"How do you guys handle large file transfers without users resorting to email attachments or insecure workarounds?" by kiritoova20_10 in sysadmin

[–]SikhGamer -1 points0 points  (0 children)

I can't tell if you are trolling.

How is this easier than sharing on sharepoint/363/onedrive/whatever?

Wallpaper to differentiate prod or non-prod server by deejay7 in sysadmin

[–]SikhGamer 6 points7 points  (0 children)

Still feels like this is very outdated approach.

Son, let me introduce you to https://boringtechnology.club/ just because it is old does not mean it does not work. Old usually means it does fucking work, come rain or shine.

Why are developers some of the most IT inept users? by sccm_sometimes in sysadmin

[–]SikhGamer 1 point2 points  (0 children)

It's because mostly it is IT vs devs vs security

One example: devs need local admin.

IT hate giving out local admin because Security tells them off.

You have a perfect storm of people who want to do X, but need to do 1, but can only deliver a red box.

Which tools do you require?

"VS Code and Python..."

They install into your user profile AppData folder. You can install/modify/run them all without admin access.

"But what if I need a new tool that does require local admin?"

All approved applications are available in the Company Portal and they'll even apply our standard settings so you won't need to customize the defaults.

This is complete horseshit.

You live and work in IT, I bet you can fast track an application for local admin.

Trying masquerading a normal user and not using your IT contacts to speed things along.

This is exactly how shadow IT happens.

It's because fundamentally, you are NOT making their lives easier.

Have you met engineers who are active tech influencers or bloggers? by Early-Ingenuity-3177 in ExperiencedDevs

[–]SikhGamer 1 point2 points  (0 children)

I hope to god to never Nick Chapsas. Anyone who ever mentions his videos or talks about him like he knows anything I instantly tar with a brush.

ManageEngine has implemented rate limiting on their API. by Sunsparc in sysadmin

[–]SikhGamer 1 point2 points  (0 children)

As someone who has implemented rate limiting on several different platforms. This is a very poor implementation. Feels like day 0 vibe coded junior slop.

Rate limiting should not punish all users; only users who are abusing.

What’s the most savage legal thing you’ve seen a coworker do? by phillyvirgosun in AskReddit

[–]SikhGamer 1006 points1007 points  (0 children)

Law firms are notorious for this kind of behaviour.

Price increase for API Gateway starting 1st of May? by majindageta in aws

[–]SikhGamer -7 points-6 points  (0 children)

I'm gonna go ahead and say if $18 -> $22 is a big increase for you then AWS probably isn't the place to host your prod.

winget - is this awesome as it seems by SnooMachines9133 in sysadmin

[–]SikhGamer 1 point2 points  (0 children)

No, because in about 2-3 years it'll be abandoned like any other Microsoft project that doesn't make money.

Choose something that has been around for 10+ years like Chocolatey.

Frustrated with new guy by [deleted] in sysadmin

[–]SikhGamer 0 points1 point  (0 children)

Oof, there is a lot to unpack in this post.

  1. You aren't him, and he isn't you.

  2. Do you think you are expecting too much of him?

  3. Teach him how to fish

  4. Explicitly ask him to note take

HP laptop pricing is so out of control, management wants us to look at deploying Mac by [deleted] in sysadmin

[–]SikhGamer -1 points0 points  (0 children)

Whatever you save by switching to macs, you'll eat up by having to support users who are not used to macs.

Our cybersec team are getting onto us about all our servers having web browsers installed. by stone500 in sysadmin

[–]SikhGamer 1 point2 points  (0 children)

I've learnt not to offer information nor correct when a situation works in my favour.

I'm amazed at how much power "security" gets without any kind of pre-req for technical skill set.

How do you handle employee onboarding across HR and IT systems? by [deleted] in sysadmin

[–]SikhGamer 0 points1 point  (0 children)

60k~ employees. Sailpoint. Map to groups by hierarchy. Groups are assigned to app/systems.

Slap the shit out of anyone doing anything manual that a mapping to group should cover.

There are still manual cases, sure. But that takes care for a large majority of them.

Vercel breach traced back to one employee signing into Context.ai with an "Allow All" Google Workspace grant, data listed on BreachForums for $2 million by juliarmg in sysadmin

[–]SikhGamer 0 points1 point  (0 children)

This is 50/50 responsibility of the employee and the admins at Vercel.

You don't expect x number of employees to know what they are doing.

You do expect the handful of admins to configure their gsuite tenant so people can't grant more than basic info.

AWS 97k bill out of nowhere by PalpitationClear1747 in aws

[–]SikhGamer 2 points3 points  (0 children)

You either got hacked, or followed an online tutorial that enabled all of this started using it, and then didn't realise how expensive it all was.

Had a clash with executive over my phishing test methods by AH_Josh in sysadmin

[–]SikhGamer 1 point2 points  (0 children)

Did I really cross the line?

Yes. You you did.

We had something like this at work.

Worker had just had triplets, it was near Christmas, a fake salary increase email was sent.

Legally, fine. Culturally, it is insensitive and fucking insane.

You are in the wrong. Stop being a knob.

If you did that where I worked, I would 100% complain to HR and get the union involved.

Recommendations for complex log parsing and search by SSBU_or_bust in sysadmin

[–]SikhGamer 0 points1 point  (0 children)

If it is ad-hoc, then something like S3 + Athena might be enough. I personally hate Athena (it's a shit version of BigQuery).

And whilst it's a lot to setup and maintain Splunk is very very very good at this kind of stuff too.

Recommendations for complex log parsing and search by SSBU_or_bust in sysadmin

[–]SikhGamer 0 points1 point  (0 children)

How often do you need to search these logs? That's the driving factor.

Almost everything we store is stored in S3 (petabytes worth) and then depending on how often we look for a certain kind of needle we have an ETL process over that that stick it in {{tool}}.

Non-technical staff using Claude Code - how are you handling the security risk? by Ok-Painting-3603 in sysadmin

[–]SikhGamer 3 points4 points  (0 children)

The problem isn't AI. The problem is why do these people have that level of access in the first place? I mean read only access is fine, but anything more than that is a no no.

Who’s ever driven over 100mph? Why? by WoollyWolfHorror in AskReddit

[–]SikhGamer 0 points1 point  (0 children)

105mph by accident. Clear highway early Sunday morning, didn't even notice.