Jump to content

Davit2005

Members
  • Posts

    5,320
  • Joined

  • Last visited

Everything posted by Davit2005

  1. Beginning to ask myself If I really need 2 crates of network cables at home now :-)
  2. It depends where the gateway for the Student SSID is. If it is on the MikroTik then no routing should be needed as it should be treated as a local interface. Firewall/NAT rules might be needed either way. If this is a vlan (student SSID)which is routed at core switch then it will prob need a route from the next router up i.e. routed on UDMP then MikroTik will need to know how to route traffic back to that network. You only need a n IP helper on the device which is the default gateway for that vlan/subnet. If however the vlan has it's default gateway on the MikroTik, the MikroTik should already have a route as it is directly connected as far as the MikroTik knows. Layer 2 traffic (vlan) can be passed between devices even core switches, layer 3 traffic (IP addresses) is routed. TBH I have not much experience with the UDMP or any Unifi firewalls. One thing to note that if you have BYOD devices you should probably have ACLs or firewall in between those devices and your main network. Once you setup routing on a core switch normally by default all vlans/subnets can talk to each other.
  3. Docker has opened up a lot for me at home. I've migrated most services to docker and now don't really have a need for VMs at all apart from Home Assistant which can be a different experience depending on the platform from what I have seen/researched.
  4. Could be a few things in play here. Do devices on the student SSID get a IP address on the correct range? Troubleshoot with Unifi below Check the student SSID vlan is tagged on ports that the Unifi APs are plugged into. Set a switch port to untagged on the vlan used by the SSID and see if device i.e. laptop plugged into the port gets IP address etc. Are there routes to the subnet used for the student SSID from the firewall (guessing on MikroTik here)? From a device that passes the above getting IP tests see if it can ping it's default gateway? Is the vlan/subnet used for the student SSID routed on the firewall or the UDM?
  5. Used to run multiple AD servers, Certificate services, Windows Deployment Services with MDT), Radius Wireless/Wired 802.1x (NPS), 2 x Dell servers with ESXi 24/7, Firewalls in HA with 4g backup, OSPF layer 3 networking. Now down to a few Lenovo mini PCs with Docker (radius, PiHole DNS, Remote management/monitoring) and a few NAS units running some VMs and Microsoft 365 AD. Wireless wise a few Aruba Hospitality APs with built in controller. Switches jus layer 2 with firewall doing vlan routing and separating/isolating the traffic. Haven't got the motivation to running/managing/fixing a complicated home network anymore. Uptime Kuma tells me any major issues whether I am at home or away which is still prob too much, lol.
  6. It's been over 7 years for me but if you copy the backups across i.e. file sharing then you can re-link it. I think it is a matter of pointing to the repository on the new server and re-scanning? It has been a long time though since I played with Veeam though. Are you talking about the actual backup files or the config backup, I might of misunderstood.
  7. At engineering college in late 80's we had some small desktop CNC machines, they were BBC I think both lathes and little milling machines. Have you got a picture of it :-)
  8. My British Gas Smart Meter has not worked properly for years, they have suggested leaving it off for a week, multiple restarts, etc. I've jus given up on it TBH. Thanks for the Info, you have gone further than me with this, lol.
  9. Many different ways. I did it at home by building new DCs, creating a conditional forward in DNS, creating a trust between the 2 domains then started migrating Servers and Desktops and user accounts/groups across using ADMT installed on a member server in the old domain. The benefit being that you can do over a few weeks/months. One PC I had issue with migrating over to the new domain, some sort of permission issue on the c$ share but 1 out of about 5 desktops only had that issue, jus ended up rebuilding. If it all goes well users will not notice a difference. Have to move GPOs over too and not forgetting DHCP and any specific DNS. I did not have exchange running or any SQL servers but I did have AAD Sync and WDS. WDS I had to save the images as backup and then uninstall and re-install the service. I think I had to re-install AAD sync too. Only one user though, me.
  10. Is this after the login or before? On an effected client check what logonserver it is using by running %logonserver% in the run window if you have more than one DC. I've seen before a faulty DC delay from login to working desktop for upto 30min on PCs that used that DC for logon. As others have said I'd also check logon scripts too.
  11. Try the settings here on page 14 https://support.hpe.com/hpesc/public/docDisplay?docId=c04463762&docLocale=en_US
  12. Davit2005

    Printers

    Not got a complaint against HP LaserJet printers TBH. I jus won't touch an InkJet even at home. I bought a Brother colour LaserJet about 3-4 years back, only used occasionally and still on original toner. When I was a third party field engineer 10+ years back I was sent out to replace fuser units often and the cheaper £100 range HP laser printers were defo in my opinion not designed as field replaceable fusers but apart from that I have not had an issue with HP laserjet at all.
  13. Hyper-V or VMWare? I've done loads of servers in ESXi, all windows servers were very straight forward. Expand the disk in ESXi then go into disk manager on the VM, rescan disks and extend.
  14. They say they might visit even if you fill out the form as not needing one.
  15. TV license, you don't need to pay it jus for the fact of having a TV. If the license sales people (or whatever you want to call them) turn up at your door, be polite as in say "Not to day thanks" and shut the door. You don't need to sign or say anything so don't there is no legal requirement. I stopped watching MSM in 2020 during first lockdown as it was too depressing, registered as not needing a license, not had any anyone call and personally have not missed it one bit.
  16. If I do the same thing at least once a month I'm OK. It is when I do things once a year or less, documentation is key for me then I get someone in my team to do the same thing using the documentation when it is needed to verify not missed any steps.
  17. Yep defo vouch for this if you have any services/servers using DNS. I've done loads of DCs this way temp IP for new server, then before change over, use different temp ip for original server then change new server to original IP. I also run dcdiag at each stage.
  18. We have Aruba but we have Mobility Masters and controllers with over 2000 APs. I've setup and managed Ruckus, HP MSM in previous employments and numerous other wifi systems at home. I currently have Aruba OS 8 on some hospitality APs at home and there is slightly more that can be done on the CLI like what should be basic stuff, it doesn't come anywhere close to the Aruba we have at work for overall functionality/features though.
  19. We had a problem years back with a service that used https, it did not like been decrypted. We put an exclusion in to the specific destination.
  20. I'd say the same about a NUC, some need some coaxing to get server network cards working. I ran a NUC at home for 2+ years hosting ESXi, yep not ideal but the actual NUC handled it very well. I'd also recommended 2 PCs with split DHCP or load balanced and DNS services. It jus gives you room to maneuver for maintenance or unplanned issues. A cheap UPS say 750/1500 should keep a low power PC running for quite a while and turn off the PC gracefully if power outage exceeds the UPS runtime.
  21. Personally I'd create a firewall rule to give the access required only. Tie down to a specific source IP though.
  22. Ashley Neal points out some of the issues of Roundabouts with the highway code updates, well some aren't really issues as he points out :-)
  23. I know the CPU are nearly always behind competitors, Synology upgrades i.e. RAM are expensive, there have been issues with PSUs and CPUs in the past but the packages jus seem to make up for it. I'm on my 4th at home now and when selling I've not lost a lot
  24. If you don't need to resolve any internal DNS queries then yes jus point to external DNS servers i.e. quad9 or Cloudflare.
  25. Personally I'd keep it off line if possible. You can always manually import if necessary and it will get around any proxy issues/fw/filter issues.
×
×
  • Create New...