This logging is enabled by adding keys and values to the registry. On my remote computer with a SoundMax the driver was "wdmaud.drv". This requirement needs to be documented with the IAO. You should see the normal audio drivers under Drivers32. Registry Hive: HKEY_LOCAL_MACHINE Registry Path: \Software\Policies\Microsoft\Windows NT\Terminal Services\ Value Name: fDisableCdm Type: REG_DWORD In 2008 R2 you can verify the RDS licence information by opening the Remote Desktop Session Host Configuration. 2. From Windows command line we can edit this registry key by running the following command. HKEY_LOCAL_MACHINE, often abbreviated as HKLM, is one of several registry hives that make up the Windows Registry.This particular hive contains the majority of the configuration information for the software you have installed, as well as for the Windows operating system itself. We can disable system restore by setting the registry key DisableSR to1 under the node HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore. Windows Installer can use logging to help assist in troubleshooting issues with installing software packages. Registry Hive: HKEY_LOCAL_MACHINE Subkey: \Software\Policies\Microsoft\Windows NT\Terminal Services\ RAUnsolicit\ Each Account or group will be listed under a separate value name with the value equaling the value name as in the following examples. After the entries have been added and enabled, you can retry the problem installation and Windows Installer will track the progress and post it to the Temp folder. [HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows NT\SystemRestore] "DisableSR"=- Save the new text file with a .reg extension to your desktop or someplace you can remember with a name you can remember, something like: Disable System Restore from Windows command line. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32\Terminal Server\RDP . Go to HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ and look for "DigitalProductId" in the right panel. HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\Terminal Services fAllowUnsolicited = 1 fAllowUnsolicitedFullControl = 1 HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server AllowTSConnections = 1 fDenyTSConnections = 0 fAllowToGetHelp = 1. HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Policies\Microsoft\Windows NT\Terminal Services. All domain controllers in the trusting forest must be restarted after these settings are changed for the changes to take effect. Registry Hive: HKEY_LOCAL_MACHINE Subkey: \Software\Policies\Microsoft\Windows NT\Terminal Services\ Value Name: fDenyTSConnections Type: REG_DWORD Value: 1 Documentable Explanation: If terminal services/remote desktop for remote administration is being used, then this would not be a finding. HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\Rpc\EnableAuthEpResolution Verify that Group Policy settings do not override these changes. Replace the TerminalServer\RDP audio drivers "rdpsnd.dll" with the normal drivers. HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\Terminal Services. Registry: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon DontWatchSysProcs If set, wininit.exe won't check if one of the processes it created crashed.

