-
Posts
13,543 -
Joined
Content Type
Forums
News
20th
EduGeek EDIT Conference
Blogs
Everything posted by Geoff
-
The error means exactly what it says, ~/Documents doesn't exist for a users first login until it's created long after a successful login by the gnome shell (or whatever). To fix this add a Documents directory with the correct permissions to /etc/skel (I assume you're running a full PAM login?). Any botched home directories will need to be fixed manually (or just nuke the home directories if there's nothing there).
-
Well the good news is that they will most likely be flat text files or possibly in a database like mysql that's easy to export from. If it's a vanilla squid install then you will need to check the squid configurations ACL list, the http_access lines will tell you what files it's using for white and black listing. If you have something like SquidGuard or Dansguardian installed alongside Squid then you need to check those configurations instead.
-
You need to turn this around. You are better off trying to combat this problem in your policies making it a requirement that people are aware of important documentation. At that point you can use auditing to find out who hasn't checked the documents you need to and take whatever action is appropriate.
-
Replicating server DNS zone has no contents.
Geoff replied to dany2010's topic in Windows Server 2008 R2
Any replication issues? (check the event logs) -
Estimating Download Allowance Requirements
Geoff replied to Jollity's topic in Internet Related/Filtering/Firewall
Bandwidth is one of those things like memory, CPU power and disk space that you can seemingly never have enough of. I highly recommend you figure out some way of logging this. My personal preference would be a Linux machine running Squid with NTLM auth. That way you know who, what, where, when used your bandwidth. If you conduct this kind of data collection I suspect you'll find a few 'power' users that consume 90% of your traffic (I suspect IT support staff to be quite high in this list). You need to work out if it's legitimate traffic or otherwise too. Then you can come up with a number. A secondary concern is your internal servers/services. If you host anything Internet facing (websites, email, etc) then you need to take that bandwidth into account. You should be able to analyse the log and get a figure for this. Likewise if you have anything that pulls down a lot of data from the net on a regular basis, things like Email and WSUS are obvious candidates for this. -
You don't have to be on the domain to use WSUS, just bung in the registry entries.
-
I think Microsoft expects you to have WSUS on your network
-
Staff seeing different versions of file from shared folder
Geoff replied to Theldron's topic in Windows Server 2000/2003
You should have offline files disabled on hard wired office machines! -
Replicating server DNS zone has no contents.
Geoff replied to dany2010's topic in Windows Server 2008 R2
Is this an AD integrated DNS zone? -
Staff seeing different versions of file from shared folder
Geoff replied to Theldron's topic in Windows Server 2000/2003
I recall the files with the $ are temporary files create when office has a file open and is used for auto recovery. Are you admin users opening the same file at the same time (as the file locking will be an issue then)? Or are some of them not closing the files correctly (maybe a network problem)? -
Stonesoft's "Advanced Evasion Techniques"
Geoff replied to Jollity's topic in Internet Related/Filtering/Firewall
The only use I've see for deliberately sending out of order packets is that some firewalls will keel over trying to reassemble the data stream for Deep Packet Inspection. So you can consider it as a DoS technique. As a result most stateful firewalls will throw away out of order packets by default. This will manifest in tcp session timeouts and retrys and will result in poor throughput at the application layer. So no, without more information from Stonesoft it just looks like marketing hype to me. -
'Downloads' isn't a folder, it's a library. So you need to remember it's a combination of one or more folders. One of these underlying folders is probably restricted. Probably the one residing on the C drive. The best thing to do is to control the library functionality in GPO and point it to a sub folder of their home folder. Here's a thread on the subject. http://www.edugeek.net/forums/windows-7/35953-controlling-libraries-group-policy.html
-
As everything is text files, you can maintain Linux configuration via normal source code tools such as RCS/CVS or Git. The simplest to get along with is probably RCS. Sys Admin File Revision Control with RCS There are however bespoke solutions, for example etckeeper. Keep Configs Under Control With Etckeeper -- ServerWatch Not only will these allow you to keep a changelog, but also allow you to rollback/forwards through configuration revisions and therefore back out of changes that broke stuff. Finally, if like me, you have a lot of Linux machines you should be using Puppet or Chef which gets you this stuff for free along the way. http://www.opscode.com/chef/ http://puppetlabs.com/
-
That location is not ideal for a 42U rack as it is a corridor.
-
We're planning to move office, there's one rather large snag however. The previous occupant in a fit of malice decided to cut all of the electrical, telephony and data cabling before they left. The power and telephony have obviously been fixed at the landlord/service providers expense however fixing the internal network cabling has fallen to us. On cursory inspection the situation doesn't look too bad, The cables all come into one room and have been cut where they come under the floor into the room (presumably where the comms cabinet was). There's no extra play in the cabling so I can't simply pull more length in. What is the most cost effective way to fix this? Our current comms contractor wants to recable the entire building at considerable cost.
-
Alternator in Ford Fiesta..are we being ripped off?
Geoff replied to sidewinder's topic in General Chat
That's fair enough, but then he'll pay for that privilege. If the running costs are regularly becoming an issue how about making it someone else's problem and go for Lease or HP/PCH/PCP? There's a bigger safety net there too incase of breakdowns. -
Alternator in Ford Fiesta..are we being ripped off?
Geoff replied to sidewinder's topic in General Chat
I ha ve a '96 Petrol Fiesta. New Alternator was £8 from a local breakers yard. Plus one slightly oily Sunday afternoon fitting it myself. Previous fixes included new dipped headlight bulbs for £10 a go each and a new rubber rocker box breather hose for £20 (I had to buy a genuine ford part as no one else makes them :/). If you are willing source the parts and to do the work yourself you can save yourself a lot of money. -
If you post a new thread detailing where you get stuck we can probably tell you what the problem is.
-
I have been searching for a way to keep my mod server up to date with the minimum of hassle for both myself and players. As such I am running a test of the Beta release of the FTB mod pack for Minecraft 1.4.3. The purpose of this test is to see if the mod pack works, if the server can handle it (I'm paticularly worried about disk space usage by mystcraft ages) and to see if there's any of the mods that seem overpowered, etc. You can download the client launcher from here: Feed the Beast and put it in an empty folder some place on your machine. When you it run and login it will download all the mods and construct a fully modded minecraft install with no intervention on your part (you might need to change the memory settings in the options though). There are regular updates to the launcher and the mod packs. The server address is: address: trickerymodmc.provisionhost.com (ip 76.74.200.86) port: 25565 (default minecraft port) Server is whitelisted (request access from me) and is set to survival on hard difficultly (don't be out at night without protection!) As for the mods I have most of whats listed on the forum post for FTB (I've added the most informative link I can find for each mod listed): ComputerCraft + Turtles Industrial Craft 2 (+ Advanced Machines +Advanced Solar Panels, + + Nuclear Control) BuildCraft IronChests ThermalExpansion Railcraft ExtrabiomesXL StevesCarts Mystcraft Forestry EnderStorage Rei's Minimap Factorization (IC2 Submod) The Twilight Forest GregTech (IC2 submod) PortalGun GraviSuite InvTweaks ObsidiPlates - Presure plates that can only be activated by players. ForgeIRC So the big ticket mods I'm missing are Redpower, Thaumcraft and EE3 (they simply aren't done yet). Not bad for a first beta release though.
-
If you don't stop and make amends and they catch your plates they can claim on your insurance for their clothing/etc.
-
That isn't what the OP asked for, but yes, if squid has a username associated with the request it will be displayed by SqStat (you need Squid 2.6+ for this to work). Joining a Linux machine to a Windows domain with Samba and using NTLM auth for squid is fairly straight forward these days (At least it is on Ubuntu LTS Server). A lot of the weird bugs got fixed yonks ago.
-
Yes, i also have a 2820 and a 2930. As above both these models can do it with filters.
