Solved – Windows Server 2008 R2 Update fails due to system-protected font – Tahomabd.ttf- KB4338818 or KB4343900

Hello,

this problem has been consume my time for almost 1 month.

i have been trying to install kb 4343900 for many times on my windows server 2008 r2, but it always failed.
The server was virtual machine on VMware.
What i already do is :
– running the sfc /scannow but it looks normal no integrity violation found
– try install the kb manually but still failed.
– running the SFCFix but still not working

– reset the windows update component.

windows update log :

2018-08-23 16:20:46:999 868 b4c Handler Post-reboot status for package Package_for_RollupFix~31bf3856ad364e35~amd64~~7601.24214.1.5: 0x80070020.
2018-08-23 16:20:46:999 868 b4c Handler WARNING: Got extended error: “POQ Operation HardLinkFile OperationData \SystemRoot\WinSxS\amd64_microsoft-windows-font-truetype-tahoma_31bf3856ad364e35_6.1.7601.24145_none_8e5c4f96a47869ce\tahomabd.ttf, \??\C:\Windows\fonts\tahomabd.ttf”

after several troubleshoot workaround, i found that the tahomabd.ttf are lock the windows update process , and here are the workaround to solved it :

1) Use Process Explorer (Process Explorer – Windows Sysinternals | Microsoft Docs) to search for handles currently using “tahoma” or “staticcache.dat”. Please run this tools as administrator.
2) Temporarily disable or uninstall the above handles (programs/processes) that are using “tahoma” or “staticcache.dat” (for my case, manage engine service desk lock the tahoma font. Disable the manage engine services before install the KB).

3) Install KB4343900.

4) restart the server

5) Update Success, Re-enable manage engine services.

 

Source :

Source 1

Source 2 – my thread on www.sysnative.com

Advertisements

Add Folder permission to virtual account MSSQLServer

this is note to myself.

if you’re have some request to adding permission to the folder that need to be access by sql server, you need to add the folder permission with NT SERVICE\MSSQLSERVER and give the access to that account with modify access.

mssqlserver

So the sql server will be able to access that folder.

Solved – Install cisco vpn client on windows 10

This guide will help you to solved install cisco VPN on windows 10.

  • download DNE on this link and at mid-way through the page under “Other DNE Problems” you will find the download link to 32-bit and 64-bit version of DNE installation file. Download the file and install it on your Windows 10 computer.install the DNE software and then install the VPN client
  • after that go toHKLM\SYSTEM\CurrentControlSet\Services\CVirtA

    Double click DisplayName and

    For x86, change the value data from something like “@oem8.inf,%CVirtA_Desc%;Cisco Systems VPN Adapter” to “Cisco Systems VPN Adapter”

    For x64, change the value data from something like “@oem8.inf,%CVirtA_Desc%;Cisco Systems VPN Adapter for 64-bit Windows” to “Cisco Systems VPN Adapter for 64-bit Windows”

  • And your VPN client shoul be working now.

source :

http://www.nextofwindows.com/how-to-fix-cisco-vpn-installation-error-27850-on-windows-10

http://www.nextofwindows.com/how-to-get-cisco-vpn-to-work-on-windows-8-developer-preview

Troubleshoot – Outlook 2010 Cannot create file

If you have problem like below error, when opened the attachment from outlook 2010

You can try to cleaning up this below folder, and then restart the outlook again. It’s simple right? 😀

C:\Users\USERNAME\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Outlook

Source :

http://social.technet.microsoft.com/Forums/exchange/en-US/996d565f-aebd-49d1-863d-65a2228f8b57/cant-create-file-documentpdf-rightclick-the-folder-you-want-to-create-the-file-in-and-then?forum=exchangesvrclientslegacy

Troubleshooting – WSUS “Duplicate SID from IMAGE Deployment”

If the client have duplicate SID, it’s make computers not showing in the wsus console.

The duplicate SID are came from Image base deployment .

If you generalize the image using sysprep this issue will not show.

You can run below scipt in the client that not detected in WSUS console.

Save below script as bat file, and run the file using administrative account.

net stop wuauserv
REG DELETE “HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate” /v AccountDomainSid /f
REG DELETE “HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate” /v PingID /f
REG DELETE “HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate” /v SusClientId /f
net start wuauserv
wuauclt /resetauthorization /detectnow
Pause

Credit to original script creator.