-
Posts
2,809 -
Joined
-
Last visited
Content Type
Forums
News
20th
EduGeek EDIT Conference
Blogs
Everything posted by CHiLL
-
Sorry, that was my mistake when creating the post. I changed the usernames so I wasn't posting the actual real stuff, but wrote two different usernames by mistake. I can confirm that the usernames are actually the same (unfortunately, I can't edit the original post now).
-
200 million Twitter users' email addresses allegedly leaked online
CHiLL replied to elsiegee40's topic in IT News
I got an email from Have I been Pwned/ last night too. My handle isn't unique, but my password is and I already have MFA set up. Definately worth setting up MFA though for those who haven't. -
I'm redoing our APC PCNS config after some issues over the Christmas break and I'm having issues configuring it to work correctly with VSphere. I've created a local account for PCNS on VSphere, specified the password and made it an administrator. I also made sure to propagate the permission to children. I've confirmed that it's propagated, as I can see the user specified in all levels of my VC structure (including individual hosts), as an Administrator and defined by the Global Permission. I've then specified those credentials (confirmed by copying and pasting from notepad) into the PCNS config, which does actually authenticate against VSphere (I can see the successful login in the Event Console). However, a minute or two later I see failed login events for the two hosts. Description: 01/05/2023, 1:55:50 PM Cannot login VSPHERE.LOCAL\PCNS@. Type: Error Date: 01/05/2023, 2:18:53 PM Task: Target: User: VSPHERE.LOCAL\APC Event Type ID: vim.event.BadUsernameSessionEvent Event Type Description: A user attempted to log in with an unknown or invalid username I'm currently quite confused why it can't connect to the individual hosts.
-
A tyre place put this into context for me - the tyre performance ratings you see are a universal/global rating system, which isn't reflective of individual country weather patterns. With different ambient temperatures, air pressures, road surface quality and some other factors...it isn't the be all and end all of choosing a tyre. That said, a tyre with all A ratings is likely to perform better regardless than a tyre with all C ratings for example, though the amount of difference may differ between regions.
-
So I added these registry entries before Christmas on some machines and it seems to have caused more problems, such as no default printer being selected, individual printers being removed, but others staying, all printers being removed and their printer added by GPP not being added. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Print\Providers\Client Side Rendering Print Provider] "InactiveGuidPrinterAge"=dword:00000384 "ActiveGuidPrinterAge"=dword:00000384 "InactiveGuidPrinterTrim"=dword:00000384 "RemovePrintersAtLogoff"=dword:00000001 I've now put in a GPP registry delete entry to remove those registry keys from that group and I'll see if it goes back to normal.
-
We had a prolongued whole-site power outage over the Christmas break, long enough that our UPS ran out of capacity and turned everything off and then lost power. Once power was restored, most devices turned back on as per design...but our two ESXi hosts didn't (both HP Proliant DL360 Gen9 servers). Therefore our VMs (which inludeded our PDC and VC server) weren't able to come online. We accessed our site remotely via one of our VPN connections and was able to access both host ILOs (IMPI). However, the actual OS hadn't booted, which meant we had to access the remote console and use the power on feature to boot ESXi for both hosts (Hamburger Menu > Power > Momentary Press). I've checked the following: Each host's BIOS/RBSU Automatic Power-On: Set Always Power On Each host's default boot order is the RAID array that contains ESXi APC management is set to automatically power on VMs servers (which it couldn't do, as the VC server is a VM on one of the turned off hosts) We had to change the motherboard on both hosts (under extended warranty) back in September and had to redo the config. I'm assuming that has something to do with it, but as far as I can tell, the config is all correct. I don't understand why the OS didn't boot up automatically on both hosts.
-
Installing An SSD Into PS4 - Will This Improve Install Times?
CHiLL replied to FN-GM's topic in General Chat
It's most likely the PS4's CPU being the bottleneck for updates and install times. It's traditional for installs and games to come in a compressed format, which the console needs to unpack and install, which is a massive hit on the CPU. This is due to limiting factors like install media size limits. Though this is likely to change in the near future, as the new generation consoles and PC (with the right hardware) now support direct storage. Direct storage allows uncompressed data to be sent directly to the GPU, bypassing the CPU. While this mainly will improve things like in-game loading, like loading assets, maps, textures etc (think like the lift used as a loading screen in Mass Effect being the old way and it'll be more like the Just-On-Time method that car assembly lines use) and physical media becoming less common as an install method...it's likely that we'll see massive installers for games without the need for decompression. -
If you are a school, you can buy through LGfL, even if you're not a customer of any of their services. For shared device licenses, the minimum amount you can buy in bulk is 25 iirc. I'm it was something weird like it worked out cheaper for us to buy 25 shared licenses than 10 user licenses. You can also use this page to filter down appropriate UK resellers of Adobe: https://adobedealreg.secure.force.com/PartnerSearch?lang=en. At a quick glance, there are some on there I recognise and have used for other services, such as; VeryPC, AMC, Jigaw, Softcat, European Electronique, CBC and Adept.
-
Thanks, I'll give those a try. We still have some issues, but now it's related to printers not adding at first logon only. Subsequent logons on that machine get it. Just to clarify, I presume those DWORDs are hex?
-
While it would if I owned the property, but unfortunately I'm at the mercy of my landlord, who'll likely go for the cheapest option available. He'll probably just move the existing one somewhere else, which I'm not at all fussed about...as long as it can actually be used to reliably control the heating. I'm also not sure how these smart thermostats would work for when it comes to moving out/new tenants, as they'd need access to the app and I'd also still be able to control it from my app.
-
I've had to resort to asking my landlord to move the location of the termostat because it's practically useless. I'm in an upstairs maisonette and the thermostat is located on the wall above the stairs. While it is the coldest part of the house, the heat from upstairs barely gets to it. I've tried micro-adjusting the thermostat, but when it reaches the target low temperature and the boiler kicks in...the upstairs gets far too hot, well before the termostat registers any temperature difference and uses a lot of gas. I've had to resort to going back to the 3 set timed periods on the boiler, which isn't ideal.
-
We're on 21H2 and I'll look at 22H2 within the coming months. There aren't really that many additional features. I mainly like to upgrade to keep us within the window for updates.
-
Edu is built from the Enterprise version of Windows, whereas Pro Edu is built from the consumer Pro version of Windows. Pro lacks some enterprise features that Edu contains. I'd recommend sticking with just Edu.
-
If the system supports dual channel memory, you may actually get a performance boost (though it may not be noticeable). From my experience, while mix and matching RAM can have it's performance differences...the main factor is the speed of the RAM rather than capacity. The motherboard and RAM sticks should automatically run at the speed of the slowest device, so adding a slower stick in will slow down the motherboard and other stick to match the new addition. However, again, it may not be a noticeable difference and you will still gain 2GB extra memory.
-
how to disable url protocol scheme
CHiLL replied to ujala's topic in Internet Related/Filtering/Firewall
Yeah, if each user's subfolder has permissions for "Intake 2021", "Intake 2022", etc...then every user that is a member of those groups will have access to the folders. As @mavhc mentioned, you need to remove the Intake group from each user's home folder. My folder structure is: \\server\studenthome$\\Username Studenthome folder permissions: Owner: Administrators SYSTEM: Full control All Staff: Modify Domain Admins: Modify Administrator: Full Control Administrators: Full Control Everyone: Special (Traverse folder/execute file, List folder/read data, Create folders / append data, Read permissions Inheritance: Disabled Studenthome share permissions: Everyone: Full control Intake 2021 folder permissions: Owner: Adminstrators : Full control SYSTEM: Full control All Staff: Modify Domain Admins: Modify Administrator: Fulll control Administrators: Full control Inheritance: Enabled -
You do have to keep replacing the Edge ADMX templates from time to time, as with Chrome. They will add, move or depreciate features so they need re-doing sometimes.
-
We have the following policy settings in place in: User Configuration > Policies > Administrative Templates > Microsoft Edge > Extensions Name: Allow specific extensions to be installed Setting: Enabled Extension IDs to exempt from the block list: efaidnbmnnnibpcajpcglclefindmkaj;https://clients2.google.com/service/update2/crx Name: Control which extensions are installed silently Setting: Enabled Extension/App IDs and update URLs to be silently installed: pdmhilamamchgnnipghbjakjpbenbcdj;https://clients2.google.com/service/update2/crx Name: Control which extensions cannot be installed Setting: Enabled Extension IDs the user should be prevented from installing (or * for all): * The combination of those settings will block all extensions from installing, except those specified as exemptions (Impero is the extension specified above for us). If it's still not applying, try gpresult to see if the policy is being applied.
-
I can still edit GPOs, including both the Default Domain Controllers Policy and Default Domain Policy. Edit 1: Though I am noticing that when logged onto DC1, loading Group Policy Management and editing the policy, it's pulling the policies from DC2 (our PDC) and not itself. For example, the name of the windows when editing the Default Domain Policy GPO will say "Default Domain Policy DC2.network.local] Policy". I don't know if that's normal behaviour or not, but I'd have thought DC1 would have pulled the policy from itself, since it's also a DC with GP management. Edit 2: I can see that DC1 shows under "1 Domain controller(s) with replication sync", so it looks like it is working correctly.
-
That's strange. I have Server 2022 Datacenter installed on one of our other HP DL360 Gen9 servers. I don't know how it was loaded though, as it was done via a third party at the time.
-
I have demoted and re-promoted the server last night and the same issue still persists. I tried your suggestion and deleted the profile from both DCs, but the problem still exists when the profile was recreated.
-
It might sound stupid, but are you using the front or rear USB ports? I recently had to reinstall VMware ESXi on my HP DL360 Gen9 and couldn't get it to see the ISO from the front USB (it had a couple of symptoms; It could see the drive, but not the ISO, or it could see both the drive and ISO but report the ISO was not valid). It worked when using the rear ports.
-
Sorry if this post is difficult to read/comprehend - I'm struggling with how to word my experiece here. I can't figure out what's going on with our SYSVOL share. I'm getting "Destination Folder Access Denied. You need permission to perform this action." messages when I attempt to create files/folders or modify files. I have checked our default Domain\Administrators group in ADUC and can see that our admin accounts are listed both explicitly and also via the Domain Admins nested group. I've checked permissions and they are as follows: Authenticated Users = Read & execute - This folder, subfolders and files Server Operators (Domain\Server Operators) = Read & execute - This folder, subfolders and files Administrators (Domain\Administrators) = Special (Everything except Full control, Delete subfolders and files and Delete) - This folder, subfolders and files SYSTEM = Full control - This folder, subfolders and files CREATOR OWNER = Special (Everything except Full control, Delete subfolders and files and Delete) - Subfolder and files only Scenario: I log onto my own workstation as a regular user, not a domain admin (though the account used to be a domain admin until I removed those permissions as a security precaution and I test that I can still do what I need). I have a separate individual Domain Admin account for when I need to use certain tools, where I use Run As to specify these credentials. I use Server Manager to log onto our servers, which I use Run As to run it in my domain admin's context and also has specified my domain admin account credentials specified as the logon credentials. On my PC, logged on as my non-domain admin account, browsing to \\fqdn\sysvol just leaves me with read and execute permissions, which is expected. However, if I use Server Manager (running as and logging in as my domain admin account) to log onto either of our DCs, I get the "Destination Folder Access Denied. You need permission to perform this action." message when trying to create/edit files. The same happens if I specify other domain admin accounts. In a strange twist, I can log onto my PC as my domain admin account and use File Explorer to navigate to SYSVOL and create and edit files. BUT...I CANNOT delete files or folders. Even stranger, while logged on as my domain admin account, when I remote to either of our DCs - using the same domain admin credentials I'm logged on either - I get the "Destination Folder Access Denied. You need permission to perform this action." message again, despite being able to access it via my non-DC workstation! The same weirdness is also happening on other domain admin accounts we have, including my manager's. SYSVOL persmissions are not something I'm just going to troubleshoot/change on a whim. Can anyone offer any suggestions as to what's going on?!
-
Unfortunately the utlimate decision may be out of our hands. Though our teacher desks won't have monitors, only the laptop, dock, speakers and projector/interactive TV.
-
I just realised that the thread title doesn't match the content of the post. I think I pressed the "restore auto-saved content" button when creating the thread, which restored the title to a previous thread I had created. I've asked for it to be amended. I am certain that the decision will purely come down to cost savings and we have calculated massive savings by switching to the travelling laptop and no desktop model (students will remain as desktops).
-
We are looking to remove our teacher desktops and become laptop only for teaching staff (they already have laptops too for use at home). Most of the laptops we have don't have USB C/Thunderbolt ports, so we are trying to think of the best way to get them connected to our classroom setups. We are thinking of a device with the following requirements: Inputs: HDMI Outputs: HDMI, VGA & 3.5mm audio Once we start phasing out the existing laptops in a few years, we can then look at proper USB C docks, which would add the benefit of charging, extra USB ports, etc. But until then, we're kind of limited. Most of our projector runs are VGA, but we are considering replacing the runs with HDMI, to eliminate the complexity. Does anyone have any recommendations?
