Register a SA Forums Account here!
JOINING THE SA FORUMS WILL REMOVE THIS BIG AD, THE ANNOYING UNDERLINED ADS, AND STUPID INTERSTITIAL ADS!!!

You can: log in, read the tech support FAQ, or request your lost password. This dumb message (and those ads) will appear on every screen until you register! Get rid of this crap by registering your own SA Forums Account and joining roughly 150,000 Goons, for the one-time price of $9.95! We charge money because it costs us money per month for bills, and since we don't believe in showing ads to our users, we try to make the money back through forum registrations.
 
  • Post
  • Reply
H110Hawk
Dec 28, 2006

MC Fruit Stripe posted:

Nothing like sending an email first thing in the morning to let The Business know that execution of a massive project, scheduled for tonight, needs to be cancelled, and that it's My Fault.

My fault in this case includes the servers that I operate not doing the thing they're built to do in any semblance of a reasonable amount of time. It's not like I missed tasks, these things simply don't know how to server quickly. If they would server better, we wouldn't have these issues.

Regardless, I expect to have roughly the same conversation 5 times with 5 executives today, hearing a lot of platitudes about how we "just need to make it work" and "need to plan better" even though both of those things are, I ask you to believe me if I have any rep here at all, simply not possible. Gonna be a hell of a day.

Ah the joy of "Would you rather hear this Thursday when half the company can't work, or today when I've prevented this problem?"

My wife's office just sent an email about how their dropbox migration was postponed because a disk in their RAID5 failed and the IT person didn't want to stress the server out more before a replacement could be swapped in, fine. It then continues where he checks the status of their backups only to find the external usb disk failed weeks ago. Whoops. Thankfully they handled it as correctly as they could for missing that they had no functional backups for weeks, calling someone local to immediately go plug in a new disk and run a manual backup. Doesn't explain why it wasn't noticed, or why they don't rotate the disk offsite, etc.

Adbot
ADBOT LOVES YOU

LochNessMonster
Feb 3, 2005

I need about three fitty


Vargatron posted:

Also, MC Fruit Stripe, godspeed. Better to pull the plug now than have the business brought to it's knees trying to push a project out the door too soon.

I bet they'll make him deploy anyways, "accept" the risk of server not servering well enough and when everything comes to a crushing halt they will blame it on MC Fruit Stripe anyways.

Most likely asking stupid questions like "how could we jot have foreseen this scenario!!?!?". I hope I'm wrong, good luck today comrade.

GnarlyCharlie4u
Sep 23, 2007

I have an unhealthy obsession with motorcycles.

Proof

Sefal posted:

My condolences Gnarly.

I never had any issue taking vacation days. I value time off, more than whatever money i get paid if i trade in my vacation days.

My friend works in helpdesk at our local government. He has no desire to work elsewhere. He has a good salary for his position. great benefits. low workload. I'd say you are not alone.
The one thing that is kinda worrying is that he lost the motivation he used to have when we graduated. Since he works with people who make much more than him, doing almost nothing. It has caused him to throw in the towel. I tried telling him, you don't want to do helpdesk forever. Here let me lend you my powershell book (month of lunches) It has helped me tremendously. It can help you move up in the government.

I think that that is the only that may be worrying by working in the government. Easy to lose motivation. But i don't think that that applies to you Gnarly
I am enjoying being lazy as gently caress right now. But you're right, I'm not unmotivated.
One of the reasons I took this job is because I needed some time to decompress and slack off a bit. I appreciate the stability and easy workload every day though. I'm in the middle of building a house / selling a house / living out of boxes in some weird netherspace of home ownership. It'll be nice not to have to worry about poo poo when the wife and I are trying to have kids too.
Compared to my last job, this poo poo is basically retirement... plus a 'part time, paint section, Lowe's job to kill time and keep me sane'.

Nuclearmonkee
Jun 10, 2009


GnarlyCharlie4u posted:

Yes, no, and not here but in literally every other county it is for some reason.

Point is, am I broken for not wanting to waste my vacation days on interviewing for a job that I won't take or for going home and drinking a beer instead of relentlessly applying for new jobs I don't yet want?
I mean I get the idea of keeping your resume and skills up to date, but my coworker gives me the impression that I'm wasting my life for not interviewing for a new job at least once a month.
Is that typical? Do you all really do that poo poo?

No. Keeping skills up is legit but interviewing is tiresome.

Japanese Dating Sim
Nov 12, 2003

hehe
Lipstick Apathy
Today I'm getting third-party software patching working on our computer labs which use Deep Freeze. Using PDQ Deploy, and this guide. You can integrate "thaw" commands using a command-line utility that Faronix provides, run the patches/installations, and then refreeze them and reboot. Very easy and very cool. :toot:

Internet Explorer
Jun 1, 2005





Been a long time since I used Deep Freeze, but we used to use it for our high school. It was a huge school and we had pretty much 0 tech resources, so they leveraged us kids a lot. A good portion of my time in school was spent in a randomly named class that was really just doing network admin stuff. We had it set up so we could thaw a machine, push an image with the enterprise version of Symantec Ghost, then have it come back up frozen. I agree, super awesome stuff and is really what got me into the concept of non-persistent machines. Now a days I design/deploy/administer non-persistent VDI infrastructure using XenDesktop. I was super fortunate to have that opportunity back in the day!

Japanese Dating Sim
Nov 12, 2003

hehe
Lipstick Apathy

Internet Explorer posted:

Been a long time since I used Deep Freeze, but we used to use it for our high school. It was a huge school and we had pretty much 0 tech resources, so they leveraged us kids a lot. A good portion of my time in school was spent in a randomly named class that was really just doing network admin stuff. We had it set up so we could thaw a machine, push an image with the enterprise version of Symantec Ghost, then have it come back up frozen. I agree, super awesome stuff and is really what got me into the concept of non-persistent machines. Now a days I design/deploy/administer non-persistent VDI infrastructure using XenDesktop. I was super fortunate to have that opportunity back in the day!

I'm not directly involved with the labs but I bugged the guy who is since I do run our PDQ Deploy and I've been trying to get our Nexpose scores down. The labs are the low-hanging fruit and the only complication to patching them was their use of Deep Freeze, but this was surprisingly easy.

I was hoping they'd convert to VDI but we just did a big expensive hardware refresh for them so it'll be a while, and probably not before I leave.

GnarlyCharlie4u
Sep 23, 2007

I have an unhealthy obsession with motorcycles.

Proof
Today I learned something new.
This is a thing: https://fogproject.org/

Super Slash
Feb 20, 2006

You rang ?
So I need to look into setting up a local server for the new site to temporarily handle things like AD/DHCP/DNS etc until everything gets moved over (Our ISP is looking and options to link both sites but there's not much worthwhile for the sake of a month), luckily I've got an older server computer I can use as a Hyper-V host so I get a quote for some server 2012r2 licensing and send it to the boss saying we need this.

"Can we pay this on subscription or monthly?"
Well this is Microsoft so maybe one day, but lol no :10bux::10bux::10bux:

The Fool
Oct 16, 2003


Super Slash posted:

So I need to look into setting up a local server for the new site to temporarily handle things like AD/DHCP/DNS etc until everything gets moved over (Our ISP is looking and options to link both sites but there's not much worthwhile for the sake of a month), luckily I've got an older server computer I can use as a Hyper-V host so I get a quote for some server 2012r2 licensing and send it to the boss saying we need this.

"Can we pay this on subscription or monthly?"
Well this is Microsoft so maybe one day, but lol no :10bux::10bux::10bux:

Spin up an azure vm, connect your site via vpn, then shut it down at the end of the month. The azure compute price includes all licensing, including CAL's.

MC Fruit Stripe
Nov 26, 2002

around and around we go

GnarlyCharlie4u posted:

Today I learned something new.
This is a thing: https://fogproject.org/
God I hate the modern internet. I scrolled that entire page and I don't know what it does

"COMPUTER CLONING AND MANAGEMENT" - okay, that's a start
Activity is just code releases
Features includes 'features' like being open source, having a forum, and OS support.

There's a hint in scalability, "If you need to image just 5 computers or even 50,000 FOG can handle it"

Okay so it's like a deployment tool I guess?

Just, ugh, people, tell me what the hell your product is before you tell me you have a Wiki and a Github.

anthonypants
May 6, 2007

by Nyc_Tattoo
Dinosaur Gum

MC Fruit Stripe posted:

God I hate the modern internet. I scrolled that entire page and I don't know what it does

"COMPUTER CLONING AND MANAGEMENT" - okay, that's a start
Activity is just code releases
Features includes 'features' like being open source, having a forum, and OS support.

There's a hint in scalability, "If you need to image just 5 computers or even 50,000 FOG can handle it"

Okay so it's like a deployment tool I guess?

Just, ugh, people, tell me what the hell your product is before you tell me you have a Wiki and a Github.
It looks like Norton/Symantec Ghost, but free and open source.

The Fool
Oct 16, 2003


anthonypants posted:

It looks like Norton/Symantec Ghost, but free and open source.

It also has an agent that allows limited endpoint management through a web console.


It might be a useful imaging platform for a small/medium business that doesn't want to run Windows Servers, but if you have a full Windows infrastructure, you're better off using MDT.

Sickening
Jul 16, 2007

Black summer was the best summer.
Seems like a product that nobody needs. Baffling.

Internet Explorer
Jun 1, 2005





FOG has been around for at least a decade at this point. Back when your choice was Symantec Ghost or FOG, it wasn't a bad choice. I have no idea where it is now.

MC Fruit Stripe
Nov 26, 2002

around and around we go

Sickening posted:

Seems like a product that nobody needs. Baffling.
It really is amazing how many products "Right Click, Deploy From Template" removed from my orbit.

Super Slash
Feb 20, 2006

You rang ?

The Fool posted:

Spin up an azure vm, connect your site via vpn, then shut it down at the end of the month. The azure compute price includes all licensing, including CAL's.

I was hoping someone would say this! I was sort of aware Azure could do something like that but mostly heard mixed things about how it handles licensing, I have zero experience with it but I'll get my research and testing hat on.

The Fool
Oct 16, 2003


Super Slash posted:

I was hoping someone would say this! I was sort of aware Azure could do something like that but mostly heard mixed things about how it handles licensing, I have zero experience with it but I'll get my research and testing hat on.

https://azure.microsoft.com/en-us/pricing/licensing-faq/

quote:

The license to run Windows Server in the Azure environment is by default included in the per-minute cost of your Windows Virtual Machine.

And

quote:

No. Windows Server CALs are not required for accessing Windows Server running in the Azure environment because the access rights are included in the per-minute charge for the Virtual Machines

Things get more complicated when you have a hybrid environment, but for your use case, it's pretty simple.

Depending on the size of your site, you could probably get away with running everything on a single D1 instance, which would run you about $100/month

22 Eargesplitten
Oct 10, 2010



MC Fruit Stripe posted:

God I hate the modern internet. I scrolled that entire page and I don't know what it does

"COMPUTER CLONING AND MANAGEMENT" - okay, that's a start
Activity is just code releases
Features includes 'features' like being open source, having a forum, and OS support.

There's a hint in scalability, "If you need to image just 5 computers or even 50,000 FOG can handle it"

Okay so it's like a deployment tool I guess?

Just, ugh, people, tell me what the hell your product is before you tell me you have a Wiki and a Github.

From the makers of Zombocom.

Roargasm
Oct 21, 2010

Hate to sound sleazy
But tease me
I don't want it if it's that easy

The Fool posted:

Spin up an azure vm, connect your site via vpn, then shut it down at the end of the month. The azure compute price includes all licensing, including CAL's.
We have a lot of problems running VPN nodes on the Azure network stack. The whole stack seems to objectively suck compared to AWS at high load. Speaking for linux stuff only, never tried RRAS

Roargasm fucked around with this message at 22:31 on Aug 2, 2017

Naramyth
Jan 22, 2009

Australia cares about cunts. Including this one.

GnarlyCharlie4u posted:

Today I learned something new.
This is a thing: https://fogproject.org/

THe niche for that is broke as gently caress libraries running computer labs running deep freeze. I used that for years and it is indeed awesome for it's niche.

DigitalMocking
Jun 8, 2010

Wine is constant proof that God loves us and loves to see us happy.
Benjamin Franklin

Roargasm posted:

We have a lot of problems running VPN nodes on the Azure network stack. The whole stack seems to objectively suck compared to AWS at high load. Speaking for linux stuff only, never tried RRAS

it's also garbage.

Vulture Culture
Jul 14, 2003

I was never enjoying it. I only eat it for the nutrients.
I'm running a Very Significant Amount of Ubuntu on Azure with huge ingress and egress bandwidth usage, and I've never noticed a significant problem, whatever that's worth. What kinds of issues have you seen with VPN in particular (and what kinds of VPNs)?

Roargasm
Oct 21, 2010

Hate to sound sleazy
But tease me
I don't want it if it's that easy
It's been openswan and openVPN back to traditional datacenters, maybe 5 tunnels open. The whole thing falls over at like 400mbit, usually the nodes are unresponsive and have to be rebooted from console

The Fool
Oct 16, 2003


Roargasm posted:

It's been openswan and openVPN back to traditional datacenters, maybe 5 tunnels open. The whole thing falls over at like 400mbit, usually the nodes are unresponsive and have to be rebooted from console

How does that compare to the routebased and policybased vpn options azure provides?

GnarlyCharlie4u
Sep 23, 2007

I have an unhealthy obsession with motorcycles.

Proof

Naramyth posted:

THe niche for that is broke as gently caress libraries running computer labs running deep freeze. I used that for years and it is indeed awesome for it's niche.

Our library runs CleanSlate. Libraries are usually broke as gently caress considering the poo poo software I see vendors peddling.
FOG seems like it'd be a great thing for LAN cafes and poo poo like that.

ChubbyThePhat
Dec 22, 2006

Who nico nico needs anyone else

GnarlyCharlie4u posted:

Our library runs CleanSlate. Libraries are usually broke as gently caress considering the poo poo software I see vendors peddling.
FOG seems like it'd be a great thing for LAN cafes and poo poo like that.

I actually hadn't thought of that use case. That does seem like it would be good.

Zorak of Michigan
Jun 10, 2006


H110Hawk posted:

Ah the joy of "Would you rather hear this Thursday when half the company can't work, or today when I've prevented this problem?"

This syndrome irritates the hell out of me. When I was at Verizon, we had a released cancelled, and it irritated people so much than we spent the first ten minutes of our team meeting discussing it. That sounds like no big deal except that we were a UNIX sysadmin team and had no connection to the release - it had just been the subject of so much discussion that our director wanted to discuss it with us. About nine minutes in, I lost patience and said, "Why is this such a problem? We have testing, the testing found a problem, the release was cancelled. That's working as intended. If we did all that testing and never, ever found a problem, that would tell us that we had a poorly planned test cycle and were wasting time and resources on tests that never failed." The conversation petered out quickly after that. I would have thought it was a pretty obvious point.

Super Slash
Feb 20, 2006

You rang ?
Woof, nevermind thinking about linking these two sites this circus just got even better.

A bunch of us went and did another site visit today plus I brought in an engineer to do a survey for the infrastructure, right off the bat we aren't allowed on site because the foreman hasn't had clearance plus we don't have PPE. So the boss works on clearance and somebody ropes in another company to give us just enough bunch of boots/vi-vis jackets/hardhats to get inside, while most of the crew bugger off and take photos my guy and a health & safety advisor get to work.

The short short version of this is that it's a loving massive project for something that has to be completed by October and pretty much impossible, this isn't just an IT fit out into a new office this is literally constructing an office from bare bones. The ceiling is lovely for access to lay cable and despite everyone saying we need power poles the boss wont have it, server room space regs means the planned area will need to be split into two rooms to house a rack each, the electrical circuit is a hell of a job since it needs completely redoing, and there are reams of newer safety regs to comply with because of recent events (Today I learned Ethernet cable needs to be fire rated).

So the engineer laid it all out and couldn't even soft ball the massive price tag behind this, so we'll need to come back next week for a better look at things with more professionals. When everyone left we both had a honest and humorous chat about how absurd this project will turn out and not doubt probably even cost six figures, I'm not sure if it was advice or bit of light heartedness but he pretty much said...



Personally I don't really care as it's waaaaay beyond my experience level, what's the SOP on new jobs? wait until you've got the new contract in hand before pulling the eject lever?

Vargatron
Apr 19, 2008

MRAZZLE DAZZLE


It's possible that your firm can go "look we're not going to touch this because the conditions are untenable".

Thanks Ants
May 21, 2004

#essereFerrari


How have you managed to get dragged into this?

Super Slash
Feb 20, 2006

You rang ?
Because I'm the sole "IT guy" in the company who manages the lot. At first I was asked to do the network and server build out which didn't sound too bad as I've got great relationships with provider companies to lean on (and I made it very clear they would be doing the bulk of the work), then I was asked to handle the electrical install as well which I questioned that's got nothing to do with IT.

Fortunately my tech supplier can handle all of this as they have specialists who do this kind of thing, however this is my third chance to leave the company with a firm job offer on the table and I'm drat well taking it (turned downs help desk type job a couple years ago, and second was NOC support earlier this year).

Vargatron
Apr 19, 2008

MRAZZLE DAZZLE


Man if it gets you out of a hosed up situation I'd take the job.

mewse
May 2, 2006

mewse posted:

The company we're taking over has on-prem active directory synced with office 365 via azure AD.

Half the company has username@contoso.onmicrosoft.com showing up in their Outlook because the previous IT guy was not a professional IT person and couldn't find or understand the knowledgebase article saying you need to edit the proxyaddress attribute of the ldap object to add SMTP:username@contoso.com if the onmicrosoft poo poo ends up configured as their primary email address.

I have a strong suspicion that this is why you were asked about it during your interview.

I can't find the KB link right now because I put it on the server at work

mewse posted:

You're probably right and I doubt this org was configured correctly. I'm just offering the rare bit of insight I've gleaned from my day job about why you were asked that question.

I ran into the problem with the first user I created in AD and allowed to sync to O365. I spent an hour figuring out how to fix it and then when I explained the "onmicrosoft.com" problem to a secretary she nodded knowingly like everyone knew about the problem. Her email address when she sends mail is still @contoso.onmicrosoft.com

Follow-up MS articles:

This one describes the solution: https://support.microsoft.com/en-us/help/2492140/you-can-t-assign-a-federated-domain-to-a-user-in-the-office-365-admin

This one describes how/why the software chooses the primary email address for users: https://support.microsoft.com/en-us/help/2392130/troubleshoot-user-name-issues-that-occur-for-federated-users-when-they

After looking into it more, if you fill in the "email address" field for a new user in active directory before it syncs via azure AD, the correct primary email address will be chosen in office 365 and there's no need to screw around with the ProxyAddresses property.. but you do have to do that if the user exists and is misconfigured.

MC Fruit Stripe
Nov 26, 2002

around and around we go
Just fixed an issue which has plagued us since yesterday morning. Took a lot of time and got almost no sleep, but I think most of you guys understand how good it feels to fix something like that. King of the world baby.

GnarlyCharlie4u
Sep 23, 2007

I have an unhealthy obsession with motorcycles.

Proof

MC Fruit Stripe posted:

Just fixed an issue which has plagued us since yesterday morning. Took a lot of time and got almost no sleep, but I think most of you guys understand how good it feels to fix something like that. King of the world baby.

I had the same feeling a month ago when our HR Director quit.

MC Fruit Stripe
Nov 26, 2002

around and around we go
I lol'd

I've decided that when I join conference calls I want to be able to play Stone Cold Steve Austin's entrance music for the first 10 seconds or so. Need to figure out how to cue that up. A man needs an entrance.

CLAM DOWN
Feb 13, 2007




MC Fruit Stripe posted:

Just fixed an issue which has plagued us since yesterday morning. Took a lot of time and got almost no sleep, but I think most of you guys understand how good it feels to fix something like that. King of the world baby.

you killed someone, didn't you

milk milk lemonade
Jul 29, 2016

MC Fruit Stripe posted:

Just fixed an issue which has plagued us since yesterday morning. Took a lot of time and got almost no sleep, but I think most of you guys understand how good it feels to fix something like that. King of the world baby.

This happened to me a few months ago when read access was somehow removed from a directory partition resulting in a total loving of an entire domain. Still don't know how it happened :waycool:

Adbot
ADBOT LOVES YOU

Proteus Jones
Feb 28, 2013



CLAM DOWN posted:

you killed someone, didn't you

It's thinking outside of the box, but it resolved the issue.

  • 1
  • 2
  • 3
  • 4
  • 5
  • Post
  • Reply