Jump to content

mikkydoos

Members
  • Posts

    2,616
  • Joined

  • Last visited

Everything posted by mikkydoos

  1. For anyone who experiences this.... Found that when the user requested access to a document it showed as another user ?!? Use this path to get to the Sharepoint permissions and delete any unneeded permissions. I deleted the associated user and bingo. Ref: https://learn.microsoft.com/en-us/answers/questions/5313367/onedrive-sharing-file-shows-old-username?forum=msoffice-all&referrer=answers
  2. I haven't yet tested whether softphones connect or not. I need to do that in downtime.... er time. CGNAT... no idea. Its Wave9. They will have this setup in many many schools with Smoothwall. I do have a media converter they have loaned to me... this will remove the ISP router completely. If I still get the same issue then the finger gets pointed squarely at Smoothwall.
  3. Hi all, I'm reaching out to see if anyone has had an issue I have that is driving me literally insane.... I changed our ISP to a managed connection over the summer. They installed a managed router that performs the leased line and backup line failover. This is connected to a Smoothwall appliance doing filtering and firewall - Port 1 - I configured the external port, configured the LLB pool and clients connected. So far so good until the next day our Yealink phone handsets went offline and wouldn't come back up (T465 model mostly). I switched over to the old connection and the phones immediately connected. Reconnected the new connection again, next day... no service. They connect to Xelion cloud hosted SIP. Been running for a year without fail. Took one of the handsets to another site, the phone connected, took it back to the original site and it connected... until the next day when it lost connection again. Our SIP provider has told me that the handsets need to register to Xelion every 24 hours. This occurs at 1:00am. I assumed this was firewall and the handsets couldn't get out or packets back into register. The only firewall log entry I found, querying a phone handset IP address, was rejected packets from 18.169.38.9 - This is apps.xelion.com - however this was fine with the old ISP, so unlikely. Smoothwall suggested that the ISP router was performing NAT, as well as Smoothwall's NAT, thereby double NAT'ing .. e.g. packets didn't have Smoothwall's originating IP because it was NATed by the ISP, therefore was rejecting the packets... OK, I get that. Smoothwall insisted that double NATing is bad (which it is) and recommended the ISP remove the NATing. The ISP configured a different router port, disabled NAT and said to configure Smoothwall to take the backup connection direct to perform the failover. This lost the ISP's visibility to the backup line and I no longer have a fully managed service. ISP = port 2, backup line port 3 on Smoothwall. Next day... no phones. The ISP turned off SIP ALG, so did Smoothwall and the phones connected and stayed connected. Smoothwall configured ports for the main connection and the backup line and the failover is performed by an LLB rule. E.g. The leased line is connected from a non NATed port at the ISP end, then into Smoothwall port 2. Back up line is direct into Smoothwall port 3. Next day.. no phones. I reconnected the NATed connection on Smoothwall port 1.. phones connected. This got the phones back. However, this is where things are weird and neither party can find a solution. I'm in a situation where I have to have two external connections, one is NAT'd, one isn't. Smoothwall tell me that only SIP traffic, specifically port 5060 traffic is going in and out on port 1. All other traffic is going out via the LLB adapter. They're saying they can only do a proper analysis when the phones are in a failed state... NOT happening in term time. After hours and hours and hours talking to Smoothwall 3rd line and the ISP, I still don't have a solution. There's no firewalling blocking traffic, all required ports and protocols are configured. No double NAT'ing, no SIP helpers, I'm convinced that this is Smoothwall hence the SIP traffic only routing through port 1... according to them it is. I've changed ISPs in Smoothwall set ups many many times, but never had a problem like this. Has anyone had anything like this that could shed some light on this. Cheers in advance 🤔🤔🤔
  4. Hi all, I'm looking for a bit of help here..... We have Multi Tenant Organisation (MTO) set up between two tenants. This works great except for one external user. Access is denied on Sharepoint Online, OneDrive file shares, Sharepoint file shares etc The user receives All other sync'd users can access this resource. The user shows up correctly as an external sync'd user in our tenant. The user is NOT set up as an external user in Azure... and none of the other external users. Has anyone seen this in their tenant and any ideas on a solution ? Bit stuck ! Cheers in advance
  5. Thanks @Chris_Cook I've been away otherwise I would have replied sooner.... not ignoring you Any chance of having a look at the script ? "I'd be careful fixing systems like this, or you might become responsible for doing the task as well."... Too flippin' right ! 🤨🤨🤨
  6. Hi all, Hope I can get some advice on this one.... School currently has a hugely shonky and time-wasting method of taking photos and printing to ID cards. E.g. Manually renaming .jpg file to an admission number, manually cropping pics etc etc etc I'm advising they change their methods... silly me 🤬 I think I'm looking for some camera tethering software that will: 1. Allow importing a spreadsheet of names and admission numbers from our MIS. 2. Rename the files from the camera to the admission number/UPN of the student. 3. Allow exporting the updated spreadsheet to import into CardPresso (Primacy Card printer software) - Or bypass Cardpresso altogether and print direct from said software to the card printer. 4. Batch print a year group / form group at a time. Looking at Canon EOS utility (free) but I don't think that will do the job. Also they haven't even got an SLR camera to take the pics (using some cr@ppy handheld digital).. so one of those is needed. Basically admin are wasting days/weeks doing this so a slicker solution is needed. Any advice hugely appreciated 👍👍👍 Cheers in advance
  7. Funnily, its pretty good with IOS... We're struggling with onboarding machines whilst testing Autopilot. E.g. Wipe command takes hours to filter down to the client. As do software installs, policies etc
  8. Hi all, We're testing migrating from a AD/M365 hybrid scenario to Intune only manged devices. IT IS PAINFUL!!!! IT IS SLOW!!! IT IS COMPLICATED!!! Ahem.... Starting to look at RMM solutions that do the job better. ==> Windows clients.... software deployment is a must, patch management, reporting, monitoring, remote desktop?, security policies etc etc. ==> IOS looking for similar features to Mosyle, JamF IOS I can get away with Intune but Windows.... OMG its slow. Is anyone using a 3rd party cloud RMM tool to manage Windows? What is it and how do you find it ?? Does it replace Intune. How much does it cost? Cheers in advance
  9. Exactly what I've just done... and its created the provisioning profile now which I can edit, edit attributes etc. Loads of thanks @BoredGuy. Got it syncing now 👍👍👍
  10. @BoredGuy I'm trying to set up MTO currently and am hitting a wall syncing the users. I can't save provisioning settings in Azure (Cross tenant synchronisation / Configurations). Save button is greyed out ?? Could this a license issue - We're on M365 A3. Cross tenant requires P1 or P2 in the docs. Any idea ? Cheers 👍👍👍
  11. Thanks @Boredguy How does that work out for you regarding file sharing, Sharepoint & Teams access. Is it pretty seamless for users? I'm considering MTO as the 2nd and 3rd school are primary's and I would prefer the user separation particularly between the kids.. also security is big consideration.
  12. Hi all, Small academy trust here, 2 sites, both M365... with a third on the way. We're been looking at brining our smaller school into our tenant and are weighing up the pros and cons of one big tenant for all schools, or a MTO model with sync set up across the tenants. A big issue presently is having to perform configuration changes twice, Intune policies for example. We're maintaining two tenants of user groups, two backup processes, duplicate Sharepoint sites etc etc etc. . . This will be a bigger pain when we are three schools. However I do not relish having to migrate data and mailboxes etc from one tenant to the other. What are your experiences of MTO? Would you do it, have you done it and what are the pro's and cons to just having one big tenant ? Would like to hear your experiences on this 👍 Cheers in advance
  13. Hi all, Looking for a new ID card printer for a large secondary school. Ideally we want speed, cartridge load, ability to print from multiple machines, decent bundled software.... or does anyone have recommendations of decent 3rd party software. Don't need encoding as cards are purchased pre-encoded. Any recommendations guys ??? Cheers in advance
  14. Few days = a week. I think the users cache is the issue.
  15. Hey all, I've been doing a lot of cleaning up of expired group/user objects in Azure and Exchange. I'm trying to find a way to remove GAL entries for old distribution lists and security groups I've removed. After a few days they're still appearing in the address fields in Outlook web and sharing from Sharepoint/Onedrive. This is making it a bit confusing for users as there are multiple similarly named groups they can choose from when e.g. composing an email. Also turning on 'Hide from the global address list' for groups/lists I've kept that I don't want displayed are still showing up, although users aren't displayed when hitting + to show the objects within the group. Does anyone know of a way how to clean this up globally for all users ?? Cheers in advance
  16. AAAAARRRGGHHHH!!!!!!!! Some pudding approved a feature update in WSUS 🥵 'orry... can't delete the post !
  17. Hi all, We're in the middle of preparation to deploy configuration via Intune. This is currently a 100% hybrid environment. We're trying to do some Windows 10 --> 11 feature upgrades with some success... a full Win 11 upgrade to be accomplished over Easter hopefully pushed out from Intune. We're currently testing deploying to device groups using Intune update rings. However, unbeknownst to us, we've been made aware that a good number of our Win 10 machines have actually upgraded to 11 recently. We still have a WSUS server that is distributing updates on-site, that is not pushing out the feature update. This is what we're seeing on the clients.... Some of the update policies are defined by MDM which I don't understand because we haven't configured this for any machine unless in the update ring group. If a device is NOT in the update ring, it still seems to be picking up the updates defined for that ring. The windows version being pushed out is 23H2.. the same version we have approved in our feature update policy. What is the default update behaviour in Intune/Azure?.. and why is the client ignoring the group policy, which should take precedence. Also, we haven't deployed any Intune group policies to any users/devices yet either. Any ideas? Cheers in advance
  18. Ow. Thought it was too good to be true. Fine if you do it a few times a year
  19. Aahhh. Its the phishing simulator I was interested in. How much ?
  20. Is it actually free ??? Who are they ?
  21. Hi all, Got an email circular from a bunch called secureschools.com. Had a quick look and there's a few assessment tools that look good and few other handy tools that look helpful on the surface. Anyone used this ?... or is is it a try before you attempt to rip me off and stop wasting my flippin' time job ? Cheers in advance
  22. Yes. Zen are excellent.
  23. Hi all, Shopping around for a new ISP reseller. Our current Virgin resellers are abominable and they have to go.... I inherited them a couple of years ago... they should be exterminated... no names I've used Zen, Virgin and almost went with Wave9 in the past. Are Wave9 as good as before? Line will be minimum 1Gps FTTP leased line with backup. I need prompt customer service prompt tech support.... I can't even get a response from our current lot. Who's good that you use presently??? Cheers in advance
×
×
  • Create New...