Jump to content

icemonkey

Members
  • Posts

    50
  • Joined

  • Last visited

Everything posted by icemonkey

  1. If they keep the SSL login page open, the connection will remain authenticated. If they close it, the Login Timeout value applies. The value can be adjusted under Services -> Authentication -> Settings -> Login Timeout but you'll have to decide if a longer timeout is acceptable from safeguarding/security perspectives. Other options are: - Use timeslots to allow access to sites between certain hours (or outside of learning hours) - Look at other authentication options such as RADIUS
  2. We've found that removing these extensions solved the problem for us: - Google Meet Attendance - Google Meet Grid View
  3. Annoyingly this first started at 3am and couple of times before jumping to 5am, 9:30am, 10:30am, 11am, 12pm, 3pm. I did have a quick CCTV check to make sure there was no one in the building at 3am though... Interestingly, this first occurred in the early hours of the day after one of our blade server motherboards went caput. Certainly thought (and hoped) the two were related with some form of loop caused by the VTRX switch but then it happened yesterday (Blade was back up and running Monday afternoon). Wireshark now ready to go and ports set to mirror (not sure why I didn't do this first to be honest). Now to play the waiting game!
  4. At the moment, last topology change is when I rebooted the switch at 3pm yesterday. I haven't noticed any changes coinciding with the issue but I'll make sure I double check.
  5. No, sorry haven't made it clear on the setup. The connection between the cores isn't an issue, they've been setup like this and running without issue for years on both these switches and the previous ones. Core 1 is the root, on Core 2 the root port is the fibre connection to Core 1 and spanning tree will deal with moving traffic to a backup site link if the fibre goes down. If core 2 goes down, Core 1 stays up and Site 1 is unaffected. If core 1 goes down, the whole network falls over. I guess you could technically discount core 2 as a core switch... As this issue is network-wide, I'm fairly confident that the issue as is at the Core 1 end
  6. Afternoon all, Thought I would open this up for some suggestions as I feel like I've looked/tried everything. Over the last week or two we've been having random network outages, our network cabs lock up and all port lights on solid... so first thought is a broadcast storm. This isn't every day and doesn't seem to have a set pattern. It's affecting our entire network so must be localised to our primary core switch (we have a second site with it's own core which is in turn connected to the main core switch). When this happens, we lose connectivity to our Dell VRTX running both of our hypervisors, almost like someone's unplugged the uplink to the VRTX. So to the switch logs I go... absolutely nothing. Tells me it can't reach the ntp server (not surprised as it's running on the VRTX) and that's it. Spanning-tree doesn't show any ports being blocked either. I can get on the hypervisors and all VMs via KVM without an issue, they tell me there's a network connection problem yet the VRTX Chassis and the 10Gb VRTX Switch logs don't show any issues. Hardware wise we're running a Dell PowerEdge VRTX with two blade servers and the core switch is an Aruba 5406Rzl2 (J9850A). Just wondering if anyone has experienced anything similar or if anyone has any suggestions.
  7. What was your process for setting up and managing the meetings? I'd like to explore the options already available to us before I let SLT introduce yet another system to our parents - they don't seem to understand the concept of "streamlining"
  8. My mistake they're 1st gen (A1432)... Initial post updated
  9. We have around 20-25 iPad Mini's (1st gen) in school which are now too old to load most newer apps, they're running iOS 9.something. They're not used for anything more than cameras these days but I'm looking at options for getting them used a bit more, mainly by staff on patrol calls or using with Jamboard for remote lessons. Has anyone had any experience with companies who would take them in and either refurb them for us or issue a credit note to spend on devices that have already been refurbished devices? I'm not too bothered about going for a better model, just interested in ideas! We also have around 10/12 mid-2010 iMacs that I'd be looking to do something with!
  10. Many years ago (before my time), our school moved to laptops for teaching staff. They were all non-domain machines with teachers having local admin accounts. Fast forward a number of years, I started and began changing everyone to standard user accounts... but we're still on standalone laptops. Now I'm running the show, I want to explore the different options of managing these laptops as they are quite literally unmanageable. We're a CC4 school so I first thought about using their smart client but I can't say whether we'll remain a CC4 school or not. We've tried and failed to move to desktops in classrooms and now the current closure is an argument (in their eyes) to keep laptops. Some staff still fail to grasp the idea that "a work laptop is for work use only". My questions are: Has anyone else done a move like this recently (or ever)? What are people using to manage mobile devices like this? Any "If I knew than what I know now" advice? We're talking around 100 laptops and where possible, the change to cause minimal disruption to staff. Many of them currently store their entire teaching life on their work laptop. Thanks in advance!
  11. I once ventured into this but it was a while ago! There might be an easier way but at the time, this seemed to give me more control over the process! - Go the the "Reports" Section of the admin console - Run a "Drive Audit" report - Filter on Visibility (or Changed Visibility) as necessary - Export to Google Sheet and check for any files that seem strange (I filtered out my colleague as an owner as a lot of his files are linked on our website) - Use the Document IDs with a GAM batch/csv command to change the permissions I only did this for files where the visibility had been changed to "Shared Externally", I'm yet to pluck up the courage to do this for "Anyone with a link can view"!! You can set whether sharing externally is allowed across the domain but I'm not sure whether this would update existing files or just prevent any newly created files being shared externally.
  12. Yes, we have a router on site which is managed by the ISP with unfiltered traffic down to our smoothwall. Didn't think of pinging both internally and externally - just let it run for about 10 minutes initially and I'm getting a 0.2% packet loss (negligible but still greater than 0) from the external connection. Internal is reading as 0%. Interestingly, I've spoken to our ISP again and they say their DDoS mitigation system is still flagging up significant traffic hitting our old external IP on UDP port 53. This IP is no longer listed as as interface on our Smoothwall box which is why I haven't been able to see it in the logs. They're now looking at dropping any traffic heading here from their end so fingers crossed we'll see an improvement. - - - Updated - - - I've had a look and there's nothing similar in our kernel log but definitely sounds like it's worth watching out for in future!
  13. So this has been an intermittent problem for a few weeks now and honestly, I'm stumped.Every now and then, we lose our internet connection for a few minutes. We've had a successful line test from the ISP and they have confirmed it's not an issue at their end. This all began as what appeared to be a DDoS, our S8 was showing hundreds (if not thousands) of external hits at the same time as the drop outs. Following DDoS mitigation and changing our S8's external IP, this is no longer happening yet the drop outs continue. I've been working with our ISP and Smoothwall to look at the possible causes. Smoothwall are convinced it's a problem upstream of our S8, the ISP are convinced it's being caused by a device on the LAN. Neither Smoothwall nor I can find anything in the logs to support the ISP's claim. To confuse matters, we had no issues over half term which supported the idea of an internal device being the cause but then we've just had 8 term-time days with no issues. This was until yesterday when we had 4 instances between 8:15am and 9:30am. In terms of the services which are affected - Uptime Robot is showing me connection timeouts for Remote Access (VM), VLE (VM), ISP Primary & Smoothwall (thus internet connection). Basically anything with an external IP. Internal services are unaffected. Now we're past the "You need to speak to the ISP / You need to speak to Smoothwall" debate, Smoothwall have been really helpful but I'm looking for some ideas of what else I could/should be looking at!?All I'm being told from the ISP is that they can see CPU utilisation alerts on the router which match the times of the outages and as far as I'm aware, nothing has changed on our network.
  14. Our Business Manager signed up for the premium version of Adobe Acrobat for a month to use the redaction tool for our most recent SAR - she said it saved her so much time redacting emails, she'll happily renew it next time she needs it. I should add, she started by redacting the emails by hand with a sharpie, what took her 3 days by hand took about an hour with Acrobat. The process I followed was: - Search vault per user (we only had to focus on 10 accounts but was around 700 emails) - Export search results as a pst for each account - Open each pst in Outlook (Thunderbird didn't like it) and print all emails as a pdf - Send the pdfs to the SBM for redacting with Acrobat Probably not the most efficient way to do it but it worked and took very little time. Not sure how well this would work for 3400 emails though!
  15. Evening all, Our Finance team are currently using a Google Group setup as a collaborative inbox. This was implemented a few years ago when we moved to G Suite but we now have a completely different team (3 of them including the Business Manager, with scope for it becoming 4) running the show. They don't find it particularly easy to use, intuitive or helpful and they're finding that emails are being missed. I have to say, I do kind of agree them them - groups feels very much like an after thought that Google doesn't seem to be doing much with. I've been asked to explore options for moving away from this and the way I see it is we have three options: - They get used to it - Move them to a regular inbox with delegated access, using labels to track who's working on what (and look at the feasibility of migrating the email content) - Use a service like Hiver, Drag or Front Just wondering how other G Suite schools manage collaborative inboxes? Particularly for finance teams! Of course the cheaper the better but I'm open to suggestions that people have found work well.
  16. With Net2Plus ACUs you can either have each one wired directly into the network or multiple units connected to each other on an RS-485 loop. This pdf tells you a little about the two methods of installing: https://legacy.paxton-access.com/docs/Application%20notes/AN1012.pdf Our system is currently wired on an RS-485 loop with only 3 ACU's directly connected to the network. It was installed before my time but it sounds like what the Network Manager said and what the installers heard/were told were two different things, they'd run most of the RS-485 line before anyone had realised. Over the last 18-24 months, we've had a lot of issues with certain gates becoming unresponsive and a build up of 400-500 messages pending on different control units. We currently have a new company splitting the RS-485 data line up as it doesn't seem to be able to cope. I think we'll end up with another 3 ACUs connected directly to our network by the end of the week. I can't say what exactly has caused the issues but I suspect we have some dodgy/damaged cabling somewhere... In terms of IP addresses, I think the only parts of our system that uses IPv6 are our 3 entry/call units on the 3 main gates but the rest is all IPv4. Definitely get them to explain what they're doing and get it documented. After our initial install, all we received from the company was a list of IP address that they'd set on the ACUs. The new company are having a field day figuring out how/where everything is connected!
  17. We ended up with one client which on the "Invigilate" tab was reading as "User Disconnected" but his screen said the exam had been submitted. If anyone else ends up with this.... Turned out the process was still running in the background (software hadn't close properly) killing the process pushed the exam script through
  18. We've already had one student submit without issue about 10-15 minutes ago. I have 2 clients showing as disconnected so I'm hoping it will attempt to reconnect as they submit their papers...
  19. We've been using Mosyle for only a few weeks now and it's great. We do come across features that we would like to use that are "premium" but there's enough in the free version to let you effectively manage the devices. I'm currently pricing up a premium subscription so I can have a crack at managing our macs.
  20. We're using them more and more. For the price, I'm happy to use compatibiles and if they break the printer... it's one less printer to deal with. I should point out that our staff haven't noticed a difference other then it's costing them a lot less and we haven't had any problems at all since we first started the switch. Offices all get compatibles, heavy duty printers get originals at the moment. Printer models vary around the school but we're mainly HP with one or two Canon units floating around.
  21. https://trello.com/ ?
  22. With the latest update, you can lock each individual button on the screen via the console and only enable it when someone needs to use it
  23. Spoke to their support team at about 9.30am and the bloke read me the message he had (just then) received from higher up, mentioned server hardware failure but that could have just been his interpretation! He also said it shouldn't take them long to sort it (famous last words) and that he will give me a ring when it's back up and running. We use it for behaviour now and it took people most of the day to realise they could just enter that straight into SIMS
  24. As mentioned, sometimes the themes have built in editors which will let you customise it but sometimes you will need to edit the code. If you're editing the code of an existing theme, I recommend using a Child Theme. When you run a theme update, it replaces the files with a new copy from the developer therefore you would lose any changes you've made to the files. Child theme consists of (at a minimum) style.css and functions.php, to begin with you're essentially just referencing the "parent" theme. You then add your changes to the child theme files. Once you've got your head around it, they are really straight forward. https://developer.wordpress.org/themes/advanced-topics/child-themes/ Example, current paragraph font is Times New Roman in Black but you want it in Verdana and Blue. You would add the following to your child style.css (leaving the orginal css file untouched) .p { font-family: Verdana, Geneva, sans-serif; color: blue; }
  25. No complaints for InVentry and we've found their support to be pretty good! We print the evacuation lists but they do have an app so it can be accessed on a mobile device. Attendance marks can be written back to SIMS at the click of a button so pastoral staff are happy too!
×
×
  • Create New...