dapaulio
Members-
Posts
1,459 -
Joined
-
Last visited
Content Type
Forums
News
20th
EduGeek EDIT Conference
Blogs
Everything posted by dapaulio
-
Papercut Hive - The horror story you've been waiting for?
dapaulio replied to TSheward_MM's topic in Cloud Services
Week 2 after go live So I come back to this with good and bad news. The bad news is we changed our minds last minute not to proceed with hive. Just from the help of this community in understanding the workings led us to the decision that this would severely impact on the school and that the timing was not right. The good news is I implemented mf on prem and it went a dream. The staff love it and thru preliminary talks with the trust and slt they are all happy. Our strategy would be to revisit hive once we have implemented one to one devices which is further down the line and hive becomes more established -
Yeah again I agree. Suited for the needs of a business say maybe once setup doesn’t need to be touched for its lifetime. I find the same with fortinet who I had in another school and they will be moving away asap also. schools that require vlan changes every week because they change a cupboard in to a classroom oor due to office moves are not suited to these vendors. When things went wrong they would take ages to resolve. Unlike extreme fortinet at least leased (robbed) you of a spare switch which they charged you support on whilst it sat on your shelf. But at least when things went wrong you were back up and running in the hour Extreme you raise the call get the response in the middle of the night to reply to the basic troubleshooting questions to have to wait another 24 hours to answer more basic questions then 24-48 hours to deliver after they completed their troubleshooting task that you already done on the switch 4 days ago My advice is stick with what you know and easy to support and readily available on next day
-
Couldn’t agree more with this comment. Had one of my schools full 10g extreme switching on a leasing agreement. seemed solid but no one knew nor cared to learn the cli once the leasing agreement expired. There were lots of reason why we wouldn’t even touch extreme. Extreme I seem to recall one of the issues was when we had a problem the time difference caused a problem. However they were practically on lifetime warranty so all the times the switch did pop in the stack they had to replace the whole stack as we argued none of us could reconfigure the stack and the issue was their problem. Soon as we could we got the school on to Aruba.
-
Ooo hadn’t considered this thanks
-
Yeah we found this also from our customers renewal this year a1 licensed users take the default 100gb limit whilst a3 and a5 is 1tb increasing to 5tb. So a1 free licence has 100tb pooled limit therefore 1500 user school will be 80gb /user which is significant but not beyond the realms with some kids who take photography maybe hitting that average limit A3 is 100TB + (50gb x # paid a3 licences) A5 is 100TB + (100gb x # paid A5 licenses) Student use in benefit DO NOT add to the pooled limit but will still use the pooled storage. Based on my understanding So my schools have on average to have 100 a3 license and 20 a5 licenses therefore 100000 + (50x100)+ (100x20) 100000 + 5000 + 2000 = 107000gb or 107tb of storage Therefore my 1500 users have an average limit of 71gb each https://www.microsoft.com/en-us/education/products/microsoft-365-storage-options#:~:text=With%20pooled%20storage%2C%20an%20institutions,tenant's%20100TB%20of%20pooled%20storage. On one site we were close to our pooled limit so thought of ways we could recover some storage and found a lot in OneDrive downloads. Maybe worth redirecting downloads to local pc profile rather than OneDrive The second was people deleted items within their mailbox. Found that there wasn’t a retention tag on deleted items. Between these two it released a significant amount of space where most user were below the average limit The third was the photography student had 1000’s of high res raw images and it those who we found exceed the average limit. Subscriptions still using A1 will be a problem I guess but I can’t see this being a problem really as they all moving to a3 and a5 licenses. We will see
-
NetSupport School issue with Show Menu
dapaulio replied to vandos's topic in Network and Classroom Management
Based on your workaround Some things to try on my experience. not seen this before with netsupport however Funny enough I have experienced odd issues of late with some other software vendors have trouble when the resolution of the pc exceeds 1920x 1080 -
Will do thanks for the advice
-
Papercut Hive - The horror story you've been waiting for?
dapaulio replied to TSheward_MM's topic in Cloud Services
I have to admit i am pretty nervous moving to hive in one of my schools. In this school there was no print management solution at all so made sense as we were starting from scratch plus wanted to see how it played in a secondary environment with a strategy in mind. Iv have been with papercut in all my schools for 15+ years I would not voluntarily move away from papercut. However having used mf for years I have a certain level of anxiety moving one of my schools in to hive especially as I understood it’s not as feature friendly around shared accounts. I am hoping that the reduction in features does not have too much of a huge impact. Installation is due at the end of the month so I’ll review hive when schools are back in after ht -
Thanks, so I check this and I have both of these What is the recommended knock refresh for a school. Currently set to 600 seconds
-
Thanks netsupport for these videos. Deployed with no hassle what so ever.
-
So case study. We have deployed windows 11 via intune to laptops and desktops. The site also has a suite of managed Chromebooks that has the cloud filter extension. There is an onprem smoothwall and cloud filter. Azure authentication and google authentication with secret knock configured What is the best practice. Should devices on prem be filtered by the on prem smoothwall or should they be cloud filter? We are finding that they are being filtered by both it seems. Witnessed an on prem block page followed shortly by cloud filter block. Some users claim to that students are accessing sites that should be filtered on our Chromebooks. I have had to recall all Chromebooks to check and test the they all registered upto date and the extension is present and working Is this right as I read double filtering can cause confusion result in potential mis blocks or non blocks of sites. All testing I have carried out have resulted in some kind of block as expected but curious to know how a student managed to access something he shouldn’t have. Is there a misconfiguration of our secret knock or are these the unavoidable issues with cloud filter Thanks
-
Iv told them it still happens when doing it on my home network without a firewall in place and still have the issues. I have used grc to generate me a password which I am told is a common password. I like to see them argue that with GRC. When I fed that back in to the ticket it was an escalation to the developers. I haven’t heard anything back since I originally posted this. Some development though whilst I waited users need to ask to reset the mfa registration and re invite. This fixed 2 out of the four people who were my Guinea pigs. May be worth you lot trying that see if you get the same positive results
-
Personally I feel this is a user specific issue and each issue needs to be addressed on an individual basis but the problems Pearson have had has exasperated the problem and with an admin console that does nothing to help user management I cant see what else to do other than point the user to contact Pearson.
-
Following with interest I am receiving reports of this with our Chromebooks in one of our schools
-
I am currently in the process of setting this up for a school so following with interest
-
Had several reports of issues logging in to iampearson since they enforced more complex passwords and mfa. The user account credentials immediate error and repeated tries results in lockout. Following the password reset portal is flawed as no matter what password I try it thinks the password is common and doesn’t proceed any further. Pearson claim that this is firewall issue and have given me endpoints to whitelisted however all these attempts have been on my home network with no firewall in place. They have escalated the issue but has been going on for a number of weeks without resolve. Anyone have any experiences or words of wisdom? Thanks
-
I agree. Anyone promises to get you out of a contract is deluded and just trapping you in another contract. A contract is a legal binding document where it takes to legal entities to find and exploit or defend a legal loophole in their contract. If you want a clean exit just negotiate with the vendor for a clean exit. Use all evidence that you have collated over the years where they have breached sla which may sound easy in theory but is difficult to prove and hope that any early exit they honour is a good thing. Threats will only dig their heals in more and when you return the equipment they will be dead critical on every scuff and damage that could incur additional charges.
-
So the build will start from its static ou. Then in our structure we have a student and teacher ou with laptops and desktops in each. And the naming convention will associate itself with the type of device. the last task in the sequence queries the name you preassigned to it before the build and move the computer account to its designated ou from a build ou that has inheritance block and the important gps like default domain policy, security and laps config. If the build completes successfully it applies all group policies including branding etc. if it fails branding itsnt applied and indicates to us there is a problem for us to investigate.
-
Is this the reindex patch by any chance? If so keep running it. If you havent ran it for ages (or never ran it) it can fail multiple times before it completes successfully. What you can do to help it complete 1- In solus extend the update timeout to minimum 60 mins. 2- Free up as much space as you can by removing old backups. (This is because a backup will be done every time you retry and will fill the hdd fast. 3- Restart the deployment service. 4- Then continually rerun the patch until it completes. It will likely complete I run all housekeeping patches after every major update which keeps on top of it.
-
Have you checked The patch is actually relevant to the database version you are on? For example workstation patches are normally relevant to a certain major release.
-
5mins sounds like backup failure. Patches will perform a sql database backup. Check that you have sufficient space on sql backup location. I can’t remember the exact threshold but I suggest having 2x database size of available space on the drive where the sql backup are located.
-
Papercut Budget Box - Not Appearing for Office Online
dapaulio replied to CHiLL's topic in Enterprise Software
Makes sense as I understand you mean. Print dialogue box where you can select a shared account or personal account. What happens if you set the dialogue box not to show for example by defaulting charging a personal account or automatic charge a shared account. Does it print? Can you run the client from a network share same as the printer server. Does that work? Try changing the fail setting if the client can’t contact the server to still print. This to me sounds like a comms between client and server. Another thought is dns in the pc config file for the client use an ip address rather than hostname. I’m trying to also remember if it uses a specific port. Check windows firewall on server and client that these ports are open Can explain why this is only happening on web app and not anything else sorry -
There been a lot of issues this time round with eligibility keys for some reason. Our customers claim they have paid and renewed but a number of them still received the warning. No one know who the eligibility key was sent to but the obvious people deny they ever received it. Not sure whether this is an ess problem or someone at the schools we manage not doing something. All resolved by asking them to speak to sims contracts. Email addy already advertised above
-
I understand you want your user to be able disconnect and reconnect two different drives mapped to O on the fly Is there a reason it has to be the same letter? Nowadays scripting is becoming more and more locked down in enterprise environments so depending on your site security scripting may not be the option. The alternative would be show them how to map the drive via explorer gui Simplest method of scripting is a batch script as mentioned above. You can adapt it so that it asks the user which profile you want it to do. Set /p choice=which drive would you like to install? If ‘%choice%’==‘1’ goto :choice1 If ‘%choice%’==‘2’ goto :choice2 :Choice1 Net use o /delete Net use O: \\server\share Goto end :choice2 Net use o /delete Net use O: \\server\share Goto end :End You can add other validation and error management in to it all also if you can be bothered
- 6 replies
-
- drive letter
- drive mapping
-
(and 2 more)
Tagged with:
-
Everybody keeps selecting 'Reply all' when replying
dapaulio replied to Renfield-123's topic in Office Software
Ok more complicated than I anticipated and only was a viable option due to not having a the distribution group in the first place. I can understand why which I will mention further down. But he setup an all staff journal user that staff emailed then there was a mail flow rule that when bcc real distribution group when it met the criteria. He said it wasn’t straight forward as he originally anticipated and commented adding lots of security around it eg only internal could email the accounts and adding an anti spam rule to the account. He can’t remember but commented he got the idea from ms site which I think was this https://learn.microsoft.com/en-us/answers/questions/228446/setup-transport-rule-to-distribution-group Coming back to having a new distribution group. As it’s a new account effectively acting as a distribution group anyone who had previously email all staff would get a caching issue and therefor a DRN. Simply removing from the user cache fixed this but that became a tenuous process. So it was easier to create new allstaff alias completely different and retrained staff to email the new alias I hope this helps some and he said it was a long time ago and he hope it still works but would never do it again. He joked if he knew what he knew now and how long he spent making an it solution for a non ict problem he would have told them to jog on and stop being so stupid [emoji23]
