Stuart_C
Members-
Posts
1,736 -
Joined
-
Last visited
Content Type
Forums
News
20th
EduGeek EDIT Conference
Blogs
Everything posted by Stuart_C
-
been there, done that got the t-shirt. When I did it there's a SupportNet KB article that details all the steps to go through. If your sitting down... It was straight forward and easy. The only mistakle I made is that there is a box to tick on the SQL server setup to allow mixed authentication (windows and SQL) that I forgot to tick. Sorted with the management studio though.
-
Well that's good news. I've got a 2K3 server at the minute that I'm planning to upgrade to 2K8 R2 at easter. Follwoing that it's the migration to SQL 2008 in the summer!
-
Hi there, I've recently had a few crashes in SIMS and the support net help for the error was try running the DB diagnostics/Validate memberships and if the problem persists then contact support. Whilst I have no problem with this technically I can't remember if it requires everyone to be out of SIMS or if it's just prefereable. I also think that you can use SIMS whilst it's running but it slows it down massively. Does anyone know? And roughly how long it takes. I think all the info is there when you run the routine, I'd like to know before i get to that stage. It's just a case of when I do it and whether i need to warn people it might be slow or to bully them out of SIMS whilst I run it.
-
Enable active desktop, then restrict changed to that desktop.
-
Can you set the "log in at certain times" feature to be assigned to a group? When students are naughty they get banned from the comptuers. This is a pain, if I could restrict theuir login time's to lessons it would ge great. However it's a pain to keep having to set it up and then un set it up It would be great if I could have a group with the timings set (and a few other restrictions) then just add each naughty child to that group. Currently we have a vanilla Win2k3 network though I'm hoping ot migrate to 2K8 R2 at easter,
-
Nope. Thought it might be to do with permissions on the folder with the start menu. It's on the local disk and if the user is in a different domain... but that didn't seem to work when I changed the folder permissions.
-
Nothing as far as I can see. Just doesn't re-direct the start menu. That seems to be the only thing that goes wrong. The rest of the policy applies correctly... Although as I type this I've just had an idea about permissions... Let me have a look and get back to you.
-
I was wondering who out there does or doesn't use their .sch.uk domain name? Being an indipendent shcool we are not tied into "having" to do anything so I was wondering who out there used theirs, and if not what were you using and why? The reason for my question is someone has got the head worked up about chaning our domain name (right AFTER we've had new prospectuses and a website created ). I really don't like the idea I prefer that we can be identified as a school. so I was canvassing opinions.
-
Ah, found that. Cheers... I'll think I'll wait for a quite time next week when I can give it a go with a minimum of risk and disruption. Thanks for that. I'll post back next week with an update of how I got on.
-
Thanks for the quick response, if I could just ask for a bit more help. Assuming that I can overcome my own stupitidy and read this correctly... Given that i don't have a specific "Allow FTP access" rule I'm allowing everything. Also given that I'm not hosting the FTP site I just want to get on other FTP site's on the internet from here... I would open the firewall policy tab, using the toolbox on the right hand side expand the "all protocols'" section find FTP and untick "FTP Access Filter". This should allow proper authentication? Second question is what is the downside to doing this? i.e am I going to cock anything else up?
-
I'm having an issue getting propper access to FTP sites. I can log in fine but every time I do I get read only access. Our set up is this. Win2K3 ISA 2006 Server connecting to a hardware firewall (netscreen 5 XP). This acts as router connecting our two networks and the internet together. I aslo have a second "back door" fire wall plugged into the network I am on that only I know about that's plugged into the internet. Everyone's default gateway is the ISA server and the ISA server's default gateway in the firewall. When people try and connect to an FTP site they can read from it even if it requires a log in and does not support anonymous access. However every time they try and write/delete they are greated with an 550 error, access denied. If I alter my default gateway to my back door firewall I connect and can write/delete fine. This leads me to believe that the issue is with the config on my ISA server or the firewall. When normal users try and connect through Windows explorer you get an warning message that the "Proxy is not configured to allow full access". However I don't get this message as I am using a different proxy and can't get access. I still have our ISA server as the default gateway. That would imply the issue is ont he ISA server. And it was a while ago but I think this started when I put in the ISA server... I've attached the ISA firewall policy. I know it's rubbish but I had to set it up in a rush and haven't had the opportunity to correct it (or lear how to use it properly). However the hardware firewall is actually protecting my network so I'm relatively happy for the ISA to pass all traffic through. As far as I understand I've got it to allow all traffic, from any source to any destination. The worse (infact stupid) news is that I can't currently get into my hardware firewall admin . Whilst I think I know what I need to do people get a bit shirty if I disconnect the internet, however briefly which is what I need to do to resolve. However I am 95% sure that the outgoing rule on the firewall is to allow all traffic out. So why the heck can't I connect to FTP sites properly? My next test will be to insert a computer between the ISA and the firewall (when I can disconnect them) and see if I can get access to FTP sites thus testing if it's the ISA server or the firewall. Hopefully at the same time I can get access to the firewall admin. However I won't have oportunity to do that for a week or so if I'm lucky so I was wondering if anyone might have any pointers in the mean time...
-
I've tried but I can't run cross forrest planning from either domain!
-
I have a two domains set up, Domain1 and Domain2. There is a trust relationship between the two domains however I am having a slight issue with a single policy. I have a user in domain1 who needs to log into a PC in domain2. I have configured ComputerConfiguration\Administrative Templates\System\Group Policy\Allow Cross-Forest User Policy and Roaming Profiles. for the PC in domain2 and when the users logs in the receive the correct locked down desktop however the start menu is not re-directed. In domain1 when a user logs into a PC the start menu is re-directed to a specific folder for that PC. Depending on which security group they belong to they get a slightly different start menu. This all works fine. When my user in domain1 logs into the domain2 PC they don't get a redirected startmenu, they dont get the comptuers full start menu they just get the one from %userprofile%\startmenu. Why?
-
World wide telescope, that's the bunny! cheers!
-
No, wasn't that some kind of thing for posting pictures of where you'd been and stitching them together... This was the app where they were zooming round sapce looking at the plantes, constallations etc. You could click on a point and it would tell you where it was in space, I know it was billed as turing your PC into a telescope. I got the URL for "eyeonearth" the water/air quality thing but I seem to have missed the URL for the space one
-
Can anyone who's been to BETT (or is at BETT now ) remember what the URL is for that web all Microsoft are demo-ing where you can zoom round space, look at the planets and the constallation. Cheers.
-
In case the OP is still interested... All our teacher are assigned to the "Class Teacher" role. In order to give them the facility to use Reports|Print Timetables I've created a custom group with the following ssecurity keys. Student|Timetable and Accademic Classes|View (All) Student|Timetable and Accademic Classes|Edit (All) Curriculum|Classroom Staff|Edit (All) Curriculum|Timetable Printing|View (All) Curriculum|Timetable Printing|Edit (All) This won't work on it's own. When I tried it I couldn't get the room detail and the student details. However when used in combination with the "Class Teacher" group it works. I suppose I could go looking for the missing keys but there is only so much trial and error I can put up with.
-
So presumably somewhere in the setup there is the option to choose what to sync just like my Win mobile device? And do I still need to hack it as per the link I posted at the start so the computer is OK with both devices?
-
So apparently it's really important that our deputy head be able to synchronise his IPhone with his work PC and home PC to keep them both up to date. After getting over the shock that our deputy head actually knew how to work his Outlook Calendar I started to have a bit of a look into it (grudgingly). Is there an easy way to synchrise the iPhone with 2 computers? I found this with requires that I mess around with I tunes a little. He only wants to synchronise the calendar at work, not the whole of his music library and photo's. As I lack an iPhone and as he's less than enthusiastic about me messing around and seeing what happens I was hoping someone could give me some pointers. One additional question. The Phone will only sync the default calendar won't it? Or at least any created in his default outlook datafile. It doesn't seem to pick up all the shared one's that reside on our MDaemon server as far as I can see. He's paranoid that it will put them all on and whislt I don't think it will, I can't be sure until I try it.
-
I'll give you the Polythene wrap it will come in. The rest of the "information" I suspect will be forced on us regardless. Not really complaining just noting that in order to "go green" I have to print more stuff out.
-
Just got an E-mail from BETT with my E-badge. "As you have registered Go Green, you will not receive a badge in the post. Simply print off this email..":confused: We are not going to send you a printed badge, simply print this and then turn up and get your badge printed. Surely this has increaed the amount of paper used??? Surely all I've really done is save Emap on postage?
-
Share permissions tend to come first. The actually NTFS permission you can use can be the same or lower than the permissions on the share. Thus if you have Full control on the share you can use, read, Change, and Full Controll NTF permissions. If you have Change on the share you can use Change and Read and if you have read on the share then you can only use read NTFS permissions. Folder NTFS permissions are, by default, applied from the top down with lower level's inheriting the permissions from those above. Ofcourse it's rarely that simple and usualy involves a lot of blocked inheirtance, denied groups, allowed groups and setting of permissions to get the set up correct for a real life organisation.
-
I've a couple of HP's that do this. I think it's to to with some kind of conflict between the printer driver (PCL6) and the Print management software (Print Manager Plus). I can get it to work using the PCL 5 driver.
-
The wife's came from Amazon.
-
Is there a sensible explanation as to why a USB drive would work fine in some comptuers but then require Admin rights on some others? Actually as it type I think that someone else had the same problem on that computer. So what on the computer is missing that a USB drive won't install without admin rights?
