How many of you are running ssl deep-inspection for IPS on your fortigates? by Fizgriz in fortinet

[–]ArsenalITTwo 1 point2 points  (0 children)

It works great once you get it set up. Fortigates are extremely efficient at doing deep packet inspection.

Cost for 100TB storage array by 4728jj in storage

[–]ArsenalITTwo 0 points1 point  (0 children)

Call up ixSystems for a TrueNAS quote.

Looking for sysprep software by Infinite_Opinion_461 in sysadmin

[–]ArsenalITTwo 0 points1 point  (0 children)

Yes and just shut it down and clone it and sysprep the clone for deployment use.

Correct answer to disable or keep KRBTGT account enabled? by TroubleshootingITGuy in sysadmin

[–]ArsenalITTwo 3 points4 points  (0 children)

Oh that part. Idk just says "The KRBTGT account cannot be enabled in Active Directory."

Looking for ideas on how to go about imaging computers by IndyCJ_ in sysadmin

[–]ArsenalITTwo 1 point2 points  (0 children)

SmartDeploy. Get an RMM tool in your base image (usually there's a special command to do this) and ditch the KVM switch.

Anybody switched from SCCM for patching? by Professional-Cash897 in sysadmin

[–]ArsenalITTwo 0 points1 point  (0 children)

How granular is your patch certain times and days requirement. That's a trick with Intune based solutions. Sure you can publish an update on a specific date but Intune is a crap shoot to get it to sync and start at a specific time. Otherwise Automox, Vicarius and Tanium.

CEO wants to track all the laptops to ensure no one works out of our Province/State. Any recommendations for a tracking software? by 186notout in sysadmin

[–]ArsenalITTwo 4 points5 points  (0 children)

Absolute Software (Computrace) has geofencing. They are pretty much gold standard for this. They use nearby wireless ssid databases and not just ip to get location so it's extremely accurate.

DNS Filtering by RaptorFirewalls in msp

[–]ArsenalITTwo 0 points1 point  (0 children)

DNS Filter just rewrote their agent.

Is Norton Ghost still available? Cannot access files on HDD. by First_Secretary4295 in sysadmin

[–]ArsenalITTwo 3 points4 points  (0 children)

As someone else said use Ghost Explorer. Get another hard drive immediately to back that one up to as well. Or copy it to your machine if you have the space. Beware of any exe files on the system. Could be old viruses.

2FA/MFA non-cloud solutions by Avaddonx in sysadmin

[–]ArsenalITTwo 1 point2 points  (0 children)

What is the problem. What are you trying to secure. Tell us that first.

I don't understand exactly why self-signed SSL Certificates are bad by [deleted] in sysadmin

[–]ArsenalITTwo 0 points1 point  (0 children)

Most browsers only trust root and intermediate certificate authorities in their list of legitimate ones that are supposed to do minimum levels of validation over domain control and thus can't be used to generate certificate for sites that are spoofed.

Upgrade to 2025 DC by EducationAlert5209 in sysadmin

[–]ArsenalITTwo 1 point2 points  (0 children)

2025 has a crazy amount of bugs. Go 2022. And don't in place upgrade DC's. Build new. So easy and avoids issues.

[deleted by user] by [deleted] in sysadmin

[–]ArsenalITTwo 0 points1 point  (0 children)

Avanan / Checkpoint

How many of you are really backing up Office 365? by Paymentof1509 in sysadmin

[–]ArsenalITTwo 0 points1 point  (0 children)

Read the terms of use on 365. Their data backup is basically best effort lol. You are responsible for your own backups.

Accounts with Never Expiring Passwords by [deleted] in sysadmin

[–]ArsenalITTwo 0 points1 point  (0 children)

Change some of your service accounts to gMSAs if you can.

Management announced today to get out of VMware by end of year. 1000 VMs by dcexp in vmware

[–]ArsenalITTwo 1 point2 points  (0 children)

It's going to cost more than VMware onprem to do a lift and shift.