pantscat
Members-
Posts
1,480 -
Joined
-
Last visited
Content Type
Forums
News
20th
EduGeek EDIT Conference
Blogs
Everything posted by pantscat
-
Exchange Server being SPAM'd non stop! GGRRR
pantscat replied to mdrabble's topic in Enterprise Software
Are you using any IP block list providers in Exchange? That should take care of it... -
Get them whatever they want! I'd recommend either a Macbook (the Air does fall nicely into budget) or perhaps something like a Lenovo X1 Carbon.
-
Internal Email Filtering
pantscat replied to madurham's topic in Internet Related/Filtering/Firewall
There are lots of products that would do this - Sophos PureMessage is one that immediately springs to mind and should be fairly cost effective! -
What authentication mechanism does the proxy use? Is it cloud-based?
-
Can you ping your proxy from the macs?
-
How are you configuring the proxy settings? From memory I think the choices were: - Auto proxy config - Auto proxy discovery - HTTP proxy - HTTPS proxy - FTP proxy - SOCKS proxy and there may have been some others, too!
-
What web-filtering do you use? Can you do a report on the source IP?
-
Yep - that's an IE security setting. To get around it: a. Open internet explorer. b. Click Tools – Internet Options. c. Click the Security tab – Custom Level button. d. Under ActiveX ensure the following are set to enabled o Run ActiveX and plug-ins – Enabled o Download Signed ActiveX Control – Enabled o Script ActiveX controls marked as safe for scripting – Enabled e. Set the following to “Prompt” o Download unsigned ActiveX Control – Prompt o Initialize and script ActiveX controls not mark as safe – Prompt NOTE - This does introduce an element of risk though... as any unsigned controls could be activated by users.
-
It should try and run an ActiveX control in IE... maybe add the site as a Trusted Site... presuming that you trust it!
-
Ah... what error do you get?
-
Isn't that a Chrome "feature" now? Not supporting NPAPI plugins like Java? It'll probably work in IE... :-)
-
Sure - so you can use ACLs to tell your network what type of traffic is allowed to go where. So, for example, you could: - Block all traffic apart from ports 80 and 443 from your BYOD devices - Block any traffic from the BYOD VLAN from hitting anything other than their default gateway (so that they'll have no access to anything else internally) (note that you'll probably want exceptions for internal DHCP and DNS) That sort of thing. I think I read that you've got an HP procurve network, so setting up ACLs and VLANs is fairly straight-forward once you get your head around it.
-
I'd go back to the consultants that set it up - clearly it's not working as intended. However, I'm not quite sure if you can get Macs to authenticate using 802.1x in this way... I've certainly never managed to get it to work!
-
Running msconfig can be useful to see what's running at startup and disabling the rubbish that's not required.
-
PM me and I'll email you a copy if you'd like?
-
There's not a huge amount of resources about doing this on the Apple website, but this might help: http://training.apple.com/pdf/wp_integrating_active_directory_mav.pdf
-
To be frank, that's not great advice. If you "lose" a DC you'll need to remove all references for it from AD otherwise you'll have orphaned records in DNS and AD - this will lead to all sorts of issues. The best thing is, assuming you've still got another DC running, do a non-authorative restore of the DC you want to restore, this will then read all of the config from the live DC and update itself. If you wanted to restore AD to a historical point in time, then you'd perform an authorative restore. Veeam is a great option it will always do a non-authorative restore by default.
-
That's sound advice right there! Saving money now means that life is easier when it's time to buy a house - there are always unexpected things that cost money that you just don't think of until you've experienced the true joy of house ownership... collapsed drains, leaky roof, exploding boiler, etc. To get back on topic... IT is work for me, I'm just not into the latest and greatest phones, the last console I bought was a PS2 and although I've got an iPad at home, it mostly gets used as a paperweight or to watch some Netflix. I prefer to spend my money on holidays! Going to weird, wonderful or even familiar places to experience new things and see amazing sights is something I really love!
-
Are you familiar-ish with Cisco switches? Probably worth verifying the config - connect a console cable to the switch and do a "show run".
-
Actually, no, when I last worked in a school I still had one DC physical due to hardware requirements. But... there is no real reason not to have them all virtual. As long as you've got VMware setup so that there's sufficient capacity to cope with a host failure, and you've got High-Availability setup then I can't see anything to worry about. VMs are easier to manage, faster to backup, restore... etc. etc. etc.
-
No need to have them backup at exactly the same time - or at least I can't think of a reason for doing so. Not really any need to have a physical DC these days - make sure that you set restart priorities accordingly for your cluster so that the DCs are up first.
-
When you say "stop working", what do you mean? VM shuts down? hangs? or loses or network connection?
-
Depends on the SAN and how the file system works - Nimble use NL-SAS with a flash cache and the IOPS are amazing. I'd really recommend looking at these.
-
Moving from ESXI 4.1 to 6.0
pantscat replied to kidpressingbuttons's topic in Thin Client and Virtual Machines
What version of vcentre are you running for the 4.1 hosts? The upgrade path is a bit tricky. -
Should have said - run it from Powershell on your 2008 R2 server.
