DK2 what is the best practice for vpn @ windows server 2012? DK2 it doesnt have IPSEC so i have to go PPTP? viscera Why aren't MSAs supported for DHCP DNS updates? $cred=(Get-ADServiceAccount -Identity FOO); Set-DhcpServerDnsCredential -Credential$cred viscera It fails with "Cannot process argument transformation on parameter 'Credential'. userName" viscera I've done Insatll-ADServiceAccount -Identity FOO on the host in question and that worked viscera Like isn't this a very common place where you'd want an MSA? viscera And if I try and set it via the GUI it complains about a missing password viscera ACTION gave up and used a non-MSA account CptLuxx [07:40:57] it doesnt have IPSEC so i have to go PPTP? CptLuxx ipsec with l2tp .. CptLuxx please dont use pptp CptLuxx ms released another patch for win xp.. DK2 CptLuxx but windows doesnt support native ipsec CptLuxx and? CptLuxx use ipsec with l2tp or use third party client DK2 like openvpn'? CptLuxx or a third party ipsec client.. dan_j Hi. Has anyone here used SPLA licensing? There seems to be a difference for OEM vs SPLA with regards to the number of VMs you can run on Windows Server 2016 Standard when using SPLA licensing and I want to see if anyone else has noticed that. dan_j jessec: thanks for your help the other day. I reinstalled that VM and it's all working fine. dan_j jessec: fyi, it seems that SPLA licensing only allows one VM with the standard edition license, not two. I think it's OEM that allows two vms. Brski Hey, does anybody know if it's possible to install KB2966870 without having KB2919355? cbauer does the "trustedhosts" property for winrm service accept an Ipv4 address or only a hostname? helloNL Hey, when uploading a file with PHP on IIS I get that the realpath is false, anyone know why? helloNL I am not able to find it on google scotepi I am trying to set up replication between 2 Hyper-V Core servers. I have it working from vmsv01->vmsv02 full failover and fail back, but not from vmsv02->vmsv01. Get-VMReplicationServer & Enable-VMReplication fail with "You do not have the required permission to complete this task" scotepi I am in a workgroup setup and have certificate's set up (omg are there a tone of outdated guides) scotepi https://pastebin.com/GfJagC9s however trying the same Get-VMReplicationServer on vmsv01 with -ComputerName vmsv02 now fails, it did work before. however replication is still going from 1->2 HyP3r Hello Everybody, I have here just a question about: "How can I do this in a good way". We need to host our Contacts which we are NOW having in a Shared Folder inside our Exchange and editing them with Outlook, in LDAP. The reason for that is our PBX need to access them, and the PBX is only to able to read LDAP Objects. HyP3r So my quetsion is: "Whats a good way to solve that?". In the best case all useers should be able to edit this catalog of contacts (with outlook) AND it should be stored inside a LDAP (Active Directory). HyP3r Is there a way to do this? compdoc on the server, if someone were attempting to guess a password, what log would I check to see activity? bewbs system log oum security I think bewbs err esecurity oum look for failed audits bewbs you know bewbs i wish they'd make that stupid window expandable bewbs shows 3 lines bewbs has 300 lines of data HyP3r Is there a way to export the shared folder contacts with some scripting language HyP3r powershell e.g. compdoc there are never any failed audits. maybe I need to enable something HyP3r compdoc: in some infrastructures controlled by domain controllers there gpos which is controlling this HyP3r compdoc: maybe you have to enable this there HyP3r compdoc: we have especially for this a gpo compdoc im googling it now helloNL How can I change permissions on C:\Windows? naph-W Take ownership helloNL I do not see the option for that when going to the security tab helloNL Nevermind bewbs why do you want to take ownership on c:\windows kuahara Why is it that I'm having nothing but trouble using diskmgmt.msc to accomplish anything lately? Used to never have problems with it. Now it's never able to delete volumes, shrink volumes, extend volumes, etc... options are always backlit and unusable. bewbs there's a security tab that will let you explicitly define the rules helloNL bewbs: I must as changing php.ini to change the location of the temp folder doesn't work helloNL And getRealPath returns false because the server doesn't have the permissions on all underlying folders bewbs i'm sure there's a better way to do that bewbs if you take ownership that means that you are removing ownership from a system user kuahara was having a problem using it to rejoin two partitions on a thumb drive, both unallocated. diskpart, select disk 1, clean wouldn't work. file not found problem. a google search result suggested using the chromebook recovery tool to remove and recreate the partitions would resolve that issue. bewbs which could create it's own set of issues helloNL Well I am stuck with this some time already kuahara However, after using it to select the thumb drive, it went ahead and shrunk my system volume by 11GB and started formatting that instead. The disk for the thumb drive was clearly selected before I began kuahara now I can't rejoin that new part back to the system volume either bewbs why not edit the permissions of php.ini's containing folder to add r/w access for the user trying to access it helloNL Well the problem is that IIS_IUSRS user needs execute permissions on the temp dir and everything underlying it :/ naph-W Taking ownership of C:\Windows is a sure way to end up with problems helloNL And Well I tryed changing the temp folder to D:\Temp and have the permissions on there but it still uploads to the Windows directory bewbs if you're running IIS, there should be nothing in windows that it needs access to bewbs your IIS dir should be C:\inetpub\ helloNL Well it uploads to C:\Windows\Temp bewbs that's where everything should be happening helloNL Well the tmp files from the uploads don't get there bewbs sounds like something in IIS is configured wrong helloNL Well I try changing it in php.ini but that does not work :/ bewbs because i'v ebeen running IIS for years in windows with all sorts of stuff and never had to grant permissions to c:\windows bewbs did you change the correct php.ini? bewbs ther'es often multiple helloNL sys_temp_dir = "D:\Temp" is in my php.ini and well it ignores it helloNL I changed the wrong one bewbs bingo helloNL upload_tmp_dir makes a lot more sense bewbs do it right and you only have to do it once helloNL Indeed, just didn't know this bewbs there's nothing you should need to change hte permissions of windows dir for in iis Gaurhoth I'm looking for a HA solution for CIFS/SMB without using MSCS (our storage backend no longer supports RDMs so we can't use shared storage for MSCS in vsphere). Anyone seen such a beasty I can research? helloNL bewbs: thanks for the help helloNL It works now helloNL Only question, how do I change ownership back to TrustedInstaller on C:\Windows, the user does not exist in the list :/ maddawg2 hey all, hoping someone can help me. I'm trying to migrate an exchange server to a new server and I happen to notice that the previous exchange server had no limit on mailbox sizes but now I want to set a 4GB limit. However the first step is to get everyone's mailbox under 4GB. I have some users who are upwards to 10GB in mailbox size. I thought about doing the autoarchive function for emails older than 3 years but for some reason it seems maddawg2 odd that it only archived 124MB worth of emails maddawg2 that would mean this user i tested with 6GB mailbox increased the vast majority since 3 years ago maddawg2 is there a tool that I might be able to use that might give me a way to archive mailboxes based on mailbox size... like set a target size and have it archive messages until the mailbox is below the target size kuahara meh. minitool free partition wizard app kicked Windows' butt something diskmgmt.msc used to be able to do just fine. TheRabbit maddawg2, users will have to archive Toaster_Strudel In office 365 online you can add a shared folder to your mailbox that persistently shows up. How do you do this with the outlook 2016 client? Toaster_Strudel In office 365 online you can add a shared folder to your mailbox that persistently shows up. How do you do this with the outlook 2016 client?
Toaster_Strudel Strange thing is that it continues to show in the online version, but will not sync to the outlook config
bewbs every time i see your name
bewbs i was going through my security logs and don't have any failed login attemps on this box
bewbs which i find odd because it's accessable via rdp externally on 3389
Passw0rd1sOv3rU5 whats the problem?
bewbs nothing, just find it odd
Passw0rd1sOv3rU5 are you auditing succeful connectoions?
Passw0rd1sOv3rU5 cause you might wanna check those too
bewbs yeah i see me logging in
bewbs i just don't see anyone else trying
sepeck well, it's you. People just don't like you enough to hack People just don't like you enough to hack bewbs i'm ok witht hat CptLuxx [17:48:12] i was going through my security logs and don't have any failed login attemps on this box CptLuxx maybe you are already hacked bewbs they're really not doing anything interesting hten helloNL Every hour copy logs to a different server. Makes it a lot easier to see if someone changed the logs when they did hack you :P helloNL And hey CptLuxx Toaster_Strudel so... Passw0rd1sOv3rU5 yeah just set up centralised windows logggin gthough group policy Toaster_Strudel anyone know what I'm talkin bout with my question? Passw0rd1sOv3rU5 https://www.loggly.com/ultimate-guide/centralizing-windows-logs/ Passw0rd1sOv3rU5 @toaster you question was? bewbs [2017.06.14-11.43.12] In office 365 online you can add a shared folder to your mailbox that persistently shows up. How do you do this with the outlook 2016 client? TheRabbit You probably can't Toaster_Strudel thx TheRabbit or not easily Passw0rd1sOv3rU5 google knows how Passw0rd1sOv3rU5 ask it outlook 2016 add shared folder Toaster_Strudel I google food it Toaster_Strudel it doesnt' answer my question Toaster_Strudel You can do it in 2016 client, but it's not persistent Toaster_Strudel as soon as you click out of the shared folder it goes away Toaster_Strudel design oversight Toaster_Strudel I think in older versions they used public folders or some bizz TheRabbit Outlook team is more loath to make changes to their product then Office365 OWA team Toaster_Strudel but not really what they are going for with this Toaster_Strudel it should be a pretty basic function Passw0rd1sOv3rU5 you an admin or a end user? Toaster_Strudel both? Toaster_Strudel I'd expect the end user to be able to do this in outlook 2016 if they can do it in 365 Passw0rd1sOv3rU5 just use a distro group in exchange to permintly add your user to their mailbox or something Toaster_Strudel well maaybe Passw0rd1sOv3rU5 https://4sysops.com/archives/managing-shared-mailboxes-in-office-365-with-powershell/ Passw0rd1sOv3rU5 that way you just change your account info at the sever lvl to have the stuff in it instead of in the client Passw0rd1sOv3rU5 or just have the exchange servers auto map it i guess CptLuxx naphtali diabillic toaster_strudel: shared mailboxes auto map in outlook diabillic no additional steps required Harlock anyone pushing a timezone registry entry via gpo? Harlock seems like the entry doesn't get written to win10 1703 maddawg2 TheRabbit we are archiving them the problem is we cant give a target size for the archive function onyl years maddawg2 the issue we have is that even if we archive every message they received that's older than 2 years it barely makes a dent in their inbox size Harlock n/m i think i found the issue maddawg2 i want a way to archive based on a target size maddawg2 specify a way to autoarchive conents until the mailbox size is under 3GB in size BobFrankly just start deleting mail items over a certain size, warn them that mail isn't thier dropbox maddawg2 oh good idea.. i'm sure the CFO would live having 48MB email deleted lol.. i might jsut arcihve their entire mailbox CptLuxx then why is my inbox name dropbox? maddawg2 i read that if a PST is over 4GB it's not suggested as they tend to become corrupt BobFrankly well obviously you delay the CFO maddawg2 is that still the case BobFrankly just give him an extra 40 minutes BobFrankly :P TheRabbit maddawg2, where are you getting these sizes? TheRabbit and mailbox sizes are laughable CptLuxx lol 4gb CptLuxx naphtali has 99gb grrrrr 99 problems but... CptLuxx germans.. im going to install exchange next week for 5 users maddawg2 TheRabbit, sorry.. I used the command: Get-MailboxDatabase | Get-MailboxStatistics | Select-Object displayname,totalitemsize |Sort-Object totalitemsize -Descending | Format-Table -AutoSize | Out-File -PSPath C:\path\to_file.txt maddawg2 that lists the mailbox sizes of each mailbox maddawg2 but if i go and look at the mailbox size in the outlook client it shows a completely different size TheRabbit that's because Outlook reports OST size which doesn't match mailbox size maddawg2 so what is in the OST that's not in the mailbox? maddawg2 errr excuse me what's in the mailbox on exchange that isnt in the ost file rather CptLuxx white space? :x maddawg2 huh? TheRabbit Exchange and OST don't match size, I assume the file storage is different maddawg2 but some are like 5GB difference maddawg2 that seems very odd maddawg2 i think that'd make sense if the differences were much smaller but the differences are all over the map.. for example exchange reports a mailbox size of 7.5GB but in outlook the same mailbox shows as 3.2GB maddawg2 another was shown as 11GB but the actual size of the mailbox was 4GB maddawg2 (or in outlook it reported 4GB) CptLuxx you can configure how mutch months you want in outlook.. maddawg2 that's for cached exchange maddawg2 we're not using cached mode CptLuxx oh maddawg2 and that's also kept locally maddawg2 not on server CptLuxx but why? maddawg2 the issue is that the server is what's too large enabling cached exchange mode doesnt change the mailbox on the server side maddawg2 it only stores a local copy basically CptLuxx i mean more.. why cached mode? CptLuxx is there any good reason in 2017 for it? TheRabbit ? maddawg2 for cached exchange mode? maddawg2 like why would you use it? CptLuxx for non cached... TheRabbit any good reason for what? CptLuxx any reson not to use cached mode maddawg2 the main flaw i have with cached exchange mode is the fact that if i mark something as read on a mailbox that is shared on multiple user's outlooks (like our customer service mailbox) it doesnt always reflect read on the other clients maddawg2 but also address book changes or dist groups dont show with cached exchange mode if you make a change in the middle of the day maddawg2 you have to wait for the clients to resync maddawg2 but even then cached exchange isnt the reason why the mailboxes are smaller on the local client but much larger on the server maddawg2 the only thing i can think of is the retention time for recovered files and deleted items maddawg2 i think the server keeps them for some days after they are removed from the client side maddawg2 so i'd expect mailboxes to be larger, but not as large as they are reporting maddawg2 not with that much of a difference unless the retention time is insanely long naphtali Luxxi CptLuxx was up duded TheRabbit ACTION backs away TheRabbit I can't handle this naphtali Same ol same ol TheRabbit I'm afraid of whatever this is is contagious naphtali Don't give it to your MSP coworkers c0mrade If I want to upgrade my VM size let's say from A4 to D-Series of F-Series, what's the process of doing so? TheRabbit I think just cahnge it out and reboot? c0mrade That won't work since changing from one series to another doesn't support a simple resize operation like resizing from lets say A1 to A4. c0mrade The hardware cluster the VMs reside support only A-Series VMs. c0mrade You can resize from A0 to A4 lets say but not to D or F or other types. c0mrade The physical hardware hosting my VM should support other VM sizes and because the VM size is A4, there's no option to resize from the portal. CptLuxx open a ticket? TheRabbit Microsoft is going to say "What you see in the portal is what you get" TheRabbit so probably just new server, port applications, move on CptLuxx what you see is what you get? TheRabbit with Office365/Azure, yep TheRabbit if it's not available in powershell/Portal, you can't do it TheRabbit end of discussion TheRabbit Microsoft makes money by not tolerating special snowflakes c0mrade Well it's not available in the portal. But there's a way to do it. What am thinking is taking a snapshot or backup or clone the VM... shadowRAM Anyone use the Acronis ManageEngine suite? CptLuxx i stay away from aconis shadowRAM any particular reason? CptLuxx lots of features.. none of them works right CptLuxx speaking of theire backup product c0mrade Now what's the process of doing so, I have a reserved IP attached to the VM instance and it has a persistence disk attached to it as well. I've done VM cloning once, but that was when I had to change the reserved IP and not the VM size, if I clone the VM would I be able to restore the cloned imaged to another larger VM size/type, I think no since the specs are different shadowRAM interesting, I've been testing out their patch management software, it seems to work pretty straight forward. shadowRAM Does 3rd party app patching, which is why we are looking into it. CptLuxx even the patch management on "comodoe one" works good CptLuxx and that is free.. CptLuxx (for third party software) shadowRAM so is the aconis patch management, free for 25 devices shadowRAM i'll check out the comodo one stuff too though, thanks for mentioning it. shadowRAM I've grown to hate wsus CptLuxx well its free for unlimited? kuahara c1 is free for unlimited CptLuxx and you can do more with it than just patches CptLuxx what mister commodore kuahara says CptLuxx btw i tested the "mobilde device" stuff from comdoe one last week CptLuxx well.. it works ^^ shadowRAM interesting. naphtali Acronis is listed above Altaro here Luxxi: https://www.itcentralstation.com/categories/backup-and-recovery-software#top_rated CptLuxx dude CptLuxx thats for backup software CptLuxx wait what.. acronis is over commvault and altaro? naphtali Yeah, I was searching for shadowRAM's ManageEngine thingy naphtali But this came up in the results CptLuxx i need to register and downvote acronis CptLuxx nvm CptLuxx its not based on rating naphtali kuahara ACTION is willing to bet without looking that it is based on who is paying a commission to the review people kuahara affiliate marketing /whatever naphtali HP Data Protector delivers comprehensive data protection, real-time intelligence, and guided optimization to ensure simple, reliable, intelligent and cost-effective backup and recovery that is just as agile as your current and future IT environments. naphtali That's smooth CptLuxx i copy that for the nlc site naphtali I wish LNC had someone on it's team who could write like that CptLuxx we just steal it shadowRAM lol naphtali It tells you absolutely nothing but you still feel good after reading it CptLuxx https://naphtaliandluxx.de/what-customers-say CptLuxx done naphtali shadowRAM, Acronis bought this place? https://www.manageengine.com/ CptLuxx this? CptLuxx i heard of it but i never thougt its from acronis naphtali Neither did I naphtali So I looked it up CptLuxx and what product? CptLuxx https://www.manageengine.com/products.html?MEtab CptLuxx so mutch? naphtali [15:17] Anyone use the Acronis ManageEngine suite? naphtali That statement led me to believe Acronis had a patch management solution CptLuxx so you mean this https://www.manageengine.com/patch-management/?MEtab CptLuxx Stay 100% secure by defending against vulnerabilities in your 3rd party applications. CptLuxx right.. CptLuxx Large repository of patches for common applications such as Adobe, Java, WinRAR and more. CptLuxx good lord naphtali WinRAR? CptLuxx yes CptLuxx cant believe naphtali I don't think Acronis has any such product naphtali Maybe he just threw that in there to get your attention CptLuxx i think naphtali is right lopta We're between IT people (they don't stay long). Is there a special Windows 7 image to use if we have software licenses handed out by a server, rather than typed into each computer? shadowRAM Yea, I got mixed up with two different products shadowRAM Acronis is something I'm looking into for our Macs to connect to file share using AFP instead of SMB shadowRAM ManageEngine is for Patch Management. CptLuxx ah that thing i showed you shadowRAM CptLuxx: correct. CptLuxx did you test it already? shadowRAM Testing both of them now. shadowRAM Acronis with the AFP works as designed, lightning fast over SMB for the OSX users. CptLuxx realy shadowRAM not over SMB shadowRAM vs SMB shadowRAM AFP > SMB CptLuxx i... cant believe shadowRAM I'm a mess, too much caffein shadowRAM So we have a situation where our OSX users are working over OpenVPN, then use Word to open a document and then save it. This process over SMB1/2/3 takes forever. shadowRAM It started being a problem with OSX 10.0 CptLuxx i know CptLuxx i just cant believe it works shadowRAM oh, that part. CptLuxx i mean.. afp is sooo old shadowRAM Slowly trying to move users to W10. :) shadowRAM they get a "choice" which is usually told to them by their Director lopta Does AFP date back to System 7? lopta ...or is that a MacOS X thing? CptLuxx btw did you try "smbup" shadowRAM ? shadowRAM no. never heard of it. CptLuxx http://eduo.info/apps/smbup TheRabbit lopta, AFP is old as hell, however, it's gotten updates over the years TheRabbit just like SMB CptLuxx replaces the crappy smb impementation if i read this nright shadowRAM looks like it, but we are trying not to install 3rd party applications on the end clients machines. CptLuxx k shadowRAM confuses them shadowRAM they wonder the hallway for days, no understanding where they are or what they are doing TheRabbit there is some third party SMB application that works a metric ton better lopta TheRabbit: I might try it. :-) lopta TheRabbit: Oh, Samba? TheRabbit Can't remember what it's called but we bought it for all MAC users TheRabbit no, it's made by some company lopta Oh. TheRabbit DAVE! TheRabbit http://www.thursby.com/products/dave shadowRAM wish apple would get their crap together and stop working on a dang car CptLuxx wat CptLuxx dave TheRabbit Mac OSX product we use to replace the crappy OS X file sharing client not working well with WIndows shadowRAM expensive CptLuxx well CptLuxx the acronis product is the same price range TheRabbit shadowRAM, less expensive then putting up with Cxx levels complaining TheRabbit only people with Macs are CEO/CFO and few directors CptLuxx http://www.acronis.com/en-us/mobility/mac-windows-compatibility/ TheRabbit shadowRAM Dave is twice as expensive TheRabbit CptLuxx, that requires us to install something on Windows Servers TheRabbit let me be real clear what I think about that TheRabbit F*** TheRabbit THAT deception What, you don't trust acronis to write secure software :) shadowRAM I don't trust MS to write secure software :) TheRabbit I hate doing stuff at server level for 4% of oxygen thieves we employee bewbs windows server backup bewbs it's built in and works great TheRabbit I mean Cxx/Directors bewbs and i install nothing but hte bare miniminum on my bare metal boxes shadowRAM Fair enough, 4% of staff. We are 80% OSX Lapytops bewbs anything/everything is on vm's TheRabbit shadowRAM, dear god why? shadowRAM Because the CEO convinced the COO, then they started having compatability issues between Office versions. Then the IT Manager who is a Mac fan boy told them they wouldn't have these issues if they were all on OSX. Then once the directors have OSX, they ensured their underlings had OSX. CptLuxx ACTION face palms# bewbs what IT manager could actually like mac's bewbs our help desk is on mac's bewbs and they're infinitely less efficient because of it bewbs all they do is rdp into windows boxes deception macs are a huge waste of money in most corporations shadowRAM I've tried explaining to them that MS solved this management of fleet of servers/clients with AD a long time ago. Now we can't even put the same user accounts on all of the linux servers properly. lopta ACTION is really confused shadowRAM Ansible here, Puppet there, test of Chef overe here.... deception so is nano server ready for production? shadowRAM Wannacry hits and CTO is like "Patch all of the things" I reply "Its already done" ...He doesn't understand, IT Manager gets it but it doesn't click to him that 1 Windows guy does the work of 8 Linux Admins. TheRabbit deception, if you understand it's limitations throughly and are ok with them shadowRAM Force Multiplyer isn't me, its the tools I use. deception TheRabbit, I'm in the research phase. I like the reduced attack surface a lot TheRabbit I've messed with it in lab, about only use I see as worthwhile right this second is HyperV deception I imagine for something like a DC it's a pretty safe bet Zew Heyo TheRabbit Nano Server cannot serve as an Active Directory domain controller. Zew Question in reguards to AD group membership and web applications Zew https://serverfault.com/questions/558157/why-sometimes-is-required-to-log-off-and-log-on-back-again-adding-a-group-to-a-u deception what about file services? Zew If I have AD users, that only access a web application shadowRAM yea, nano is cool, if you work for a company that developes software. I don't see it replacing AD or DHCP services TheRabbit https://docs.microsoft.com/en-us/windows-server/get-started/getting-started-with-nano-server deception Ty Zew and that web application has been coded to use an AD group, and I just added the user to the group Zew how do I apply the sid to the account for the web aplpication Zew there's no computer to log off/on to adjust the token TheRabbit shadowRAM, even if you run IIS, IIS on Nano has alot of limitations Zew Nano is good for DNS or other small services (file servers, etc) Zew Nano has plenty of limitations, too many to go through here Zew TheRabbit: Thoughts on my question? shadowRAM im out ya'll, cya on the flip side... or if I get drunk and jump back on IRC. TheRabbit Zew, what question? Web Application, I'm not a developer, ask one of those code monkeys CptLuxx good joke Zew It has to do with security tokens Zew TheRabbit: I expected you to know all Zew ACTION stops praynig to stuffed rabbit TheRabbit Web Application all depends on how it handles AD and checks TheRabbit does it use the user AD token, does it grab a new one, does it just read via LDAP when a user logins in it's membership TheRabbit I have n oidea deception "Nano Server cannot be configured to use a proxy server to access the internet." Strange limitation Zew well the web app I know was built to check for an AD group CptLuxx security token gets not refreshed zew ... Zew but the SID can't be applied to the user instantly Zew LSA handles that on next request lopta I'll have to come back. Thanks! Zew guess i'll try a kilst purge Zew on the web app front end Zew thanks anyway deception With nano server running hyper-v on a r720xd I would lose some of the management features since I can't install dell's software. iDrac doesn't show everything. Guess nano isn't for us. Zew as well as other limitations deception that's all I can think of that would actually change anything Zew MS needs to do a fair amount of polishing yet on Hyper-V nano CptLuxx brb need to polish naphtali Zew VMware has been in teh game longer and has built ESXi (I think) way better CptLuxx yes and you need to pay for it Zew There's free too CptLuxx (well if you can live with the limiations.. its free) Zew which has more features than Hyper-v Free Zew but whatever there mango CptLuxx WRONG Zew You can say whatever you like, I've played with both SCHAPiE there's other hypervisors out there as well CptLuxx live migration in free? backup api? nope CptLuxx i have both in production deception You can't even backup in free, that's a pretty bad one Zew I'm sure you hve multiple productions CptLuxx sorry but doing a backup with esxi free is.. 1: use backup agent on every machine.. or none Zew or if you need backup pay for a legiit hypervisor CptLuxx no thanks im setting up hyperv with altaro deception I get cranky if I can't use veeam Zew Veeam is great deception Still want to try the windows/linux agents deception End point backup worked great for a year Zew Yeah nice of them to release those for free Zew The Exchange and SQL exploreres... liek wow CptLuxx the linux agent is great CptLuxx i use it since the beta Zew Only way to get backup of physical is useally via an agent TheRabbit Nano is fine without iDrac TheRabbit Nano assumes you are using blades or something with full feature management card Zew mmmm intereting Zew whats a full featured mgmt card CptLuxx ilo idrac.... TheRabbit Cisco UCS Blades with their management software who name escapes me Zew thats what I thought so the first statment made the second one a bit confusing TheRabbit but Dell iDRAC generally show everything TheRabbit At least the newer ones deception there are still somethings I wouldn't be able to see unless I installed Dell's system admin software deception You can see them in bios tho Zew iLO 4 is nice, at least it finally has its own SNMP stack TheRabbit Basically when talking to Cisco about using Nano on UCS Zew no passthrough anymore TheRabbit we would install Nano and keep Cisco Utility health CD on hand when we thought individual blade needed hardware fixing TheRabbit and since we can KVM/ISO boot from UCS Manager.... problem easy resolved TheRabbit We stuck with ESXi anyways Zew :) deception iso booting over management interfaces is such a life saver Zew Yeappp Zew What, you don't want to use LEDs on servers and find them physically to insert a USB/DVD Zew but thats teh fun of Datacenters :P deception The drive of shame at 3am to the datacenter is no fun TheRabbit we have enough blades that failure of individual blade isn't escalated Zew I had to come in to complete updates cause my laptop battery died TheRabbit it's dealt with by early bird VMware admin Zew I think I'll have to talk to my dev tomorrow on how the code was written, I have a feeling this erro (like others) are due to his coding deception Hyper-v really likes this nvme drive, just wish they weren't so expensive deception the latency is very nice khelpw Hey guys, I know this isn't really the _right_ way to do things, but I'm trying to learn about setting up failover clustering/HA for MSSQL servers khelpw I've got a single hyper-V host with plenty of HDD space running 4 VMs, SQL1, SQL2, DC1 (domain controller) and Storage khelpw Currently only SQL1, SQL2, and storage are members of a cluster and I'm trying to figure out how I can get some sort of shared storage set up using only this single box if possible. Anyone have any hints? TheRabbit HyperV shared storage? khelpw Is that the same thing as the Virual SAN manager? TLoFP khelpw: network storage? khelpw this is strictly a test environment consisting of ONLY a single host. khelpw it's just an old hyper-V host that we decommed a while ago. khelpw but my initial thought was to use the 'storage' VM and a normal windows SMB file share as storage which didn't really seem possible. TLoFP khelpw: why not? khelpw I can't seem to find a way to add it under failover cluster management. khelpw does the storage need to be outside the cluster? khelpw I was trying to set up the storage VM as an iscsi target, but that seems impossible if it is part of a cluster khelpw I suppose I'll come back to it in the morning, it's quitting time. CptLuxx https://blogs.technet.microsoft.com/exchange/2017/06/13/net-framework-4-7-and-exchange-server/ jcotton the exchange and .net teams really need to get on the same page CptLuxx ! get-smbopenfile | select clientcomputername -unique
ckindley This is a win7 box. IFH this client.
BobFrankly that's not a file server then Harlock netstat filtered by the smb ports only?
ckindley I want to make sure these people know I exhausted all options before I tell them 'you need a server... a REAL one... cheap bastards'
Harlock options for what?
BobFrankly hosting files on a win7 share is just begging to be a victim of the next ransomware wave
BobFrankly actual server + isolated backups
Harlock they are typically affected by the same exploits
BobFrankly actual server would imply *not* being on 2008, rather 2016 CptLuxx some connection limits :3
naphtali A flea market is a public sale Luxxi
naphtali Where junk ramsch? is sold
naphtali Don't confuse him BobFrankly, I am helping him with his US slang
naphtali buntgemischtes altes Zeug
naphtali Using the internet I can be a German speaker in the same way I can be an IT admin
naphtali Exactly
naphtali LOL
ckindley heh
ckindley Yeah, our 'real' clients run 2012 r2 or newer, FSRM deployed and updating nightly extension lists for screens, bigger ones use Varonis for extra compliance. Plus BitDefender! (don't BitDefender, not even once)
Harlock france is bacon
naphtali Tested, offsite backups are your friend
naphtali No AV is going to be enough
ckindley oh, and storagecraft for backups. I like storagecraft. lots. CptLuxx fine
naphtali I see what you did there Harlock
Harlock i regularly wipe our production machines to test the backups
ckindley Nightlies to sans in two datacenters, Glacier if requested
naphtali Harlock could do sales for LNC?
CptLuxx man i could write a new blog post for him
Harlock what is LNC?
CptLuxx btw storagecraft has some cool new features.. like retore in azure
CptLuxx or was it there own datacenter?
CptLuxx dont remember..
Harlock i can't say i am a fan of storagecraft
naphtali Is StorageCraft the fork for NetJapan?
ckindley Yeah, you can spin up VMs to their cloud, or to our hosts. We have them spin up vms and send screenshots of successful boots/login screens so we stay comfy...
CptLuxx almost
naphtali CptLuxx netjapan was the fork
naphtali Wait, I am confused on where to place the fork
naphtali In StorageCraft or in NetJapan?
CptLuxx between
naphtali The original being StorageCraft? CptLuxx stop confusing me
naphtali OK, I think I get it
Harlock it feels kludgy to me
ckindley well Harlock can have r1soft :)
Harlock don't know it
ckindley lucky you
Harlock i back up evrything to qic tapes
Harlock qic-80 tapes
naphtali Were Travan part of the QIC spec?
Harlock yes