@scottalanmiller interesting side note lol.

Posts made by dbeato
-
RE: hot potato workers
@scottalanmiller said in hot potato workers:
@dashrender said in hot potato workers:
M365 Business Premium
You already have Premium? Or you are just looking at the upgrade delta?
It's funny, in Central America "premium" is used as a derogatory term. It's funny to hear it in product names.
Premium is no a derogatory term in my country (Dominican Republic). It classifies as service higher than normal.
-
RE: My complex Windows Copy command stopped working.....
@jasgot said in My complex Windows Copy command stopped working.....:
It said Syntax Error. 0 Files Copied.
But..... now it is working.......
Well, maybe a reboot happened or it couldn't read the data and then now it can.
-
RE: weird display issue in Mangolassi
@dashrender said in weird display issue in Mangolassi:
This started showing up this morning.
in FirefoxChrome does this all the time. Either incognito, another browser or clearing the cache helps.
-
RE: Understanding STUN???
@dashrender said in Understanding STUN???:
@scottalanmiller said in Understanding STUN???:
@jasgot apparently Unifi uses STUN for some UDP traffic stuff in some cases. None of the normal stuff, must be log shipping which is a communications channel. They recommend having the port opened and forwarded. But it shouldn't cause problems. They noted that they only added the warning recently so it might have always had the issue without reporting it previously.
If by recently they mean 3 years ago, then I guess that was recent.. I've been having those errors for what seems like ages.
Correct, this has been there for ages now. STUN errors are common on Cloud Controllers which is all we have.
-
RE: Scheduled Task run cycle
@gjacobse No, sounds fair to me. I have many tasks like that for Opera Systems interfaces and other poorly designed applications. Even door systems for hotels we have had to come up with that too.
-
RE: HTML Editing
I use VSCode it works well too. It has that function as well.
-
RE: I've been asked to set up MFA on internal computers and servers
@scottalanmiller said in I've been asked to set up MFA on internal computers and servers:
@notverypunny said in I've been asked to set up MFA on internal computers and servers:
@dave247 said in I've been asked to set up MFA on internal computers and servers:
@notverypunny said in I've been asked to set up MFA on internal computers and servers:
@dbeato said in I've been asked to set up MFA on internal computers and servers:
@dave247 said in I've been asked to set up MFA on internal computers and servers:
@notverypunny said in I've been asked to set up MFA on internal computers and servers:
As far as the internet connectivity issues are concerned, AuthLite has 0 dependencies apart from AD. It can also integrate with NPS / RADIUS + AD to provide MFA to just about anything that can use RADIUS.
It's also per-user perpetual licensing
oh nice, I will check that out immediately. I was looking at Duo too (of course) so I wonder how that compares. I like the idea that it has no other dependencies than AD - that's perfect for our current environment.
Yeah, DUO has dependencies with their service and if the computer doesn't have internet it has the option to let you login without a prompt so that happens. Not sure if AuthLite does the same.
Authlite has support for offline logins (meaning if the machine can't talk to a DC), it just requires the installation of their client on the workstation / server / endpoint in question. You can also require / enforce 2FA on your endpoints.
Here's a thread where one of the authlite guys gives a quick comparison of AuthLite vs Duo.
https://www.reddit.com/r/sysadmin/comments/ct9m31/duo_vs_authlite_for_ad_mfa/Duo seems to be the easiest and I've been playing with it with the tiral. Its super easy to configure it so without Internet or Duo service connectivity, MFA is bypassed. So in the event we have an Internet outage (happens 2-3 times a year here), users will still be able to get into their computers.
OK.... but then the only thing that you have to do to bypass the security is pull the network cable, right? Unless there's some other requirement it seems like a massive security hole.
I guess "knowing to unplug the cable" is the second factor?
Also you can disable that setting and it won't let you login at all in Duo.
-
RE: I've been asked to set up MFA on internal computers and servers
@dave247 said in I've been asked to set up MFA on internal computers and servers:
@notverypunny said in I've been asked to set up MFA on internal computers and servers:
As far as the internet connectivity issues are concerned, AuthLite has 0 dependencies apart from AD. It can also integrate with NPS / RADIUS + AD to provide MFA to just about anything that can use RADIUS.
It's also per-user perpetual licensing
oh nice, I will check that out immediately. I was looking at Duo too (of course) so I wonder how that compares. I like the idea that it has no other dependencies than AD - that's perfect for our current environment.
Yeah, DUO has dependencies with their service and if the computer doesn't have internet it has the option to let you login without a prompt so that happens. Not sure if AuthLite does the same.
-
RE: KVM or VMWare
@jaredbusch It is supported you can either pay for support or run OpenSource.
https://xcp-ng.com/It has been super stable compared to Xenserver/Citrix XenServer.
-
RE: What Are You Doing Right Now
@jaredbusch It works on the legacy UI, newer UI is not so great for that.
-
RE: What Are You Doing Right Now
@jaredbusch Relax, people will come around to what you are saying.
@travisdh1 the Line of EdgeMax Switches are below
https://store.ui.com/collections/operator-edgemax-switchesand match the name that probably were written incorrectly before.
-
RE: What Are You Doing Right Now
@gjacobse So all your kids have gotten through this?
-
RE: What Are You Doing Right Now
@siringo said in What Are You Doing Right Now:
lost a client. been with them for 8-9 years.
no consultation, no nothing.
they have a track record of this type of behaviour
the worst thing about it all
the way i've been treated
got told my services were no longer required by a consultantthe new mob they've gone with
first thing they asked me to do (yeah, I'm going to take notice of what they want)
can I remove the av off all hosts so their rmm can be installed
this, while i'm still managing the networkYeah, this has been happening lately sorry to hear tha.