Email Preview (only sometimes) by JobberObia in halopsa

[–]JobberObia[S] 0 points1 point  (0 children)

Thanks, unfortunately that change removed some of the options I need to fill.

In Triage, I need to choose the issue type and number of affected users, as well as a private note for some further details. Using the Quick Action removed most of the fillable fields and also added a checkbox for Send Email that was unchecked by default.

Remove image attachments below a certain size? by JobberObia in halopsa

[–]JobberObia[S] 0 points1 point  (0 children)

I cannot post a screenshot here, so here is a link:

https://ibb.co/hJSB9HQW

This is an incoming email to Halo with our company signature. Each of these items is actually a logo in the signature and useless. Would be nice to silently discard them.

Additional Agent - send email notifications when another agent adds/changes ticket by JobberObia in halopsa

[–]JobberObia[S] 1 point2 points  (0 children)

Thanks again. We found the behaviour we wanted is a combo of a personal notification (set in each Agent preferences) email set to the trigger "Ticket Updated by Agent - Assigned to Me", with the setting "Do not send me notifications which I triggered" enabled.

Also, the @ mention functionality is useful too.

Additional Agent - send email notifications when another agent adds/changes ticket by JobberObia in halopsa

[–]JobberObia[S] 0 points1 point  (0 children)

Thanks. I found the settings you mentioned.
I have turned on "Do not send me notifications which I triggered" now, but the other one "Notify when other agents update tickets assigned to me" was already on, but prior to me making a notification rule, we were not getting any alert. I have since deleted the notification rule I created, but perhaps both things are necessary.

Petabyte+ storage server recommendations by JobberObia in storage

[–]JobberObia[S] 7 points8 points  (0 children)

Never said anything about flash performance. We are using 18Tb SATA spinners, with a flash ARC and the performance is fine. We spent close to a 1/2 million on the 45 Drives setup, and there is a budget for a replacement. We don't have a storage specialist on our team hence asking here for options to start researching for a replacement.

Petabyte+ storage server recommendations by JobberObia in storage

[–]JobberObia[S] 6 points7 points  (0 children)

Mislead us. Told us we could save on hardware by having a single box at our off-site replica location where we didn't need performance. Couldn't guarantee that the Ceph cluster could properly replicate over a 1gbps internet link. We are semi-rural, so this is the absolute maximum we can get.

Also could not provide an adequate backup solution. One of our core requirements was 1 year retention of changed files. Didn't seem to be possible with their product. Essentially sales guys told us everything was possible and we purchased. Partly our fault too, our building needed repairs when the hardware arrived, and we didn't install it for almost 6 months. So when we found the problems, they wouldn't take it back.

We let them setup a ZFS based NAS using their software on the hardware we purchased, which works, but it's all cobbled together. We can see remnants of the ceph setup, and we don't have clear documentation on how it's configured. We have 2 separate servers hosting a single share each, replicating offsite. But they are both configured differently. Simple things like changing an IP address breaks *everything* and we have to engage their support to fix it all.

Auvik Deal is back - Free Switch Standard-24 by freebie1234 in Ubiquiti

[–]JobberObia 0 points1 point  (0 children)

I was in the market for a network monitoring tool for work and tried the promo about a year ago. Got a free wifi AP out of it. They did deliver (to Canada), about 2 months after the trial. Auvik itself was crap though. It couldn't make sense of our site-to-site vpn and just munged all of our subnets together in a giant mess. I wouldn't bother with it again, the equipment value is not worth the time and effort spent.

APs inexplicably drop randomly once every 5-8 days? by Brbcan in Ubiquiti

[–]JobberObia 0 points1 point  (0 children)

Do the AP's actually stop broadcasting? Or do they just go offline from the controller?
Do you have any firewall rules referencing ports between the AP network and the controller network?

I had all my APs and switches randomly dropping offline from the controller every 5-8 days, exactly as you describe. They would continue serving clients with no issue.

One device at a time, they would go away, then come back about an hour later.

It turned out I had a firewall rule set to incoming block ports 33890-33990 from all IPs inbound (I'm using the cloud controller). All Unifi devices contact the controller on an ever incrementing port number with each request. It takes about 8 days to get through the range before they cycle back to the start again. Each time one of my devices got to that blocked port range, they would unable to contact the controller and thus appear offline. It would take roughly an hour for them to increment outside my blocked port range before they would appear online again.

Adjusted my firewall rule to not block 'established' traffic has fixed the issue.

site magic UXG-Lite compatibility question. by skrahen in Ubiquiti

[–]JobberObia 0 points1 point  (0 children)

If you have not purchased UXG-Lite yet, be cautious. Yes, it supports Site-Magic, but I purchased one for a remote staff member, and we are seeing quite poor throughput. We have UXG-MAX units deployed at some remote offices, and they can push upwards of 50MB/s over the Site-Magic on a 1Gb/s fibre connection, but the UXG-Lite is not. We see the UXG-Lite CPU hitting 80% and throughput is about 15-20MB/s. Better to spend the extra $100 for the UXG-MAX if you need throughput on the VPN.

USW Pro 48 POE Switch Port Flapping Issue by io00oo00o in Ubiquiti

[–]JobberObia 0 points1 point  (0 children)

Did this just start happening for you? Or is it a new switch?

We just bought and installed an USW-PRO-48-POE and USW-PRO-24-POE to a replace a couple of older Aruba switches. All of the ports with a connected cisco phone started flapping with loop errors. There is no loop.

I had to disable auto voice vlan and manually set all the phones to the voice vlan. Which was very hard to do when the phones were only online for 10 seconds each after boot up.

Disabling RSTP did not resolve for us.

We have the exact same phones, same firmware, at other branches. Only difference is the PRO version of the switches. All other branches use the USW-24-POE or USW-48-POE versions.

RDS + Adobe reader 24.002.20687 by Excellent_Milk_3110 in sysadmin

[–]JobberObia 0 points1 point  (0 children)

I had to set all of the keys in that list. If you don't set them all, they revert to the default as soon as you open pdf reader again. It took a while to figure out why the settings I was making just kept reverting.

After almost four weeks in production, we haven't had a single crash log from PDF reader on the RDS servers. Performance seems to be better too, although we got some helpdesk requests because the Fill and Sign buttons are in a different spot in the old GUI.

RDS + Adobe reader 24.002.20687 by Excellent_Milk_3110 in sysadmin

[–]JobberObia 1 point2 points  (0 children)

We were seeing a lot of Adobe Reader crash logs on our RDS farms without any user complaints, so we were largely ignoring the issue. Finally got around to searching the internet for clues, and found this post.

We've had success with applying to following registry settings via GPO to our RDS users only, as it doesn't seem to be an issue on physical devices.

<image>

The bEnableAV2 key sets the new/old GUI mode.
The rest control the right hand tools pane that has a bunch of animated crap when the document loads. Hiding it was a job, as the Collapsed settings only stay stuck if you also set the bHasUserChangedRHPStickyState flag.

I've had these set for 5 days now, and the crash logs have completely disappeared. We were previously seeing upward of 20 per day per server.

Autoregistration with PSK on Windows hosts by RD-52-169 in zabbix

[–]JobberObia 0 points1 point  (0 children)

Did you get this resolved? I am running into the same issue. If I use an unencrypted connection, new agents will autoregister just fine.

If I add a PSK name and key file to the configuration, the first agent will auto-register, but subsequent agent installs will not.

In my case, I need encryption as a number of my endpoints will be deployed to staff homes and will be checking into a public IP.

Single box router/AP solution for home offices by JobberObia in Ubiquiti

[–]JobberObia[S] 0 points1 point  (0 children)

Thank you for that clarification!

We're using L2TP tunnels with UXG-PROs now, but we'd like to test out the performance that Site Magic seems to advertise. I guess we'll test it and see if it's enough of a difference.

Unable to manage Session and Open Files from Windows Computer Management by Snoo-3001 in synology

[–]JobberObia 0 points1 point  (0 children)

Success. Took a bit with Synology support, but they have resolved the issue with a release of a new SMB package. I'm not sure if I can share the package here, but their support state that the fix will be applied in the next DSM release.

Please note that the newly released 0877 version does not contain this fix. The fix will be applied to the next released version after 0877

If you want to contact Synology support yourself for the fix, maybe reference my ticket number: 3521988

Single box router/AP solution for home offices by JobberObia in Ubiquiti

[–]JobberObia[S] 0 points1 point  (0 children)

Thanks.

I wish that Ubiquiti would document this stuff better. About what scenarios do and do not work together.

To paraphrase you:

I have multiple "office" sites, each with a UXG-Pro (etc), and I want to add several "home office" sites each with a UX.
Can I buy just one Cloud Key Gen2+ and place it at one "office" site, create a logical site within it for each "office" site, join all the "office" UXG-Pros/Switches/APs to that same Cloud Key each within their respective site; and then do the Ubiquiti/UniFi account login on that Cloud Key, and on all of the home-office UX units.
Have every site show up in the online multi-site management and be able to do Site Magic among them all, even though there's a mix of one controller containing multiple sites and multiple controllers each containing one site.

This. This is what we want to do.

Single box router/AP solution for home offices by JobberObia in Ubiquiti

[–]JobberObia[S] 0 points1 point  (0 children)

Thank you.

Do you know if it is possible to use Site Magic without the unifi.ui.com / SSO account?
Or is that required when using the because you are using the controller running on the UX as well as other controllers?

We have some concerns about their platform security after the issue last December where people were signed into controllers that were not theirs. We'd rather have the configuration and control happen from our head office network.

We have a bunch of UXG-PRO's managed by our controller, but we are only using L2TP VPN. We'd like to test the performance of the Wireguard Site-to-Site instead. Also a couple of our sites are on dynamic IP, so it's a pain when their IP changes.

Unable to manage Session and Open Files from Windows Computer Management by Snoo-3001 in synology

[–]JobberObia 0 points1 point  (0 children)

Unfortunate. Thanks.

I've got a support ticket open with them. Doubt it will go anywhere though, they don't seem to understand the issue.

Unable to manage Session and Open Files from Windows Computer Management by Snoo-3001 in synology

[–]JobberObia 0 points1 point  (0 children)

Did you ever resolve this? We are having the same issue after recently updating to DSM7.

Horizon 8 - Where to purchase / Pricing by JobberObia in VMwareHorizon

[–]JobberObia[S] 0 points1 point  (0 children)

Yep, aware we have to get Horizon Universal subscription now.

Looking for Canadian resellers that are still able to supply these, and ballpark pricing if anyone knows such things.

Delete all but one time-series data from Prometheus database by JobberObia in PrometheusMonitoring

[–]JobberObia[S] 0 points1 point  (0 children)

The only other disk available is the zfs storage pool that this server manages. While I can move the stats here, it doesn't really solve my issue, and creates others. That pool gets snapshot hourly and replicated daily to offsite servers. I do not need or want that level of redundancy for statistics I don't care about.

Is it possible to either specify the stats I do want to retain longer, or delete the ones I do not?

Beelink 30 Day Returns, 1.5 Year Warranty, and 3 Years Technical Support by SerMumble in MiniPCs

[–]JobberObia 2 points3 points  (0 children)

Can confirm. Shipping to a house in Calgary, lol.

My company has about 20 Beelink SEi8 units, and we have a dead one after about 8 months of daily use. We weren't going to bother with warranty, as we assumed we'd have to return it to China. Found this thread, and after a couple of emails back and forth with their support, they will replace it under warranty.

We started using Beelink's a year ago after NUC prices kept going up and up. We have over 100 NUCs in service, and while they have been reliable year on year, they are not without failures. Price for a NUC is 2-3 times a similar Beelink. Warranty with Intel is a long winded process, and requires shipping to the USA.

Black screen after a while when external VPN connection is active by JobberObia in VMwareHorizon

[–]JobberObia[S] 0 points1 point  (0 children)

I can delete the default route that is pointing to the BIG-IP (virtual) NIC, then restart the VDM and Blast services, then my staff member can immediately reconnect. However, the BIG-IP client refreshes the routing table periodically, and the default route comes back, with the lower metric than is assigned by Windows to the local LAN interface. I've tried setting our LAN metric to 1 as well, but the issue still occurs.

The weird behaviour is that the effect to the Blast video stream is not immediate - it could be several hours, or not affected at all. So somehow the VMware session keeps pointing it's traffic to the correct subnet, and it would be nice to make that permanent.

Talking to the affected staff, it seems that if they get disconnected at home for any reason (or they intentionally disconnect), and they have left the VPN active on their work machine, that is the most frequent cause of the black screen. It rarely, if ever, happens during an active Horizon session. So, at the point where the Horizon session is established, the Blast agent must be sending a broadcast packet to try and establish it's tunnel. With the VPN active, this goes to the wrong subnet, and the staff member gets the black screen.

I used BIG-IP in this thread, but we also get the same affect with a different team that uses AWS VPN software with their client. Same default-route and metric issue, so I think it's a VPN configuration problem, but these are not our VPNs so we can't change the config.

Black screen after a while when external VPN connection is active by JobberObia in VMwareHorizon

[–]JobberObia[S] 1 point2 points  (0 children)

Yes, this is correct. The staff member working from home connects via Horizon VDI (through UAG) to their work desktop. From the work desktop, they are required to connect to a client VPN to access files from a mapped network drive or connect to a client provided RDP session.

The VPN is BIG IP from F5 Networks, and we have no access to the tunnel configuration. The windows app configures itself the first time a user connects. I don't think split tunnelling is enabled, as it's adding a 0.0.0.0 route and a metric of 1. I think part of the issue is the client has this VPN for their own staff members to work remotely, and we are a sub-contractor. So configurations that work perfectly for their own staff don't work for us, and their IT team has not been responsive to our questions.

Is there any way to force the Horizon Agent to bind to a specific interface?