brougham
Members-
Posts
156 -
Joined
-
Last visited
Reputation
788 ExcellentAbout brougham

Personal Information
-
Location
Brighton
Recent Profile Visitors
The recent visitors block is disabled and is not being shown to other users.
-
Reading Eggs App + Smoothwall = MASSIVE HEADACHE
brougham replied to Mr_J's topic in Internet Related/Filtering/Firewall
You really don't have to disable HTTPS inspection for everything on the iPads. Take that list, clean it up and bung it in a custom category. Go to 'Guardian » HTTPS inspection » Manage policies' find a policy that has the action of 'Do not inspect' above the inspection rule for your iPads, -
Cool, they have a shorter hostname now. This is also know as http://www.gstatic.com/generate_204 Microsoft do the same on http://www.msftncsi.com/ncsi.txt https://www.techrepublic.com/blog/data-center/what-do-microsoft-and-ncsi-have-in-common/ This is how their devices work out if they are behind a captive portal or not. The google device will receive an HTTP 204 code if there isn't a captive portal or a 200 if there is. Microsoft will get a 200 code either way but if the string doesn't contain 'Microsoft NCSI' as the only string, they know they are captive. Doesn't fix your problem but hopefully expands on what you are seeing.
- 1 reply
-
- 1
-
-
You've never run into Joe's twin siblings Joshua and Jessica Bloggs? I have for two sets of twins in different schools. Maybe it's a thing down here
-
We have and not noticed any issues. Bitlocker is at the time of write but dedupe (on Server 2012R2 at least) lags behind. It runs a task when the server isn't busy to dedupe. Described here- https://redmondmag.com/articles/2014/03/13/data-deduplication-in-windows-server.aspx Setup and a few settings to consider here- https://blogs.technet.microsoft.com/canitpro/2013/04/29/step-by-step-enabling-data-deduplication-on-windows-server-2012-volumes/
-
Do at least talk to meru. Their buy-back prices for replacing with new meru kit is really high. The cost differential between new meru and new other meant we stayed with meru..
- 62 replies
-
- 1
-
-
- recommendation
- system
-
(and 1 more)
Tagged with:
-
Help translating/converting IP.
brougham replied to madasaboxoffrogs's topic in How do you do....it?
I've not seen Google Drive logs before but I would hope that it would record an event such as 'User somebody logged in from 2a34:c7f:142f:ad99:1234:eef:9b6b:67ca'. Some devices use privacy extensions so it changes the end part on a regular basis. You may need to look for matches for the first 64bits of the address. -
Help translating/converting IP.
brougham replied to madasaboxoffrogs's topic in How do you do....it?
How about looking up who owns it- https://www.ultratools.com/tools/ipv6Info as you've changed it -
Nope, not if have any other choice. A /64 really should be the minimum allocation for a subnet. You loose lots of functionality if you go less than a /64, which would compromises the learning experience so much as you don't get to play with lots of stuff.
-
Up until the last three months I did it the same way as you but after reading Active Directory Insights (Part 1): Configuring DNS on domain controllers :: Windows Server 2012 :: Articles & Tutorials :: WindowsNetworking.com and Best Practices for DNS Configuration in an Active Directory Domain | Dell Ireland They now suggest- DC1: Pref : DC2 Alt : DC1 DC2: Pref : DC1 Alt : DC2 If you have multiple sites (DC1 and DC2 together and DC3 remote) then they say- DC1: pref- DC2, alt1- DC3, alt2- DC1 DC2: pref- DC1, alt1- DC3, alt2- DC2 DC3: pref- DC1, alt1- DC2, alt2- DC3
-
How slow is your Smoothwall? UTM or own hardware?
brougham replied to lmgtfy's topic in Internet Related/Filtering/Firewall
We had this on one site. Turned out to be a bad (everything, everywhere for everyone) choice of HTTPS inspect rule. Once I was a bit more sensible (by selecting the groups in who rather than everyone things got much better. -
From a personal point of view- I don't like NAT let alone double NAT (IPv6 all the way). I suspect there are benefits to being on the LA range of IP addresses. Then again I wouldn't want to be exposed to a WAN where I didn't have some element of control. I would have a bridging firewall- funnily enough that's what I run at home, based on OpenBSD.
-
You have to run X:\support\adprep\adprep32.exe /forestprep and /domainprep (and more) on the 2003 boxes from the 2008R2 DVD to bring the schema up to the 2008 R2 level. Then no problems.
-
Anyone else see the new Student-only CALs? Found them on the new price list from our supplier. They are under 50p compared to nearly a fiver for the existing type. Brougham
