Jump to content
EduGeek EdSec 2026 is Go! 27th Oct in Derby! Join us for a day of EdTech security focused talks, networking, and an evening social ×

ascott2

Members
  • Posts

    200
  • Joined

Everything posted by ascott2

  1. I wouldn't personally install anything that messes with an AD schema until there is official support for it. I guess that's just my paranoia though.
  2. openfiles /local are local file handles by the local machine and users, and by default machines don't audit them. You can switch it on running "openfiles /local on" or just try running openfiles without the /local switch. See here for further details Openfiles
  3. Exchange 2013 is not yet support on Server 2012 R2 just yet, as per Exchange Support For Windows Server 2012 R2 - 250 Hello - Site Home - TechNet Blogs It is believed to be coming in SP1 (CU4) due out some time in Q1.
  4. Assuming that you already have a blank distribution group set up and a csv something like this address,name [email protected],Joe Bloggs [email protected], John Smith Something like this should work $emails = Import-CSV C:\emailaddresses.csv foreach($email in $emails){ $newemail = $email.address Set-Distributiongroup -emailaddresses @{Add=$newemail} } This has not been tested but should at least set you on the right path.
  5. If you want it in powershell, this should do you $source = "G:\stf_info\techs\UNITeDownloads\login.csv" $target = "G:\stf_info\techs\UNITeDownloads\Archive" Move-Item $source ("$target\login{0:ddMMyy}.csv" -f(get-date)) and then just setup a scheduled task.
  6. There is a command built into Windows for this. Run Powershell as Administrator and run openfiles.
  7. If you need the permission but don't want them automatically appearing in your Outlook, append your command with -Automapping $false
  8. When they called me saying they were from Microsoft, I told them "Oh, I work for Microsoft too, which office do you work in?" never heard a thing since.
  9. This seems like a good start .net - How to check an exchange mailbox via powershell? - Stack Overflow
  10. Unfortunately you can't add an array to filesystemaccessrule as it is only expecting a string( well technically a fileaccess object) so you need to add each permission type individually, that was why I had used a loop in my example.
  11. Not tested but this should do it $folder_or_item = "C:\data\" $acl = Get-Acl $folder_or_item $rights =@("ReadAndExecute","Read","ListDirectory") foreach($right in $rights){ $accessRule = New-Object System.Security.AccessControl.FileSystemAccessRule($domuser,$right,"ContainerInherit, ObjectInherit","None","Allow") $acl.addaccessRule($accessrule) } Set-Acl $folder_or_item $acl
  12. ascott2

    Domain Name

    Microsoft's best practice used to be that your AD domain was different to your external so hence .local and .internal domain names. In recent years they have changed their mind and "Microsoft strongly recommends this option" of using a subdomain of your external domain name, and using split brain DNS you don't have to make the name publicly available.
  13. It references another script called Get-RandomString.ps1, which it can't find. It seems to expect it to be in the same folder as the main script.
  14. Strange as using a unique identifier like SAMAccountName, it shouldn't matter where it is, Set-ADUSer should find it. Out of interest if you modify your script to Get-ADUser rather than Set do you see the same results? If using get works you could modify your script to Import-module ActiveDirectory Import-CSV "C:\users.csv" | % { $User = $_.UserName $ID = $_.EmployeeID Get-ADUser $User | Set-ADUser -employeeID $ID }
  15. As Arthur points out exchange will use all available RAM just like SQL. This is to relieve the requirements on disk speeds to enable virtualization. If you don't give fixed RAM allocation Hyper-V will over subscribe and bring down the whole box. Dynamic RAM is not supported with exchange for this reason.
  16. Depending on what you want to do, development, systems administration, desktop support, Microsoft has a lot of software related certifications. For software development there is the MCPD, which can be aimed at web or desktop application development, MCSE(cloud software), MCTS, MCITP for a variety of Microsoft products. There are many other providers of certifications out there but Microsoft are the ones I am familiar with. If Microsoft is the way you want to go, take a look at Microsoft Certifications Path and FAQ | Microsoft Learning
  17. If the CSV is for purely just updating telephone numbers then all you need in the csv is the affected telephone attributes ir OfiicePhone, mobile etc. and some way of identifying the user it is associated with. You could have just the samaccountname and the numbers as a minimum, but as you said you wanted a sure check of users incase of name changes the minimum you would need is FirstName(AD=givenname),Surname(AD=sn), and the username(AD=samaccountname) plus any phone number attributes you intend on recording. However, it will do no harm leaving in the additional headers as we just pick out the columns we need. In keeping it like this it gives scope to use this csv for more than just numbers in the future. Personally, unless it's an attribute that isn't currently populated I don't use spreadsheets or csv's to manage the AD as it adds and extra overhead, instead update the AD directly, as that is the authoritive store(Unless you are getting your data from another source ofcourse ie your MIS). If you need to get the information in a spreadsheet for distribution for example you can always export the data from the AD.
  18. This is a rough and ready powershell script not tested, so try it on a test user. This assumes you have a csv file like Surname,Firstname,username,OfficePhone Bloggs,Joe,jbloggs,555-1234-5678 Import-CSV C:\usersphone.csv | foreach{ Get-ADUser -Filter {(sn -eq $_.Surname) -and (givenName -eq $_.FirstName) -and (samaccountname -eq $_.username)} | Set-ADUSer -OfficePhone $_.OfficePhone
  19. I got bored of trying around the 11-12 second mark so I wrote an app that will bash the buttons for me. It ran through every hurdle but am down to 2 seconds
  20. When I had a similar dilema we allowed exes to run from the Project/Debug folder so you could run from within vb express (the default build path when you click run), but deny the list folder permission for the student so they cant copy exes in there and run them.
  21. +1 for Sharepoint
  22. You could have a csv file holding all your software information in, like Path, Name C:\Program Files (x86)\TechSoft Design Tools\2D Design V2,2D Design etc. Then use Import-CSV C:\staffsoftware.csv | Foreach{ Startmenu $_.Path $_.Name} Not really sure this is much of a help as instead of having all the software in the scripts it just moved to a csv. I suppose you could have software everyone uses in one csv file all the staff stuff in one, all student software in another and specialist software in their own then depending on which groups you want you could import those individual csvs.
  23. I think your best bet would be to try and create a HTTP request from your script. I don't use vbs but maybe look around for MSXML2.XMLHTTP, which I think vbs can create an object of and perform get requests on websites from.
  24. System Centre Virtual Machine Manager can put a host into maintenance mode and live migrate to the best possible host.
×
×
  • Create New...