YL Blog (Google)
Saturday, March 23, 2013
Sharepoint 2010 report SecureStoreServiceDatabase must upgrade
Q: in SharePoint 2010 health report Secure_Store_Service_DB_xxxxx must be upgrade ...
using Upgrade-SPContentDatabase upgrade content db ,or psconfig.exe upgrade other database
(using Upgrade-SPContentDatabase 升級內容資料庫,或 psconfig.exe 升級其他資料庫)
A. using psconfig.exe rerun configuration ,the message still report
B. using PSConfig.exe -cmd upgrade -inplace b2b -force
run 4/4 upgrade proc. , than show it as "no action required" for the health report
=====
ref. http://social.technet.microsoft.com/forums/en-US/sharepointadminprevious/thread/907a3124-06c1-46aa-a59e-3b8dec8cdcbf/
" PSConfig.exe -cmd upgrade -inplace b2b -force -cmd applicationcontent -install -cmd installfeatures
mean The command will force an upgrade and install the features.
Saturday, November 3, 2012
how to cut off Terminal Server session when user Idle
REF http://blog.miniasp.com/post/2008/08/21/How-to-setup-Remote-Desktop-Auto-Logout.aspx
1. query who at RDP session
qwinsta /server:
or
quser /server:
A.. WINDOWS 2008
run GPEDIT,msc
computer configuation-Administrative Templates-Windows Components-Terminal Services-Terminal Server-Connections-Session Time Limits-
-Set time limit for disconnected seesions
(setting allows you to configure a time limit for disconnected Terminal Services sessions).
1. query who at RDP session
qwinsta /server:
or
quser /server:
2. setting timeout for
A.. WINDOWS 2008
run GPEDIT,msc
computer configuation-Administrative Templates-Windows Components-Terminal Services-Terminal Server-Connections-Session Time Limits-
-Set time limit for disconnected seesions
(setting allows you to configure a time limit for disconnected Terminal Services sessions).
Enable - X Min (X Min when idle , then cut off rdp connection)
-Set time limit for active Terminal sessions
This policy setting allows you to specify the maximum amount of time that a Terminal Services session can be active before it is automatically disconnected.
Enable -Y Min
B. Windows 2003 少 Terminal Server 及 -Session Time Limits
順便一提
解除WINDOWS 2008 無法 單一帳戶從遠端桌面登入多個 Session (工作階段)
disable restrict users to a single remote Terminal Services session
run GPEDIT.MSC
.computer configuation-Administrative Templates-Windows Components-Terminal Services-Terminal Server-Connections
-Restrict Terminal Service user to a single remote session.
: Disable
Saturday, October 13, 2012
problem between IE and Webmin since 2012/10 MS UPDATE
THE Spiceworks community have one question is same by my case
下方是我的解答,原因為MS KB 2661254 引起的
Interesting problem between IE and Webmin since 10-09-2012
Just stumbled upon this yesterday afternoon. After Microsoft's "Patch Tuesday", none of my IE installs will connect to Webmin 'server' running in SSL mode on the default port 10000 ... doesn't even appear to try. It simply gives the typical error as if the host didn't even exist rather than moaning about the validity of the self-signed Cert like it used to do.
What I've discovered is that if I simpley edit the miniserv.conf and set ssl=0, stop and restart the miniserv service... all is well with the universe again. Of course browsers such as Chrome don't seem to have any issue connecting in either mode at all.
Anyone else seeing this yet/
----------------------------------------------------------
follow is my answer :
Microsoft issue KB2661254 : Update for minimum certificate key length (min. length:1024) see http://support.microsoft.com/?kbid=2661254 cause IE can't access webmin
the webmin initial self ssl key is 512 byte
Solutions: using chrome or firefox , login in webmin , in webmin configuration ->SSL Encryption->Self-Signed Certificate
create a new SSL key and certificate for your Webmin server ,key in country code, the RSA key size select default (2048), and make sue 'Use new key immediately'
then you can using IE access Webmin
原因為微軟強制不能使用1024 byte 以下 之SSL KEY,用其他 如CHROME 或 FIREFOX 可進入,去WEBMIN confirguation , 重新產生一張 SSL KEY, 輸入國家,及 RSA key size 用default 長度 2048 ,及馬上使用,即可使用 IE 存取
Saturday, April 21, 2012
To Solve sharepoint 2010 User Name showing up with Domain Name for some users
此問題於sharepoint 2007 沒有問題,昇成sharepoint 2010 ,正式機一直有問題
剛開始登入,操作都是display name, 一段時間後,變為DOMAINNAME\USERNAME
剛開始以為是USER PROFILE 沒同步,按照下說明
Phase I
=============================================
Phase II
但本公司之人員用一用部份人員仍會變成DOMAINNAME\USERNAME
找一篇文章,可將變成domain\username 人員改回display name ,但好像每天當AD 同步後,又變回DOMAINNAME\USERNAME
http://sharepointpolice.com/blog/2010/12/06/username-showing-up-as-domainnameusername-instead-of-full-name-in-sharepoint-2010/
該文章重點為 ,於sharepoint 命令管理模式下
Get-SPUser –Web http://SharePointServer -limit all | Set-SPUser –SyncFromAD
其中 http://sharepointServer 為 sharepoint website , 每一website 皆要執行一次
==============================================
Phase III
找了好久,一直以為 AD 同步帳號問題,最近終於解決此問題
原因:
domain 之 netbios name 不同於Active Directory 之前湊碼
本公司之netbios NAME 為 NTIOS ,
Active Directory name 為 corp.centios.com.tw ,
對外之dns 為 centios.com.tw
需要將Sharepoint 之 "User Profile synchronization Service"中之
NETBIOSDOMANINENABLE參數設為1,且每次此刪除及重設 "User Profile synchronization Service",皆要重設一遍
(因每次增加一個"User Profile Sync Application" 皆一直增加一個ServiceApplication, 如要刪除請以
sharepoint 命令管理模式
Get-SPServiceApplication
剛開始登入,操作都是display name, 一段時間後,變為DOMAINNAME\USERNAME
剛開始以為是USER PROFILE 沒同步,按照下說明
Phase I
設定設定檔同步處理 (SharePoint Server 2010)
STEP BY STEP
1.account needed for syncing (建立AD 同步-回寫AD 權限者)
1.1 於本機要設step4 中之service account 需有logon on local 及server admin,同步完成後,可將server admin 權限拿除)
2.刪除原建立之User Profile service (option)
3.建立新的User Profile Sevice Application
4. Configue Service ,建立需等一段時間,待"User Profile Synchronization Sevice " 啟動後,要執行 IISRESET
5.Configuew connection 及自Activery Directory Import Data
將 step 1. 之account 建於可查詢AD 人員
6. edit 設定同步選項
UserccountContorl bitorequal =2 (不要同步帳戶已停用人員)
1.1 於本機要設step4 中之service account 需有logon on local 及server admin,同步完成後,可將server admin 權限拿除)
2.刪除原建立之User Profile service (option)
3.建立新的User Profile Sevice Application
4. Configue Service ,建立需等一段時間,待"User Profile Synchronization Sevice " 啟動後,要執行 IISRESET
5.Configuew connection 及自Activery Directory Import Data
將 step 1. 之account 建於可查詢AD 人員
6. edit 設定同步選項
UserccountContorl bitorequal =2 (不要同步帳戶已停用人員)
7. 開始Profile同步 (於此步驟之前,要確認 Meta Service 有啟動) 此步驟亦要很久
8. 執行後,要去 define job 中調整一disable job 為enable
另外有參考到亦是解說很完整
http://www.harbar.net/articles/sp2010ups.aspx
8. 執行後,要去 define job 中調整一disable job 為enable
另外有參考到亦是解說很完整
=============================================
Phase II
但本公司之人員用一用部份人員仍會變成DOMAINNAME\USERNAME
找一篇文章,可將變成domain\username 人員改回display name ,但好像每天當AD 同步後,又變回DOMAINNAME\USERNAME
http://sharepointpolice.com/blog/2010/12/06/username-showing-up-as-domainnameusername-instead-of-full-name-in-sharepoint-2010/
該文章重點為 ,於sharepoint 命令管理模式下
Get-SPUser –Web http://SharePointServer -limit all | Set-SPUser –SyncFromAD
其中 http://sharepointServer 為 sharepoint website , 每一website 皆要執行一次
==============================================
Phase III
找了好久,一直以為 AD 同步帳號問題,最近終於解決此問題
原因:
domain 之 netbios name 不同於Active Directory 之前湊碼
本公司之netbios NAME 為 NTIOS ,
Active Directory name 為 corp.centios.com.tw ,
對外之dns 為 centios.com.tw
需要將Sharepoint 之 "User Profile synchronization Service"中之
NETBIOSDOMANINENABLE參數設為1,且每次此刪除及重設 "User Profile synchronization Service",皆要重設一遍
(因每次增加一個"User Profile Sync Application" 皆一直增加一個ServiceApplication, 如要刪除請以
sharepoint 命令管理模式
Get-SPServiceApplication
會出現現有service 用之 Application 找出 不用之User Profile synchronization Servic之Identity (有一大串, 要記下來,假設稱為VOID_UPAID)
Get-SPServiceApplication -identity VOID_UPAID | Remove-sp
)
請參考
Permission requirements: Domain netbios name is different than the FQDN of the domain
step 1. 仍是找出 "User Profile Sync Application" 之Identity
1.) Get-SPServiceApplication
a. Note: This will output every service application specifically the User Profile Service Application
2.) $var = Get-SPServiceApplication -Identity 00a380ed-2e99-4de3-ae22-dbe8c1b03bab
(請將 00a380ed .... 改為找出來的 "User Profile Sync Application" 之Identity) ,
Note: the identity is the GUID associated with the User Profile Service Application which was retrieved and copied from running the Get-SPServiceApplication cmdlet
3.) $var.NetBiosDomainNamesEnabled
Note: if this is true then it’s enabled and you can skip directly to step 7
4.) $var.NetBiosDomainNamesEnabled = “True”
Note: Here you are setting the property to True
5.) $var.update()
Note: This is simply running update method against the variable which officially updates the property
6.) $var.NetBiosDomainNamesEnabled
Note: This confirms the steps were run correctly as the output will display True instead of False
7.) To utilize the domain Netbios name, a new sync connection must be created and used. Yes, this means you cannot use an existing sync connection and expect it to work. Create a new sync connection via the UI:
Central Admin\Application Management\Manage Service Applications\User Profile Service Application\Configure Synchronization Connections
Friday, March 9, 2012
不讓搜尋引擎搜尋你的網頁
REF: http://zeroplex.blogspot.com/2006/09/blog-post_115813861066810607.html
一般搜尋引擎都會有一個機器人(robot or crawler),自動連到你的網頁上,搜尋網頁上面出現的超連結和超連結文字,並把得到的結果存到資料庫建檔,以供其他人搜尋。機器人也會連到網頁中出現的超連結位址,繼續找超連結以及關鍵字。
大部分的網站會將關鍵字放在網頁 標籤中。
機器人會依照 meta 中所給的關鍵字建立索引(index),當然除了 meta 中的關鍵字,在網頁中出現的超連結也一樣會被建立索引。
若不希望讓網頁中的資料被其他人搜尋到(被建立索引),如網頁中包含電話、地址、信用卡卡號等等,就必須在 meta 中加入一些語法:Robots META tag。
在 content 中,可以放入四種參數:index、noindex、follow、nofollow。
index
允許從你的網頁中建立索引。
noindex
很明顯,不允許建立索引。
follow
允許連結到你網頁中的抄連結再繼續建立索引。
nofollow
不允許使用你網頁上的超連結連到其他網頁。
這些參數預設都是允許,所以當你只有下一個參數:
也就表示說不能建立索引,但是仍然可以從你網頁中的超連結連到其他網頁去。
參考資料:
http://zeroplex.blogspot.com/2006/09/blog-post_115813861066810607.html
http://www.robotstxt.org/wc/meta-user.html
http://www.searchtools.com/robots/robots-meta.html
Wednesday, June 15, 2011
SharePoint Site Error: Service Unavailable HTTP Error 503. The service is unavailable
1.cause: iis admin password expired or change ad password , then wil be change this site
2. can't open sharepoint admin from command and web
ref :
http://nassharepoint.wordpress.com/2009/01/13/sharepoint-site-error-service-unavailable-http-error-503-the-service-is-unavailable/
I was working on a project and all of the sudden my SharePoint site and Central Admin started giving me the error ‘Service Unavailable HTTP Error 503. The service is unavailable’ and I was not able to access either of them. I realized that I had just changed the password to the Identity account password and then this started happening. So here is what I did to take care of the problem (It worked for me and not sure if this is the most efficient way of doing it):
1. Open up IIS Manager and click on Application Pools.
2. Locate your App Pool account and right-click on it and select ‘Advanced Settings’.
3. Click on the right of the Identity box to change it (A window will pop up).
4. Click on Set and simply retype your App Pool Identity in there with the new password.
2. can't open sharepoint admin from command and web
ref :
http://nassharepoint.wordpress.com/2009/01/13/sharepoint-site-error-service-unavailable-http-error-503-the-service-is-unavailable/
I was working on a project and all of the sudden my SharePoint site and Central Admin started giving me the error ‘Service Unavailable HTTP Error 503. The service is unavailable’ and I was not able to access either of them. I realized that I had just changed the password to the Identity account password and then this started happening. So here is what I did to take care of the problem (It worked for me and not sure if this is the most efficient way of doing it):
1. Open up IIS Manager and click on Application Pools.
2. Locate your App Pool account and right-click on it and select ‘Advanced Settings’.
3. Click on the right of the Identity box to change it (A window will pop up).
4. Click on Set and simply retype your App Pool Identity in there with the new password.
Saturday, April 16, 2011
sharepoint 2010 change passowrd by ITACS
This summary is not available. Please
click here to view the post.
Saturday, April 9, 2011
sharepoint 2010 上方連結列
1. site collection feature - site publish feature make sure Active
2. site feature -site publish feature make sure Active
4. Create on Heading , is subj. like [Dept. Info.]
Heading url may be is blank
5. in Heading , creating one linking (must key in url ) like [部門公告]
6. in same heading , creating another linking , like [部門簡介]
Thursday, December 16, 2010
讓 virtual server 2005 R2 sp1 可裝 windows 2008
虛擬伺服器 2005 R2 Service Pack 1 不支援 Windows Server 2008]、 [Windows Vista Service Pack 1] 或 [Windows XP Service Pack 3
download
http://support.microsoft.com/?kbid=948515
for fix
try later
download
http://support.microsoft.com/?kbid=948515
for fix
try later
Tuesday, June 15, 2010
Subscribe to:
Posts (Atom)