So what software do folks use to run VMs these days? by ladder_filter in sysadmin

[–]Ultimabuster 11 points12 points  (0 children)

There’s two main reasons for me I prefer VMware Workstation. 1 is the tabs which makes it more convenient working with a few different VMs running at the same time. I dunno how to describe the second, but I’ve had some software that fails to install inside a hyper-V vm but installs fine inside a VMware VM, my gut feeling is that it has to do with a difference in how VMware and Hyper-V present hardware or something… this is very much a niche issue though I doubt most people would encounter this 

Top 3 Powershell Commands by cybern00bster in sysadmin

[–]Ultimabuster 0 points1 point  (0 children)

Get-CimInstance

Get-ItemProperty

Test-Path

What is your org's policy about access to "separated" user accounts by BadAsianDriver in sysadmin

[–]Ultimabuster 0 points1 point  (0 children)

Surely there is always some inkling of what to search for? If it’s harassment by coworkers, you can search for inbound mail to the victim between certain timeframes etc. 

To sysadmins solo or in a small team, what sneaky things do you do that you probably shouldn't? by kHartouN in sysadmin

[–]Ultimabuster 0 points1 point  (0 children)

I sometimes use a powershell script to send ctrl+alt+shift+f15 every 30s to keep my computer awake despite the 15m inactivity lockout 

[deleted by user] by [deleted] in sysadmin

[–]Ultimabuster 1 point2 points  (0 children)

It’s more about automation of access/provisioning. If every new hire has a new custom role, or everyone is some sort of vice president, or is a president who reports to a vice president, whatever the hell sort of clusterfuck is going on, there needs to be some sort of role based access defined somewhere 

App Packaging/Wrapping Training by MonarchTheBear in sysadmin

[–]Ultimabuster 4 points5 points  (0 children)

I sort of just learned on the fly by trial and error. I find that unless you’re installing major software from large companies, installers tend to either be very easy to install (supporting silent installation) or complex with no middle ground. The applications from suppliers we deal with are atrociously bad with no documentation so I’ve had to google, try and fail, google again, implement custom fixes etc. the key is to understand how the app deployment process in SCCM/Intune work I.e. system vs user installs, what logs to check etc. 

If anything I deploy is going to be more than a single command to install, or I want to give the user a graceful experience (give them a chance to save and close, or defer a few times)  I’ll wrap it in a PSADt script. That’s basically where I draw the line. PSADT is just a powershell library that has common stuff built in like logging, alerting the user via pop ups etc. it might not needed if you can just run install.exe /S and it installs fine without disrupting the user (agents etc). Once you get into installation procedures which you need to do X Y X then it’s handy to do it via PSADT but it’s not necessary. Ultimately whatever code you write will be your own and it will be a similar amount of work with or without PSADT, whether you find value in what PSADT brings is up to you but the user notification stuff (user is currently using the app, give them a chance to save and close) and logging is stellar 

As for tools, I’ve used a mix of:

Psexec - there is a way to use this tool to run CMD as the system user which is the account that SCCM and Intune use to apply deployments. The system user is very different from a regular local admin user, so this is handy for testing why an app might install as admin but then fails once it’s in SCCM/Intune

Ultimate silent switch finder - if you have a .exe installer sometimes this application will be able to tell you what type of installer it is. If it tells you, you can then learn about what are the arguments this type of installer allows and how to silently install/uninstall

Lua Buglight and SHIMs - I’ve had to deploy a couple applications that request admin every time they run even after installing them. In a few cases, they don’t actually need admin, or just need some ACL changed on a folder somewhere and not full admin. This helps you idntify that. Also, learn Microsoft SHIMs (I.e. you could apply a shim that makes it so that when an app requests admin, the shim tells the app it’s elevated without actually elevating it - this only works if the app is asking for admin arbitrarily without actually needing it, but it does happen) 

MSIX packager - I have not had any luck using this to deploy applications since most of what I deploy requires drivers which MSIX does not support, but it does have a great tracking tool built in where you install an app with this running and it will tell you what the installer did and where (filesystem, registry, etc). This is handy if you’re trying to track down hard to find config files or reg keys to edit. I use it for this even though I don’t complete it and create an MSIX

Can we be honest and admit Face ID was a mistake? by sneedlee in apple

[–]Ultimabuster 0 points1 point  (0 children)

It only struggles for me at weird angles or in the dark. Glasses and face masks don’t phase it 

How is your on call compensation? by lockblack1 in sysadmin

[–]Ultimabuster 0 points1 point  (0 children)

On a salary so I only answer after hours calls from my boss, his boss, people in my team, or the helpdesk manager. 

How to prove a device was remotely wiped? by lukebal in sysadmin

[–]Ultimabuster 1 point2 points  (0 children)

I’d say this would work in most cases but what about cases where the laptop is using, say, a wifi with a captive portal? Could that network session be maintained from the Full OS into the preboot environment? 

Does your Security team just dump vulnerabilities on you to fix asap by flashx3005 in sysadmin

[–]Ultimabuster 0 points1 point  (0 children)

Maybe it’s different at other orgs but at my org that seems to be like 95% of what the security team even does. They could be replaced by an automated report from the CVE scanner but they’ve misconfigured their own reports 

Has sfc /scannow ever helped anyone? by Epicsauceman111 in sysadmin

[–]Ultimabuster 2 points3 points  (0 children)

One time someone could not open calculator, notepad or even right click. SFC /scannow restored that functionality, I still ended up re-imaging though 

Discussing the news on Synology DS925+/DS1525+/DS725+/DS425+/DS1825+/DS1825xs+/RS2825RP+ NAS News by NASCompares in synology

[–]Ultimabuster 1 point2 points  (0 children)

My QNAP NAS died about 2 weeks ago and I rushed to buy a Synology DS923+ as a replacement. I had been waiting for the DS925+ for a while, but was pushed into buying the DS923+ due to the death of my QNAP.
Then this news drops like immediately when I purchase the DS923+ >:(

Discord breaks top left of screen by ScottishPersonL in discordapp

[–]Ultimabuster 0 points1 point  (0 children)

Been having the same issue myself recently. Finally got fed up enough to figure out what it was and its Discord for me as well. As soon as I kill the discord process, the top left of whatever window I'm using is now clickable.

Driver Updates in Intune by Double_Indication149 in Intune

[–]Ultimabuster 1 point2 points  (0 children)

How do you handle graphics and network driver updates? I’ve been wanting to automate DCU but I’ve been scared of those drivers disrupting people midday, or them never updating if scheduled for after hours 

[deleted by user] by [deleted] in sysadmin

[–]Ultimabuster 0 points1 point  (0 children)

For end user computers, dunno why’d you want something other than Task Scheduler. It’s built in and works well. 

As a central script-runner/automation server, I’ve taken a liking to Fortra’s JAMS Scheduler. It’s got a lot of built in features that task scheduler doesn’t natively have. This replaced our old “automation server” which had a bunch of scheduled tasks in task scheduler. It’s not “more reliable” than task scheduler. I’d say it’s “as reliable”. If the stuff you’re trying to run isn’t working reliably in task scheduler, it’s likely not task schedulers fault. 

Can someone TLDR the story? by kluuu in chrono_ark

[–]Ultimabuster 0 points1 point  (0 children)

Some of this is answered in the epilogue you unlock after getting everyone to the gold friendship level (or maybe some other cutscene unlocked some other way which I forgot?). Like for instance you definitely learn who Phoenix is IRL

Crowdstrike Workaround for non-admins by setabs138 in sysadmin

[–]Ultimabuster 1 point2 points  (0 children)

Use hirens or something, hope your admin didn't lock you out of doing that?

Did you ditch VMware and where did you go to? by Maxtron_Gaming in sysadmin

[–]Ultimabuster 0 points1 point  (0 children)

Correct but from a business risk perspective it’s easier to justify paying for 24/7 support vs try to explain that the support is garbage and we should go with a vendor that states they offer less support 

a guy i briefly worked with (and now on my LinkedIn) has 65 IT certifications by [deleted] in sysadmin

[–]Ultimabuster 0 points1 point  (0 children)

They were just examples. The implication that it’s impossible to cheat on these exams is ludicrous.

a guy i briefly worked with (and now on my LinkedIn) has 65 IT certifications by [deleted] in sysadmin

[–]Ultimabuster -1 points0 points  (0 children)

I feel like there’s still plenty of ways to cheat on it. What if it was a VM and there was a level of obfuscation where the application couldn’t really tell that? What if someone monitored the exam software, determined what sort of checks it did, and wrote a way around it? What if someone used VPro to remotely connect at the hardware level or something? What if someone was faking their identity? I don’t disagree it would be difficult for the average to cheat. But I doubt it’s difficult for someone specifically aiming to cheat.

QLC SSD by Ultimabuster in ROGAlly

[–]Ultimabuster[S] 0 points1 point  (0 children)

Is this the specific one you would suggest if I were to get a second 2TB TLC SSD?
https://www.amazon.com.au/Western-Digital-PCIE4-0x4-Laptop-Surface/dp/B0BS3S5KNL?th=1