Quantcast
Channel: Active Directory Rights Management Service(On premise) forum
Viewing all 1025 articles
Browse latest View live

Cannot import TPD and TUD into new AD RMS

$
0
0

Hi,

I am upgrading Windows RMS 1.0 with SP2 running on Windows 2003 R2 with SP2 to AD RMS 2012 R2; I have issue in importing the exported TPD and TUD files from old RMS; I receive the below error:

The trusted publishing domain cannot be imported because its certificate is either being revoked or cannot be verified

Please help me on this!


Refresh template ADRMS for OWA ?

$
0
0

I have AD RMS server and Exchange 2013 on-premise.

When I create (or delete) a template on AD RMS server, OWA takes about 1 hour to refresh templates.

Can we force OWA to refresh template immediately? 

And if client (using Outlook 2013) in workgroup environment, how to update templates? I used registry editor but not working...

Registry path: HKEY_CURRENT_USER\Software\Classes\Local Settings\Software\Microsoft\MSIPC

Type: REG_DWORD

Value: TemplateUpdateFrequencyInSeconds


Migrate AD RMS 2008 R2 to AD RMS 2012 R2

$
0
0

Dears,

Kindly do you have a step by step procedure for migrating AD RMS on Windows 2008 R2 to new AD RMS installed on Windows 2012 R2 with new URL for AD RMS cluster? Will also the templates and previous configuration be maintained in new setup?


Note that RMS database is currently installed on SQL 2005 and the new AD RMS cluster will have its databases on SQL 2012 cluster.

windows 2012 R2 AD RMS SQL Server Requirements

$
0
0

Dear Experts,

Windows server 2012 R2 AD RMS will support SQL 2016 Enterprise?

please help me bit hurry.

Thanks in advance.

vinay

Office for Mac 2016

$
0
0
Will Server 2008 R2 with ADRMS role support Office 2016 for Macs? I've found documentation on enabling the mac certification file for Office 2011 but haven't found anything specific to 2016 version.

Office pop up message when using Do Not Forward Outlook Message

$
0
0

HI,

Not sure if this is ADRMS or Office 2013. We have an exchange 2013 environment, ADRMS on Server 2008R2. This new warning message just started appearing when users select Do Not Forward and add attachments. Doesnt make a difference if its a mix of office and PDF files or just office files. I checked the KB articles on recent office/outlook updates we received but none mention this new notification box.I've done a search for this exact message "Only file attachments that support rights management will automatically have their permission restricted to match the restrictions on this e-mail. All other file types are attached unprotected.Click Learn more to see a list of file types that support rights management." and have not found any mention of it in forums or articles. What exactly is causing this to appear and what does it mean. It appears that the Do not forward email has the correct permissions when received by the intended recipient.

Thanks

RMSAnalyzer cannot detect active directory forest

$
0
0

I'm having 3 servers.

  • Server A: DC, Windows Server 2008 R2
  • Server B: to be installed RMS, Windows Server 2008 R2
  • Server C: SharePoint Server, Windows Server 2012 R2

I decided to install RMS on Server B. However, when I used the tool RMSAnalyzer from Microsoft to verify connection, it couldn't detect the active directory forest to list out the SCP registered in that forest. I tried in Server C but it still listed out the correct forest there. I know this may be related to configuration (e.g. DNS) which make the server B, somehow,cannot see the forest but I have been researching and still haven't found any solutions

Get-ADForest still works when called from Server B

Please support

ADRMS Right Policy Template is not distributing to the client Machines

$
0
0

Hi All, 

I am New to ADRMS.

I have installed the ADRMS in windows 2012, 

I have created a Right Policy templates, But i am unable to see the same templates from the client machine (Word, e-mail,etc..) . whether i missed any thing.

Please advise ..


SK


Decrypt previously protected documents

$
0
0

Hi all,

If super group was not enabled and a document was protected from certain user, this user account is deleted; how can we decrypt this document? Even if we enabled super group now, its members will not be able to decrypt it, what options do we have?

Clear DRM cache

$
0
0

Hi all,

I need to clear DRM cache for all users to ensure that clients download the updated templates immediately, how can I achieve that? Knowing that we have clients from Windows 7 and above.

AD RMS and Exchange 2016 Integration

$
0
0

I followed this link: http://windowstechpro.com/part-3-how-to-enable-irm-ad-rms-in-exchange-2013/ to integrate AD RMS 2012 R2 with Exchange 2016 and when I run Get-RMSTemplate |format-list ,I can see the templates available to use. Also from Exchange OWA I can see the templates. But when ITest-IRMCongiuration -sender user@domainname.com to test the IRM Configuration and AD RMS health status of the URLs and availability of the services, it fails at last step and below error is thrown:

Acquiring Use License from RMS Licensing Uri (https://rms.Domain.com/_wmcs/licensing) ...
              - FAIL: Failed to acquire a use license. This failure may cause features such as Transport Decryption, Journal Report Decryption, IRM in OWA, IRM in EAS and IRM Search to not work. Please make sure that the account "FederatedEmail.4c1f4d8b-8179-4148-93bf-00a95fa1e042" representing the Exchange Servers Group is granted super user privileges on the Active Directory Rights Management Services server. For detailed instructions, see "Add the Federated Delivery Mailbox to the AD RMS Super Users Group" athttp://go.microsoft.com/fwlink/?LinkId=193400.

I confirmed the federated delivery mailbox is part of the super group, what I am missing here?

Support for Office 2016 MAC

$
0
0

Hello,

I have a configuration of AD RMS on premises. 

With office 2011 for mac i was able to receive the rms templates and apply restrictions to documents.

Now i just installed Office 2016 and i can't apply restricitons to documents!

Does office 2016 for mac doesn't support integration directly?

Thanks

Protect PDF Files

$
0
0

Hi all, 

I have implemented the ADRMS in our environment.

I could able to protect the Microsoft applications using the Right Policy Templates. 

Is there a way to protect the file extensions like PDF, TXT and JPEG files? 

Can you please assist how to fix.



SK

Exchange 2016 OWA integration with AD RMS 2012 R2 issue

$
0
0

Hi,

We are having problem with Exchange 2016 OWA integration with AD RMS 2012 R2, when a user receives Right Protected email he is unable to see that email and he get  "the message you tried to open is protected with information rights management. Pre-licensing failed. try opening the message again".

I checked AD RMS server, i get these below error:

"Active Directory Rights Management Services (AD RMS) failed to create a license because information about the licensee in Active Directory Domain Services (AD DS) is invalid." 
Log Name: Application
Source: Active Directory Rights Management Services
Event ID: 225
Task Category: Licensing
Level: Error
Parameter Reference
Context: LicensePipeline
RequestId: {a5c39b5f-159d-4bf1-b1ab-5f3c990a2d76}.5966:95
Microsoft.DigitalRightsManagement.Licensing.AcquirePreLicenseInvalidLicenseeException

        Message: The licensee specified in AcquirePreLicense is not valid: user@domain.com.

When I try to run test-IRMConfiguration -sender user@domain.com , output is below:

  • Results : Checking Exchange Server ...
                  - PASS: Exchange Server is running in Enterprise.
              Loading IRM configuration ...
                  - PASS: IRM configuration loaded successfully.
              Retrieving RMS Certification Uri ...
                  - PASS: RMS Certification Uri:https://rms url/_wmcs/certification.
              Verifying RMS version for https://rms url/_wmcs/certification ...
                  - PASS: RMS Version verified successfully.
              Retrieving RMS Publishing Uri ...
                  - PASS: RMS Publishing Uri:https://rms url/_wmcs/licensing.
              Acquiring Rights Account Certificate (RAC) and Client Licensor Certificate (CLC) ...
                  - PASS: RAC and CLC acquired.
              Acquiring RMS Templates ...
                  - PASS: RMS Templates acquired.
              Retrieving RMS Licensing Uri ...
                  - PASS: RMS Licensing Uri:https://rms url/_wmcs/licensing.
              Verifying RMS version for https://rms url/_wmcs/licensing ...
                  - PASS: RMS Version verified successfully.
              Creating Publishing License ...
                  - PASS: Publishing License created.
              Acquiring Prelicense for 'user@domain.com' from RMS Licensing Uri (https://rms url/_wmcs/licensing) ...
                  - FAIL: Failed to acquire Prelicense [Failure Code = InvalidLicensee]!

          Acquiring Use License from RMS Licensing Uri (https://rms url/_wmcs/licensing) ...
              - FAIL: Failed to acquire a use license. This failure may cause features such as Transport Decryption,

Journal Report Decryption, IRM in OWA, IRM in EAS and IRM Search to not work.

Please make sure that the account "FederatedEmail.4c1f4d8b-8179-4148-93bf-00a95fa1e042" representing the

Exchange Servers Group is granted super user privileges on the Active Directory Rights Management Services

server. For detailed instructions, see "Add the Federated Delivery Mailbox to the AD RMS Super Users Group"

athttp://go.microsoft.com/fwlink/?LinkId=193400.

OVERALL RESULT: FAIL

I followed steps in this link: https://social.technet.microsoft.com/wiki/contents/articles/30984.steps-to-configure-irms-in-exchange-2013.aspx except step 5.

Can Any body suggest the solution ?

Templates are not updating in clients

$
0
0

We are currently deploying RMS (2012 R2) in our environment. our functional level is 2008 R2.

The problem is that the templates are not updating (deletion or creation on the server not reflecting in the client side), although the templates shared folder on the server is accessible

only the first created template was distributed fine after that nothing works till we delete the reg key of the rms and the templates themselves and rerun the scheduled task.

Any ideas please?


Domain user account is acting as "Built-In Administrator" account on Windows 10

$
0
0

Recently, I have noticed that I am unable to launch built-in apps like the Store, Mail, Calendar, Calculator, etc., and the following message is displayed;


"This app can't open

<app name> can't be opened using the Built-In Administrator account.

Sign in with a different account and try again."

I am using a domain account (not a Built-In account) to which I had my Microsoft Account connected.  The local Administrator on this machine has been disabled.  I did disconnect my Microsoft Account from the domain account thinking if I re-added it, it may re-register or something, but now I am no longer able to add my Microsoft Account.


I have researched this issue and have tried all manner of troubleshooting suggestions, including modifying local policies and the registry.  I am looking for any and all suggestions.  Please let me know what information would be helpful for you to know.  Thank you.

Problem installing RMS Mobile Device Extensions on RMS Server

$
0
0

Hello,

I'm having this issue when i try to install MDE on RMS Server.

"Product: Active Directory Rights Management Services Mobile Device Extension -- AD RMS server role is not configured on the server. Please configure it first then install the Active Directory Rights Management Services Mobile Device Extension."

The AD RMS Server Role is installed on the server.

Any help will be appreciated

Thanks

Issues with MDE

$
0
0

Hello,

In macOS Sierra 10.12.1, i have IRM integration working fine with Office 2011  documents. I can open protected documents, i can view the rights, i can change the permissions.

My issue is when i try to open ppdf files on mac computer, i get the error "Something went wrong while trying to contact Windows Azure AD Rights Management. If the problem continues, contact your administrator"

The adfs is configured and working fine i think. I can log on on this page https://servername/adfs/ls/idpinitiatedsignon with the domain user.

im also able to receive this xml file: https://servername/FederationMetadata/2007-06/FederationMetadata.xml

I installed MDE on RMS, i run the script on adfs and authorize the sharing app for mac. I created the DNS srv server records on the local domain controller.

Basically using the following procedure

https://technet.microsoft.com/en-us/library/dn673574.aspx 

Also some tips from the document leverage-the-mobile-device-extension-for-ad-rms-on-your-premises

I'm having this doubts:

Do i need a public domain to get this working?

The email address have to be public or it can be a local/internaly email?

The SRV records should be created in the local domain controller or in the DNS provider? I'm testing this just using a local network so i assume its in the DC.(but i have a public domain that i can use). 

Can someone help me on what can be wrong on this. 

Thanks

Watermark Solution

$
0
0
Hi,

We are using MS office 2013 in our organization and we are in need to deploy auto watermark solution for all the client computers.

The user's PC will be logged in with his badge ID ( example : 123456 ) into the domain, whenever the user prints a document, the print out should be printed with his badge ID and Display Name.

Our Setup:
Windows Server 2012 R2 ( Active Directory )
Windows 7 Desktop OS ( Client Computers )

Any solution to deploy through Active Directory Rights Managment please . ?

Thank You.

Regards,Ali

Error on Azure Information Protection

$
0
0

Hello,

I'm getting the following error on AIP viewer on IPAD. 

I'm using a local vpn to access the RMS server. Also the certificate that i am using is a internal certificate generated by my DC. 

Viewing all 1025 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>