-
Posts
4,011 -
Joined
-
Last visited
Content Type
Forums
News
20th
EduGeek EDIT Conference
Blogs
Everything posted by chazzy2501
-
That Asus card only supports Asus Motherboards I did a little google-ing and can't find a business class desktop with Thunderbolt.. best I could muster was this HP SFF (not business) PC: https://www.hp.com/gb-en/shop/product.aspx?id=7M501EA&opt=ABU&sel=DTP
-
I think, if EdExcel want to use Thonny they should fork it and pay for an independent audit. Also contribute to the project and hire a programmer who can address issues and maintain the fork for them.
- 31 replies
-
- executables
- malicious
-
(and 1 more)
Tagged with:
-
True but this is out of the scope of things you can control. Had this been a 3rd party open source software, you'd promoted, that didn't even offer a bad work around, then you'd be the only one to blame.
- 31 replies
-
- executables
- malicious
-
(and 1 more)
Tagged with:
-
The logic is, that opensource software WITHOUT vendor support, is just random code. You don't know what it does, how it works, what it is doing. (without an independent audit) It is then up to YOU to prove those things or look the fool when a problem occurs. Opensource is not some magical panacea, it doesn't mean it comes with support, auditing, verification, licence adherence, good security practice. an example is restriction is that you can't distribute some open source in a commercial environment. (there ARE restrictions) was Thonny made in a bubble are you sure it doesn't use other opensource (or closed source) code? (probably not) BUT YOU DON'T KNOW is the point. I'm the one responsible for licence adherence and I don't know, I can't prove it. Opensource also has the open secret, that malicious actors can browse the code freely looking for exploits and without vendor support fixes maybe slow or never. To my other point, yes Microsoft broke Microsoft software but they are obligated to fix it, if it breaks Thonny not so. (this isn't likely but you DON'T KNOW) M$ Don't care and Thonny has no support. Do they fix it, maybe, when, maybe.
- 31 replies
-
- executables
- malicious
-
(and 1 more)
Tagged with:
-
I don't have to audit Windows, that is Microsoft's job, they have legal accountability for Windows. This is the crux of my point, I don't have the resources to check what the software is doing, who claims they are who they are and what information is collected. You assume that Thonny have used no other opensource software or otherwise that requires it's own licensing adherence. I've seen a Windows update break Outlook! Also as no one has done an independent audit you also don't know what is in there. (probably nothing, but I don't want to look pretty daft, pointing at a website saying "they said it didn't have a virus", look a university logo from 2016, daftbum64 is a trustworthy coder) I ask myself: would I accept a parachute under these same conditions?
- 31 replies
-
- executables
- malicious
-
(and 1 more)
Tagged with:
-
AI - Edu licenses CoPilot/ChatGTP
chazzy2501 replied to Andycat's topic in AI in Education & Enterprise
I'm logged in to office 365 and can use co-pilot in bing.. what would buying a licence enable? EDIT: Answered above -
My issue with Thonny like a few of these editors is that there is no legal entity behind them (no accountability). No one has audited the software, checked the licensing and the data collection. These softwares are updated by unverified users on the internet with what you hope is altruistic intensions. Also a windows update could stop them from functioning and good luck getting support in a timely manner.. I'm surprised so many people are happy running these unverified programs on the network. I have the EDExcel people tell me 80,000 users with Thonny on school networks! UNVERIFIED AUTHORS, NO INDEPENDENT AUDIT, NO ACCOUNTABILITY?!
- 31 replies
-
- executables
- malicious
-
(and 1 more)
Tagged with:
-
Teaching Staff asking for dropbox on laptops
chazzy2501 replied to genesis's topic in Learning Network Manager
Yes, this is what I tell staff, Dropbox can be used without the app, it's a little more inconvenient but work 100% with shared files.. -
Having to say no can upset staff, so I've asked SLT to approve a policy for software adoption on the school domain. I did use co-pilot for this but I had a lot of prompts ((btw my first actually useful interaction with it)) School Software Installation, Cloud Services and Support Policy 1. Purpose This policy outlines the procedures for installing, supporting, and removing software and cloud services on the school domain to ensure security, compliance, and effective use of resources. 2. Scope This policy applies to all staff and contractors using the school’s IT resources, including both on-premises software and cloud services. 3. Software and Cloud Services Installation 3.1 Approved Software and Cloud Services • Only software and cloud services approved by the IT department may be used on school devices and networks. • A list of approved software and cloud services will be maintained and regularly updated by the IT department. 3.2 Requesting New Software and Cloud Services • Staff may request new software or cloud services by submitting a Software and Cloud Services Request Form to the IT department. • The IT department will review the request for compatibility, licensing, security considerations, and the presence of a recognized legal entity behind the software or service. 3.3 Legal Entity Verification • The IT department will verify that the software or cloud service is developed and supported by a recognized legal entity (e.g., a registered company or organization). Homemade or unsupported software and services will not be approved. 3.4 Licensing Verification • The IT department will verify that the software or cloud service licensing terms are clear and that the school can legally use the software or service. This includes ensuring compliance with all licensing agreements and copyright laws. 3.5 Open Source Software • Open source software must have vendor backing to ensure professional support and maintenance. The IT department will verify the presence of a reputable vendor providing support for the open source software. 3.6 Installation and Configuration Process • All software installations and cloud service configurations must be performed by IT department personnel. • Unauthorized installation of software or configuration of cloud services by staff is prohibited. 3.7 Implementation Timeline • The IT department requires up to 30 days to implement new software or cloud services following approval. This period allows for thorough testing, configuration, and deployment to ensure smooth integration with existing systems. 4. Software and Cloud Services Support 4.1 Support Requests • Users experiencing issues with software or cloud services should submit a support request via email to the IT department. • The IT department will prioritize and address support requests based on urgency and impact. 4.2 Free Software or Cloud Services Without Support Contracts • For software or cloud services provided for free or without a support contract, the IT department will offer best-effort support. This means that while the IT department will attempt to resolve issues, there is no guarantee of resolution due to the lack of official support from the provider. • Users will be informed of the limitations of support for such software or services at the time of installation. 4.3 Updates and Patches • The IT department will manage and deploy software updates, patches, and cloud service updates to ensure systems remain secure and functional. • Users will be notified of scheduled updates and any required actions. 5. Software and Cloud Services Removal 5.1 Criteria for Removal • Software and cloud services that are outdated, no longer supported by the developer, or pose security risks will be identified for removal. • The IT department will regularly review the software and cloud services inventory to identify such items. 5.2 Removal Process • Users will be notified in advance of any software or cloud services scheduled for removal. • The IT department will handle the removal process to ensure it is done securely and efficiently. • Alternative software or cloud service solutions will be provided if necessary. 6. Compliance and Enforcement 6.1 Monitoring • The IT department will monitor software and cloud service usage to ensure compliance with this policy. • Any unauthorized software or cloud services detected will be removed, and the responsible user may face disciplinary action. 6.2 Policy Review • This policy will be reviewed annually and updated as necessary to reflect changes in technology and school needs. it looks nicer in word any input?
- 6 replies
-
- policy
- services approval
-
(and 1 more)
Tagged with:
-
can someone tell me where "import module xxxx" is coming from and what about "pip install xxxxx"? what is to stop a malicious download?
- 31 replies
-
- executables
- malicious
-
(and 1 more)
Tagged with:
-
I use Edge to handle PDFs as it mostly works and always get updates! Unfortunately the PDF icon seems to have changed to a white folded sheet of paper that is transparent.. This means on a white background (like explorer) it is invisible.... Anyone else?
-
I've disabled most of the other things you just listed from running as a pupil. So the editor does not compile and execute, the chance of a breakout, overflow etc, then is not likely. (any more than any other program?) virtual computers are a no go, I've heard of red pill code that can breakout of a VM years ago.
- 31 replies
-
- executables
- malicious
-
(and 1 more)
Tagged with:
-
I've disabled forwarding site wide. it is used as an attack vector, email accounts get compromised, then the attackers have email forwarded in secret, so after the attack is cleared the emails still get forwarded.
-
Teacher wants a Python editor that has a debugger in it and suggested "MU". I've resisted any program that can compile as a pupil could in theory copy and paste code that is malicious and run on the PC. I've always pointed them to online editors. Am I being overly cautious?
- 31 replies
-
- executables
- malicious
-
(and 1 more)
Tagged with:
-
-
I'm really F upset "admin" and "administrator" are NOT the same account... a single admin has to use 4 FOUR sets or credentials to use the ESET product... this is fricking insane! root, user, admin, administrator.... I'm doing the SHA1 downgrade which IS a terminal action but terminal will freeze if you use the type from clipboard! (NICE) Now the instructions are pointing me the use "server settings" it even has a picture....Do I have server settings of course NO! yay, another tech support loop! 6 months and this thing is DEAD.
-
I've been forced by Eset to migrate the virtual appliance (centos). This is something in years of ownership I've not been required to do before.. The push to the cloud solution is pervasive, the nomenclature is misleading. it took 3 attempts at reading guides, not understanding the nomenclature to find out what was required or the problem was. I now know that the upgrade involves me creating a new virtual machine, the instructions are spartan and not thorough. They tell me to make a new machine and spec the gen and ram but they don’t tell you to use the provided VHDX… I guess obvious but these are instructions not vague guides. Their support said they expected users to be familiar with hyperV! I thought I was going crazy, missing a step! Got a new problem, can’t log in to new VM, can’t find the answer, ask again tech support… article, great… Article says what the issue is and how to fix, type in the instruction “blah blah blah”…. Where? How? Again No Details…just assumptions. Terminal on the VM, nope, no option, SSH.. maybe but won’t accept credentials… reset credentials.. complexity not met?!?!! (fine) too short 18 or more chars….FFFS.. fine.. (existing creds just created 30 minutes ago didn’t meet these either but FML I guess.) Finally login as Admin… you need to be root to make these changes…… buttt clench. Root access denied.. access denied…. FFS.. more reading “root can’t use SSH” FFSS SFGSFS. This is why FULL instructions are needed! I hate ESET! I’m not renewing, this blows.
-
OK, I've got to create a new virtual appliance for ESET as centos is no longer supported. The upgrade involves making a new virtual machine, this is provided in the form of a vhdx file from ESET. The ESET instructions assume a working knowledge of HyperV The gist is to create a gen1 virtual machine and point to the downloaded VHDX provided. I'll assume if I did this it'd be running from my downloads folder not the SAN. Do I have to create the new VM from the cluster manager (not hyperv manager) but I don't know how to access the SAN storage correctly.. I do see "cluster storage" folder in the c drive of the hyper v hosts, this seems to have all the virtual server drives in it. (I assume this is a shortcut or pointing folder) can I just pop the VHDX in here? cheers! I've moved from Vmware to HyperV thanks to Broadcom:(
-
Yeah, the "no, that is not in the Youtube T&Cs" Thanks, Bye.
-
-
I'll keep them around in case more fiber dies in the future passive 24v is hard to get though and I was lucky my switches still support the setting!
-
Our Science building went down, after 30 minutes of troubleshooting, I couldn't get the switch to talk.. Solution: I got some rather out of date airmax locos (need 24v passive power!) and 3d printed some stands to use indoors (day 2 addition) Science are up and running at 200Mbps! (ish) Got some new fiber being run in for £2800 end of next week. Unifi meshing btw was too weak to be used These Loco's don't talk to unifi management software ;(
-
Salamander have released a new version of their software that supports CSV2.1 schema. It would seem the UK specific schema is no longer used.
- 1 reply
-
- 1
-
-
The NEW SDS page: I can't submit the CSV docs from Salamander as it is missing SID info, I think they don't allow the UK schema anymore? should I just use the US schema csv instead?
-
fixed, I did it through the GUI! just added the same key and voila! thanks steve21!
