Jump to content
EduGeek EdSec 2026 is Go! 27th Oct in Derby! Join us for a day of EdTech security focused talks, networking, and an evening social ×

Boredguy

Members
  • Posts

    4,103
  • Joined

  • Last visited

Everything posted by Boredguy

  1. We already have SPF and DKIM, this rule is just another line of defence in case something slips through all the other rules.
  2. Its for any external services you might have that should be using your external address for a valid reason, such as remote helpdesk etc If you don't have any, then you do not need the exception
  3. We have setup a mail rule in 365 so that any e-mail that is sent from outside the organisation with one of our domain names automatically gets a warning message Apply rule to messages from users that are 'Outside the organization' and sent to users that are 'Inside the organization' and where the From address contains 'contoso.com' prepend message subject with '[sPOOFED ADDRESS]' and prepend '*** Warning Message to your users ***' and fallback to 'wrap' if unable to apply. and set the spam confidence level to '6' except when the From address contains '[email protected]'
  4. We used a straightforward IMAP migration (after ensuring we had the firewall ports opened up). We requested staff provided us with their passwords for the migration as we would then set them to expired at the end of that holiday so they were only known for the few days we were doing the migrations. We Synchronised the bulk of the e-mails before we updated the MX record, and then ran the sync again once it was done to ensure all e-mails had gotten to Office 365. We asked staff to ensure they exported to CSV any contacts or Calendar information they wanted, which the vast majority did not do as they wanted a fresh start. For students, we did not bother migrating their mailboxes over as there was no real need as they didn't have much content in them.
  5. Here is a good question. If we already have a valid SSL certificate on our current ZoneDirector, can that get applied to the SmartZone, so that users still get pointed to the FQDN of our choice (such as wifi.school.sch.uk), instead of the IP/Name of the Smartzone?
  6. Doesn't Smartzone also have a yearly per AP cost after the initial migration?
  7. Tried the following steps? Open Server Manager. Navigate to the Remote Desktop Services navigation area. Select the Overview branch. Under the Deployment Overview area, select Edit Deployment Properties from the Tasks menu. Select the RD Licensing page of the displayed dialog. Specify the licensing mode and the correct license server, then click OK.
  8. How about 400-500 tardis (tardi?) and no @ICTDirect_Dave it wasn't a typo yesterday
  9. What you have some Purple Fluffy Unicorn theme to go with the Pink Unicorn?
  10. It's very rare that we need to ask staff for their password. Impero lets us unlock the workstation is required (and that action is logged) If we need to check something on 365 that they have raised an issue with, we can grant ourselves permissions via the console to login as their account (again all logged via the systems) We used to hold details of students passwords to aid staff when student X forgot it, but we have long since even replaced that method. The idea of the IT staff keeping a list of staff passwords is just mad imo.
  11. Matthew, do you not use 365 at work? If so you've already likely got home use available for yourself using your work credentials
  12. There should be an Online Service Activation Tab, which would contain your licence ID and number of orders pending
  13. A1 Plus is automatically provided if your domain is an educational one, and nothing to do with your OVS agreement (that's normally just A1) To link your ProPlus, login to the MS Volume Licence Centre, and you should have a link in there to activate your provision with your 365 Tenancy
  14. The information available back in 2015 was there was not a way to disable the Like feature, and to be honest, until you mentioned it I'd forgotten it even existed
  15. When A1 Plus first came out, existing tenancy's had to enable it to get the licences provisioned. I would expect that new tenancy's had that enabled by default. Any reason for not setting up the Azure Sync currently. You can then at least limit your users to only getting the specific parts of the licence you will want to use eventually (such as disabling Exchange so they don't try and send e-mails and wonder why they don't get a reply!)
  16. Our EES agreement provided us with Office 365 A1 for X (free cost, but have to activate it each year) But we also get the Office 365 A1 Plus for X which includes the rights to download the client and is not part of the EES validation check.
  17. There is a self signup option with A1 Plus that might explain it.
  18. We use Cacti to monitor all our netgear switches and never get near the limit on our 1Gb fibre, even with 90 stations hanging off the end of it.
  19. @Ditto we've been using the user based Safetynet and Unify for over a year now, and always warn our users to allow upto 15 minutes after they change their network password for it to be synchronised with Safetynet. It's normally faster than that as we have the AD tool checking for password changes every 2 minutes, but the upload only runs every 10-15. There was an issue earlier this week where new passwords were not being syncronised correctly, but was resolved reasonably quickly. With regards the SSL certificate, we have the certificate installed on all our stations via GPO and have no issues with it on Edge, Chome or Safari. It you do not have it installed, we've found that only google complains, and all the other sites still work as normal.
  20. like Chockster, ours goes direct to smtp.office365.com on 587 I did have to end up editing the server details directly in the database as our Solus UI didn't want to give me the option to edit it normally
  21. no because it's the CURRENT_USER not LOCAL_MACHINE
  22. Also started You last night. Won't look at bookshops the same way again
  23. @DJ-1701 is not allowed to win. That is my comment
  24. well the doll wasn't the likeness, but we have a few hundred 3D printed ones ready for a good home
  25. With platforms like Office365, it's not just a black and white case of "this is e-mail, this is word" as they are all interconnected now. Certainly I'd be making use of the OneDrive storage purely for the auditing features incase the device gets misplaced. While you can remote wipe the ipad, you also have the backup of knowing a) the files are safe still, b) if anyone has accessed them, so you have the extra protection under GDPR if it does disappear (which you wouldn't have been able to do had a free Outlook account been used)
×
×
  • Create New...