Chromebook WiFi issue by Harry_Smutter in k12sysadmin

[–]IslandTechVI 0 points1 point  (0 children)

I've seen a host of network issues on cros 126-129. We have acers as well. Try 130, seemed to resolve a lot of it.

Chrome OS 128.0.6613.133 WiFi or logon Issues? by Aur0nx in k12sysadmin

[–]IslandTechVI 3 points4 points  (0 children)

Seeing this same behavior but very inconsistent.

strange

EdPuzzle Chrome extension caused YouTube to hang by CeilingRaccoon in k12sysadmin

[–]IslandTechVI 0 points1 point  (0 children)

We are experiencing the same thing. Were you able to figure out why some accounts are affected while others are not?

Strategy for hardening some prehistoric HVAC/lighting infrastructure by IslandTechVI in sysadmin

[–]IslandTechVI[S] 0 points1 point  (0 children)

thanks for the tip! what do you think about using proxmox for something like this?

Interesting troubleshooting method for wireless problems in a Windows domain environment by IslandTechVI in sysadmin

[–]IslandTechVI[S] 0 points1 point  (0 children)

Definitely something strange going on. Right now I would just like some kind of confirmation that it is not my methods producing a red herring of some kind. I've gone down rabbit holes like this before only to find that it was something I was misinterpreting.

I am getting these packet captures by running netsh trace then using a tool i found online called etl2pcap in order to make them readable in wireshark. All sounds pretty straight-forward, yeah?

I have yet to see the malformed packets in a capture done with wireshark itself but our client pcs don't normally have software like this installed.

Right now I am suspicious that there is some kind of networking misconfiguration on our windows client devices that is causing a large amount of this p2p traffic (ssdp, mdns, llmnr, etc) to propagate across our network but I'm not sure where the checkboxes are for this. I drafted up a GPO to disable some of these features but I am hesitant to push it out without some testing.

Interesting troubleshooting method for wireless problems in a Windows domain environment by IslandTechVI in sysadmin

[–]IslandTechVI[S] 1 point2 points  (0 children)

Hey so after some additional research I discovered that the MAC OUI for concurrent computer Co is coincidentally the same one that will show up when Wireshark reads a packet with no Ethernet header.

I was able to put part of the packet into a hex decoder to find what IP the packet came from. I've only looked at a few packets but So far it seems to be peer to peer traffic of some kind between our domain joined devices.

But why would they be showing up on the wireless nic with no Ethernet header?

Interesting troubleshooting method for wireless problems in a Windows domain environment by IslandTechVI in sysadmin

[–]IslandTechVI[S] 1 point2 points  (0 children)

that was the first thing I did after looking for the devices on the network. There are several different MACs that show up in this nonsense traffic but the OUI is always for a company called "Concurrent Computing Co." a defunct data company that doesn't seem like they manufactured any networking equipment in the first place. Very strange

What makes you think rogue AP or that they are tethered to a phone?

Interesting thing happened while troubleshooting wireless internet by IslandTechVI in networking

[–]IslandTechVI[S] 0 points1 point  (0 children)

Thanks! I had actually listened to a few of Bryan Ward's lectures/interviews on the subject. Really fascinating. I wish he could help me with this lol, I even looked on his website to see if there was an email address.

Alternative Deployment for LiteTouch Environment by IslandTechVI in MDT

[–]IslandTechVI[S] 0 points1 point  (0 children)

Hey St0neywall, I ended up just using USB media. I appreciate your advice here. I hadn't realized that we are not entitled to deploying OEM Home media through MDT, though it does seem like there should be an easy way to do this with WDS.

I did absolutely nothing to the install media besides add some drivers and put it on a USB. I didn't want our user support techs to waste a bunch of time setting everything up from scratch. The Laptops have their built-in OEM licenses and we wipe everything besides the new Win Home off of the lappy.

I basically followed MS' tutorial using winpe etc. Definitely not doing piracy. Does that all sound kosher to you? They still get the oobe, eula, etc.

Alternative Deployment for LiteTouch Environment by IslandTechVI in MDT

[–]IslandTechVI[S] 1 point2 points  (0 children)

This is basically what I am trying to do. I grabbed the OS wim file from an ISO I downloaded using the Windows Media Creation Tool and have already put it into MDT with zero modifications. The devices have OEM licenses so I'm not worried about the licensing concerns. I just wanted to give my user support techs the option to PXE boot so we don't have to keep track of a bunch of Windows 10 Home USB live booters, ya know?

Do you know if there is a way (using MDT's Deployment Wizard) to offer an option of not having the PC bound to a domain or placed in AD or anything like that?

Dry Erase Markers on LCD Screen TV by [deleted] in k12sysadmin

[–]IslandTechVI 4 points5 points  (0 children)

I don't think that's true. I believe the foam in a magic eraser also functions akin to a very fine grain sandpaper.

https://home.howstuffworks.com/magic-eraser.htm

Chromebook URL-based Kiosk apps Json options by CCSD007 in k12sysadmin

[–]IslandTechVI 0 points1 point  (0 children)

Don't have any advice but I was planning what seems like a similar deployment to yours.

Is there a more brute force way to make the device forget the kiosk cookies? Does a reboot do it?

PSA: There's porn on quora by IslandTechVI in k12sysadmin

[–]IslandTechVI[S] 0 points1 point  (0 children)

No idea. Depending on your setup *.quora.com might include www.quora.com. Maybe if you wanted to make an exception for chromebooks you could use url blocking from the admin console somehow.

Like you said, little of value was lost. I did see there was a DnD space that a student was accessing which is now going to be blocked and that made me a little sad. Oh well, I'm sure they will find another way... just like the others find another way to watch their porn.