RE: [NTSysADM] Scheduling updates on a DC via GPO isn't working

2018-01-26 Thread Joseph L. Casale
Been a while since I used only wsus, but what does the reboot policy say? Computer Configuration/Policies/Administrative Templates/Windows Components/Windows Update "No auto-restart..." > -Original Message- > From: listsad...@lists.myitforum.com > [mailto:listsad...@lists.myitforum.com]

RE: [NTSysADM] Server build recommendation

2018-01-26 Thread Joseph L. Casale
I'm not sure who told you that, I have several setups where the DNS server is on the esxi host, including the actual firewall which performs routing and provides all network access as well... > -Original Message- > From: listsad...@lists.myitforum.com >

RE: [NTSysADM] Server build recommendation

2018-01-25 Thread Joseph L. Casale
Big fan of HP equipment, but the moment you add anything to it, the price scales up brutally fast. And recent HP servers also throw a health warning when you don’t use marked up HP branded add-ons... I personally don't see this as an option for a small cost conscience shop. > -Original

RE: [NTSysADM] Using PS to query date of latest Windows Updates installed

2018-01-17 Thread Joseph L. Casale
> PS P:\software\PHA Scripts> Get-WULastResults > WARNING: To perform some operations you must run an elevated Windows > PowerShell console. > Get-WULastResults : Object reference not set to an instance of an object. /snip > So this cmdlet should return exactly what I am looking for, but for

RE: [NTSysADM] New blog post: Windows Speculative Execution Client/Server Patches/Mitigations/Detection Summary

2018-01-04 Thread Joseph L. Casale
Which article quantifies the performance degradation? From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Ed Ziots Sent: Thursday, January 4, 2018 9:34 AM To: ntsysadm@lists.myitforum.com Subject: Re: [NTSysADM] New blog post: Windows Speculative Execution

[NTSysADM] RE: WSUS and Windows 10

2017-09-22 Thread Joseph L. Casale
That's the products, you need to filter those through classifications. Uncheck upgrades and feature packs for example if you don't need them. To be honest, I have not used WSUS directly in years and I don't know if you can obtain the granularity in it that Config Mgr provides. From:

[NTSysADM] RE: WSUS and Windows 10

2017-09-22 Thread Joseph L. Casale
Upgrades and feature updates in all language's... I have not used WSUS directly in a long time, but instead use it underneath Config Mgr and you need to be very specific about what you elect to distribute. In my case, I choose filters that are specific to versions and languages in use, rather

RE: [NTSysADM] Odd problems with account display after name change

2017-09-21 Thread Joseph L. Casale
Nice catch, reading up this shows the default is 10080 minutes. That’s pretty long... > -Original Message- > From: listsad...@lists.myitforum.com > [mailto:listsad...@lists.myitforum.com] On Behalf Of Kurt Buff > Sent: Thursday, September 21, 2017 2:56 PM > To: ntsysadm

RE: [NTSysADM] Odd problems with account display after name change

2017-09-20 Thread Joseph L. Casale
no > frickin' idea. IANAP. :-) > > -Original Message- > From: listsad...@lists.myitforum.com > [mailto:listsad...@lists.myitforum.com] On Behalf Of Joseph L. Casale > Sent: Wednesday, September 20, 2017 12:22 PM > To: 'ntsysadm@lists.myitforum.com' > Subject: RE: [NTSysADM

RE: [NTSysADM] Odd problems with account display after name change

2017-09-20 Thread Joseph L. Casale
A reboot has nothing to do with this, I assure you. When a user accesses the website, the asp.net code is invoked and the data is fetched from the request (if available), at that moment, every time. When the app pool recycles, server restarts, someone goes for a coffee break and then a user

RE: [NTSysADM] Odd problems with account display after name change

2017-09-19 Thread Joseph L. Casale
The queries your dev provided all return accounts in down level format. However, a name change need not propagate necessarily to things like proxyAddresses (and mail/mailNickname). I am pretty sure they are overlooking something else such as another call in some other page using some other

RE: [NTSysADM] Disabling a web site in IIS

2017-09-11 Thread Joseph L. Casale
If you are concerned with another admin enabling it, you can comment it out in the applicationHost.config. That effectively makes it disappear from the IIS Manager console without modifying anything on disk. I might take a copy of the applicationHost.config versus just commenting out the site

RE: [NTSysADM] Using GPP to fight Petya

2017-06-28 Thread Joseph L. Casale
Without digging into docs, I imagine your use of /force was the problem as you state the policy was successfully applied at boot. Read up on /force and /sync and the ramifications, good info… From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Michael

RE: [NTSysADM] Set-ImageSize Help

2017-06-16 Thread Joseph L. Casale
The error is not ambiguous, use full paths as ".\" means different things at different times… Or resolve paths with the location of your script, there are cmdlets and variables to help here. From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Sean Martin

[NTSysADM] RE: WMI query for AD

2017-06-02 Thread Joseph L. Casale
I tried looking for some info on how WMI plans and optimizes queries suspecting it was something like how SQL engines did but at least a quick search failed to find any info. Regardless, I would write the queries like this: select * from Win32_OperatingSystem where ProductType="1" AND Version

[NTSysADM] RE: WMI query for AD

2017-06-02 Thread Joseph L. Casale
Don't think you can use more than one WHERE... Use parenthesis. From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Miller Bonnie L. Sent: Friday, June 2, 2017 3:05 PM To: ntsysadm@lists.myitforum.com Subject: [NTSysADM] WMI query for AD Trying to craft a

[NTSysADM] RE: Windows 10 Explorer drag and drop issue

2017-06-02 Thread Joseph L. Casale
...@lists.myitforum.com<mailto:listsad...@lists.myitforum.com> [mailto:listsad...@lists.myitforum.com] On Behalf Of Joseph L. Casale Sent: Wednesday, May 31, 2017 3:05 PM To: ntsysadm@lists.myitforum.com<mailto:ntsysadm@lists.myitforum.com> Subject: [NTSysADM] RE: Windows 10 Explorer drag an

[NTSysADM] RE: Installing Win 2012 to an IBM x3550 M3

2017-06-01 Thread Joseph L. Casale
Well, remove the GPT label and use MBR, then add the partition layout need? From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Richard McClary Sent: Thursday, June 1, 2017 12:41 PM To: ntsysadm@lists.myitforum.com Subject: [NTSysADM] Installing Win 2012 to

[NTSysADM] RE: Nasty Outlook 2016 and Windows 10 issue

2017-06-01 Thread Joseph L. Casale
issue Everything looks good; I can't test a nonworking account if I can't add said account, though, can I? From: listsad...@lists.myitforum.com<mailto:listsad...@lists.myitforum.com> [mailto:listsad...@lists.myitforum.com] On Behalf Of Joseph L. Casale Sent: Thursday, June 01, 2017 10

[NTSysADM] RE: Nasty Outlook 2016 and Windows 10 issue

2017-06-01 Thread Joseph L. Casale
I haven't seen a scenario, but I could imagine one for an internal network where the service connection point was wrong and dns varied between workstations which might result in the behavior you describe. Might be worth checking the config. What does the output between a working and a

RE: [NTSysADM] Re: Very strange problem file server - read vs. write

2017-05-31 Thread Joseph L. Casale
Do you have jumbos enabled? > -Original Message- > From: listsad...@lists.myitforum.com > [mailto:listsad...@lists.myitforum.com] On Behalf Of Kurt Buff > Sent: Wednesday, May 31, 2017 6:34 PM > To: ntsysadm > Subject: Re: [NTSysADM] Re: Very strange problem

[NTSysADM] RE: Windows 10 Explorer drag and drop issue

2017-05-31 Thread Joseph L. Casale
! Issue resolved. Does it manifest just within Explorer windows or also when you try to drag anything to the desktop or even to another application? From: listsad...@lists.myitforum.com<mailto:listsad...@lists.myitforum.com> [mailto:listsad...@lists.myitforum.com] On Behalf Of Joseph L. Casal

[NTSysADM] RE: Windows 10 Explorer drag and drop issue

2017-05-31 Thread Joseph L. Casale
? From: listsad...@lists.myitforum.com<mailto:listsad...@lists.myitforum.com> [mailto:listsad...@lists.myitforum.com] On Behalf Of Joseph L. Casale Sent: 31 May 2017 18:51 To: 'ntsysadm@lists.myitforum.com' <ntsysadm@lists.myitforum.com<mailto:ntsysadm@lists.myitforum.com>>

[NTSysADM] Windows 10 Explorer drag and drop issue

2017-05-31 Thread Joseph L. Casale
I have a Windows 10 1607 wkst that can drag and drop objects only within a folder, that is a file can be dropped into a directory in the same directory as the file. If you drag an object outside of its own directory regardless of local or network drives, the icon gets a red circle with a cross.

[NTSysADM] RE: Managed Service Accounts

2017-05-25 Thread Joseph L. Casale
Behalf Of Joseph L. Casale Sent: Wednesday, May 24, 2017 3:09 PM To: ntsysadm@lists.myitforum.com<mailto:ntsysadm@lists.myitforum.com> Subject: [NTSysADM] RE: Managed Service Accounts I make extensive use of them. Anytime I need a service account (for Windows based apps that can utilize them)

[NTSysADM] RE: Managed Service Accounts

2017-05-24 Thread Joseph L. Casale
I make extensive use of them. Anytime I need a service account (for Windows based apps that can utilize them) I use an MSA or GMSA. They work great as they remove the manual password management task from you. For example, I always install MSSQL servers with them, the required permissions are

[NTSysADM] RE: First 2016 DC

2017-05-19 Thread Joseph L. Casale
Saw the same behavior when setting up quick one-off lab domains for test purposes on virtual machine's with under provisioned hardware. From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Heaton, Joseph@Wildlife Sent: Friday, May 19, 2017 3:34 PM To: 'NT

[NTSysADM] ADSI group enumeration

2017-04-06 Thread Joseph L. Casale
When enumerating group membership on a domain group, there are better ways but why does the following fail to indicate group type members? Only user types are returned. $group = [ADSI]('WinNT:///,group') $members = @($group.psbase.Invoke('members')) foreach ($member in $members) { $name =

[NTSysADM] RE: screen redraw/refresh on rds

2017-04-04 Thread Joseph L. Casale
The two methods are not even remotely equivalent, the bandwidth you get over CIFS versus sending screen drawing info are radically different. There are some msdn articles and blog entries on the topic, see

[NTSysADM] Re: SID history report

2017-04-03 Thread Joseph L. Casale
yitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Joseph L. Casale Sent: Sunday, April 2, 2017 2:47 PM To: 'ntsysadm@lists.myitforum.com' <ntsysadm@lists.myitforum.com> Subject: [NTSysADM] RE: SID history report Hi Brian, Forgive me, I don't exactly follow. A user in Doma

[NTSysADM] RE: SID history report

2017-04-02 Thread Joseph L. Casale
in the DomainA group. Thanks, Brian Desmond w - 312.625.1438 | c - 312.731.3132 From: listsad...@lists.myitforum.com<mailto:listsad...@lists.myitforum.com> [mailto:listsad...@lists.myitforum.com] On Behalf Of Joseph L. Casale Sent: Thursday, March 30, 2017 5:05 PM To: ntsysadm@lists.myitfor

[NTSysADM] RE: SID history report

2017-03-30 Thread Joseph L. Casale
And to add to that, any users in DomainB who have group membership (recursively as well) in a group that has one of the sids in question. I think that covers it? jlc From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Joseph L. Casale Sent: Thursday

[NTSysADM] SID history report

2017-03-30 Thread Joseph L. Casale
Hey guys, I am trying to automate a report that a user has been instructed to reproduce on a continued basis. Given a group "GroupA" in DomainA, I need to enumerate all users who have access implicitly through sIDHistory. Off the top of my head, does this miss anything: - Enumerate all

[NTSysADM] Re: Limit Remote DC to selectively replicate certain OUs?

2017-03-27 Thread Joseph L. Casale
ractice. Regards, Fut From: listsad...@lists.myitforum.com <listsad...@lists.myitforum.com> on behalf of Joseph L. Casale <jcas...@activenetwerx.com> Sent: Monday, March 27, 2017 9:53:28 AM To: ntsysadm@lists.myitforum.com Subject: [NTSysADM] Re: Limit Remote D

[NTSysADM] Re: Limit Remote DC to selectively replicate certain OUs?

2017-03-27 Thread Joseph L. Casale
Right, How would it handle a group that _is_ replicated which contains a member that _is not_ replicated? You'd end up with an inconsistent and broken mess... From: listsad...@lists.myitforum.com on behalf of Brian Desmond

RE: [NTSysADM] Change(s) in Windows 10 after Cumulative Update 1607 (KB3213986)

2017-03-10 Thread Joseph L. Casale
right click / run as works for me? From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Micheal Espinola Jr Sent: Friday, March 10, 2017 6:08 PM To: ntsysadm@lists.myitforum.com; Patch Management Mailing List

RE: [NTSysADM] Odd problem with DHCP

2017-02-08 Thread Joseph L. Casale
> -Original Message- > From: listsad...@lists.myitforum.com > [mailto:listsad...@lists.myitforum.com] On Behalf Of Kurt Buff > Sent: Wednesday, February 8, 2017 1:22 PM > To: ntsysadm > Subject: [NTSysADM] Odd problem with DHCP > I didn't have time to set

RE: [NTSysADM] Exchange sending via IPv6

2017-02-03 Thread Joseph L. Casale
Actually this is wrong in a couple ways, First, the “binary and” is the check for the condition, what you meant was “binary or” to combine the bit fields. Also, 0xff to disable all IPv6 components, not 0xfff. Lastly, anything binary or’ed with 0 is unchanged. In this implementation, its

RE: [NTSysADM] 48 port poe

2017-01-26 Thread Joseph L. Casale
I worked with that switch recently at my last spot, we replaced a 2820 with it. Very good switch in my opinion... jlc From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of J- P Sent: Thursday, January 26, 2017 6:23 PM To: ntsysadm@lists.myitforum.com Subject:

[NTSysADM] RE: 48 port poe

2017-01-25 Thread Joseph L. Casale
Can't beat the warranty and quality of product from an HPE/Aruba in my opinion... From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of J- P Sent: Wednesday, January 25, 2017 12:08 PM To: NT Subject: [NTSysADM] 48 port poe Hi

RE: [NTSysADM] Microsoft announces Windows 7 is a security disaster.

2017-01-18 Thread Joseph L. Casale
of software gets updates. Get that. Software shouldn't hide the fact that it has been updated or in the process of updating. On Wed, Jan 18, 2017 at 12:16 PM, Joseph L. Casale <jcas...@activenetwerx.com<mailto:jcas...@activenetwerx.com>> wrote: Couldn’t agree more, I don’t do today wh

RE: [NTSysADM] Microsoft announces Windows 7 is a security disaster.

2017-01-18 Thread Joseph L. Casale
Couldn’t agree more, I don’t do today what I learned had a better way to do yesterday. What that author simply leveraged pure FUD to describe was every piece of software ever written. From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Kent, Mark Sent:

RE: [NTSysADM] Serial device servers

2017-01-16 Thread Joseph L. Casale
I have used Digi branded units previously, between those and their other hardware I can say they make excellent gear. jlc From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of NP Sent: Monday, January 16, 2017 8:04 AM To: ntsysadm@lists.myitforum.com Subject:

[NTSysADM] RE: Disable TLS 1.0 on ADFS 3.0

2017-01-13 Thread Joseph L. Casale
HTTP.sys uses the schannel security support provider, try this link: https://technet.microsoft.com/en-us/library/dn786418(v=ws.11).aspx#BKMK_SchannelTR_TLS10 From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Christopher Bodnar Sent: Friday, January 13,

[NTSysADM] RE: Office 64bit improvements other than Excel

2016-12-09 Thread Joseph L. Casale
I had to visit that decision a while ago and aside from the plugin compatibility issues you say are handled a marginally bigger list of pros/cons is: https://support.office.com/en-us/article/Choose-the-64-bit-or-32-bit-version-of-Office-2016-2dee7807-8f95-4d0c-b5fe-6c6f49b8d261 That being said,

Re: [NTSysADM] PowerShell Help

2016-11-02 Thread Joseph L. Casale
For a migration toolkit I wrote, I used a regex with an assertion to split on unescaped commas to break down the distinguished name. I don't know your naming scheme but that's pretty easy to do robustly... On Nov 2, 2016, at 15:46, Dave Lum > wrote: I

RE: [NTSysADM] How best to schedule installing updates without SCCM?

2016-10-26 Thread Joseph L. Casale
Why not push for SCCM, its worth its weight in gold. The more I do with it, the more I love it, I couldn’t imagine life without it to be honest… The cost of it is easily mitigated by the OT charges I am sure. jlc From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On

RE: [NTSysADM] RE: Transfer switches

2016-09-29 Thread Joseph L. Casale
> I now always recommend power that is "always on". Nice:)

Re: [NTSysADM] RE: Transfer switches

2016-09-29 Thread Joseph L. Casale
an the other brands, but not onerously so. From: listsad...@lists.myitforum.com<mailto:listsad...@lists.myitforum.com> [mailto:listsad...@lists.myitforum.com] On Behalf Of Joseph L. Casale Sent: Friday, September 16, 2016 1:09 PM To: 'ntsysadm@lists.myitforum.com' <ntsysadm@lists.myitforu

[NTSysADM] RE: Transfer switches

2016-09-16 Thread Joseph L. Casale
APC sells them, not sure what is bad about them? Pretty common device in all but the simplest setups I would think? jlc From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Ken Cornetet Sent: Friday, September 16, 2016 10:48 AM To:

[NTSysADM] RE: More PowerShell help

2016-09-01 Thread Joseph L. Casale
Does it have to be a script? You can trivially generate an executable in C# with a manifest to require elevation, given you are using PowerShell you can certainly replicate the functionality in C#... jlc From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf

RE: [NTSysADM] Biometrics on Windows 10 1607

2016-08-30 Thread Joseph L. Casale
I am in a similar situation and just working through it. They have made some changes in sign in and lock security. For example, disabling the lock screen password request seems to only be partially available through GPOs, the same "Some settings are managed by your organization" gets an

[NTSysADM] SharePoint Foundation Replacement

2016-08-29 Thread Joseph L. Casale
Given that MS will not producing a SharePoint Foundation 2016 edition, what are the plans for orgs using it? I'd like to migrate a non-AD integrated internal wiki to something more windows integrated and SharePoint was a logical option. Thanks, jlc

RE: [NTSysADM] RE: exchange OOF

2016-08-18 Thread Joseph L. Casale
. -Original Message- From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Joseph L. Casale Sent: Thursday, August 18, 2016 3:26 PM To: 'ntsysadm@lists.myitforum.com' Subject: RE: [NTSysADM] RE: exchange OOF Sounds like you answered it right there, u

RE: [NTSysADM] RE: exchange OOF

2016-08-18 Thread Joseph L. Casale
Sounds like you answered it right there, u have not updated all the url's... -Original Message- From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Darren Martin Sent: Thursday, August 18, 2016 4:16 PM To: ntsysadm@lists.myitforum.com Subject: RE:

RE: [NTSysADM] PowerShell on Linux and Open Source

2016-08-18 Thread Joseph L. Casale
Mono will remain of interest to the majority crowd that it appealed to, the mobile guys under Xamarin. Once dotnetcore becomes more feature complete and finally the primary runtime, I certainly don’t see mono getting much attention thereafter. If the vendor itself supports your platform

[NTSysADM] Windows 10 1607 upgrade for Enterprise skew pcs not on domain

2016-08-18 Thread Joseph L. Casale
How does one perform the inplace upgrade in this scenario? The lower sku update binary refuses to update and the upgrade does not appear in windows updates for this sku? Thanks, jlc

[NTSysADM] RE: PowerShell on Linux and Open Source

2016-08-18 Thread Joseph L. Casale
What do you mean decouple the tools from the underlying engine? From an architectural perspective they are thoroughly decoupled I would say? The host and pipeline are distinct? Or maybe I misunderstand? Overall it obviously can only bring improvement, I just wish the language itself would

RE: [NTSysADM] Force sleep downside

2016-08-08 Thread Joseph L. Casale
There is a reg entry which prevents the pass prompt with the lock screen. If you don't find it via google let me know and I find and post what I have. jlc -Original Message- From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Klaus Hartnegg Sent:

RE: [NTSysADM] Force sleep downside

2016-08-07 Thread Joseph L. Casale
So if you force a machine to sleep, maybe you interrupt a process or prevent remote access to the pc. My opinion is we are all consenting adults, if you break it, the pieces are yours to keep for free. So if it were me, I'd post a warning on the reset portal or even raise a dialog of the

RE: [NTSysADM] Software versions

2016-08-04 Thread Joseph L. Casale
I’ve seen sites that do this but I wouldn’t say any I have come across where something enterprisable. What I have done for the obvious ones like Flash and Java are use a regex and url check in our network monitor system with a daily check. Not exactly sexy but effective for at least those

[NTSysADM] RE: Flash issues

2016-08-04 Thread Joseph L. Casale
o:listsad...@lists.myitforum.com> [mailto:listsad...@lists.myitforum.com] On Behalf Of Joseph L. Casale Sent: Thursday, August 4, 2016 11:52 AM To: 'ntsysadm@lists.myitforum.com' Subject: [NTSysADM] RE: Flash issues Well, there's the rub as its bundled, I have to revoke some updates in SCCM and manually un

[NTSysADM] RE: Flash issues

2016-08-04 Thread Joseph L. Casale
um.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Joseph L. Casale Sent: Thursday, August 04, 2016 10:11 AM To: 'ntsysadm@lists.myitforum.com' Subject: [NTSysADM] Flash issues I have a series of Windows 8.1 machines which cannot access a site from our bank. They send encrypted docs that require a

[NTSysADM] RE: Flash issues

2016-08-04 Thread Joseph L. Casale
o:listsad...@lists.myitforum.com> [mailto:listsad...@lists.myitforum.com] On Behalf Of Joseph L. Casale Sent: Thursday, August 4, 2016 11:13 AM To: 'ntsysadm@lists.myitforum.com' Subject: [NTSysADM] Flash issues I have a series of Windows 8.1 machines which cannot access a site from our bank. They send en

[NTSysADM] Flash issues

2016-08-04 Thread Joseph L. Casale
I have a series of Windows 8.1 machines which cannot access a site from our bank. They send encrypted docs that require a flash site and that sites errors out suggesting flash is not installed. It is, and the flash version verification site reports it is working fine. Funny, its either Java or

[NTSysADM] Re: OT: WAM replacement

2016-07-26 Thread Joseph L. Casale
Do you mean between now and June 16, 2016 12:53 PM when you last sent this same email? :) jlc From: listsad...@lists.myitforum.com on behalf of Christopher Bodnar Sent: July 26, 2016 1:29 PM To:

RE: [NTSysADM] Adobe cease & desist letter ?!?

2016-07-14 Thread Joseph L. Casale
Klaus, The notification is automated, not the act of bringing you to court nor passing judgment. Are you breaking the law? If not, create a rule and file the mail in G. If or when it escalates and a person reviews it, it won't go anywhere... While it sounds like an ahole move, it's not

[NTSysADM] RE: Active Directory LDAP MaxPageSize limit

2016-06-16 Thread Joseph L. Casale
I wonder what they will ask for when that great piece of kit encounters ranged retrieval:) From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Michael B. Smith Sent: Thursday, June 16, 2016 1:45 PM To: ntsysadm@lists.myitforum.com Subject: [NTSysADM] RE:

[NTSysADM] RE: OT: WAM replacement

2016-06-16 Thread Joseph L. Casale
My day job has me working for an IAM software vendor. My interests here don’t represent my day job usually so I keep the two distinct. Seems to me if you’re a Ping shop already you’d be best served remaining that way, and I don’t thing ForgeRock (the only real open source IAM product I know of)

[NTSysADM] RE: Reminders for SSL certs (and other things)

2016-06-15 Thread Joseph L. Casale
I use our network monitoring system for this. We use Icinga (a form of Nagios) and the check_http binary... From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Jonathan Raper Sent: Wednesday, June 15, 2016 11:40 AM To: ntsysadm@lists.myitforum.com Subject:

RE: [NTSysADM] GPO software installation

2016-06-13 Thread Joseph L. Casale
Right, Looks like the MSI was authored per user with advertised shortcuts. You can see this and all other properties which control this by opening it in Orca. Possibly you can generate a transform and alter it at GPO install time unless they have done something intentional. Either way, Orca

RE: [NTSysADM] RE: Windows 10 upgrade issue

2016-06-02 Thread Joseph L. Casale
> And sudo rm -rf /dir returned a message indicating it couldn't find the > directory, even when I was running the command from within the parent folder > and could see it there. That's your issue. If you were *in* a directory which you saw the target for deletion, then `rm -rf /dir` is wrong

RE: [NTSysADM] ADMT and a Copied DC

2015-03-30 Thread Joseph L. Casale
Passwords, ok but what is the use case on SIDs? When you migrate data, is it unmanged and messy, you cant programmatically fix it/repoint it? There are even ways around that, SetACL can migrate sids and you can even do it programmatically yourself if you have to. jlc From:

[NTSysADM] Re: Java and proxy.pac

2015-03-27 Thread Joseph L. Casale
And if I'm reading right, we might have to also configure the pac file here? We're putting together a test account right now to play with settings a copy of the .pac file. From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Joseph L. Casale Sent: Friday, March 27

[NTSysADM] Re: Java and proxy.pac

2015-03-27 Thread Joseph L. Casale
?So, The url is ssl enabled? I found in my env that I had to manually set the proxy settings for Java explicitly until I noticed that the pac file pointed to a dns entry for the proxy server pointed to a CNAME, changed that to the technically correct A record and all the machines that

[NTSysADM] RE: Robocopy Question

2015-03-24 Thread Joseph L. Casale
Junctions? From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Kelsey, John Sent: Tuesday, March 24, 2015 6:23 AM To: 'ntsysadm@lists.myitforum.com' Subject: [NTSysADM] Robocopy Question Robocopying a drive from a physical Win 2008 (32bit) server to a

[NTSysADM] Websphere MQ admins

2015-02-09 Thread Joseph L. Casale
Any mq admins on this list? I have a devel box I am trying to setup with v8.0 as 7.5 was giving me some flaky issues while writing a .net app. The 8.0 libraries have been working well, however I am trying to setup a local queue manager and the process I used in 7.5 for auth is not working.

[NTSysADM] windows installer paths and sccm

2015-01-20 Thread Joseph L. Casale
I am trying to help a colleague, seems they have an in house app authored with WIX that wont uninstall as the package looks for the original source and that was obviously in the cache folder which long expired. So, problem in the package I assume as I have never seen this in my usage. Anyone

RE: [NTSysADM] Time Sync on Virtual DCs

2014-12-03 Thread Joseph L. Casale
Search the vmware kb for Timekeeping, there are specific guidelines to follow. I've not encountered an issue ever using these, how does your env compare to their best practises? jlc From: listsad...@lists.myitforum.com listsad...@lists.myitforum.com on

[NTSysADM] RE: IIS and cals

2014-11-18 Thread Joseph L. Casale
for the current PUR. Have lots of caffeine sitting beside you. -Original Message- From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Joseph L. Casale Sent: Monday, November 17, 2014 3:43 PM To: ntsysadm@lists.myitforum.com Subject: [NTSysADM] IIS

[NTSysADM] RE: how to analyze BSOD minidump files

2014-10-27 Thread Joseph L. Casale
Just like the subject says, how do I interpret them?  I have BlueScreenView from nirsoft, loaded up the dmp files but don't know what the heck I'm doing from there.  Any tips or suggestions on how to read or analyze this? There is an endless supply of info through Google on this one, see

RE: [NTSysADM] LDAP Administrator question

2014-08-08 Thread Joseph L. Casale
 Seems there is a specific limitation in the Browser version due to the MaxPageSize value in AD so it only returns 1000 records. Other products out there have overcome this limitation (i.e. Quest uses the -sizelimit parameter). SizeLimit and PageSize are two different things. Sizelimit is the

RE: [NTSysADM] Win 8 OEM clean install - media, editions, activation

2014-07-22 Thread Joseph L. Casale
Can you use Crap Toshiba install disk, then a keyfinder app to harvest the key, and then once so harvested change it to that key? I have been following this thread as I am not thrilled with the requirement to use the shovel ware either, but that key wont work from my attempts. jlc

RE: [NTSysADM] Online server backups

2014-07-10 Thread Joseph L. Casale
One of my gigs with 1TB of data uses Crashplan Pro. We stage the data from all the servers to a single server and divide it all up by sets. Its unlimited data for 3 computers @ $10 each per month. Hasn’t missed a beat, I test it regularly and wrote my own reporting etc. jlc From:

RE: [NTSysADM] best/preferred remote re-imaging

2014-07-02 Thread Joseph L. Casale
You can you MDT 2013 to build your images with bundled apps or deploy the OS and add the apps in one step. You can use WDS to boot the systems. Very portable solution after the initial setup since is just a shared folder. Cesar, How does one prevent a wds server across a wan link from not

RE: [NTSysADM] File server question

2014-07-02 Thread Joseph L. Casale
We're going to be replacing our current 2003 server with a 2012 R2 VM. And then R R this again in a few more years? Use this as motivation to fix this once and for all, use DFS. :)

RE: [NTSysADM] best/preferred remote re-imaging

2014-07-01 Thread Joseph L. Casale
For a small office (30 pcs) what is the preferred (free or paid) imaging method? I haven't done that for ages. As I wont be onsite on a daily basis anymore , I want to be able to re image a PC with our default apps (Office/Sumatra/FF/Chrome/accounting app) and settings. I have windows

RE: [NTSysADM] Permission for Helpdesk

2014-06-23 Thread Joseph L. Casale
And what if he's a wiesenheimer and resets my password ? Read up on delegation, and specifically, delegating what to whom and where

RE: [NTSysADM] OT: LDAP attribute in Domino

2014-05-29 Thread Joseph L. Casale
It may not be available in the view you are accessing. I am actually working on a similar project and similar has been done. Let me know if you are still stuck and I will ask a Domino admin colleague. jlc From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of

RE: [NTSysADM] Disable the f**king Charms bar in Windows 8.1

2014-05-01 Thread Joseph L. Casale
I need to disable this because users can use the Charms bar to bypass the proxy How is your env setup such that this is even possible? Our users don’t have a network path anywhere not explicitly defined. Any app that *doesn't* use the proxy has no way out?

RE: [NTSysADM] RE: PowerShell unit testing

2014-04-24 Thread Joseph L. Casale
+1 for modular [script] programming. Build in terms of modules and standardize your variables.   In the future you can drop-in added functionality easy-peasy-lemon-squeezy. Like I said earlier, for one pager's or banging out simple scripts its not worth the time. But it doesn't scale. How do

[NTSysADM] RE: PowerShell unit testing

2014-04-23 Thread Joseph L. Casale
What is TDD? Test driven development. If you're only banging off simple scripts, not worth the effort but if you write anything large that requires ongoing maintenance, it's a discipline that pays off. In a nutshell, you write a unit test that defines what you put in and what you want out.

[NTSysADM] PowerShell unit testing

2014-04-22 Thread Joseph L. Casale
For those that have done TDD with PowerShell, what is your experience with the few libraries that provide mocking and testing? Pester does mocking, often a requirement and the syntax looks decent. PSUnit syntax isn't very appealing to me and I don't think it supports mocking? PSTest looks neat

RE: [NTSysADM] OT: Corporate Support of Open-Source projects

2014-04-20 Thread Joseph L. Casale
Why some open-source project enjoy so much more corporate support than others -- http://it.toolbox.com/blogs/virtual-cio/linux-vs-openssl-support-a-matter-of-revenue-potential-60915 Please take a look at this article and let me know what you think... So, if we're gonna compare Linux to

[NTSysADM] RE: Searching for an account attribute in a multi-site environment

2014-04-17 Thread Joseph L. Casale
L. Casale Sent: Monday, April 7, 2014 9:09 PM To: 'NTSysADM@lists.myitforum.com' Subject: [NTSysADM] Searching for an account attribute in a multi-site environment I have a situation in a multi-site environment where I am needing to perform some logic against an account depending on the value

[NTSysADM] Searching for an account attribute in a multi-site environment

2014-04-07 Thread Joseph L. Casale
I have a situation in a multi-site environment where I am needing to perform some logic against an account depending on the value (if any) of the targetAddress attr. I am seeing some potential issues in corner cases where either an ldap query for the account object itself returns object not

[NTSysADM] RE: Active Directory replication and account modifications

2014-01-24 Thread Joseph L. Casale
Alternatively, you could record which DC you hit with the first command, and then preferentially attempt to hit that same DC later on in your script. Or, use a single ADSI connection though the whole script. My script is Python based and runs as an independent process for which data is sent

RE: [NTSysADM] Alternatives to Network Solutions?

2014-01-06 Thread Joseph L. Casale
Tell me about Godaddy? I want to switch from them as I cant stand their repulsive add-like site... From: listsad...@lists.myitforum.com on behalf of Sam Cayze Sent: Monday, January 6, 2014 8:30 AM To: ntsysadm@lists.myitforum.com Subject: RE: [NTSysADM]

[NTSysADM] RE: MRTG setup

2014-01-04 Thread Joseph L. Casale
ASB, You have sent me information on setting up MRTG and Perl to get stats from my switches in the past. Can you send me some again? David, Are you looking to setup something and forget about it? If not, I can't stress my own opinion harder than to say Perl is a dead, very ugly language.

[NTSysADM] Access Masks

2013-12-30 Thread Joseph L. Casale
Hey guys, Does anyone know the composition of the Modify and Read Execute groups for access masks? For example, Full Control is mapped to (STANDARD_RIGHTS_REQUIRED |SYNCHRONIZE | 0x1FF). I've been hunting MSDN and haven't found the exact composition. Thanks, jlc

  1   2   >