Windows Server Summit 2024
Mar 26 2024 08:00 AM - Mar 28 2024 04:30 PM (PDT)
Microsoft Tech Community
LIVE
SOLVED

Unable to install RD Connection Broker role service | Domain Controller | Windows Server 2012 R2

Copper Contributor

Hi All,

 

I just recently installed an additional DC on our domain. I'm on the isolated test environment right now. what I'm having an issue here is that I cannot install an RDP feature for my domain controller. it says whenever I installed "Unable to install RD Connection Broker role service on server(my domain name)". it all happens when I promoted the server into a domain controller. 

3 Replies
best response confirmed by spacegabx (Copper Contributor)
Solution

Hi @spacegabx 

 

According to this document, the configuration is not supported

 

https://support.microsoft.com/en-us/help/2799605/remote-desktop-services-role-cannot-co-exist-with-a...

 

However, the article mentions a Servicing Stack Update that allows this configuration.

 

https://support.microsoft.com/en-us/help/2871777/a-servicing-stack-update-is-available-for-windows-r...

 

Try installing the SSU and see how it goes.

 

Hope this helps,

Mark

I hope Mark's suggestion below helps. However, please do not expose your RDP server over the internet unsecured. Please see this FBI article about increasing attacks against exposed RDP ports: https://www.ic3.gov/media/2018/180927.aspx

If you must access RDP over the Internet, please use a VPN solution - avoid those flagged by CISA such as Pulse VPN. Using NAT or changing RDP port will not help due to Bluekeep vulnerabilities. If you find VPN too complicated, you should consider solutions similar to TruGrid SecureRDP.

Best.

KPA
Hello KPA,

Thank you for this. I'm also aware and our organization is using a secured and trusted VPN. but we still keep on monitoring every day for possible attacks through RDP. I'll look at the link you provided to gain more awareness of this.

Thanks,

spacegabx
1 best response

Accepted Solutions
best response confirmed by spacegabx (Copper Contributor)
Solution

Hi @spacegabx 

 

According to this document, the configuration is not supported

 

https://support.microsoft.com/en-us/help/2799605/remote-desktop-services-role-cannot-co-exist-with-a...

 

However, the article mentions a Servicing Stack Update that allows this configuration.

 

https://support.microsoft.com/en-us/help/2871777/a-servicing-stack-update-is-available-for-windows-r...

 

Try installing the SSU and see how it goes.

 

Hope this helps,

Mark

View solution in original post