{"id":34501,"date":"2024-07-19T00:01:55","date_gmt":"2024-07-18T22:01:55","guid":{"rendered":"http:\/\/159.69.82.204\/win\/?p=34501"},"modified":"2024-07-18T16:53:51","modified_gmt":"2024-07-18T14:53:51","slug":"workaround-for-broken-windows-remote-desktop-gateway-service-after-july-2024-updates","status":"publish","type":"post","link":"https:\/\/borncity.com\/win\/2024\/07\/19\/workaround-for-broken-windows-remote-desktop-gateway-service-after-july-2024-updates\/","title":{"rendered":"Workaround for broken Windows Remote Desktop Gateway service after July 2024 updates"},"content":{"rendered":"<p><img decoding=\"async\" style=\"float: left; margin: 0px 10px 0px 0px; display: inline;\" title=\"Windows\" src=\"https:\/\/www.borncity.com\/blog\/wp-content\/uploads\/2021\/04\/Windows-klein.jpg\" alt=\"Windows\" width=\"200\" align=\"left\" \/>[<a href=\"https:\/\/www.borncity.com\/blog\/2024\/07\/18\/workaround-fr-kaputten-windows-remote-desktop-gateway-dienst-nach-juli-2024-updates\/\" target=\"_blank\" rel=\"noopener\">German<\/a>]There are some issues with the security updates that Microsoft rolled out for Windows on July 9, 2024. I have received some reports that the Remote Desktop Gateway service is broken under some Windows versions (Windows Server 2019, Windows Server 2022) and regularly crashes. This prevents remote connections. A blog reader has now pointed me to a possible workaround that keeps the Remote Desktop Gateway service alive, so that the uninstallation of the July 2024 security update in question may not be necessary.<\/p>\n<p><!--more--><\/p>\n<h2>Remote Desktop Gateway service broken<\/h2>\n<p><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/vg09.met.vgwort.de\/na\/830e5edf634b4d0393890898f021be16\" alt=\"\" width=\"1\" height=\"1\" \/>The security updates from July 9, 2024 are definitely causing collateral damage to the Remote Desktop Gateway service. German blog reader Christian wrote in <a href=\"https:\/\/www.borncity.com\/blog\/2024\/07\/10\/patchday-windows-10-server-updates-9-juli-2024\/#comment-187527\" target=\"_blank\" rel=\"noopener\">this German comment<\/a> that he had to uninstall the cumulative update <a href=\"https:\/\/support.microsoft.com\/help\/5040442\">KB5040442<\/a> on a 2022 server. I had extracted the various user reports and a description of the situation in the blog post <a href=\"https:\/\/borncity.com\/win\/2024\/07\/12\/windows-july-2024-updates-break-remote-connections\/\">Windows July 2024 updates break remote connections<\/a>.<\/p>\n<p>As a result, other users confirmed the same problem under Windows Server 2019. In <a href=\"https:\/\/www.borncity.com\/blog\/2024\/07\/11\/windows-juli-2024-updates-machen-remote-verbindungen-kaputt\/#comment-187601\" target=\"_blank\" rel=\"noopener\">this German comment<\/a>, Chris wrote that the TSGateway service under Windows Server 2019 is automatically terminated at irregular intervals (3 &#8211; 45 minutes). The following error is reported in the application log:<\/p>\n<blockquote><p>Faulting application name: svchost.exe_TSGateway, version: 10.0.17763.3346, time stamp: 0xb6a0daab<br \/>\nFaulting module name: aaedge.dll, version: 10.0.17763.6054, time stamp: 0xce1c5805<\/p><\/blockquote>\n<p>The following error entry is then stored in the system log.<\/p>\n<blockquote><p>The Remote Desktop Gateway service terminated unexpectedly. It has done this 2 time(s). The following corrective action will be taken in 300000 milliseconds: Restart the service.<\/p><\/blockquote>\n<p>There is further confirmation of this bug caused by the July 2022 update in question in the comments to the blog post linked above. Andy <a href=\"https:\/\/www.borncity.com\/blog\/2024\/07\/11\/windows-juli-2024-updates-machen-remote-verbindungen-kaputt\/#comment-187828\" target=\"_blank\" rel=\"noopener\">writes here<\/a> that Microsoft has already withdrawn the July 2024 updates for Windows Server. However, it does not seem to affect every Windows Server, in <a href=\"https:\/\/www.borncity.com\/blog\/2024\/07\/11\/windows-juli-2024-updates-machen-remote-verbindungen-kaputt\/#comment-188071\" target=\"_blank\" rel=\"noopener\">this comment<\/a> says there are not issues.<\/p>\n<h2>Workaround for the problem?<\/h2>\n<p>Blog reader Magican posted <a href=\"https:\/\/www.borncity.com\/blog\/2024\/07\/10\/patchday-windows-10-server-updates-9-juli-2024\/#comment-188103\" target=\"_blank\" rel=\"noopener\">this comment<\/a> on the article <a href=\"https:\/\/www.borncity.com\/blog\/2024\/07\/10\/patchday-windows-10-server-updates-9-juli-2024\/\" target=\"_blank\" rel=\"noopener\">Patchday: Windows 10\/Server-Updates (9. Juli 2024)<\/a> and wrote: \"Here is the according MS article with a temporary solution\". The reader referred to the article <a href=\"https:\/\/learn.microsoft.com\/en-us\/answers\/questions\/1820252\/july-07-2024-updates-break-remote-desktop-gateway\" target=\"_blank\" rel=\"noopener\">July 07-2024 Updates Break Remote Desktop Gateway Servers<\/a> in the Microsoft Q&amp;A section (Microsoft Learn). There someone writes the following about July 16, 2024:<\/p>\n<blockquote><p>July 07-2024 Updates Break Remote Desktop Gateway Servers<\/p>\n<p>We are seeing the issue on 2 of our four RDS Gateways (running 2022 STD).<\/p>\n<p>Faulting application name: svchost.exe_TSGateway,<br \/>\nversion: 10.0.20348.2520,<br \/>\ntime stamp: 0xf862c7cb<br \/>\nFaulting module name: aaedge.dll,<br \/>\nversion: 10.0.20348.2582,<br \/>\ntime stamp: 0x78ded40f<br \/>\nException code: 0xc0000005<br \/>\nFault offset: 0x000000000006613c<br \/>\nFaulting process id: 0x273c<br \/>\nFaulting application start time: 0x01dad77010a2bee1<br \/>\nFaulting application path: C:WINDOWS\\system32\\svchost.exe<br \/>\nFaulting module path: c:windows\\system32\\aaedge.dll<br \/>\nReport Id: d4502b05-b974-4660-bc13-5f2da108f403<br \/>\nFaulting package full name:<br \/>\nFaulting package-relative application ID:<\/p>\n<p>and in TerminalServices-Gateway log:<br \/>\nThe following exception code \"3221225477\" occured in the RD Gateway server. The RD Gateway will be restarted. No user action is required.<\/p>\n<p>The results of these crashes are that all users connected via the affected gateway are immediately disconnected and must reconnect. Obviously very disruptive when its happening every 30 or so minutes!<\/p><\/blockquote>\n<p>As soon as the relevant July 2024 update is uninstalled, the problem is resolved. At first glance, this would simply be a confirmation of the facts described above, albeit supplemented by a few notes from the bug report. However, the thread is quite interesting because a user by the name of Karlie Weng, who describes himself as a \"Microsoft vendor\", has come forward. Weng states that they have found a workaround for the crashes and writes about it.<\/p>\n<blockquote><p>It appears that the problem is linked to the RPC-over-HTTP transport mechanism that the RDClient used to establish a connection with the Gateway.<\/p>\n<p>As a temporary solution, you might want to try one of the following options:<\/p>\n<ol>\n<li>On your Remote Desktop Gateway (RD Gateway), create a new firewall rule to block incoming traffic on port 3388. Ensure the rule specifies \"Deny\" or \"Block\" to effectively prevent access.<\/li>\n<li>From all Windows client machines, delete the registry entry associated with RDGClientTransport. The specific path to this entry is: HKCU\\SOFTWARE\\Microsoft\\Terminal Service Client\\RDGClientTransport.<\/li>\n<\/ol>\n<p><em>Please proceed with caution when modifying firewall rules and registry entries, as these changes can affect system functionality. It's recommended to back up relevant configurations before making any alterations.<\/em><\/p><\/blockquote>\n<p>It is unclear to me at this point whether the fix works and is applicable at all. Deleting a registry entry can only be done like this on individual machines. And in replies to Weng's post, a user asks which RDP clients normally use this transport? And if the transport is disabled, what alternative transport is used? But perhaps one of the readers concerned has the opportunity to test this and can give feedback as to whether it helps.<\/p>\n<p><strong>Similar articles:<br \/>\n<\/strong><a href=\"https:\/\/borncity.com\/win\/2024\/07\/09\/microsoft-security-update-summary-july-9-2024\/\">Microsoft Security Update Summary (July 9, 2024)<\/a><br \/>\n<a href=\"https:\/\/borncity.com\/win\/2024\/07\/10\/patchday-windows-10-server-updates-july-9-2024\/\">Patchday: Windows 10\/Server Updates (July 9, 2024)<\/a><br \/>\n<a href=\"https:\/\/borncity.com\/win\/2024\/07\/10\/patchday-windows-11-server-2022-updates-july-9-2024\/\">Patchday: Windows 11\/Server 2022-Updates (July 9, 2024)<\/a><br \/>\n<a href=\"https:\/\/borncity.com\/win\/2024\/07\/10\/windows-server-2012-r2-und-windows-7-july-9-2024\/\">Windows Server 2012 \/ R2 und Windows 7 (July 9, 2024)<\/a><br \/>\n<a href=\"https:\/\/borncity.com\/win\/2024\/07\/11\/microsoft-office-updates-july-9-2024\/\">Microsoft Office Updates (July 9, 2024)<\/a><br \/>\n<a href=\"https:\/\/borncity.com\/win\/2024\/07\/11\/windows-11-update-kb5040442-causes-issues-with-outlook-2021\/\" rel=\"bookmark\">Windows 11 update KB5040442 causes issues with Outlook 2021<\/a><br \/>\n<a href=\"https:\/\/borncity.com\/win\/2024\/07\/12\/windows-july-2024-updates-break-remote-connections\/\" rel=\"bookmark\">Windows July 2024 updates break remote connections<\/a><br \/>\n<a href=\"https:\/\/borncity.com\/win\/2024\/07\/12\/windows-10-11-updates-e-g-kb5040442-trigger-bitlocker-queries-july-2024\/\" rel=\"bookmark\">Windows 10\/11 updates (e.g. KB5040442) trigger Bitlocker queries (July 2024)<\/a><br \/>\n<a href=\"https:\/\/borncity.com\/win\/2024\/07\/16\/windows-update-july-2024-are-there-issues-with-radius-authentications\/\" rel=\"bookmark\">Windows Update July 2024: Are there issues with Radius authentications?<\/a><br \/>\n<a href=\"https:\/\/borncity.com\/win\/2024\/07\/15\/june-2024-security-update-kb5040427-crashes-windows-10-lpd-printing-service\/\" rel=\"bookmark\">July 2024 security update KB5040427 crashes Windows 10\/Server LPD printing service<\/a><br \/>\n<a href=\"https:\/\/borncity.com\/win\/2024\/07\/16\/microsofts-fixes-for-various-windows-bugs-july-2024\/\" rel=\"bookmark\">Microsoft's fixes for various Windows bugs (July 2024)<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>[German]There are some issues with the security updates that Microsoft rolled out for Windows on July 9, 2024. I have received some reports that the Remote Desktop Gateway service is broken under some Windows versions (Windows Server 2019, Windows Server &hellip; <a href=\"https:\/\/borncity.com\/win\/2024\/07\/19\/workaround-for-broken-windows-remote-desktop-gateway-service-after-july-2024-updates\/\">Continue reading <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[463,22,2],"tags":[47,2863,195,194],"class_list":["post-34501","post","type-post","status-publish","format-standard","hentry","category-issue","category-update","category-windows","tag-issue","tag-patchday-7-2024","tag-update","tag-windows"],"_links":{"self":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts\/34501","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/comments?post=34501"}],"version-history":[{"count":1,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts\/34501\/revisions"}],"predecessor-version":[{"id":34502,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts\/34501\/revisions\/34502"}],"wp:attachment":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/media?parent=34501"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/categories?post=34501"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/tags?post=34501"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}