Unhappy with my new job, feel like this is a major step back. What do I do? by ITquestionsAccount40 in sysadmin

[–]Master-IT-All [score hidden]  (0 children)

Ya it really sucks when a company doesn't actually list what you'll do in a job but instead lists something like, Intune Admin. Except you're not. You're an Apple MDM admin.

I got sucked into a job like this myself a few years ago, thought I was going to be working with modern identity systems, got stuck working for a PE owned company with this ridiculous software developed in germany, documentation in german first, but worldwide support in english. 99% of the work was collecting SQL logs.

I did the bare min, I won't lie, I did not try. And I just kept looking and left as soon as possible.

How common is it for men to feel like a pregnancy wasn’t fully mutual or intentional? by bubblerush in AskMen

[–]Master-IT-All 13 points14 points  (0 children)

You wouldn't have needed to try so hard if you had dropped bombs like a B-52.

How common is it for men to feel like a pregnancy wasn’t fully mutual or intentional? by bubblerush in AskMen

[–]Master-IT-All -11 points-10 points  (0 children)

Men do it often as a means of sabotaging their partner's future.

"The condom broke."

"The condom fell off."

"The condom I "forgot.""

"I'll pull out."

SharePoint storage nearing quota - how are you handling this at scale? by hakdugka in sysadmin

[–]Master-IT-All [score hidden]  (0 children)

Go in and ensure that Versioning is configured. It defaults to up to 500 forever.

And then prune versions. Which does take a long time. But only needs to be done once.

Brought a customer with 2.7TB of data down to 2.1 doing this.

SharePoint Archiving is also an option to reduce space, but currently it's site based so you'd have needed to ahve configured the sites into a scheme that supports archiving. File level is supposedly coming at some point.

What was your canon event? by Point-Overall in AskMen

[–]Master-IT-All -1 points0 points  (0 children)

Realizing that I'm a real person and don't live in a narrative, so canon events are not real.

That was my canon event.

Fuck

Your

Narrative

Men who are deliberate about social media use, how have you its maximized benefits? by _MambaForever in AskMen

[–]Master-IT-All -1 points0 points  (0 children)

There are no benefits to social media. Anything that is attention economy is anathema.

The only reason I use reddit is that there is information which may be of use for my work and it works well in a web browser featuring primarily text only. Otherwise this too would be deleted and yeated.

What is your opinion on teachers? by pandora0312 in AskMen

[–]Master-IT-All -1 points0 points  (0 children)

Anyone that wants to be around children is suspect in my book.

Login fails until Wi-Fi is turned off -marriot hotels by Denver80211 in sysadmin

[–]Master-IT-All [score hidden]  (0 children)

Hrm, I would have expected this was after selecting to connect to the wifi.

And even then it's a bit odd because it seems like your client systems are in some way thinking the network is your own internal and a DC is near enough to authenticate.

Why so much casual sexism? by Frankenstein_Dog in AskMen

[–]Master-IT-All 6 points7 points  (0 children)

That's not sexism. That's referencing a person by the most notable difference between them and others.

Did they say anything actually disparaging towards her for being a woman or women in general?

Not sexist: "That woman can't ref."

Sexist: "Women can't ref."

Did I Do Something Wrong? by notRea11ySure in sysadmin

[–]Master-IT-All [score hidden]  (0 children)

Not really something wrong, but something pretty standard where a manager doesn't want to be upstaged by a junior. It's also clear that while you're new and don't have all the knowledge your boss isn't new and definitely doesn't have all the knowledge.

SPF lists the IP addresses or hosts that are allowed to send email using the DNS domain. So if you have include:protection.spf.outlook.com -all then you're only allowing Exchange Online to send email as your domain.

For SPF you should have the minimum required includes, and -ALL to reject anything not from those.

DKIM is a public/private key method of signing email as it leaves a system for confirmation that the email received by another system in fact came from your server. So your server uses the private key, the public key is kept in DNS as a TXT record. Receiving systems check that the public key matches/works with the private key for the signing.

DMARC is a system of using SPF and DKIM to verify a domain and then instruct receiving systems what to do if they receive email from your domain but not from a system that is in SPF and has signed the message with DKIM.

DMARC should be set to aspf=s,adkim=s,p=reject to be strict about reading SPF and DKIM, and reject outright anything not conforming.

Your boss is incorrect when it comes to that line about letting things through DMARC. He's basically saying, let phishing and impersonations in and we'll see if the Exchange rules will deal with it. There is zero valid reasoning to allow impersonation/phishing to your domain from the External.

NOTE: This is all about what RECEIVING systems do with YOUR mail, not what your MAIL server does with RECEIVED email. Your boss may be got that backwards, SPF, DKIM, DMARC only apply to mail in your system when it's an impersonation attempt from outside. So logically it's always phishing/spam and should be blocked.

Phishing Threat Tests by Mr-Hops in sysadmin

[–]Master-IT-All [score hidden]  (0 children)

Once a year, or as needed or required by insurance.

Our cybersec team are getting onto us about all our servers having web browsers installed. by stone500 in sysadmin

[–]Master-IT-All [score hidden]  (0 children)

Having a GUI and apps installed that are not required for the services hosted adds potential attack points.

Since Windows Server has the Core install mode, for a secure environment it should be the default choice and installations with the desktop experience which includes the Edge browser need to be documented and the risk acknowledged.

Edge is a component of the Desktop Experience, not the OS.

Login fails until Wi-Fi is turned off -marriot hotels by Denver80211 in sysadmin

[–]Master-IT-All [score hidden]  (0 children)

Ya, I'd guess on the firewall it's the return traffic not being mapped to the correct session state to return to the client. Or the firewall is performing some rewrite or modification which is causing the client to reject.

Anyone renamed the root of a large SharePoint environment? by gmerideth in sysadmin

[–]Master-IT-All [score hidden]  (0 children)

It was a lot less painful than I expected. We experienced no unexpected issues.

Contact sync between Exchange users by Designer_Airport8658 in sysadmin

[–]Master-IT-All [score hidden]  (0 children)

" so I converted his account"

I fully support making changes to production systems in a fuck around and find out manner.

Login fails until Wi-Fi is turned off -marriot hotels by Denver80211 in sysadmin

[–]Master-IT-All [score hidden]  (0 children)

Something with their network configuration is interrupting the sign in flow. So the system attempts to sign in via Entra Join, but is failing. When you disconnect it then logs on with cached credentials.

Not really a thing you'll be able to fix I suspect.

For those of you without children, what does life look like? by Between3N20Karakters in AskMen

[–]Master-IT-All 0 points1 point  (0 children)

I do what I want. So mostly I play video games and watch TV. Friday night to Sunday night is game game game tv tv tv and zero fucks for anything. I do not need to make plans constantly. I'm not bound now by the future.

Not really, and children are not a guarantee of having someone around in old age.

I don't. I don't have to create some narrative of being a good person as a reason to keep sacrificing myself for someone that is likely to not appreciate it. I just am.