Jump to content

jthompson

Members
  • Posts

    5,685
  • Joined

  • Last visited

Everything posted by jthompson

  1. We do it with one GPO at the root of all the staff OUs, with item-level targeting added to the mapped drive option in the GPO so that it only applies to members of the relevant security group. e.g. https://www.mustbegeek.com/map-network-drive-using-item-level-targeting/ We therefore have one GPO doing all of the different drive mappings.
  2. I'll see if it's in a shareable state, since it sounds like the new Google logs aren't available to all.
  3. Yes, we managed to do it for free. It's one that we wrote ourselves, so isn't available in the Chrome Web Store. It's been working really well, but has a faily convoluted setup. At the time, when the new Google Admin logs were still in beta, our system was reflecting sign-in activity more promptly than Google Admin, so it felt more reliably complete. The extension is force installed for our student users. It grabs the user name and device name, makes an API call to an AppSheet app to log username, timestamp and device name into a Sheet. Each time a log entry is added, the AppSheet app will call a separate Apps Script function which writes those details into log files stored in a Shared Drive (one log file per user and one log file per device). The Sheet also has an embedded Apps Script function which clears out all of the days' log entries each night, since there's a 10k row limit and the Sheet can fill up quickly. The log files in the Shared Drive therefore give us a deeper history for each device and each user.
  4. I think the new, more detailed sign-in logs are part of the security centre, which isn't available on the Fundamentals edition iirc. They're pretty new still, not long out of beta. Just looked at a couple of our devices and the recent users list does not match up with the recent device event logs any more. We've been using a custom Chrome extension to log which users have been using which devices.
  5. That would be my guess, too. If the option in the GPO is now set to 'Not configured', enable it again but with something suitably benign.
  6. I passed maths at GCSE and A Level, but that was in a whole different millennium, so I do wonder whether I'd be able to now.
  7. I'm also guessing that a suitable PowerShell script run as a scheduled task would be able to deliver the info you want. Never done it but a quick search online throws up this one which looks about right. https://social.technet.microsoft.com/wiki/contents/articles/35804.powershell-disk-space-utilization-html-report.aspx
  8. Congratulations. Does this mean that you'll finally get that iPod Touch that your parents promised you for passing all of your exams?
  9. I recognise the name of one of those 'previous attendees'. They've written about AI in education, so I wonder if Bing didn't quite pluck those names out of thin air.
  10. This might be overkill, but checkmk raw edition, or some other monitoring platform. Will give you graphing and threshold alerts. In the past, I've used PA WatchDisk to alert on sudden increases in storage use, to catch when users dump excessively large amounts of stuff into network shares. I'm not sure that that's a free option, though.
  11. Yup, that's fair enough.
  12. Worth considering using a hostname alias on the new server (e.g. "printers"), and using that alias when deploying shared printers ("\\printers\printername"). That way you won't have to redeploy shared printers to users if you migrate the printers again in future. Use netdom computername with the /add parameter.
  13. Setup > Event > Video Detect. In the 'Motion Detect' tab. Pick the channel number. For 'Region' click Setup. You can then set the motion sensitivity of multiple regions within the image. If you have trees or other planting that blows about in the wind, you can exclude those parts of the image altogether to cut down on unwanted footage. To block out parts of the image (i.e. privacy shield) go to Setup > Remote > Encode > Overlay tab. Pick the channel and then enable the 'Monitor' option to start adding black boxes. Again, the menu paths are clearly showing off the design skills of the people who made this stuff.
  14. I think you can tweak that and also disable motion detection for regions within the image. Not in front of the GUI just at the mo so can't remember the menu path for doing that. On the cameras themselves (i.e. not via the NVR menus) you can also add privacy shades to black out regions, such as neighbouring properties, etc, so that video of those areas never gets seen by the NVR.
  15. I don't know if this will match up with the version of the Dahua NVR that you have, but on ours, to set it to record from motion detection, we need to go to Setup > Storage > Schedule, select the camera (i.e. channel) number, and then set each day of the week to have 'Motion' ticked for a 0h-24h time period. This then displays a yellow bar for the entirety of each day in the schedule. Repeat for each camera. With that set, we then get yellow blocks in the playback timelines of each camera, indicating recorded footage based on motion detection. Hope that helps. It's just another example of stuff being in crap menu locations.
  16. It's a bit of a Steve Jobs "don't hold it like that" thing, but I guess your content should be considered part of the signature block rather than a footer, which is most likely intended for legalese discalimer stuff rather than branding. But then it's not as if Google have provided any signature management tools, either. I created my own Sheets/AppsScript solution for signatures, which I'm hoping to be able to share on GitHub at some point (it's based partly on this - https://caspan.com/2021/10/google-app-script-set-gmail-signature-template-on-org-users/).
  17. What NVR appliance/software would you recommend? We have both Dahua and Hikvision cameras and NVRs at the moment, and neither NVR is capable of motion-based recording with anything but their respective camera brands.
  18. The support article specifically says that the editor doesn't support HTML, and it appears to strip out table formatting if you paste in an HTML table, so I wonder if that footer has been added via the API, or was added before the ability to paste in HTML content was restricted. I don't think that there is an API covering stuff like compliance rules, etc. for Gmail. The Gmail API appears to be for mailbox stuff, rather than org-wide admin console stuff. You migt be out of luck. I would recommend prepping a new footer that isn't table-based, and keeping but disabling the existing one.
  19. Strange one. The official line is that the Append footer option in Google Admin > ... > Gmail > Compliance doesn't support HTML content. https://apps.google.com/supportwidget/articlehome?hl=en-GB&article_url=https%3A%2F%2Fsupport.google.com%2Fa%2Fanswer%2F2364576%3Fhl%3Den-GB&assistant_id=generic-unu&product_context=2364576&product_name=UnuFlow&trigger_context=a Are you sure that it's a footer and not a part of their individual signature?
  20. Would love to not have to use Hikvision or any other brand that still doesn't work properly in modern browsers. Amazed that there are so few real alternatives. Having to leverage IE-mode plugins or locally installed software (the HikVision LocalServiceComponents is a particularly crummy example) in order to view camera feeds seems to be a hallmark of Chinese CCTV kit. That and weird, non-standard design decisions around user management and passwords.
  21. I think that guidance from Microsoft will be along the same lines as from the security community more broadly, in that you do away with regular forced password changes to allow users to more easily adopt long passwords. Increasing the minimum password length is the name of the game, and having regular forced changes will undermine that effort by encouraging poor user habits. Personally, I still think having a max password age has some merit for on-prem accounts without any MFA, although that's measured in years rather than weeks or months. This thread might be worth a read through
  22. How many minis have you got painted up now? It would be cool to see a pic of the whole collection and how the bases look all together. Haven't got a Hive Tyrant in my [small] collection, but it's the model that tipped me over to starting on some Tyranids. During lockdown we played some 40k via Tabletop Simulator, which was an opportunity to play with the massive armies that we always fancied trying. A massive wave of nids never fails to impress.
  23. They would certainly be a concern if they were your using your SSID name(s). Otherwise, they could just be personal mobile hotspots, passing cars/buses, neighbouring properties, etc. In terms of telling whether they're patched into your physical network, you probably going to need to use some other tools/features in your environment. We use UniFi here, and the rogue AP list indicates which of our APs are seeing them, which can help to triangulate things a bit.
  24. If your school has a DT department, maybe ask if they can knock up suitably drilled metal plate to fit between the new projector and the existing 3-point plate.
  25. Don't really have experience of the different providers, but we use Cove Data Protection (formerly N-Able, formerly Solarwinds iirc). It works without adding any sysadmin burden, so we're happy. We also use Veeam for onsite backups, so two different B&R systems in place. Belt and braces.
×
×
  • Create New...