aceonbass
Members-
Posts
45 -
Joined
-
Last visited
Content Type
Forums
News
20th
EduGeek EDIT Conference
Blogs
Everything posted by aceonbass
-
[ms office - 2013] Issues authenticating to KMS server
aceonbass replied to agarabaghi's topic in Office Software
Indeed, 25 for Windows, 5 for Office IIRC? That said, I've never seen Office or Windows without activation in our environment after an SCCM 2012 Task Sequence Deployment. One thing I did find was for a number of virtual desktops we use - I'd installed Office 2013 and run all the exe's in the machine used as the template. Every subsequent template was then spawned with the same Office identifier and thus wouldn't activate as the KMS server saw only 1 request. I had to run one of the VBscripts in the Office files which "re-prepped" the Office installation. Subsequent machine deployments from this template all have unique identifiers now. -
[ms office - 2013] Issues authenticating to KMS server
aceonbass replied to agarabaghi's topic in Office Software
We've never done this as part of our image. We have our office install with an admin file (created with OCT, KMS marked in the licensing section) and then when the machine is imaged and brings itself up on the domain, it licenses itself after contacting the KMS server (I would guess at the same time as Windows does this too). -
Thanks to both. UPN suffix is already set on all users, so that's not an issue. Do I need any brackets around the SMTP:[email protected]? They have current entries that contain {} as I guess these have come from Exchange.
-
Hi all, We're about to (next week) move over our students to O365, including exchange. We currently have an on-premise server so all msExch AD attributes etc are part of the DirSync (We're using ADFS 3.0 and DirSync), so I can't apply the licenses just yet. However, I'll be disconnecting those on Monday in preperation for O365 licenses. My question is, do I need to set any AD attributes in order that the O365 Exchange accounts are created with the correct @school.ac.uk domain name rather than the onmicrosoft.com? I was hoping that I'd just have to run the one script to apply licenses, and not have to run a second one just to make sure the emails are OK. Thanks
-
Yammer Enterprise available NOW for Office 365!
aceonbass replied to jamesbmarshall's topic in Cloud Services
Yea, if there's a session I can join that would be great. -
Yammer Enterprise available NOW for Office 365!
aceonbass replied to jamesbmarshall's topic in Cloud Services
Could be interesting for us, but we need to wait until MS release the new tool to allow multi-forest AD imports into a single tenancy. -
Mostly on-topic - we're about to switch over to 365 from an on-premise Exchange. I can't disconnect the mailboxes until next week, but once I do this, do I just need to run an internal powershell script to set an attribute which will be picked up by 365 as the address to use when I apply the 365 licenses? We're ADFS 3.0 with DIRSYNC.
-
Office 365 - Outlook and ADFS SSO - Disapointment
aceonbass replied to FN-GM's topic in Cloud Services
I feel this post is better here, rather than start a new topic, but has anyone managed to set this up as part of an admin file for Office 2013? I.e. Can we set up a basic profile for Outlook 2013 to ease our students connecting to O365? We're likely to be deploying Win8.1 with Office 2013 and I'd like to give a helping 'nudge' where possible. -
{Preview} Microsoft Azure Active Directory Sync
aceonbass replied to EduTech's topic in Cloud Services
Looks great - we're still on a two-forest setup so this will work wonders for us. Can't wait! -
Thanks for the responses again. We're up and synced now, but holding off til summer before applying the licenses. We aren't doing any sort of Exchange migration (just changing over to the fresh mailboxes at the start of next academic year) so can't apply the 365 Exchange license until we disconnect the on-premise Exchange mailbox through AD and those changes are synced up to O365.
-
Bumping the thread slightly - does any know the correct SKU codes that our reseller should be using for the student advantage. We've had a quote through and they are charging us £0.01 per license, then saying they refund the subtotal but we have to pay the VAT?! This seems wrong according to most replies this thread, so can anyone help me straighten this up? Quote: S2Y-00002 ,EDU O365 PROPLUS F STUD OLV ,MONTHLY SUB ALNG 1MTH ACDMC
-
Thanks for your inputs! If only DirSync is adding users then we'll easily come under the 50,000 user limit. For now, maybe we'll have to just stick with students in 365 until we can decide what to do. Hopefully I can convince our Management Team to fund a project to move our prehistoric setup to a single forest, single domain like every other school/college I've spoke to. Thanks again.
-
Hi all. We're looking over a 365 deployment initially for our staff and students. We'll be using the A2 education plans for both (plus Student Advantage), although only the students will be using the Office 365 Exchange, as we'll keep the staff on premises. I'm confused when it comes to the use of ADFS (we will use 3.0 on Server 2012 R2) and DirSync. Firstly, we need to support two forests (staff and students are in their own forest). Both of the domains are top level and are publicly resolvable. We don't want to build two ADFS structures and I understand ADFS can deal with multiple forests. I have no idea where DirSync comes into this, and I'm confused by the need for it. It seems once I set up ADFS it will sync the entire domain but see below. It seems I need DirSync to filter the users by OU and we'll need this to overcome the 50,000 object limit for the sync. If we sync the entire student domain we'd have over 75,000 users (mostly alumni, service accounts etc) but the OU we need to focus on (active students) will only return around 14,000. DirSync alone is not an option as SSO wins out for the end-user and we have the infrastructure to support it. Would someone be able to try and straighten my mind out for me? I'd additionally like to just reverse proxy our ADFS servers through a TMG server and forego the need for the ADFS Web Application Proxy servers - has anyone done this? Thanks in advance.
-
Extremely delayed reply, but thanks again for all the responses. As per a previous post, I've been very surprised by the amount of votes for single domain (expecting multi domains in a single forest). It's now clear which way I'd like to take the network forward, but as I'm neither the overall manager or network admin this decision does not rest with me...
- 23 replies
-
- active directory
- domain
-
(and 1 more)
Tagged with:
-
Thanks all for your responses. It's looking more and more like a huge summer project next year. Personally, the temptation to start again with minimal migration is overwhelming - in reality, however....
- 23 replies
-
- active directory
- domain
-
(and 1 more)
Tagged with:
-
Well right now, if a student domain admin account was compromised, no changes could be make to the staff domain. If we had a single domain and a domain admin was compromised then they have access to EVERYTHING. The networks aren't completely isolated, just different VLANs. Edit: Just to clarify, this is a set up the current team has inherited. We're giving everything a big review, and thought we'd put the question out to compare organisations. We expected single forest with multiple domains to be the most popular answer so we've been pleasantly surprised.
- 23 replies
-
- active directory
- domain
-
(and 1 more)
Tagged with:
-
Wow, 8 votes for single forest and domain. Do you really run staff and students under the same, single domain? I can understand the ease of administration but are there not any security flaws with this set up?
- 23 replies
-
- active directory
- domain
-
(and 1 more)
Tagged with:
-
Hi all, We're just weighing up a few options and wanted to gauge others opinions regarding Active Directory structure. We currently have two forests for staff/students with an interforest trust. This causes some problems with LDAP integrated applications which can only access one LDAP server. Naturally we could try and negate this with an LDAP proxy, but for the sake of balance, I wanted to create a poll to see how others are structuring their Active Directory. If you wish to add any further feedback, please comment in the thread as well as voting in the poll. Thanks in advance, Karl
- 23 replies
-
- active directory
- domain
-
(and 1 more)
Tagged with:
