-
Posts
4,103 -
Joined
-
Last visited
Content Type
Forums
News
20th
EduGeek EDIT Conference
Blogs
Everything posted by Boredguy
-
In your SIMS.INI file, the SIMSSetupsDirectory & SIMSDirectory values can just be your UNC path to the folders in place of S: In your connect.ini file, make sure, make sure you have the following in place of the Redirect [sIMSConnection] ServerName=\ DatabaseName=SIMS ServerType=SIMSSQL CommandTimeout=10000000 Then only assign the S drive to those staff that actually need it, such as Timetabler, Finance, Admissions.
-
They have got Shared Computer Activation configured haven't they on the O365 Click to Run deployment? For simplicity we just put Office 2019 on RDS server since it only gets used by SIMS reports.
-
Coronavirus: General discussion (see opening post for rules)
Boredguy replied to Dos_Box's topic in General Chat
Rate of Transmission maybe? -
Our serif licence prohibits passing the files on to anyone else as there is no-way to verify they have a licence, and as it's a legacy app Serif no longer support it.
-
Coronavirus: General discussion (see opening post for rules)
Boredguy replied to Dos_Box's topic in General Chat
Assuming the app is correct of course, since there is no requirement to follow it's advice as it might have picked up the handshake from a nearby locker if the phone was kept in it. -
coverage
-
Never used that site, but then again we normally send users direct to office.com or mail.office365.com
-
Hang on, you can't allow them to sign in to Office 365 from home? Seems a strange restriction these days when you can have MFA, and use that with Remote Desktop Services and Azure App Proxy to provide the remote connection you need. Setting up a VPN on personal equipment could be a minefield when it comes to support. RDP RemoteApp with MFA via Azure would be the more secure option for ease of Management and security, otherwise if you could provide them with school equipment then AoVPN would be better
-
[ms office - o365] MFA Setup and Conditional Access
Boredguy replied to argosanti's topic in Office Software
There is a powershell script to convert all the legacy MFA credentials across to the CA MFA version and to reset the legacy MFA to disabled. All of our staff have been prompted to set their MFA details if using a personal device in school, or when at home as our CA rules have no trusted IP addresses listed. Users can still setup their MFA via the school workstations, but by going in through the My Account -> Security Settings route -
[ms office - o365] MFA Setup and Conditional Access
Boredguy replied to argosanti's topic in Office Software
We have gone down this route, and purchased EM&S A3 add-ons for all our different tenancies as part of our OVS-EES Agreement. We have Conditional Access Rules setup that applies to just the Staff user group that are challenged to have either a MFA authentication or to be on a Hybrid Azure joined workstation (so that OneDrive etc does not prompt for authentication when logging in at work) Students do not need to have MFA configured, and staff are prompted to setup their MFA details either via the Authenticator or SMS text message when they next try to login from a personal device. But you do need a P1 licence as a minimum to enable Conditional Access MFA. There is a powershell script available to update your users that were set to use legacy MFA across to the CA MFA -
iDStore : Cashless Catering CRB Cunninghams : New intake setup
Boredguy replied to kennysarmy's topic in How do you do....it?
Our IDStore sync with SIMS pulls all the students who have been accepted for September already, even though they are not yet fully enrolled, and has done since we started using it. Not sure if Bromcom holds the pre-admittance details differently to SIMS, but it might just be that it hasn't been configured for your sync? The ImpactMIS.cmd file in the "MISLink" folder is calling "impactmisprocessor.exe -I SIMS - Applicant " as one of the tasks for us- 1 reply
-
- 1
-
-
That wasn't the question I was asking though, it was what they had used I do not want to have to go to the added trouble and expense of trying to get wildcard certificates, especially as using the default msappproxy.net domain has one, but of course it throws errors on the local servers if they don't have that value in it as well.
-
What did you do for the SSL certificates on the roles? Did you go for a self signed, AD CA or a fully certificated SSL certificate?
-
Krystal has been mentioned as a free DNS service that can handle the .sch.uk domains previously
-
Cant access encrypted documents sent by Birmingham City Council
Boredguy replied to a topic in Enterprise Software
If it was sent directly, then like the others said, BCC need to adjust their security settings for external users- 6 replies
-
- encrypted email
- office 2019
-
(and 1 more)
Tagged with:
-
Cant access encrypted documents sent by Birmingham City Council
Boredguy replied to a topic in Enterprise Software
Normally when we get similar style messages in Office 365 it is because the document has either been sent to a shared mailbox, and the user that is opening it from that mailbox in their normal logon session doesn't have access (since it wasn't sent to them), or the document has been sent on by someone who isn't the owner of the file in the first place. So I'd check what address the message was sent to. If it was to an account that is in a Shared Mailbox and you use Office 365, use the "Open Another Mailbox" option in the Outlook Web App for that account and try accessing the document within that window to see if it behaves.- 6 replies
-
- encrypted email
- office 2019
-
(and 1 more)
Tagged with:
-
Tomorrrows War (Amazon) Chris Pratt is a US Army Vet who is now a school science teacher gets drafted into a war taking place 30 years in the future where aliens are decimating the human population. While quite a long film, it was quite entertaining and it took a while for the Aliens to be seen which adds to the suspense, nice few plot developments as the film goes on and worth watching
-
Because they are not self signed certificated, we don't have to distribute them as they are authenticated by trusted providers already (for example our Wifi ones are Quovadis ones) Or are you specifically referring to the SSL decyption/interception certificates more so than sign in page ones? If so, we send our guest devices out via a non SSL proxy as it was too much trouble trying to get visitors to add in the RM certificate depending on the OS they were using, and if it was a manged device etc
-
For our Ruckus Wifi, we've been getting SSL Certificates from JANET (which are only for 12 months these days) as there is no way for me to automate a LetsEncrypt certificate into the system
-
Duckweed
-
Since our EM&S licences were activated on Monday evening, we've noticed that the local SMTP relay server we use for our Powershell scripts, photocopiers and local web server has started reporting Authentication Unsuccessful errors in the log files. The server had been happily connecting as a valid 365 user over port 587 for years with no issue so quite sure the EM&S is the issue. I've already checked and set the SmtpClientAuthenticationDisabled value in the CasMallbox for the user to be $False as recommended by MS but still not connecting. User logs in perfectly fine via the browser so I know it's not a user credential issue on that front. Any ideas?
-
It would be nice to have a surplus, however as funding is based on student numbers and there is more secondary school choice than ever, that means less in our schools. Our site has gone from highs of 1200 students in 2008 down to the mid 900's as additional secondary's in the area have opened, which is similar for some of the other schools in the MAT.
-
I'll be honest, but certainly within our MAT there just isn't sufficient budget to contemplate buying new PC's for the 5 schools, so the refurb market is the only option we have. It was not so bad in ye olden days when there was the government grants for IT, but now it's a lot harder as building maintenance and staff costs take up the vast majority of our budget. Running the W11 test, most of our refurb workstations we've put in in the last 2 years should be fine as they were all 3rd or 4th gen i3/i5's and had TMP chips so will get us by for another couple of years before we have to think about replacing them with maybe 8th gen or similar.
-
punctuation
-
That would depend if you have RDS licences in your agreement already, otherwise it could be a large cost (plus if you have a suitable server with enough resources to run the multiple instances of SIMS)
