Jump to content

Davit2005

Members
  • Posts

    5,320
  • Joined

  • Last visited

Everything posted by Davit2005

  1. I think you want to backup the VMs separately personally, away from the host and keep offline backups. For backups I have not used Windows Backup for years but use Veeam quite a bit but have used Veeam upto a few years back. There are other backup software as others will mention but for me Veeam has been excellent, restored VM's, individual files and even AD users and support when I last used Veeam a few years back was superb. I first used Veeam at version 6.0 and last used it professionally on version 9.5 having upgraded it bit by bit through every update and new version without any issues. One time I managed to get a 3 way support call with Veeam and VMWare to sort the issue which they did.
  2. Hi All, I'm having some difficulty setting up a Cisco 887V VSDL router at home. At the moment at home I have a static allocation of 5 IPv4 addresses and an allocated /56 of IPv6 addresses from my ISP Currently using a DrayTek which I cannot fault but it is a bit fiddly to get setup and is a bit lacking for other stuff I want to try and do. My separate firewalls do the NAT for IPv4. For IPv6 I have a separate /64 network used for IPv6 between the Firewall and the DrayTek. Currently with IPv4 I use one of the public IP addresses on the LAN side and one on the WAN side. The IP address on the LAN side is used as the default gateway for the firewall I want to carry on using the firewall for NAT as there are 2 in a HA pair and also use them to separate WiFi, IoT, DMZ and server traffic from the rest of the network. Each firewall also has a connection to a 4G router as a backup for essential traffic (VOIP, CCTV notifications, etc.) I'd like to use as few IPv4 public IP addresses as possible, the way the specific firewall works is that the network interfaces apart form HA interfaces are shutdown unless the firewall is currently active.
  3. An old update my desktop just decided to pick up randomly. Seems though it has also broken Chrome, cannot load any web pages, cannot get to gmail, Edge is OK but some Google sites are unavailable. Laptop without the update is so far fine. My role does not include desktop or server duty so I have missed the fun of windows updates for over 3 years.
  4. I've been struggling to get External clients talking to my Home 3CX server so will try these as well. Got the end of my home phone contract coming up and want to use 3cx instead of the ISPs VOIP service.
  5. Googling showed it happened about a year back. Managed to download the latest driver from Intel and got the desktop vlan enabled which is sort of progress but it won't pick up IP and using a static it won't connect to network services. Funny enough IPv6 works fine to the point I can get to RDP of servers via their IPv6 address. So managed to get DHCP up and running, it doesn't help that I'm in the middle of migrating to a new domain at home either so DHCP is a bit all over the place. Some of the issues I had were: Network adapter could not bind errors in event viewer Could not enable the adapter Updated to Intel driver pack PROWinx64 version 25.2
  6. Masses of updates this morning on my home desktop and all my vlans on my Intel X520-DA2 have disappeared. I use a whole load of VMs on the desktop which I map to the different vlans on the network adapter Updates installed were a whole load of office 2013 but along with these were. Security Update KB4560959 Update for Microsoft Windows KB4560960 Feature Update to 1909 KB4517245 Thanks MS Recreated a vlan but it won't enable so doing a network reset, nothing to lose at this point. I still have an onboard LAN connection I could use but handy just to have one connection to all the networks.
  7. Still using it with a CNC machine at home. It has no access to the Internet, local account, tuned for performance and only read access to an SMB share to download CNC Gcode programs. The PC does not have to be that powerful and till I upgrade the controller for the CNC it is going to stay that way.
  8. Microsoft had a program years back called Microsoft Small basic. I think it has been superseded though with an open source variant https://en.wikipedia.org/wiki/Microsoft_Small_Basic.
  9. Are you uploading direct to the ESXi hosts or to the hosts via vCenter?
  10. You may need a route back to each subnet from the supplier router otherwise return traffic will not be able to be routed back. Or you maybe able to do a summary route depending on your internal subnets so something to think about in the design process. I've done a summary route on my VDSL router at home for IPv6 as it made it a hell of a lot easier than doing individual routes. We use static routes from the firewall to the main 2 core switches then OSPF internally as we have at least 1000 vlans, no joke. Not all our vlans have internet connectivity i.e. VOIP, desktop IP printers, Access points, BMS, CCTV, etc.
  11. We have 5 5406Rs on site two of them are VSF stacked the others just have dual management cards. They have been no problems what so ever and rock solid. We are a HP shop network wise (edge,distribution,aggregation and core,) 750+ switches, the only switches we have seem to have majority of issues with is 2810s and 2650s all these are still swapped out and replaced under warranty despite their age.
  12. Cool person in The Young Ones, they are all cool :-) . Got in the habit of cutting my own hair now and may never go back to barbers just too much hassle taking day off work etc. Getting older so not too bothered now anyway, won't mind when it all goes :-).
  13. I am well aware of the easiness/flexibility of Virtualisation, creating domains etc. I've done them countless times. At a previous employment they had 68 servers still physical no documentation including file servers when I started and when I finished there were 150+ virtual servers all documented all but 2-3 of the the physical servers were migrated to updated MS software along the way from 2003 servers. And I'd managed to migrate students to Office 365 from onsite exchange and automate every AD/Office 365 account creation and document that too along with being technical leads on many other high level projects. If an outside company is employed I'd strongly suggest that it is clear what they will NOT be responsible for and the documentation that will be left to be able to troubleshoot and manage the network as well as documenting what they have done. The reason why I suggest not creating a new domain is if you find a company that has removed RM in the past they will probably know what service accounts will be making changes to Active Directory and where to look to remove the intergration. And depending on the setup this will be a lot easier than creating a new fresh AD domain. There are probably 3rd part tools that make the job easier. RM may be integrated into AD in many places but if a company knows where to look it will make it a lot easier to break the connection.
  14. How many 10Gb ports do you need at the Core. Do you really need PoE at the Core? Personally I'd consider the Aruba 2930f as a core switch at that price range but non-PoE (they have PoE options but more expensive) they have models that include 4 SFP+ switches but that may not be enough if you need a higher 10Gb port count it may not be suitable, they are also stackable but there are other manufacturer options like the higher end Netgear that will give you higher port count and are stackable. There is also the Ubiquiti ES-16-XG which also has layer 3 routing (apart from IPv6, no dynamic routing protocols to my knowledge and a lack of HA features i.e stackabiltiy, VRRP, etc.) you could probably get 2 of then and have one on the shelf as spare, lol. The CLI interface on the 2930f and many commands should be the same as the 2620's. There could also be the option of routing the vlans on your firewall depending. There are positives to having a flood patched switch approach in a bigger environment. But yes daisy chaining switches is not wise unless it is only a handful of switches. In nearly all scenarios where we have 8+ switches in a cab/building we have a top of rack switch feeding the other switches to give an extended star topology.
  15. Went down ASDA lunchtime, normally in there at 7am but because of work commitments had to go later. It's amazing the amount of people not wearing masks (about 35% of shoppers) and walking the wrong way down Isles (about 20%) there have been isle markings since beginning of lockdown in that store. Saw one family with a youngster probably around 7/8 looking down at the arrow with a puzzled look obviously wanting to say something. And another youngster with a parent not wearing a mask look at me as if to say why?
  16. Fixing the human issue is always the most difficult bit. I have seen plenty of problems caused when students get access to areas they shouldn't whilst using the teachers account. Causing embarrassment/questions for the teacher/staff member when they are found out as the audit trail goes back to their account.
  17. Also check if you use MDT/SCCM what account is been used to join the clients to the domain after deployment. A word on this subject, this account does not need to be a domain admin and that can be a security risk if you do. You can set a service account and give it delegated permissions just for the task of adding domain PCs to a specific OU and then specify the service account and OU in the deployment task. Many services that use LDAP also do not need to be domain admins as they just need a domain user account to verify the credentials of users from the AD servers.
  18. PatchSave is one we normally use at work. I generally use CableMonkey for personal needs and they have always been good, no issues with Fibres or Copper patch cables that have been supplied.
  19. But there is no need to build a new domain with ALL the work that entails so a migration is not needed. I'd suggest getting someone that has done this process before and knows what to look for in the process. If a new domain is built you need to migrate users over, groups, computers, deal with local/roaming profiles, file share permissions, etc. If you read through what other people have successfully done in this post without building a new domain. I done this with my manager about 10 years ago from RM3.
  20. They have implemented layer 3 in the edge switches like the ES-16-XG but it does not support IPv6 routing, any dynamic routing or IP redundancy features or at least it didn't about a year ago when I had mine.
  21. There is no need to build a whole new domain to remove RM to be honest. Just build new DC's without the RM installed. I did this with IT manager at my first school in 2010 and the only issue we had was that group policies were changing back to match the ones in RM console and this was linked to a RM user service account. We also moved to mandatory profiles for students and local profiles for staff which solved a number of issues we were having at the time. The school staff were pretty happy with what we were doing as the existing IT solution/infrastructure was a car crash (that crashed every 6 weeks). But that is another story.
  22. Not necessarily PDFs or Google but I've seen documents with uncompressed images causing issues. Annoyingly happened around exam time, lol.
  23. For gaming a single monitor would be good but as I do so much creativity it seems difficult to break away from 2 single monitors, doing screen captures it might make it a bit awkward. I need to get a decent graphics card and probably another PC to be honest. My current PC is an old TS140 that has a proprietary PSU connection to M/BRD. I can get hold of an adapter though, got one somewhere I think. I also have a NUC plugged into the second screen for music and handy to be able to have different clean workspace for that away from my main PC which has all the usual crud installed.
  24. Think it depends on the panel type largely. VA, IPS, TN etc. Mine is a IPS. https://www.ebuyer.com/monitor-panels?mkwid=s_dc&pcrid=341593488920&pkw=&pmt=b&gclid=EAIaIQobChMI9NiT0KGs6gIVSYBQBh1p-AprEAAYASAAEgKRevD_BwE
  25. I already have a full 5.1 so pretty much covered on the sound side, for a small flat anyway, lol.
×
×
  • Create New...