Jump to content

atamakosi

Members
  • Posts

    110
  • Joined

  • Last visited

Everything posted by atamakosi

  1. nm, i got it by using an etherboot disc. for some reason (read: i have no idea) using the intel pxe will only connect to the MS servers even though the info has changed in DHCP. so i'm hoping that a final step may be to flash the pxe rom on the machines that will be thin clients and they will boot off etherboot straight to the ubuntu server (no discs, no hdd's, pure nic). where as all others apparently only recognize the MS WDS server when booting from intel pxe. And I'll just leave the DHCP options as is with them pointing to the ubuntu server and pxelinux.0 boot file. now i haven't gotten a successful boot off etherboot just yet but it is recognizing the correct settings for the server. but it looks like it is going through all possible options to boot from pxelinux.cfg instead of finding the 'default' file and booting off it. (as in it is going slowly off an alphabetical list so will eventually boot, i'm hoping)
  2. i am currently trying to go for a test run on the ubuntu machine and thinstation by switching the DHCP options on my windows 2k8 server to option 66 and option 67 . i keep getting the pxeboot option from my wds server though. is there a setting i'm missing?
  3. thanks, fn-gm, i'll give it a shot tomorrow. there is definitely some good info in that doc but again what does one do if there is already option 66 and 67 in the scope for the windows deployment server? override it unless needing to deploy windows fat clients? (i did try to use the ts-o-matic but it wouldn't get past the build option, maybe it was just chrome)
  4. i'm pretty sure my eyes are bleeding and my brain is mush so please bear with me. I'm struggling (mightily i think) to configure thinstation for boot over our network. i've just been staring at it so long that i'm pretty sure i'm missing the obvious and request some help please. The plan i have currently is to set up a separate server to load the thinstation image over the network for boot into rdesktop so the client machines can access our Terminal servers (and thus access Office, web, etc.) I've struggled with just getting an ubuntu server installation going (damn unrecognized NICs and misbehaving SATA drives) but that is going now on a test machine. Now the stuff i'm goign to facepalm later for asking but here it is: 1. After further investigation, is it possible to have two boot server hosts and boot file names registered on the dhcp server? if not, can creating a separate scope for the thin clients then allow access to the Terminal servers in the first scope? (i've not even looked at how to actually assign the clients to different scopes yet) 2. for the boot file name to register on the dhcp scope (pxelinux.o) where do i find this file?? and the others needed for thinstation (thinstation.nib, thinstation.config, thinstation.build, etc) i think some of these can be found in the thinstation livecd .exe file if installed on a windows machine but i'm not certain at this point any more. i've dled many versions and only 1 actually has ran for me. i'm trying to git clone thinstation on to my ubuntu server just so i can have a working copy. i've setup a tftp server on the ubuntu test server and created the boot folder as well. after i get these issues sorted i'll then worry about where to put the images to load. thanks for the help, guys and gals. this is the last project i've got on my list.
  5. it's debatable if we even need the content filtering with ISA. We tunnel all our traffic through to the NZ MoE's provided filter so we would just need a firewall that would prevent access to our system (except for published sites, etc.) and can route all our traffic through.
  6. So here's a brief synopsis of the problem and what I'm considering of doing to overcome it. Non-Windows based devices wishing to access our internet connection are being refused because of the NTLM authentication that our proxy server uses. This means that all the iOS and android devices are being rejected, of which there are many and seem to be proliferating thanks to our wireless network usage policies. Senior management, nearly all seem to own an iOS device, are quite irked they can't make use of the wireless network due to NTLM authentication failure at the proxy. I'm considering removing the ISA proxy and replacing with another firewall/filter if possible. (Unless there is an easier work around) I'd rather this not cost anything (I'm an optimist) and be able to handle the traffic that ISA does currently. Has any body else encountered a similar issue and what has worked for you? I've looked at Squid but would like more opinions before moving on. Just an fyi, I've determined its an authentication with NTLM through trial and error and finally setting up a linux box with NTLMaps and lo and behold started working great! Devices can connect to the wireless and recieve an IP address just fine but when a browser opens we get the ISA rejection page. (Even if you put in the username/password in to the device settings for the connection)
  7. I'm looking for something similar except I would like students to be able to use their personal usernames so they can save their work to their profile folder from the terminal server. Ideally it would also be nice if they didn't need to login twice, once to the PC and then again to rds. I've still not quite figured out how to replace explorer with mstsc. Can you possibly share your vbs script please?
  8. I'm looking into it right now. might work out even better if i can put it into my wds images and install off pxe. only item i can't find is the Shelly software he uses to override explorer with mstsc.
  9. I just need a bit of reassurance i'm not banging my head against the wall for naught. I've got a bunch of aging dinosaurs around campus that teachers still want to make use of. Creating a linux thin client to just rdp into our win 2k8 terminal server (50 CALS) is my first thought. I don't mind if it boots off pxe or hard disk but we already have a WDS server running for imaging our windows machines so I'd rather not mess with the tftp (a la thinstation) and bork the whole system. Ideally, if i can get the most minimal of OS install set up and a gui for students to log directly into the TS would be great. So far I've imaged a machine using debian netinstall and then used apt to get xserver, gdm, rdesktop and have come out with a fairly large system (1.1gb) from 180mb netinstall base. I can restart and get a log in screen from gdm but it isn't configured for rdp and can't figure out for the life of my what my next step is. adding the TS to the xdcmp doesn't seem to have any results either. Would i need to configure another server for the thin client to connect to the TS? Has anyone had any success with creating an easy to deploy/easy to use thin client for remoting in to a Windows Terminal Server?
  10. interestingly enough, i've found that the docs are being redirected but because of a corrupt mandatory profile the weren't working 100%. thanks to the mandatory profiles from this post i was able to correct that and students can login now. unfortunately, now my start menu and desktop still aren't being redirected. it looks like the desktop is redirecting to the student GPO folder for win XP even though i've tried multiple ways to redirect to a win 7 desktop. and my start menu is completely empty for students.
  11. I've checked this morning and the media card readers are taking up a number of drive letters, however students do use these for a number of classes so disabling the reader isn't the best choice. I did a test on one user and remapping the documents to another letter like 'X' appears to work. I'll just have to do it for every user. :\
  12. I'm deploying Windows 7 to some of our desktops this year and I've just ran into an issue I can't seem to squash regarding document redirection. Instead of having their documents redirected to their user folder it receives a temp profile and defaults back to the local docs location. I worked around this with our netbooks by having the folder redirect to the home folder drive letter but the desktops refuse to cooperate. Any suggestions on whats the best practice for win7 machines? FYI, student accounts share a common profile but map their home folders back to the server (\\server\students\year\username). I'm guessing that the desktops media card readers are getting assigned the H: drive letter causing the netbook solution to fail. except for reassigning the drive letter for everyone's home folder i'm just not sure what else to do.
  13. the problem has been solved. The company that set our exchange server up finally got back to me. From what their engineer said the bindings in IIS were lost and had to be redone. so we are now back up and running. I hope this will help someone else in the future if they run across error 64 in OWA. Thanks for all your help!
  14. 1. Ran and couldn't see anything specifically related to IIS. Saw Mail server with specific services for POP, IMAP, and SMTP (not all one cert though). Can't say I'm very literate with Exchange command shell so please forgive me if I've missed it. 2. It initially failed to run but changed OU and restarted system attendant and it came back with a failed at logon result. What Security Certs are required for OWA to perform properly?
  15. Well, strangely enough I have been able to get access to an unsecured version after recreating the virtual directory but it is now giving an SSL error. Works fine when i disable the SSL within IIS manager 7 though. Leads me to think that the certificates are a bit funny. i.e. I didn't renew them correctly. Does anyone know which certificates are required for OWA access? (the exchange server has two certs for web server and domain controller) 1. exchange 2007 2. yes, everyone. 3. yes, I was getting error 64 from internally as well as externally but that seems to have been resolved by recreating the virtual directory. 4. The only logs i see for IIS under inetpub/logs/ are in regards to the http request and nothing for an SSL request. unsure how helpful that would be knowing that it works fine unsecured.
  16. Thanks for the replies. 1 Don't believe so. I wasn't able to confirm but the CA states "Issued by: for " and we have always received the browser warning that the security cert was self issued when browsing to our OWA URL. 2. Was able to very briefly after renewing the cert but before removing the expired certs. Trouble with that is it wasn't accessable externally so I continued to troubleshoot. 3. In the IIS logs it only has entries for attempting to open the unsecured site on port 80. Those are 301 and 403 errors. Nothing noted regarding the error 64 that is given when attempting to access https://mail.school.nz/owa. the exact message on the site is: Technical Information (for support personnel) Error Code 64: Host not available Background: The connection to the Web server was lost.
  17. This has been giving me a headache for a few days now. Our Exchange server had it's security certificates expire last week preventing access to OWA from external traffic. I thought it would be an easy renew/replace with our CA server. Well, that wasn't so hard but after that was finished I could only access the site from internally. I thought it might have been an issue with the expired certs still being on the active local cert list so I removed them. Begin the headache. I keep receiving an error 64 when accessing the https URL both internally and externally. At first I received a warning that the certificate was issued for another site, corrected that in ISA, and now get past the cert check and to the login page but receive error 64 after putting in my credentials. I've tried changing a few settings here and there to no benefit. As near as I can tell it's an issue with the IIS on the Exchange server not feeding the site properly as the same error occurs from the servers themselves (without routing through ISA, using the local address). I still get the 403 denied when going to the unsecured URL but always 64 when visiting the SSL site. But I could be way off base on that. I've tried even bringing in the company that set up the system but they are very slow to respond sadly. Any help is very appreciated (especially before our school term starts next week!)
  18. Success! I've finally got the policies implementing correctly! An update for anyone else that might run across the same issues, here is what worked for me. I'm running 2k8 on a virtual server for my dc and deploying Chrome 15 to Windows XP client machines. The only method that produced results with policies is to use the ADMX template in the Computer Configuration > Admin Templates. I initially stuck with setting the policies under User Config due to most other edugeekers seeming to have success that way. I was then able to lock down the policies, get my extensions working beautifully, etc. etc. I'm a very happy man right now. The ADM template had no luck any which way I used it so just gonna throw that out with the trash. Thanks for everyone's posts!
  19. I've switched over from the ADM to ADMX but the client machines are still not implementing the policies. The policies I'm trying to use are fairly simple so I don't believe it would be an issue of support in XP (make default browser, import data, etc.)
  20. I'm also using the ADM as I'm rolling this out to XP machines. Maybe if my budget requests go through I can upgrade to Windows 7 but not there yet. Like I've posted previously, I've deployed the msi through gpo just fine and was using the chrome adm templates on Users all in one policy to test on a small group of machines. Chrome installs but the policies aren't applied. I've tried several things to work around the problem or track it down but i'm not having any luck. It just refuses to recognize the chrome policies.
  21. Am I the only one having issues with the policies themselves? I've tried for hours yesterday to get them to implement without any luck. I originally created a gpo with the msi and the adm to test on a small group of pc's. Chrome installs so I know the GPO works but looking at the RSoP, it doesn't appear any of the adm policies are going in. I decided to split the adm off that gpo and test it in it's own policy but had no different results. I'm testing on XP SP3 from a Server 2008 DC. (I got desperate and tried from our 2008 R2 DC with no luck as well.) any thoughts on what could be going wrong?
  22. Thanks for the info, Arthur, I've got the apps i've wanted and working off my network. Unfortunately, I still can't quite get the chrome policies to implement. I've tried in both Computer and User config but neither apply. Something I've still got to work on, I reckon.
  23. I'm testing Chrome in my school right now and found a ton of great extensions to use but I've got a few questions about deploying them. 1. following the instructions linked above, how can you obtain a copy of the .crx file to place in a network share? 2. a lot of extensions require you to sign in to add. will all students then be required to have a google account to use and/or the account used to download the extension, will that be associated with the app for the entire school? (e.g. if i use my personal google account will any of my personal info be saved in the extensions settings?)
  24. side note: careful testing Power Tech Plus universal laptop power supplies. I was checking voltage with the 19.5v tip on it and it sparked and actually shot the inner needle at me. but before that, it looked like it was giving a 20.3v instead of the 19.5v it states. might be the issue.
  25. So this is a strange one. I've just finished re-imaging some old HP 6710b's for student use in one of our classrooms and noticed this issue. When it is on charger (universal 150W at 19.5v) and disconnected from a network cable, the touchpad just goes nuts! It will randomly click and jumps in a more or less vertical line all over the screen. You don't even need to attempt to move the mouse, just touching the touchpad will cause this. However reconnecting the network cable corrects the problem or replacing the universal charger with an HP charger does as well. Unfortunately, we aren't able to return the universals and spend the extra on the HP AC adapters. Any idea on a fix for this?
×
×
  • Create New...