Jump to content
EduGeek EdSec 2026 is Go! 27th Oct in Derby! Join us for a day of EdTech security focused talks, networking, and an evening social ×

KK20

Members
  • Posts

    973
  • Joined

Reputation

1,268 Excellent

About KK20

Recent Profile Visitors

The recent visitors block is disabled and is not being shown to other users.

  1. Look nice, some nice ideas with phone to screen. HOW MUCH? No thank you, perhaps a half price refurb in six months.
  2. identical setup here. The dfe laptops were useless as windows devices but quite workable as chrome flex devices, decent battery life too.
  3. I do like flex, simple and works well with PWA. But I do baulk at having inflexible licensing for flex devices - especially when the laptops are effectively scrap anyway. Sure you CAN run them without the upgrade, and for some one-to-one devices this might work out ok.
  4. They kicked us off last year, so I spooled up an osTicket VM. Fairly painless to setup and it works brilliantly. Tickets are raised by emailing a 365 mailbox so I can testify that this works.
  5. parentpay wanted to charge us (this was a couple of years ago). We said, please send a formal quote so that we can balance this cost vs implementing arborpay instead at the same time as we migrate to Arbor. Suddenly the costs were waived. We coudnt get round the Inventry charge.
  6. i would see if you can shop around. Veeam might be expensive but it really does work well on a restore - physical, virtual, cloud. Our Redstor is great at restoring cloud, decent at restoring onsite files, tragic for bare metal. Veeam is great for all.
  7. We have a couple of bodet harmonys boxes (SLT offices) that links to our bells. Start and finish "melody" on the bells.
  8. I have ipv6 set up on all my servers but no DHCP scope. I use DHCP snooping so dont really mind what the clients are doing. We still have an public IPv4 for our external web internet services so I have had no reason to transition, although I do have a plan to enable ipv6 for public facing services should I need to.
  9. I seem to remember the tinkercad site having an issue with certificate pinning. I needed to do something in Securly to let it through (not just in the student profile "allow") but I cannot remember now. Seems that whatever filtering you use has the same issue.
  10. We got fed up with autodesk some time ago. Back in fusion 360 days of insane requirements to upgrade each version. Have been using onshape for education alongside tinkercad for yr7s. Works on chromebooks too.
  11. Im talking about user experience and workflow. potentially: User opens PDF, user edits PDF, user saves PDF. Currently, for our users they open PDF, switch to examwritepad answer document, write answer, switch to PDF document, etc I was merely commenting that I can see the benefit of cutting out a switch. Not the end of the world of course but if it makes it easy for the candidate.
  12. I can see the thinking behind this. Download a PDF exam paper, candidate then fills in the PDF exam paper (rather than switch backwards/forwards between paper and answer programs). We use Read&Write for electronic reader so it would be seamless to highlight, "read", then edit the PDF to write the answer.
  13. what type of apps? legacy .NET framework forms apps have a much easier way of signing code with the older clickonce mechanisms, you can supply a code signing certificate and allow your signed apps via applocker. It is harder with Windows forms apps (later .NET) as you need to manually sign the EXE using signtool - this can be built into the projects as an "aftertarget" but this is quite manual and needs doing per project, also needs the PFX and password known to the user! We do this with a short date domain CA code signing cert installed on the machines and we only use legacy framework due to the PFX and password issue. It is on my list to look into this further.
  14. we have a couple of generic agency account, they have conditional access for onsite logon only and a USB yubikey each. There is a sharepoint document library for "cover work" and the accounts have access to this sharepoint folder. Longer term agency get their own accounts. Yubi pin get changed when the sheet of paper wears out or gets lost (usually weekly). I was thinking about getting a token2 OTP card and burning them to an account (renaming the accounts if necessary), that will save changing yubi pins.
  15. As often as a person loops back a cable. Nice to know it has been done as this doesn't affect the day to day running (as RTSP sorts it out) but you dont necessarily know it has been done. If students are messing about then other stuff has most likely happened in that class, keys being switched on keyboards etc. So I would rather get an alert for that, get it passed over to the behavioural team so that they can sort it out in a class. Ive also had a port flapping issue on a base unit picked up a few times, these stone AIO had NIC and WIFI, the NIC was misbehaving and flapping with the WIFI. Ive had a misconfigured AIO that was flapping and had internet sharing enabled, this naturally looped back with RTSP doing its nut, the AIO worked just fine but was a bit slow. Misconfigured software filling up logs on C:, UPS with a faulty fan. idrac talks nicely, ive had a faulty drive pick up via idrac forgetting that I also had a machine agent that did the same. I do have logic for our >10Gb links operating at 75% over a period of greater than 1 minute, if im hitting that level on my interconnects then there is an issue for us. Getting historical data on hypervisor and backupserver nic loads pinpointed a misconfiguration with SET (teaming) when everything appeared to be fine. Ironically enough, I dont bother with toner as the papercut alert worked so I didnt bother setting a sensor up for that.
×
×
  • Create New...