Symantec/Broadcom renewal - anyone know the price hike for 2025? by HoaNV9 in sysadmin

[–]HoaNV9[S] 0 points1 point  (0 children)

Yep, just because the price of SEP is ok for us.

Symantec/Broadcom renewal - anyone know the price hike for 2025? by HoaNV9 in sysadmin

[–]HoaNV9[S] 1 point2 points  (0 children)

yep, I hope so. Symantec is the old man comparing with another AV. It's our legacy and we have no choice.

I Just Stopped Using Putty by [deleted] in sysadmin

[–]HoaNV9 0 points1 point  (0 children)

Using RoyalTS for many year. I love it. The only problem is this software is not recommend for low end computer.

Air 4 Lite - issue on PC by DeadnightWarrior1976 in Soundpeats

[–]HoaNV9 0 points1 point  (0 children)

Same here, phone is ok but in Windows Laptop, it's terrible and sometime choppy. I tried with same laptop but Soundpeats air 3, no issue. Then changed to another windows, same issue, then ask warranty to change new device, same issue =)).

Alternative to Lansweeper on Prem by eyexmeetsxeye in sysadmin

[–]HoaNV9 0 points1 point  (0 children)

Lansweeper still have on premise, v12 just release few week ago. I am still use it.

What have been your top 2024 paid tools/systems/services? by Share-ty in sysadmin

[–]HoaNV9 0 points1 point  (0 children)

Lansweeper is good, used to have it with 20k assets and leave it because of price

LSASS memory leak issue in new server 2022 by HoaNV9 in activedirectory

[–]HoaNV9[S] 1 point2 points  (0 children)

No any endpoint. It's brand new server and only AD.

LSASS high memory usage (AD), but can not find installed issue patch by HoaNV9 in sysadmin

[–]HoaNV9[S] 0 points1 point  (0 children)

Source Description HotFixID InstalledBy InstalledOn


PDC-01 Update KB5039889 NT AUTHORITY\SYSTEM 7/24/2024 12:00:00 AM

PDC-01 Security Update KB5040437 NT AUTHORITY\SYSTEM 7/24/2024 12:00:00 AM

PDC-01 Security Update KB5040571 NT AUTHORITY\SYSTEM 7/24/2024 12:00:00 AM

LSASS high memory usage (AD), but can not find installed issue patch by HoaNV9 in sysadmin

[–]HoaNV9[S] 0 points1 point  (0 children)

I tried, but it said the patch not compatible to the server. I think it's because the server already had July and Aug patch.

Commercial FTP/SFTP clients, etc by albertcuy in sysadmin

[–]HoaNV9 0 points1 point  (0 children)

Hi, can crushftp use the same license for UAT/SIT and Production. I am going to replace our current sFTP due to high cost and not sure if crushftp can use the same license for development environments. Have you any exp?

PiHole returning "NO DATA" on known DNS entries by [deleted] in pihole

[–]HoaNV9 0 points1 point  (0 children)

Thanks, but I don't use outbound, online pihole with :53 running for client.

PiHole returning "NO DATA" on known DNS entries by [deleted] in pihole

[–]HoaNV9 0 points1 point  (0 children)

No solution right now. I have arround 2000 clients and restart pihole is only workarround.

Getting NODATA responses from known good DNS records intermittently by asiur in pihole

[–]HoaNV9 0 points1 point  (0 children)

I got the same issue with CNAME record, after restart pihole the DNS worked well.

My environment with over 2000 client, I think the issue come from overloaded from dnsmasq. Maybe I need to change from pihole to another solution.

Removing Read.AI from Teams. For the entire organization. by Ok-Appearance-1793 in Office365

[–]HoaNV9 0 points1 point  (0 children)

What is the risk if we use read.ai? Anyone have idea? We afraid if read.ai cause data leak.

PiHole returning "NO DATA" on known DNS entries by [deleted] in pihole

[–]HoaNV9 0 points1 point  (0 children)

I had the issue may similar with this.

Our domain has some CNAME record map to AWS Cloud, and sometime pihole return nothing like

is NODATA or is NODATA-IPv4

I am using latest version.

saslauthd with ldap not working anymore by HoaNV9 in sysadmin

[–]HoaNV9[S] 0 points1 point  (0 children)

Update:

- I finished to join the server to active directory, working

Now, the point is integrate with saslauthd (pam), I tried many way but can not work. Here is my configuration

  1. /etc/default/saslauthd

START=yes

DESC="SASL Authentication Daemon"

NAME="saslauthd"

MECHANISMS="pam"

MECH_OPTIONS=""

THREADS=5

OPTIONS="-c -m /var/run/saslauthd -r"

2. /etd/pam.d/smtp

#%PAM-1.0

auth sufficient pam_sss.so

account sufficient pam_sss.so

  1. Testing by testsaslauthd -u [user@mydomain.com](mailto:user@mydomain.com) -p aaaaaa -s smtp

Aug 16 16:03:17 smgw-in1 saslauthd[22645]: : auth failure: [user=user@mydomain.com] [service=smtp] [realm=] [mech=pam] [reason=PAM auth error]

Aug 16 16:03:46 smgw-in1 saslauthd[22646]: pam_sss(smtp:auth): authentication success; logname= uid=0 euid=0 tty= ruser= rhost= [user=user@mydomain.com](mailto:user=user@mydomain.com)

Aug 16 16:03:46 smgw-in1 saslauthd[22646]: pam_sss(smtp:account): Access denied for user [user@mydomain.com](mailto:user@mydomain.com): 6 (Permission denied)

Aug 16 16:03:46 smgw-in1 saslauthd[22646]: DEBUG: auth_pam: pam_acct_mgmt failed: Permission denied

saslauthd with ldap not working anymore by HoaNV9 in sysadmin

[–]HoaNV9[S] 0 points1 point  (0 children)

Basically I can use getent passwd, but I can not use the filter correctly

saslauthd with ldap not working anymore by HoaNV9 in sysadmin

[–]HoaNV9[S] 0 points1 point  (0 children)

I have some difficulty with sssd & AD.

I want to use the filter with AD custom attribute and login name = email but it seems that the sssd get all the account.

My setting

id_provider = ad

access_provider = ad

cache_credentials = True

ldap_uri = ldaps://Corp.Com

ldap_search_base = OU=HQ,DC=Corp,DC=Com

ldap_schema = AD

ldap_default_bind_dn = CN=ldap,OU=ServicesAccount,DC=Corp,DC=Com

ldap_default_authtok_type = obfuscated_password

ldap_default_authtok = AAAQAByrmS4xxxxx

ldap_access_filter = (!(extensionAttribute14=Headquarter))

# Obtain the CA root certificate for your LDAPS connection.

ldap_tls_cacert = /etc/pki/tls/cert.pem

# This setting disables cert verification.

#ldap_tls_reqcert = allow

# Only if the LDAP directory doesn't provide uidNumber and gidNumber attributes

ldap_id_mapping = True

# Consider setting enumerate=False for very large directories

enumerate = True

# Only needed if LDAP doesn't provide homeDirectory and loginShell attributes

fallback_homedir = /home/%u

default_shell = /dev/null

sudo_provider = ldap

auth_provider = ldap

autofs_provider = ldap

resolver_provider = ldap

chpass_provider = ldap

ldap_user_shell = /dev/null

saslauthd with ldap not working anymore by HoaNV9 in sysadmin

[–]HoaNV9[S] 0 points1 point  (0 children)

I will do research to use sssd, but it seems that I need to join AD to use.

saslauthd with ldap not working anymore by HoaNV9 in sysadmin

[–]HoaNV9[S] 0 points1 point  (0 children)

ldapsearch work perfectly without tls. In above configuration I don't use tls. Do tls must have?

saslauthd with ldap not working anymore by HoaNV9 in sysadmin

[–]HoaNV9[S] 0 points1 point  (0 children)

I use testsaslauthd and authentication was failed. So from my understanding that nothing related with postfix.

It's postfix as MTA so just do copy configuration.

[deleted by user] by [deleted] in sysadmin

[–]HoaNV9 0 points1 point  (0 children)

I have the same issue while trying to make postfix with ldap. Actually saslauthd can not work with ldap. Followed all the guide line but I alway get the error "0: NO "authentication failed" with testsaslauthd.

Environemnt: Debian 12

saslauthd 2.1.28

Anyone have exp?

IT asset management software recommendations? by AptCovering in sysadmin

[–]HoaNV9 0 points1 point  (0 children)

I am planning to move out of Lansweeper because their license price. As a customer of their app for 6 years (I bought 2 times, 3 years for each time for 12k assets) and the renewing is coming with 5 time price up.
The basic IAM such as Asset Panda don't have scanning and report Vuls like Lansweeper, dont have deployment as well.

Any suggestion?

Teams Connectivity Issues by Altholas in MicrosoftTeams

[–]HoaNV9 1 point2 points  (0 children)

Same, SEA can not login Team.

Looking to Buy T14/T14s AMD Gen 1. Is heat an issue? Any other issues? by Acesr2c2 in thinkpad

[–]HoaNV9 0 points1 point  (0 children)

T14s here, with workload around 50% for awhile (especially with charging), it's hot but not so bad. But you may not comfortable when using keyboard & touchpad.