I have environment setup for with vWorkspace 7.2 on windows 2008 R2 with two terminal server on windows 2008 R2
since i had installed vworkspace on both Terminal Servers, i had started facing issue of getting into elevation mode. when ever i try to do so, i get error which is attached along this post.
today i tried to reinstall vWorkspace from Terminal server, it dint let me uninstall it and gave me error saying "policies prevented to perform this action" and next windows showed me i do not have sufficient privilages to perform this task. whereas i am Domain admin and added to local administrator of the server too.
same thing is happening with both Terminal server.i checked on internet and it says it is due to come files got curropted.
should i rebuild the server but i am afraid users data will at loss in that case. please help me to resolve this issue.
Is UAC (user account control, control panel > (all control panel items) > user accounts > change user account control settings) set off or is still on?
If you're logged on to the server remotely (RDP) and you haven't used the /admin switch, then you will be running at a reduced privilege level compared to the console and this is capable of causing an installer privilege violation.
If you have applied vWorkspace lockdown policies to all users you could also be getting privilege violations.
Were you trying to reinstall or repair the vWorkspace installation. However the second error suggests you have other problems as well which could explain why you're trying to repair things. You may need some more immediate help by remote WebEx session.
Thanks for quick response. UAC is set to ON. I am using Remote Desktops to connect to server which has /admin switch enabled by default, althought i als did RDP using /admin switch but it was same issue.
I have not set any lockdown policy. My objective was to uninstall vWorkspace and install it after sometime due to some unavoidable reason.it`s being more then 3 months i am running vWorkspace.
I do not have issue with webEx Session, please let me know when can we start it.
Can you try creating an Active Directory OU at the root level. Ensure the OU does not have any policies applied and also blocks policy inheritance.Disable logins on one of the Terminal Servers and then when there are no more active user sessions move the server to the new OU. Force a Group Policy update on the server and then disable UAC on the server. After this try to uninstall or use the elevated rights.
Just ran a WebEx session with Mohit. If UAC is turned off, the error disappears. Event log shows Consent.exe appcrash. I tried removing all (x64 and x86) appinit_dll entries and it (consent.exe) still crashes which "almost" let's vWorkspace off the hook. Deleted all policies relating to test user (domain admin) and restarted explorer.exe. Consent.exe still crashed on privilege elevation. One of the appcrash errors involved wdmaud.drv so I tried setting the RDP client to no audio. Still crashed.
It's getting a bit late for me but since a local admin login is fully functional, it's be interesting to be running process monitor against consent.exe while a domain admin in another session tried a privilege elevation.
In the interim the only workaround is to disable UAC.
Thank you Rick for all your support. i really approciate your efforts, i can live with UAC disabled but we really need to find solution for issue before it begin crashing applications.
Just let me know when can start working next on this. i will keep this server off from production till we find soluton for same.
One of the appcrash errors involved wdmaud.drv so I tried setting the RDP client to no audio.
I had this issue when my TS Servers has the audio service disabled, but the GPO set to allow audio redirection...didn't matter what the client RDP settings were set to, it would crash....
workingmind
80 Posts
768
0
Posted February 3rd, 2011 05:00
PFA screenshot