Jump to content

joe90bass

Members
  • Posts

    1,375
  • Joined

  • Last visited

Everything posted by joe90bass

  1. @john, I can't remember exactly what. but mrbios is right with the tick boxes, I know I had to look at profiles and folder redirection as well. I ended up creating a new policy in a test OU and once happy then going live.
  2. We had some very odd issues with whole home dirs going, and in some cases just folders/files. Not a pleasant place to be for us or the users!
  3. 2 minutes 9 seconds is enough for me!
  4. On my 2008r2 terminal server it was down to profiles and folder redirection. I'm on leave now and can't remember the specifics though, sorry.....
  5. we moved two sites to one two miles away two years ago - pfi not bsf though my advice.. you'll be very lucky if you actually get 8 weeks. we were supposed to have 5 and only had 4. I second don't underestimate the time jobs will take, prioritise rooms as once staff/kids are in day to day tasks will mean outstanding rooms/jobs will take much longer. And DON'T trust anyone, double check any work i.e. cabling,etc and any promises! Happy to answer any questions or to have a chat if you want.
  6. It's on a par with a completely hung server that requires you to press the power-off button for five seconds and then restart it! That's when I start praying big time to the silicon gods! @Elsiegee it sounds to me like you've earned a cup of tea and biscuit break this morning!
  7. Okay here on IE8, will try on my N900 and post back
  8. Okay, so I'm barking up the wrong tree with that as an issue, or at least symptom of it Just so frustrating as I'm so close to getting it working.......
  9. It does show the name if I use 3128 in the proxy address (i.e squid direct) if I got to 8080 (DG) then no it just shows 127.0.0.1 in the log no user name
  10. The -USER- option is set in the template, but only "-" shows on the block page. It shows the PC that the request came from and the group though. It's as if it's not authenticating, but I can't work out why! There's some talk of kerberos issues between Squid 3 and DG, just trying to find out which exact version of Squid I'm running. Webmin shows 3.0 edit: running Squid 3.0 stable 19
  11. I've amended the block page to show the group that's being blocked and it is group1 no_web_access, howEver, as above I'm in group 5!
  12. I understood it was banning me as it's using group 1 as the 'deny all' as it hasn't picked my userID up in the group it should be in. I know very little about Squid/DG but when hitting DG first and looking at the Squid logs I would expect to see DG passing my IP and userID to squid, but it's not I only see 127.0.0.1. If this is correct then I'm wasting my time on the toubleshooting I'm trying. I've done all the tests (winbind, ntlm_auth command line, etc) I can find to verify that squid is picking up the user IDs from AD correctly (and it is, or seems to be) I'll take a look at editing the denied page to see what that throws up- cheers!
  13. It means it's blocking the default group 1 as expected, but I'm in group 5 which has (or should have!) unrestricted access
  14. From the squid access.log From Dansguardian access.log Cheers!
  15. Yes, saw that earlier and thought I'd cracked it! But already have proxy-basic and proxy-ntlm uncommented
  16. it was commented out, it's currently enabled but set to anonymizelogs = off
  17. I have Squid 3 and DG 2.10.1.1 installed on Ubuntu 10.04 and via winbind on the domain. I have 5 groups in DG with group 1 being access denied. I've put users into groups via the usermap2.sh script and I've verified that they are in the right groups in DG. When browsing the web though all users are filtered by group1 (access denied) looking at the DG log via webmin shows but I do have ntlm_auth set! I'm assuming I have a squid config error not a DG one. When looking at the access.log in Squid I can see that when I go direct to squid on port 3128 my IP and username are logged, when going via DG it shows as 127.0.0.1 with no username. edit: This then gets forwarded to our LA proxy and the username and password is included in the squid.conf (this part works!)
  18. I'm at exactly the same stage you were! Could you post what the minor settings were that needed changing. Cheers!
  19. Top man, it's now working Now to get my head around Dansguardian and the filtering groups!
  20. That feature gave me great amusement in my last job! Of particular joy was that there was no beep or anything before you did the page, just the voice coming out of the phone! I also had great fun changing peoples names (it was a small company!) Don't think it can be done on our LA run Cisco system.
  21. Ah, didn't know about the must renew every year bit, which could explain why when I login I no longer see any calls available. I was under the impression it was because I had used my two up a few years back and we had no more, good to know we (hopefully) have two every year!
  22. I've got in there already, but not the never_direct. I'll give that a try when I'm back in on Monday- Thanks
  23. LA proxy - the 192.168.248.201 address
  24. Trying again using our squid proxy I get The above error looks like a DNS issue, but I can do nslookups no problem on the server. Very confused! edit: Further testing seems to indicate issues with parts of web pages. Sky.com seems to load most of the page and then hang, bbc.co.uk takes forever, edugeek takes a long time and is then completely unformatted but http://www.waterways.org.uk loads quickly and correctly! I'm trying to work out what Squid is objecting to in these pages!
  25. I don't get flexi-time but I'm often lucky enough to get flexible working when needed. Last week we had a(nother) crisis with the sale of our house meaning I needed to take the afternoon off (school hols time luckily) to make numerous urgent phone calls. I dropped our head an e-mail explaining and said the work I was doing could be done remotely and I'd make the time up that evening, this was okay with her. During term time though it is very dependant on what's going on. I dont see me ever getting flexi time in my contract though!
×
×
  • Create New...