthur

                  That was a bit of a surprise to us. So, going forward we will not put a space in the usernames and rename them after the fact so that the logon and username actually match.

                  Note that we can change the first and/or last name associated with the user in the SBS Console but we are not able to change the actual logon name.

                  So, we checked out what was in ADUC and sure enough we could change it there. But, when we brought up the properties in the SBS Dashboard (not Console) we saw:

                  image

                  Error

                  Cannot retrieve or change the user account information. If this problem persists, restart the server, and then try again.

                  So, we ran a few updates and let the server go.

                  And still we received the same error message. This means that anyone that gets married will require a new user ID and thus a recreation of their profile.

                  Back to the point of order:

                  We plan on installing DHCP on the SBSe 2011 server.

                  As per the above blog post we will also stop and disable the Windows Server LAN Configuration service.

                  From there we will run through many of the steps found in our SBS 2011 Standard setup guide.

                  Philip Elder
                  MPECS Inc.
                  Microsoft Small Business Specialists
                  Co-Author: SBS 2008 Blueprint Book

                  *Our original iMac was stolen (previous blog post). We now have a new MacBook Pro courtesy of Vlad Mazek, owner of OWN.

                  Windows Live Writer

                  Wednesday, 13 July 2011

                  SBS 2011 Setup Guide v1.9.5

                  [REDACTED]

                  Somehow I managed to split things up. The newest edition of the guide is here:

                  Wednesday, 1 June 2011

                  SBS 2003 to SBS 2011 Migration Error – Cannot Find the Source Server

                  On this last migration we came to realize that we were seeing this particular error frequently:

                  image

                  The above screenshot was borrowed from the Official SBS Blog.

                  A quick question to my fellow MVPs and Susan Bradley pointed us to:

                  When it happened to us, we had jumped into the command line (SHFT+F10) and began to ping the source IP and DNS A with the name failing the first time. We ran an IPConfig /All and verified that the IP information on the destination was right which it was.

                  When we went to ping the source name again it was properly resolved to the source server’s IP.

                  In our case it meant waiting an extra minute or so before we could click that Next button.

                  What does this mean?

                  We need to have our destination server configured with an Intel RMM, Dell iDRAC KVM enabled, HP iLO Advanced, or other out-of-band remote management module so that we can keep an eye on things if we had left the site after running the SBS 2011 Migration Mode OS install!

                  Philip Elder
                  MPECS Inc.
                  Microsoft Small Business Specialists
                  Co-Author: SBS 2008 Blueprint Book

                  *Our original iMac was stolen (previous blog post). We now have a new MacBook Pro courtesy of Vlad Mazek, owner of OWN.

                  Windows Live Writer

                  Wednesday, 25 May 2011

                  SBS 2011 Setup Guide v1.9.0 Release and SBS 2003 to SBS 2011 Migration Guide v1.0.0 Released

                  We published our SBS 2003 to SBS 2011 Migration Guide and also updated our SBS 2011 Setup Guide extensively.

                  SBS 2003 to SBS 2011 Migration Guide

                  Well, we finally got around to updating our SBS 2003 to SBS 2008 Migration Guide with specifics for migrating to SBS 2011 instead of SBS 2008! :)

                  One of the significant changes between the previous guide and this one was the inclusion of screenshot snips of the various menu items and screens that are unique to this particular process. We also broke out the various migration steps with the how-to steps to make things easier in the long run.

                  As always, it is _very_ important to read the migration documentation thoroughly before actually running through migrating a production environment.

                  From there, with permission virtualize a client’s production SBS 2003 or the IT shop’s SBS 2003 and _run the migration virtually_ at least _three_ times before doing so on a production system.

                  Please take our guides and make them your own. Update them, tweak them, do whatever it takes to make a process manual that allows your technicians to run through an SBS 2003 to SBS 2011 Migration _consistently_ and without error!

                  SBS 2011 Setup Guide

                  While running through this last weekend’s SBS 2003 to SBS 2011 migration we reworked a number of things in our Setup Guide to streamline things between setting SBS 2011 up fresh or for using the Guide while running a migration.

                  One of the significant updates that was added was something that Michael B. Smith mentioned should be a part of any Exchange related setup which was to enable Single Item Recovery in Exchange Server 2010 which is currently found at step 43 in the Guide.

                  We also reworked a number of steps and added a number of informational bullets to some of the steps such as the first one explaining how we configure the Windows Time service for standalone or clustered SBS VMs.

                  Conclusion

                  As always, make sure to test everything found in our guides. They are not meant to replace a good foundation of knowledge that comes by reading the “WHY” we do things the way we do. We do indeed follow our guides for the various SBS related processes we run through, however we know why we are doing what we do.

                  And, while we try and fill in those “Why” blanks it is ultimately working with the products, blowing them up in a lab, making Group Policy customizations that blow up in a lab, and so much more when working with production boxes that bring us to where we are at now.

                  Here are two good places to start on filling in the “Why”:

                  Another good place is to purchase Jeff Middleton’s Swing Migration Kit for SBS 2003 to SBS 2011:

                  The knowledge and skills we gleaned from learning the methodologies found in Jeff’s kit have literally saved client networks from total loss do to tandem hardware and backup failures.

                  There is the Official SBS blog that we frequent a lot:

                  There are some official Microsoft training resources also available:

                  And, one final note. I will not be publishing a book on SBS 2011. There is just not enough time in the day to spend with my family, run our business, and keep up with the ongoing technology changes around us. So, this blog will be the writing release I need.

                  If you are so inclined, you can buy Monique and me a coffee: paypal@mpecsinc.ca :)

                  Otherwise, this blog has always been and hopefully will always be our gift to you as a way of sharing what little we know. ;0)

                  Thank you for reading!

                  Philip Elder
                  MPECS Inc.
                  Microsoft Small Business Specialists
                  Co-Author: SBS 2008 Blueprint Book

                  *Our original iMac was stolen (previous blog post). We now have a new MacBook Pro courtesy of Vlad Mazek, owner of OWN.

                  Windows Live Writer

                  Monday, 23 May 2011

                  SBS 2011 – Time To Install Windows Server 2008 R2 Service Pack 1 On Intel X3450 Based Server

                  The server we configured for the migration we are running this weekend has the following setup:

                  • Intel Server Board S3420GPLX
                  • Intel Xeon Processor X3450
                  • 8GB Crucial ECC UDIMM (4x 2GB running at 1333MHz)
                  • Intel RS2BL040 RAID + Battery Backup
                  • 900GB RAID 5 (4x 300GB 15K Seagate SAS)
                  • Intel Server Chassis SC5650DP with hot swap option

                  Once we had our SBS 2011 OS successfully installed in Migration Mode, the source SBS 2003 R2 Premium is definitely beyond its EOL, we ran through the first 20 or so steps of our SBS 2011 Setup Guide.

                  We had downloaded Windows Server 2008 R2 Service Pack 1 (KB976932) prior to starting the whole migration process.

                  We started the SP 1 Installer:

                  image

                  In the server logs we saw the following two Events:

                  image

                  image

                  Note the start time of 22:54 Hours.

                  We left the server on its own for a while.

                  Once the server had finished its final reboot we were greeted with the following after logging in:

                  image

                  A look into the Event Logs showed the following:

                  image

                  Finish time: 23:26 Hours.

                  So, for this particular SBS 2011 OS running on physical hardware we saw an install time of about 35 to 40 minutes.

                  Philip Elder
                  MPECS Inc.
                  Microsoft Small Business Specialists
                  Co-Author: SBS 2008 Blueprint Book

                  *Our original iMac was stolen (previous blog post). We now have a new MacBook Pro courtesy of Vlad Mazek, owner of OWN.

                  Windows Live Writer

                  Saturday, 21 May 2011

                  SBS 2011 Setup Guide v1.8.0 Released

                  As we are preparing for an SBS 2003 to SBS 2011 migration we noticed that the first step in the guide was pointing to an out-dated post on the time skew issues that VMs seem to have.

                  We updated the first step with the correct link on how to set up the host/standalone DC to be the time source for the virtualized SBS setup as well as the settings for the VMs themselves.

                  Philip Elder
                  MPECS Inc.
                  Microsoft Small Business Specialists
                  Co-Author: SBS 2008 Blueprint Book

                  *Our original iMac was stolen (previous blog post). We now have a new MacBook Pro courtesy of Vlad Mazek, owner of OWN.

                  Windows Live Writer

                  Saturday, 14 May 2011

                  SBS Setup Guide v1.7.5 Released

                  We restructured the update step that is currently at Step 24.

                  We added some break down for each SBS component as far as what to update, when to update it, how many updates should be run simultaneously for that group, and then when to reboot.

                  Thanks for reading! :0)

                  Philip Elder
                  MPECS Inc.
                  Microsoft Small Business Specialists
                  Co-Author: SBS 2008 Blueprint Book

                  *Our original iMac was stolen (previous blog post). We now have a new MacBook Pro courtesy of Vlad Mazek, owner of OWN.

                  Windows Live Writer

                  Thursday, 5 May 2011

                  SBS 2011 Setup Guide v1.7.0 Released – Windows Server 2008 R2 Service Pack 1 Good To Go

                  We have updated our SBS 2011 Setup Guide to reflect the need to apply the latest Windows Server 2008 R2 service pack during the setting up of the server.

                  The Official SBS Blog on the matter:

                  We have been running Win2K8 R2 SP1 on SBS v7/2011 since the SBS v7 bits were running as our production server here. We then migrated that SBS v7 SP1 server to our current SBS 2011 RTM bits setup.

                  To date we have not seen any issues with the service pack on SBS 2011.

                  Philip Elder
                  MPECS Inc.
                  Microsoft Small Business Specialists
                  Co-Author: SBS 2008 Blueprint Book

                  *Our original iMac was stolen (previous blog post). We now have a new MacBook Pro courtesy of Vlad Mazek, owner of OWN.

                  Windows Live Writer

                  Wednesday, 27 April 2011

                  SBS 2011 Setup Guide Version 1.6.0

                  Our SBS 2011 Setup Guide has been updated.

                  We added a few Microsoft Knowledgebase articles in the troubleshooting section that are specific to installs or migrations.

                  Note that the guide post has been bumped to today’s date.

                  Thanks for reading!

                  Philip Elder
                  MPECS Inc.
                  Microsoft Small Business Specialists
                  Co-Author: SBS 2008 Blueprint Book

                  *Our original iMac was stolen (previous blog post). We now have a new MacBook Pro courtesy of Vlad Mazek, owner of OWN.

                  Windows Live Writer

                  SBS 2011 – Exchange Services Do Not Start

                  We see this often in our SBS 2003 to SBS 2011 migrations where certain Exchange 2011 services fail to restart after a reboot.

                  Quote from the above on which services may fail to start:

                  • Microsoft Exchange Information Store
                  • Microsoft Exchange RPC Client Access (SBS 2011 Server Only)
                  • Microsoft Exchange Forms Based Authentication (SBS 2011 Server Only)

                  We have definitely seen the second and third services fail to start. So much so that we would make sure they were running after a reboot on all servers we were worked with.

                  We are pointed to the following KB:

                  The article has a number of different methods for addressing the problems from starting the services manually, through to a number of Microsoft Fix its:

                  image

                  Note that the various Fix its are all for different registry settings applicable to the affected Exchange services.

                  Philip Elder
                  MPECS Inc.
                  Microsoft Small Business Specialists
                  Co-Author: SBS 2008 Blueprint Book

                  *Our original iMac was stolen (previous blog post). We now have a new MacBook Pro courtesy of Vlad Mazek, owner of OWN.

                  Windows Live Writer

                  Monday, 24 January 2011

                  SBS 2011 Setup Guide Version 1.5.0

                  Our SBS 2011 Setup Guide has been updated.

                  We added a few Microsoft Knowledgebase articles in the troubleshooting section as well as the common setup errors link at the beginning of the Guide.

                  We also added the necessary firewall configuration steps to SBS for Simply and QuickBooks.

                  Note that the guide post has been bumped to today’s date.

                  Thanks for reading!

                  Philip Elder
                  MPECS Inc.
                  Microsoft Small Business Specialists
                  Co-Author: SBS 2008 Blueprint Book

                  *Our original iMac was stolen (previous blog post). We now have a new MacBook Pro courtesy of Vlad Mazek, owner of OWN.

                  Windows Live Writer

                  Saturday, 15 January 2011

                  SBS – Setting Limits To RDP Sessions

                  As the Windows Server operating system gets more advanced in the methods that we use to remotely connect to our Remote Desktop Services/Terminal Services servers or desktops behind TS/RDS Gateway we need to be mindful of the bandwidth requirements for the connections.

                  With SBS 2011 we can connect to our office based PC with multiple monitors, stream video, stream sound, and a lot more on that one connection.

                  So, out of the box we set some limits to what we can and cannot do with our RDP connection to an SBS network.

                  image

                  The above screenshot is of a GPO setting opened in our SBS 2011’s GPMC. In this setting we are putting a limit on the number of monitors that a remotely connected user can use for their connection at 2.

                  Note that in any GPO setting that allows for a comment, including the GPO itself, we put comments in as above or with a brief description as to why the policy was enabled or disabled. We try and do this to keep track of the changes we have made with the descriptions helping us to understand why things were they way they were later on in the life of the SBS network.

                  image

                  The rest of the settings in the Windows Computers Policy are as follows:

                  image

                  • Enforce removal of the remote PC’s wallpaper.
                    • This one is pretty obvious as the high resolution colour images will hit the screen refresh rate significantly.
                  • Limit colours to 15 bits.
                  • Maximum remotely connected monitors: 2.
                  • Remove the “Disconnect” button from the Shutdown Dialogue.
                    • We request that users always log off their remote sessions when done.
                  • Enable the Windows Security item on the Start menu.
                    • This item gives them the ability to access the Windows Security menu to make changes if they get stuck.
                    • image

                  The settings will be in a slightly different location for GPOs in SBS 2008 and SBS 2003 as RDS was Terminal Services in those editions.

                  In certain circumstances we will also enable the Restrict Remote Desktop Services users to a single Remote Desktop Services session setting.

                  Philip Elder
                  MPECS Inc.
                  Microsoft Small Business Specialists
                  Co-Author: SBS 2008 Blueprint Book

                  *Our original iMac was stolen (previous blog post). We now have a new MacBook Pro courtesy of Vlad Mazek, owner of OWN.

                  Windows Live Writer

                  Friday, 14 January 2011

                  SBS 2011 Setup Guide v1.4.0 Released

                  Our SBS 2011 Setup Guide has been updated.

                  We added the removal of the speaker from the System Tray, enabling remote management for the Event Logs, and a number of other minor tweaks.

                  Thanks for reading!

                  Philip Elder
                  MPECS Inc.
                  Microsoft Small Business Specialists
                  Co-Author: SBS 2008 Blueprint Book

                  *Our original iMac was stolen (previous blog post). We now have a new MacBook Pro courtesy of Vlad Mazek, owner of OWN.