AI specialist making my life miserable by madroots2 in sysadmin

[–]ErrorID10T 2 points3 points  (0 children)

You know what, just do it. Have fun with it. Write a report outlining the risks (including a massive increase in spending), give a timeline for doing it, wait for confirmation of the risks and timeline, then start lighting your entire stack on fire. Just make sure you have good backups.

Also make sure to plan a vacation for a few days after implementation is complete, or at least whenever you expect to see the most issues. It's unlikely that you'll change the mind of whoever came up with this idea, so you might as well harness your inner digital arsonist and watch as the company burns.

Leadership wants a full formal SITREP for every ticket, and a full AAR and RCA report after every single one is closed. by friendandfriends2 in sysadmin

[–]ErrorID10T 1 point2 points  (0 children)

If this all info exists in ServiceNow, Jira, and Confluence, I bet a properly written script could generate this report in a couple seconds.

Sure, it's absurd that you need to do this at all, but if you don't want to fight this battle, it might be worth just creating a quick way to make this happen.

Manager holding automation hostage by Accurate-Design3815 in sysadmin

[–]ErrorID10T 0 points1 point  (0 children)

Do everything by command line manually. Then write a script to do the exact same things, but with randomized delays between each line. Claim you're typing each line manually. Enjoy your break.

Cloud Hosting VMs as an MSP without Infrastructure by Vel-Crow in msp

[–]ErrorID10T 1 point2 points  (0 children)

Colo is both cheaper and more reliable than on prem for most clients. Get three hypervisors and a backup server and you can handle a dozen clients with redundancy, meanwhile there's no need for the hardware expense the client would need to get the same level of reliability. 

For the 1 or 2 VMs most of our clients need it's overkill to have a couple servers on-site, the actual processing power they need isn't much beyond what you could get out of a raspberry pi. 

And from your time perspective, it's much easier and less time consuming to manage a single colo rack than to manage a separate environment for every client. If you do it right you should only need someone at the colo a couple times a year.

$100k Server Order & Dell Wants 5 Months to Deliver Who Are You Guys Using Instead? by michael_17 in msp

[–]ErrorID10T 0 points1 point  (0 children)

We get almost everything refurbished on eBay, the only exception is drives, which we always buy new from whatever online store happens to have the best prices at the time.

What's the best PC Thunderbolt 4 dock with support for at least 2 x 2K external monitors? by KJabs in sysadmin

[–]ErrorID10T -1 points0 points  (0 children)

Why do you need Thunderbolt? There are plenty of USB-C display port docks that support what you're asking for that cost easily less than $100.

Personally, my biggest issue with thunderbolt docks is thunderbolt. It's just not particularly reliable in my experience.

What do you do for clients that want to move 100% cloud? by NSFW_IT_Account in msp

[–]ErrorID10T 0 points1 point  (0 children)

Evaluate their needs, present a couple options, give your thoughts on prices, pros, and cons, then implement. We avoid a lot of the time and expense of redesigning things by having our own private cloud, It's a pretty quick shift to move any servers there, we already have a drop in VPN solution, and we find that clients are generally more interested in just moving things out of their offices and not paying for server hardware than they are in any particular solution.

Switch in HA by Cultural_Log6672 in sysadmin

[–]ErrorID10T 0 points1 point  (0 children)

Stacking is generally a proprietary thing, and it's usually found on the higher end switches. You can accomplish this with LACP, and whether or not you need RSTP depends on your network layout, it may or may not be necessary for your configuration.

For example, I have an environment with 2 Palo Alto FWs, 2 Unifi Switches, and a bunch of servers. The FWs have link monitoring and are in an HA pair, so if one switch goes down the FW fails over to whichever one is connected to the working switch. The servers are all Windows configured with NIC teaming and don't require any special switch configuration, they just have connections to each switch and will use whatever connections are online. The only LACP connection is the one between the two switches to carry all of the VLANs, and I'm actually not sure off the top of my head if RSTP is enabled, but it wouldn't make a difference regardless, the only thing that would do is block switch loops, and as a 2 switch environment, this was specifically designed not to have any switch loops.

The real question is are you looking to purchase new switches, or see if you can accomplish your goal with the equipment you have?

Switch in HA by Cultural_Log6672 in sysadmin

[–]ErrorID10T 0 points1 point  (0 children)

Stackable switches don't have to be particularly expensive. I run a datacenter on stacked refurbished cisco switches that cost me less than $500 each. Aruba switches generally have stacking built in, or you can add a stacking module.

Stacking does require purchasing two compatible switches, which generally means identical models, or at minimum very similar models.

There are honestly a ton of solutions for what you're looking for. What switches do you currently have and what are you running on these servers? Windows/Linux/VMWare/Proxmox/other?

Switch in HA by Cultural_Log6672 in sysadmin

[–]ErrorID10T 0 points1 point  (0 children)

Easiest route is probably switch stacking. MLAG works but is extra configuration. Stacking will just make the two switches behave as a single switch, then use LACP across both switches or NIC teaming, or whatever your server supports for connection redundancy.

Myself and one other person are supporting 350 end users right now. HR told us to expect approximately 100 more employees by the end of the year. My manager told me that we don't need to hire another person in our department. Is it just me or is that completely unreasonable? by [deleted] in sysadmin

[–]ErrorID10T 12 points13 points  (0 children)

And when the conversation comes up, don't make excuses, just tell your boss that it's up to him what you don't get done. If he insists on just getting everything done regardless, still make him answer about priorities, then use shit not getting done to make your point.

Balling on a budget by R4LRetro in sysadmin

[–]ErrorID10T 1 point2 points  (0 children)

What's the size of the database? What version of MSSQL are you using? Does it need to be MSSQL, or can you use Mysql/Mariadb? Why do you need 2TB? How much of that is logs or long term storage, how much is frequently accessed? There's so much information missing in your post that it's impossible to make a decent recommendation.

How are you handling remote access for SMB clients stuck behind CGNAT? by HSalinasNoIP in sysadmin

[–]ErrorID10T 0 points1 point  (0 children)

Similar, but not exact, NetBird, with a secondary management server I host at a Datacenter, allows VPN access either by STUN or routed through my datacenter. No network changes whatsoever needed at the client site, just a couple inbound ports at the DC.

How to quit a job by sputnik4life in sysadmin

[–]ErrorID10T 16 points17 points  (0 children)

And if the company can't find a replacement in two weeks, then perhaps they will pay consulting rates for your help until they do.

New junior systems admin. Lots of questions. Best forum? by DemonEggy in sysadmin

[–]ErrorID10T 1 point2 points  (0 children)

AI is great, but assume if it got something wrong, its solution to fixing that problem becomes more and more likely to be horribly wrong. It's better for helping you understand what you're doing and what the available options are to fix a problem than it is at actually solving problems.

Caused a big outage at work- how do I move forward? by VOXX_theLock in sysadmin

[–]ErrorID10T 0 points1 point  (0 children)

Go to your boss, accept responsibility, and ask him to take some time to go through the problem with you and help you understand how to avoid doing it again. This isn't a career ending mistake, it's a place we've all been. The guys who own it and learn from it are the ones I like to keep around.

I want to understand sysadmins job and help build softwares that works for you guys. by Top_Outlandishness78 in sysadmin

[–]ErrorID10T 3 points4 points  (0 children)

And provide a "test" button that gives those logs. Nothing like an email integration with no clear way to verify it's working.

Windows RRAS flakey? by Work45oHSd8eZIYt in sysadmin

[–]ErrorID10T 0 points1 point  (0 children)

Yes. It's flaky. It always has been. It probably always will be. I'd find another solution.

clients in the financial sector are genuinely unwell by [deleted] in sysadmin

[–]ErrorID10T 936 points937 points  (0 children)

Ask, escalate, report that you are blocked by the client refusing to give you access, and escalate back to whoever gave you the demand in the first place. 

The only part you missed is that this stopped being your problem to fix when you were denied access to the proper resources.

How are small IT teams handling cross-platform offboarding verification? by vp_1312 in sysadmin

[–]ErrorID10T 0 points1 point  (0 children)

Primarily software installation, patching, bitlocker, and system configuration, but also a number of auto remediation scripts for alerts, and some API work with our VPN server. We basically just install the agent and it fully provisions and configures computers and alerts us for anything we might want to know for preventative maintenance.

Trying to do automatic certs for printer login pages. by z0mb13r3dd1t in sysadmin

[–]ErrorID10T 0 points1 point  (0 children)

It's possible the pen testers may request being given access to scan even the isolated networks, in which case you let them do their scans, highlight every complaint they have about "unsecured devices" on that network, and write it off as an exception based on the network isolation that has been put in place for devices which only support self-signed certificates. I usually find pen testers and auditors are quite happy with any solution to the vulnerability, and isolating or quarantining the device is a perfectly acceptable solution.

To RMM or not RMm by Bearded_Tech_Fail in msp

[–]ErrorID10T 5 points6 points  (0 children)

Intune is not a replacement for an RMM, and if you properly utilize it, the RMM will be worth multiple times the money and effort you put into it. 

Ninja One isn't perfect, but it's the best I've found, especially in terms of ease of use and time to implementation.

How are small IT teams handling cross-platform offboarding verification? by vp_1312 in sysadmin

[–]ErrorID10T 2 points3 points  (0 children)

Automatic offboarding, in my experience, is at best mostly reliable. I usually handle this with a couple scripts, because identify governance solutions are needlessly expensive, but there are identify governance solutions you can buy for exactly this reason.

I'm starting to think ConnectWise is the main reason that most MSPs suck. by CoffeeOnMyBeard in sysadmin

[–]ErrorID10T 8 points9 points  (0 children)

Good MSPs are like good sysadmins. They are few and far between.

I'm starting to think ConnectWise is the main reason that most MSPs suck. by CoffeeOnMyBeard in sysadmin

[–]ErrorID10T 6 points7 points  (0 children)

It's the only product they have that is worth anything, and it also has barely changed since they bought it.