[NTSysADM] RE: domain admin account passwords management

2018-01-17 Thread Heaton, Joseph@Wildlife
EA and SA should be empty, until needed. A DA can add themselves to those groups. From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of David McSpadden Sent: Wednesday, January 17, 2018 9:30 AM To: ntsysadm@lists.myitforum.com Subject: [NTSysADM] RE: domain

RE: [NTSysADM] Are the Meltdown/Spectre reg keys needed for workstations?

2018-01-10 Thread Heaton, Joseph@Wildlife
My question to that statement, is: Have any of the chip manufacturers given a timeframe of when new, fixed, processors will be released? From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Michael B. Smith Sent: Tuesday, January 9, 2018 6:26 PM To:

[NTSysADM] RE: Surface and rdp small display

2018-01-10 Thread Heaton, Joseph@Wildlife
Terminals allows you to select RDP display settings, as well. From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Andrea 'ML' Suatoni Sent: Tuesday, January 9, 2018 8:20 AM To: ntsysadm@lists.myitforum.com Subject: [NTSysADM] RE: Surface and rdp small

RE: [NTSysADM] Oh, this one really hurts...

2018-01-04 Thread Heaton, Joseph@Wildlife
Should the patches be available thorugh WSUS? Or do we have to manually download and deploy? -Original Message- From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Michael B. Smith Sent: Wednesday, January 3, 2018 7:26 PM To:

[NTSysADM] DNS configuration question

2018-01-02 Thread Heaton, Joseph@Wildlife
Do you have to set scavenging on reverse lookup zones, or do you have the "Update associated pointer (PTR) record" checked? I'm getting some issues where the PTR record will either hold onto an old IP, or will not delete when the forward zone record is cleaned. My aging/scavenging settings:

[NTSysADM] RE: VDI options

2017-12-14 Thread Heaton, Joseph@Wildlife
you can replicate those with other tech. Happy to offer bits of advice offline if you need some help defining the actual scope, just shout. Cheers, JR From: listsad...@lists.myitforum.com<mailto:listsad...@lists.myitforum.com> [mailto:listsad...@lists.myitforum.com] On Behalf Of Heaton

[NTSysADM] RE: VDI options

2017-12-14 Thread Heaton, Joseph@Wildlife
istsad...@lists.myitforum.com<mailto:listsad...@lists.myitforum.com> [mailto:listsad...@lists.myitforum.com] On Behalf Of Heaton, Joseph@Wildlife Sent: 14 December 2017 16:21 To: 'NT System Admin Issues Discussion list' <ntsysadm@lists.myitforum.com<mailto:ntsysadm@lists.myitforum.com>> Sub

[NTSysADM] VDI options

2017-12-14 Thread Heaton, Joseph@Wildlife
I know there are tons of options for VDI out there today. I'm asking what you guys are using, and why. We are a VMWare shop, running ESXi 5.5, but don't own licensing for Horizon. That is currently the front-runner for the VDI project. I have looked at Jentu, very briefly, and while it

[NTSysADM] Owners of folders

2017-12-12 Thread Heaton, Joseph@Wildlife
How do you guys keep track of file/folder owners? i.e. who has the rights to request additions/removals of people to the access of those folders? Joe Heaton Information Technology Operations Branch Data and Technology Division CA Department of Fish and Wildlife 1700 9th Street, 3rd Floor

RE: [NTSysADM] RE: Crosspost: clearing the autocomplete cache

2017-12-01 Thread Heaton, Joseph@Wildlife
istsad...@lists.myitforum.com] On Behalf Of Heaton, Joseph@Wildlife Sent: Friday, December 1, 2017 9:34 AM To: ntsysadm@lists.myitforum.com<mailto:ntsysadm@lists.myitforum.com> Cc: excha...@lists.myitforum.com<mailto:excha...@lists.myitforum.com> Subject: [Exchange] RE: [NTSysADM] RE: C

RE: [NTSysADM] Bitlocker - set up and store keys in AD all at once

2017-12-01 Thread Heaton, Joseph@Wildlife
MBAM was super simple to setup. Don't need a separate instance, just have to have your DBA buy off on setting the Force Encrypt checkbox. Took me all of an hour or two to setup the entire environment. -Original Message- From: listsad...@lists.myitforum.com

RE: [NTSysADM] RE: Crosspost: clearing the autocomplete cache

2017-12-01 Thread Heaton, Joseph@Wildlife
s.myitforum.com] On Behalf Of Heaton, Joseph@Wildlife Sent: Thursday, November 30, 2017 10:05 AM To: 'NT System Admin Issues Discussion list' <ntsysadm@lists.myitforum.com<mailto:ntsysadm@lists.myitforum.com>>; excha...@lists.myitforum.com<mailto:excha...@lists.myitforum.com> Su

RE: [NTSysADM] DHCP role

2017-11-30 Thread Heaton, Joseph@Wildlife
en stand down DHCP on the domain controller and decondigure failover once the new server is confirmed to hand out IP's. (Assuming Win DHCP servers). Totally worth it in our opinion. Dave On Nov 30, 2017, at 8:21 AM, Heaton, Joseph@Wildlife <joseph.hea...@wildlife.ca.gov<mailto:joseph.hea...@wildlife

RE: [NTSysADM] Crosspost: clearing the autocomplete cache

2017-11-30 Thread Heaton, Joseph@Wildlife
more than contacts in my experience, they won't know what to do. On Thu, Nov 30, 2017 at 10:04 AM, Heaton, Joseph@Wildlife <joseph.hea...@wildlife.ca.gov<mailto:joseph.hea...@wildlife.ca.gov>> wrote: Recently, we did a cleanup of proxy addresses that were no longer needed. U

[NTSysADM] Crosspost: clearing the autocomplete cache

2017-11-30 Thread Heaton, Joseph@Wildlife
Recently, we did a cleanup of proxy addresses that were no longer needed. Unfortunately, this has caused an issue with our users, as some of their autocomplete entries are using the old, now gone, proxy addresses. I've been directed to clear everyone's autocomplete cache. I found a quick and

RE: [NTSysADM] DHCP role

2017-11-30 Thread Heaton, Joseph@Wildlife
30, 2017 7:45 AM To: ntsysadm@lists.myitforum.com Subject: RE: [NTSysADM] DHCP role I would migrate DHCP first. Webster From: listsad...@lists.myitforum.com<mailto:listsad...@lists.myitforum.com> [mailto:listsad...@lists.myitforum.com] On Behalf Of Heaton, Joseph@Wildlife Sent: Th

RE: [NTSysADM] DHCP role

2017-11-30 Thread Heaton, Joseph@Wildlife
e addressed by above. -- Mark From: "Heaton, Joseph@Wildlife" <joseph.hea...@wildlife.ca.gov<mailto:joseph.hea...@wildlife.ca.gov>> To:'NT System Admin Issues Discussion list' <ntsysadm@lists.myitforum.com<mailto:ntsysadm@lists.myitforum.com>> Date:

[NTSysADM] DHCP role

2017-11-29 Thread Heaton, Joseph@Wildlife
Is it still best practice to have DHCP NOT on a DC? I've been reading a bunch of stuff, but everything I'm reading refers to Server 2003 or older. Joe Heaton Information Technology Operations Branch Data and Technology Division CA Department of Fish and Wildlife 1700 9th Street, 3rd Floor

RE: [NTSysADM] Accessing only a lower level folder in a share

2017-11-14 Thread Heaton, Joseph@Wildlife
You need to setup folder traversal. Whatever group needs access at D4, needs read/execute (This folder only) at the levels above it. They'll be able to see folders along the way, but won't be able to open them. [cid:image001.png@01D35D27.B71D1300] -Original Message- From:

[NTSysADM] RE: NTFS permission management on shares/directories

2017-10-30 Thread Heaton, Joseph@Wildlife
We use NTFS Permissions Reporter from CJWDev www.cjwdev.co.uk Great product, but if it is a large file structure, you'll probably need 64-bit Excel for the report. Does everything you mention. From: listsad...@lists.myitforum.com

[NTSysADM] RE: replication issue

2017-09-28 Thread Heaton, Joseph@Wildlife
If you force replication, quickly. Otherwise it depends on what you've got in ADSS. From: listsad...@lists.myitforum.com<mailto:listsad...@lists.myitforum.com> [mailto:listsad...@lists.myitforum.com] On Behalf Of Heaton, Joseph@Wildlife Sent: Thursday, September 28, 2017 11:48 AM To: 'NT

[NTSysADM] replication issue

2017-09-28 Thread Heaton, Joseph@Wildlife
I have done some cleanup of a couple of old 208R2 DCs, and have removed them from the domain. Followed proper procedures, etc. This morning, I found a current DC that in Sites and Services, had its NTDS settings pointing only to one of the DCs I removed, almost 2 weeks ago now. I fixed the

[NTSysADM] RE: Running RSAT tools elevated

2017-09-22 Thread Heaton, Joseph@Wildlife
d launches with admin prompt, making life silky smooth. Good Luck! Ted From: Heaton, Joseph@Wildlife [mailto:joseph.hea...@wildlife.ca.gov] Sent: Thursday, September 21, 2017 2:49 PM To: ntsysadm@lists.myitforum.com<mailto:ntsysadm@lists.myitforum.com> Subject: [NTSysADM] RE: Running RSA

[NTSysADM] RE: Running RSAT tools elevated

2017-09-21 Thread Heaton, Joseph@Wildlife
tools elevated Are you logged in with a local admin account? Perhaps that is fooling UAC? From: listsad...@lists.myitforum.com<mailto:listsad...@lists.myitforum.com> [mailto:listsad...@lists.myitforum.com] On Behalf Of Heaton, Joseph@Wildlife Sent: Thursday, September 21, 2017 11

[NTSysADM] RE: Running RSAT tools elevated

2017-09-21 Thread Heaton, Joseph@Wildlife
From: listsad...@lists.myitforum.com<mailto:listsad...@lists.myitforum.com> [mailto:listsad...@lists.myitforum.com] On Behalf Of Heaton, Joseph@Wildlife Sent: Thursday, September 21, 2017 9:48 AM To: 'NT System Admin Issues Discussion list' Subject: [NTSysADM] Running RSAT tools elevated

RE: [NTSysADM] Building a test domain

2017-09-19 Thread Heaton, Joseph@Wildlife
, 2017 6:21 AM To: ntsysadm@lists.myitforum.com Subject: Re: [NTSysADM] Building a test domain On Tue, Sep 12, 2017 at 5:31 PM, Heaton, Joseph@Wildlife <joseph.hea...@wildlife.ca.gov> wrote: > For a quick build of a test domain, completely separate from a > production domain, wo

RE: [NTSysADM] CCleaner found to be backdoored for downloads between August 15 and September 12

2017-09-19 Thread Heaton, Joseph@Wildlife
Well, as long as you’re not using it in a Corporate environment: https://www.piriform.com/legal/software-license/ccleaner “You may NOT use the Product in corporate or commercial environments.” From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of James

RE: [NTSysADM] Dropping Kaspersky Av, who to replace it with?

2017-09-15 Thread Heaton, Joseph@Wildlife
S many political fire-fanning statements could be made here, but I will refrain. Things in the world are getting waaay out of hand these days. Make business decisions based on business needs, not political brouhaha going on. We use System Center Endpoint Protection here (and now Windows

[NTSysADM] Building a test domain

2017-09-12 Thread Heaton, Joseph@Wildlife
For a quick build of a test domain, completely separate from a production domain, would you take a vReplica of the production domain controller, then revive that in the test area? Sounds great, but I have huge trepidation about it. Joe Heaton Information Technology Operations Branch Data and

RE: [NTSysADM] RE: Any good SCOM lists?

2017-08-23 Thread Heaton, Joseph@Wildlife
m: listsad...@lists.myitforum.com<mailto:listsad...@lists.myitforum.com> [mailto:listsad...@lists.myitforum.com] On Behalf Of Heaton, Joseph@Wildlife Sent: Tuesday, August 22, 2017 5:56 PM To: ntsysadm@lists.myitforum.com<mailto:ntsysadm@lists.myitforum.com> Subject: RE: [NTSysADM] RE: Any good SCOM lists

[NTSysADM] RE: Any good SCOM lists?

2017-08-22 Thread Heaton, Joseph@Wildlife
yitforum.com] On Behalf Of Heaton, Joseph@Wildlife Sent: Friday, August 18, 2017 7:00 PM To: 'NT System Admin Issues Discussion list' Subject: [NTSysADM] Any good SCOM lists? I signed up for the MyITForum SCOM list, but haven't seen a single message in the few days since. Does anyone know of any active li

[NTSysADM] Cross post: Anyone using Autopilot?

2017-08-11 Thread Heaton, Joseph@Wildlife
Just wondering if anyone is using Microsoft's Autopilot? Good, bad, ugly? Thanks, Joe Heaton Information Technology Operations Branch Data and Technology Division CA Department of Fish and Wildlife 1700 9th Street, 3rd Floor Sacramento, CA 95811 Desk: 916-323-1284

RE: [NTSysADM] Advice on patching Domain Controllers via WSUS

2017-07-13 Thread Heaton, Joseph@Wildlife
<mailto:listsad...@lists.myitforum.com> [mailto:listsad...@lists.myitforum.com] On Behalf Of Heaton, Joseph@Wildlife Sent: Wednesday, July 12, 2017 10:07 AM To: ntsysadm@lists.myitforum.com<mailto:ntsysadm@lists.myitforum.com> Subject: RE: [NTSysADM] Advice on patching Domain Controllers via W

RE: [NTSysADM] Advice on patching Domain Controllers via WSUS

2017-07-12 Thread Heaton, Joseph@Wildlife
I patch everything with SCCM. Currently, all of my servers get updates deployed to them, with reboots being done manually by me after hours. I have a little over 200 total, minus the 30 or so in my test group that gets done the previous week. From: listsad...@lists.myitforum.com

[NTSysADM] RE: Folder redirection issues

2017-06-30 Thread Heaton, Joseph@Wildlife
Wait, the Chief TECHNOLOGY Officer is ok with Server 2003? The man needs to be fired. From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Dan Bartley Sent: Friday, June 30, 2017 12:20 PM To: 'ntsysadm@lists.myitforum.com'

[NTSysADM] RE: Group policy admx question

2017-06-15 Thread Heaton, Joseph@Wildlife
...@lists.myitforum.com<mailto:listsad...@lists.myitforum.com> [mailto:listsad...@lists.myitforum.com] On Behalf Of Heaton, Joseph@Wildlife Sent: Thursday, June 15, 2017 3:13 PM To: 'NT System Admin Issues Discussion list' <ntsysadm@lists.myitforum.com<mailto:ntsysadm@lists.myitforum.c

[NTSysADM] Group policy admx question

2017-06-15 Thread Heaton, Joseph@Wildlife
I just downloaded the admx file for Win 10 (1703) Creators Update, from here: https://www.microsoft.com/en-us/download/confirmation.aspx?id=55080 I then went looking for Server 2016 admx, and found a combined Win 10 and Server 2016, here:

[NTSysADM] Group Policy management

2017-05-31 Thread Heaton, Joseph@Wildlife
Was curious how everyone has Group Policy Management setup. I currently use one of my domain controllers as my "main" Group Policy management server, with AGPM installed there. I'm preparing to install PolicyPak, and don't want to do this on a domain controller, so I'm thinking that I'll

[NTSysADM] RE: First 2016 DC

2017-05-19 Thread Heaton, Joseph@Wildlife
ilto:listsad...@lists.myitforum.com] On Behalf Of Heaton, Joseph@Wildlife Sent: Friday, May 19, 2017 3:34 PM To: 'NT System Admin Issues Discussion list' <ntsysadm@lists.myitforum.com<mailto:ntsysadm@lists.myitforum.com>> Subject: [NTSysADM] First 2016 DC So, I just built a new Server 2016 bo

[NTSysADM] First 2016 DC

2017-05-19 Thread Heaton, Joseph@Wildlife
So, I just built a new Server 2016 box, and have made it a DC. It is the first 2016 DC in my environment. The install seemed to go fine, but the reboot is taking forever to happen. It has been sitting on the "Getting Windows ready, Don't turn off your computer" screen for at least 30 minutes

[NTSysADM] RE: Which drives for Synology?

2017-05-19 Thread Heaton, Joseph@Wildlife
They have a list of drives that their equipment works with. USE THAT LIST!!! We actually used that list, gave a vendor the exact part number, and they shipped something else, same size, and all stats, and the drives wouldn’t work. Had to ship them all back. Use the list.

RE: [NTSysADM] So simple a 6yo can do it...

2017-05-18 Thread Heaton, Joseph@Wildlife
Teddy Ruxpin!!! From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of John Matteson Sent: Wednesday, May 17, 2017 2:32 PM To: ntsysadm@lists.myitforum.com Subject: RE: [NTSysADM] So simple a 6yo can do it... A weaponized teddy bear? You’ll never look at

RE: [NTSysADM] Strange error for Security Event log

2017-05-10 Thread Heaton, Joseph@Wildlife
10, 2017 8:43 AM, "Heaton, Joseph@Wildlife" <joseph.hea...@wildlife.ca.gov<mailto:joseph.hea...@wildlife.ca.gov>> wrote: Server 2012R2 Domain Controller Main DHCP server for the domain This is affecting only my Security event log. The Application and System logs are wor

[NTSysADM] Strange error for Security Event log

2017-05-10 Thread Heaton, Joseph@Wildlife
Server 2012R2 Domain Controller Main DHCP server for the domain This is affecting only my Security event log. The Application and System logs are working fine. When I try to look at the Security log, I get an error: "Event Viewer cannot open the event log or custom view. Verify that Event

[NTSysADM] MBAM install questions

2017-05-05 Thread Heaton, Joseph@Wildlife
I've read that the TDE function is optional. For those running MBAM, did you use an Enterprise SQL, and use the TDE function, or just Standard SQL? Did you use a dedicated SQL server, or just add the databases to an existing server? If I'm integrating with SCCM, do I still need to use SSRS on

[NTSysADM] RE: Bitlocker/MBAM

2017-05-05 Thread Heaton, Joseph@Wildlife
patience, to listen to error without anger." -Gandalf From: listsad...@lists.myitforum.com<mailto:listsad...@lists.myitforum.com> [mailto:listsad...@lists.myitforum.com] On Behalf Of Heaton, Joseph@Wildlife Sent: Thursday, April 6, 2017 6:18 PM To: 'NT System Admin Issues Discussion list' <nt

[NTSysADM] RE: Bitlocker/MBAM

2017-05-05 Thread Heaton, Joseph@Wildlife
;It gives patience, to listen to error without anger." -Gandalf From: listsad...@lists.myitforum.com<mailto:listsad...@lists.myitforum.com> [mailto:listsad...@lists.myitforum.com] On Behalf Of Heaton, Joseph@Wildlife Sent: Thursday, April 6, 2017 6:18 PM To: 'NT System Admin Issues Dis

RE: [NTSysADM] Strange memory issue on a DC

2017-05-03 Thread Heaton, Joseph@Wildlife
om<mailto:listsad...@lists.myitforum.com> [mailto:listsad...@lists.myitforum.com<mailto:listsad...@lists.myitforum.com>] On Behalf Of Heaton, Joseph@Wildlife Sent: Tuesday, May 2, 2017 2:04 PM To: ntsysadm@lists.myitforum.com<mailto:ntsysadm@lists.myitforum.com> Subject: RE: [NTSysADM] St

RE: [NTSysADM] Strange memory issue on a DC

2017-05-02 Thread Heaton, Joseph@Wildlife
sad...@lists.myitforum.com> [mailto:listsad...@lists.myitforum.com<mailto:listsad...@lists.myitforum.com>] On Behalf Of Heaton, Joseph@Wildlife Sent: Tuesday, May 2, 2017 2:04 PM To: ntsysadm@lists.myitforum.com<mailto:ntsysadm@lists.myitforum.com> Subject: RE: [NTSysADM] Strange me

RE: [NTSysADM] Strange memory issue on a DC

2017-05-02 Thread Heaton, Joseph@Wildlife
Behalf Of Heaton, Joseph@Wildlife Sent: Tuesday, May 2, 2017 2:04 PM To: ntsysadm@lists.myitforum.com<mailto:ntsysadm@lists.myitforum.com> Subject: RE: [NTSysADM] Strange memory issue on a DC The log is set to a max of 4GB. It is currently 3.88GB. It is also set to Overwrite events as needed (o

RE: [NTSysADM] Strange memory issue on a DC

2017-05-02 Thread Heaton, Joseph@Wildlife
in the world... those who understand binary and those who don't. From: listsad...@lists.myitforum.com<mailto:listsad...@lists.myitforum.com> [mailto:listsad...@lists.myitforum.com] On Behalf Of Heaton, Joseph@Wildlife Sent: Friday, April 28, 2017 10:15 AM To: ntsysadm@lists.myitfor

RE: [NTSysADM] Strange memory issue on a DC

2017-04-28 Thread Heaton, Joseph@Wildlife
, Joseph@Wildlife <joseph.hea...@wildlife.ca.gov<mailto:joseph.hea...@wildlife.ca.gov>> wrote: This DC is 2012R2. It is a VMWare guest. It has been running at 95%+ memory utilization. I’m not sure for how long, but I happened to see an alarm for CPU utilization on the guest when I wa

RE: [NTSysADM] Strange memory issue on a DC

2017-04-27 Thread Heaton, Joseph@Wildlife
Is the host's memory over-subscribed by all of the guests? On Thu, Apr 27, 2017 at 10:11 AM, Heaton, Joseph@Wildlife <joseph.hea...@wildlife.ca.gov<mailto:joseph.hea...@wildlife.ca.gov>> wrote: This DC is 2012R2. It is a VMWare guest. It has been running at 95%+ memory utilization.

RE: [NTSysADM] Strange memory issue on a DC

2017-04-27 Thread Heaton, Joseph@Wildlife
: [NTSysADM] Strange memory issue on a DC Joseph, I had the exact same thing happen last night to a 2012R2 DC running on ESXi. Additionally, we have 2 2012 R2 IIS server that are exhibiting the same behavior. Eric On Thu, Apr 27, 2017 at 9:11 AM, Heaton, Joseph@Wildlife <joseph.

RE: [NTSysADM] Strange memory issue on a DC

2017-04-27 Thread Heaton, Joseph@Wildlife
istsad...@lists.myitforum.com<mailto:listsad...@lists.myitforum.com>] On Behalf Of Heaton, Joseph@Wildlife Sent: Thursday, April 27, 2017 10:11 AM To: 'NT System Admin Issues Discussion list' <ntsysadm@lists.myitforum.com<mailto:ntsysadm@lists.myitforum.com>> Subject: [NTSysADM] Stra

[NTSysADM] Strange memory issue on a DC

2017-04-27 Thread Heaton, Joseph@Wildlife
This DC is 2012R2. It is a VMWare guest. It has been running at 95%+ memory utilization. I'm not sure for how long, but I happened to see an alarm for CPU utilization on the guest when I was in vCenter yesterday afternoon. When I RDP into the domain controller, it is very slow to login. I

[NTSysADM] Bitlocker/MBAM

2017-04-06 Thread Heaton, Joseph@Wildlife
We're looking to implement Bitlocker when we migrate to Windows 10. I'm starting research of MBAM, and how to best implement. Does anyone have real world experience/advice on whether to integrate with Config Mgr, or go with the standalone topology? For those that are using MBAM, are you

RE: [NTSysADM] Asset Management Options

2017-03-22 Thread Heaton, Joseph@Wildlife
Well that was convenient. From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Alex Nabicht Sent: Friday, March 17, 2017 9:55 AM To: ntsysadm@lists.myitforum.com Subject: Re: [NTSysADM] Asset Management Options After playing around with GLPI/Fusion, I found

[NTSysADM] Office 365 licensing question

2017-02-24 Thread Heaton, Joseph@Wildlife
For the E1 licensing, I've heard a rumor that they have to be tied to Azure AD, not on-prem AD. Does anyone know if that's correct? We have several hundred employees that don't need a computer or Office, but do need e-mail, for timesheet purposes. We want to give those folks E1 licenses.

RE: [NTSysADM] Synology

2017-02-03 Thread Heaton, Joseph@Wildlife
tRWYzl3c05mI/i02bj5Sb1J3bmRXa51mLzR3cpxGQtRWYzl3c05mI] On Thu, Feb 2, 2017 9:43 AM, Heaton, Joseph@Wildlife joseph.hea...@wildlife.ca.gov<mailto:joseph.hea...@wildlife.ca.gov> wrote: We’re looking to replace our existing NAS in our field offices, and we’re trying to get some info from our Synology rep. However, he doesn’

RE: [NTSysADM] Group Policy question

2017-01-25 Thread Heaton, Joseph@Wildlife
would be able to choose that account for the user settings next time you run RSOP. From: listsad...@lists.myitforum.com<mailto:listsad...@lists.myitforum.com> [mailto:listsad...@lists.myitforum.com<mailto:listsad...@lists.myitforum.com>] On Behalf Of Heaton, Joseph@Wildlife Sen

RE: [NTSysADM] Group Policy question

2017-01-25 Thread Heaton, Joseph@Wildlife
ght cause this, but I’m not certain.) From: listsad...@lists.myitforum.com<mailto:listsad...@lists.myitforum.com> [mailto:listsad...@lists.myitforum.com<mailto:listsad...@lists.myitforum.com>] On Behalf Of Heaton, Joseph@Wildlife Sent: Tuesday, January 24, 2017 5:25

RE: [NTSysADM] Group Policy question

2017-01-24 Thread Heaton, Joseph@Wildlife
forum.com>] On Behalf Of Heaton, Joseph@Wildlife Sent: Tuesday, January 24, 2017 3:50 PM To: 'NT System Admin Issues Discussion list' <ntsysadm@lists.myitforum.com<mailto:ntsysadm@lists.myitforum.com>> Subject: [NTSysADM] Group Policy question What would cause gpresult /USER jsmith /R to show

[NTSysADM] Group Policy question

2017-01-24 Thread Heaton, Joseph@Wildlife
What would cause gpresult /USER jsmith /R to show a specific group policy as being applied, but if you do a gpresult /USER jsmith /H c:\test.html, the report does not show any of the settings of that policy? Joe Heaton Information Technology Operations Branch Data and Technology Division CA

RE: [NTSysADM] migrating to iPhone

2016-12-27 Thread Heaton, Joseph@Wildlife
We are fully iPhone here (not my choice). We currently use AirWatch for MDM, but will be moving to Intune in the short term future. From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Kish N Kepi Sent: Sunday, December 25, 2016 10:45 AM To:

[NTSysADM] Group Policy cleanup/maintenance

2016-11-17 Thread Heaton, Joseph@Wildlife
How do you guys deal with Group Policy objects, in regards to discovery and cleanup of "stale" objects? I have to come up with a procedural document for this process. Joe Heaton Information Technology Operations Branch Data and Technology Division CA Department of Fish and Wildlife 1700 9th

[NTSysADM] Win 10 admx files

2016-11-17 Thread Heaton, Joseph@Wildlife
Just downloaded the Win 10 admx files, and getting ready to put them in the central store. I did see some talk of issues with them; other things that needed to be done after adding them, some older settings not being there anymore, etc. Have those issues been ironed out, or are there still

[NTSysADM] RE: AAD Connect question

2016-10-18 Thread Heaton, Joseph@Wildlife
We had to reinstall AAD Connect, when we did that exact thing. From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Christopher Bodnar Sent: Friday, October 14, 2016 1:57 PM To: ntsysadm@lists.myitforum.com Subject: [NTSysADM] AAD Connect question Does

[NTSysADM] RE: Modified date on distribution group AD object

2016-10-14 Thread Heaton, Joseph@Wildlife
. Thanks, Brian Desmond (w) 312.625.1438 | (c) 312.731.3132 From: listsad...@lists.myitforum.com<mailto:listsad...@lists.myitforum.com> [mailto:listsad...@lists.myitforum.com] On Behalf Of Heaton, Joseph@Wildlife Sent: Thursday, October 13, 2016 11:30 AM To: 'NT System Admin Issues Discussio

RE: [NTSysADM] Modified date on distribution group AD object

2016-10-14 Thread Heaton, Joseph@Wildlife
o:listsad...@lists.myitforum.com>] On Behalf Of Heaton, Joseph@Wildlife Sent: Thursday, October 13, 2016 11:30 AM To: 'NT System Admin Issues Discussion list' <ntsysadm@lists.myitforum.com<mailto:ntsysadm@lists.myitforum.com>> Subject: [NTSysADM] Modified date on distribution group AD object We hav

[NTSysADM] Modified date on distribution group AD object

2016-10-13 Thread Heaton, Joseph@Wildlife
We have 16 distribution groups that are showing the exact same Modified timestamp. A couple of these are used for automated message delivery for different applications. Since this change date, those messages are no longer being delivered. I use Netwrix to audit things, and it doesn't have

[NTSysADM] RE: Java redirection tools

2016-09-01 Thread Heaton, Joseph@Wildlife
<mailto:listsad...@lists.myitforum.com> [mailto:listsad...@lists.myitforum.com] On Behalf Of Heaton, Joseph@Wildlife Sent: 01 September 2016 15:46 To: 'NT System Admin Issues Discussion list' <ntsysadm@lists.myitforum.com<mailto:ntsysadm@lists.myitforum.com>> Subject: [NTSysADM] Java

[NTSysADM] Java redirection tools

2016-09-01 Thread Heaton, Joseph@Wildlife
It's been quite a while, but there was a discussion about tools that can be used to tell specific applications/websites, etc. to use a specific version of Java, while everything else would use the latest version. One of the companies doing this is FSLogix, but I need to find the other

RE: [NTSysADM] Re: Outlook desktop alert changes

2016-08-18 Thread Heaton, Joseph@Wildlife
Mine has been doing it randomly. Sometimes when multiple messages come in, sometimes when one comes in, but I haven’t looked at Inbox for a while. Maybe x number of messages within a certain time frame? From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of

RE: [NTSysADM] A petition to Microsoft asking them to stop removing management features

2016-08-02 Thread Heaton, Joseph@Wildlife
12 down, 88 to go :) -Original Message- From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Melvin Backus Sent: Tuesday, August 02, 2016 10:56 AM To: ntsysadm@lists.myitforum.com Subject: RE: [NTSysADM] A petition to Microsoft asking them to stop

[NTSysADM] RE: Compatibility View Settings for IE11

2016-08-02 Thread Heaton, Joseph@Wildlife
sad...@lists.myitforum.com> [mailto:listsad...@lists.myitforum.com] On Behalf Of Heaton, Joseph@Wildlife Sent: 02 August 2016 17:54 To: 'NT System Admin Issues Discussion list' <ntsysadm@lists.myitforum.com<mailto:ntsysadm@lists.myitforum.com>> Subject: [NTSysADM] Compatibility View Setting

[NTSysADM] Compatibility View Settings for IE11

2016-08-02 Thread Heaton, Joseph@Wildlife
I want to deselect the box in IE 11 Compatibility Settings that states: Display intranet sites in Compatibility View (seen below) [cid:image001.png@01D1ECA3.CCB826A0] I want to do this through Group Policy. I've found a setting under Computer Configuration - Policies - Administrative

RE: [NTSysADM] RE: Websites that only work in a specific browser

2016-07-29 Thread Heaton, Joseph@Wildlife
Gotcha. Policy Pak Browser Router does that type of thing, as well. From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of James Rankin Sent: Thursday, July 28, 2016 1:33 PM To: ntsysadm@lists.myitforum.com Subject: Re: [NTSysADM] RE: Websites that only work

[NTSysADM] RE: Websites that only work in a specific browser

2016-07-28 Thread Heaton, Joseph@Wildlife
You're not testing Browser Router, by chance, are you? From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of James Rankin Sent: Tuesday, July 26, 2016 3:31 AM To: ntsysadm@lists.myitforum.com Subject: [NTSysADM] Websites that only work in a specific browser

RE: [NTSysADM] Powershell help

2016-07-28 Thread Heaton, Joseph@Wildlife
,ou=xxx,ou=xxx,dc=xxx,dc=local' -Properties * | % { try { $_ | Set-ADUser -UserPrincipalName "$($_.EmailAddress)" -ErrorAction Stop } catch { Write-Warning -Message "Failed because $($_.Exception.Message)" } } On Wed, Jul 27, 2016 at 4:27 AM, Heaton, Joseph@W

[NTSysADM] Powershell help

2016-07-26 Thread Heaton, Joseph@Wildlife
I'm trying to set my users' userPrincipalName to be the same as the emailaddress. Here's the snippet I'm trying to use: Get-ADUser -Filter * -SearchBase 'ou=xxx,ou=xxx,ou=xxx,dc=xxx,dc=local' -Properties userPrincipalName | foreach { Set-ADUser $_ -UserPrincipalName "$($_.emailaddress)"} I

RE: [NTSysADM] Enterprise Admin best practice

2016-06-29 Thread Heaton, Joseph@Wildlife
forum.com>] On Behalf Of Heaton, Joseph@Wildlife Sent: Tuesday, June 28, 2016 5:49 PM To: 'NT System Admin Issues Discussion list' <ntsysadm@lists.myitforum.com<mailto:ntsysadm@lists.myitforum.com>> Subject: [NTSysADM] Enterprise Admin best practice I remember hearing, I believe on

RE: [NTSysADM] Enterprise Admin best practice

2016-06-29 Thread Heaton, Joseph@Wildlife
:listsad...@lists.myitforum.com>] On Behalf Of Heaton, Joseph@Wildlife Sent: Tuesday, June 28, 2016 5:49 PM To: 'NT System Admin Issues Discussion list' <ntsysadm@lists.myitforum.com<mailto:ntsysadm@lists.myitforum.com>> Subject: [NTSysADM] Enterprise Admin best practice I remember

[NTSysADM] RE: Enterprise Admin best practice

2016-06-28 Thread Heaton, Joseph@Wildlife
://technet.microsoft.com/en-us/library/dn487446.aspx From: listsad...@lists.myitforum.com<mailto:listsad...@lists.myitforum.com> [mailto:listsad...@lists.myitforum.com] On Behalf Of Heaton, Joseph@Wildlife Sent: Tuesday, June 28, 2016 5:49 PM To: 'NT System Admin Issues Discussion list' Subject: [NT

[NTSysADM] Enterprise Admin best practice

2016-06-28 Thread Heaton, Joseph@Wildlife
I remember hearing, I believe on this list, that the best practice for the Enterprise Admin role was to only have a service account in that role, with a very complex password, that is written down and locked in a file cabinet. I've just implemented that, but now I'm getting blowback. Does

[NTSysADM] RE: Microsoft buys Linkedin

2016-06-15 Thread Heaton, Joseph@Wildlife
nkedin Not sure what to think, but I believe the new Windows 10 BSOD is related. [cid:image001.jpg@01D1C6D5.8A1BB3A0] From: listsad...@lists.myitforum.com<mailto:listsad...@lists.myitforum.com> [mailto:listsad...@lists.myitforum.com] On Behalf Of Heaton, Joseph@Wildlife Sent: Tuesday, June 14,

[NTSysADM] Microsoft buys Linkedin

2016-06-14 Thread Heaton, Joseph@Wildlife
Opinions? https://redmondmag.com/blogs/the-schwartz-report/2016/06/microsoft-acquires-linkedin.aspx Joe Heaton Information Technology Operations Branch Data and Technology Division CA Department of Fish and Wildlife 1700 9th Street, 3rd Floor Sacramento, CA 95811 Desk: (916) 323-1284 Every

[NTSysADM] What do I lose if my MELA expires?

2016-05-27 Thread Heaton, Joseph@Wildlife
Subject says it all. If our MELA expires, without a renewal/new agreement in place, what do I lose? Joe Heaton

[NTSysADM] RE: OTish Back hoe bingo.

2016-05-20 Thread Heaton, Joseph@Wildlife
YAHTZEE!!! From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Kennedy, Jim Sent: Friday, May 20, 2016 1:01 PM To: ntsysadm@lists.myitforum.com Subject: [NTSysADM] OTish Back hoe bingo. So you might remember a few months ago where at one of our buildings

[NTSysADM] RE: Windows 10 Tech Preview for Enterprise

2015-01-20 Thread Heaton, Joseph@Wildlife
it without a MS ID. http://www.baldnerd.com/install-windows-10-without-a-microsoft-account/ From: listsad...@lists.myitforum.commailto:listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Heaton, Joseph@Wildlife Sent: Friday, January 16, 2015 4:14 PM To: NT System

[NTSysADM] Windows 10 Tech Preview for Enterprise

2015-01-16 Thread Heaton, Joseph@Wildlife
Is this able to join a domain? I was reading that you have to login with a Microsoft ID, so wasn't sure if you could join and test domain stuff. Joe Heaton Enterprise Server Support Information Technology Operations Branch Data and Technology Division CA Department of Fish and Wildlife 1700 9th

RE: [NTSysADM] RE: files not showing

2015-01-02 Thread Heaton, Joseph@Wildlife
/Database Admin/Security/Systems Admin Department!) At this point I can only blame myself for not training them better. From: listsad...@lists.myitforum.commailto:listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.commailto:listsad...@lists.myitforum.com] On Behalf Of Heaton, Joseph

RE: [NTSysADM] Dead body Wednesday report:

2014-12-11 Thread Heaton, Joseph@Wildlife
We never push patches on Patch Tuesday. I wait a few days, at least, watching this list, as well as a couple of others. If I don't hear any grumbling, then I push patches to my test group. They have 2-3 weeks to play with the patches, to see if there are any issues. If not, we push to the

[NTSysADM] RE: Firewalls / Web filtering

2014-12-03 Thread Heaton, Joseph@Wildlife
We're currently using ASAs and Websense. Being forced to migrate to Palo Alto within the next 6 months or so. From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Stefan Jafs Sent: Wednesday, December 03, 2014 8:52 AM To: ntsysadm@lists.myitforum.com

RE: [NTSysADM] MS14-066 - secure channel vulnerability

2014-11-13 Thread Heaton, Joseph@Wildlife
What about web machines behind say, TMG? From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Andrew S. Baker Sent: Wednesday, November 12, 2014 5:57 PM To: ntsysadm Subject: Re: [NTSysADM] MS14-066 - secure channel vulnerability There's nothing in the wild

RE: [NTSysADM] Size on Disk HUGE discrepancy

2014-10-31 Thread Heaton, Joseph@Wildlife
Because you're taking it out of a deduplicated location. Read the article about the blocks being moved into the System area. From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of J- P Sent: Friday, October 31, 2014 10:27 AM To: NT Subject: RE: [NTSysADM]

[NTSysADM] Security training

2014-10-16 Thread Heaton, Joseph@Wildlife
There's a new position being created in my organization that is supposed to be an infosec type of position. My manager had told me to look into CISSP training/certification. I know that's the pinnacle, and beyond the normal day-to-day stuff of being a systems administrator, working with a

RE: [NTSysADM] Security training

2014-10-16 Thread Heaton, Joseph@Wildlife
. On Thu, Oct 16, 2014 at 9:53 AM, Heaton, Joseph@Wildlife joseph.hea...@wildlife.ca.govmailto:joseph.hea...@wildlife.ca.gov wrote: There’s a new position being created in my organization that is “supposed” to be an infosec type of position. My manager had told me to look into CISSP training

RE: [NTSysADM] password expiration notices

2014-08-14 Thread Heaton, Joseph@Wildlife
Here's the default one. Found in one of the sections we hadn't customized yet: Hi Joseph, Your password for account JHeaton expires in 0 day(s). Please change the password as soon as possible to prevent further logon problems. Thank you! This is an automatically

RE: [NTSysADM] password expiration notices

2014-08-14 Thread Heaton, Joseph@Wildlife
Here's what ours looks like. I have customized it from the default, but I don't remember any propaganda in it. Hi Joseph, Your password for account JHeaton expires in 0 day(s). Please change the password as soon as possible to prevent further logon problems. If connected to the network,

  1   2   >