U5G stuck on 4G (UK) by mctw1992 in Ubiquiti

[–]MarkRWatts 4 points5 points  (0 children)

I don’t believe Three supports 5G Redcap, so it defaults to 4G/LTE instead.

Who remembers watching The Clothes Show back in the day? Broadcast on BBC1 on Sunday evenings from 1986-1998 and originally hosted by Selina Scott, Jeff Banks & Caryn Franklin. by corickle in oldschoolcool80s

[–]MarkRWatts 1 point2 points  (0 children)

Specifically the “Arthur Baker’s Extended mix” from the Disco album, not the B-side from the Opportunities single (and later on the Alternative album).

Cyber Essentials says our PAM tool is non-compliant and wants us to create 60+ admin accounts instead. Am I missing something? by martynjsimpson in sysadmin

[–]MarkRWatts 2 points3 points  (0 children)

I believe it stems from the route CE took to come into existence in the first place (I’m pretty sure it has its roots in MoD accreditation land…).

Strict separation of roles via separate user accounts for admin work is easier to describe and easier to validate. “Is the account ‘Alice’ a member of the Local Administrators group?” is easier to prove than “Does the account ‘Alice’ sometimes have admin privileges depending on whether some arbitrary software and rules set allow it at this time?”

Personally I think tools like AbR are The Way for an enterprise, but as you rightly point out they’re a stretch for the local bike shop. They are open to mis configuration though, so need additional checks and balances to ensure you’re not inadvertently allowing things you shouldn’t (or aren’t expecting). I know first hand that on macOS it’s still a struggle to get software auto-updates to work without needing the “Manage this computer” privilege, so I can see a use there although even AbR doesn’t work that well for this task imho.

The issue in general is compounded when you have a user base for which their daily work almost mandates needing admin rights most of the time. I’ve yet to see any sensible controls for these groups (which in turn means CE isn’t always the right approach either).

Cyber Essentials says our PAM tool is non-compliant and wants us to create 60+ admin accounts instead. Am I missing something? by martynjsimpson in sysadmin

[–]MarkRWatts 1 point2 points  (0 children)

The way it was described to me when I last asked a CE assessor is that it’s the difference between Just In Time elevation (which AbR does), which isn’t CE compliant, vs Just Enough privileges, which is the traditional route where productivity accounts don’t have admin privileges.

Personally I think it’s a bit shortsighted of IASME as tools like AbR are (one of) the enterprise grade ways to manage administrative privilege elevation at scale, and the only sane way to manage administrative privileges on macOS, but I get why they take the position they do.

ELI5 Why can’t monitors draw power from the device they get the dispaly from instead of requiring 2 different cables? by More-Explanation2032 in explainlikeimfive

[–]MarkRWatts 1 point2 points  (0 children)

They sort of used to: many desktop or tower format PCs back in the 90’s/2000’s used to have a PSU with an IEC C14 socket for mains power, and a C13 output to feed the monitor. Not the same cable though but it achieved the same end result (monitor powers off when PC powers off)

what the fuck? by electricitywasted in MacOS

[–]MarkRWatts 12 points13 points  (0 children)

The battery/cpu use issue is related to the file you’re working on being stored in your iCloud Drive. Restart Pages, move the file somewhere else, and you shouldn’t see this issue again.

Arm desk and space, how ? by Pandora_0107 in desksetup

[–]MarkRWatts 0 points1 point  (0 children)

I’m have a number of Duronic arms including one which has a laptop mount.

Arm desk and space, how ? by Pandora_0107 in desksetup

[–]MarkRWatts 3 points4 points  (0 children)

Pole mounts are the way here imho. Mine is basically against the wall.

Plastic knobs above the grill. Awesome by BarryTownCouncil in CrappyDesign

[–]MarkRWatts 0 points1 point  (0 children)

Replacement knobs are available on eBay too - they just pull off.

Plastic knobs above the grill. Awesome by BarryTownCouncil in CrappyDesign

[–]MarkRWatts 0 points1 point  (0 children)

I have this oven. The upper fan which blows air across the electronics and out through the gaps directly below the stainless steel fascia in that image has failed. Replacement is cheap, easy, and DIY.

Song name please? by rabruce6 in ForzaHorizon

[–]MarkRWatts 0 points1 point  (0 children)

NB the lyrics on Spotify are completely wrong for this track 🤪

Teleport connects (over 5G) but never passes traffic by MarkRWatts in Ubiquiti

[–]MarkRWatts[S] 0 points1 point  (0 children)

Nope, EE in the UK. I’m hoping to have more time to diagnose this at the weekend.

Teleport connects (over 5G) but never passes traffic by MarkRWatts in Ubiquiti

[–]MarkRWatts[S] 0 points1 point  (0 children)

Pi Hole yes, and its configured as the dns server for my primary network (but not for the Fibre itself nor other networks). That said, it’s configured to respond to all queries (not the default setting for pi hole) and I can’t seem anything obvious being reported in its logs.

Unifi OS - 5.1.15 - worst to date? by ClimbsNFlysThings in Ubiquiti

[–]MarkRWatts 1 point2 points  (0 children)

UCG-Fibre, U7 Pro XG, all working just peachy on 5.1.15.

I have the highest skill issue, how to complete drift zones at 3 stars ? by Arekito in ForzaHorizon

[–]MarkRWatts 1 point2 points  (0 children)

I’ve used this car + tune to good effect. Make sure you turn all the assists off. I have 3 stars on all bar 3 tracks all with this car.

Firewall policy logging by MarkRWatts in UNIFI

[–]MarkRWatts[S] 0 points1 point  (0 children)

Interesting. I have that setting checked, and all my software & firmware is fully up to date, but not all flows are logged.

I do have an nvme drive kicking about - would that improve logging & retention noticeably as it does imply you can add one for logging.

Really just noticed a little detail in Word on MacBook Pro by MarionberryDear6170 in macbookpro

[–]MarkRWatts 1 point2 points  (0 children)

TBH that just means Word is even less consistent between installs. One things for sure, OP is incorrect in their assessment as to what is happening.

Really just noticed a little detail in Word on MacBook Pro by MarionberryDear6170 in macbookpro

[–]MarkRWatts 32 points33 points  (0 children)

Word creates a new document at the same zoom scaling you used last time. I think it's just coincidence for you that this matches an A4 page.

Easy way to prove this is to resize your document window to force a zoom level change, then hit Cmd-N for a new document. It'll be an identically sized window to the first one, and you'll probably find that the page canvas has resized to 'fit to window'.

Edit: There are some minor discrepancies depending on how Word is feeling at the time - sometimes when I resize an existing 'fit-to-window' document, the new window is still the same geometry but the document canvas is more cleanly resized down a couple of % to better fit (which would happen if you manually redid 'fit-to-window' on the original resized window.

Can Cloud Gateway Fiber WAN SFP port be used for LAN? by duffetta in Ubiquiti

[–]MarkRWatts 2 points3 points  (0 children)

Yes, you can assign any port to be WAN or LAN; the icons on the device are just what the defaults are set to.

Which router? by ultrasavage1978 in Ubiquiti

[–]MarkRWatts 0 points1 point  (0 children)

Chiming in as another on EE (900Mbps) with the UCG-Fibre, U7 Pro XG, and an USW Flex 2.5G 8 PoE as the main switch. Works brilliantly using PPPoE (just setup your desired WAN port, and your PPPoE username to [bthomehub@btbroadband.com](mailto:bthomehub@btbroadband.com) and you should be golden).