Microsoft Key Management Service (KMS) [GWDG (2023)

Table of Contents

After the installation of a Microsoft software product, the software has to be activated. In the past, the software activation had to be done directly by Microsoft by entering a so called “Multiple Activation Key” (MAK). This activation can also be done by the GWDG's KMS server for every computer of the University of Göttingen within the GÖNET. So it is no longer necessary to enter a license key to activate a Microsoft software product.

Products for KMS activation

These Microsoft software products can be activated by our KMS server:

  • Windows 11 Professional, Enterprise and Education

  • Windows 10 Professional, Enterprise, Enterprise LTSC and Education

  • Windows Server 2022

  • Windows Server 2019

  • Windows Server 2016

    (Video) Diana Pretend Play Halloween Trick or Treat Candy Haul

  • Windows Server 2012 / 2012 R2

  • Microsoft Office LTSC 2021 for Windows

  • Microsoft Office 2019 for Windows

  • Microsoft Office 2016 for Windows

To make a KMS activation work you have to use an installation medium form Microsoft's Campus or Microsoft Select program. KMS is the default activation process for these installation media. If you do not have such an installation medium, you can download them as an iso image from the network share

\\wfs-msiso.top.gwdg.de\iso$.

You need a GWDG Account to log in.

Detailed instruction

How KMS works

without having to enter a license key, a KMS software product automatically looks for a local KMS server during the installation. The software activates itself for 180 days if a KMS server has been found. Every week the software contacts the KMS server to reset this timespan back to 180 days. When the KMS server can not be reached for 180 days you get a grace period of 30 days. Within this 30 days you get a warning message and you have to reconnect to our KMS server (e.g. by VPN if you are outside the GÖNET). Otherwise the software reduces its features to a minimum until you reconnect to our KMS server.

Activation when installing

The KMS server is found automatically in many cases. Then nothing more needs to be done, especially if a computer is part of an Active Directory Domain. If this does not work, you still can activate your software manually with our KMS server (see below).

Manual KMS activation

After the installation you should complete the steps described below within 30 days if automatic activation does not work. If you already have entered a MAK key please follow the instructions in the chapter “Changing MAK to KMS activation”.

Activation of Windows OS

Manually:

  1. Log into your computer with an administrator account.

  2. Type into the search field
    cmd.exe

  3. Click with the right mouse button on cmd.exe and select “Run as Administrator”

  4. Enter
    slmgr /skms ug-kms.uni-goettingen.de This tells your computer the name of our KMS server.

    (Video) Vlad and story about Worms from the game

  5. To complete the activation process enter
    slmgr /ato

Activation of Microsoft Office 2016, 2019 and 2021

Manually:

  1. Log into your computer with an administrator account.

  2. Type into the search field
    cmd.exe

  3. Click with the right mouse button on cmd.exe and select “Run as Administrator”

  4. Change to the directory where Microsoft Office is installed.
    If you are running a 32bit Office on a 32bit Windows or an 64bit Office on a 64bit Windows, enter
    cd \Program Files\Microsoft Office\Office16
    if you are running a 32bit Office on a 64bit Windows, enter
    cd \Program Files (x86)\Microsoft Office\Office16

  5. Enter
    cscript ospp.vbs /sethst:ug-kms.uni-goettingen.de to connect to our KMS server

  6. Finally enter
    cscript ospp.vbs /act to complete the activation process.

Changing the activation from MAK to KMS

If you have already entered a MAK key and want to change to KMS activation, you have to replace the MAK key by a KMS key. This is the default key for every Microsoft software product that has been purchased via a Microsoft volume licensing contract (e.g. MS Campus or MS select).

Changing the operating system activation

To find the correct key for your Microsoft operating system, check the list at

KMS Client Setup Keys.

  1. Log into your computer with an administrator account.

  2. Type into the search field
    cmd.exe

  3. Click with the right mouse button on cmd.exe and select “Run as Administrator”

  4. Enter this command:
    slmgr /ipk <KMS-Key from Microsoft>
    For Windows 8.1 installations e.g. enter
    slmgr /ipk GCRJD-8NW9H-F2CDX-CCM8D-9D6T9

Now you can activate you Windows installation using our KMs server. If this does not work automatically, please see Manual KMS activation

Changing Microsoft Office activation

If you have activated your Office installation using an MAK key, you can still change to KMS.

For Office 2016, 2019 and 2021 see KMS key for Office 2016, 2019 and 2021

Changing Microsoft Office 2016, 2019 and 2021 activation

  1. Log into your computer with an administrator account.

  2. Type into the search field
    cmd.exe

  3. Click with the right mouse button on cmd.exe and select “Run as Administrator”

  4. Change to the directory where Microsoft Office is installed.
    If you are running a 32bit Office on a 32bit windows or an 64bit office on a 64bit Windows, enter:
    cd \Program Files\Microsoft Office\Office16 If you are running a 32bit Office on a 64bit Windows, enter:
    cd \Program Files (x86)\Microsoft Office\Office16

  5. Enter
    cscript ospp.vbs /inpkey:<KMS-Key from Microsoft>
    e. g.:
    cscript ospp.vbs /inpkey:XQNVK-8JYDB-WJ9W3-YJ8YR-WFG99
    for Office 2016 Professional Plus.

Afterwards Office can be activated with our KMS server. See Manual KMS activation if this does not work automatically.

Frequent errors

For manual activation, you must run the Command-Line Interface (cmd.exe) as administrator. The option Run as administrator is available e.g. on right mouse click.

Error 0xC004F074 (“The Key Management Service (KMS) is unavailable”): In most cases it refers to incorrectly set time or the time zone.

Error 0xC004F035 and 0xC004F059: Especially for computers that were originally acquired with an OEM operating system, in this case the KMS activation is prevented by computer's BIOS. Such BIOS version contains an invalid ACPI_SLIC table. The KMS activation expect here a so-called “Windows marker” and fails if it is corrupted or not found. This error can usually be resolved by a BIOS update.

When the 30 day grace-period has expired, Windows is running in “Reduced Functionality Mode“, only the Internet Explorer can be called. In this case, to perform the KMS activation, enter the path into Internet Explorer:

C:\Windows\System32\cmd.exe 

This will start a command-line interface prompt without administrative rights. To run cmd.exe as administrator, enter the following command:

runas /user:administrator cmd.exe 

At the command prompt with administrative rights, you can continue with manual KMS activation.

This website uses cookies. By using the website, you agree with storing cookies on your computer. Also you acknowledge that you have read and understand our Privacy Policy. If you do not agree leave the website.More information about cookies

FAQs

What is Microsoft Key Management Service? ›

The Key Management Service (KMS) is an activation service that allows organizations to activate systems within their own network, eliminating the need for individual computers to connect to Microsoft for product activation.

Is it safe to activate Office using KMS? ›

KMS is a legitimate way to activate Windows licenses in client computers, especially en masse (volume activation). There is even a Microsoft document on creating a KMS activation host. A KMS client connects to a KMS server (the activation host), which contains the host key the client uses for activation.

How do I find my KMS key for Microsoft? ›

You can download the appropriate Office Volume License Pack from the Microsoft Download Center. To get the KMS key, sign in to the Volume Licensing Service Center (VLSC) and download the KMS key for each product and version of Office that you want KMS to activate.

How do I get rid of KMS DNS? ›

Step by Step Guide:
  1. Uninstall the KMS host key first by running the following command: slmgr -upk.
  2. Then, install the default kms key by running the following command: slmgr /ipk [KMS Client Setup Key] ...
  3. Delete the record from the DNS: Open DNS console: ...
  4. The KMS server is uninstalled.
Jun 29, 2010

What is the KMS service used for? ›

Overview. AWS Key Management Service (KMS) gives you centralized control over the cryptographic keys used to protect your data. The service is integrated with other AWS services making it easier to encrypt data you store in these services and control access to the keys that decrypt it.

What happens if you delete KMS key? ›

Deleting an AWS KMS key is destructive and potentially dangerous. It deletes the key material and all metadata associated with the KMS key and is irreversible. After a KMS key is deleted, you can no longer decrypt the data that was encrypted under that KMS key, which means that data becomes unrecoverable.

Is KMS genuine? ›

Yes, KMS activation is illegal for Windows. If you activate through the KMS method then your copy of Windows would not be considered genuine by Windows.

Can I delete KMS after activation? ›

Yes you can remove KMSpico but dont do it. You may have activated windows or ms office with kmspico now you think that it is useless, no its not like this, to keep your windows activated do not remove kmspico. If you remove it then your windows will go again in trail mode.

What can KMS activate? ›

A KMS host running on a Windows Server operating system can activate computers running both server and client operating systems, however a KMS host running on a Windows client operating system can only activate computers also running client operating systems.

Is KMS key a secret? ›

The data key is encrypted under a KMS key and stored in the metadata of the secret. To decrypt the secret, Secrets Manager first decrypts the encrypted data key using the KMS key in AWS KMS. Secrets Manager does not use the KMS key to encrypt the secret value directly.

Is KMS key ID secret? ›

KMS also keeps that key a secret, One of the difficulties with symmetric key encryption is keeping the keys a secret, thus Having a service like KMS, which will never reveal CMKs in the clear, makes that management simpler. Finally, KMS helps with archiving keys.

Where are KMS keys stored? ›

No, only customer managed KMS keys can be stored and managed in an AWS KMS custom key store backed by CloudHSM. AWS managed KMS keys that are created on your behalf by other AWS services to encrypt your data are always generated and stored in the AWS KMS default key store.

Is KMS a hack? ›

KMS is Malwarebytes' detection name for a Hacktool that allows the user to use Microsoft software illegally.

Is KMS activator a virus? ›

KMS activator is not a virus but an activator. It depends that from where you have downloaded the file. Some sites have virus files attached to it because u have to deactivate your antivirus to use the activator and this is a good opportunity for the virus to attack our computer system.

Is KMS connection broker a virus? ›

The KMS Connection Broker or sppextcomobj.exe is responsible for the activation of Microsoft products. This includes your very own Windows and various other Microsoft products like Microsoft Office etc. So you shouldn't be worried if you find this service running in the background.

What are KMS clients? ›

The KMS client is the Windows operating system that is deployed in the environment and has to activate. KMS clients can be running any edition of Windows that uses volume activation. The KMS clients are supplied with a pre-installed key, called the Generic Volume License Key (GVLK) or KMS Client Setup Key.

What is KMS access? ›

AWS Key Management Service (AWS KMS) is a managed service that makes it easy for you to create and control the cryptographic keys used to protect your data.

Does KMS store data key? ›

AWS KMS generates, encrypts, and decrypts data keys. However, AWS KMS does not store, manage, or track your data keys, or perform cryptographic operations with data keys. You must use and manage data keys outside of AWS KMS. For help using the data keys securely, see the AWS Encryption SDK.

Do KMS licenses expire? ›

KMS activations are valid for 180 days (the activation validity interval). To remain activated, KMS client computers must renew their activation by connecting to the KMS host at least once every 180 days. By default, KMS client computers attempt to renew their activation every seven days.

How do I remove KMS key from Windows? ›

Step by Step Guide:
  1. Identify the activation ID by running this cmd: Slmgr/dlv.
  2. Uninstall the KMS host key first by running CMD: Slmgr/upk < activation ID>
  3. Then, install the default kms key by running the following command: slmgr /ipk <KMS Client Setup Key> ...
  4. Delete the record from the DNS: ...
  5. The KMS server is uninstalled.
Sep 18, 2018

How do I stop KMS fees? ›

You are also charged for the API requests made to the AWS Key Management Service (AWS KMS) out of the Free Tier usage. To see a list of KMS keys on your account, choose Customer managed keys in the AWS KMS console. To stop the charges for the KMS key, delete the KMS key.

What is KMS auto renewal? ›

To remain activated, KMS client computers must renew their activation by connecting to the KMS host at least once every 180 days. By default, KMS client computers attempt to renew their activation every seven days. If KMS activation fails , the client will retry every two hours.

Is activating Windows 10 with CMD legal? ›

Installing Windows without a license is not illegal. However, activating the operating system through other means without an officially purchased product key is illegal.

Is AutoKMS a malware? ›

AutoKMS is Malwarebytes' generic detection name for hacktools that are intended to enable the illegal use of Microsoft products like Windows and Office.

How long does a Key Management Service KMS activation last? ›

According to the Microsoft article: Understanding KMS, in the KMS Activation Renewal section, it states that "KMS activations are valid for 180 days—the activation validity interval. To remain activated, KMS client computers must renew their activation by connecting to the KMS host at least once every 180 days.".

How do I know which KMS server is being used? ›

vbs /dlv” on the server and it should return the name of the KMS Server. Additional options for the slmr. vbs command are located on Microsoft TechNet.

What ports does KMS use? ›

KMS TCP listening port – By default, the KMS host is listening on port 1688 (TCP). You can change the port if needed using this setting.

What is the purpose of the secret key? ›

A private key, also known as a secret key, is a variable in cryptography that is used with an algorithm to encrypt and decrypt data. Secret keys should only be shared with the key's generator or parties authorized to decrypt the data.

How does a secret manager work? ›

Secret Manager works well for storing configuration information such as database passwords, API keys, or TLS certificates needed by an application at runtime. A key management system, such as Cloud KMS, allows you to manage cryptographic keys and to use them to encrypt or decrypt data.

What is secret manager? ›

Secret Manager is a secure and convenient storage system for API keys, passwords, certificates, and other sensitive data. Secret Manager provides a central place and single source of truth to manage, access, and audit secrets across Google Cloud.

Why use a key management service? ›

Why is Key Management Important. Key management forms the basis of all data security. Data is encrypted and decrypted via the use of encryption keys, which means the loss or compromise of any encryption key would invalidate the data security measures put into place.

Can I disable Windows management Service? ›

But as for your question: If it is a regular service you can choose to disable it. Various parts of Windows itself and other programs tend to use WMI. You can do all sorts of things using WMI like watching a folder for changes; list installed software or read current system configuration.

What is MAS in Microsoft? ›

Microsoft Academic Search is a freely available website that helps scholars find the most relevant scholarly information. Microsoft Academic Search (MAS) is designed as a semantic search engine, which means that it aims to find the best matches for the user's meaning or intent, and does not just match keywords.

What is the role of key management? ›

Key management refers to management of cryptographic keys in a cryptosystem. This includes dealing with the generation, exchange, storage, use, crypto-shredding (destruction) and replacement of keys. It includes cryptographic protocol design, key servers, user procedures, and other relevant protocols.

Top Articles
Latest Posts
Article information

Author: Sen. Ignacio Ratke

Last Updated: 17/07/2023

Views: 6356

Rating: 4.6 / 5 (56 voted)

Reviews: 87% of readers found this page helpful

Author information

Name: Sen. Ignacio Ratke

Birthday: 1999-05-27

Address: Apt. 171 8116 Bailey Via, Roberthaven, GA 58289

Phone: +2585395768220

Job: Lead Liaison

Hobby: Lockpicking, LARPing, Lego building, Lapidary, Macrame, Book restoration, Bodybuilding

Introduction: My name is Sen. Ignacio Ratke, I am a adventurous, zealous, outstanding, agreeable, precious, excited, gifted person who loves writing and wants to share my knowledge and understanding with you.