Jump to content

Koldov

Members
  • Posts

    5,084
  • Joined

  • Last visited

Everything posted by Koldov

  1. Me: Is 600 dB even possible...? Gem: A 600 dB sound level is physically impossible in Earth's atmosphere, if it was possible it would cause immediate destruction on a planetary scale. Me: OK, calm down... you could just say no...
  2. Not sure where to put this... I have had to previously make an exception in our filtering to allow Vimeo embeds in Monster Phonics and this worked well. However, I have just been told content appears to be blocked again. I have checked the report from the users IP and the only thing blocked is ht tps : // static- bundles. visme. co/ visme-embed.js This appears to be content embedded in an iFrame which is a change in how Monster Phonics delivers their content, which I was unaware of. I allowed that through the filtering and now have another issue with Chrome I believe. "The connection was blocked because it was initiated by a public page to connect to devices or servers on your local network" From what I gather, this might relate to a setting in our Chrome GPO "Google/Google Chrome/Local Network Access settings" which is set as "Block "sites from making requests to local network endpoints" I'm not sure as this Reddit post says: "our users get an error that says, "The connection is blocked because it was initiated by a public page to connect to devices or servers on your private network. Reload this page to allow the connection.", which seems normal with the change they made in the update. The issue that solves this is disabling Local Network Access Checks in chrome://flags. However, that isn't a solution for us. I've added the windows.admx & chrome.admx, and went the route of using an Administrative Template with ADMX files, in Intune, but that still does not solve the issue, no matter which of the four settings I set in Local Network Access settings, we still get the same error. Chrome ADMX Local Network Access settings: Block sites from making requests to local network endpoints. Specifies whether to apply restrictions to requests to local network endpoints Allow sites to make requests to local network endpoints. Specifies whether to (temporarily) opt out of Local Network Access restrictions We've tried using the Intune Config policy to allow Local Network Access to all domains (straight wildcard), and the issue persists. Has anyone encountered anything like this with Chrome's new update? If so, have you found a fix?" But from similar internet searches "CORS:localnetworkaccessdenied. The only solution I have found is to disable local network access check flag in chrome" and "Embedded views unexpectedly fail to load after updating Google Chrome to version 142. Embedded views may unexpectedly display the following error: The connection is blocked because it was initiated by a public page to connect to devices or servers on your private network. Reload this page to allow the connection. Cause New network security restrictions were introduced in Google Chrome version 142. These restrictions, specifically the 'Local Network Access Checks,' block requests from public pages to private networks, which impacts the rendering of embedded Tableau dashboards. Resolution Resolution Options 1. Update the Chrome flag settings to allow local network access. Refer to the Knowledge Base article for detailed steps: Configure Chrome to Suppress the Local Network Access Prompt This was set to avoid the Network Access pop-ups I believe. Anyone had similar or know if I'm right?
  3. Having a bit of a weird issue with both of my personal Hotmail (Outlook) accounts for at least a month or so now. Whenever I log on with a computer I get the message "You've tried to sign in too many times with an incorrect account or password." I specifically use Edge so I can use the menu to get directly to Outlook and I only really use Edge for one time log-in to things, so not a daily use and therefore I have it set to always clear cookies/browsing data on exit. I got it on one yesterday and so went through the change password dialogue, I also changed it on my phone. But I've come in this morning and tried to sign on... same message. One time I was able to log on I tried to check the log-on history to see if I was being hammered with attempts, but there were only legitimate entries (AI said that MS sometimes hide mass log-on attempts that it knows about, so not very helpful if true)... I don't actually log-on very often with a computer, I mostly use my phone (which rarely seems to have any issues connecting with the same password) but it's annoying when I need to send/receive documents urgently or view things on a larger screen...
  4. Gentle reminder... not everyone who works in a school is TTO... My favourite answer to the teachers is usually one of "Yes, I enjoyed YOU not being here", "Yes, I get a lot more work done here without teachers & children" or just "What break?", "Wait, there was a holiday?!", "I must have missed the memo"... 😜 It's a different kind of stress, but much easier to get on without constant interruptions!
  5. One thing to check... It's not just for Global/Super Admins, but I think I remember reading somewhere it's all admins. I found for any SLT members that wanted to use the 'Visit a Class' option, I seem to remember I had to give them minor admin access to able to do that. Luckily my SLT were all 2SV, but I know another school where other members of staff needed this option and weren't. This may also include anyone who has 'change a password' options... there's also probably a lot of other roles/permissions that now trigger a 2SV requirement if you've split/delegated roles out to various staff members.
  6. I got a couple of emails about this... The first one states: "Two-step verification (2SV) is required for admins starting on 13 October You're receiving this email because you're a Google Workspace super admin. No action is required if all current admins at your organisation..." Then the second one states: "2-Step Verification required for admins by 22 December Dear Google Workspace admin, You're receiving this email because you're a Google Workspace super admin. If you..." Aslo: "Bear in mind: The 22 December date takes precedence over any enforcement date set in Two-step verification > Authentication. From now on, ensure that 2SV is on for any new admins, to prevent account lockouts." EDIT... Also one from August 2025: "Dear Google Workspace for Education administrator, We’re writing to inform you that we will require all Google Workspace for Education admins to set up 2-step verification (2SV) to sign into their accounts starting December 4, 2025" I couldn't be bothered to search back any further... I'll admit they were a bit vague about the actual date, but we sure knew it was coming!
  7. First thing I learnt was that I needed a new GFX card, so I went through a couple of PCI (not Express!) cards, something like this iirc... I don't know what was worse, the rubbish computer or playing on a 56k modem! Anyway, I had to eventually upgrade to AGP, so that meant a new motherboard, CPU and RAM!!! Of course I had to put it in a new case, so less of an upgrade at this point, essentially a new computer (but I built it, I got the bug and the career path was set).
  8. Time Computers is the reason I'm in IT at all today! I bought one and it was so expensive, but so rubbish I couldn't play Counter-Strike (with its 128MB ram and integrated graphics), I couldn't afford to buy a new computer so I learnt how to upgrade! As for disks, of course I've moved on because I'm modern, forward thinking and riding on the cutting edge of the tech wave... I'm now using these new fangled compact disks... EDIT: I'm still holding on to my 5.25" floppy. In 2049 I'll be wandering around waving it at youngsters and shouting "IT used to be hard!"
  9. iirc I had a GPO set for Chrome... something about 'Allow continuing from the warning page' EDIT: Gemini has this.. To allow Google Chrome to continue to insecure sites via Group Policy Object (GPO), you typically need to configure the SSLErrorOverrideAllowed policy. This allows users to click through the "Your connection is not private" warning pages. Required GPO Configuration Ensure you have the latest Chrome ADMX templates installed in your Group Policy Management Console. Navigate to the Policy: Computer Configuration > Administrative Templates > Google > Google Chrome Enable SSL Error Overrides: Locate Allow proceeding from the SSL warning page (SSLErrorOverrideAllowed). Set this to Enabled to allow users to click the "Advanced" button and then "Proceed to [website] (unsafe)".
  10. IIRC someone I knew way back in the 90s had one of these... It was full of disks (probably about 20+) and it was purely for Lotus Smart Suite!
  11. Just moved a user from 2021 to 2024 as they were having some issues. I thought 'well why not, it's got to go soon'...? I kind of knew it didn't include Publisher but to be safe, looked in their user folder and saw they had a couple of Publisher files, last accessed over a year ago. Anyway, I informed them of the change and honestly, you'd have thought I'd personally insulted them! A general 'all staff' email went out with options (like Canva, Adobe Express, exporting to PDF, or copy/paste into Word) and informing them that come October, Publisher will be gone for everybody. What followed was apparently 3 days of muttered comments and complaints to the office manager... it would appear they use Publisher a lot more than I thought... I would have weathered the storm, but to make it worse, it seems that Office 2024 has an issue on this machine whereby in Word, choosing 'Insert > Pictures > Stock Images/Online Pictures, causes it to hang. From what I can tell there is an invisible dialogue box (possibly the picture browser window) and I can't work out why it isn't displaying! 2021 put back on today... I'll try again in October...
  12. Aren't dual PSUs mandated now by the DfE guidance for network switching...? How are you all getting on with having less warranty than the guidance? I've read that by default, UniFi hardware does not meet the DfE standard of a 5-year manufacturer warranty.
  13. It would seem that MS has changed its stance on this... Possibly realising the massive need of businesses and educational establishments for a work ready OS without all the bloatware...? "Windows 11 Enterprise LTSC 2024 builds on Windows 11 Enterprise, version 24H2 adding premium features designed to address the needs of large and mid-size organizations (including large academic institutions), such as advanced protection against modern security threats, full flexibility of OS deployment, updating and support options; as well as comprehensive device and app management and control capabilities. The LTSC edition provides customers with access to the Long-Term Servicing Channel as a deployment option for their special-purpose devices and environments, with quality updates provided for a full 5 years" For those crying about how LTSC should only be used in nuclear power plants, you will have to be upset at those who have managed to get IOT licenses now and not those of us who wanted an OS without Candy Crush, XBox, etc.
  14. Is a YouTube branded school account through Google Workspace possible anymore, I'm getting conflicting advice in my internet searches (AI, I'm looking at you!)...
  15. Trouble is, as a very small school they're always asking for things with no idea how involved it really is... I know they haven't got a clue and they don't see that other schools may have greater resources, they just think that these things are easy and while I admit, just chuck a webcam on a stick and make a YouTube channel sounds easy (how hard can it be, right?!) there's a bit more involved to it than that...
  16. This... Thing is, the incubator is apparently going to be in a place where it could easily be interfered with apparently so the children can view them during the day (don't ask me why) and therefore so would the laptop and camera.... I can just imagine one of the students taking the opportunity to sneak out of class or on a break taking the opportunity to live stream themselves doing something ridiculous... I mean I get that some schools have spare cctv cameras, spare windows devices, school YouTube accounts, a science office, etc.
  17. Ok, so amongst all the other million and one things I've got to keep on top of... today's mission should I choose to accept it (like I've got a choice), is how the heck I'm going to live stream some eggs hatching in the not too distant future... The Headteacher has apparently seen that other schools can even do this on their website (thanks guys)! So for all those clever IT techs that have set this up, how did you do it? Bear in mind there's no money for equipment, we don't have any streaming video accounts, our website is third party hosted (and I doubt we have paid for whatever function this needs)... and I've never done this before.
  18. Looked through our iPads a while ago and saw a Phone app had appeared. Just got round to looking at this again and tried the usual Meraki SM 'do not allow the following apps' restriction. It appeared in the list of apps to block, but wouldn't apply, after multiple attempts I did some research and found a post on Reddit from someone that seems to say they blocked it (although not using Meraki SM). However, I couldn't get Meraki SM to add it to the list of apps to block... then by chance I hovered over the little i (information symbol) next to the 'Show or Hide Apps' list header... it says: "The following apps are always allowed: Setting, Phone." Anybody got a clue as to why this would be? Anybody blocking it with a different MDM?
  19. Well.... I have... and I've got to say, this might very well be the moment my view on robotics and AI is completely polarised.
  20. But.... but.... IT'S FOR THE CHILDREN! 🥺
  21. Hmmmm, it would seem that they won't need an account to access the particular book they are required to read. It will be done in a lesson so they can follow along on an iPad. I was asked to unblock this link: https://www.google.com/url?q=https://www.scribd.com/document/561675287/Morpurgo-BEOWULF-28Novel-2C-2013-29
  22. Not sure if this is the right place, but couldn't see a better one... Just had a message from a teacher asking me to unblock a link for a book on Scribd. Unfortunately I don't know anything about Scribd and if I push it further up to the SLT I'm pretty sure none of them will know anything about it either! I haven't looked into why it's blocked yet, but the question is obviously 'is it safe'?
  23. And you use the UniFi built in captive portal. So you are looking for those that have joined the open WiFi network, but not yet authenticated (and so are not able to browse to the internet). What bit of UniFi kit provides that and how are you finding it?
  24. As a very close hijack to this thread... Does an 'open' guest network comply with the 'Meeting digital and technology standards in schools and colleges', as it specifies "Regular and guest users should be set up with appropriate authorisation and authentication methods." ?
  25. As there is a lot of love here for Ubiquiti, has anyone moved to UniFi, but been hampered doing Layer 3 by their closed system (transit VLAN (VLAN 4040) with a default subnet of 10.255.253.0/24) and the constraints of an MSP Router/Firewall config that is equally unchangeable...? Not sure if I'm just pulling up old problems in my research that are fixed now they're a more mature product, or most of you using it have free reign on your Router/Firewall connections?
×
×
  • Create New...