Davit2005
Members-
Posts
5,320 -
Joined
-
Last visited
Content Type
Forums
News
20th
EduGeek EDIT Conference
Blogs
Everything posted by Davit2005
-
What's the aruba version of this unifi switch?
Davit2005 replied to browolf's topic in Wired Networks
At home I have 2 JL253A (Aruba 2930f's with 4 x SFP+) then I have 2 MikroTik 10Gb switches with a LAG setup between each MikroTik and the 2930f, stack it jus gives enough ports on the 2930f to be able to have 2 x 10Gb cables for stacking then one cable on each 2930 for each MikroTik. The Aruba's in my case are been mainly used for routing with servers and with the other switches connected to the Mikrotiks so gives quite good redundancy although yeah am limited by the 10Gb uplinks compared to say a 5406r Chassis or a 1U switch with 10Gb+ speed uplinks. Using LAG will help. You don't have to use specific ports with the 2930f's as long as the port speed is the same throughout the stack. But as others have said, high capacity 10Gb switches with the features of logical stacking and routing are going to be expensive, the MikroTiks are OK but once you do advanced stuff the throughput takes a big hit. Of course if you can use LAG and not rely on spanning tree you are going to have better capacity for throughput on the switch links. We are an Aruba environment at work with 700+ Edge, 4 Core switches, OSPF and spanning tree giving very high availability although that will change in a few years. -
Cloud / Azure based Domain Controller - Almost serverless?
Davit2005 replied to gsk's topic in Cloud Services
My understanding is that to have onsite servers joined to a Azure domain you'd need to have Azure AD Directory Services. Checkout the following https://docs.microsoft.com/en-us/azure/active-directory-domain-services/overview#:~:text=Azure%20Active%20Directory%20Domain%20Services%20(AD%20DS)%20provides%20managed%20domain,(DCs)%20in%20the%20cloud. -
With managed devices it should be easy enough to deploy a certificate. We also had the enterprise network hidden then GPO set for managed devices to connect to it. Worked well enough and meant that the only wireless that would pop up for guests was the guest network. For BYOD at a previous place we had a link on the Captive portal to an area they could get to for the certificate which worked well enough.
-
Does that use SAML as a method? Just wondering as Office 365 make it pretty easy in some cases to get SAML working and to redirect other services to it for Auth/MFA
-
Pretty sure it is still the fact credentials could of been compromised and still wise to change password, setup MFA and reset the MFA on accounts to be sure. But yes defo disable management by cloud if you do not need it. https://www.youtube.com/watch?v=EhC_JgXjoBg It is not a question of if there is a breach these days but more common when and has highlighted some poor practice by multiple organisations but the key thing is communications with end users and public awareness of what has happened. Facebook has also had a massive breach and their attitude has been questionable.
-
What do you use for customising your Windows10 install?
Davit2005 replied to Sonic007's topic in Windows 10
There are a few youtube videos for removing the bloatware. I've not tried them my self, there is one from CraftComputing Thankfully I don't have the responsibility of building images anymore although I have a MDT server setup in a lab at home which is handy for quick Server/desktop builds for lab work. -
I somehow expected the car to be on it's roof. Maybe I have been watching too many driving fail videos though lockdown. I've been driving for just over 30 years and only in the last few I've had to parallel park. We didn't even have it as part of the test or lessons when I was taking them, lol. Takes a bit of practice.
-
I didn't expect that ending
-
You can download from the Creators Studio once logged into the channel account, go to content, select the video then click more actions and download.
-
Vmware Virtual network editor & wireless adaptor
Davit2005 replied to vijayg's topic in General Chat
It is not the wireless settings I don't think. The OS on the VM would surely need to see it as a piece of hardware and for that you would need something like PCI passthrough. I'm not sure how that is done on VMWare Workstation. -
Vmware Virtual network editor & wireless adaptor
Davit2005 replied to vijayg's topic in General Chat
You'll need to pass through the hardware to the virtual machine. With it bridged as you say the VM just sees it as as a network connection it does not matter to the VM whether it is wireless or what ever. I'm guessing you are using VMWare workstation? Can I jus enquire what you are hoping to achieve. -
Coronavirus: General discussion (see opening post for rules)
Davit2005 replied to Dos_Box's topic in General Chat
Certainly more traffic on the M1 going in from Junction 6 around 7am. I only noticed as my run route took me over a bridge crossing it. I'm going in to work at least once a week now, getting bored on my local runs but they are quiet with just the odd dog walker with controlled dogs compared to my routes in the park near where I work that sometimes has dogs running around me ankles -
Would of been nice for him to of had the 100 year letter/message/card from the queen :-)
-
My dad met him whilst in the forces as a tech at a parade before I was born. Prince Philip came out with a funny one liner in a conversation with my dad which made him laugh.
-
Does the Sophos have any sort of packet capture facility I assume you have dealt with the local firewall on the web server and the web server is configured and able to serve out the web pages on https OK? Additionally I'd be inclined to have the NAT rule as any service if this public IP address is only used for one externally available service.
-
You could try blocking ipsec and ports such as 1194 udp. Or alternatively a NGFW may be able to block via application?? https://kb.smoothwall.com/hc/en-us/articles/360000894119-Blocking-NordVPN- I'd also recommend limiting specific devices connect to external DNS. There is no need for a domain client to need access directly to external DNS for sure.
-
5th time lucky 1st blocked the canal, err... 2nd, 3rd, 4th crashed the backend in the winds 5th had to power out of the crosswind a few times to get away from the bank
-
Phone systems [What do you use, and how do you rate it]
Davit2005 replied to rfakes's topic in Mobile Devices & Tablets
Have you checked the DHCP scope is consistent between the one that works for the options on the different VOIP vlans? Possibly option 66 . Are you running on top of windows or do you run as the appliance, I swapped to Windows as could not find out the folder in the appliance to set for the location but that could be my lack of knowledge. Jus wondered if you had posted the issue on here as a separate thread as not wanting to bounce off topic. -
I agree, whilst their may still be some call/need in FE and HE it is hard to argue in smaller orgs with little call/need such server infrastructures to go down the route of a SAN specially a Fibre Channel SAN
-
Smart Casual here, Jeans/Tshirt/Polo all OK, even shorts and jogging bottoms sometimes as long as they are presentable. If we are not in the office we are in dusty areas so it is OK and acceptable. Worked in an Independent a few years ago and had branded polo tops with trousers but they were generic and did not have my department on them.
-
That article is a good heads up and interesting read, I'm surprised there has not been much said about this on YouTube, unless I've missed. It appears just the Enterprise aimed range of NAS units at the moment, if they started pushing that to models aimed at SMB/Consumer I would imagine they'd be pushing a large number of people away. There is a lot of competition, and whilst Synology is a very good choice if you want the easy of use, extra features provided by its extensive Synologys and third party packages (Surveillance Station, Active Backup, Office 365 Backups, Simple Virtual Machines, Authentication LDAP/Directory, Chat, Mail etc.). You have things coming out like along like the QNAP with the HeroOS which looks very good.
-
I'd really be surprised if they ever went down that route, there would be so much up roar they'd have to reverse it before they thought it, lol. You do get one benefit with the Synology that increasing space is very easy with SHR but the poss downside is time to rebuild. But yes with spinning rust very cheap these days could get the biggest poss drive cheap. Over options such as the new QNAP do look interesting with the Hero interface and these use ZFS from what I believe. I've got 2 Synologys at home so yes I rate them :-)
-
Coronavirus: General discussion (see opening post for rules)
Davit2005 replied to Dos_Box's topic in General Chat
I'm feeling no worse than normal 48hours on, not sure whether that is good or bad, just a tender arm. -
If you are using Active Directory, can you not just hide the drive?? You may also be able to do the same by registry settings, I think I done that method about 10 years back. https://docs.microsoft.com/en-us/troubleshoot/windows-client/group-policy/using-group-policy-objects-hide-specified-drives Also beware that hiding drives is not a security fix because users can show hidden drives through windows explorer so make sure that you tie down the permissions accordingly.
-
Coronavirus: General discussion (see opening post for rules)
Davit2005 replied to Dos_Box's topic in General Chat
26 hours on from AZ got a bit of a headache but not to bad, nothing much more than normal. Arm is a bit tender like someone gave it a punch.
