Jump to content

amfony

Members
  • Posts

    161
  • Joined

  • Last visited

Everything posted by amfony

  1. favourites - theres a script on the wiki that changes the location of favourites to a nominated drive.
  2. Exactly right mate. Couldnt have put it better myself. Another one from the vault: "Ive locked my keys in the car, ill ask IT they look like they know how to break into cars ..." not a joke either.
  3. i couldnt fix the calculators even if i wanted to, it was missing parts! im good, but im not that good. I always always always get the "Hi can you fix my glasses? I lost the little screw" and thoes im prud to say ... i master haha
  4. @Joe90Bass -- not bad mate, not bad at all. haha
  5. What is the weirdest, strangest, totally not your job request that youve been asked to perform ... professionally speaking haha? to start things off: 1 On Friday i was called out of the office to deal with some teacher-via-student request: "Mr Year 6 teacher says these are broken, how long until you can fix them? He said to wait until you finish." *hands over about 10 calculators that are missing buttons and displays* 2 From a female member of the brass "Please come with me, i have a problem that i need you to fix immediatley ... look under there" *Dead mouse, next to a power board* ahhh no thanks!
  6. Thanks SynAck, quality work and thanks for the lightning reply. I have a curiosity question though if i may ... If ISA (which represents in my mind application layer filtering) and that is a fairly well recieved and recommended protection barrier amongst differing circles. Then doesnt that make the "DMZ" abit redundant as an idea? Im not saying you shouldnt avoid "egg shell" protection or have differing and multiple firewalls, but if you *can* have everything on the other side of a backend ISA firewall then where is the need for a DMZ? Maybe (very likley) i am just not aware of a scenario that defeats my thinking. Cheers again
  7. Hi Gang, I have some questions in general about the locally hosted external presence i have implemented and use. we host our schools external services locally on a fairly nice 5mb symmetrical link which provides us with about 4 usable public IPs. At present our external services all run off the one IP i have set as the red side of our external firewall, and ofcourse our A, MX and CNAME records all point (or end up pointing to) that 1 ip address. So - http://www.school.com; mail.school.com; fileaccess.school.com; all resolve to the one IP, being the red interface of the frotn end firewall, after processing this then passes on to the orange interface of the backend firewall (isa 2k4) which then again after processing passes to the green interface of the backend firewall and any relevent server traffic get forwared to the server segment. Easier break down is here. (from a previous core network question i had, but this describes the server segment inrelation to the 2 firewalls, and implmentation of, but not using of, the DMZ) Is there a better way to configure the externally facing servers? As in - should i be utilising multiple public IP's opposed to resolving everything to one? Am i doing something wrong here, or i should be looking to do something in a more effective way? Thanks alot for the info and help guys!!
  8. changing printer toners -- our campus at its longest is about 1km wide so ... yeah .. i need a monorail or tram or something!
  9. Ive done the same as all above with a mapped drive, but ive taken it another degree where allowing only access to a certain year/class dependant on what year a teacher teachers. Example: JSmith teachers 7-9, 11 The U:\ is mapped to all secondary (7-12 in aus) and then folders 10 and 12 are "Access denied" when accessed. Administration seem to like that - so we ran with it.
  10. Ha! Thats abit ironic, dont cha think. Thanks for the info Geoff.
  11. Hey gang, Thanks alot for the input. It is well appreciated. I have made some changes to the situation like (hopefully) obtaining some 4 x gigaBit modules for the optical switches which would achieve in part the "server on core" idea. As far as having the 2 optical switches there isnt much i can do about that in the near future as there seems to be no more money in the kitty haha. In saying that i have been doing some research into refubished/2nd hand core equipment which seem to be alot more cost effective. Any one have thuoghts positive or negative on refurbished network equipment they would like to share? Thanks again for the input. And happy birthday to EduGeek, very very nice site and resource!
  12. G'day gang, Just about to start a relative overhaul of the current network infrastructure since ive had to add some band-aid switches here and there because of large (and rapid) growth in some areas. In addition ive never had anyone comment on the actual network design, hopefully its all gravy but id like to hear your comments if things can be done better (or if its perfect haha). Things to note about the diag. 1) Each bottom colour surrounded item represents a building and its assosciated VLAN, all colours/VLAN are supposed to be unque but i think i may have doubled up on some. Router provides inter-vlan routing and acts as the virtual interfaces for all vlan dhcp scopes. 2) This also aplies to the server segment and the 24port 10/100 switch 3) Dashed lines represent fibre optic 3) At each building there is atleast 1x 24port 10/100 switch with GBIC interface 4) The router-to-optical swtich interface is via media converter from opticla to copper Things i would like help/clarification with: 1) The central router, should it be 'in-line' or should it be hanging off the optical switch only utilising one interface? Therefore enabling direct connection from the 12 port gigabit (with gbic) to the optical switch 2) Is the link between optical switches OK? (being optical patch link) These switches are physically on top of each other, but i seperated them just for diagram purposes. 3) A throw back to other thread ive been reading recently, where would be a good place to place an instance of packetFence here? 4) All servers (including http, smtp, remoteFileAccess ... web accessible) are in the server segment. My backend firewall is an ISA 2k4 box and the front side is a fairly plain netgear. Is this good or bad practice? Ive heard both in regards to isa applicaiton filterting as a plus, but server location (non-DMZ) as a negative. Thanks alot everyone, very much appreciated for any words of wisdom you can spin my way. Regards Anthony
  13. Hi guys, I am not so sure about the difficulty of Nagios install. I am no way a linux warrior, but id say im a 6/10. Ofcourse i installed Nagios on Ubuntu with a step-by-step how to, and if i didnt have that i would have definatley been lost. Back on topic though - i have been using groundwork for the last 2 days now and i used the install how to for ubuntu here. SourceForge.net: Files So far so good, very easy to navigate, very nice to look at and very "complete" (i am yet to hit an error because of missing/moved file , that type of thing). Easy to setup hosts, or let it discover. It still needs some work though, it failed to pick up any of my 3com gear instead labelling them something else. I think that this might be something in NAgios to setup. Still more to play with though but id say well worth throwing it on a vm server get to get your hands dirty.
  14. left it downloading all afternoon, then went to work with it and ... cant decompress the file. File is broken. suck. to. be. you (aka me). lets try again!! Anyone have it working yet and can comment pros and cons?
  15. i concur - that image is bananas! But well worth the download it seems to me. Ill check it out and see how we go. Heres hoping.
  16. Hi Chris, Thanks - that will stop me chasing my tail for a good couple of hours haha. Thanks again
  17. hello gang, Very simple question -- after reading some good reviews on Nagios here on this very enlightened forum i installed and configured. Now, i am looking at my end client monitoring, and wondering how i implement this? (if i do or not and i have misunderstood the purpose of nagios) How do i implement DHCP scopes to nagios, like setup a host group "Lab1" ip range between 192.168.1.50-80, like i say i might have misunderstood the purpose of nagios and should use it only for static items such as servers/services and infrastrucutre. Sorry for being simple - but i am just getting my feet wet with this. Thanks alot.
  18. Not easily i would think mate. How do you stop copying from ... id first of all think that there isnt going to be a permission or right that can achive this unfortunatley (if there is id love to hear it aswell). Maybe write a hook to intercept the file copy request to the HDD if you got the goods in programming ( i dont, dont even know if its possible, but i think this is how FSRM does it blockign/quota thing) . Only solution i can even concieve is append a prefix/suffix to all the files you dont want to copy away (like noCopy_filename.mp3) to write a service that loops looking for file with name noCopy_* then delete that stuff accordingly. One way to skin a cat, but ill be honest probably the worst way haha Id love to hear a solution to this aswell.
  19. hi guys, Thanks alot for the input and direction. Especially for the overview of the processors that really helped me out. So far we are now looking at a HP DL360 dual processor, 8 GB ram with SAS disks. Thanks to SynACK for the real world example of implmentation, that helped alot. Cheers!
  20. Thanks for the feeback so far guys. Geoff i have the moajority of that list already in our current server room, we have funnily enough a spare rack in there with nothing in it (i dont know i just work there). So i am happy with that part. Torledo - thanks for the tips, especially on the "pricing per processor" tidbit, wouldnt have even thought about that to be honest. I still have a question mark over my head about specs though. And traversing the Hp.com.au website confuses me more so. Maybe instead of thinking of what i can get, i should work the other way. As the high-end of processing and RAM utilization in our scenario, what would anybody recommend for a 500 concurrent connect-ed ISA Server (proxy,fw and logging) with a WebSense type webfilter running on it aswell? Thanks for the input. Edit: Ive narrowed down my inability to understand the processor type, models and brand implications as the source of my confusion, and to be honest since everything has been on a shoe string up until this point i am unaware of the proper place, scenario to place a multiple processor or core in a server enviroment. If anyone can help me with this is would be greatly appreciated. Example: Difference between Xeon and Opteron and its implications. In the Xeon range what are the differences between 5001 and 5999 models *example, are the difference THAT significant? And anything else you got to tell me basically! Again thanks for the time.
  21. Hello, Just a quick question regarding how do you (yes you) spec your server infrastructure? I am in the position now where i will be recommending hardware for about 100% increase in concurrent connections across all services. (making it approx max 500 concurrent connections for any 1 service, and very likely for the ISA/WF SRV). Whilst in the past i have suggested and 'felt out the situation' so to speak, i have never had a concrete method (or formula better) for providing specs for hardware, but to my credit never had under specced anything ive had to recommend. In addition to this -- we currently have a few (alot) tower based servers and with this new introduction might be looking at rack mounts for their obvious benifits, can any comment on any caveats with rack mounts i might have to look out for? Special hardware? Reliability? Thanks for your time guys.
  22. i dont know about points, but we are 280 pc/laptops with 2 fulltimers, we find it pretty tight at times but really just 'pressue days' they soon wear off.
  23. great Geoff. Thanks alot for the input mate! Cheers, Anthony
  24. Hello, I have a question about the linux implemenation of file system quotas and real-time file blocking ala FSRM in win2k3 r2. Is it possible to achieve this? After learning and testing the likewise open client i am now this one whisker away from migrating 2k3 r2 file server(s) to a ubuntu box(es). Another queston i have with linux in general - is the actual functional benifits of dansguardian (or derivitive) packages. In comparision to a surfcontrol/websense categorisation based system does it work as effectivley, more so, less so ... ? Hard to compare sure but i am sure some one has had both end of the specturm experience. Thanks for the help guys and gals. Regards, Anthony
  25. Hi - I have actually applied both solutions to all staff and students. I have created a active desktop that has all the goodies applied (like bgInfo but via html/vbscript) whilst maintaing a custom start menu. In addition i have implented some drop down menus to start office suite, re-run login scripts if in error state, and other apps that are part of the base image. I dont have security warnings - i instanciate the apps via object.shell. I think that BOTH models have their place, should we be creating real world environment - yes. Should we be automating and facilitating as much as we can - ofcourse yes. I even made a custom interface with bLean - but decided for a more realistic representation. Cheers! Great site by the way - i was really happy to find this site.
×
×
  • Create New...