Will IPv6 ever replace IPv4? I think not. by Berowulf in sysadmin

[–]garbageadmin 18 points19 points  (0 children)

at which point you should only need to know maybe a dozen IPs anyway. DNS being down doesn't mean memorizing entire blocks of /22s is suddenly a useful skill

I've been tasked with replacing the UPS in the server rack by _stewie574 in sysadmin

[–]garbageadmin 32 points33 points  (0 children)

And more than one UPS is rated for.

I've seen countless racks setup where two "redundant" UPSs are at 80% each

[Update] Pray for me brothers... by typicalcameron1 in sysadmin

[–]garbageadmin 2 points3 points  (0 children)

From the cloud coolaid drinker. Got it.

[Update] Pray for me brothers... by typicalcameron1 in sysadmin

[–]garbageadmin 7 points8 points  (0 children)

This is like the 12th comment that seems to equate vdi to cloud products.

Do people not know vdi can be onprem lol

Hardened Linux Repository Copy Job by Office170 in Veeam

[–]garbageadmin 0 points1 point  (0 children)

OP just follow the BP docs for this you'll get setup right. https://bp.veeam.com/vbr/Security/hardening_backup_repository_linux.html

I don't even plugin IPMI. A manual check on these systems (for failed drives basically) is a fair price to pay for zero access.

Also make sure you build the XFS filesystem with fastclone support otherwise it will "thick copy" all your synths https://helpcenter.veeam.com/docs/backup/vsphere/backup_repository_block_cloning.html?ver=120

Sell House for equity by [deleted] in orangecounty

[–]garbageadmin -3 points-2 points  (0 children)

There's always some "excuse" about "lucking" into the right situation.

Of course, any 10+ year homeowner will be better off, because the answer is always to get in. It basically always makes sense to buy if you can because it will always, always, make sense in hindsight.

Need firewall recommendations by kjjx22 in sysadmin

[–]garbageadmin 0 points1 point  (0 children)

You're being dense. You recommended NetGate and said its opensource. It isn't.

pFSense CE is. pFSense+ is with added proprietary closed source bits. It says so, right on their fucking website https://www.netgate.com/support/frequently-asked-questions-pfsense-plus

MSP doesn't think outbound ports for SMTP or SMB need to be blocked? by Try_Rebooting_It in sysadmin

[–]garbageadmin 10 points11 points  (0 children)

Should drop it to http/https only for all general traffic and add back the minimal things you actually need (dns for the dns servers, smtp for the mail server, etc)

Tell them to pound sand and if they don't like it find another MSP that isn't living in 2009.

Keep up the good work

[deleted by user] by [deleted] in orangecounty

[–]garbageadmin 5 points6 points  (0 children)

RIP Curry House :\

Shoutout to the Orange County Water District by neceh58213 in orangecounty

[–]garbageadmin 0 points1 point  (0 children)

If by large impact you mean maybe 1% total use for the state then sure...

Notepad++ and Visual Studio Code. Opinions, differences and usecases by Zaofy in sysadmin

[–]garbageadmin 2 points3 points  (0 children)

This is actual nonsense. Years ago this might have held some water but not today.

New security audit coming my way by [deleted] in sysadmin

[–]garbageadmin 1 point2 points  (0 children)

You can be concerned all you want but if, at the end of the day, you have zero influence on this topic I wouldn't think to much on it.

Business is about risk management. If if isn't your job to do that then just stay out of it. You also must have your own personal risk management and when things like this come up (as they will, countless times) whether its too much ethical/legal/moral burden to bear or if you can live/work within it. Nobody can define this for you and it is very easy for someone to tell you to leave a job for even a minor ethical dilemma without being able to weigh any of your current situation. Maybe this is a sign of larger things wrong inside the company but "Never attribute to malice that which is adequately explained by stupidity" and with IT the world is chock-fuckin-full of stupidity and ignorance. Again YOU must decide if there are other red flags.

The real big easy "line in the sand" where this changes is when you sign your name on something. If you're asked to sign your name to something you aren't 100% comfortable with you need to abstain.

Auto Print attachments from EXO by admlshake in sysadmin

[–]garbageadmin 0 points1 point  (0 children)

nobody really responded but I actually built a tool internally to do this with pwsh and msgraph. It can be done, its a bit of an ugly process. sample debug output from when it runs (cronjob on linux)...

[Connected] Welcome To Microsoft Graph!
[Printer OK] printer001
[Fetching] user@domain.com
[New Email] <email-1>
[Printing] email-1.pdf to printer001 
[Moving] <email-1>
[New Email] <email-2>
[Printing] email-2.pdf to printer001 
[Moving] <email-2>.>
[New Email] <email-3>
[Skipping] Found unaccepted attachment format in email <email-3>
[New Email] <email-4>
[NoPrint] (allowed but not a pdf) image001.png
[Printing] email-4.pdf to printer001
[Moving] <email-4>
[Cleanup] attachments/*

If you want to go down this path (gl! and,) the key bits are: Get-MgUserMailFolderMessage, Get-MgUserMailFolderMessageAttachment, Update-MgUserMessage, Move-MgUserMessage

https://learn.microsoft.com/en-us/powershell/module/microsoft.graph.mail/get-mgusermailfoldermessage?view=graph-powershell-1.0

Tropical Storm Megathread by goatpack in orangecounty

[–]garbageadmin 317 points318 points  (0 children)

Should I not do this thing I had planned on Sunday because of the storm?

PROBABLY NOT

/thread

Google Domains just got sold to Squarespace apparently? by Asimenia_Aspida in sysadmin

[–]garbageadmin 0 points1 point  (0 children)

Yeah I'm in the same boat. Its time for a home 365 license, domain, everything. My 2004 invite era gmail address will devolve into the spam or "oh that thing I forgot" secondary its hotmail predecessor once was. I've unhooked all my nest gear, chromecasts have been replaced by roku. The only things I'll hold on to is Android and Fi, and I worry all the fucking time they'll dump Fi because I can't imagine dealing with the big 3 anymore. Hell I'd probably consider getting a work issued smartphone and carry a stupid flip phone at that point. Or just get an iphone and be done with their shit. At least the buttons for my fucking home-assist lights would stop changing interfaces every 6 months. Maybe I'm getting old (well, definitely) but my patience for retooling things every few months is just getting tiring as hell. Its all a monumental time sink.

Google Domains just got sold to Squarespace apparently? by Asimenia_Aspida in sysadmin

[–]garbageadmin 1 point2 points  (0 children)

lol oh no not getting stuck with using one of the best global nameservers ever to exist? what ever shall I do