ITGURU
Members-
Posts
2,576 -
Joined
-
Last visited
Content Type
Forums
News
20th
EduGeek EDIT Conference
Blogs
Everything posted by ITGURU
-
HP System Insight Manager for monitoring Down/Up of devices with static IPS along with server monitoring i.e reporting of failed NIC links, HDD etc Syslog for switch log central reporting the Dude for network mapping and link status also.
-
Need a bit of help with this - created a group, a user and added to the policy. However on the ipad it asks for username and password but doesn't accept it, as the policy is for computer authentication rather than user authentication? The NPS log says Reason: The connection request did not match any configured network policy.
-
Is it possible, and how would I duplicate the policies so that I could authenticate the ios devices with a username and password only, but still keep the windows devices as computer authentication. Essentially create an apple user account and use that account for the ipads?
-
Any help sites on setting up ipads for RADIUS authentication when using computer authentication? rather than user.
-
Thanks, looks interesting reading - it did just occur to me as to whether ipads would support radius authentication, so guess they need to be a separate SSID and VLAN so that even if the PSK is retrieved they would only be able to connect to the apple vlan and not vlan 1 (main network) ?
-
Think it was just that specific machine as tested with a couple of others and they re-initiate the connection. For non domain devices (windows) it comes up asking for authentication but as as its computer authentication, entering a domain username and password fails the connection, is that right? Also, when I connect to the network I just get a warning saying the certificate isn't trusted, but it still connects, so is this right, and prevents the need for having local certificates? However I exported the local certificate from the NPS server and imported to the local machine but the message still came up./
-
Thanks , I think i'm almost there! Taken an existing client and connected with the success showing in NPS server logs/event viewer. However, I'm assuming that the client would already need to be a member of the domain, by adding through a hardwire connection? Also, if I close the lid, and client goes to sleep, when it wakes up locked - it says there are no logon servers. If I switch user, log on local as admin, the connection then re-connects. Have I missed something? Fast re-connect is ticked.
-
Thanks, do you know of any websites that would help me get this set up easily? I assume clients would still need a certificate issuing through GPO? If the certificate services server were to change, is that an easy change to make, without affecting the end clients?
-
Should 'Password never expires be ticked for users in AD'?
ITGURU replied to edutech4schools's topic in Windows Server 2012
Yes, because we don't really get many users that need to change their password, which is why we don't have a policy set to change every 30 days etc. -
I will be setting up a new Wireless network over the summer, and will be changing all domain joined devices over to the new wireless. Currently I use WPA2 AES for authentication with a key. Is this still the most preferred method these days, or is it beneficial to use a NPS / RADIUS configuration for domain joined devices? I have separate SSIDs for guests etc, so the main wireless would only be for domain devices. I have NPS deployed for switches as radius clients for login, so have an existing setup. However, am I right that clients need to have certificates for RADIUS authentication or can it be done by Computer authentication? Does an NPS setup create more traffic than using a key, as want to keep wireless traffic to a minimum. What are your thoughts/or how do you have your wireless set up? Thanks.
-
Should 'Password never expires be ticked for users in AD'?
ITGURU replied to edutech4schools's topic in Windows Server 2012
Both, Password never expires and user cannot change password is ticked for all our users. If they need to change their password they come to us. If unticked, it would students that know each others password to log someone else on, change their password, then the original student wouldn't be able to login. -
I've always been weary of large drives - I only back up to 1TB drives. I used to have 3 x 3TB drives, but all 3 ended up with bad sector within the first year, AS for the 1TB drives they're all still error free 5 years on! Lessons are learnt - always back up twice!
-
Wireless N sufficient enough for 15+ laptops?
ITGURU replied to broomop's topic in Wireless Networks
We regularly have 30 laptops connected through one D-Link Wireless N AP - typically we get 2 or 3 where it doesn't map all the drives first time, but a log off and back on sorts this. They are all single band 2.4ghz. -
Block internet access for pupils at lunchtime
ITGURU replied to LeMarchand's topic in Internet Related/Filtering/Firewall
Are you not using a filtering product which supports this? If we wanted to we could create a new policy where games are open and break and lunchtimes only and the normal policy applies out of these times.. -
Currently I have each physical server with 4 NICS which connect to copper ports on a core switch that has a combination of copper ports and 10GB SFP ports, along with another 10GB core switch which only has SFP ports and no copper. The plan is to do away with the main core, and just keep the second core , then have 2 x gigabit L2+ switches to connect the servers to, with each switch having a 10GB uplink to the second core. Currently all servers has all 4 x 1 GB links set as LACP bonded together to the same switch. Is it possible to have 2 of the copper links in 1 switch, the other 2 in the second switch to provide redundancy in the case of 1 of the switches failing? Using this for both load balancing and redundancy? Is this only possible if the 2 switches are stacked together or how would I go about this if it's possible? Can I leave all 4 teamed in Server 2012 R2, plug 2 into 1 switch, 2 into the other and then make switch/and or Server teaming settings to get this setup? Thanks.
-
Hi I regularly connect to our network via SSTP VPN using the routing and remote access capability of Windows Server 2012 R2. I notice that when i am connected, CPU spikes as shown below, but jumps upto around 35% - it's always constant - it doesn't come and go. As soon as I disconnect the connection, the service drops off complete back to CPU idling only. Anyone else noticed this, or know what could be causing it? It happens even when just connected, and don't have anything open across the connection. Tried from multiple computers both on Windows 8. Thanks.
-
As I regularly scan our staff roaming profiles, the downloads folder is always the biggest with files dating back years as never had to reset the profiles with duplicate files ending in (1), (2) etc when they open resources several times. All I did was took a backup of all profiles - excluded the 'downloads' folder from the profile and had ZERO complaints as me where the files are. backup was just in-case. The folder doesn't appear in explorer and the only way would be to manually navigate to C:\users\profile\downloads to find the files. If they want to keep anything, they will choose 'save' and save to their area.
-
I used to get logged on user information through a VNC program, however it wasn't very reliable as if a user had locked the computer, or used switch user (and was on the ctrl, alt, delete screen) - it would still show the logged on user in the background.
-
Yes have been working with Mick and the other support chaps. It's got 13gb ram and about 12 cores. Peak usage is am about 300 concurrent users. Definitely not a resource issue which they have confirmed.
-
yes, they keep taking logs each time for the last 6 months!
-
Hi Does anyone else run CensorNet on hyper-v and ever had any crashing issues?? Also, what spec are you running and how many users? We've had censornet for 6 months and yet to have a month without any crashes, which seems to be down to the image filtering. Does anyone else run the image filter for their policy groups and ever had any problems? Thanks.
-
What's your average broadband traffic at peak times? We've had 100 meg for several years and average 40meg at peak times, but then we do only use it for internet, as everything runs on-site. no cloud services.
- 10 replies
-
- broadband
- internet speed
-
(and 1 more)
Tagged with:
-
We usually send them off with our IT recycling company as they'll take batteries, projector bulbs etc all to be disposed of properly.
-
I have always used this: https://social.technet.microsoft.com/wiki/contents/articles/9790.hyper-v-p2v-with-disk2vhd.aspx
- 3 replies
-
- hyperv
- virtual machine
-
(and 1 more)
Tagged with:
-
I could isci the server to my backup box with the 3TB drives which is an HP microserver but it doesn't have the power redundancy like the ML350.
