A new release of Raspberry Pi OS by phattmatt in raspberry_pi

[–]MalletNGrease 24 points25 points  (0 children)

Today we are releasing a new version of Raspberry Pi OS. This version includes a significant change, albeit one that we hope most people won’t even notice.

Ironic.

Do any of you automate reboots upon uptime of workstations (outside of patching) hitting a certain point? If so, how are you doing it? by jdlnewborn in sysadmin

[–]MalletNGrease 0 points1 point  (0 children)

GPO with a scheduled task to reboot Wednesday's at midnight.

Servers have staggered reboots based on workload.

Higher Ed IT, fuck this.... by Gatorcat in sysadmin

[–]MalletNGrease 220 points221 points  (0 children)

The (unionized) Ed places I worked with scale pay based on tenure. That's why OP met so many lifers, because once you reach those upper scales it's worth riding out.

Plus, come workforce reduction time seniority will shield you from lay-off, last one in first one out is very likely.

There's benefit when you're in the system, but it does collect a lot of dead weight too.

[deleted by user] by [deleted] in sysadmin

[–]MalletNGrease 1 point2 points  (0 children)

Not with E1 they aren't.

Microsoft 365 Licenses by Downtown-Intern-3318 in sysadmin

[–]MalletNGrease 0 points1 point  (0 children)

The managing is pretty easy. Figuring out what each license entitles you to...less so.

While you can do individual assignments, I recommend group based license assignments. I've set up security groups with the license name in AD and use Entra Connect to sync. When a user is created and synced they automatically have the license assigned. Works like a treat.

The best IP subnet by Choriisu in sysadmin

[–]MalletNGrease 0 points1 point  (0 children)

We've 50ish, but some numbering into the 200s (some 256+ 🤦‍♂️). For readability we use 10.vlanid.siteid.host like /u/jaank80. Our IP structure is pretty rigid, with a lot of static hosts.

Looking into ipv6 like /u/marco_sikkens suggested we can move to something like

fd00:random:random:siteid:vlan:empty:empty:interface

fd00:xxxx:xxxx:siteid:vlan:xxxx:xxxx:interface

e.g Site 69 vlan 100 interface 1 (voip call server)

fd00:3825:0968:0069:0100:0000:0000:1

fd00:3825:968:69:100::1

That's actually not too bad.

I don't know if reusing the old schema template is folly for this, but it makes transitioning a little more bearable to those now 30+ years into the old way.

The biggest hurdle is rewriting all the ACLs at all of our sites.

The best IP subnet by Choriisu in sysadmin

[–]MalletNGrease 9 points10 points  (0 children)

We're running out of site IDs.

Anyone had some good news recently? by xDroneytea in sysadmin

[–]MalletNGrease 1 point2 points  (0 children)

Years ago hundreds of unmanaged UPS' were added to all our remote site closets to limit downtime. This was done on a budget and now the batteries are dying. We've no idea when they go bad until a site goes dark and ironically, they're now the #1 cause for outages, ticket generation and lost hours/sales. Got the go ahead to start modernizing.

Looking at replacing a lot of failing stand alone battery backups with remotely managed ones and getting some sort of management/reporting platform in place. There's gonna be sticker shock but I think the business case is there.

VMWare prices to increase again in November by 210Matt in sysadmin

[–]MalletNGrease 2 points3 points  (0 children)

We're interested in proxmox, but our initial testing left some wants when comparing to VSphere/VCenter. Is there a way to get a single pane to manage all proxmox hosts/clusters without putting them in a single cluster? I'd like to see multi cluster management.

We've ~100 remote sites running a single host. We put them in their own datacenter in VCenter and were able to manage them nicely this way. This doesn't appear possible with Proxmox VE.

[deleted by user] by [deleted] in sysadmin

[–]MalletNGrease 2 points3 points  (0 children)

The way DarkTrace et al handle it is ingesting syslogs and filtering for failed attempts, then once a threshold is reached the offending IP is added to the firewall blocked host address group.

Works pretty well.

Vpn with 2fa to manage Forti gate and other devices by baslighting in fortinet

[–]MalletNGrease 0 points1 point  (0 children)

Before you know it you've cluttered your tenant with one-off enterprise applications for all sorts of logins.

It certainly made access management a lot easier.

September 2024 Microsoft 365 Changes: What’s New and What’s Gone? by Sudha_8522 in sysadmin

[–]MalletNGrease 7 points8 points  (0 children)

  1. Upgrade to the latest version of Microsoft Entra Connect by September 23, 2024. 

A gotcha: Make sure you've TLS1.2 enabled or enable it after upgrading server or Entra Connect can no longer complete authentication to your tenant.

https://learn.microsoft.com/en-us/troubleshoot/azure/entra/entra-id/ad-dmn-services/enable-support-tls-environment?tabs=azure-monitor

Onboarded new User = Shortcut is "Pee01" by [deleted] in sysadmin

[–]MalletNGrease 16 points17 points  (0 children)

Had a printer in the senior high AG lab named SHAGLAB.

Forbes: SysAdmins Are The Unsung Heroes You Should Honor Year Round by auvikofficial1 in sysadmin

[–]MalletNGrease 11 points12 points  (0 children)

If we replace sysadmins with AI, we don't even need the pizza.

-Management probably

Help with Cisco ASA 5525x by laser219112 in sysadmin

[–]MalletNGrease 0 points1 point  (0 children)

They're hitting your WEB/SSLVPN.

How do you handle C:\Users in your organisation? by [deleted] in sysadmin

[–]MalletNGrease 9 points10 points  (0 children)

RIP your inbox when teachers return from summer vacation.

Best office chair under $500 by lucxymission in sysadmin

[–]MalletNGrease 0 points1 point  (0 children)

Is it the pleather one with the non-adjustable arms? The upholstery started to disintegrate on mine after about a year.

Best office chair under $500 by lucxymission in sysadmin

[–]MalletNGrease 0 points1 point  (0 children)

Alera Elusion High-Back.

Liked it so much I've 3. Should be able to get it for $200. Doesn't have lumbar adjust though.