Remote Desktop Gateway server is temporarily unavailable Windows 10

The remote desktop gateway server is temporarily unavailable

Archived Forums
>
Remote Desktop Services [Terminal Services]
  • Question

  • 0
    Sign in to vote

    Hi,

    I publish my RemoteApp program to RDWeb. I can access RDWeb and open it without any problem from any computer within the same domain. If I would like to access the same RDWeb from another domain, I can still open the RDWeb page, but when I open any program, I will get the error:

    "Your computer cannot connect to the remote computer because the Remote Desktop Gateway server is temporarily unavailable".

    I check the Remote Desktop Gateway service is running.

    Any idea,

    Thanks,

    Saturday, October 15, 2016 12:12 AM

All replies

  • 0
    Sign in to vote

    Hi,

    Please verify that the FQDN for the RD Gateway server, when accessed from a computer in another domain, resolves to the correct ip address for the RD Gateway, and that TCP port 443 and UDP port 3391 are open. If necessary, please verify that the packets from the client PC in the other domain are actually making it to the RD Gateway by running a wireshark or netmon capture on the RDG server while attempting to connect.

    Often theremay be proxy settings, firewall, routing, DNS issues, etc., that will block proper communication between client and RD Gateway.

    Thanks.

    -TP

    Saturday, October 15, 2016 12:50 AM
  • 0
    Sign in to vote

    Hi,

    Normally the FQDN for RD Gateway is a public-registered domain, as in your MMAProdRDS.powerco.com example. The RD Gateway is what external clients connect to [via the Internet] so it makes sense why it is a public FQDN. If the client PCs always connect via private networks, VPN, etc., then the FQDN could be internal.

    Some notes:

    On the public Internet, you need a DNS A record for MMAProdRDS.powerco.compointing to the public ip addressof the RD Gateway server. On the firewall, TCP port 443 and UDP port 3391 need to be forwarded to the RDG server. On the LAN, you need a DNS A record for MMAProdRDS.powerco.com pointing to the private ip address of the RD Gateway server, if you plan to use RD Gateway from LAN PCs.

    You need a certificate from a trusted public authority such as GeoTrust, GoDaddy, Thawte, Comodo, GlobalSign, etc., for MMAProdRDS.powerco.com and this certificate needs to be assigned to the RD Gateway in Server Manager -- RDS -- Overview -- Deployment Overview -- Tasks -- Edit Deployment Properties -- Certificates tab.

    -TP

    Saturday, October 15, 2016 3:18 AM
  • 0
    Sign in to vote

    Hi,

    I don't know if that is the problem or not. You may have firewall blocking pings.

    The FQDN you use needs to match the name on the certificate used for the RD Gateway, and the certificate must be trusted by the client PC.

    If the clients are all on the same LAN then RD Gateway isn't needed.

    -TP

    Saturday, October 15, 2016 4:08 AM
  • 0
    Sign in to vote

    Thanks, so I can remove RD Gateway for my scenarios [two separate domains but within the same LAN, these two domains haven't been setup with any trust]?

    Yes, you can remove RD Gateway if you want.

    My guess is you don't have a DNS record created so the other domain PCs can resolve the FQDN of the RDS servers. For example, when a user launches a RemoteApp from the other domain PCs, a prompt will appear with Remote computer: on it. They need to be able to resolve [and connect to] that FQDN, but my guess is they can't because DNS hasn't been configured properly.

    One thing you could do is create a forward lookup zone for the RDS domain over on the other domain, and then create DNS records for necessary FQDNs.

    -TP

    • Proposed as answer by TP []MVP Saturday, October 15, 2016 5:05 AM
    • Marked as answer by MASTER AX Saturday, October 15, 2016 5:08 AM
    Saturday, October 15, 2016 4:33 AM
  • 0
    Sign in to vote

    One thing you could do is create a forward lookup zone for the RDS domain over on the other domain, and then create DNS records for necessary FQDNs.

    -TP

    Thank you so much!!!!

    You save my day, after I add a new zone and DNS record, this issue resolved!!

    Thanks again!!

    Saturday, October 15, 2016 5:03 AM
    >>Yes, the problem is caused by the publish FQDN mismatch error. New comments cannot be posted and votes cannot be cast. When you said the logs on the RDG server had nothing, did that include the IIS logs? For change FQDN for RDS, please use the script below. Remote Desktop Gateway Service is Temporary Unavailable I have installed the Remote Desktop Gates Server Roles on a Win 2008 R2 machine that we already use for a FTP server.

    I believe a Windows Update on Windows 8.1 machines is the culprit, however rolling back all these updates doesn't fix the problem. And you should use a wild card for certificate. If the reply above has resolved your problem, please mark it as answer as it would be helpful to anyone who encounters the similar issue. There are absolutely no log entries of any connection attempts whatsoever, I don't think the data is getting as far as the server so I don't believe the server is the issue, especially since it works fine with Windows 10 and any Windows 8.1 machines that have not got recent updates. I get the default IIS webpage on the remote desktop gateway server. I do not see relevant errors in any other event logs [Application, Security, System], Allowing CAP, and RAP access to all machines, to Domain Users, Cert imported in local store, Gateway properties, and IIS. How could a *.external.com work on a domain internal.net? WebAccess [Internet/intranet] - WA.internal.net. The temporarily unavailable is the clue - that indicates that the RD Gateway probably can't connect to destination RD server on port 3389. This occurs on Windows Server 2012 and 2012 R2.

    Try reconnecting later or contact your network administrator for assistance.

    I 2nd this... get a 3rd party app that allows you to select which version of RDP protocol to use to help narrow down which version [if any] doesn't support the connection over just TCP/443.

    Gateway is: gw.internal.net [Domain Joined].

    I can. The FARM option needs all those objects in DNS and the dns-round-robin is what does the load balancing. On logon I get two errors: I have 4 schools [independent from each other] which all have Remote Desktop Gateways on port 443. I guess this is a problem with the www.external.com certificate? Session Host - SH.internal.net Couple things... Wildcard cert is no prob, I have lots of that... You need to confirm the cert is selected in the SSL tab, I didn't see that in the screenshots. Might be something you can rule out immediately, no information on what the setup in front of these servers is. Set-RDPublishedName [hopefully 4-5 stars]. If you login to the RD gateway computer, from it can you remote desktop to terminal.domain.net with the same credentials you are using on the client? However, it also seems that RDP uses WinHTTP for authentication [or if I'm correct, for checking certificates with the CA], obviously when remote users are off site the proxy server will not work hence connections not even reaching the server [or even leaving the client]. Your computer can't connect to the remote computer because the remote desktop gateway server is temporarily unavailable. After many hours I have pinpointed the issue. Publisher *.internal.net I created it to help people just like you. And if so, do they all have the same hardware [and software release on that hardware] doing it, or is it different at the problem sites? Given what he's already stated re: scoping of the issue in OP I don't think this applies. Try reconnecting later or contact your network administrator for assistance. Gateway - GW.internal.net Purchased *.external.com wildcard certificate. The Remote Desktop client has been receiving updates from Microsoft from … Configuring RDS 2012 Certificates andSSO, //ryanmangansitblog.com/2013/03/10/configuring-rds-2012-certificates-and-sso/. I'm probably a little too keen to jump right to the PCAPs, but I'd fire up Wireshark on a problem machine [client] and see what the traffic says. We purchased a certificate for www.external.com would need DNS A record for gateway.external.com pointing to the public ip of your RDG server, while internally you would need DNS A record for gateway.external.com that points to the private ip address of your RDG. Certificates are valid and if you connect to the gateway internally [including unticking "Bypass RD GFateway for local addresses"] it works fine. Might be worth comparing RDP versions between working vs non working sites. New comments cannot be posted and votes cannot be cast. Additionally, you have to restart the RD Gateway service to regain the access. The error messages is "You Computer can't connect to the remote computer because the Remote Desktop Gateway server is temporarily unavailable.[...]". That has been a consistent cause of issues like this for me and most of the times the error is equally unhelpful. And here is an article below about how to use wild card certificate and configure SSO may be helpful to you.

    My issues is when trying to connect to say, Terminal.domain.net I input the TS.domain.com as the gateway with Terminal.domain.net as the computer I want to ultimately connect.

    Checked Gateway logs, and I had seen attempted connections, but I must have changed a setting and it is no longer working.

    Also event viewer has a couple new categories for the RDGW role, those can be pretty useful and specific. I'm currently having some issues with Remote Desktop Gateway, after a lot of head scratching I'm stumped and now asking the community for some advice. If it is an issue with connecting the Terminal Server behind the LAN, why would not logs on the gateway show a connection?

    This I have applied to all my RDS servers. Remote Desktop Services [Terminal Services]. If you're not seeing anything in the RDG server logs, what's happening in the logs of your edge device[s]?

    Do you have TCP port 443 and UDP port 3391 on your firewall forwarded to your RD Gateway server's private ip address? I have applied this certificate to the server WA and GW. We would like all the users to go to WebAccess [WA] to logon to access resources on the SH. Press question mark to learn the rest of the keyboard shortcuts. Gateway Server: GW.internal.net Fix: Your Computer Can’t Connect to the Remote Desktop Gateway Server.

    It is in the DMZ and has the Firewall [CheckPoint] forwarding acceptable traffic, so in this case it is SSL-443.

    The only log on the client that shows any kind of info is in Microsoft-Windows-TerminalServices-RDPClientActiveXCore: RDPClient_Gateway: An error was encountered when transitioning from AAStateCreatingOutChannel to AAStateError in response to 21 [error code 0x80075A02].

    The RDP infrastructure itself sounds fine from the four internal checks coming back OK. Do you proxy connections at these four sites? It is in the DMZ and has the Firewall [CheckPoint] forwarding acceptable traffic, so in this case it is SSL-443. That's all in the RAP. The more I think about it though, the more I feel like it has to do with a network appliance causing problems. I have the following scenario: I have also created a Hosting records for CB.external.com and GW.external.com pointing to their private IP addresses on our network. I then pushed out a script to set the WinHTTP proxy and Windows Update started working properly. What do I need to do to get this to work using single Sign on? Try reconnecting later or contact your network administrator for assistance. Firewall I should also mention that these problem clients are unable to connect to ANY of the 4 gateways.

    I still get the errors listed above when logon to either the website either internally and externally.

    Logs on the network devices, as /u/ReadingYourEmail said, are a good place to look too. Yes when logged into the Gateway server I can RDP from the desktop into the Terminal Server on the LAN.

    Try it without the FARM option.

    Then the same firewall has a rule that allows RDP traffic to the Terminal Server within the Firewall on port 3389.

    Chapelet En Direct De Lourdes Aujourd'hui Kto, Luo Yunxi Height, Gofundme Kelly Soft White Underbelly, How To Reinstall Epic Games Launcher Without Deleting Fortnite, Daniel Ezra Girlfriend, Mafia 3 Money Glitch 2020, Elijah Michael Lee Instagram, Peter Coyote Manson, Marianne Netflix Hidden Frames, Oats For Deer, Indianapolis Colts Font, Gray Wall Jumper, She Says She Misses Me But Ignores Me, Twins Nephew Quotes, Soul Train Ambulance, Usmc Mess Night Powerpoint, Chesterfield Car Accident, Moonlit Lace Viburnum Companion Plants, Cat 996 Loader, Saint Cecilia Miracles, Cheetoh Vs Bengal, Mandrill Vs Gorilla, Word Cookie Cheat 2019, Iliza Shlesinger Nose Before After, Dua For Friends And Family, Is Jill Soltau Married, Pop Rocks Font, Do Praying Mantis Eat Ladybugs, Nova Tv Uzivo, Is Tinnitus From Omeprazole Permanent, Hummer H1 For Sale Under $5,000, Winogradsky And Beijerinck, Quality Street Calories, William Ash Wife, How To Get Beauty Enhancer On Tiktok, Buddha Episode 55, Fabled Kibble Ark, Chanterelle Blanche Comestible, Nba 2k17 Boost Draft, Schweppes Cream Soda, Tampa Bay Lightning Font, How Was Life In New Amsterdam Different From The Surrounding Colonies, Plate Tectonics Lab Quizlet, Jusuf Nurkic Dad, Everson Walls Family, Should I Kill Avallac H Witcher 3, Raaz E Ulfat Episode 7, Jodie Woods Teeth, Chazak In Hebrew, The Heaven Sword And Dragon Saber Adaptations, Ascendance Of A Bookworm Season 2, Nailah Blackman Height, 12 Archangels Symbols, Marlin Model 55 3 Inch Magazine, Lucid Motors Casa Grande Location Map, How Much Was Jessy Dixon Worth, How Is Arknights Reddit, Sideline Viewing System App, Marie Pierre Bouchard Age, Jay Mcgwire Now, Kris Jenner Height, Chowchilla Kidnapping Documentary Netflix, Robert N Fried Religion, Pistol Pete Death, Golmaal Again Full Movie Online, Opposite Of In Utero, Alexandra Davies Measurements, Jensen Lol Girlfriend, Twitch Emote Maker, Did Anna Hasselborg Have Her Baby, Connor Weil Wife Age, Split Cable Grommet, State Of University City 2020, How To End A Wedding Toast, Millions Candy Usa, Call Me A Legend Ad, Elite Dangerous Trade Calculator, Johnny Contardo Family, Adam Stanheight Death, Sims 4 Cc Findings, Fighting Pitbull Bloodlines, Toy Story Of Terror Old Timer Commercial, Omega Omega Tau Delta H, Festuca Gautieri Rhs, Watch Denver Nuggets Live Stream, Clinton Pugh Wife, Rare Baby Names, Seb Corbyn Linkedin, Evil Twin Lifetime Movies, Blanc De Hotot,

    Video liên quan

    Chủ Đề