-
Posts
1,738 -
Joined
Content Type
Forums
News
20th
EduGeek EDIT Conference
Blogs
Everything posted by IrritableTech
-
I'm glad David has chipped in. I'd suggest his second option is the best way forward. You can tie your fortinet into AD and allow access to your SSL web portal. I believe you can create different portal pages for different security groups if you want. You can customize the portal, and create a series of bookmarks. These could be links to shares on your network, intranet sites or RDP servers for example. I'd be cautious about external sims access though personally. I'd probably only allow the very well trained and most security conscious staff access to that particular service.
-
Tracing connections from patch panels to wall ports
IrritableTech replied to Kalny's topic in Wired Networks
We use a tone generator to find unlabeled ports, but also our lan tester has a couple of useful features. We bought the extra ends, which could be plugged into all the network points in a room for example, and each testing end has an ID number which shows up on the tester. When it detects it is connected to a switch, you can have it send data, which makes the activity light flash in a regular pattern. This is the one we went for in the end (oh you can get a tone generator that works with it as well). Buy Video, Data & Voice Wiring Testers Wiring Tester,Voice,Data & Video NC-500 Greenlee NC-500 online from RS for next day delivery. -
Don't forget to look at your infrastructure first. Is it able to cope with all these additional devices? Often it depends on your current infrastructure to put in place much of the client separation and security you should really have. Do you run radius for example, or need a solution where the wireless controller can do a lot of it for you? Will you be able to keep voice traffic separate to ensure quality if you go down that route? Regarding wireless, you need to look at coverage vs. density. Do you want full site coverage, how dense will the deployment of devices be across site? What do you expect your devices to be accessing? How bandwidth hungry will they be? Cheap solutions can work really well. Meraki and Ubiquiti are a good starting point, but they lack quite a few of the features of the more expensive brands, Ruckus, Muru, Aruba, Cisco etc. With regards to telecommunications - It is likely that your investment will last another 10-15 years. It's an important decision to get right. How are you going to route your external calls? You might be able to use your internet connection, but is it resilient, is there bandwidth free, can you apply QoS? Depending on your external demands, a more traditional medium might prove cheaper - ISDN for example. VoIP as a term gets confused I think. Handsets which plug into your network points could be VoIP, but your outside calls may go over analogue lines. Hybrid systems are available - they could use existing telephone wires around the building, but allow you to use digital or analogue handsets, and IP based handsets in the future. You ask the question about if these are different projects, or the same... well that entirely depends on if you see wireless handsets now, or in the future. Wifi telephones can be a funny one to get working, migrating from one access point to another. You'll get lots of good advice on here - but be prepared for a few questions too!
-
You can probably add 2FA into the mix as well on your email account - and if you can't, perhaps you should be thinking about hosting it elsewhere.
-
There was a leak of this news story this morning... Paypal put up an announcement that ebay were asking users to change passwords before ebay did. Lots of speculation at that point. Data leaked late Feb early March... eBay Inc. To Ask eBay Users To Change Passwords | ebay inc
-
Agreed, password managers are the way to go these days. I'm a heavy Lastpass user with 2FA built in. $12 a year is nothing.
-
Allerton Bywater Primary School - Leeds/Castleford Contract Type: Fixed Term Appointment Hours per Week: 25 TTO plus 15 Days Closing date: 09 June 2014 Salary details: C1 £19,817 - £21,734 (pro rata) ICT Technician This has just gone out for one of our feeder primary schools. I know the school quite well, but am not in any way connected with the recruitment process.
-
School URL not visible to me
IrritableTech replied to SimpleSi's topic in Internet Related/Filtering/Firewall
Doesn't render to well though at the moment. I'm guessing some of the content is coming from www. -
School URL not visible to me
IrritableTech replied to SimpleSi's topic in Internet Related/Filtering/Firewall
I can get to your naked domain, but not the www's. -
Speech to Text: Tablet suggestions?
IrritableTech replied to jmair's topic in Mobile Devices & Tablets
Sorry for the confusion. When I last tried it, I found the android tried to do it online (we had issues with our LEA and their firewall), eventually failed, then tried locally causing big delays. Even when taking the device home to avoid the filter, I found it slow. This was about 18 months ago now though. The dragon option looks good though. Only issue seems to be that you need to dictate into the app, then copy or send it to somewhere useful. iOS dictation can be used anywhere you can input text. -
Speech to Text: Tablet suggestions?
IrritableTech replied to jmair's topic in Mobile Devices & Tablets
'fraid not. :-) Apple much more accurate and quicker. Your mileage may vary though - It could come down to accents, speed of speech etc. -
Speech to Text: Tablet suggestions?
IrritableTech replied to jmair's topic in Mobile Devices & Tablets
We've found iOS better than android with this. iPads need wifi/3G to do it and decider the speech on Apple servers, where as you can download a speech recognition addon with android, and it's all done in the device. -
Just an update to the 2950 situation... A council network team representative has just confirmed to me that they have no interest in reclaiming the switches. Feel free to wipe the password and do what you will with them... Cisco Catalyst Fixed Configuration Layer 2 and Layer 3 Switches - Cisco When looking at ours we found the first 8 ports were configured for both our Admin and VoIP VLAN. In the past, this would have been useful to know. Some of our smaller primaries only had a few devices on their admin networks, but we maintained a small switch to get them running. Anyone else care to share any surprises?!
-
On our Procurve kit we've got ip directed-broadcast ip udp-bcast-forward And in the vlan where our WOL packets come from... ip forward-protocol udp 10.1.2.255 9 ip forward-protocol udp 10.1.3.255 9 ip forward-protocol udp 10.1.4.255 9 etc. In fact, I probably copied what was documented here... ProCurve Wake on lan - FOGProject Wiki
-
Ok, so is ours... I've just created a test user on our google apps management portal, and then run GADS - the test user was suspended because we have 'Suspend Google Apps accounts not found in LDAP, instead of deleting them' set. I then added the user in LDAP exactly as I previously had in the google apps management portal. Now I've run GADS once more - I can confirm it re-enabled the account, and gave the google account a unique ID so any name or email address changes in the future should work correctly. Hopefully you'll have the same result once you get it running again.
-
This probably depends on your 'unique identifier Attirbute'. What is is set as in GADS?
-
Hello @synaesthesia We have about a dozen schools on their hosted environment. A mixture of fibre, FTTC and ADSL. Because of the nature of the product, an issue can cause problems to many schools, but allows for greater redundancy than each school could afford. For example we had an issue last week with some packet loss - things were running pretty well, but monitoring the connection I could see some issues. SB identified the issue within a fortinet box, and were able to bring the backup fortinet online - nobody noticed the change over, but the packet loss returned to normal. A fix we couldn't have applied so quickly if we ran the box in school. I know there can be issues with IP conflicts - although we haven't experienced any in any of our schools. If there had have been, I'd quite happily re-IP'ed where required. The last time I did it, it wasn't as big a deal as I thought it would be. Support is generally very good. The support team are pretty knowledgeable and helpful. There was a period in March where support calls were on hold for a long time. They had an large influx of customers who left orders late (my own LEA changed their product, and about 80% left for other providers for example [we moved four schools in March ourselves]) and this increased the calls. I know they've added to the support team in recent weeks. I'll DM you my number if you want a chat.
-
Who you use to provide your line? Schools Broadband What filtering system do you use? Lightspeed Is that filtering system provided by your ISP - do you use a filtering system on top of what they provide? Yes - we manage some classrooms with ABTutor, but it's more of an internet on/off thing. Are you happy with those services? Yep, pretty happy. Is anyone at larger schools providing any service to any other local/feeder schools such as filtering? We did look at this for a partner primary who geographically can't get a great connection. It's still a possibility if they out grow their connection before BT upgrade.
-
Any filtering provided to schools without any level of reporting can't pass the new ofsted esafety guidelines surely? Primary or secondary. I know that exa will sell you a NetAsk box, which will help with AD integration and I'm told reporting. Needs to be a standard feature if you ask me, unless you are putting another filtering solution on the end of their line. Remember to compare apples with apples. A feature rich solution can not be compared with a bare bones connection on cost, reliability or service.
-
Lightspeed - Google Issue
IrritableTech replied to Sam_Brown's topic in Internet Related/Filtering/Firewall
Our supplier made me aware of this earlier. I believe lightspeed have fixed the issue now. -
No bother. Keep meaning to eBay some of the kit we don't use anymore.
-
Think i've got a J4893A - mini-GBIC module for 4108gl knocking about here - do you want me to check and get back to you with a price? It's used, but working perfectly last time it was powered up.
-
Probably need more bandwidth and additional IP range.
IrritableTech replied to speckytecky's topic in Wired Networks
It gives some protection yes, but it is possible to VLAN hop. It's not to be relied upon as secure I've always been led to believe. It is extremely unlikely that someone is going to be able to capture all the packets of a conversation on a switched network (unless by some freak of luck they happen to get a mirrored port) and rebuild the audio. If you use the same range for your voip as your curriculum machines there is a chance someone could try and helpfully reconfigure it for you though I guess - but this is where standard security management should be practised. VLAN if you can yes, absolutely - but it doesn't have to be if it's beyond your equipment, budget or expertise.
