Jump to content

andydis

Members
  • Posts

    536
  • Joined

Everything posted by andydis

  1. Have you changed any AD settings (if your using dir sync or azure sync )
  2. I agree with @Davit2005 use the same NIC , otherwise you may get other binding/ DNS / services errors
  3. soo many questions , do you have VLANS? do you have managed switches?
  4. Hi it is impossible to set a dhcp scope per NIC. However , you can setup VLAN's on your network and give the ranges different subnet masks. Once you do this DHCP is intelligent enough to know which subnet mask you are making a request from and assign you a range in the correct scope.
  5. if you can , Citrix, IMHO: Citirx pro PVS !!! "golden image / master image" to deploy apps / updates faster (only on xenserver, hyper-v not supported) citrix netscaler (does LOADS!) Citrix Con Cost for licenses (still require RDP CALS) citrix receiver can sometimes have a mind of its own / always needs updating RDS FARM Pro depending on your Microsoft agreement should be quite cheap if not included can Sync/replicate servers for DR to AZURE (hyper-v) built in client to windows (mstsc ) Con will need expensive GPU if doing graphics as remoteFX with no gpu is limited compared to CITRIX HDX with no GPU need to purchase SCVMM for all admin tasks I see your in midlands, give me a PM if you want to see live examples of citrix VS RDS farm (i'm not in sales btw) , Andy From Leicester
  6. Does anybody here have VLANS for their VOIP and have pc's plugged into the phones? switch ---> POE VOIP Phone ----> PC if so does the PC always have to be on the same VLAN as the phone ? or do you configure the port on the switch to be a trunk port and manually assign the phone vlan "voip" (using its config) and PC vlan "data" (using its nic properties) ?
  7. so many uses for cat6 scenario: I want to play my PsXbox in room A but its in room D, answer: plug in a hdmi to cat6 convertor in both rooms and bingo!
  8. OK GOT IT DOH Physical Memory Limits: Windows Server 2008 The following table specifies the limits on physical memory for Windows Server 2008. Limits greater than 4 GB for 32-bit Windows assume that PAE is enabled. Version Limit on X86 Limit on X64 Limit on IA64 Windows Server 2008 Datacenter 64 GB 1 TB Windows Server 2008 Enterprise 64 GB 1 TB Windows Server 2008 HPC Edition 128 GB Windows Server 2008 Standard 4 GB 32 GB Windows Server 2008 for Itanium-Based Systems 2 TB Windows Small Business Server 2008 4 GB 32 GB Windows Web Server 2008 4 GB 32 GB
  9. heres a good one for you all...... 1 server has 2008 (not r2) Here it says i have 64GB RAM Here it says i have 32GB ? any ideas?????????
  10. If you have EES ditch mcafee for Microsoft endpoint imho mcafee is awful
  11. Thanks Steve , upon further investigation (its a right mess) , most remote sites have 2 Fibre ADSL lines in with a draytek attached to each. looks like all the PC's are going via 1 ADSL and the VOIP via another, however i have noticed they have MPOA LLC enabled as attached, does anybody have experience with what this is?
  12. think you hit the nail on the head here.
  13. no they are not highly available
  14. Is it normal for a company with remote sites to have all remote sites with 2 routers ? 1 for VoIP and 1 for data ? Most have fibre but then strangely they have 2 drayteks attached 1 for data and 1 for data . ( I am assuming anyway , I need to do an audit before I check they may be on seperate broadbands ) Surely they should have 1 good router with qos at each site ?
  15. is this a router? / managed router of somekind? if yes , IMO this is preventing your 10 speaking to your 192 as you have said i guess you mean , then goes off to the countys (LA) network...
  16. sorry can you tracert from a CLIENT on 10 to client on 192 aswell ? whats the default gateway ip on the 10 clients? whats the subnet mask of the 10 clients? on a 10 client open a cmd prompt and type " route print" press enter and paste results here
  17. can you tracert from 192.168.0.x to the 10 ? Are the servers running routing and remote access?
  18. recieved the below today from Smoothwall, Am i reading it correctly or are they removing the "Web proxy" from their products? July 2015 The Carisbrooke update brings enhancements to our multi-tenant functionality for Managed Service providers, Authentication Negotiation, a Non-SSL Login Page and an upcoming Real-Time Search Query Viewer. Deprecation of Web Proxy Module As of the Carisbrooke release roll-out in late July, the Web Proxy module will no longer be available in our products. The same functionality — namely a caching proxy — is included in, and has been replaced by, the Guardian module. The Carisbrooke release will not be visible to customers with the Web Proxy module installed. There are two courses of action available to customers currently using the module: • If a proxy and caching are not required features, simply uninstall the module on the Modules page • If these features are required, install Guardian from the Modules page. This installation will remove the deprecated Web Proxy module Multi-Tenancy | Managed Services A multi-tenant solution for Service Providers, large School Districts and networks where fully devolved management is required across a large customer base. This update to Smoothwall for Managed Service Providers gives tenants/managed service customers the ability to edit their own web filter category groups specific to their location's requirements, as well as allowing them to view the policies applied to them by the Central Administrator. This will allow those tenants, for example, to edit custom 'Allow' and 'Block' category groups for their own site. Changes made on tenants' systems will also be fully visible to the Central Administrator through an audit trail. If you'd like to know if your organisation needs Smoothwall for Managed Service Providers, please contact your Smoothwall representative. Authentication Negotiation | SWG & UTM While many of our web filter customers are now using Kerberos authentication, some clients and client applications require the use of NTLM instead. Where it is necessary to use both Kerberos and NTLM authentication for the same set of clients, our new 'Authentication Negotiation' method automatically identifies which protocol is best to authenticate, meaning one policy will suit all Kerberos or NTLM clients. To use the feature, simply select "Negotiate Kerberos/NTLM" where you would usually select either of the two. Selecting "Negotiate Kerberos/NTLM" as standard, rather than Kerberos or NTLM, should have no detrimental effects. Non-SSL Login Page | SWG & UTM In response to customer demand, we have implemented a HTTP (rather than HTTPS) login page. The option should remove alerts warning end users about security certificates —and removes the need to roll out a certificate— but it should be noted that this will also transmit unencrypted login information. You can find the option in Web Proxy > Authentication > Manage Policies. Categorisation Updates A web filter is only as strong as the accuracy of its categories. Our in-house Categorisation team work constantly to ensure that our filtering engine remains finely tuned, and our proprietary lists are the most accurate available. We add new categories regularly, in order to help our customers create the perfect policies for their environment. Here are our newest categories: Category Description Body piercing and Tattoos Sites which promote, sell, advertise or discuss any body modification such as piercing and tattoos. Business and Corporate Sites for businesses and commercial organisations, where the organisation provides paid for goods or services. Charity and Non-profit Charitable bodies and not for profit organisations Museums and Art galleries Sites that promote, exhibit, and/or display works of art or objects of historical and cultural significance. Remote Access Sites offering Remote Desktop and Remote Administration software tools. Sex Education Educational sites relating to human sexual activity including reproduction, contraception and safe sex. Toys and Games Sites discussing/selling childrens toys or board games. Travel and Transport Services Information or bookings related to transportation such as trains, taxis, or airlines. Includes hauliers. Vehicles & Motoring Sites which advertise, promote, discuss and offer information on vehicles and automobiles. New Content Modifications The Categorisation team also create Content Modifications, which add new functionality to Smoothwall. This update sees two additions: Enhanced Comment Removal and Sensitive Issue Removal for Twitter. You can find both of these in your Smoothwall UI under Guardian > Content Modifications Enhanced Comment Removal expands on our functionality to remove comments from YouTube, in order to prevent exposure to unwanted, potentially offensive user comments. Now you are able to remove comments from any site that uses Disqus or Facebook to authenticate comments, including blog networks such as Gawker. Sensitive Image Removal for Twitter does exactly what it says. Any images flagged as being potentially offensive/adult content will not be loaded into the desktop browser at all, rather than being hidden behind an opt-in gateway. Coming Soon: Real-Time Search Viewer SWG & UTM In August, we will be rolling out additional functionality to Carisbrooke users. In response to the needs of Education customers, we will be offering the ability to view the keywords searched for by your users in real time, allowing faster intervention for problematic behaviour. The viewer shows all search terms being requested, the user and search engine involved, and an indication about whether the search was allowed or blocked. The viewer can also be customised to show queries for a particular user or search engine, and distributable reports can be exported. We will also allow the creation of a 'Requires Attention' category. This will highlight search terms which are not specifically blocked, but could require attention based on specific context. What else is included in this update? Security updates, patches, and more... 6993 Guardian now uses considerably less memory when applying changes to policies 8312 Guardian no longer logs doomed client attempts to access the localhost address 8339 Guardian now validates the shortest possible certificate chain which is faster and more reliable A reminder about the importance of HTTPS inspection Last month, Bing, Wikipedia and Reddit all followed Google's lead and made their traffic HTTPS only. This means that if you do not have HTTPS inspection enabled, inappropriate content could reach your users from these sources. More and more web traffic will switch to HTTPS in the near future, and we strongly recommend that our customers enable full HTTPS filtering in order for their web access to remain safe. Get in touch Not
  19. Is the certificate still valid ?
  20. Same here, if i put every piece of software that bolts into sims on the sims server I think it would go fizz bang lol
  21. do a WHOIS on the domain , they will tell you who is hosting it , contact them for help. you may have to 1) provide an official letter to gain access 2) setup and admin@ or webmaster@ email address for the domain you can access (for them to send out confirmation) 3) in extreme circumstances you can contact nominet to help
  22. Does anybody use an external cloud filtering service for 365? I have just taken on a setup where the MX record first goes to GFI MAilmax / GFI cloud server then gets forwarded to 365, This seems counter productive to me as surely 365 cannot check the MX/SPF record if its coming from another source. Surely the built in 365 antispam is fine ( is for my other sites) thoughts?
  23. just took over a site that has been manually adding users to Office 365 (who knows why) question is , if i implement DIRSYNC or AAD Sync , is there a way to migrate the manual created mailboxes to the autocreated one with DIRsync? or do i have to pst them all out , delete them , then DIRSYNC.
×
×
  • Create New...