{"id":27805,"date":"2022-11-26T07:37:11","date_gmt":"2022-11-26T06:37:11","guid":{"rendered":"http:\/\/159.69.82.204\/win\/?p=27805"},"modified":"2022-11-28T12:11:16","modified_gmt":"2022-11-28T11:11:16","slug":"windows-remote-desktop-connection-issues-to-fqdn-since-october-2022","status":"publish","type":"post","link":"https:\/\/borncity.com\/win\/2022\/11\/26\/windows-remote-desktop-connection-issues-to-fqdn-since-october-2022\/","title":{"rendered":"Windows Remote Desktop connection issues to FQDN since October 2022"},"content":{"rendered":"<p><img decoding=\"async\" style=\"float: left; margin: 0px 10px 0px 0px; display: inline;\" title=\"Windows\" src=\"https:\/\/www.borncity.com\/blog\/wp-content\/uploads\/2021\/04\/Windows-klein.jpg\" alt=\"Windows\" width=\"200\" align=\"left\" \/>[<a href=\"https:\/\/www.borncity.com\/blog\/2022\/11\/26\/windows-remote-desktop-verbindungsprobleme-ber-fqdn-seit-oktober-2022\/\" target=\"_blank\" rel=\"noopener\">German<\/a>]I have received reports of problems with remote desktop connections under Windows when they are made via FQDN (Fully Qualified Domain Name). The connections can then no longer be established. The problem has been occurring since October 2022 and a connection to the difficulties in connection with Remote Desktop problems seems to be given.<\/p>\n<p><!--more--><\/p>\n<h2>Issues with Remote Desktop connections<\/h2>\n<p><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/vg01.met.vgwort.de\/na\/27d098e5aa5b46fba00263b2eca8069d\" alt=\"\" width=\"1\" height=\"1\" \/>According to my observations, there have been problems with Remote Desktop connections under various Windows versions for months. I had already reported about the problem in October 2022 in the blog post <a href=\"https:\/\/borncity.com\/win\/2022\/10\/07\/windows-11-22h2-microsoft-untersucht-rdp-probleme\/\">Windows 11 22H2: Microsoft investigates RDP issues<\/a>. Then, as of November 22, 2022, Microsoft has confirmed that there may be connection issues with Remote Desktop connections in Windows 11 version 22H2. Details can be found in the blog post <a href=\"https:\/\/borncity.com\/win\/2022\/11\/24\/windows-11-22h2-connection-issues-with-remote-desktop-confirmed\/\">Windows 11 22H2: Connection issues with remote desktop confirmed<\/a>.<\/p>\n<h2>Issues with FQDN Remote Desktop connections<\/h2>\n<p>To my German blog post\u00a0<a href=\"https:\/\/www.borncity.com\/blog\/2022\/11\/24\/windows-11-22h2-probleme-mit-remote-desktop-verbindungen-besttigt\/\" target=\"_blank\" rel=\"noopener\">Windows 11 22H2: Probleme mit Remote Desktop-Verbindungen best\u00e4tigt<\/a> Nicki got in touch and reported problems with Remote Desktop Connections on FQDN (Fully Qualified Domain Name). In<a href=\"https:\/\/www.borncity.com\/blog\/2022\/11\/24\/windows-11-22h2-probleme-mit-remote-desktop-verbindungen-besttigt\/#comment-136747\" target=\"_blank\" rel=\"noopener\"> this comment<\/a> the problem is described like this (I've translated the comment):<\/p>\n<blockquote><p>Hi G\u00fcnter,<\/p>\n<p>since the October updates we have the problem that more and more users cannot connect via FQDN. The password is rejected. A connection via the IP address works fine.<\/p>\n<p>Have you heard about this? It goes here only in the PC-PC connections without gateway or broker.<\/p><\/blockquote>\n<p>I myself have not had any user reports and have not yet read anything in this regard, but blog reader Christian Braun confirms the problem in <a href=\"https:\/\/www.borncity.com\/blog\/2022\/11\/24\/windows-11-22h2-probleme-mit-remote-desktop-verbindungen-besttigt\/#comment-136769\" target=\"_blank\" rel=\"noopener\">this comment<\/a> (translated):<\/p>\n<blockquote><p>Same problem already had with 2 customers today. The connection was refused via FQDN. In the event log of the terminal server it was logged that the access data is not correct. IP address directly entered in the RDP connection solved the problem.<\/p><\/blockquote>\n<p>In the comment there is already a hint to a workaround: Instead of using a Fully Qualified Domain Name (FQDN) as connection target, Christian directly entered the IP address and the RDP connection works again.<\/p>\n<h2>October 11, 2022 updates to blame?<\/h2>\n<p>Nicki then linked in a <a href=\"https:\/\/www.borncity.com\/blog\/2022\/11\/24\/windows-11-22h2-probleme-mit-remote-desktop-verbindungen-besttigt\/#comment-136835\" target=\"_blank\" rel=\"noopener\">follow-up comment<\/a> to a post in the <a href=\"https:\/\/www.reddit.com\/r\/sysadmin\/comments\/y0z1xa\/comment\/iso9gf8\/?utm_source=reddit&amp;utm_medium=web2x&amp;context=3\">PatchDay MegaThread<\/a> where the October 2022 updates for Windows 10 (KB5018410) and Windows 11 (KB5018418) could be to blame for the connectivity issues. It says there:<\/p>\n<blockquote><p>Security Update KB5018410 (Windows 10) and KB5018418 (Windows 11) break RDP SSO Delegated Credentials.<\/p>\n<p>We use the RDP desktop shortcut with single sign-on to allow logged-in users to simply log in to the remote server without entering the password again. It worked like a charm for years.<\/p>\n<p>I've been scratching my head all morning and found that some users are greeted with a \"The user name or password is incorrect. Try Again.\" as soon as the remote session window opens. Followed by weird logs in the event viewer.<\/p>\n<p>Apparently, it's been happening since last week, but not many users complained. When we investigated this issue today, we found several other users have the same issue, and they all had KB5018410 installed, and those that didn't have this issue didn't have the update installed. We uninstalled this update from the affected machines, and everything started working again!<\/p>\n<p>We do use RDS Farm(s) running WS 2022 with UPD (User Profile Disks).<\/p>\n<p>We tried the following, but the issue is not fixed, unless we remove the update.<\/p>\n<ul>\n<li>disabled UDP<\/li>\n<li>replaced mstsc.exe and .dll<\/li>\n<\/ul>\n<p>I can't seem to find any specific info about this and how to avoid this from happening again when future updates are installed&#8230;<\/p><\/blockquote>\n<p>There, too, connection problems are confirmed and someone writes that he had to replace his FQDN connection target with the IP address. There is evidence there that it only occurred with users if they had saved the credentials for the RDP connection. There is a suggestion for this scenario to edit the content of the .RDP file and make sure that the line:<\/p>\n<p>use redirection server name:i:1<\/p>\n<p>has the parameter 1 (instead of 0). However, I am unsure if this would do any good in the above case. Nikki writes that the above updates are not installed yet. But possibly the bug has been creeping in for a while &#8211; after all, the October 2022 updates were supposed to better secure TLS\/SSL and have resulted in collateral damage (see the following articles). Anyone who has these problems &#8211; and maybe knows a solution (aside from using an IP address as destination)?<\/p>\n<p><strong>Addendum:<\/strong> Got now several confirmation from German blog readers. Another feedback from a German Facebook Windows Server group (here is the translated text): \"The problem only affects RDP connections. Just received a call from a colleague &#8211; Hyper-V management tools do not work via FQDN, but via IP input\". In an addendum, this administrator wrote:<\/p>\n<blockquote><p>First I checked the defaults, domain trust and network profile.\u00a0 Everything was perfect. Then I tried to connect via IP and everything worked. The error message was:<\/p>\n<p>Error during operation on computer xxxxxx unknown security error&#8230;.<\/p>\n<p>Event log then showed a Kerberos error.<\/p><\/blockquote>\n<p>I reported it to Microsoft via Twitter. On reddit.com someone <a href=\"https:\/\/www.reddit.com\/r\/sysadmin\/comments\/yy4wcv\/comment\/ix92bls\/\" target=\"_blank\" rel=\"noopener\">worte<\/a>:<\/p>\n<blockquote><p>I have spoken with Microsoft Enterprise Support. Microsoft confirmed to me that there is an issue still existing with the OOB patch and they plan to make an announcement in the coming days.<\/p><\/blockquote>\n<p><strong>Similar articles<br \/>\n<\/strong><a href=\"https:\/\/borncity.com\/win\/2022\/10\/12\/patchday-windows-10-updates-11-oktober-2022\/\">Patchday: Windows 10-Updates (October 11, 2022)<\/a><strong><br \/>\n<\/strong><a href=\"https:\/\/borncity.com\/win\/2022\/10\/12\/patchday-windows-11-server-2022-updates-11-oktober-2022\/\">Patchday: Windows 11\/Server 2022-Updates (October 11, 2022<\/a><br \/>\n<a href=\"https:\/\/borncity.com\/win\/2022\/08\/17\/rds-probleme-nach-windows-update-kb5015808\/\">RDS issues after Windows update KB5015808<\/a><br \/>\n<a href=\"https:\/\/borncity.com\/win\/2022\/09\/13\/windows-server-2016-fix-for-rdp-issues-in-kb5015808-and-later\/\">Windows Server 2016: Fix for RDP issues in KB5015808 and later<\/a><br \/>\n<a href=\"https:\/\/borncity.com\/win\/2022\/10\/07\/windows-11-22h2-microsoft-untersucht-rdp-probleme\/\">Windows 11 22H2: Microsoft investigates RDP issues<\/a><br \/>\n<a href=\"https:\/\/borncity.com\/win\/2022\/10\/29\/windows-10-20h2-22h2-oktober-update-kb5018410-lsst-onedrive-abstrzen\/\" rel=\"bookmark\">Windows 10 (20H2-22H2): October Update KB5018410 causes OneDrive crashes\/issues<\/a><br \/>\n<a href=\"https:\/\/borncity.com\/win\/2022\/10\/22\/probleme-mit-onedrive-for-business-sync-client-durch-update-kb5018410-22-10-2022\/\" rel=\"bookmark\">Issues with OneDrive for Business Sync Client caused by update KB5018410 (Oct. 22, 2022)<\/a><br \/>\n<a href=\"https:\/\/borncity.com\/win\/2022\/10\/18\/citrix-verbindungen-nach-windows-update-kb5018410-oktober-2022-gestrt-tls-problem\/\" rel=\"bookmark\">Citrix connections broken after Windows update KB5018410 (October 2022) (TLS problem)<\/a><br \/>\n<a href=\"https:\/\/borncity.com\/win\/2022\/11\/11\/directaccess-fails-after-windows-updates-from-november-2022\/\" rel=\"bookmark\">DirectAccess fails after Windows Updates from November 2022<\/a><br \/>\n<a href=\"https:\/\/borncity.com\/win\/2022\/10\/22\/fix-des-ssl-tls-verbindungsproblems-stand-der-sonderupdates-und-betroffene-anwendungen-21-10-2022\/\" rel=\"bookmark\">SSL\/TLS connection issue fix: out-of-band update status and affected applications (Oct. 21, 2022)<\/a><br \/>\n<a href=\"https:\/\/borncity.com\/win\/2022\/10\/18\/sonderupdates-fr-windows-fixen-ssl-tls-verbindungsproblem-auch-bei-citrix-17-oktober-2022\/\" rel=\"bookmark\">Out-of-band updates for Windows fixes SSL-\/TLS connection issues (also with Citrix) \u2013 October 17, 2022<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>[German]I have received reports of problems with remote desktop connections under Windows when they are made via FQDN (Fully Qualified Domain Name). The connections can then no longer be established. The problem has been occurring since October 2022 and a &hellip; <a href=\"https:\/\/borncity.com\/win\/2022\/11\/26\/windows-remote-desktop-connection-issues-to-fqdn-since-october-2022\/\">Continue reading <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[463,2],"tags":[47,1359,195,194],"class_list":["post-27805","post","type-post","status-publish","format-standard","hentry","category-issue","category-windows","tag-issue","tag-rdp","tag-update","tag-windows"],"_links":{"self":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts\/27805","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/comments?post=27805"}],"version-history":[{"count":0,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts\/27805\/revisions"}],"wp:attachment":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/media?parent=27805"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/categories?post=27805"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/tags?post=27805"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}