Re: Windows MMC - The parameter is incorrect error

2012-01-16 Thread Andrew S. Baker
On Sun, Jan 15, 2012 at 9:23 PM, Jay Kulsh jayku...@csi.com wrote: In addition to xcopy K:\Vid* D:\ /O /X /E /H /K /C /I /Q /Y I had also executed: xcopy K:\Vid* C:\ /O /X /E /H /K /C /I /Q /Y Okay, this is starting to make a little bit more sense. What, exactly, is in the source (K:\)

RE: Quarterly Admin password change

2012-01-16 Thread David Lum
+1 just did that myself via GPP. Our local admin maintenance GPO does two things: * Renames the local admin account. * Sets the password on the added-in local administrator account. Dave From: ed ziots [mailto:ezi...@hotmail.com] Sent: Sunday, January 15, 2012 2:49 PM To: NT

ADFS + SAML 2.0 w/ Concur = success!

2012-01-16 Thread David Lum
As you guys know, after much gnashing on this list I was finally able to get SAML working with ADFS. What took too-many hours of banging on it can know be done soup-to-nuts (including building a server OS from scratch - just to make sure I have the steps right) in two hours. There were a

Re: Windows MMC - The parameter is incorrect error

2012-01-16 Thread Jay Kulsh
K: was mapped to a remote drive which is compressed. That compression may be responsible in some way for the problem. Thanks. Jay ~ Finally, powerful endpoint security that ISN'T a resource hog! ~ ~ http://www.sunbeltsoftware.com/Business/VIPRE-Enterprise/ ~ --- To manage subscriptions click

RE: ADFS + SAML 2.0 w/ Concur = success!

2012-01-16 Thread Webster
Now write that up with screen shots and you have a blog article that can be useful to many others. Carl Webster Consultant and Citrix Technology Professional http://www.CarlWebster.com -Original Message- From: David Lum [mailto:david@nwea.org] Sent: Monday, January 16, 2012

RE: ADFS + SAML 2.0 w/ Concur = success!

2012-01-16 Thread David Lum
If I had a blog, I would. My internal document is far more detailed :-) Dave -Original Message- From: Webster [mailto:webs...@carlwebster.com] Sent: Monday, January 16, 2012 11:10 AM To: NT System Admin Issues Subject: RE: ADFS + SAML 2.0 w/ Concur = success! Now write that up with

RE: Quarterly Admin password change

2012-01-16 Thread Heaton, Joseph@DFG
Shouldn't you also disable the default local Administrator account, and create a new one, NOT named Administrator? Joe Heaton ITB - Windows Server Support From: ed ziots [mailto:ezi...@hotmail.com] Sent: Sunday, January 15, 2012 2:49 PM To: Heaton, Joseph@DFG; NT System Admin Issues Subject:

Re: Quarterly Admin password change

2012-01-16 Thread Kurt Buff
Not really. All this fooling about with the local admin accounts is fun, but mostly beside the point - except as a canary, for which you have to set up some sort of remote logging scheme and the infrastructure necessary to keep tabs on attempted logins.. Once you get to the point of creating a

RE: Quarterly Admin password change

2012-01-16 Thread Brian Desmond
Keep this in mind - http://blogs.technet.com/b/grouppolicy/archive/2008/08/04/passwords-in-group-policy-preferences.aspx. Thanks, Brian Desmond br...@briandesmond.com w - 312.625.1438 | c - 312.731.3132 From: David Lum [mailto:david@nwea.org] Sent: Monday, January 16, 2012 8:04 AM To: NT

RE: Quarterly Admin password change

2012-01-16 Thread David Lum
Saw that. My mitigation is to use the GPO for a week then nuke it, as our standard builds show follow the new PW convention and the GPO is to just catch up the previously-built systems. Thoughts? Dave From: Brian Desmond [mailto:br...@briandesmond.com] Sent: Monday, January 16, 2012 12:38 PM

RE: ADFS + SAML 2.0 w/ Concur = success!

2012-01-16 Thread Michael B. Smith
Happy to feature you as s guest author. Sent from my HTC Tilt™ 2, a Windows® phone from ATT -Original Message- From: David Lum david@nwea.org Sent: Monday, January 16, 2012 2:38 PM To: NT System Admin Issues ntsysadmin@lyris.sunbelt-software.com Subject: RE: ADFS + SAML 2.0 w/ Concur

Re: ADFS + SAML 2.0 w/ Concur = success!

2012-01-16 Thread Kurt Buff
Now there's an offer you don't see every day. On Mon, Jan 16, 2012 at 12:47, Michael B. Smith mich...@smithcons.com wrote: Happy to feature you as s guest author. Sent from my HTC Tilt™ 2, a Windows® phone from ATT -Original Message- From: David Lum david@nwea.org Sent: Monday,

Re: ADFS + SAML 2.0 w/ Concur = success!

2012-01-16 Thread Micheal Espinola Jr
He's been made an offer that he can't [see: shouldn't] refuse! -- Espi On Mon, Jan 16, 2012 at 1:08 PM, Kurt Buff kurt.b...@gmail.com wrote: Now there's an offer you don't see every day. On Mon, Jan 16, 2012 at 12:47, Michael B. Smith mich...@smithcons.com wrote: Happy to feature you

RE: ADFS + SAML 2.0 w/ Concur = success!

2012-01-16 Thread David Lum
That settles that, you will have it by this time tomorrow! Dave -Original Message- From: Michael B. Smith [mailto:mich...@smithcons.com] Sent: Monday, January 16, 2012 12:47 PM To: NT System Admin Issues Subject: RE: ADFS + SAML 2.0 w/ Concur = success! Happy to feature you as s guest

RE: DPM 2010 question: How to get rid of client computer.

2012-01-16 Thread Tobie Fysh
You'll need PowerShell :) remove-productionserver.ps1 script Tobie From: Ken Cornetet [mailto:ken.corne...@kimball.com] Sent: 16 January 2012 21:18 To: NT System Admin Issues Subject: DPM 2010 question: How to get rid of client computer. I have a DPM 2010 server where a client computer was

RE: ADFS + SAML 2.0 w/ Concur = success!

2012-01-16 Thread Webster
Welcome to the blogosphere. Carl Webster Consultant and Citrix Technology Professional http://www.CarlWebster.com -Original Message- From: David Lum [mailto:david@nwea.org] Sent: Monday, January 16, 2012 3:23 PM To: NT System Admin Issues Subject: RE: ADFS + SAML 2.0 w/ Concur

Re: ADFS + SAML 2.0 w/ Concur = success!

2012-01-16 Thread Steven Peck
Seriously, that will help cut down on search conflicts for others and give people a more trusted point of reference for this stuff. My own little corner really only exists to remind myself how I did something and occasionally save myself from repeating it. On Mon, Jan 16, 2012 at 1:22 PM, David

RE: Quarterly Admin password change

2012-01-16 Thread ed ziots
I always created a new one that is called administrator and put it in the Guest group and disabled it. ( then tracked if anyone used it, which would tip me off that something nefarious could be up) Basically renaming the default administrator account at best is a security by obscurity

RE: Rare Legal Fight Takes On Credit Card Company Security Standards and Fines

2012-01-16 Thread ed ziots
Yeah HIPAA covers both, and the privacy side has more muscle than the Security side... Z Edward E. Ziots Senior Informational Security Engineer CISSP,Security +,Network+ From: pdw1...@hotmail.com To: ntsysadmin@lyris.sunbelt-software.com Subject: RE: Rare Legal Fight Takes On Credit

RE: DPM 2010 question: How to get rid of client computer.

2012-01-16 Thread Ken Cornetet
Sounds promising, but all I get is inscrutable powershell errors. C:\Program Files\Microsoft DPM\DPM\binpowershell remove-productionserver.ps1 -DPMServername nts27.kii.kimball.com -PSName nts322.adstest.kimball.com There is failure while removing production server C:\Program Files\Microsoft

RE: Quarterly Admin password change

2012-01-16 Thread Brian Desmond
The purist would see that that's a week the password could be compromised. I'd probably let it slide though, especially in a small environment. Thanks, Brian Desmond br...@briandesmond.com w - 312.625.1438 | c - 312.731.3132 From: David Lum [mailto:david@nwea.org] Sent: Monday, January

RE: ADFS + SAML 2.0 w/ Concur = success!

2012-01-16 Thread Michael B. Smith
I want to know this myself. :) Regards, Michael B. Smith Consultant and Exchange MVP http://TheEssentialExchange.com From: Micheal Espinola Jr [mailto:michealespin...@gmail.com] Sent: Monday, January 16, 2012 4:15 PM To: NT System Admin Issues Subject: Re: ADFS + SAML 2.0 w/ Concur = success!

RE: ADFS + SAML 2.0 w/ Concur = success!

2012-01-16 Thread David Lum
2 hours of screenshots and obfuscation and I am only just now 90% done, I'll finish mañana. Takes less time to do it 9the 2nd time) than document it! When I got it working Friday I then thought about why it took me a damn week to get it. Documenting it I see the multiple places that easily