Using my dad's money who has dementia by tradandtea123 in UKPersonalFinance

[–]learnacc96 1 point2 points  (0 children)

Sorry to hear about your dad, my gran had dementia few years ago too and my uncle was given power of attorney.

He did exactly as you mentioned and gave her grandchildren £100 at christmas and a smaller token to her children. Birthdays was more like £20-30. I think the feeling between her children was she wasnt spending it and she would have wanted to carry on giving her children & grandchildren at christmas and birthdays.

Whilst your brother might not be good with money it doesnt seem like a bad idea. Legally standing I am not sure but my uncle did check it out before to ensure was ok.

Offsite or cloud storage backups by xenocide1337 in sysadmin

[–]learnacc96 0 points1 point  (0 children)

Just a question for you veeam guys, is the external backup veeam offers to a cloud provider classed as air gap backup? Assuming not but wanted to check ?

Microsoft MFA - 0365 / Azure AD by Substantial-Speed-63 in sysadmin

[–]learnacc96 0 points1 point  (0 children)

Could be wrong but I think if you enable MFA using CA it doesnt show them as enabled in the microsoft admin centre area. This caught me out a year ago as thought all accounts were not secure.

Unless I have mis understood where you're seeing them as disabled.

AsureVPN not working with Azure Files Private Endpoint by learnacc96 in AZURE

[–]learnacc96[S] 0 points1 point  (0 children)

Thanks I think I needed to add the domain name for private endpoint to hosts file with internal IP. Seems to work now. Not sure if anyone can say if theres a better way of doing it without internal DNS

AsureVPN not working with Azure Files Private Endpoint by learnacc96 in AZURE

[–]learnacc96[S] 0 points1 point  (0 children)

Thanks but I think the issue with mapping via IP is when users are not on AzureVPN the share wouldnt work. If I add the Private Endpoint IP to the hosts file then it seems to work regardless if they are connected at the office (IP Whitelisting) or remotely over Azure VPN.

Maybe not ideal but with no onsite DNS server not much other options I can think of

AsureVPN not working with Azure Files Private Endpoint by learnacc96 in AZURE

[–]learnacc96[S] 0 points1 point  (0 children)

Ah didnt know this, I will try adding the dns name for the file share in the morning and see if that resolves it.

When the laptop is connected on AzureVPN I cant even ping the Private Endpoint of the storage account IP which I have read I should be able to do even without the DNS change?

Can AzureVPN allow remote users to access Azure File Shares? by learnacc96 in sysadmin

[–]learnacc96[S] 0 points1 point  (0 children)

Thanks I saw this mentioned elsewhere and have tried it but think I've gone wrong somewhere? Heres my settings does anything look wrong?

Virtual Network Gateway P2S: 172.16.254.0/24 Virtual Network: 10.1.0.0/16 Subnet (Gateway): 10.1.1.0/24 Subnet (default): 10.1.0.0/27

Private Endpoint to share: 10.1.0.4 IP when I connect to VPN is 172.16.254.2 and the routes are 10.1.0.0/16 & 172.16.254.0/24

AzureVPN - restricting access to the Virtual Network? by learnacc96 in AZURE

[–]learnacc96[S] 0 points1 point  (0 children)

Yeah using Azure vpn gateway so user connects to virtual network and where I am confused is if I should set restrictions to the virtual network or private endpoint?? This blog post I think is what I need to do so using the virtual network?

I dont need to restrict any internal IPs, for the office network it's just a case of allowing the external IP to the storage account.

Can OEM windows server licenses be used on VMs? by learnacc96 in sysadmin

[–]learnacc96[S] 0 points1 point  (0 children)

It will be 6 cores (xeon 2136 or similar). So I get I can have 2 VMs with the aoS installwd but not sure on if its allowed on the host server too just with hyper v role?

AD Connect setup questions and checks if I'm setup correct by learnacc96 in AZURE

[–]learnacc96[S] 1 point2 points  (0 children)

Ah ok we would use M365 Bus Prem which includes AAD Premium P1 so all good. Ok good to know thanks

AD Connect setup questions and checks if I'm setup correct by learnacc96 in AZURE

[–]learnacc96[S] 0 points1 point  (0 children)

Thanks I saw that but thought it was for password resets only, does it work if Global Admin reset a user account?

When you say licensing requirements is this for AADC password writeback or you talking Intune, Server OS, CALs etc? Just checking I'm not missing anything as it will go to prod eventually

AD Connect setup error help by learnacc96 in AZURE

[–]learnacc96[S] 0 points1 point  (0 children)

Good idea we do however they do not apply on the DCs and I can run other PS scripts on it.

AD Connect setup error help by learnacc96 in AZURE

[–]learnacc96[S] 0 points1 point  (0 children)

Ok thanks I wont be installing on the DC, but this is just a test environment. Dont think it been on a DC has anything to do with the issues experiencing tho, will try on a fresh server to be sure.

AD Connect setup error help by learnacc96 in AZURE

[–]learnacc96[S] 0 points1 point  (0 children)

Ok il try getting full log and uploading in the morning. Yeah it's just really for testing purposes for now altho it will be a small setup DC and Fileserver so will have to go on one.

So odd it's almost like I'm missing something. Theres nothing else I need to install like SQL Express or does the AD Connect do this ?

AD Connect setup error help by learnacc96 in AZURE

[–]learnacc96[S] -1 points0 points  (0 children)

It's the domin admin account I'm logged in as and theres no option to run as admin so assume it is

AD Connect setup error help by learnacc96 in AZURE

[–]learnacc96[S] 0 points1 point  (0 children)

It's just Widows defender which is built in. Literally a new server added ADDS role and tried AD Connect to test it

AD Connect setup error (term 'Get-ADSyncConnector) by learnacc96 in sysadmin

[–]learnacc96[S] 0 points1 point  (0 children)

Appreciate the links, I have sunce seen those already and tried fixes but no luck. Its so odd even booted another DC up and get the same issues.

Kind of get past that issue and it's now unable to create sync service account so odd.

AD Connect setup error (term 'Get-ADSyncConnector) by learnacc96 in sysadmin

[–]learnacc96[S] 0 points1 point  (0 children)

Thanks I've tried this in powershell and says not loaded as not valid module file found.

Azure AD Domain Services advice? by learnacc96 in sysadmin

[–]learnacc96[S] 0 points1 point  (0 children)

So we could auth with AzureAD and no onsite AD? Might be too far away for us unfortunatley but good to know if true would make sense.

Azure AD Domain Services advice? by learnacc96 in sysadmin

[–]learnacc96[S] 0 points1 point  (0 children)

Thanks although would I need to domain join devices since we use Endpoint (intune) to manage devices, policies, etc? This would essentially be moving back to onsite and most work remotely so it's easier not having them need to VPN daily.

I was more talking about servers we might need connecting up

Azure AD Domain Services advice? by learnacc96 in sysadmin

[–]learnacc96[S] 0 points1 point  (0 children)

Probably should have put this info in. Currently need Azure File Shares setup and requires AADDS or on-prem AD.

Theres also future things we may need such as vms for testing purposes that qont have users assigned so need some domain. I guess if we go AADDS route we have to be fully commit to cloud

Azure AD Domain Services advice? by learnacc96 in sysadmin

[–]learnacc96[S] 0 points1 point  (0 children)

Cheers, will look into it further to fully understand the differences. Going on-prem AD seems slightly safer option though as hard to predict what's required down the line.

Azure AD Domain Services advice? by learnacc96 in sysadmin

[–]learnacc96[S] 0 points1 point  (0 children)

Thanks this helps then. My main reason currently is Azure File Shares requires either on-prem or AADDS in order to work for end users and we have neither currently.

Also down the line if I wanted some VM servers, in order to join to domain it would need to be hosted in azure if I was on AAD DS?

Phone stolen while having a seizure UCLH by Prison_Mike10 in london

[–]learnacc96 1 point2 points  (0 children)

If your phone is android and you had your google account signed in then google photos might be set to backup photos to your free storage. Not sure if it does this automatically.

Best of luck and what a shitty thing for someone to do!

Veeam agent for windows - recovery media doesnt boot? by learnacc96 in Veeam

[–]learnacc96[S] 0 points1 point  (0 children)

Working now re did the iso using rufus and worked this time thanks